Podezřele na prishing breberku Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Speed_dead
Level 6
Level 6
Příspěvky: 3281
Registrován: duben 10
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline
Kontakt:

Podezřele na prishing breberku

Příspěvekod Speed_dead » 15 čer 2013 10:04

Esset mě podezřele často blokuje kvůli phisingu. Nějaká breberka se mě snaží přesměrovat na http://i.wz.cz/40*.html

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:01:25, on 15.6.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe
C:\Fraps\fraps.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
E:\Program FIles 2\Ashampoo Core Tuner 2\ACT2.exe
E:\Program FIles 2\Ashampoo HDD Control 2\AHDDC2_Guard.exe
C:\Program Files (x86)\Ashampoo\Ashampoo Media Sync\MediaSyncTray.exe
C:\Program Files (x86)\ICQ7M\ICQ.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Ashampoo\Ashampoo Snap 6\ashsnap.exe
C:\Users\User\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\1-abc\Backup\Backup.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Cobian Backup 11\Cobian.exe
C:\Program Files (x86)\Cobian Backup 11\cbInterface.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTShellHlp.exe
E:\mIRC eXtasy v1.0\mirc.exe
E:\mIRC eXtasy v1.0\mirc.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe
C:\Program Files (x86)\WebSite X5 v9 - Compact\WebSiteX5.exe
C:\Program Files (x86)\WebSite X5 v9 - Compact\WebSiteX5.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
E:\Download\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Cobian Backup 11] "C:\Program Files (x86)\Cobian Backup 11\Cobian.exe"
O4 - HKCU\..\Run: [ICQ] "C:\Program Files (x86)\ICQ7M\ICQ.exe" silent loginmode=4
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [StartMenuX] C:\Program Files\Start Menu X\StartMenuX.exe
O4 - HKCU\..\Run: [EPSON PX710W Series] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIFSE.EXE /FU "C:\Windows\TEMP\E_SC1AC.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Backup] "C:\Program Files (x86)\1-abc\Backup\BKPStarter.exe"
O4 - HKCU\..\Run: [AshSnap] C:\Program Files (x86)\Ashampoo\Ashampoo Snap 6\ashsnap.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1307476702-397689000-4170537798-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1307476702-397689000-4170537798-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: Dropbox.lnk = C:\Users\User\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: Add to CaptureSaver - C:\Program Files (x86)\CaptureSaver\\AddFromIE.htm
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files (x86)\ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files (x86)\ICQ7M\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: ABBYY FineReader 9.0 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.9.0) - ABBYY (BIT Software) - C:\Program Files (x86)\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
O23 - Service: Ashampoo Core Tuner 2 Service (ACT2_Service) - Unknown owner - E:\Program FIles 2\Ashampoo Core Tuner 2\ACT2Service.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Ashampoo HDD Control 2 Service (AHDDC2) - Unknown owner - E:\Program FIles 2\Ashampoo HDD Control 2\AHDDC2_Service.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe (file missing)
O23 - Service: Bacula File Backup Service (Bacula-fd) - Unknown owner - C:\Program Files\Bacula\bacula-fd.exe
O23 - Service: Cobian Backup 11 Volume Shadow Copy Requester (cbVSCService11) - CobianSoft, Luis Cobian - C:\Program Files (x86)\Cobian Backup 11\cbVSCService11.exe
O23 - Service: Defragmentation-Service (DfSdkS) - mst software GmbH, Germany - E:\Program FIles 2\Ashampoo HDD Control 2\DfsdkS64.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark Corporation - C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - Unknown owner - C:\Windows\system32\viakaraokesrv.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13451 bytes
Google ví skoro vše. Ale někdy je problém co tam napsat, aby to našlo to, co hledám.
Pokud se to nepovede, vypadne tuna nepoužitelných odkazů a nebo taky nic.

Reklama
Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Podezřele na prishing breberku

Příspěvekod Žbeky » 15 čer 2013 22:14

Fixni:

Kód: Vybrat vše

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1307476702-397689000-4170537798-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
- Pokud používáš Firefox, klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Chrome, nic dalšího nevybírej a dej Empty Selected.
Po vyčištění klikni na Exit k zavření programu.

Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(ZATÍM SÁM NIC NEMAŽ!).
Vlož sem pak obsah toho logu.

Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Uživatelský avatar
Speed_dead
Level 6
Level 6
Příspěvky: 3281
Registrován: duben 10
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Podezřele na prishing breberku

Příspěvekod Speed_dead » 16 čer 2013 10:11

Malwarebytes' Anti-Malware

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.70.0.1100
www.malwarebytes.org

Verze: v2013.02.18.10

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
User :: USER-PC [administrátor]

Ochrana: Povolena

18.2.2013 21:11:03
mbam-log-2013-02-18 (21-11-03).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 228088
Uplynulý čas: 1 minut, 10 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)


=====================================================================================================


AdwCleaner

# AdwCleaner v2.303 - Log vytvooen 16/06/2013 v 10:01:31
# Aktualizováno 08/06/2013 Xplode
# Operaení systém : Windows 7 Ultimate Service Pack 1 (64 bits)
# Uživatel : User - SPEEDEAD
# Spuštin systém : Normální
# Spuštino z : E:\Download\adwcleaner.exe
# Volba [Prohledat]


***** [Služby] *****


***** [Soubory / Složky] *****

Složka Nalezeno : C:\Program Files (x86)\Common Files\Wondershare
Složka Nalezeno : C:\Program Files (x86)\RegClean Pro
Složka Nalezeno : C:\Program Files (x86)\Wondershare
Složka Nalezeno : C:\ProgramData\InstallMate
Složka Nalezeno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro
Složka Nalezeno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
Složka Nalezeno : C:\ProgramData\Wondershare
Soubor Nalezeno : C:\Windows\Tasks\RegClean Pro_DEFAULT.job

***** [Registry] *****

Klíe Nalezeno : HKCU\Software\APN PIP
Klíe Nalezeno : HKCU\Software\BI
Klíe Nalezeno : HKCU\Software\InstallCore
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\NCTAudioCDGrabber2.DLL
Klíe Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Klíe Nalezeno : HKLM\Software\PIP
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{5EB0259D-AB79-4AE6-A6E6-24FFE21C3DA4}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2BEF239C-752E-4001-8048-F256E0D8CD93}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{2BEF239C-752E-4001-8048-F256E0D8CD93}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v10.0.9200.16611

[OK] Registry jsou eisté.

-\\ Google Chrome v27.0.1453.110

*************************

AdwCleaner[R1].txt - [2782 octets] - [16/06/2013 10:01:31]

########## EOF - C:\AdwCleaner[R1].txt - [2842 octets] ##########
Google ví skoro vše. Ale někdy je problém co tam napsat, aby to našlo to, co hledám.
Pokud se to nepovede, vypadne tuna nepoužitelných odkazů a nebo taky nic.

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Podezřele na prishing breberku

Příspěvekod Žbeky » 16 čer 2013 10:19

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“)
Klikni na „ Delete“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt), jeho obsah sem celý vlož.

Stáhni si RogueKiller
32bit:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a WIN7 spusť program jako správce, u XP poklepáním.
- Počkej až skončí Prescan.
- Zkontroluj, zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

- Potom klikni na „Prohledat“.
- Program skenuje PC. Po proskenování klikni na „Zpráva“ - celý obsah logu sem zkopíruj.
Pokud je program blokován, zkus ho spustit několikrát. Pokud dále program nepůjde spustit, přejmenuj ho na winlogon.exe.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Uživatelský avatar
Speed_dead
Level 6
Level 6
Příspěvky: 3281
Registrován: duben 10
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Podezřele na prishing breberku

Příspěvekod Speed_dead » 17 čer 2013 18:32

# AdwCleaner v2.303 - Log vytvooen 17/06/2013 v 18:24:22
# Aktualizováno 08/06/2013 Xplode
# Operaení systém : Windows 7 Ultimate Service Pack 1 (64 bits)
# Uživatel : User - SPEEDEAD
# Spuštin systém : Normální
# Spuštino z : E:\Download\adwcleaner.exe
# Volba [Prohledat]


***** [Služby] *****


***** [Soubory / Složky] *****

Složka Nalezeno : C:\Program Files (x86)\Common Files\Wondershare
Složka Nalezeno : C:\Program Files (x86)\Wondershare
Složka Nalezeno : C:\ProgramData\InstallMate
Složka Nalezeno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
Složka Nalezeno : C:\ProgramData\Wondershare

***** [Registry] *****

Klíe Nalezeno : HKCU\Software\APN PIP
Klíe Nalezeno : HKCU\Software\BI
Klíe Nalezeno : HKCU\Software\InstallCore
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\NCTAudioCDGrabber2.DLL
Klíe Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Klíe Nalezeno : HKLM\Software\PIP
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{5EB0259D-AB79-4AE6-A6E6-24FFE21C3DA4}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2BEF239C-752E-4001-8048-F256E0D8CD93}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{2BEF239C-752E-4001-8048-F256E0D8CD93}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v10.0.9200.16611

[OK] Registry jsou eisté.

-\\ Google Chrome v27.0.1453.110

*************************

AdwCleaner[R1].txt - [2899 octets] - [16/06/2013 10:01:31]
AdwCleaner[R2].txt - [2641 octets] - [17/06/2013 18:24:22]

########## EOF - C:\AdwCleaner[R2].txt - [2701 octets] ##########





RogueKiller V8.6.1 _x64_ [Jun 17 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : User [Práva správce]
Mód : Kontrola -- Datum : 06/17/2013 18:29:32
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 3 ¤¤¤
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
[SCREENSVR][SUSP PATH] HKCU\[...]\Desktop : SCRNSAVE.EXE (C:\Windows\SIMAQU~1.SCR [7]) -> NALEZENO

¤¤¤ naplánované úlohy : 2 ¤¤¤
[V2][SUSP PATH] Hoolapp For Android : C:\Users\User\AppData\Roaming\HOOLAP~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> NALEZENO
[V2][SUSP PATH] Hoolapp Init : C:\Users\User\AppData\Roaming\HOOLAP~1\Hoolapp.exe - /Minimized [x] -> NALEZENO

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: KINGSTON SV300S37A120G ATA Device +++++
--- User ---
[MBR] 2f5b8f846dd663b14913972b17b25d25
[BSP] 5e66531f82ab49e1762bbb2f86d21edd : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 114371 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: KINGSTON SV300S37A120G ATA Device +++++
--- User ---
[MBR] 911d611a122b83e78ee99fca2ab3a784
[BSP] 0dfd37f6e2900d6a1a37d352ed26b40a : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 2097152 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_06172013_182932.txt >>
RKreport[0]_S_06172013_182646.txt





Psal jsem na webzdarma a odpověděle mě:
Dobry den,
i.wz.cz je jedna z nasich domen, ktere vyuzivame pro nas system, tj. nepatri zadnemu uzivateli naseho freehostingu. .
Google ví skoro vše. Ale někdy je problém co tam napsat, aby to našlo to, co hledám.
Pokud se to nepovede, vypadne tuna nepoužitelných odkazů a nebo taky nic.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Podezřele na prishing breberku

Příspěvekod jaro3 » 17 čer 2013 22:06

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
Klikni na „ Vymazat
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.

Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "

- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje "Smazání skončeno "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Speed_dead
Level 6
Level 6
Příspěvky: 3281
Registrován: duben 10
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Podezřele na prishing breberku

Příspěvekod Speed_dead » 18 čer 2013 14:13

Musím odpojit i vestavěnou čtečku na paměťové karty, jenž se hlásí jako disk(y) a síťové disky z nasky?
Mám Win 7 64bit.
Google ví skoro vše. Ale někdy je problém co tam napsat, aby to našlo to, co hledám.
Pokud se to nepovede, vypadne tuna nepoužitelných odkazů a nebo taky nic.

