Prosím o kontrolu logu

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

lumirb
nováček
Příspěvky: 22
Registrován: květen 13
Pohlaví: Nespecifikováno
Stav:
Offline

Prosím o kontrolu logu

Příspěvekod lumirb » 15 kvě 2013 21:06

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:56:20, on 15.5.2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
D:\Program Files\Common Files\Siemens\sws\almsrv\almsrvx.exe
c:\WINDOWS\system32\IFXSPMGT.exe
c:\WINDOWS\system32\IFXTCS.exe
C:\Program Files\Java\jre6\bin\jqs.exe
c:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\lkcitdl.exe
C:\WINDOWS\system32\lkads.exe
C:\WINDOWS\system32\lktsrv.exe
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
C:\Program Files\National Instruments\MAX\nimxs.exe
C:\Program Files\National Instruments\Shared\Security\nidmsrv.exe
C:\WINDOWS\system32\nisvcloc.exe
C:\Program Files\National Instruments\Shared\Tagger\tagsrv.exe
c:\Program Files\Infineon\Security Platform Software\PSDsrvc.EXE
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
D:\Siemens\Step7\S7BIN\s7asysvx.exe
D:\Program Files\Common Files\Siemens\S7IEPG\s7oiehsx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\FLIR Systems\Device Drivers\T3Srv.exe
C:\Program Files\RealVNC\VNC4\WinVNC4.exe
D:\Program Files\Common Files\Siemens\SimNetCom\PNIOMGR.exe
C:\WINDOWS\Explorer.EXE
c:\Program Files\Infineon\Security Platform Software\PSDrt.exe
c:\Program Files\Infineon\Security Platform Software\SpTna.exe
C:\WINDOWS\sm56hlpr.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE
C:\Program Files\Wireless Console 2\wcourier.exe
C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ASUSTek\ASUSDVD\PDVDServ.exe
C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe
C:\Program Files\Protector Suite QL\psqltray.exe
C:\Program Files\ASUS\ASUS Splendid Video Enhancement Technology\ACMON.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\FLIR Systems\Device Drivers\T3Mon.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
D:\Program Files\Common Files\Siemens\S7ubtoox\s7ubtstx.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Auto-diagnostika\ADnews.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
D:\CAP505\prog\exec\wserver.exe
C:\WINDOWS\system32\ACEngSvr.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
D:\Program Files\Common Files\Siemens\Sqlany\dbsrv9.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\SIEMENS\SIMATIC.NET\SimNetCom\pniopcac.exe
C:\Program Files\Opera\opera.exe
C:\PROGRA~1\FOXITS~1\FOXITR~1\FOXITR~1.EXE
C:\PROGRA~1\FOXITS~1\FOXITR~1\FOXITR~1.EXE
C:\PROGRA~1\FOXITS~1\FOXITR~1\FOXITR~1.EXE
C:\PROGRA~1\FOXITS~1\FOXITR~1\FOXITR~1.EXE
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.asus.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\TRANSLAT\WEBIE.DLL
O2 - BHO: DIALux 3.1 ULDBrowserHelper Class - {69AB812A-8CE4-4BF3-B49B-3B60A9F31FB2} - C:\Program Files\DIALux\DLXShellExtension.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: PDFCreator Toolbar Helper - {C451C08A-EC37-45DF-AAAD-18B51AB5E837} - C:\Program Files\PDFCreator Toolbar\v3.0.0.0\PDFCreator_Toolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\TRANSLAT\WEBIE.DLL
O3 - Toolbar: PDFCreator Toolbar - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - C:\Program Files\PDFCreator Toolbar\v3.0.0.0\PDFCreator_Toolbar.dll
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe"
O4 - HKLM\..\Run: [Wireless Console 2] C:\Program Files\Wireless Console 2\wcourier.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ABLKSR] C:\WINDOWS\ABLKSR\ABLKSR.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\ASUSTek\ASUSDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [PSQLLauncher] "C:\Program Files\Protector Suite QL\launcher.exe" /startup
O4 - HKLM\..\Run: [ACMON] C:\Program Files\ASUS\ASUS Splendid Video Enhancement Technology\ACMON.exe
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [ThermaCAM Reporter 8 User Environment] "C:\Program Files\FLIR Systems\ThermaCAM Reporter 8\env.exe" -s -r
O4 - HKLM\..\Run: [FLIR Systems Camera Monitor] "C:\Program Files\FLIR Systems\Device Drivers\T3Mon.exe"
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [S7UB Start] "D:\Program Files\Common Files\Siemens\S7ubtoox\s7ubtstx.exe" -StartDB
O4 - HKLM\..\RunOnce: [aswAhAScr.dll] "C:\Program Files\AVAST Software\Avast\aswRegSvr.exe" "C:\Program Files\AVAST Software\Avast\AhAScr.dll"
O4 - HKLM\..\RunOnce: [aswasOutExt.dll] "C:\Program Files\AVAST Software\Avast\aswRegSvr.exe" "C:\Program Files\AVAST Software\Avast\asOutExt.dll"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Net4Switch] C:\Program Files\ASUS\Net4Switch\Net4Switch.exe
O4 - HKCU\..\Run: [AdobeUpdater] "C:\Program Files\Common Files\Adobe\Updater5\AdobeUpdater.exe"
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_11_6_602_180_Plugin.exe -update plugin
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: RT-Updater.lnk = C:\Auto-diagnostika\vagcom.exe
O4 - Global Startup: ADnews.lnk = C:\Auto-diagnostika\ADnews.exe
O4 - Global Startup: Bluetooth Manager.lnk = ?
O4 - Global Startup: MicroSCADA Wserver.LNK = D:\CAP505\prog\exec\wserver.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.asus.com
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Automation License Manager Service (almservice) - SIEMENS AG - D:\Program Files\Common Files\Siemens\sws\almsrv\almsrvx.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HP Status Server - Hewlett-Packard Company - C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBOID.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Security Platform Management Service (IFXSpMgtSrv) - Infineon Technologies AG - c:\WINDOWS\system32\IFXSPMGT.exe
O23 - Service: Trusted Platform Core Service (IFXTCS) - Infineon Technologies AG - c:\WINDOWS\system32\IFXTCS.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Lookout Citadel Server (LkCitadelServer) - National Instruments, Inc. - C:\WINDOWS\system32\lkcitdl.exe
O23 - Service: National Instruments PSP Server Locator (lkClassAds) - National Instruments Corporation - C:\WINDOWS\system32\lkads.exe
O23 - Service: National Instruments Time Synchronization (lkTimeSync) - National Instruments Corporation - C:\WINDOWS\system32\lktsrv.exe
O23 - Service: MicroSCADA - Unknown owner - D:\CAP505\prog\exec\serv.exe
O23 - Service: MSSQLServerADHelper - Unknown owner - C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe (file missing)
O23 - Service: NI Configuration Manager (mxssvr) - National Instruments Corporation - C:\Program Files\National Instruments\MAX\nimxs.exe
O23 - Service: National Instruments Domain Service (NIDomainService) - National Instruments Corporation - C:\Program Files\National Instruments\Shared\Security\nidmsrv.exe
O23 - Service: NILM License Manager - Macrovision Corporation - C:\Program Files\National Instruments\Shared\License Manager\Bin\lmgrd.exe
O23 - Service: NI Service Locator (niSvcLoc) - National Instruments Corporation - C:\WINDOWS\system32\nisvcloc.exe
O23 - Service: National Instruments Variable Engine (NITaggerService) - National Instruments Corporation - C:\Program Files\National Instruments\Shared\Tagger\tagsrv.exe
O23 - Service: OpcEnum - OPC Foundation - C:\WINDOWS\system32\OpcEnum.exe
O23 - Service: Personal Secure Drive Service (PersonalSecureDriveService) - Infineon Technologies AG - c:\Program Files\Infineon\Security Platform Software\PSDsrvc.EXE
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: S7 Global Services (s7asysvx) - SIEMENS AG - D:\Siemens\Step7\S7BIN\s7asysvx.exe
O23 - Service: SIMATIC IEPG Help Service (s7oiehsx) - SIEMENS AG - D:\Program Files\Common Files\Siemens\S7IEPG\s7oiehsx.exe
O23 - Service: FLIR Systems Camera Monitor (T3Srv) - FLIR Systems - C:\Program Files\FLIR Systems\Device Drivers\T3Srv.exe
O23 - Service: VNC Server Version 4 (WinVNC4) - RealVNC Ltd. - C:\Program Files\RealVNC\VNC4\WinVNC4.exe

--
End of file - 14298 bytes

Reklama
Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod memphisto » 15 kvě 2013 21:21

Vítej na fóru PC-HELP.CZ

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranìní historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit doèasné soubory Windows, vysypat koš atd.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po probìhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.

Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

lumirb
nováček
Příspěvky: 22
Registrován: květen 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod lumirb » 15 kvě 2013 21:53

Tady je log z Malwarebytes' Anti-Malware:

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.05.15.10

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 6.0.2900.5512
Lumír Bajgar :: BAJGAR [administrátor]

Ochrana: Povolena

15.5.2013 21:38:05
MBAM-log-2013-05-15 (21-51-19).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 369446
Uplynulý čas: 11 minut, 41 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Program pro Comet MS_is1 (Adware.Comet) -> Nebyla provedena žádná instrukce.

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 2
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Nebyla provedena žádná instrukce.

Nalezené složky: 5
C:\Program Files\Comet (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\FF2DataBase (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\SA T101 (Adware.Comet) -> Nebyla provedena žádná instrukce.

Nalezené soubory: 26
C:\logfile1.txt (Stolen.data) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\comlog.ico (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\FFSALIAS.FF2 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\FFSINFO.FF2 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\FFSTRAN.CFG (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\licence_free.txt (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Ms_234.CSY (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Ms_234.exe (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\ms_234lite.hlp (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\unins000.dat (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\unins000.exe (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\FF2DataBase\DATA.FF2 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\FF2DataBase\DataBin.FF2 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\FF2DataBase\FFSTRAN.CFG (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\FF2DataBase\Kanaly.FF2 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\FF2DataBase\KanalyP.FF2 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\FF2DataBase\kanalys.FF2 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\FF2DataBase\KanRefresh.FF2 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\FF2DataBase\Ustredny.FF2 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\FF2DataBase\Uzivatele.FF2 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\FF2DataBase\Vypadky.FF2 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\FF2DataBase\VypadkyBin.FF2 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\FF2DataBase\Zazn_par.FF2 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\FF2DataBase\zazn_pars.FF2 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\FF2DataBase\ZPRefresh.FF2 (Adware.Comet) -> Nebyla provedena žádná instrukce.
C:\Program Files\Comet\MS234\Data\SA T101\2010-04-21-1222.msr (Adware.Comet) -> Nebyla provedena žádná instrukce.