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Podezřele na prishing breberku

Příspěvekod memphisto » 18 čer 2013 14:53

nemusíš
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

Uživatelský avatar
Speed_dead
Level 6
Level 6
Příspěvky: 3281
Registrován: duben 10
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Podezřele na prishing breberku

Příspěvekod Speed_dead » 18 čer 2013 18:44

# AdwCleaner v2.303 - Log vytvooen 18/06/2013 v 18:32:46
# Aktualizováno 08/06/2013 Xplode
# Operaení systém : Windows 7 Ultimate Service Pack 1 (64 bits)
# Uživatel : User - SPEEDEAD
# Spuštin systém : Normální
# Spuštino z : E:\Download\adwcleaner.exe
# Volba [Prohledat]


***** [Služby] *****


***** [Soubory / Složky] *****

Složka Nalezeno : C:\Program Files (x86)\Common Files\Wondershare
Složka Nalezeno : C:\Program Files (x86)\Wondershare
Složka Nalezeno : C:\ProgramData\InstallMate
Složka Nalezeno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
Složka Nalezeno : C:\ProgramData\Wondershare

***** [Registry] *****

Klíe Nalezeno : HKCU\Software\APN PIP
Klíe Nalezeno : HKCU\Software\BI
Klíe Nalezeno : HKCU\Software\InstallCore
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\NCTAudioCDGrabber2.DLL
Klíe Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Klíe Nalezeno : HKLM\Software\PIP
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{5EB0259D-AB79-4AE6-A6E6-24FFE21C3DA4}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2BEF239C-752E-4001-8048-F256E0D8CD93}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{2BEF239C-752E-4001-8048-F256E0D8CD93}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v10.0.9200.16611

[OK] Registry jsou eisté.

-\\ Google Chrome v27.0.1453.110

*************************

AdwCleaner[R1].txt - [2899 octets] - [16/06/2013 10:01:31]
AdwCleaner[R2].txt - [2758 octets] - [17/06/2013 18:24:22]
AdwCleaner[R3].txt - [2701 octets] - [18/06/2013 18:32:46]

########## EOF - C:\AdwCleaner[R3].txt - [2761 octets] ##########




RogueKiller V8.6.1 _x64_ [Jun 17 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : User [Práva správce]
Mód : Odebrat -- Datum : 06/18/2013 18:39:39
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 3 ¤¤¤
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
[SCREENSVR][SUSP PATH] HKCU\[...]\Desktop : SCRNSAVE.EXE (C:\Windows\SIMAQU~1.SCR [7]) -> NAHRAZENO (C:\Windows\system32\logon.scr)

¤¤¤ naplánované úlohy : 2 ¤¤¤
[V2][SUSP PATH] Hoolapp For Android : C:\Users\User\AppData\Roaming\HOOLAP~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> VYMAZÁNO
[V2][SUSP PATH] Hoolapp Init : C:\Users\User\AppData\Roaming\HOOLAP~1\Hoolapp.exe - /Minimized [x] -> VYMAZÁNO

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: KINGSTON SV300S37A120G ATA Device +++++
--- User ---
[MBR] 2f5b8f846dd663b14913972b17b25d25
[BSP] 5e66531f82ab49e1762bbb2f86d21edd : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 114371 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: KINGSTON SV300S37A120G ATA Device +++++
--- User ---
[MBR] 911d611a122b83e78ee99fca2ab3a784
[BSP] 0dfd37f6e2900d6a1a37d352ed26b40a : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 2097152 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_06182013_183939.txt >>
RKreport[0]_S_06172013_182646.txt;RKreport[0]_S_06172013_182932.txt;RKreport[0]_S_06182013_183911.txt
Google ví skoro vše. Ale někdy je problém co tam napsat, aby to našlo to, co hledám.
Pokud se to nepovede, vypadne tuna nepoužitelných odkazů a nebo taky nic.

Uživatelský avatar
Speed_dead
Level 6
Level 6
Příspěvky: 3281
Registrován: duben 10
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Podezřele na prishing breberku

Příspěvekod Speed_dead » 18 čer 2013 18:46

18:40:56.0466 5212 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
18:40:56.0697 5212 ============================================================
18:40:56.0697 5212 Current date / time: 2013/06/18 18:40:56.0697
18:40:56.0697 5212 SystemInfo:
18:40:56.0697 5212
18:40:56.0697 5212 OS Version: 6.1.7601 ServicePack: 1.0
18:40:56.0697 5212 Product type: Workstation
18:40:56.0697 5212 ComputerName: SPEEDEAD
18:40:56.0697 5212 UserName: User
18:40:56.0697 5212 Windows directory: C:\Windows
18:40:56.0697 5212 System windows directory: C:\Windows
18:40:56.0697 5212 Running under WOW64
18:40:56.0697 5212 Processor architecture: Intel x64
18:40:56.0697 5212 Number of processors: 4
18:40:56.0697 5212 Page size: 0x1000
18:40:56.0697 5212 Boot type: Normal boot
18:40:56.0697 5212 ============================================================
18:40:56.0875 5212 Drive \Device\Harddisk0\DR0 - Size: 0x1BF2976000 (111.79 Gb), SectorSize: 0x200, Cylinders: 0x3901, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
18:40:56.0877 5212 Drive \Device\Harddisk1\DR1 - Size: 0x2BAA1476000 (2794.52 Gb), SectorSize: 0x200, Cylinders: 0x59101, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
18:40:56.0895 5212 ============================================================
18:40:56.0895 5212 \Device\Harddisk0\DR0:
18:40:56.0896 5212 MBR partitions:
18:40:56.0896 5212 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
18:40:56.0896 5212 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0xDF61800
18:40:56.0896 5212 \Device\Harddisk1\DR1:
18:40:56.0896 5212 GPT partitions:
18:40:56.0896 5212 \Device\Harddisk1\DR1\Partition1: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {98F4442D-1D6B-449E-9EDB-6462B08407A5}, Name: Microsoft reserved partition, StartLBA 0x22, BlocksNum 0x40000
18:40:56.0896 5212 \Device\Harddisk1\DR1\Partition2: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {8877384D-022D-427D-B697-DE17E3960D75}, Name: Basic data partition, StartLBA 0x40800, BlocksNum 0x5D4C9800
18:40:56.0896 5212 MBR partitions:
18:40:56.0896 5212 ============================================================
18:40:56.0897 5212 C: <-> \Device\Harddisk0\DR0\Partition2
18:40:56.0913 5212 E: <-> \Device\Harddisk1\DR1\Partition2
18:40:56.0913 5212 ============================================================
18:40:56.0914 5212 Initialize success
18:40:56.0914 5212 ============================================================
18:40:59.0903 4012 ============================================================
18:40:59.0903 4012 Scan started
18:40:59.0904 4012 Mode: Manual;
18:40:59.0904 4012 ============================================================
18:41:00.0397 4012 ================ Scan system memory ========================
18:41:00.0397 4012 System memory - ok
18:41:00.0397 4012 ================ Scan services =============================
18:41:00.0429 4012 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
18:41:00.0431 4012 1394ohci - ok
18:41:00.0441 4012 [ 2A5E5246F22530E351C9F3F2C1CD63B9 ] ABBYY.Licensing.FineReader.Professional.9.0 C:\Program Files (x86)\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
18:41:00.0444 4012 ABBYY.Licensing.FineReader.Professional.9.0 - ok
18:41:00.0450 4012 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
18:41:00.0451 4012 ACPI - ok
18:41:00.0454 4012 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
18:41:00.0454 4012 AcpiPmi - ok
18:41:00.0456 4012 ACT2PM - ok
18:41:00.0459 4012 ACT2_Service - ok
18:41:00.0464 4012 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
18:41:00.0464 4012 AdobeARMservice - ok
18:41:00.0480 4012 [ 9915504F602D277EE47FD843A677FD15 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
18:41:00.0482 4012 AdobeFlashPlayerUpdateSvc - ok
18:41:00.0488 4012 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
18:41:00.0489 4012 adp94xx - ok
18:41:00.0494 4012 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
18:41:00.0495 4012 adpahci - ok
18:41:00.0498 4012 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
18:41:00.0499 4012 adpu320 - ok
18:41:00.0502 4012 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
18:41:00.0503 4012 AeLookupSvc - ok
18:41:00.0509 4012 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
18:41:00.0510 4012 AFD - ok
18:41:00.0513 4012 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
18:41:00.0514 4012 agp440 - ok
18:41:00.0515 4012 AHDDC2 - ok
18:41:00.0518 4012 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
18:41:00.0519 4012 ALG - ok
18:41:00.0521 4012 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
18:41:00.0522 4012 aliide - ok
18:41:00.0524 4012 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
18:41:00.0524 4012 amdide - ok
18:41:00.0526 4012 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
18:41:00.0527 4012 AmdK8 - ok
18:41:00.0529 4012 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
18:41:00.0529 4012 AmdPPM - ok
18:41:00.0532 4012 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
18:41:00.0532 4012 amdsata - ok
18:41:00.0536 4012 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
18:41:00.0536 4012 amdsbs - ok
18:41:00.0538 4012 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
18:41:00.0539 4012 amdxata - ok
18:41:00.0541 4012 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
18:41:00.0542 4012 AppID - ok
18:41:00.0544 4012 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
18:41:00.0544 4012 AppIDSvc - ok
18:41:00.0547 4012 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
18:41:00.0547 4012 Appinfo - ok
18:41:00.0550 4012 [ BA957E7ACD2B44FA3B01FAA64F6A9060 ] AppleCharger C:\Windows\system32\DRIVERS\AppleCharger.sys
18:41:00.0550 4012 AppleCharger - ok
18:41:00.0552 4012 [ 95EF7247C50C7241FDAE39A9B3AFF4AE ] AppleChargerSrv C:\Windows\system32\AppleChargerSrv.exe
18:41:00.0552 4012 AppleChargerSrv - ok
18:41:00.0556 4012 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
18:41:00.0558 4012 AppMgmt - ok
18:41:00.0560 4012 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
18:41:00.0561 4012 arc - ok
18:41:00.0563 4012 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
18:41:00.0563 4012 arcsas - ok
18:41:00.0572 4012 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
18:41:00.0573 4012 aspnet_state - ok
18:41:00.0575 4012 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
18:41:00.0575 4012 AsyncMac - ok
18:41:00.0577 4012 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
18:41:00.0577 4012 atapi - ok
18:41:00.0584 4012 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
18:41:00.0589 4012 AudioEndpointBuilder - ok
18:41:00.0596 4012 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
18:41:00.0598 4012 AudioSrv - ok
18:41:00.0601 4012 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
18:41:00.0602 4012 AxInstSV - ok
18:41:00.0607 4012 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
18:41:00.0609 4012 b06bdrv - ok
18:41:00.0613 4012 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
18:41:00.0614 4012 b57nd60a - ok
18:41:00.0620 4012 [ 47D770645F1E9769951D4A530EFE0272 ] Bacula-fd C:\Program Files\Bacula\bacula-fd.exe
18:41:00.0621 4012 Bacula-fd - ok
18:41:00.0625 4012 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
18:41:00.0626 4012 BDESVC - ok
18:41:00.0628 4012 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
18:41:00.0628 4012 Beep - ok
18:41:00.0635 4012 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
18:41:00.0640 4012 BFE - ok
18:41:00.0649 4012 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
18:41:00.0655 4012 BITS - ok
18:41:00.0657 4012 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
18:41:00.0657 4012 blbdrive - ok
18:41:00.0660 4012 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
18:41:00.0661 4012 bowser - ok
18:41:00.0663 4012 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
18:41:00.0663 4012 BrFiltLo - ok
18:41:00.0665 4012 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
18:41:00.0665 4012 BrFiltUp - ok
18:41:00.0668 4012 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
18:41:00.0669 4012 Browser - ok
18:41:00.0672 4012 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
18:41:00.0674 4012 Brserid - ok
18:41:00.0676 4012 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
18:41:00.0676 4012 BrSerWdm - ok
18:41:00.0678 4012 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
18:41:00.0678 4012 BrUsbMdm - ok
18:41:00.0680 4012 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
18:41:00.0680 4012 BrUsbSer - ok
18:41:00.0682 4012 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
18:41:00.0683 4012 BTHMODEM - ok
18:41:00.0686 4012 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
18:41:00.0687 4012 bthserv - ok
18:41:00.0690 4012 [ 58BF7714A312698108A96D0DE2BB6825 ] cbVSCService11 C:\Program Files (x86)\Cobian Backup 11\cbVSCService11.exe
18:41:00.0691 4012 cbVSCService11 - ok
18:41:00.0693 4012 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
18:41:00.0694 4012 cdfs - ok
18:41:00.0696 4012 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
18:41:00.0697 4012 cdrom - ok
18:41:00.0700 4012 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
18:41:00.0701 4012 CertPropSvc - ok
18:41:00.0703 4012 [ C58EC27035731337ADD1326880086B16 ] CH341SER_A64 C:\Windows\system32\Drivers\CH341S64.SYS
18:41:00.0703 4012 CH341SER_A64 - ok
18:41:00.0705 4012 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
18:41:00.0706 4012 circlass - ok
18:41:00.0710 4012 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
18:41:00.0712 4012 CLFS - ok
18:41:00.0716 4012 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
18:41:00.0717 4012 clr_optimization_v2.0.50727_32 - ok
18:41:00.0720 4012 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
Google ví skoro vše. Ale někdy je problém co tam napsat, aby to našlo to, co hledám.
Pokud se to nepovede, vypadne tuna nepoužitelných odkazů a nebo taky nic.