(konec)

lumirb
nováček
Příspěvky: 22
Registrován: květen 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod lumirb » 15 kvě 2013 21:57

# AdwCleaner v2.300 - Log vytvooen 15/05/2013 v 21:55:19
# Aktualizováno 28/04/2013 Xplode
# Operaení systém : Microsoft Windows XP Service Pack 3 (32 bits)
# Uživatel : Lumír Bajgar - BAJGAR
# Spuštin systém : Normální
# Spuštino z : C:\Documents and Settings\Lumír Bajgar\Local Settings\Data aplikací\Opera\Opera\temporary_downloads\adwcleaner.exe
# Volba [Prohledat]


***** [Služby] *****


***** [Soubory / Složky] *****


***** [Registry] *****

Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{31CF9EBE-5755-4A1D-AC25-2834D952D9B4}]
Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Hodnota Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{31CF9EBE-5755-4A1D-AC25-2834D952D9B4}]
Klíe Nalezeno : HKCU\Software\CToolbar
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31CF9EBE-5755-4A1D-AC25-2834D952D9B4}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Klíe Nalezeno : HKCU\Software\pdfforge.org
Klíe Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{31CF9EBE-5755-4A1D-AC25-2834D952D9B4}
Klíe Nalezeno : HKLM\Software\CToolbar
Klíe Nalezeno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094
Klíe Nalezeno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536
Klíe Nalezeno : HKLM\Software\pdfforge.org

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v6.0.2900.5512

[OK] Registry jsou eisté.

-\\ Opera v11.62.1347.0

Soubor : C:\Documents and Settings\Lumír Bajgar\Data aplikací\Opera\Opera\operaprefs.ini

[OK] Soubor je eistý.

*************************

AdwCleaner[R1].txt - [1858 octets] - [15/05/2013 21:55:19]

########## EOF - C:\AdwCleaner[R1].txt - [1918 octets] ##########

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 16 kvě 2013 09:51

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
Klikni na „ Vymazat
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

. Takže spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.

Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

lumirb
nováček
Příspěvky: 22
Registrován: květen 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod lumirb » 18 kvě 2013 16:37

# AdwCleaner v2.300 - Log vytvooen 18/05/2013 v 09:18:18
# Aktualizováno 28/04/2013 Xplode
# Operaení systém : Microsoft Windows XP Service Pack 3 (32 bits)
# Uživatel : Lumír Bajgar - BAJGAR
# Spuštin systém : Normální
# Spuštino z : C:\Documents and Settings\Lumír Bajgar\Local Settings\Data aplikací\Opera\Opera\temporary_downloads\adwcleaner.exe
# Volba [Vymazat]


***** [Služby] *****


***** [Soubory / Složky] *****


***** [Registry] *****

Hodnota Vymazáno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{31CF9EBE-5755-4A1D-AC25-2834D952D9B4}]
Hodnota Vymazáno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Hodnota Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{31CF9EBE-5755-4A1D-AC25-2834D952D9B4}]
Klíe Vymazáno : HKCU\Software\CToolbar
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31CF9EBE-5755-4A1D-AC25-2834D952D9B4}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Klíe Vymazáno : HKCU\Software\pdfforge.org
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{31CF9EBE-5755-4A1D-AC25-2834D952D9B4}
Klíe Vymazáno : HKLM\Software\CToolbar
Klíe Vymazáno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094
Klíe Vymazáno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536
Klíe Vymazáno : HKLM\Software\pdfforge.org

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v6.0.2900.5512

[OK] Registry jsou eisté.

-\\ Google Chrome v26.0.1410.64

Soubor : C:\Documents and Settings\Lumír Bajgar\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Preferences

[OK] Soubor je eistý.

-\\ Opera v11.62.1347.0

Soubor : C:\Documents and Settings\Lumír Bajgar\Data aplikací\Opera\Opera\operaprefs.ini

[OK] Soubor je eistý.

*************************

AdwCleaner[R1].txt - [1987 octets] - [15/05/2013 21:55:19]
AdwCleaner[R2].txt - [2231 octets] - [18/05/2013 09:15:01]
AdwCleaner[S1].txt - [2160 octets] - [18/05/2013 09:18:18]

########## EOF - C:\AdwCleaner[S1].txt - [2220 octets] ##########

lumirb
nováček
Příspěvky: 22
Registrován: květen 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod lumirb » 18 kvě 2013 16:38

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Verze: v2013.05.17.05

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 6.0.2900.5512
Lumír Bajgar :: BAJGAR [administrátor]

18.5.2013 9:33:39
mbam-log-2013-05-18 (09-33-39).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 373718
Uplynulý čas: 10 minut, 57 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Program pro Comet MS_is1 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 2
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Přesun do karantény a opravení se zdařilo.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Přesun do karantény a opravení se zdařilo.

Nalezené složky: 5
C:\Program Files\Comet (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\FF2DataBase (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\SA T101 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.

Nalezené soubory: 26
C:\logfile1.txt (Stolen.data) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\comlog.ico (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\FFSALIAS.FF2 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\FFSINFO.FF2 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\FFSTRAN.CFG (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\licence_free.txt (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Ms_234.CSY (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Ms_234.exe (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\ms_234lite.hlp (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\unins000.dat (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\unins000.exe (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\FF2DataBase\DATA.FF2 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\FF2DataBase\DataBin.FF2 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\FF2DataBase\FFSTRAN.CFG (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\FF2DataBase\Kanaly.FF2 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\FF2DataBase\KanalyP.FF2 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\FF2DataBase\kanalys.FF2 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\FF2DataBase\KanRefresh.FF2 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\FF2DataBase\Ustredny.FF2 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\FF2DataBase\Uzivatele.FF2 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\FF2DataBase\Vypadky.FF2 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\FF2DataBase\VypadkyBin.FF2 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\FF2DataBase\Zazn_par.FF2 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\FF2DataBase\zazn_pars.FF2 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\FF2DataBase\ZPRefresh.FF2 (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Comet\MS234\Data\SA T101\2010-04-21-1222.msr (Adware.Comet) -> Přesun do karantény a smazání se zdařilo.

(konec)

lumirb
nováček
Příspěvky: 22
Registrován: květen 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod lumirb » 18 kvě 2013 16:39

RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Lumír Bajgar [Práva správce]
Mód : Kontrola -- Datum : 05/18/2013 09:52:22
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[SUSP PATH] sm56hlpr.exe -- C:\WINDOWS\sm56hlpr.exe [7] -> SMAZÁNO [TermProc]

¤¤¤ ¤¤¤ Záznamy Registrů: : 1 ¤¤¤
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\WINDOWS\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: ST9120822AS +++++
--- User ---
[MBR] 4101b20c4530cdaabab9877a38721986
[BSP] b40fdad9500eb5f18c509730ea4e0768 : Windows XP MBR Code
Partition table:
0 - [XXXXXX] FAT32 (0x1b) [HIDDEN!] Offset (sectors): 63 | Size: 1906 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 3903795 | Size: 67617 Mo
2 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 142384095 | Size: 44947 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[1]_S_05182013_02d0952.txt >>
RKreport[1]_S_05182013_02d0952.txt

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Žbeky » 18 kvě 2013 19:14

Zavři všechny programy a prohlížeče.
Odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller (Pro Windows Vista nebo WIN7 klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status box zobrazuje "Scan" "
- Klikni na "Delete"
- Počkej, dokud status box zobrazuje "Smazání - Finished"
- Klikni na "Zprávy", zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [1].txt na ploše.
- Zavři RogueKiller

Stáhni si TDSSKiller

Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.

Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

lumirb
nováček
Příspěvky: 22
Registrován: květen 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod lumirb » 18 kvě 2013 21:30

RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Lumír Bajgar [Práva správce]
Mód : Odebrat -- Datum : 05/18/2013 21:22:04
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[SUSP PATH] sm56hlpr.exe -- C:\WINDOWS\sm56hlpr.exe [7] -> SMAZÁNO [TermProc]

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\WINDOWS\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: ST9120822AS +++++
--- User ---
[MBR] 4101b20c4530cdaabab9877a38721986
[BSP] b40fdad9500eb5f18c509730ea4e0768 : Windows XP MBR Code
Partition table:
0 - [XXXXXX] FAT32 (0x1b) [HIDDEN!] Offset (sectors): 63 | Size: 1906 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 3903795 | Size: 67617 Mo
2 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 142384095 | Size: 44947 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[4]_D_05182013_02d2122.txt >>
RKreport[1]_S_05182013_02d0952.txt ; RKreport[2]_S_05182013_02d2117.txt ; RKreport[3]_D_05182013_02d2119.txt ; RKreport[4]_D_05182013_02d2122.txt

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Orcus » 19 kvě 2013 01:50

Rogue OK, ještě zbylé dva logy.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

lumirb
nováček
Příspěvky: 22
Registrován: květen 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod lumirb » 19 kvě 2013 11:58