Uživatelský avatar
Speed_dead
Level 6
Level 6
Příspěvky: 3281
Registrován: duben 10
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Podezřele na prishing breberku

Příspěvekod Speed_dead » 18 čer 2013 18:46

18:41:00.0721 4012 clr_optimization_v2.0.50727_64 - ok
18:41:00.0726 4012 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
18:41:00.0729 4012 clr_optimization_v4.0.30319_32 - ok
18:41:00.0732 4012 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
18:41:00.0735 4012 clr_optimization_v4.0.30319_64 - ok
18:41:00.0737 4012 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
18:41:00.0737 4012 CmBatt - ok
18:41:00.0739 4012 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
18:41:00.0740 4012 cmdide - ok
18:41:00.0745 4012 [ AAFCB52FE0037207FB6FBEA070D25EFE ] CNG C:\Windows\system32\Drivers\cng.sys
18:41:00.0747 4012 CNG - ok
18:41:00.0749 4012 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
18:41:00.0750 4012 Compbatt - ok
18:41:00.0752 4012 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
18:41:00.0752 4012 CompositeBus - ok
18:41:00.0754 4012 COMSysApp - ok
18:41:00.0757 4012 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
18:41:00.0757 4012 crcdisk - ok
18:41:00.0761 4012 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
18:41:00.0762 4012 CryptSvc - ok
18:41:00.0768 4012 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys
18:41:00.0770 4012 CSC - ok
18:41:00.0777 4012 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll
18:41:00.0782 4012 CscService - ok
18:41:00.0788 4012 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
18:41:00.0793 4012 DcomLaunch - ok
18:41:00.0797 4012 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
18:41:00.0799 4012 defragsvc - ok
18:41:00.0802 4012 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
18:41:00.0802 4012 DfsC - ok
18:41:00.0804 4012 DfSdkS - ok
18:41:00.0809 4012 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
18:41:00.0811 4012 Dhcp - ok
18:41:00.0814 4012 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
18:41:00.0814 4012 discache - ok
18:41:00.0816 4012 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
18:41:00.0817 4012 Disk - ok
18:41:00.0821 4012 [ 7712DE427603F528D8CBD9F7355A14F8 ] diskpt C:\Windows\system32\drivers\diskpt.sys
18:41:00.0822 4012 diskpt - ok
18:41:00.0825 4012 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
18:41:00.0827 4012 Dnscache - ok
18:41:00.0830 4012 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
18:41:00.0833 4012 dot3svc - ok
18:41:00.0836 4012 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
18:41:00.0837 4012 DPS - ok
18:41:00.0839 4012 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
18:41:00.0839 4012 drmkaud - ok
18:41:00.0843 4012 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
18:41:00.0844 4012 dtsoftbus01 - ok
18:41:00.0854 4012 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
18:41:00.0857 4012 DXGKrnl - ok
18:41:00.0862 4012 [ 398904F1FBF13CEF0FCB822E9CA5F2D5 ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys
18:41:00.0863 4012 eamonm - ok
18:41:00.0865 4012 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
18:41:00.0867 4012 EapHost - ok
18:41:00.0893 4012 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
18:41:00.0905 4012 ebdrv - ok
18:41:00.0908 4012 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
18:41:00.0909 4012 EFS - ok
18:41:00.0912 4012 [ 9E39134330C18CBAC0F24C1283701D7E ] ehdrv C:\Windows\system32\DRIVERS\ehdrv.sys
18:41:00.0913 4012 ehdrv - ok
18:41:00.0920 4012 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
18:41:00.0922 4012 ehRecvr - ok
18:41:00.0926 4012 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
18:41:00.0926 4012 ehSched - ok
18:41:00.0938 4012 [ 7FE34FD5652C54BDA8D2DF8AC92E833A ] ekrn C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
18:41:00.0943 4012 ekrn - ok
18:41:00.0949 4012 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
18:41:00.0951 4012 elxstor - ok
18:41:00.0961 4012 [ 392EC4EA0C265F5BC50D057BEAA593CD ] epfw C:\Windows\system32\DRIVERS\epfw.sys
18:41:00.0965 4012 epfw - ok
18:41:00.0967 4012 [ 0C9EC63C5BAE9506161F14B8A5C10280 ] EpfwLWF C:\Windows\system32\DRIVERS\EpfwLWF.sys
18:41:00.0968 4012 EpfwLWF - ok
18:41:00.0970 4012 [ AD03E0C95E750F3FBE84EDA87B2C4E08 ] epfwwfp C:\Windows\system32\DRIVERS\epfwwfp.sys
18:41:00.0971 4012 epfwwfp - ok
18:41:00.0973 4012 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
18:41:00.0973 4012 ErrDev - ok
18:41:00.0976 4012 [ 3DBC10CBC436288801FAEE66DE91AE47 ] EtronHub3 C:\Windows\system32\Drivers\EtronHub3.sys
18:41:00.0977 4012 EtronHub3 - ok
18:41:00.0979 4012 [ DE261095A2220D400D9603E1E42D4185 ] EtronXHCI C:\Windows\system32\Drivers\EtronXHCI.sys
18:41:00.0980 4012 EtronXHCI - ok
18:41:00.0985 4012 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
18:41:00.0987 4012 EventSystem - ok
18:41:00.0990 4012 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
18:41:00.0991 4012 exfat - ok
18:41:00.0994 4012 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
18:41:00.0995 4012 fastfat - ok
18:41:01.0002 4012 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
18:41:01.0007 4012 Fax - ok
18:41:01.0009 4012 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
18:41:01.0009 4012 fdc - ok
18:41:01.0011 4012 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
18:41:01.0012 4012 fdPHost - ok
18:41:01.0014 4012 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
18:41:01.0015 4012 FDResPub - ok
18:41:01.0017 4012 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
18:41:01.0018 4012 FileInfo - ok
18:41:01.0020 4012 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
18:41:01.0020 4012 Filetrace - ok
18:41:01.0022 4012 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
18:41:01.0022 4012 flpydisk - ok
18:41:01.0026 4012 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
18:41:01.0027 4012 FltMgr - ok
18:41:01.0037 4012 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
18:41:01.0046 4012 FontCache - ok
18:41:01.0049 4012 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
18:41:01.0049 4012 FontCache3.0.0.0 - ok
18:41:01.0052 4012 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
18:41:01.0052 4012 FsDepends - ok
18:41:01.0054 4012 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
18:41:01.0054 4012 Fs_Rec - ok
18:41:01.0057 4012 [ 290EBA98AD0CE0D1B880B5D71194B069 ] Futuremark SystemInfo Service C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe
18:41:01.0058 4012 Futuremark SystemInfo Service - ok
18:41:01.0062 4012 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
18:41:01.0062 4012 fvevol - ok
18:41:01.0065 4012 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
18:41:01.0065 4012 gagp30kx - ok
18:41:01.0066 4012 gdrv - ok
18:41:01.0074 4012 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
18:41:01.0079 4012 gpsvc - ok
18:41:01.0082 4012 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:41:01.0083 4012 gupdate - ok
18:41:01.0085 4012 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:41:01.0085 4012 gupdatem - ok
18:41:01.0088 4012 [ C1B577B2169900F4CF7190C39F085794 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
18:41:01.0089 4012 gusvc - ok
18:41:01.0091 4012 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
18:41:01.0091 4012 hcw85cir - ok
18:41:01.0095 4012 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
18:41:01.0097 4012 HdAudAddService - ok
18:41:01.0100 4012 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
18:41:01.0100 4012 HDAudBus - ok
18:41:01.0102 4012 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
18:41:01.0103 4012 HidBatt - ok
18:41:01.0105 4012 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
18:41:01.0105 4012 HidBth - ok
18:41:01.0108 4012 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
18:41:01.0108 4012 HidIr - ok
18:41:01.0110 4012 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
18:41:01.0111 4012 hidserv - ok
18:41:01.0113 4012 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
18:41:01.0114 4012 HidUsb - ok
18:41:01.0116 4012 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
18:41:01.0117 4012 hkmsvc - ok
18:41:01.0121 4012 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
18:41:01.0123 4012 HomeGroupListener - ok
18:41:01.0127 4012 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
18:41:01.0128 4012 HomeGroupProvider - ok
18:41:01.0130 4012 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
18:41:01.0131 4012 HpSAMD - ok
18:41:01.0138 4012 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
18:41:01.0140 4012 HTTP - ok
18:41:01.0143 4012 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
18:41:01.0143 4012 hwpolicy - ok
18:41:01.0146 4012 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
18:41:01.0146 4012 i8042prt - ok
18:41:01.0151 4012 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
18:41:01.0152 4012 iaStorV - ok
18:41:01.0155 4012 [ DAF66902F08796F9C694901660E5A64A ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
18:41:01.0156 4012 IDriverT - ok
18:41:01.0163 4012 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
18:41:01.0167 4012 idsvc - ok
18:41:01.0169 4012 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
18:41:01.0170 4012 iirsp - ok
18:41:01.0177 4012 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
18:41:01.0183 4012 IKEEXT - ok
18:41:01.0190 4012 [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
18:41:01.0192 4012 Intel(R) Capability Licensing Service Interface - ok
18:41:01.0195 4012 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
18:41:01.0195 4012 intelide - ok
18:41:01.0197 4012 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
18:41:01.0198 4012 intelppm - ok
18:41:01.0201 4012 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
18:41:01.0202 4012 IPBusEnum - ok
18:41:01.0204 4012 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:41:01.0205 4012 IpFilterDriver - ok
18:41:01.0210 4012 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
18:41:01.0215 4012 iphlpsvc - ok
18:41:01.0217 4012 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
18:41:01.0218 4012 IPMIDRV - ok
18:41:01.0220 4012 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
18:41:01.0221 4012 IPNAT - ok
18:41:01.0223 4012 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
18:41:01.0224 4012 IRENUM - ok
18:41:01.0226 4012 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
18:41:01.0226 4012 isapnp - ok
18:41:01.0229 4012 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
18:41:01.0230 4012 iScsiPrt - ok
18:41:01.0233 4012 [ D596D915CF091DA1F8CE4BD38BB5D509 ] iusb3hcs C:\Windows\system32\DRIVERS\iusb3hcs.sys
18:41:01.0233 4012 iusb3hcs - ok
18:41:01.0237 4012 [ 023896E23B61543A15A230EED996D911 ] iusb3hub C:\Windows\system32\DRIVERS\iusb3hub.sys
18:41:01.0238 4012 iusb3hub - ok
18:41:01.0246 4012 [ 7FAEC13F1ADD619F4B5B2D2CBF841E8E ] iusb3xhc C:\Windows\system32\DRIVERS\iusb3xhc.sys
18:41:01.0250 4012 iusb3xhc - ok
18:41:01.0254 4012 [ 78ABBE558F57144047F10A0F50FE4B2F ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
18:41:01.0255 4012 jhi_service - ok
18:41:01.0257 4012 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
18:41:01.0258 4012 kbdclass - ok
18:41:01.0260 4012 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
18:41:01.0260 4012 kbdhid - ok
18:41:01.0262 4012 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
18:41:01.0263 4012 KeyIso - ok
18:41:01.0265 4012 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
18:41:01.0266 4012 KSecDD - ok
18:41:01.0269 4012 [ 7EFB9333E4ECCE6AE4AE9D777D9E553E ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
18:41:01.0269 4012 KSecPkg - ok
18:41:01.0272 4012 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
18:41:01.0272 4012 ksthunk - ok
18:41:01.0277 4012 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
18:41:01.0281 4012 KtmRm - ok
18:41:01.0284 4012 [ A43A9920D2409BB9DA747D2FD20A2E61 ] L1C C:\Windows\system32\DRIVERS\L1C62x64.sys
18:41:01.0284 4012 L1C - ok
18:41:01.0288 4012 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
18:41:01.0290 4012 LanmanServer - ok
18:41:01.0293 4012 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
18:41:01.0295 4012 LanmanWorkstation - ok
18:41:01.0298 4012 [ FA529FB35694C24BF98A9EF67C1CD9D0 ] LGBusEnum C:\Windows\system32\drivers\LGBusEnum.sys
18:41:01.0298 4012 LGBusEnum - ok
18:41:01.0301 4012 [ CDDC07D414B08FECD48E4940C29F483F ] LGSHidFilt C:\Windows\system32\DRIVERS\LGSHidFilt.Sys
18:41:01.0301 4012 LGSHidFilt - ok
18:41:01.0304 4012 [ 64D2D4FDC00B9CF396B4FD4B07BCD06E ] LGSUsbFilt C:\Windows\system32\DRIVERS\LGSUsbFilt.Sys
18:41:01.0304 4012 LGSUsbFilt - ok
18:41:01.0306 4012 [ 94B29CE153765E768F004FB3440BE2B0 ] LGVirHid C:\Windows\system32\drivers\LGVirHid.sys
18:41:01.0307 4012 LGVirHid - ok
18:41:01.0309 4012 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
18:41:01.0309 4012 lltdio - ok
18:41:01.0313 4012 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
18:41:01.0316 4012 lltdsvc - ok
18:41:01.0318 4012 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
18:41:01.0319 4012 lmhosts - ok
18:41:01.0322 4012 [ 2C24DC448DBE8DB9BE1441B824C57E79 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
18:41:01.0323 4012 LMS - ok
18:41:01.0326 4012 [ 1B3F331CBBDB6805C07134F70B7F9CCF ] lowcdc C:\Windows\system32\DRIVERS\lowcdc.sys
18:41:01.0326 4012 lowcdc - ok
18:41:01.0330 4012 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
18:41:01.0330 4012 LSI_FC - ok
18:41:01.0333 4012 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
18:41:01.0333 4012 LSI_SAS - ok
18:41:01.0336 4012 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
18:41:01.0336 4012 LSI_SAS2 - ok
18:41:01.0339 4012 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
18:41:01.0339 4012 LSI_SCSI - ok
18:41:01.0342 4012 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
18:41:01.0342 4012 luafv - ok
18:41:01.0346 4012 [ 024DA28053D57E9E32BEE52600576BBB ] MarvinBus C:\Windows\system32\DRIVERS\MarvinBus64.sys
18:41:01.0347 4012 MarvinBus - ok
18:41:01.0349 4012 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
18:41:01.0350 4012 MBAMProtector - ok
18:41:01.0354 4012 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
18:41:01.0356 4012 MBAMScheduler - ok
18:41:01.0362 4012 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
18:41:01.0364 4012 MBAMService - ok
18:41:01.0367 4012 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
18:41:01.0369 4012 Mcx2Svc - ok
18:41:01.0371 4012 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
18:41:01.0372 4012 megasas - ok
18:41:01.0375 4012 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
18:41:01.0376 4012 MegaSR - ok
18:41:01.0379 4012 [ 772A1DEEDFDBC244183B5C805D1B7D85 ] MEIx64 C:\Windows\system32\DRIVERS\HECIx64.sys
18:41:01.0379 4012 MEIx64 - ok
18:41:01.0381 4012 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
18:41:01.0382 4012 MMCSS - ok
18:41:01.0384 4012 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
18:41:01.0385 4012 Modem - ok
18:41:01.0387 4012 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
18:41:01.0387 4012 monitor - ok
18:41:01.0389 4012 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
18:41:01.0390 4012 mouclass - ok
18:41:01.0392 4012 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
18:41:01.0392 4012 mouhid - ok
18:41:01.0395 4012 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
18:41:01.0395 4012 mountmgr - ok
18:41:01.0398 4012 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
18:41:01.0399 4012 mpio - ok
18:41:01.0401 4012 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
18:41:01.0402 4012 mpsdrv - ok
18:41:01.0409 4012 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
18:41:01.0415 4012 MpsSvc - ok
18:41:01.0418 4012 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
18:41:01.0419 4012 MRxDAV - ok
18:41:01.0437 4012 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
18:41:01.0438 4012 mrxsmb - ok
18:41:01.0442 4012 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:41:01.0443 4012 mrxsmb10 - ok
18:41:01.0445 4012 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:41:01.0446 4012 mrxsmb20 - ok
18:41:01.0448 4012 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
18:41:01.0449 4012 msahci - ok
18:41:01.0451 4012 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
18:41:01.0452 4012 msdsm - ok
18:41:01.0455 4012 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
18:41:01.0457 4012 MSDTC - ok
18:41:01.0460 4012 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
18:41:01.0461 4012 Msfs - ok
18:41:01.0463 4012 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
18:41:01.0463 4012 mshidkmdf - ok
18:41:01.0465 4012 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
18:41:01.0465 4012 msisadrv - ok
18:41:01.0468 4012 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
18:41:01.0470 4012 MSiSCSI - ok
18:41:01.0472 4012 msiserver - ok
18:41:01.0474 4012 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
18:41:01.0475 4012 MSKSSRV - ok
18:41:01.0476 4012 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
18:41:01.0477 4012 MSPCLOCK - ok
18:41:01.0478 4012 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
18:41:01.0479 4012 MSPQM - ok
18:41:01.0483 4012 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
18:41:01.0484 4012 MsRPC - ok
18:41:01.0487 4012 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
18:41:01.0488 4012 mssmbios - ok
18:41:01.0490 4012 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
18:41:01.0490 4012 MSTEE - ok
18:41:01.0492 4012 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
18:41:01.0492 4012 MTConfig - ok
18:41:01.0494 4012 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
18:41:01.0495 4012 Mup - ok
18:41:01.0500 4012 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
18:41:01.0504 4012 napagent - ok
18:41:01.0508 4012 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
18:41:01.0509 4012 NativeWifiP - ok
18:41:01.0518 4012 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
18:41:01.0522 4012 NDIS - ok
18:41:01.0524 4012 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
18:41:01.0524 4012 NdisCap - ok
18:41:01.0526 4012 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
18:41:01.0527 4012 NdisTapi - ok
18:41:01.0529 4012 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
18:41:01.0530 4012 Ndisuio - ok
18:41:01.0533 4012 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
18:41:01.0533 4012 NdisWan - ok
18:41:01.0535 4012 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
18:41:01.0536 4012 NDProxy - ok
18:41:01.0538 4012 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
18:41:01.0538 4012 NetBIOS - ok
18:41:01.0542 4012 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
18:41:01.0543 4012 NetBT - ok
18:41:01.0545 4012 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
18:41:01.0545 4012 Netlogon - ok
18:41:01.0550 4012 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
18:41:01.0553 4012 Netman - ok
18:41:01.0556 4012 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:41:01.0557 4012 NetMsmqActivator - ok
18:41:01.0559 4012 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:41:01.0559 4012 NetPipeActivator - ok
18:41:01.0564 4012 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
18:41:01.0567 4012 netprofm - ok
18:41:01.0569 4012 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:41:01.0570 4012 NetTcpActivator - ok
18:41:01.0572 4012 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:41:01.0572 4012 NetTcpPortSharing - ok
18:41:01.0575 4012 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
18:41:01.0575 4012 nfrd960 - ok
18:41:01.0579 4012 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
18:41:01.0582 4012 NlaSvc - ok
18:41:01.0584 4012 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
18:41:01.0585 4012 Npfs - ok
18:41:01.0587 4012 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
18:41:01.0588 4012 nsi - ok
18:41:01.0590 4012 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
18:41:01.0590 4012 nsiproxy - ok
18:41:01.0604 4012 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
18:41:01.0610 4012 Ntfs - ok
18:41:01.0613 4012 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
18:41:01.0613 4012 Null - ok
18:41:01.0616 4012 [ 805F0C2B9C07E4C0F74D0EF70E9E827A ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
18:41:01.0617 4012 NVHDA - ok
18:41:01.0693 4012 [ 7A711D08F1FD1AB8149B6199F84A0EB7 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
18:41:01.0732 4012 nvlddmkm - ok
18:41:01.0737 4012 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
18:41:01.0738 4012 nvraid - ok
18:41:01.0741 4012 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
18:41:01.0741 4012 nvstor - ok
18:41:01.0749 4012 [ B9F3591981D761A5CA1D24C369764D96 ] nvsvc C:\Windows\system32\nvvsvc.exe
18:41:01.0753 4012 nvsvc - ok
18:41:01.0767 4012 [ 77C691F3877A4F0F21253C9AC8DA4743 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
18:41:01.0774 4012 nvUpdatusService - ok
18:41:01.0777 4012 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
18:41:01.0778 4012 nv_agp - ok
18:41:01.0783 4012 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
18:41:01.0786 4012 odserv - ok
18:41:01.0788 4012 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
18:41:01.0789 4012 ohci1394 - ok
18:41:01.0791 4012 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
18:41:01.0792 4012 ose - ok
18:41:01.0797 4012 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
18:41:01.0799 4012 p2pimsvc - ok
18:41:01.0805 4012 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
18:41:01.0808 4012 p2psvc - ok
18:41:01.0811 4012 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
18:41:01.0812 4012 Parport - ok
18:41:01.0814 4012 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
18:41:01.0815 4012 partmgr - ok
18:41:01.0818 4012 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
18:41:01.0820 4012 PcaSvc - ok
18:41:01.0823 4012 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
18:41:01.0824 4012 pci - ok
18:41:01.0826 4012 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
18:41:01.0826 4012 pciide - ok
18:41:01.0829 4012 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
18:41:01.0830 4012 pcmcia - ok
18:41:01.0832 4012 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
18:41:01.0833 4012 pcw - ok
18:41:01.0839 4012 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
18:41:01.0841 4012 PEAUTH - ok
18:41:01.0854 4012 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
18:41:01.0863 4012 PeerDistSvc - ok
18:41:01.0879 4012 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