21:35:29.0906 5700 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
21:35:30.0125 5700 ============================================================
21:35:30.0125 5700 Current date / time: 2013/05/18 21:35:30.0125
21:35:30.0125 5700 SystemInfo:
21:35:30.0125 5700
21:35:30.0125 5700 OS Version: 5.1.2600 ServicePack: 3.0
21:35:30.0125 5700 Product type: Workstation
21:35:30.0125 5700 ComputerName: BAJGAR
21:35:30.0125 5700 UserName: Lumír Bajgar
21:35:30.0125 5700 Windows directory: C:\WINDOWS
21:35:30.0125 5700 System windows directory: C:\WINDOWS
21:35:30.0125 5700 Processor architecture: Intel x86
21:35:30.0125 5700 Number of processors: 2
21:35:30.0125 5700 Page size: 0x1000
21:35:30.0125 5700 Boot type: Normal boot
21:35:30.0125 5700 ============================================================
21:35:31.0203 5700 Drive \Device\Harddisk0\DR0 - Size: 0x1BF2976000 (111.79 Gb), SectorSize: 0x200, Cylinders: 0x3901, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
21:35:31.0203 5700 ============================================================
21:35:31.0203 5700 \Device\Harddisk0\DR0:
21:35:31.0203 5700 MBR partitions:
21:35:31.0203 5700 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3B9133, BlocksNum 0x8410AAC
21:35:31.0234 5700 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x87C9C1E, BlocksNum 0x57C9BA3
21:35:31.0234 5700 ============================================================
21:35:31.0281 5700 C: <-> \Device\Harddisk0\DR0\Partition1
21:35:31.0343 5700 D: <-> \Device\Harddisk0\DR0\Partition2
21:35:31.0343 5700 ============================================================
21:35:31.0343 5700 Initialize success
21:35:31.0343 5700 ============================================================
21:35:35.0812 4152 ============================================================
21:35:35.0812 4152 Scan started
21:35:35.0812 4152 Mode: Manual;
21:35:35.0812 4152 ============================================================
21:35:37.0031 4152 ================ Scan system memory ========================
21:35:37.0031 4152 Scan interrupted by user!
21:35:37.0031 4152 ================ Scan services =============================
21:35:37.0031 4152 Scan interrupted by user!
21:35:37.0031 4152 ================ Scan global ===============================
21:35:37.0031 4152 Scan interrupted by user!
21:35:37.0031 4152 ================ Scan MBR ==================================
21:35:37.0031 4152 Scan interrupted by user!
21:35:37.0031 4152 ================ Scan VBR ==================================
21:35:37.0031 4152 Scan interrupted by user!
21:35:37.0031 4152 ============================================================
21:35:37.0031 4152 Scan finished
21:35:37.0031 4152 ============================================================
21:35:37.0031 0996 Detected object count: 0
21:35:37.0031 0996 Actual detected object count: 0
21:35:39.0406 0644 ============================================================
21:35:39.0406 0644 Scan started
21:35:39.0406 0644 Mode: Manual;
21:35:39.0406 0644 ============================================================
21:35:39.0812 0644 ================ Scan system memory ========================
21:35:42.0984 0644 System memory - ok
21:35:42.0984 0644 ================ Scan services =============================
21:35:43.0156 0644 [ 914A9709FC3BF419AD2F85547F2A4832 ] 61883 C:\WINDOWS\system32\DRIVERS\61883.sys
21:35:43.0156 0644 61883 - ok
21:35:43.0203 0644 [ D76E9F5A991458A9F7E28395479B3150 ] 6to4 C:\WINDOWS\System32\6to4svc.dll
21:35:43.0296 0644 6to4 - ok
21:35:43.0296 0644 Abiosdsk - ok
21:35:43.0296 0644 abp480n5 - ok
21:35:43.0328 0644 [ 4FE34F1F3126B61FCC6B2043AA8112C9 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
21:35:43.0328 0644 ACPI - ok
21:35:43.0359 0644 [ AFDFF022A01F0B11C776F0860C3B282F ] ACPIEC C:\WINDOWS\system32\DRIVERS\ACPIEC.sys
21:35:43.0359 0644 ACPIEC - ok
21:35:43.0390 0644 [ A6009183C489531B681D61AE4AC75265 ] ADIHdAudAddService C:\WINDOWS\system32\drivers\ADIHdAud.sys
21:35:43.0390 0644 ADIHdAudAddService - ok
21:35:43.0468 0644 [ F040037B149FD0F5A5044AE563390FA7 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
21:35:43.0468 0644 AdobeFlashPlayerUpdateSvc - ok
21:35:43.0468 0644 adpu160m - ok
21:35:43.0500 0644 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
21:35:43.0500 0644 aec - ok
21:35:43.0515 0644 [ 15E655BAA989444F56787EF558823643 ] AegisP C:\WINDOWS\system32\DRIVERS\AegisP.sys
21:35:43.0515 0644 AegisP - ok
21:35:43.0546 0644 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
21:35:43.0546 0644 AFD - ok
21:35:43.0562 0644 Aha154x - ok
21:35:43.0562 0644 aic78u2 - ok
21:35:43.0578 0644 aic78xx - ok
21:35:43.0609 0644 [ E0A6FA244B8624D78FE5FF6F56A33BAE ] Alerter C:\WINDOWS\system32\alrsvc.dll
21:35:43.0609 0644 Alerter - ok
21:35:43.0640 0644 [ 88842DE939A827577BF24243699AC80A ] ALG C:\WINDOWS\System32\alg.exe
21:35:43.0640 0644 ALG - ok
21:35:43.0640 0644 AliIde - ok
21:35:43.0828 0644 [ 32DA366C7851ED088CA33CFBAD367441 ] almservice D:\Program Files\Common Files\Siemens\sws\almsrv\almsrvx.exe
21:35:43.0843 0644 almservice - ok
21:35:43.0843 0644 amsint - ok
21:35:43.0890 0644 [ A086BEB7A931E8FB496123A820F23D5B ] AMTFLASH C:\WINDOWS\system32\drivers\AmtFlash.sys
21:35:43.0890 0644 AMTFLASH - ok
21:35:43.0921 0644 [ 6B8E7A90E576D4FE308F97C69060A171 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
21:35:43.0937 0644 AppMgmt - ok
21:35:43.0968 0644 [ B5B8A80875C1DEDEDA8B02765642C32F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys
21:35:43.0968 0644 Arp1394 - ok
21:35:43.0968 0644 asc - ok
21:35:43.0984 0644 asc3350p - ok
21:35:43.0984 0644 asc3550 - ok
21:35:44.0078 0644 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
21:35:44.0078 0644 aspnet_state - ok
21:35:44.0109 0644 [ DE91D0D73C3E61E6826D98FAC2FAC729 ] Asushwio C:\WINDOWS\system32\drivers\Asushwio.sys
21:35:44.0109 0644 Asushwio - ok
21:35:44.0156 0644 [ 4AF5F360BA1E8794D32B366E45A64A0A ] aswFsBlk C:\WINDOWS\system32\drivers\aswFsBlk.sys
21:35:44.0156 0644 aswFsBlk - ok
21:35:44.0187 0644 [ 1F7094D4268D46F718C51286DC189791 ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
21:35:44.0187 0644 aswMonFlt - ok
21:35:44.0203 0644 [ 7B43265F92257A21CBFD88E7A651044C ] aswRdr C:\WINDOWS\system32\drivers\aswRdr.sys
21:35:44.0203 0644 aswRdr - ok
21:35:44.0234 0644 [ B680134BA1813B78B47FDD1DFF223CA5 ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
21:35:44.0234 0644 aswRvrt - ok
21:35:44.0296 0644 [ 6CAB0A5991C5C0FC63F5E66593E71D7E ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
21:35:44.0296 0644 aswSnx - ok
21:35:44.0328 0644 [ 99102F60F344BEBAF4F6114514FD28D3 ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
21:35:44.0328 0644 aswSP - ok
21:35:44.0359 0644 [ 1F71F170D90E42EFDE9633D81D5E12DC ] aswTdi C:\WINDOWS\system32\drivers\aswTdi.sys
21:35:44.0359 0644 aswTdi - ok
21:35:44.0390 0644 [ 16B8E3CD50A460EC32CA680C8210A0A9 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
21:35:44.0390 0644 aswVmm - ok
21:35:44.0421 0644 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
21:35:44.0421 0644 AsyncMac - ok
21:35:44.0437 0644 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
21:35:44.0437 0644 atapi - ok
21:35:44.0453 0644 Atdisk - ok
21:35:44.0500 0644 [ 92BD3F810F195AF9DE3CF9CABC65A84E ] Ati HotKey Poller C:\WINDOWS\system32\Ati2evxx.exe
21:35:44.0500 0644 Ati HotKey Poller - ok
21:35:44.0609 0644 [ 79998EA083CCE7E93C80BAEBBB38CE66 ] ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
21:35:44.0625 0644 ati2mtag - ok
21:35:44.0640 0644 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
21:35:44.0640 0644 Atmarpc - ok
21:35:44.0671 0644 [ DE31B88962A8645DBA5A37B993E7B0F1 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
21:35:44.0671 0644 AudioSrv - ok
21:35:44.0687 0644 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
21:35:44.0687 0644 audstub - ok
21:35:44.0843 0644 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
21:35:44.0843 0644 avast! Antivirus - ok
21:35:44.0875 0644 [ F8E6956A614F15A0860474C5E2A7DE6B ] Avc C:\WINDOWS\system32\DRIVERS\avc.sys
21:35:44.0875 0644 Avc - ok
21:35:44.0890 0644 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
21:35:44.0890 0644 Beep - ok
21:35:44.0937 0644 [ 19395D092FD85DDC2D9C7729CF5A2AC8 ] BITS C:\WINDOWS\system32\qmgr.dll
21:35:44.0984 0644 BITS - ok
21:35:45.0000 0644 [ 89E739BBA5F636297EA5B5F811189E06 ] Browser C:\WINDOWS\System32\browser.dll
21:35:45.0000 0644 Browser - ok
21:35:45.0015 0644 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
21:35:45.0031 0644 cbidf2k - ok
21:35:45.0046 0644 [ 0BE5AEF125BE881C4F854C554F2B025C ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
21:35:45.0046 0644 CCDECODE - ok
21:35:45.0046 0644 cd20xrnt - ok
21:35:45.0062 0644 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
21:35:45.0062 0644 Cdaudio - ok
21:35:45.0078 0644 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