18:41:01.0879 4012 PerfHost - ok
18:41:01.0893 4012 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
18:41:01.0903 4012 pla - ok
18:41:01.0908 4012 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
18:41:01.0912 4012 PlugPlay - ok
18:41:01.0914 4012 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
18:41:01.0915 4012 PNRPAutoReg - ok
18:41:01.0919 4012 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
18:41:01.0921 4012 PNRPsvc - ok
18:41:01.0926 4012 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
18:41:01.0930 4012 PolicyAgent - ok
18:41:01.0934 4012 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
18:41:01.0936 4012 Power - ok
18:41:01.0938 4012 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
18:41:01.0939 4012 PptpMiniport - ok
18:41:01.0941 4012 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
18:41:01.0942 4012 Processor - ok
18:41:01.0945 4012 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
18:41:01.0947 4012 ProfSvc - ok
18:41:01.0949 4012 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
18:41:01.0950 4012 ProtectedStorage - ok
18:41:01.0953 4012 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
18:41:01.0953 4012 Psched - ok
18:41:01.0976 4012 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
18:41:01.0981 4012 ql2300 - ok
18:41:01.0985 4012 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
18:41:01.0985 4012 ql40xx - ok
18:41:01.0989 4012 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
18:41:01.0992 4012 QWAVE - ok
18:41:01.0994 4012 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
18:41:01.0994 4012 QWAVEdrv - ok
18:41:01.0996 4012 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
18:41:01.0996 4012 RasAcd - ok
18:41:01.0999 4012 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
18:41:01.0999 4012 RasAgileVpn - ok
18:41:02.0002 4012 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
18:41:02.0003 4012 RasAuto - ok
18:41:02.0006 4012 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
18:41:02.0007 4012 Rasl2tp - ok
18:41:02.0011 4012 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
18:41:02.0014 4012 RasMan - ok
18:41:02.0017 4012 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
18:41:02.0017 4012 RasPppoe - ok
18:41:02.0019 4012 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
18:41:02.0020 4012 RasSstp - ok
18:41:02.0024 4012 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
18:41:02.0025 4012 rdbss - ok
18:41:02.0027 4012 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
18:41:02.0027 4012 rdpbus - ok
18:41:02.0029 4012 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
18:41:02.0029 4012 RDPCDD - ok
18:41:02.0033 4012 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
18:41:02.0034 4012 RDPDR - ok
18:41:02.0036 4012 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
18:41:02.0036 4012 RDPENCDD - ok
18:41:02.0039 4012 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
18:41:02.0039 4012 RDPREFMP - ok
18:41:02.0042 4012 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
18:41:02.0042 4012 RdpVideoMiniport - ok
18:41:02.0046 4012 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
18:41:02.0047 4012 RDPWD - ok
18:41:02.0051 4012 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
18:41:02.0051 4012 rdyboost - ok
18:41:02.0054 4012 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
18:41:02.0055 4012 RemoteAccess - ok
18:41:02.0058 4012 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
18:41:02.0060 4012 RemoteRegistry - ok
18:41:02.0063 4012 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
18:41:02.0064 4012 RpcEptMapper - ok
18:41:02.0066 4012 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
18:41:02.0067 4012 RpcLocator - ok
18:41:02.0072 4012 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
18:41:02.0074 4012 RpcSs - ok
18:41:02.0077 4012 [ 2ABD2B3BA2EF0C3BA82284C2A5E28675 ] RRNetCap C:\Windows\system32\DRIVERS\rrnetcap.sys
18:41:02.0077 4012 RRNetCap - ok
18:41:02.0079 4012 [ 2ABD2B3BA2EF0C3BA82284C2A5E28675 ] RRNetCapMP C:\Windows\system32\DRIVERS\rrnetcap.sys
18:41:02.0079 4012 RRNetCapMP - ok
18:41:02.0081 4012 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
18:41:02.0082 4012 rspndr - ok
18:41:02.0084 4012 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
18:41:02.0084 4012 s3cap - ok
18:41:02.0086 4012 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
18:41:02.0087 4012 SamSs - ok
18:41:02.0089 4012 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
18:41:02.0090 4012 sbp2port - ok
18:41:02.0093 4012 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
18:41:02.0095 4012 SCardSvr - ok
18:41:02.0098 4012 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
18:41:02.0098 4012 scfilter - ok
18:41:02.0108 4012 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
18:41:02.0116 4012 Schedule - ok
18:41:02.0119 4012 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
18:41:02.0119 4012 SCPolicySvc - ok
18:41:02.0122 4012 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
18:41:02.0124 4012 SDRSVC - ok
18:41:02.0126 4012 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
18:41:02.0127 4012 secdrv - ok
18:41:02.0129 4012 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
18:41:02.0130 4012 seclogon - ok
18:41:02.0133 4012 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
18:41:02.0134 4012 SENS - ok
18:41:02.0136 4012 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
18:41:02.0137 4012 SensrSvc - ok
18:41:02.0140 4012 [ 2437720D4480523562360B2B6B5864A7 ] Ser2pl C:\Windows\system32\DRIVERS\ser2pl64.sys
18:41:02.0141 4012 Ser2pl - ok
18:41:02.0143 4012 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
18:41:02.0144 4012 Serenum - ok
18:41:02.0146 4012 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
18:41:02.0146 4012 Serial - ok
18:41:02.0149 4012 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
18:41:02.0149 4012 sermouse - ok
18:41:02.0154 4012 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
18:41:02.0156 4012 SessionEnv - ok
18:41:02.0158 4012 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
18:41:02.0159 4012 sffdisk - ok
18:41:02.0160 4012 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
18:41:02.0161 4012 sffp_mmc - ok
18:41:02.0162 4012 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
18:41:02.0163 4012 sffp_sd - ok
18:41:02.0165 4012 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
18:41:02.0165 4012 sfloppy - ok
18:41:02.0169 4012 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
18:41:02.0172 4012 SharedAccess - ok
18:41:02.0177 4012 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
18:41:02.0180 4012 ShellHWDetection - ok
18:41:02.0183 4012 [ 0F498DEE92FD73DD999BAE4D506367F5 ] SI3132 C:\Windows\system32\DRIVERS\SI3132.sys
18:41:02.0184 4012 SI3132 - ok
18:41:02.0186 4012 [ 127CE10E01F53F2EDACA7FE42E5631EA ] SiFilter C:\Windows\system32\DRIVERS\SiWinAcc.sys
18:41:02.0186 4012 SiFilter - ok
18:41:02.0188 4012 [ 7799106FEE728B907A86D9C9751E02D5 ] silabenm C:\Windows\system32\DRIVERS\silabenm.sys
18:41:02.0189 4012 silabenm - ok
18:41:02.0191 4012 [ 4AD84F9B367B89B48A3338E0AECA06B9 ] silabser C:\Windows\system32\DRIVERS\silabser.sys
18:41:02.0192 4012 silabser - ok
18:41:02.0194 4012 [ B742C37002B8EBEF6E230DF9B4B28546 ] SiRemFil C:\Windows\system32\DRIVERS\SiRemFil.sys
18:41:02.0194 4012 SiRemFil - ok
18:41:02.0196 4012 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
18:41:02.0196 4012 SiSRaid2 - ok
18:41:02.0198 4012 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
18:41:02.0199 4012 SiSRaid4 - ok
18:41:02.0201 4012 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
18:41:02.0202 4012 Smb - ok
18:41:02.0206 4012 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
18:41:02.0207 4012 SNMPTRAP - ok
18:41:02.0209 4012 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
18:41:02.0209 4012 spldr - ok
18:41:02.0215 4012 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
18:41:02.0218 4012 Spooler - ok
18:41:02.0245 4012 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
18:41:02.0259 4012 sppsvc - ok
18:41:02.0262 4012 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
18:41:02.0263 4012 sppuinotify - ok
18:41:02.0268 4012 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
18:41:02.0270 4012 srv - ok
18:41:02.0275 4012 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
18:41:02.0276 4012 srv2 - ok
18:41:02.0279 4012 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
18:41:02.0280 4012 srvnet - ok
18:41:02.0283 4012 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
18:41:02.0286 4012 SSDPSRV - ok
18:41:02.0288 4012 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
18:41:02.0290 4012 SstpSvc - ok
18:41:02.0291 4012 Steam Client Service - ok
18:41:02.0297 4012 [ 0887B293199AA2055888FABA989ED0A6 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
18:41:02.0298 4012 Stereo Service - ok
18:41:02.0301 4012 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
18:41:02.0301 4012 stexstor - ok
18:41:02.0307 4012 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
18:41:02.0312 4012 stisvc - ok
18:41:02.0314 4012 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
18:41:02.0314 4012 storflt - ok
18:41:02.0316 4012 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys
18:41:02.0317 4012 storvsc - ok
18:41:02.0319 4012 [ EEBBD6E7D1E31F18B1BA5707FD7A04D6 ] SWDUMon C:\Windows\system32\DRIVERS\SWDUMon.sys
18:41:02.0319 4012 SWDUMon - ok
18:41:02.0321 4012 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
18:41:02.0322 4012 swenum - ok
18:41:02.0328 4012 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
18:41:02.0330 4012 swprv - ok
18:41:02.0333 4012 Synth3dVsc - ok
18:41:02.0347 4012 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
18:41:02.0359 4012 SysMain - ok
18:41:02.0362 4012 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
18:41:02.0364 4012 TabletInputService - ok
18:41:02.0368 4012 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
18:41:02.0371 4012 TapiSrv - ok
18:41:02.0373 4012 [ 048CFE7569D6ADCAB9349BB1A566A79E ] tbhsd C:\Windows\system32\drivers\tbhsd.sys
18:41:02.0374 4012 tbhsd - ok
18:41:02.0376 4012 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
18:41:02.0377 4012 TBS - ok
18:41:02.0394 4012 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] Tcpip C:\Windows\system32\drivers\tcpip.sys
18:41:02.0401 4012 Tcpip - ok
18:41:02.0417 4012 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
18:41:02.0423 4012 TCPIP6 - ok
18:41:02.0427 4012 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
18:41:02.0427 4012 tcpipreg - ok
18:41:02.0430 4012 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
18:41:02.0431 4012 TDPIPE - ok
18:41:02.0433 4012 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
18:41:02.0433 4012 TDTCP - ok
18:41:02.0436 4012 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
18:41:02.0436 4012 tdx - ok
18:41:02.0466 4012 [ 879F46329B7DC4D109345AA96F1AB47F ] TeamViewer8 C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
18:41:02.0481 4012 TeamViewer8 - ok
18:41:02.0485 4012 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
18:41:02.0485 4012 TermDD - ok
18:41:02.0492 4012 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
18:41:02.0495 4012 TermService - ok
18:41:02.0498 4012 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
18:41:02.0499 4012 Themes - ok
18:41:02.0501 4012 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
18:41:02.0502 4012 THREADORDER - ok
18:41:02.0505 4012 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
18:41:02.0507 4012 TrkWks - ok
18:41:02.0510 4012 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
18:41:02.0510 4012 TrustedInstaller - ok
18:41:02.0514 4012 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
18:41:02.0514 4012 tssecsrv - ok
18:41:02.0516 4012 [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
18:41:02.0517 4012 TsUsbFlt - ok
18:41:02.0518 4012 tsusbhub - ok
18:41:02.0522 4012 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
18:41:02.0522 4012 tunnel - ok
18:41:02.0525 4012 TVicPort - ok
18:41:02.0527 4012 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
18:41:02.0528 4012 uagp35 - ok
18:41:02.0532 4012 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
18:41:02.0533 4012 udfs - ok
18:41:02.0537 4012 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
18:41:02.0539 4012 UI0Detect - ok
18:41:02.0541 4012 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
18:41:02.0542 4012 uliagpkx - ok
18:41:02.0544 4012 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\drivers\umbus.sys
18:41:02.0544 4012 umbus - ok
18:41:02.0546 4012 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
18:41:02.0547 4012 UmPass - ok
18:41:02.0550 4012 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll
18:41:02.0553 4012 UmRdpService - ok
18:41:02.0558 4012 [ E1A119AD21F5AFE22EB516C549306D3D ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
18:41:02.0559 4012 UNS - ok
18:41:02.0563 4012 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
18:41:02.0566 4012 upnphost - ok
18:41:02.0570 4012 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
18:41:02.0571 4012 usbccgp - ok
18:41:02.0573 4012 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
18:41:02.0574 4012 usbcir - ok
18:41:02.0576 4012 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\drivers\usbehci.sys
18:41:02.0576 4012 usbehci - ok
18:41:02.0580 4012 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
18:41:02.0582 4012 usbhub - ok
18:41:02.0596 4012 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\drivers\usbohci.sys
18:41:02.0597 4012 usbohci - ok
18:41:02.0607 4012 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
18:41:02.0607 4012 usbprint - ok
18:41:02.0610 4012 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
18:41:02.0610 4012 usbscan - ok
18:41:02.0613 4012 [ 4ACEE387FA8FD39F83564FCD2FC234F2 ] usbser C:\Windows\system32\DRIVERS\usbser.sys
18:41:02.0613 4012 usbser - ok
18:41:02.0615 4012 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
18:41:02.0616 4012 USBSTOR - ok
18:41:02.0618 4012 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
18:41:02.0618 4012 usbuhci - ok
18:41:02.0622 4012 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
18:41:02.0623 4012 usbvideo - ok
18:41:02.0626 4012 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
18:41:02.0627 4012 UxSms - ok
18:41:02.0629 4012 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
18:41:02.0629 4012 VaultSvc - ok
18:41:02.0632 4012 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
18:41:02.0632 4012 vdrvroot - ok
18:41:02.0637 4012 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
18:41:02.0642 4012 vds - ok
18:41:02.0644 4012 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
18:41:02.0644 4012 vga - ok
18:41:02.0646 4012 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
18:41:02.0647 4012 VgaSave - ok
18:41:02.0649 4012 VGPU - ok
18:41:02.0652 4012 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
18:41:02.0653 4012 vhdmp - ok
18:41:02.0671 4012 [ 3CCC0D9607419AC28B4216C18F6FA5E9 ] VIAHdAudAddService C:\Windows\system32\drivers\viahduaa.sys
18:41:02.0679 4012 VIAHdAudAddService - ok
18:41:02.0682 4012 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
18:41:02.0682 4012 viaide - ok
18:41:02.0684 4012 [ 888450E821E7A66CB8A4E5B7A01BA5C5 ] VIAKaraokeService C:\Windows\system32\viakaraokesrv.exe
18:41:02.0686 4012 VIAKaraokeService - ok
18:41:02.0689 4012 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys
18:41:02.0690 4012 vmbus - ok
18:41:02.0691 4012 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
18:41:02.0692 4012 VMBusHID - ok
18:41:02.0694 4012 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
18:41:02.0695 4012 volmgr - ok
18:41:02.0699 4012 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
18:41:02.0701 4012 volmgrx - ok
18:41:02.0704 4012 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
18:41:02.0706 4012 volsnap - ok
18:41:02.0709 4012 [ B4A73CA4EF9A02B9738CEA9AD5FE5917 ] vpcbus C:\Windows\system32\DRIVERS\vpchbus.sys
18:41:02.0710 4012 vpcbus - ok
18:41:02.0712 4012 [ E675FB2B48C54F09895482E2253B289C ] vpcnfltr C:\Windows\system32\DRIVERS\vpcnfltr.sys
18:41:02.0713 4012 vpcnfltr - ok
18:41:02.0715 4012 [ 5FB42082B0D19A0268705F1DD343DF20 ] vpcusb C:\Windows\system32\DRIVERS\vpcusb.sys
18:41:02.0716 4012 vpcusb - ok
18:41:02.0718 4012 [ 63F4E10873BEB4124028C6D1A66B0968 ] vpcuxd C:\Windows\system32\DRIVERS\vpcuxd.sys
18:41:02.0718 4012 vpcuxd - ok
18:41:02.0722 4012 [ 207B6539799CC1C112661A9B620DD233 ] vpcvmm C:\Windows\system32\drivers\vpcvmm.sys
18:41:02.0724 4012 vpcvmm - ok
18:41:02.0727 4012 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
18:41:02.0728 4012 vsmraid - ok
18:41:02.0741 4012 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
18:41:02.0748 4012 VSS - ok
18:41:02.0751 4012 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
18:41:02.0751 4012 vwifibus - ok
18:41:02.0756 4012 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
18:41:02.0759 4012 W32Time - ok
18:41:02.0762 4012 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
18:41:02.0762 4012 WacomPen - ok
18:41:02.0765 4012 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
18:41:02.0766 4012 WANARP - ok
18:41:02.0767 4012 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
18:41:02.0768 4012 Wanarpv6 - ok
18:41:02.0779 4012 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
18:41:02.0788 4012 WatAdminSvc - ok
18:41:02.0801 4012 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
18:41:02.0813 4012 wbengine - ok
18:41:02.0816 4012 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
18:41:02.0819 4012 WbioSrvc - ok
18:41:02.0823 4012 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
18:41:02.0826 4012 wcncsvc - ok
18:41:02.0829 4012 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
18:41:02.0830 4012 WcsPlugInService - ok
18:41:02.0832 4012 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
18:41:02.0833 4012 Wd - ok
18:41:02.0840 4012 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
18:41:02.0842 4012 Wdf01000 - ok
18:41:02.0845 4012 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
18:41:02.0846 4012 WdiServiceHost - ok
18:41:02.0848 4012 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
18:41:02.0850 4012 WdiSystemHost - ok
18:41:02.0853 4012 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
18:41:02.0855 4012 WebClient - ok
18:41:02.0859 4012 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
18:41:02.0862 4012 Wecsvc - ok
18:41:02.0864 4012 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
18:41:02.0866 4012 wercplsupport - ok
18:41:02.0868 4012 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
18:41:02.0870 4012 WerSvc - ok
18:41:02.0873 4012 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
18:41:02.0873 4012 WfpLwf - ok
18:41:02.0875 4012 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
18:41:02.0875 4012 WIMMount - ok
18:41:02.0877 4012 WinDefend - ok
18:41:02.0883 4012 [ 4032F1D329FBB5E3662DDD8EF2343E3B ] WinDriver6 C:\Windows\system32\drivers\windrvr6.sys
18:41:02.0884 4012 WinDriver6 - ok
18:41:02.0885 4012 WinHttpAutoProxySvc - ok
18:41:02.0891 4012 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
18:41:02.0892 4012 Winmgmt - ok
18:41:02.0908 4012 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
18:41:02.0922 4012 WinRM - ok
18:41:02.0933 4012 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
18:41:02.0940 4012 Wlansvc - ok
18:41:02.0943 4012 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
18:41:02.0943 4012 WmiAcpi - ok
18:41:02.0947 4012 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
18:41:02.0949 4012 wmiApSrv - ok
18:41:02.0951 4012 WMPNetworkSvc - ok
18:41:02.0963 4012 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
18:41:02.0964 4012 WPCSvc - ok
18:41:02.0967 4012 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
18:41:02.0969 4012 WPDBusEnum - ok
18:41:02.0971 4012 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
18:41:02.0972 4012 ws2ifsl - ok
18:41:02.0974 4012 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
18:41:02.0976 4012 wscsvc - ok
18:41:02.0978 4012 WSearch - ok
18:41:02.0998 4012 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
18:41:03.0007 4012 wuauserv - ok
18:41:03.0011 4012 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
18:41:03.0011 4012 WudfPf - ok
18:41:03.0015 4012 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
18:41:03.0015 4012 WUDFRd - ok
18:41:03.0018 4012 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
18:41:03.0020 4012 wudfsvc - ok
18:41:03.0023 4012 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll
18:41:03.0026 4012 WwanSvc - ok
18:41:03.0029 4012 ================ Scan global ===============================
18:41:03.0031 4012 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
18:41:03.0034 4012 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
18:41:03.0039 4012 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
18:41:03.0042 4012 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
18:41:03.0046 4012 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
18:41:03.0048 4012 [Global] - ok
18:41:03.0048 4012 ================ Scan MBR ==================================
18:41:03.0049 4012 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
18:41:03.0217 4012 \Device\Harddisk0\DR0 - ok
18:41:03.0218 4012 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1
18:41:03.0220 4012 \Device\Harddisk1\DR1 - ok
18:41:03.0220 4012 ================ Scan VBR ==================================
18:41:03.0223 4012 [ 6457A7AA6E1EE3B368551750594265E8 ] \Device\Harddisk0\DR0\Partition1
18:41:03.0224 4012 \Device\Harddisk0\DR0\Partition1 - ok
18:41:03.0225 4012 [ 17F5FA98498AA9054DC9FEC036F5BC0E ] \Device\Harddisk0\DR0\Partition2
18:41:03.0226 4012 \Device\Harddisk0\DR0\Partition2 - ok
18:41:03.0227 4012 [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk1\DR1\Partition1
18:41:03.0227 4012 \Device\Harddisk1\DR1\Partition1 - ok
18:41:03.0239 4012 [ 1B1C6EB0006E6B78DF95F4FAAFF83892 ] \Device\Harddisk1\DR1\Partition2
18:41:03.0240 4012 \Device\Harddisk1\DR1\Partition2 - ok
18:41:03.0240 4012 ============================================================
18:41:03.0240 4012 Scan finished
18:41:03.0240 4012 ============================================================
18:41:03.0244 5104 Detected object count: 0
18:41:03.0244 5104 Actual detected object count: 0
18:41:07.0912 1488 Deinitialize success
Google ví skoro vše. Ale někdy je problém co tam napsat, aby to našlo to, co hledám.
Pokud se to nepovede, vypadne tuna nepoužitelných odkazů a nebo taky nic.