21:35:45.0093 0644 Cdfs - ok
21:35:45.0109 0644 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
21:35:45.0109 0644 Cdrom - ok
21:35:45.0109 0644 Changer - ok
21:35:45.0156 0644 [ E390DC1D7C461D7D56EC53402F329928 ] CiSvc C:\WINDOWS\system32\cisvc.exe
21:35:45.0156 0644 CiSvc - ok
21:35:45.0171 0644 [ 064507A8DFA8C5C7E2FFDDD3E6F424FA ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
21:35:45.0171 0644 ClipSrv - ok
21:35:45.0203 0644 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:35:45.0250 0644 clr_optimization_v2.0.50727_32 - ok
21:35:45.0281 0644 [ 0F6C187D38D98F8DF904589A5F94D411 ] CmBatt C:\WINDOWS\system32\DRIVERS\CmBatt.sys
21:35:45.0281 0644 CmBatt - ok
21:35:45.0281 0644 CmdIde - ok
21:35:45.0312 0644 [ 6E4C9F21F0FAE8940661144F41B13203 ] Compbatt C:\WINDOWS\system32\DRIVERS\compbatt.sys
21:35:45.0312 0644 Compbatt - ok
21:35:45.0328 0644 COMSysApp - ok
21:35:45.0343 0644 Cpqarray - ok
21:35:45.0390 0644 [ F3AB0933CBD166D271992F411C27CCAF ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
21:35:45.0390 0644 CryptSvc - ok
21:35:45.0421 0644 [ DBD89BC0DBE00DCD245BE8F61DBEE291 ] cvintdrv C:\WINDOWS\system32\drivers\cvintdrv.sys
21:35:45.0421 0644 cvintdrv - ok
21:35:45.0437 0644 dac2w2k - ok
21:35:45.0437 0644 dac960nt - ok
21:35:45.0437 0644 DBGMSG - ok
21:35:45.0500 0644 [ BE27674D1CBC3214AEC84B4336A38BBF ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
21:35:45.0515 0644 DcomLaunch - ok
21:35:45.0562 0644 [ 8C9A53E285AC5E6704844D0459EC85BE ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
21:35:45.0578 0644 Dhcp - ok
21:35:45.0578 0644 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
21:35:45.0578 0644 Disk - ok
21:35:45.0578 0644 dmadmin - ok
21:35:45.0625 0644 [ DB5FD2BF5B07DC54BFCB3664FF05BD7C ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
21:35:45.0640 0644 dmboot - ok
21:35:45.0640 0644 [ FFF1720AF51171F32F1EAD5CF71F2810 ] dmio C:\WINDOWS\system32\drivers\dmio.sys
21:35:45.0656 0644 dmio - ok
21:35:45.0671 0644 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
21:35:45.0671 0644 dmload - ok
21:35:45.0703 0644 [ 2BFEFE9E865655A76982F050450B9591 ] dmserver C:\WINDOWS\System32\dmserver.dll
21:35:45.0703 0644 dmserver - ok
21:35:45.0718 0644 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
21:35:45.0718 0644 DMusic - ok
21:35:45.0750 0644 [ DFAA406BF19F4EE806A6F8D4342137F7 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
21:35:45.0750 0644 Dnscache - ok
21:35:45.0781 0644 [ 4A3E2BD20157A0946751229E92EB8621 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
21:35:45.0781 0644 Dot3svc - ok
21:35:45.0812 0644 [ 01275752A9BBAABAC8AC306985FAC300 ] Dpmtrcdd C:\WINDOWS\system32\DRIVERS\dpmtrcdd.sys
21:35:45.0812 0644 Dpmtrcdd - ok
21:35:45.0812 0644 dpti2o - ok
21:35:45.0859 0644 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
21:35:45.0859 0644 drmkaud - ok
21:35:45.0875 0644 [ 0887D9C2BE8D940778CAD1E3B85F2A41 ] EapHost C:\WINDOWS\System32\eapsvc.dll
21:35:45.0890 0644 EapHost - ok
21:35:45.0937 0644 [ CE37E3D51912E59C80C6D84337C0B4CD ] ElbyCDFL C:\WINDOWS\system32\Drivers\ElbyCDFL.sys
21:35:45.0937 0644 ElbyCDFL - ok
21:35:45.0953 0644 [ 178CC9403816C082D22A1D47FA1F9C85 ] ElbyCDIO C:\WINDOWS\system32\Drivers\ElbyCDIO.sys
21:35:45.0953 0644 ElbyCDIO - ok
21:35:45.0984 0644 [ 5C33B1E67A33993C3125A6A7E44A435E ] eprdrv C:\WINDOWS\System32\drivers\eprdrv.SYS
21:35:45.0984 0644 eprdrv - ok
21:35:46.0015 0644 [ A2A4912798F2BE706ABADD3D30800D16 ] ERSvc C:\WINDOWS\System32\ersvc.dll
21:35:46.0015 0644 ERSvc - ok
21:35:46.0046 0644 [ 9EF697AF07BB8DD82C3B02CA953A95B7 ] Eventlog C:\WINDOWS\system32\services.exe
21:35:46.0062 0644 Eventlog - ok
21:35:46.0125 0644 [ A371F11EF07653591C8DE26AFB13CE7F ] EventSystem C:\WINDOWS\system32\es.dll
21:35:46.0125 0644 EventSystem - ok
21:35:46.0218 0644 [ 6A197698A141FFE7651B962AE3172008 ] EvtEng C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
21:35:46.0218 0644 EvtEng - ok
21:35:46.0265 0644 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
21:35:46.0265 0644 Fastfat - ok
21:35:46.0296 0644 [ EE9A2B9EA968A792A053C9D1A86BF870 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
21:35:46.0312 0644 FastUserSwitchingCompatibility - ok
21:35:46.0343 0644 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys
21:35:46.0343 0644 Fdc - ok
21:35:46.0359 0644 [ AC366695A0796560AA37215AD5762AAF ] Fips C:\WINDOWS\system32\drivers\Fips.sys
21:35:46.0359 0644 Fips - ok
21:35:46.0390 0644 [ 534B70E83575B80D1985B39CB878B81A ] FLIR1394NET C:\WINDOWS\system32\DRIVERS\FLIR1394.sys
21:35:46.0390 0644 FLIR1394NET - ok
21:35:46.0421 0644 [ E3B56ACF65DCDC4393C55CDBBF10F486 ] FLIRUSBNET C:\WINDOWS\system32\DRIVERS\FLIRUSB.sys
21:35:46.0421 0644 FLIRUSBNET - ok
21:35:46.0437 0644 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
21:35:46.0437 0644 Flpydisk - ok
21:35:46.0484 0644 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
21:35:46.0484 0644 FltMgr - ok
21:35:46.0562 0644 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
21:35:46.0562 0644 FontCache3.0.0.0 - ok
21:35:46.0578 0644 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
21:35:46.0578 0644 Fs_Rec - ok
21:35:46.0609 0644 [ 07A83A2E070357075C2056810C67C9E4 ] FTD2XX C:\WINDOWS\system32\Drivers\FTD2XX.sys
21:35:46.0609 0644 FTD2XX - ok
21:35:46.0656 0644 [ 47B9CF937AC479046DA289BD5A769CE9 ] FTDIBUS C:\WINDOWS\system32\drivers\ftdibus.sys
21:35:46.0656 0644 FTDIBUS - ok
21:35:46.0703 0644 [ 4E664D8541DB4A66B73A24257E322E1F ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
21:35:46.0703 0644 Ftdisk - ok
21:35:46.0718 0644 [ 216B9A2191676034999785C7F94FA5D6 ] FTSER2K C:\WINDOWS\system32\drivers\ftser2k.sys
21:35:46.0718 0644 FTSER2K - ok
21:35:46.0750 0644 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
21:35:46.0750 0644 Gpc - ok
21:35:46.0828 0644 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
21:35:46.0828 0644 gupdate - ok
21:35:46.0843 0644 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
21:35:46.0843 0644 gupdatem - ok
21:35:46.0890 0644 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
21:35:46.0890 0644 HDAudBus - ok
21:35:46.0968 0644 [ FCFE31FB75F8A6295B6B0AF87A626282 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
21:35:46.0968 0644 helpsvc - ok
21:35:46.0968 0644 HidServ - ok
21:35:46.0984 0644 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
21:35:46.0984 0644 HidUsb - ok
21:35:47.0015 0644 [ 7A6B320928F86BC851530D63C82965D9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
21:35:47.0031 0644 hkmsvc - ok
21:35:47.0109 0644 [ C5A288E4CEEF5A26D105117BAA3763AB ] HP Status Server C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBOID.EXE
21:35:47.0109 0644 HP Status Server - ok
21:35:47.0109 0644 hpn - ok
21:35:47.0171 0644 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
21:35:47.0171 0644 HTTP - ok
21:35:47.0218 0644 [ 58FE2F2DA3BC5573F4A35B3760D3125F ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
21:35:47.0234 0644 HTTPFilter - ok
21:35:47.0234 0644 i2omgmt - ok
21:35:47.0234 0644 i2omp - ok
21:35:47.0281 0644 [ C528E27945367191E7BAE364930B6932 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
21:35:47.0281 0644 i8042prt - ok
21:35:47.0390 0644 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
21:35:47.0390 0644 IDriverT - ok
21:35:47.0531 0644 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
21:35:47.0546 0644 idsvc - ok
21:35:47.0609 0644 [ 22FFE23332F1C5ED2B1CE886DC587F1B ] IFXSpMgtSrv c:\WINDOWS\system32\IFXSPMGT.exe
21:35:47.0609 0644 IFXSpMgtSrv - ok
21:35:47.0671 0644 [ 7D3C0EBB225B38C008EE292BAE6B2C5B ] IFXTCS c:\WINDOWS\system32\IFXTCS.exe
21:35:47.0687 0644 IFXTCS - ok
21:35:47.0718 0644 [ 0A359837E021BC04A04A6FD189492C65 ] IFXTPM C:\WINDOWS\system32\DRIVERS\IFXTPM.SYS
21:35:47.0718 0644 IFXTPM - ok
21:35:47.0734 0644 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
21:35:47.0734 0644 Imapi - ok
21:35:47.0781 0644 [ F7B93AAFAD33B2320954C17E26C8D361 ] ImapiService C:\WINDOWS\system32\imapi.exe
21:35:47.0796 0644 ImapiService - ok
21:35:47.0796 0644 ini910u - ok
21:35:47.0812 0644 IntelIde - ok
21:35:47.0843 0644 [ 27B290D632AF2CF3CF40BFDDB7370985 ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
21:35:47.0843 0644 intelppm - ok
21:35:47.0859 0644 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys
21:35:47.0859 0644 Ip6Fw - ok
21:35:47.0890 0644 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
21:35:47.0890 0644 IpFilterDriver - ok
21:35:47.0937 0644 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
21:35:47.0937 0644 IpInIp - ok
21:35:47.0953 0644 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
21:35:47.0953 0644 IpNat - ok
21:35:47.0968 0644 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
21:35:47.0968 0644 IPSec - ok
21:35:48.0015 0644 [ EE8CC26924A6F07972BBF04487EBD552 ] ipswuio C:\WINDOWS\system32\DRIVERS\ipswuio.sys
21:35:48.0031 0644 ipswuio - ok
21:35:48.0046 0644 [ ACA5E7B54409F9CB5EED97ED0C81120E ] irda C:\WINDOWS\system32\DRIVERS\irda.sys
21:35:48.0046 0644 irda - ok
21:35:48.0093 0644 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
21:35:48.0093 0644 IRENUM - ok
21:35:48.0125 0644 [ 8024EA8C5B2D2A4D201F418B0AADB804 ] Irmon C:\WINDOWS\System32\irmon.dll
21:35:48.0125 0644 Irmon - ok
21:35:48.0171 0644 [ CC9F8A2D60AED1A51A3AC34C59B987AE ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
21:35:48.0171 0644 isapnp - ok
21:35:48.0296 0644 [ 9AA67569D5257462E230767510B0C815 ] JavaQuickStarterService C:\Program Files\Java\jre6\bin\jqs.exe
21:35:48.0296 0644 JavaQuickStarterService - ok
21:35:48.0296 0644 [ 1B6162FE7F66B1A71A4B70F941C4AA9B ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
21:35:48.0296 0644 Kbdclass - ok
21:35:48.0328 0644 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
21:35:48.0328 0644 kmixer - ok
21:35:48.0375 0644 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
21:35:48.0375 0644 KSecDD - ok
21:35:48.0406 0644 [ 3428E8F86F8ADD36B42FB23542C7B3E4 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
21:35:48.0421 0644 lanmanserver - ok
21:35:48.0468 0644 [ 936C1D110232D23B621CB0196E4F80F0 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
21:35:48.0484 0644 lanmanworkstation - ok
21:35:48.0500 0644 lbrtfdc - ok
21:35:48.0578 0644 [ 5712DCBE52D68865CCA91AE04807B755 ] LightScribeService c:\Program Files\Common Files\LightScribe\LSSrvc.exe
21:35:48.0578 0644 LightScribeService - ok
21:35:48.0625 0644 [ 20CDB07017497C94A0BAD253C4BAFCBC ] LkCitadelServer C:\WINDOWS\system32\lkcitdl.exe
21:35:48.0640 0644 LkCitadelServer - ok
21:35:48.0671 0644 [ 40D66FAB9E4C9DEA0076CDEE2391E8BA ] lkClassAds C:\WINDOWS\system32\lkads.exe
21:35:48.0671 0644 lkClassAds - ok
21:35:48.0718 0644 [ F03846D3C08A2358874D0D3E5EF6E748 ] lkTimeSync C:\WINDOWS\system32\lktsrv.exe
21:35:48.0718 0644 lkTimeSync - ok
21:35:48.0765 0644 [ 0AB159F536E3E8F7F07113702A07CCA5 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
21:35:48.0765 0644 LmHosts - ok
21:35:48.0796 0644 [ 4470E3C1E0C3378E4CAB137893C12C3A ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys
21:35:48.0796 0644 MBAMProtector - ok
21:35:48.0843 0644 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
21:35:48.0843 0644 MBAMScheduler - ok
21:35:48.0875 0644 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
21:35:48.0890 0644 MBAMService - ok
21:35:48.0921 0644 [ 221CD1C815B8A6B79389C3F5D1018DE8 ] Messenger C:\WINDOWS\System32\msgsvc.dll
21:35:48.0921 0644 Messenger - ok
21:35:48.0953 0644 [ 343A2A29A86A2B2D7AFA68D0AB251E30 ] MICOMPar C:\WINDOWS\system32\drivers\MICOMPar.sys
21:35:48.0953 0644 MICOMPar - ok
21:35:49.0046 0644 [ 2D54B1181D498F50CC86CE85204638A2 ] MicroSCADA D:\CAP505\prog\exec\serv.exe
21:35:49.0046 0644 MicroSCADA - ok
21:35:49.0062 0644 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
21:35:49.0062 0644 mnmdd - ok
21:35:49.0109 0644 [ 9A57D046F88F4B69751B11FD40088A61 ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
21:35:49.0109 0644 mnmsrvc - ok
21:35:49.0156 0644 [ 44032B0C6D9954D3FD26438330B99EE7 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
21:35:49.0156 0644 Modem - ok
21:35:49.0218 0644 [ F3AEF73CB4DF553871DA0A3D429847B0 ] mosuport C:\WINDOWS\system32\DRIVERS\mosuport.sys
21:35:49.0234 0644 mosuport - ok
21:35:49.0250 0644 [ 4CB582831DBDE63CE43B45D771218374 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
21:35:49.0265 0644 Mouclass - ok
21:35:49.0296 0644 [ BB269EBA740737AB749B214D568B6812 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
21:35:49.0296 0644 mouhid - ok
21:35:49.0312 0644 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
21:35:49.0312 0644 MountMgr - ok
21:35:49.0343 0644 [ C0F8E0C2C3C0437CF37C6781896DC3EC ] MPE C:\WINDOWS\system32\DRIVERS\MPE.sys
21:35:49.0343 0644 MPE - ok
21:35:49.0359 0644 mraid35x - ok
21:35:49.0390 0644 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
21:35:49.0390 0644 MRxDAV - ok
21:35:49.0453 0644 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
21:35:49.0453 0644 MRxSmb - ok
21:35:49.0500 0644 [ 6DB4D1521CABA9A5FFAB54ADE0AE867D ] MSDTC C:\WINDOWS\system32\msdtc.exe
21:35:49.0500 0644 MSDTC - ok
21:35:49.0515 0644 [ 1477849772712BAC69C144DCF2C9CE81 ] MSDV C:\WINDOWS\system32\DRIVERS\msdv.sys
21:35:49.0515 0644 MSDV - ok
21:35:49.0546 0644 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
21:35:49.0546 0644 Msfs - ok
21:35:49.0562 0644 MSIServer - ok
21:35:49.0593 0644 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
21:35:49.0593 0644 MSKSSRV - ok
21:35:49.0625 0644 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
21:35:49.0625 0644 MSPCLOCK - ok
21:35:49.0640 0644 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
21:35:49.0640 0644 MSPQM - ok
21:35:49.0656 0644 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
21:35:49.0656 0644 mssmbios - ok
21:35:50.0046 0644 [ 751961E128DBCC7A32304339C4BDEFF0 ] MSSQL$PINNACLESYS C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
21:35:50.0125 0644 MSSQL$PINNACLESYS - ok
21:35:50.0125 0644 MSSQLServerADHelper - ok
21:35:50.0140 0644 [ E53736A9E30C45FA9E7B5EAC55056D1D ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
21:35:50.0140 0644 MSTEE - ok
21:35:50.0187 0644 [ E333010A50BF603ACC350F6019E9CE02 ] MTsensor C:\WINDOWS\system32\DRIVERS\ATKACPI.sys
21:35:50.0187 0644 MTsensor - ok
21:35:50.0218 0644 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
21:35:50.0218 0644 Mup - ok
21:35:50.0296 0644 [ A3BA8A14490FDBF106939C37A125E82C ] mxssvr C:\Program Files\National Instruments\MAX\nimxs.exe
21:35:50.0296 0644 mxssvr - ok
21:35:50.0312 0644 mxuwdrv2 - ok
21:35:50.0343 0644 [ 5B50F1B2A2ED47D560577B221DA734DB ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
21:35:50.0343 0644 NABTSFEC - ok
21:35:50.0390 0644 [ 6EA362E9DB03D44F6B996F4D8BE237E9 ] napagent C:\WINDOWS\System32\qagentrt.dll
21:35:50.0421 0644 napagent - ok
21:35:50.0437 0644 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
21:35:50.0437 0644 NDIS - ok
21:35:50.0453 0644 [ 7FF1F1FD8609C149AA432F95A8163D97 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys
21:35:50.0453 0644 NdisIP - ok
21:35:50.0484 0644 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
21:35:50.0484 0644 NdisTapi - ok
21:35:50.0500 0644 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
21:35:50.0500 0644 Ndisuio - ok
21:35:50.0515 0644 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
21:35:50.0515 0644 NdisWan - ok
21:35:50.0562 0644 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
21:35:50.0562 0644 NDProxy - ok
21:35:50.0578 0644 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
21:35:50.0578 0644 NetBIOS - ok
21:35:50.0609 0644 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
21:35:50.0609 0644 NetBT - ok
21:35:50.0656 0644 [ 933DE774986EC85E48210C44AB431DE6 ] NetDDE C:\WINDOWS\system32\netdde.exe
21:35:50.0656 0644 NetDDE - ok
21:35:50.0671 0644 [ 933DE774986EC85E48210C44AB431DE6 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
21:35:50.0671 0644 NetDDEdsdm - ok
21:35:50.0703 0644 [ ED0A176354487CEED65B80A7148AB739 ] Netlogon C:\WINDOWS\system32\lsass.exe
21:35:50.0718 0644 Netlogon - ok
21:35:50.0734 0644 [ 72E1E9E2977BE08BDEEDB6D8FD9D4D40 ] Netman C:\WINDOWS\System32\netman.dll
21:35:50.0750 0644 Netman - ok
21:35:50.0796 0644 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:35:50.0796 0644 NetTcpPortSharing - ok
21:35:50.0890 0644 [ E2F396F71A793A04839DBB6AF304A026 ] NETw3x32 C:\WINDOWS\system32\DRIVERS\NETw3x32.sys
21:35:50.0890 0644 NETw3x32 - ok
21:35:50.0921 0644 [ E9E47CFB2D461FA0FC75B7A74C6383EA ] NIC1394 C:\WINDOWS\system32\DRIVERS\nic1394.sys
21:35:50.0921 0644 NIC1394 - ok
21:35:50.0984 0644 [ 20EC1ED5FE2C5580803875E91441E435 ] NIDomainService C:\Program Files\National Instruments\Shared\Security\nidmsrv.exe
21:35:51.0000 0644 NIDomainService - ok
21:35:51.0093 0644 [ B17093B9A2C5F874975C732C1A8BA771 ] NILM License Manager C:\Program Files\National Instruments\Shared\License Manager\Bin\lmgrd.exe
21:35:51.0093 0644 NILM License Manager - ok
21:35:51.0109 0644 niSvcLoc - ok
21:35:51.0156 0644 [ C6E663D0B4099B7B0E6B32C1FE495C4C ] NITaggerService C:\Program Files\National Instruments\Shared\Tagger\tagsrv.exe
21:35:51.0156 0644 NITaggerService - ok
21:35:51.0187 0644 [ 39EE7C3BFBC64BA87CC8CF67386E814C ] Nla C:\WINDOWS\System32\mswsock.dll
21:35:51.0203 0644 Nla - ok
21:35:51.0218 0644 [ 1E421A6BCF2203CC61B821ADA9DE878B ] nm C:\WINDOWS\system32\DRIVERS\NMnt.sys
21:35:51.0234 0644 nm - ok
21:35:51.0250 0644 [ D21FEE8DB254BA762656878168AC1DB6 ] NPF C:\WINDOWS\system32\drivers\npf.sys
21:35:51.0250 0644 NPF - ok
21:35:51.0281 0644 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
21:35:51.0281 0644 Npfs - ok
21:35:51.0343 0644 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
21:35:51.0343 0644 Ntfs - ok