Uživatelský avatar
Speed_dead
Level 6
Level 6
Příspěvky: 3281
Registrován: duben 10
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Podezřele na prishing breberku

Příspěvekod Speed_dead » 18 čer 2013 18:47

pokračování předešlého logu

18:41:00.0721 4012 clr_optimization_v2.0.50727_64 - ok
18:41:00.0726 4012 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
18:41:00.0729 4012 clr_optimization_v4.0.30319_32 - ok
18:41:00.0732 4012 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
18:41:00.0735 4012 clr_optimization_v4.0.30319_64 - ok
18:41:00.0737 4012 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
18:41:00.0737 4012 CmBatt - ok
18:41:00.0739 4012 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
18:41:00.0740 4012 cmdide - ok
18:41:00.0745 4012 [ AAFCB52FE0037207FB6FBEA070D25EFE ] CNG C:\Windows\system32\Drivers\cng.sys
18:41:00.0747 4012 CNG - ok
18:41:00.0749 4012 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
18:41:00.0750 4012 Compbatt - ok
18:41:00.0752 4012 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
18:41:00.0752 4012 CompositeBus - ok
18:41:00.0754 4012 COMSysApp - ok
18:41:00.0757 4012 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
18:41:00.0757 4012 crcdisk - ok
18:41:00.0761 4012 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
18:41:00.0762 4012 CryptSvc - ok
18:41:00.0768 4012 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys
18:41:00.0770 4012 CSC - ok
18:41:00.0777 4012 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll
18:41:00.0782 4012 CscService - ok
18:41:00.0788 4012 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
18:41:00.0793 4012 DcomLaunch - ok
18:41:00.0797 4012 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
18:41:00.0799 4012 defragsvc - ok
18:41:00.0802 4012 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
18:41:00.0802 4012 DfsC - ok
18:41:00.0804 4012 DfSdkS - ok
18:41:00.0809 4012 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
18:41:00.0811 4012 Dhcp - ok
18:41:00.0814 4012 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
18:41:00.0814 4012 discache - ok
18:41:00.0816 4012 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
18:41:00.0817 4012 Disk - ok
18:41:00.0821 4012 [ 7712DE427603F528D8CBD9F7355A14F8 ] diskpt C:\Windows\system32\drivers\diskpt.sys
18:41:00.0822 4012 diskpt - ok
18:41:00.0825 4012 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
18:41:00.0827 4012 Dnscache - ok
18:41:00.0830 4012 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
18:41:00.0833 4012 dot3svc - ok
18:41:00.0836 4012 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
18:41:00.0837 4012 DPS - ok
18:41:00.0839 4012 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
18:41:00.0839 4012 drmkaud - ok
18:41:00.0843 4012 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
18:41:00.0844 4012 dtsoftbus01 - ok
18:41:00.0854 4012 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
18:41:00.0857 4012 DXGKrnl - ok
18:41:00.0862 4012 [ 398904F1FBF13CEF0FCB822E9CA5F2D5 ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys
18:41:00.0863 4012 eamonm - ok
18:41:00.0865 4012 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
18:41:00.0867 4012 EapHost - ok
18:41:00.0893 4012 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
18:41:00.0905 4012 ebdrv - ok
18:41:00.0908 4012 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
18:41:00.0909 4012 EFS - ok
18:41:00.0912 4012 [ 9E39134330C18CBAC0F24C1283701D7E ] ehdrv C:\Windows\system32\DRIVERS\ehdrv.sys
18:41:00.0913 4012 ehdrv - ok
18:41:00.0920 4012 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
18:41:00.0922 4012 ehRecvr - ok
18:41:00.0926 4012 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
18:41:00.0926 4012 ehSched - ok
18:41:00.0938 4012 [ 7FE34FD5652C54BDA8D2DF8AC92E833A ] ekrn C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
18:41:00.0943 4012 ekrn - ok
18:41:00.0949 4012 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
18:41:00.0951 4012 elxstor - ok
18:41:00.0961 4012 [ 392EC4EA0C265F5BC50D057BEAA593CD ] epfw C:\Windows\system32\DRIVERS\epfw.sys
18:41:00.0965 4012 epfw - ok
18:41:00.0967 4012 [ 0C9EC63C5BAE9506161F14B8A5C10280 ] EpfwLWF C:\Windows\system32\DRIVERS\EpfwLWF.sys
18:41:00.0968 4012 EpfwLWF - ok
18:41:00.0970 4012 [ AD03E0C95E750F3FBE84EDA87B2C4E08 ] epfwwfp C:\Windows\system32\DRIVERS\epfwwfp.sys
18:41:00.0971 4012 epfwwfp - ok
18:41:00.0973 4012 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
18:41:00.0973 4012 ErrDev - ok
18:41:00.0976 4012 [ 3DBC10CBC436288801FAEE66DE91AE47 ] EtronHub3 C:\Windows\system32\Drivers\EtronHub3.sys
18:41:00.0977 4012 EtronHub3 - ok
18:41:00.0979 4012 [ DE261095A2220D400D9603E1E42D4185 ] EtronXHCI C:\Windows\system32\Drivers\EtronXHCI.sys
18:41:00.0980 4012 EtronXHCI - ok
18:41:00.0985 4012 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
18:41:00.0987 4012 EventSystem - ok
18:41:00.0990 4012 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
18:41:00.0991 4012 exfat - ok
18:41:00.0994 4012 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
18:41:00.0995 4012 fastfat - ok
18:41:01.0002 4012 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
18:41:01.0007 4012 Fax - ok
18:41:01.0009 4012 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
18:41:01.0009 4012 fdc - ok
18:41:01.0011 4012 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
18:41:01.0012 4012 fdPHost - ok
18:41:01.0014 4012 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
18:41:01.0015 4012 FDResPub - ok
18:41:01.0017 4012 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
18:41:01.0018 4012 FileInfo - ok
18:41:01.0020 4012 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
18:41:01.0020 4012 Filetrace - ok
18:41:01.0022 4012 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
18:41:01.0022 4012 flpydisk - ok
18:41:01.0026 4012 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
18:41:01.0027 4012 FltMgr - ok
18:41:01.0037 4012 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
18:41:01.0046 4012 FontCache - ok
18:41:01.0049 4012 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
18:41:01.0049 4012 FontCache3.0.0.0 - ok
18:41:01.0052 4012 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
18:41:01.0052 4012 FsDepends - ok
18:41:01.0054 4012 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
18:41:01.0054 4012 Fs_Rec - ok
18:41:01.0057 4012 [ 290EBA98AD0CE0D1B880B5D71194B069 ] Futuremark SystemInfo Service C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe
18:41:01.0058 4012 Futuremark SystemInfo Service - ok
18:41:01.0062 4012 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
18:41:01.0062 4012 fvevol - ok
18:41:01.0065 4012 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
18:41:01.0065 4012 gagp30kx - ok
18:41:01.0066 4012 gdrv - ok
18:41:01.0074 4012 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
18:41:01.0079 4012 gpsvc - ok
18:41:01.0082 4012 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:41:01.0083 4012 gupdate - ok
18:41:01.0085 4012 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:41:01.0085 4012 gupdatem - ok
18:41:01.0088 4012 [ C1B577B2169900F4CF7190C39F085794 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
18:41:01.0089 4012 gusvc - ok
18:41:01.0091 4012 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
18:41:01.0091 4012 hcw85cir - ok
18:41:01.0095 4012 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
18:41:01.0097 4012 HdAudAddService - ok
18:41:01.0100 4012 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
18:41:01.0100 4012 HDAudBus - ok
18:41:01.0102 4012 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
18:41:01.0103 4012 HidBatt - ok
18:41:01.0105 4012 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
18:41:01.0105 4012 HidBth - ok
18:41:01.0108 4012 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
18:41:01.0108 4012 HidIr - ok
18:41:01.0110 4012 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
18:41:01.0111 4012 hidserv - ok
18:41:01.0113 4012 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
18:41:01.0114 4012 HidUsb - ok
18:41:01.0116 4012 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
18:41:01.0117 4012 hkmsvc - ok
18:41:01.0121 4012 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
18:41:01.0123 4012 HomeGroupListener - ok
18:41:01.0127 4012 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
18:41:01.0128 4012 HomeGroupProvider - ok
18:41:01.0130 4012 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
18:41:01.0131 4012 HpSAMD - ok
18:41:01.0138 4012 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
18:41:01.0140 4012 HTTP - ok
18:41:01.0143 4012 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
18:41:01.0143 4012 hwpolicy - ok
18:41:01.0146 4012 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
18:41:01.0146 4012 i8042prt - ok
18:41:01.0151 4012 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
18:41:01.0152 4012 iaStorV - ok
18:41:01.0155 4012 [ DAF66902F08796F9C694901660E5A64A ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
18:41:01.0156 4012 IDriverT - ok
18:41:01.0163 4012 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
18:41:01.0167 4012 idsvc - ok
18:41:01.0169 4012 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
18:41:01.0170 4012 iirsp - ok
18:41:01.0177 4012 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
18:41:01.0183 4012 IKEEXT - ok
18:41:01.0190 4012 [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
18:41:01.0192 4012 Intel(R) Capability Licensing Service Interface - ok
18:41:01.0195 4012 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
18:41:01.0195 4012 intelide - ok
18:41:01.0197 4012 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
18:41:01.0198 4012 intelppm - ok
18:41:01.0201 4012 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
18:41:01.0202 4012 IPBusEnum - ok
18:41:01.0204 4012 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:41:01.0205 4012 IpFilterDriver - ok
18:41:01.0210 4012 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
18:41:01.0215 4012 iphlpsvc - ok
18:41:01.0217 4012 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
18:41:01.0218 4012 IPMIDRV - ok
18:41:01.0220 4012 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
18:41:01.0221 4012 IPNAT - ok
18:41:01.0223 4012 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
18:41:01.0224 4012 IRENUM - ok
18:41:01.0226 4012 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
18:41:01.0226 4012 isapnp - ok
18:41:01.0229 4012 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
18:41:01.0230 4012 iScsiPrt - ok
18:41:01.0233 4012 [ D596D915CF091DA1F8CE4BD38BB5D509 ] iusb3hcs C:\Windows\system32\DRIVERS\iusb3hcs.sys
18:41:01.0233 4012 iusb3hcs - ok
18:41:01.0237 4012 [ 023896E23B61543A15A230EED996D911 ] iusb3hub C:\Windows\system32\DRIVERS\iusb3hub.sys
18:41:01.0238 4012 iusb3hub - ok
18:41:01.0246 4012 [ 7FAEC13F1ADD619F4B5B2D2CBF841E8E ] iusb3xhc C:\Windows\system32\DRIVERS\iusb3xhc.sys
18:41:01.0250 4012 iusb3xhc - ok
18:41:01.0254 4012 [ 78ABBE558F57144047F10A0F50FE4B2F ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
18:41:01.0255 4012 jhi_service - ok
18:41:01.0257 4012 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
18:41:01.0258 4012 kbdclass - ok
18:41:01.0260 4012 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
18:41:01.0260 4012 kbdhid - ok
18:41:01.0262 4012 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
18:41:01.0263 4012 KeyIso - ok
18:41:01.0265 4012 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
18:41:01.0266 4012 KSecDD - ok
18:41:01.0269 4012 [ 7EFB9333E4ECCE6AE4AE9D777D9E553E ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
18:41:01.0269 4012 KSecPkg - ok
18:41:01.0272 4012 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
18:41:01.0272 4012 ksthunk - ok
18:41:01.0277 4012 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
18:41:01.0281 4012 KtmRm - ok
18:41:01.0284 4012 [ A43A9920D2409BB9DA747D2FD20A2E61 ] L1C C:\Windows\system32\DRIVERS\L1C62x64.sys
18:41:01.0284 4012 L1C - ok
18:41:01.0288 4012 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
18:41:01.0290 4012 LanmanServer - ok
18:41:01.0293 4012 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
18:41:01.0295 4012 LanmanWorkstation - ok
18:41:01.0298 4012 [ FA529FB35694C24BF98A9EF67C1CD9D0 ] LGBusEnum C:\Windows\system32\drivers\LGBusEnum.sys
18:41:01.0298 4012 LGBusEnum - ok
18:41:01.0301 4012 [ CDDC07D414B08FECD48E4940C29F483F ] LGSHidFilt C:\Windows\system32\DRIVERS\LGSHidFilt.Sys
18:41:01.0301 4012 LGSHidFilt - ok
18:41:01.0304 4012 [ 64D2D4FDC00B9CF396B4FD4B07BCD06E ] LGSUsbFilt C:\Windows\system32\DRIVERS\LGSUsbFilt.Sys
18:41:01.0304 4012 LGSUsbFilt - ok
18:41:01.0306 4012 [ 94B29CE153765E768F004FB3440BE2B0 ] LGVirHid C:\Windows\system32\drivers\LGVirHid.sys
18:41:01.0307 4012 LGVirHid - ok
18:41:01.0309 4012 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
18:41:01.0309 4012 lltdio - ok
18:41:01.0313 4012 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
18:41:01.0316 4012 lltdsvc - ok
18:41:01.0318 4012 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
18:41:01.0319 4012 lmhosts - ok
18:41:01.0322 4012 [ 2C24DC448DBE8DB9BE1441B824C57E79 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
18:41:01.0323 4012 LMS - ok
18:41:01.0326 4012 [ 1B3F331CBBDB6805C07134F70B7F9CCF ] lowcdc C:\Windows\system32\DRIVERS\lowcdc.sys
18:41:01.0326 4012 lowcdc - ok
18:41:01.0330 4012 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
18:41:01.0330 4012 LSI_FC - ok
18:41:01.0333 4012 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
18:41:01.0333 4012 LSI_SAS - ok
18:41:01.0336 4012 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
18:41:01.0336 4012 LSI_SAS2 - ok
18:41:01.0339 4012 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
18:41:01.0339 4012 LSI_SCSI - ok
18:41:01.0342 4012 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
18:41:01.0342 4012 luafv - ok
18:41:01.0346 4012 [ 024DA28053D57E9E32BEE52600576BBB ] MarvinBus C:\Windows\system32\DRIVERS\MarvinBus64.sys
18:41:01.0347 4012 MarvinBus - ok
18:41:01.0349 4012 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
18:41:01.0350 4012 MBAMProtector - ok
18:41:01.0354 4012 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
18:41:01.0356 4012 MBAMScheduler - ok
18:41:01.0362 4012 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
18:41:01.0364 4012 MBAMService - ok
18:41:01.0367 4012 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
18:41:01.0369 4012 Mcx2Svc - ok
18:41:01.0371 4012 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
18:41:01.0372 4012 megasas - ok
18:41:01.0375 4012 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
18:41:01.0376 4012 MegaSR - ok
18:41:01.0379 4012 [ 772A1DEEDFDBC244183B5C805D1B7D85 ] MEIx64 C:\Windows\system32\DRIVERS\HECIx64.sys
18:41:01.0379 4012 MEIx64 - ok
18:41:01.0381 4012 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
18:41:01.0382 4012 MMCSS - ok
18:41:01.0384 4012 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
18:41:01.0385 4012 Modem - ok
18:41:01.0387 4012 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
18:41:01.0387 4012 monitor - ok
18:41:01.0389 4012 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
18:41:01.0390 4012 mouclass - ok
18:41:01.0392 4012 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
18:41:01.0392 4012 mouhid - ok
18:41:01.0395 4012 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
18:41:01.0395 4012 mountmgr - ok
18:41:01.0398 4012 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
18:41:01.0399 4012 mpio - ok
18:41:01.0401 4012 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
18:41:01.0402 4012 mpsdrv - ok
18:41:01.0409 4012 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
18:41:01.0415 4012 MpsSvc - ok
18:41:01.0418 4012 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
18:41:01.0419 4012 MRxDAV - ok
18:41:01.0437 4012 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