21:35:51.0375 0644 [ ED0A176354487CEED65B80A7148AB739 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
21:35:51.0375 0644 NtLmSsp - ok
21:35:51.0437 0644 [ 023DD70573D644F3D9C8B1258A7BFD08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
21:35:51.0453 0644 NtmsSvc - ok
21:35:51.0468 0644 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
21:35:51.0468 0644 Null - ok
21:35:51.0515 0644 [ ADB82FBC435AE7504082B3C714C3885D ] NWCWorkstation C:\WINDOWS\System32\nwwks.dll
21:35:51.0515 0644 NWCWorkstation - ok
21:35:51.0546 0644 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
21:35:51.0562 0644 NwlnkFlt - ok
21:35:51.0562 0644 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
21:35:51.0562 0644 NwlnkFwd - ok
21:35:51.0593 0644 [ 8B8B1BE2DBA4025DA6786C645F77F123 ] NwlnkIpx C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys
21:35:51.0593 0644 NwlnkIpx - ok
21:35:51.0625 0644 [ 56D34A67C05E94E16377C60609741FF8 ] NwlnkNb C:\WINDOWS\system32\DRIVERS\nwlnknb.sys
21:35:51.0640 0644 NwlnkNb - ok
21:35:51.0656 0644 [ C0BB7D1615E1ACBDC99757F6CEAF8CF0 ] NwlnkSpx C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys
21:35:51.0656 0644 NwlnkSpx - ok
21:35:51.0671 0644 [ 36B9B950E3D2E100970A48D8BAD86740 ] NWRDR C:\WINDOWS\system32\DRIVERS\nwrdr.sys
21:35:51.0671 0644 NWRDR - ok
21:35:51.0718 0644 [ 85D8C6514BD48DF2CC61DEBE3F879DC0 ] NwSapAgent C:\WINDOWS\System32\ipxsap.dll
21:35:51.0718 0644 NwSapAgent - ok
21:35:51.0734 0644 [ CA33832DF41AFB202EE7AEB05145922F ] ohci1394 C:\WINDOWS\system32\DRIVERS\ohci1394.sys
21:35:51.0734 0644 ohci1394 - ok
21:35:51.0781 0644 [ EAE6208900E2986F66F68B30AEF86E4D ] OpcEnum C:\WINDOWS\system32\OpcEnum.exe
21:35:51.0781 0644 OpcEnum - ok
21:35:51.0843 0644 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
21:35:51.0843 0644 ose - ok
21:35:51.0906 0644 [ 46F8DB73B4A53E543F8E371DC7C75BAE ] Parport C:\WINDOWS\system32\drivers\Parport.sys
21:35:51.0906 0644 Parport - ok
21:35:51.0921 0644 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
21:35:51.0937 0644 PartMgr - ok
21:35:51.0953 0644 [ 1FAE19D0457176318BBA4A8795656EBC ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
21:35:51.0953 0644 ParVdm - ok
21:35:51.0968 0644 [ 6CE351D149CB4BEFC702951E471E1730 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
21:35:51.0968 0644 PCI - ok
21:35:51.0984 0644 PCIDump - ok
21:35:52.0015 0644 [ 2DA4EC85E0EA7A45C6B2A05820492D5A ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
21:35:52.0015 0644 PCIIde - ok
21:35:52.0078 0644 [ 4FC31E6C19A5CE5198B1ABFF94CAE758 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
21:35:52.0093 0644 Pcmcia - ok
21:35:52.0125 0644 [ 84DCAA9BC5950F53905A032D99474236 ] pctvnet C:\WINDOWS\system32\DRIVERS\pctvnet.sys
21:35:52.0125 0644 pctvnet - ok
21:35:52.0125 0644 PDCOMP - ok
21:35:52.0140 0644 PDFRAME - ok
21:35:52.0140 0644 PDRELI - ok
21:35:52.0156 0644 PDRFRAME - ok
21:35:52.0156 0644 perc2 - ok
21:35:52.0156 0644 perc2hib - ok
21:35:52.0203 0644 [ E07D23DE6E595A24B3F0B8BAB0080149 ] PersonalSecureDrive C:\WINDOWS\System32\drivers\psd.sys
21:35:52.0203 0644 PersonalSecureDrive - ok
21:35:52.0250 0644 [ 4DBE06E401E2517746C6BE6F20381CCE ] PersonalSecureDriveService c:\Program Files\Infineon\Security Platform Software\PSDsrvc.EXE
21:35:52.0250 0644 PersonalSecureDriveService - ok
21:35:52.0265 0644 [ 9EF697AF07BB8DD82C3B02CA953A95B7 ] PlugPlay C:\WINDOWS\system32\services.exe
21:35:52.0281 0644 PlugPlay - ok
21:35:52.0312 0644 [ D31F88C5F19EEFA366A415D6BC5F2ABC ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.exe
21:35:52.0312 0644 Pml Driver HPZ12 - ok
21:35:52.0328 0644 [ ED0A176354487CEED65B80A7148AB739 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
21:35:52.0343 0644 PolicyAgent - ok
21:35:52.0375 0644 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
21:35:52.0375 0644 PptpMiniport - ok
21:35:52.0390 0644 [ ED0A176354487CEED65B80A7148AB739 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
21:35:52.0390 0644 ProtectedStorage - ok
21:35:52.0406 0644 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
21:35:52.0406 0644 PSched - ok
21:35:52.0453 0644 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
21:35:52.0453 0644 Ptilink - ok
21:35:52.0453 0644 ql1080 - ok
21:35:52.0453 0644 Ql10wnt - ok
21:35:52.0468 0644 ql12160 - ok
21:35:52.0468 0644 ql1240 - ok
21:35:52.0484 0644 ql1280 - ok
21:35:52.0515 0644 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
21:35:52.0515 0644 RasAcd - ok
21:35:52.0562 0644 [ 2B5E44EA009F2F374B980E1E9A70635D ] RasAuto C:\WINDOWS\System32\rasauto.dll
21:35:52.0562 0644 RasAuto - ok
21:35:52.0609 0644 [ 0207D26DDF796A193CCD9F83047BB5FC ] Rasirda C:\WINDOWS\system32\DRIVERS\rasirda.sys
21:35:52.0609 0644 Rasirda - ok
21:35:52.0625 0644 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
21:35:52.0625 0644 Rasl2tp - ok
21:35:52.0656 0644 [ D57554C664B64604BD1EE13EA2C07E77 ] RasMan C:\WINDOWS\System32\rasmans.dll
21:35:52.0671 0644 RasMan - ok
21:35:52.0671 0644 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
21:35:52.0671 0644 RasPppoe - ok
21:35:52.0703 0644 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
21:35:52.0703 0644 Raspti - ok
21:35:52.0718 0644 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
21:35:52.0718 0644 Rdbss - ok
21:35:52.0734 0644 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
21:35:52.0734 0644 RDPCDD - ok
21:35:52.0781 0644 [ 15CABD0F7C00C47C70124907916AF3F1 ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
21:35:52.0781 0644 rdpdr - ok
21:35:52.0828 0644 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
21:35:52.0828 0644 RDPWD - ok
21:35:53.0031 0644 [ C0D9D9711CB74EE9BC66353D8CBDAB0E ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
21:35:53.0031 0644 RDSessMgr - ok
21:35:53.0062 0644 [ 611BFD220305BE3A85AE876EA47D4AA5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
21:35:53.0062 0644 redbook - ok
21:35:53.0109 0644 [ D8F61AAAE73A1FBDE6F538BECC891F2F ] RegSrvc C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
21:35:53.0109 0644 RegSrvc - ok
21:35:53.0265 0644 [ 127C26B5371651043450E52542099ABA ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
21:35:53.0296 0644 RemoteAccess - ok
21:35:53.0312 0644 [ 8F31505484A190D5B22274708799F4EC ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
21:35:53.0328 0644 RemoteRegistry - ok
21:35:53.0375 0644 [ 7A6648B61661B1421FFAB762E391E33F ] rimmptsk C:\WINDOWS\system32\DRIVERS\rimmptsk.sys
21:35:53.0375 0644 rimmptsk - ok
21:35:53.0390 0644 [ 8F7012D1B6A71EE9C23CE93DCDBF9F4B ] rimsptsk C:\WINDOWS\system32\DRIVERS\rimsptsk.sys
21:35:53.0390 0644 rimsptsk - ok
21:35:53.0421 0644 [ 3AC17802740C3A4764DC9750E92E6233 ] rismxdp C:\WINDOWS\system32\DRIVERS\rixdptsk.sys
21:35:53.0421 0644 rismxdp - ok
21:35:53.0468 0644 [ D8B0B4ADE32574B2D9C5CC34DC0DBBE7 ] ROOTMODEM C:\WINDOWS\system32\Drivers\RootMdm.sys
21:35:53.0468 0644 ROOTMODEM - ok
21:35:53.0546 0644 [ 67C607857CCD6EBFFE768DAD5B2CA239 ] rpcapd C:\Program Files\WinPcap\rpcapd.exe
21:35:53.0546 0644 rpcapd - ok
21:35:53.0671 0644 [ 718B3BDC0BC3C2F7D065A53D26202AF9 ] RpcLocator C:\WINDOWS\system32\locator.exe
21:35:53.0671 0644 RpcLocator - ok
21:35:53.0781 0644 [ BE27674D1CBC3214AEC84B4336A38BBF ] RpcSs C:\WINDOWS\system32\rpcss.dll
21:35:53.0796 0644 RpcSs - ok
21:35:53.0890 0644 [ 09AB2E71E58B078038E3BFDBA7FFC984 ] RSVP C:\WINDOWS\system32\rsvp.exe
21:35:53.0906 0644 RSVP - ok
21:35:53.0953 0644 [ 71CCDB341F403F3A2B95188CCC404FC9 ] RT-USB C:\WINDOWS\system32\drivers\RT-USB.sys
21:35:53.0953 0644 RT-USB - ok
21:35:54.0031 0644 [ 890D2D87DF574BA48D21C9F1FFDE63B4 ] RTLE8023xp C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys
21:35:54.0031 0644 RTLE8023xp - ok
21:35:54.0328 0644 [ 25F697E3AFA7B337BBCADDBCE38E6934 ] S24EventMonitor C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
21:35:54.0328 0644 S24EventMonitor - ok
21:35:54.0359 0644 [ 2862ADB14481AC28F98105FF33A99EB0 ] s24trans C:\WINDOWS\system32\DRIVERS\s24trans.sys
21:35:54.0359 0644 s24trans - ok
21:35:57.0343 0644 [ AAEB1AA1E6EE1D312891FCE7A8C33052 ] s7asysvx D:\Siemens\Step7\S7BIN\s7asysvx.exe
21:35:57.0375 0644 s7asysvx - ok
21:35:57.0406 0644 [ F936DABD0A055744C182F65BA9190B06 ] s7odpx2x C:\WINDOWS\System32\Drivers\S7odpx2x.sys
21:35:57.0406 0644 s7odpx2x - ok
21:35:57.0484 0644 [ F4E4348F0ECC78A61A190E447EB2467D ] s7oefs_x C:\WINDOWS\System32\drivers\s7oefs_x.sys
21:35:57.0484 0644 s7oefs_x - ok
21:35:57.0546 0644 [ D2C5A721C766FF108F1972A4F3053CBA ] s7oiehsx D:\Program Files\Common Files\Siemens\S7IEPG\s7oiehsx.exe
21:35:57.0546 0644 s7oiehsx - ok
21:35:57.0609 0644 [ 81875707EC7F588CDEA38D1ABE2634F9 ] s7osmcax C:\WINDOWS\System32\Drivers\s7osmcax.sys
21:35:57.0625 0644 s7osmcax - ok
21:35:57.0671 0644 [ B6D7DBD07D4B2859ADF5AD186C5E76B5 ] s7otranx C:\WINDOWS\System32\Drivers\s7otranx.sys
21:35:57.0671 0644 s7otranx - ok
21:35:57.0718 0644 [ A6578C8D983B9B99D085FC037C11B673 ] s7otsadx C:\WINDOWS\System32\Drivers\s7otsadx.sys
21:35:57.0718 0644 s7otsadx - ok
21:35:57.0750 0644 [ 32FE2B4E726E823133B18F6BD9C02523 ] S7OUPC2X C:\WINDOWS\system32\DRIVERS\s7oupc2x.sys
21:35:57.0765 0644 S7OUPC2X - ok
21:35:57.0796 0644 [ EFDCAE4EB7A1289F23DDAFEE25EFCF56 ] s7ousbu32x C:\WINDOWS\system32\DRIVERS\s7ousbu32x.sys
21:35:57.0812 0644 s7ousbu32x - ok
21:35:57.0859 0644 [ F25735ED9017691F2DBCA8568882BDBA ] s7sn2srtx C:\WINDOWS\system32\DRIVERS\s7sn2srtx.sys
21:35:57.0859 0644 s7sn2srtx - ok
21:35:57.0890 0644 [ 97CC8A8D06071921A42114CF16200A5B ] s7snsrtx C:\WINDOWS\system32\DRIVERS\s7snsrtx.sys
21:35:57.0890 0644 s7snsrtx - ok
21:35:57.0906 0644 [ ED0A176354487CEED65B80A7148AB739 ] SamSs C:\WINDOWS\system32\lsass.exe
21:35:57.0906 0644 SamSs - ok
21:35:58.0031 0644 [ 410046E401EB11E1E6749E9DEEA41D4A ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
21:35:58.0046 0644 SCardSvr - ok
21:35:58.0171 0644 [ 3FF232A7731621B8902D81D42418C93C ] Schedule C:\WINDOWS\system32\schedsvc.dll
21:35:58.0187 0644 Schedule - ok
21:35:58.0218 0644 [ 8D04819A3CE51B9EB47E5689B44D43C4 ] sdbus C:\WINDOWS\system32\DRIVERS\sdbus.sys
21:35:58.0218 0644 sdbus - ok
21:35:58.0250 0644 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
21:35:58.0250 0644 Secdrv - ok
21:35:58.0281 0644 [ 477E2C3CC5E4A0D635BCB0EA8DCAC3C6 ] seclogon C:\WINDOWS\System32\seclogon.dll
21:35:58.0281 0644 seclogon - ok
21:35:58.0328 0644 [ A530B75C10C23C9AB28FDB6CE719E21F ] SENS C:\WINDOWS\system32\sens.dll
21:35:58.0328 0644 SENS - ok
21:35:58.0375 0644 [ ADD6E23F3974C26A060734E6ADCD0052 ] Ser2pl C:\WINDOWS\system32\DRIVERS\ser2pl.sys
21:35:58.0375 0644 Ser2pl - ok
21:35:58.0406 0644 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] Serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
21:35:58.0406 0644 Serenum - ok
21:35:58.0437 0644 [ B842729337C9B921615C40D3C1A1AF96 ] Serial C:\WINDOWS\system32\drivers\Serial.sys
21:35:58.0437 0644 Serial - ok
21:35:58.0468 0644 [ 61490899036B14DEDC24BABD847D7001 ] sermouse C:\WINDOWS\system32\DRIVERS\sermouse.sys
21:35:58.0468 0644 sermouse - ok
21:35:58.0515 0644 [ 0FA803C64DF0914B41F807EA276BF2A6 ] sffdisk C:\WINDOWS\system32\DRIVERS\sffdisk.sys
21:35:58.0515 0644 sffdisk - ok
21:35:58.0546 0644 [ C17C331E435ED8737525C86A7557B3AC ] sffp_sd C:\WINDOWS\system32\DRIVERS\sffp_sd.sys
21:35:58.0546 0644 sffp_sd - ok
21:35:58.0562 0644 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
21:35:58.0578 0644 Sfloppy - ok
21:35:58.0625 0644 [ F58FACA9621D2DB01BD0927D9A0A208E ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
21:35:58.0625 0644 SharedAccess - ok
21:35:58.0640 0644 [ EE9A2B9EA968A792A053C9D1A86BF870 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
21:35:58.0656 0644 ShellHWDetection - ok
21:35:58.0687 0644 [ 5870851F0D477BD9C8272EFC2EF1093C ] silabenm C:\WINDOWS\system32\DRIVERS\silabenm.sys
21:35:58.0687 0644 silabenm - ok
21:35:58.0718 0644 [ 6F3293410C26428DC99720C33C4283BE ] silabser C:\WINDOWS\system32\DRIVERS\silabser.sys
21:35:58.0718 0644 silabser - ok
21:35:58.0718 0644 Simbad - ok
21:35:58.0765 0644 [ FDF871BA2AE7332F5B57726FE012C949 ] simdrv C:\WINDOWS\System32\drivers\simdrv.SYS
21:35:58.0765 0644 simdrv - ok
21:35:58.0781 0644 [ 866D538EBE33709A5C9F5C62B73B7D14 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys
21:35:58.0781 0644 SLIP - ok
21:35:58.0812 0644 [ FAEDD4AC72C5772672CCE88B3ADAFA56 ] SMCIRDA C:\WINDOWS\system32\DRIVERS\smcirda.sys
21:35:58.0828 0644 SMCIRDA - ok
21:35:58.0890 0644 [ 07231F76168E1EBB4E6FCA42153D101C ] smihlp C:\Program Files\Protector Suite QL\smihlp.sys
21:35:58.0890 0644 smihlp - ok
21:35:58.0921 0644 [ CE2E9D6B8C26C38779581CFF1F14B65B ] smserial C:\WINDOWS\system32\DRIVERS\smserial.sys
21:35:58.0937 0644 smserial - ok
21:35:59.0000 0644 [ 8FF07AE426518C6A6B43FCFBF62C8EDE ] SNTIE C:\WINDOWS\system32\DRIVERS\sntie.sys
21:35:59.0015 0644 SNTIE - ok
21:35:59.0015 0644 Sparrow - ok
21:35:59.0046 0644 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
21:35:59.0062 0644 splitter - ok
21:35:59.0093 0644 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
21:35:59.0109 0644 Spooler - ok
21:35:59.0156 0644 [ 352E375AB298C23B0F9BC307652C7F50 ] SQLAgent$PINNACLESYS C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlagent.EXE
21:35:59.0156 0644 SQLAgent$PINNACLESYS - ok
21:35:59.0187 0644 [ 94610C8653635E4459316A0050D55CE7 ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
21:35:59.0187 0644 sr - ok
21:35:59.0234 0644 [ 35B91147124F64AC8081A2EDB9EA4DEE ] srservice C:\WINDOWS\system32\srsvc.dll
21:35:59.0250 0644 srservice - ok
21:35:59.0296 0644 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
21:35:59.0312 0644 Srv - ok
21:35:59.0328 0644 [ BECD5271DC4E3B7C3D035F790FCBC1E5 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
21:35:59.0328 0644 SSDPSRV - ok
21:35:59.0375 0644 [ 06CDA2A5A549BC455D004461E6BC5B33 ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
21:35:59.0375 0644 StillCam - ok
21:35:59.0406 0644 [ C1CDD9275F6A115BB0AE1D55D8D27BA6 ] stisvc C:\WINDOWS\system32\wiaservc.dll
21:35:59.0421 0644 stisvc - ok
21:35:59.0453 0644 [ 77813007BA6265C4B6098187E6ED79D2 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys
21:35:59.0453 0644 streamip - ok
21:35:59.0468 0644 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
21:35:59.0468 0644 swenum - ok
21:35:59.0484 0644 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
21:35:59.0484 0644 swmidi - ok
21:35:59.0484 0644 SwPrv - ok
21:35:59.0500 0644 symc810 - ok
21:35:59.0500 0644 symc8xx - ok
21:35:59.0578 0644 [ 3C6790D26D03FE5163E2BEC490E51A7E ] SymEvent C:\Program Files\Symantec\SYMEVENT.SYS
21:35:59.0578 0644 SymEvent - ok
21:35:59.0578 0644 sym_hi - ok
21:35:59.0593 0644 sym_u3 - ok
21:35:59.0656 0644 [ 03DC419B94C57ADF3AB0FBF887B021F5 ] SynMini C:\WINDOWS\system32\Drivers\SynMini.sys
21:35:59.0656 0644 SynMini - ok
21:35:59.0687 0644 [ E4085705D8D7D4D1536D8EE907439A86 ] SynScan C:\WINDOWS\system32\Drivers\SynScan.sys
21:35:59.0687 0644 SynScan - ok
21:35:59.0703 0644 [ 69BF2DD9B1099D1AA3E7CF14B4B842CD ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys
21:35:59.0718 0644 SynTP - ok
21:35:59.0750 0644 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
21:35:59.0750 0644 sysaudio - ok
21:36:00.0062 0644 [ CE06F01B88ACE199A1BF460CAC29C110 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
21:36:00.0078 0644 SysmonLog - ok
21:36:00.0140 0644 [ AEB8C85239445E361E1C3413582F9231 ] T3Srv C:\Program Files\FLIR Systems\Device Drivers\T3Srv.exe
21:36:00.0140 0644 T3Srv - ok
21:36:00.0203 0644 [ C2546CD7A398476F9DF5614B2AE160E8 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
21:36:00.0203 0644 TapiSrv - ok
21:36:00.0281 0644 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
21:36:00.0281 0644 Tcpip - ok
21:36:00.0328 0644 [ 4E53BBCC4BE37D7A4BD6EF1098C89FF7 ] Tcpip6 C:\WINDOWS\system32\DRIVERS\tcpip6.sys
21:36:00.0328 0644 Tcpip6 - ok
21:36:00.0328 0644 [ FC6FE02F400308606A911640E72326B5 ] TcUsb C:\WINDOWS\system32\Drivers\tcusb.sys
21:36:00.0343 0644 TcUsb - ok
21:36:00.0375 0644 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
21:36:00.0375 0644 TDPIPE - ok
21:36:00.0375 0644 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
21:36:00.0390 0644 TDTCP - ok
21:36:00.0406 0644 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
21:36:00.0406 0644 TermDD - ok
21:36:00.0453 0644 [ A75DD6FC3DBEE4FFF5EBC9F2C28BB66E ] TermService C:\WINDOWS\System32\termsrv.dll
21:36:00.0468 0644 TermService - ok
21:36:00.0500 0644 [ EE9A2B9EA968A792A053C9D1A86BF870 ] Themes C:\WINDOWS\System32\shsvcs.dll
21:36:00.0500 0644 Themes - ok
21:36:00.0562 0644 [ CD0CC7B167D78043A41C98D4921EFB54 ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
21:36:00.0562 0644 TlntSvr - ok
21:36:00.0609 0644 [ E362D54FD394999C4178936396664E57 ] toshidpt C:\WINDOWS\system32\drivers\Toshidpt.sys
21:36:00.0609 0644 toshidpt - ok
21:36:00.0609 0644 TosIde - ok
21:36:00.0640 0644 [ B2842672056CA33F0A4AAB3E5CBBF181 ] tosporte C:\WINDOWS\system32\DRIVERS\tosporte.sys
21:36:00.0640 0644 tosporte - ok
21:36:00.0671 0644 [ 0EC5206059D97A8DC785BE73FB457EC7 ] Tosrfbd C:\WINDOWS\system32\Drivers\tosrfbd.sys
21:36:00.0671 0644 Tosrfbd - ok
21:36:00.0671 0644 [ 1AE2BA74B2A4F5A358B13FCD35258C30 ] Tosrfbnp C:\WINDOWS\system32\Drivers\tosrfbnp.sys
21:36:00.0687 0644 Tosrfbnp - ok
21:36:00.0703 0644 [ 5BA1CA3B3CDDB1DDC67DF473F05D1EC2 ] Tosrfcom C:\WINDOWS\system32\Drivers\tosrfcom.sys
21:36:00.0718 0644 Tosrfcom - ok
21:36:00.0718 0644 [ 5DBF390AAB62DD0D4D43A9278614E001 ] Tosrfhid C:\WINDOWS\system32\DRIVERS\Tosrfhid.sys
21:36:00.0718 0644 Tosrfhid - ok
21:36:00.0734 0644 [ C52FD27B9ADF3A1F22CB90E6BCF9B0CB ] tosrfnds C:\WINDOWS\system32\DRIVERS\tosrfnds.sys
21:36:00.0734 0644 tosrfnds - ok
21:36:00.0750 0644 [ AB6FD13D7EFA2634FA6BDF84C7EF0696 ] TosRfSnd C:\WINDOWS\system32\drivers\TosRfSnd.sys
21:36:00.0765 0644 TosRfSnd - ok
21:36:00.0781 0644 [ D870FD6CE9060B73289F47E88630EE0E ] Tosrfusb C:\WINDOWS\system32\Drivers\tosrfusb.sys
21:36:00.0781 0644 Tosrfusb - ok
21:36:00.0812 0644 [ 38853304CCB938D30E0C4CDE8D2C2A8A ] TrkWks C:\WINDOWS\system32\trkwks.dll
21:36:00.0828 0644 TrkWks - ok
21:36:00.0875 0644 [ 8F861EDA21C05857EB8197300A92501C ] tunmp C:\WINDOWS\system32\DRIVERS\tunmp.sys
21:36:00.0875 0644 tunmp - ok
21:36:00.0921 0644 [ EBC3473F2E78ECEFD6FBC43993778749 ] U2SP C:\WINDOWS\system32\Drivers\U2SWDM.SYS
21:36:00.0921 0644 U2SP - ok
21:36:00.0937 0644 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
21:36:00.0937 0644 Udfs - ok
21:36:00.0953 0644 ultra - ok
21:36:00.0984 0644 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
21:36:00.0984 0644 Update - ok
21:36:01.0312 0644 [ 651BD90DCEE5B7BDC74A2EB7C9266F9E ] upnphost C:\WINDOWS\System32\upnphost.dll
21:36:01.0671 0644 upnphost - ok
21:36:01.0703 0644 [ 20A0F6A11959E92908717D09E87D670D ] UPS C:\WINDOWS\System32\ups.exe
21:36:01.0718 0644 UPS - ok
21:36:01.0812 0644 [ FD22A87F80CE1C3FE17DF58FA3A44D6F ] USB28xxBGA C:\WINDOWS\system32\DRIVERS\emBDA.sys
21:36:01.0812 0644 USB28xxBGA - ok
21:36:01.0859 0644 [ 4AA3CBB19EEF4C3631F424DC57708D65 ] USB28xxOEM C:\WINDOWS\system32\DRIVERS\emOEM.sys
21:36:01.0859 0644 USB28xxOEM - ok
21:36:01.0890 0644 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
21:36:01.0890 0644 usbccgp - ok
21:36:01.0906 0644 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
21:36:01.0921 0644 usbehci - ok
21:36:01.0921 0644 USBHSB - ok
21:36:01.0953 0644 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
21:36:01.0953 0644 usbhub - ok
21:36:01.0984 0644 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
21:36:01.0984 0644 usbprint - ok
21:36:02.0015 0644 [ 1C888B000C2F9492F4B15B5B6B84873E ] usbser C:\WINDOWS\system32\DRIVERS\usbser.sys
21:36:02.0031 0644 usbser - ok
21:36:02.0046 0644 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
21:36:02.0046 0644 USBSTOR - ok
21:36:02.0062 0644 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
21:36:02.0062 0644 usbuhci - ok
21:36:02.0078 0644 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
21:36:02.0078 0644 VgaSave - ok
21:36:02.0093 0644 ViaIde - ok
21:36:02.0109 0644 [ 28A4B296B47782173C346E376CB374D1 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
21:36:02.0109 0644 VolSnap - ok
21:36:02.0437 0644 [ D6BA1A63D9E00933F1CD2A885573AFB2 ] VSS C:\WINDOWS\System32\vssvc.exe
21:36:02.0453 0644 VSS - ok
21:36:02.0484 0644 [ FA4E1CDBA256787F2149F4AAD07BC91F ] W32Time C:\WINDOWS\system32\w32time.dll
21:36:02.0515 0644 W32Time - ok
21:36:02.0531 0644 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
21:36:02.0531 0644 Wanarp - ok
21:36:02.0578 0644 [ D918617B46457B9AC28027722E30F647 ] Wdf01000 C:\WINDOWS\system32\Drivers\wdf01000.sys
21:36:02.0593 0644 Wdf01000 - ok
21:36:02.0593 0644 WDICA - ok
21:36:02.0625 0644 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
21:36:02.0625 0644 wdmaud - ok
21:36:02.0640 0644 [ 47AE51048A82DFA1CD6B51D369F7E169 ] WebClient C:\WINDOWS\System32\webclnt.dll
21:36:02.0656 0644 WebClient - ok
21:36:02.0703 0644 [ 135B5FB324982B47758410ED5440137D ] WinDriver6 C:\WINDOWS\system32\drivers\windrvr6.sys
21:36:02.0703 0644 WinDriver6 - ok
21:36:02.0781 0644 [ E488332126E3B1182D2B8A0C35408EC6 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
21:36:02.0781 0644 winmgmt - ok
21:36:02.0875 0644 [ 29A722F46FA20371F192C1B85C50FB6B ] WinVNC4 C:\Program Files\RealVNC\VNC4\WinVNC4.exe
21:36:02.0875 0644 WinVNC4 - ok
21:36:02.0921 0644 [ 6199B2AE3F9DB9CB6DB230471A1DC601 ] WmdmPmSN C:\WINDOWS\system32\mspmsnsv.dll
21:36:02.0921 0644 WmdmPmSN - ok
21:36:02.0968 0644 [ 0171CFF34BBA8C5977F18C48D8AEF8C6 ] Wmi C:\WINDOWS\System32\advapi32.dll
21:36:02.0968 0644 Wmi - ok
21:36:03.0015 0644 [ 23F6F03272F7E5679F1F050AED5ACEE6 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
21:36:03.0015 0644 WmiApSrv - ok
21:36:03.0078 0644 [ 4C86D5FAF78194995AF9CC1075F65DD3 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
21:36:03.0093 0644 wscsvc - ok
21:36:03.0109 0644 [ C98B39829C2BBD34E454150633C62C78 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
21:36:03.0109 0644 WSTCODEC - ok
21:36:03.0156 0644 [ C1364564800EE9784192145324A23308 ] wuauserv C:\WINDOWS\system32\wuauserv.dll
21:36:03.0156 0644 wuauserv - ok
21:36:03.0203 0644 [ A27D4BA7264C0BF52F32D10405BEA1D4 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
21:36:03.0234 0644 WZCSVC - ok
21:36:03.0250 0644 [ EAA4BB9EDB3FB10CF8979FE65E63658F ] xmlprov C:\WINDOWS\System32\xmlprov.dll
21:36:03.0265 0644 xmlprov - ok
21:36:03.0281 0644 ================ Scan global ===============================
21:36:03.0312 0644 [ F36278E42C8C5DF03CE17DAC8231C91C ] C:\WINDOWS\system32\basesrv.dll
21:36:03.0359 0644 [ 4C0AA4ABC4E21672B55D8A700AF2B2A6 ] C:\WINDOWS\system32\winsrv.dll
21:36:03.0375 0644 [ 4C0AA4ABC4E21672B55D8A700AF2B2A6 ] C:\WINDOWS\system32\winsrv.dll
21:36:03.0421 0644 [ 9EF697AF07BB8DD82C3B02CA953A95B7 ] C:\WINDOWS\system32\services.exe
21:36:03.0421 0644 [Global] - ok
21:36:03.0421 0644 ================ Scan MBR ==================================
21:36:03.0453 0644 [ 413FC2A0C716421B3158746D63736515 ] \Device\Harddisk0\DR0
21:36:03.0625 0644 \Device\Harddisk0\DR0 - ok
21:36:03.0625 0644 ================ Scan VBR ==================================
21:36:03.0640 0644 [ DB453022BE7C860FAE535DAEA2213958 ] \Device\Harddisk0\DR0\Partition1
21:36:03.0640 0644 \Device\Harddisk0\DR0\Partition1 - ok
21:36:03.0656 0644 [ B041245373FB97295546A1CA791FF8BB ] \Device\Harddisk0\DR0\Partition2
21:36:03.0671 0644 \Device\Harddisk0\DR0\Partition2 - ok
21:36:03.0671 0644 ============================================================
21:36:03.0671 0644 Scan finished
21:36:03.0671 0644 ============================================================
21:36:03.0671 4700 Detected object count: 0
21:36:03.0671 4700 Actual detected object count: 0
22:02:59.0953 5824 ============================================================
22:02:59.0953 5824 Scan started
22:02:59.0953 5824 Mode: Manual;
22:02:59.0953 5824 ============================================================
22:03:00.0828 5824 ================ Scan system memory ========================
22:03:01.0640 5824 System memory - ok
22:03:01.0640 5824 ================ Scan services =============================
22:03:01.0765 5824 [ 914A9709FC3BF419AD2F85547F2A4832 ] 61883 C:\WINDOWS\system32\DRIVERS\61883.sys
22:03:01.0765 5824 61883 - ok
22:03:01.0796 5824 [ D76E9F5A991458A9F7E28395479B3150 ] 6to4 C:\WINDOWS\System32\6to4svc.dll
22:03:01.0796 5824 6to4 - ok
22:03:01.0812 5824 Abiosdsk - ok
22:03:01.0812 5824 abp480n5 - ok
22:03:01.0828 5824 [ 4FE34F1F3126B61FCC6B2043AA8112C9 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
22:03:01.0843 5824 ACPI - ok
22:03:01.0843 5824 [ AFDFF022A01F0B11C776F0860C3B282F ] ACPIEC C:\WINDOWS\system32\DRIVERS\ACPIEC.sys
22:03:01.0843 5824 ACPIEC - ok
22:03:01.0890 5824 [ A6009183C489531B681D61AE4AC75265 ] ADIHdAudAddService C:\WINDOWS\system32\drivers\ADIHdAud.sys
22:03:01.0890 5824 ADIHdAudAddService - ok
22:03:01.0968 5824 [ F040037B149FD0F5A5044AE563390FA7 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
22:03:01.0968 5824 AdobeFlashPlayerUpdateSvc - ok
22:03:01.0984 5824 adpu160m - ok
22:03:02.0000 5824 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
22:03:02.0015 5824 aec - ok
22:03:02.0046 5824 [ 15E655BAA989444F56787EF558823643 ] AegisP C:\WINDOWS\system32\DRIVERS\AegisP.sys
22:03:02.0062 5824 AegisP - ok
22:03:02.0093 5824 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
22:03:02.0093 5824 AFD - ok
22:03:02.0109 5824 Aha154x - ok
22:03:02.0109 5824 aic78u2 - ok
22:03:02.0109 5824 aic78xx - ok
22:03:02.0171 5824 [ E0A6FA244B8624D78FE5FF6F56A33BAE ] Alerter C:\WINDOWS\system32\alrsvc.dll
22:03:02.0171 5824 Alerter - ok
22:03:02.0203 5824 [ 88842DE939A827577BF24243699AC80A ] ALG C:\WINDOWS\System32\alg.exe
22:03:02.0203 5824 ALG - ok
22:03:02.0203 5824 AliIde - ok
22:03:02.0390 5824 [ 32DA366C7851ED088CA33CFBAD367441 ] almservice D:\Program Files\Common Files\Siemens\sws\almsrv\almsrvx.exe
22:03:02.0390 5824 almservice - ok
22:03:02.0406 5824 amsint - ok
22:03:02.0437 5824 [ A086BEB7A931E8FB496123A820F23D5B ] AMTFLASH C:\WINDOWS\system32\drivers\AmtFlash.sys
22:03:02.0437 5824 AMTFLASH - ok
22:03:02.0468 5824 [ 6B8E7A90E576D4FE308F97C69060A171 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
22:03:02.0468 5824 AppMgmt - ok
22:03:02.0515 5824 [ B5B8A80875C1DEDEDA8B02765642C32F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys
22:03:02.0515 5824 Arp1394 - ok
22:03:02.0515 5824 asc - ok
22:03:02.0515 5824 asc3350p - ok
22:03:02.0531 5824 asc3550 - ok
22:03:02.0625 5824 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
22:03:02.0625 5824 aspnet_state - ok


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 96 hostů