18:41:01.0438 4012 mrxsmb - ok
18:41:01.0442 4012 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:41:01.0443 4012 mrxsmb10 - ok
18:41:01.0445 4012 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:41:01.0446 4012 mrxsmb20 - ok
18:41:01.0448 4012 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
18:41:01.0449 4012 msahci - ok
18:41:01.0451 4012 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
18:41:01.0452 4012 msdsm - ok
18:41:01.0455 4012 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
18:41:01.0457 4012 MSDTC - ok
18:41:01.0460 4012 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
18:41:01.0461 4012 Msfs - ok
18:41:01.0463 4012 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
18:41:01.0463 4012 mshidkmdf - ok
18:41:01.0465 4012 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
18:41:01.0465 4012 msisadrv - ok
18:41:01.0468 4012 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
18:41:01.0470 4012 MSiSCSI - ok
18:41:01.0472 4012 msiserver - ok
18:41:01.0474 4012 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
18:41:01.0475 4012 MSKSSRV - ok
18:41:01.0476 4012 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
18:41:01.0477 4012 MSPCLOCK - ok
18:41:01.0478 4012 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
18:41:01.0479 4012 MSPQM - ok
18:41:01.0483 4012 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
18:41:01.0484 4012 MsRPC - ok
18:41:01.0487 4012 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
18:41:01.0488 4012 mssmbios - ok
18:41:01.0490 4012 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
18:41:01.0490 4012 MSTEE - ok
18:41:01.0492 4012 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
18:41:01.0492 4012 MTConfig - ok
18:41:01.0494 4012 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
18:41:01.0495 4012 Mup - ok
18:41:01.0500 4012 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
18:41:01.0504 4012 napagent - ok
18:41:01.0508 4012 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
18:41:01.0509 4012 NativeWifiP - ok
18:41:01.0518 4012 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
18:41:01.0522 4012 NDIS - ok
18:41:01.0524 4012 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
18:41:01.0524 4012 NdisCap - ok
18:41:01.0526 4012 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
18:41:01.0527 4012 NdisTapi - ok
18:41:01.0529 4012 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
18:41:01.0530 4012 Ndisuio - ok
18:41:01.0533 4012 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
18:41:01.0533 4012 NdisWan - ok
18:41:01.0535 4012 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
18:41:01.0536 4012 NDProxy - ok
18:41:01.0538 4012 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
18:41:01.0538 4012 NetBIOS - ok
18:41:01.0542 4012 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
18:41:01.0543 4012 NetBT - ok
18:41:01.0545 4012 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
18:41:01.0545 4012 Netlogon - ok
18:41:01.0550 4012 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
18:41:01.0553 4012 Netman - ok
18:41:01.0556 4012 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:41:01.0557 4012 NetMsmqActivator - ok
18:41:01.0559 4012 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:41:01.0559 4012 NetPipeActivator - ok
18:41:01.0564 4012 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
18:41:01.0567 4012 netprofm - ok
18:41:01.0569 4012 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:41:01.0570 4012 NetTcpActivator - ok
18:41:01.0572 4012 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:41:01.0572 4012 NetTcpPortSharing - ok
18:41:01.0575 4012 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
18:41:01.0575 4012 nfrd960 - ok
18:41:01.0579 4012 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
18:41:01.0582 4012 NlaSvc - ok
18:41:01.0584 4012 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
18:41:01.0585 4012 Npfs - ok
18:41:01.0587 4012 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
18:41:01.0588 4012 nsi - ok
18:41:01.0590 4012 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
18:41:01.0590 4012 nsiproxy - ok
18:41:01.0604 4012 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
18:41:01.0610 4012 Ntfs - ok
18:41:01.0613 4012 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
18:41:01.0613 4012 Null - ok
18:41:01.0616 4012 [ 805F0C2B9C07E4C0F74D0EF70E9E827A ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
18:41:01.0617 4012 NVHDA - ok
18:41:01.0693 4012 [ 7A711D08F1FD1AB8149B6199F84A0EB7 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
18:41:01.0732 4012 nvlddmkm - ok
18:41:01.0737 4012 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
18:41:01.0738 4012 nvraid - ok
18:41:01.0741 4012 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
18:41:01.0741 4012 nvstor - ok
18:41:01.0749 4012 [ B9F3591981D761A5CA1D24C369764D96 ] nvsvc C:\Windows\system32\nvvsvc.exe
18:41:01.0753 4012 nvsvc - ok
18:41:01.0767 4012 [ 77C691F3877A4F0F21253C9AC8DA4743 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
18:41:01.0774 4012 nvUpdatusService - ok
18:41:01.0777 4012 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
18:41:01.0778 4012 nv_agp - ok
18:41:01.0783 4012 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
18:41:01.0786 4012 odserv - ok
18:41:01.0788 4012 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
18:41:01.0789 4012 ohci1394 - ok
18:41:01.0791 4012 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
18:41:01.0792 4012 ose - ok
18:41:01.0797 4012 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
18:41:01.0799 4012 p2pimsvc - ok
18:41:01.0805 4012 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
18:41:01.0808 4012 p2psvc - ok
18:41:01.0811 4012 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
18:41:01.0812 4012 Parport - ok
18:41:01.0814 4012 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
18:41:01.0815 4012 partmgr - ok
18:41:01.0818 4012 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
18:41:01.0820 4012 PcaSvc - ok
18:41:01.0823 4012 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
18:41:01.0824 4012 pci - ok
18:41:01.0826 4012 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
18:41:01.0826 4012 pciide - ok
18:41:01.0829 4012 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
18:41:01.0830 4012 pcmcia - ok
18:41:01.0832 4012 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
18:41:01.0833 4012 pcw - ok
18:41:01.0839 4012 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
18:41:01.0841 4012 PEAUTH - ok
18:41:01.0854 4012 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
18:41:01.0863 4012 PeerDistSvc - ok
18:41:01.0879 4012 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
18:41:01.0879 4012 PerfHost - ok
18:41:01.0893 4012 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
18:41:01.0903 4012 pla - ok
18:41:01.0908 4012 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
18:41:01.0912 4012 PlugPlay - ok
18:41:01.0914 4012 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
18:41:01.0915 4012 PNRPAutoReg - ok
18:41:01.0919 4012 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
18:41:01.0921 4012 PNRPsvc - ok
18:41:01.0926 4012 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
18:41:01.0930 4012 PolicyAgent - ok
18:41:01.0934 4012 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
18:41:01.0936 4012 Power - ok
18:41:01.0938 4012 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
18:41:01.0939 4012 PptpMiniport - ok
18:41:01.0941 4012 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
18:41:01.0942 4012 Processor - ok
18:41:01.0945 4012 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
18:41:01.0947 4012 ProfSvc - ok
18:41:01.0949 4012 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
18:41:01.0950 4012 ProtectedStorage - ok
18:41:01.0953 4012 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
18:41:01.0953 4012 Psched - ok
18:41:01.0976 4012 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
18:41:01.0981 4012 ql2300 - ok
18:41:01.0985 4012 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
18:41:01.0985 4012 ql40xx - ok
18:41:01.0989 4012 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
18:41:01.0992 4012 QWAVE - ok
18:41:01.0994 4012 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
18:41:01.0994 4012 QWAVEdrv - ok
18:41:01.0996 4012 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
18:41:01.0996 4012 RasAcd - ok
18:41:01.0999 4012 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
18:41:01.0999 4012 RasAgileVpn - ok
18:41:02.0002 4012 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
18:41:02.0003 4012 RasAuto - ok
18:41:02.0006 4012 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
18:41:02.0007 4012 Rasl2tp - ok
18:41:02.0011 4012 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
18:41:02.0014 4012 RasMan - ok
18:41:02.0017 4012 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
18:41:02.0017 4012 RasPppoe - ok
18:41:02.0019 4012 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
18:41:02.0020 4012 RasSstp - ok
18:41:02.0024 4012 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
18:41:02.0025 4012 rdbss - ok
18:41:02.0027 4012 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
18:41:02.0027 4012 rdpbus - ok
18:41:02.0029 4012 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
18:41:02.0029 4012 RDPCDD - ok
18:41:02.0033 4012 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
18:41:02.0034 4012 RDPDR - ok
18:41:02.0036 4012 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
18:41:02.0036 4012 RDPENCDD - ok
18:41:02.0039 4012 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
18:41:02.0039 4012 RDPREFMP - ok
18:41:02.0042 4012 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
18:41:02.0042 4012 RdpVideoMiniport - ok
18:41:02.0046 4012 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
18:41:02.0047 4012 RDPWD - ok
18:41:02.0051 4012 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
18:41:02.0051 4012 rdyboost - ok
18:41:02.0054 4012 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
18:41:02.0055 4012 RemoteAccess - ok
18:41:02.0058 4012 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
18:41:02.0060 4012 RemoteRegistry - ok
18:41:02.0063 4012 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
18:41:02.0064 4012 RpcEptMapper - ok
18:41:02.0066 4012 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
18:41:02.0067 4012 RpcLocator - ok
18:41:02.0072 4012 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
18:41:02.0074 4012 RpcSs - ok
18:41:02.0077 4012 [ 2ABD2B3BA2EF0C3BA82284C2A5E28675 ] RRNetCap C:\Windows\system32\DRIVERS\rrnetcap.sys
18:41:02.0077 4012 RRNetCap - ok
18:41:02.0079 4012 [ 2ABD2B3BA2EF0C3BA82284C2A5E28675 ] RRNetCapMP C:\Windows\system32\DRIVERS\rrnetcap.sys
18:41:02.0079 4012 RRNetCapMP - ok
18:41:02.0081 4012 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
18:41:02.0082 4012 rspndr - ok
18:41:02.0084 4012 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
18:41:02.0084 4012 s3cap - ok
18:41:02.0086 4012 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
18:41:02.0087 4012 SamSs - ok
18:41:02.0089 4012 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
18:41:02.0090 4012 sbp2port - ok
18:41:02.0093 4012 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
18:41:02.0095 4012 SCardSvr - ok
18:41:02.0098 4012 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
18:41:02.0098 4012 scfilter - ok
18:41:02.0108 4012 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
18:41:02.0116 4012 Schedule - ok
18:41:02.0119 4012 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
18:41:02.0119 4012 SCPolicySvc - ok
18:41:02.0122 4012 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
18:41:02.0124 4012 SDRSVC - ok
18:41:02.0126 4012 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
18:41:02.0127 4012 secdrv - ok
18:41:02.0129 4012 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
18:41:02.0130 4012 seclogon - ok
18:41:02.0133 4012 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
18:41:02.0134 4012 SENS - ok
18:41:02.0136 4012 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
18:41:02.0137 4012 SensrSvc - ok
18:41:02.0140 4012 [ 2437720D4480523562360B2B6B5864A7 ] Ser2pl C:\Windows\system32\DRIVERS\ser2pl64.sys
18:41:02.0141 4012 Ser2pl - ok
18:41:02.0143 4012 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
18:41:02.0144 4012 Serenum - ok
18:41:02.0146 4012 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
18:41:02.0146 4012 Serial - ok
18:41:02.0149 4012 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
18:41:02.0149 4012 sermouse - ok
18:41:02.0154 4012 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
18:41:02.0156 4012 SessionEnv - ok
18:41:02.0158 4012 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
18:41:02.0159 4012 sffdisk - ok
18:41:02.0160 4012 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
18:41:02.0161 4012 sffp_mmc - ok
18:41:02.0162 4012 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
18:41:02.0163 4012 sffp_sd - ok
18:41:02.0165 4012 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
18:41:02.0165 4012 sfloppy - ok
18:41:02.0169 4012 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
18:41:02.0172 4012 SharedAccess - ok
18:41:02.0177 4012 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
18:41:02.0180 4012 ShellHWDetection - ok
18:41:02.0183 4012 [ 0F498DEE92FD73DD999BAE4D506367F5 ] SI3132 C:\Windows\system32\DRIVERS\SI3132.sys
18:41:02.0184 4012 SI3132 - ok
18:41:02.0186 4012 [ 127CE10E01F53F2EDACA7FE42E5631EA ] SiFilter C:\Windows\system32\DRIVERS\SiWinAcc.sys
18:41:02.0186 4012 SiFilter - ok
18:41:02.0188 4012 [ 7799106FEE728B907A86D9C9751E02D5 ] silabenm C:\Windows\system32\DRIVERS\silabenm.sys
18:41:02.0189 4012 silabenm - ok
18:41:02.0191 4012 [ 4AD84F9B367B89B48A3338E0AECA06B9 ] silabser C:\Windows\system32\DRIVERS\silabser.sys
18:41:02.0192 4012 silabser - ok
18:41:02.0194 4012 [ B742C37002B8EBEF6E230DF9B4B28546 ] SiRemFil C:\Windows\system32\DRIVERS\SiRemFil.sys
18:41:02.0194 4012 SiRemFil - ok
18:41:02.0196 4012 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
18:41:02.0196 4012 SiSRaid2 - ok
18:41:02.0198 4012 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
18:41:02.0199 4012 SiSRaid4 - ok
18:41:02.0201 4012 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
18:41:02.0202 4012 Smb - ok
18:41:02.0206 4012 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
18:41:02.0207 4012 SNMPTRAP - ok
18:41:02.0209 4012 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
18:41:02.0209 4012 spldr - ok
18:41:02.0215 4012 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
18:41:02.0218 4012 Spooler - ok
18:41:02.0245 4012 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
18:41:02.0259 4012 sppsvc - ok
18:41:02.0262 4012 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
18:41:02.0263 4012 sppuinotify - ok
18:41:02.0268 4012 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
18:41:02.0270 4012 srv - ok
18:41:02.0275 4012 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
18:41:02.0276 4012 srv2 - ok
18:41:02.0279 4012 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
18:41:02.0280 4012 srvnet - ok
18:41:02.0283 4012 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
18:41:02.0286 4012 SSDPSRV - ok
18:41:02.0288 4012 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
18:41:02.0290 4012 SstpSvc - ok
18:41:02.0291 4012 Steam Client Service - ok
18:41:02.0297 4012 [ 0887B293199AA2055888FABA989ED0A6 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
18:41:02.0298 4012 Stereo Service - ok
18:41:02.0301 4012 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
18:41:02.0301 4012 stexstor - ok
18:41:02.0307 4012 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
18:41:02.0312 4012 stisvc - ok
18:41:02.0314 4012 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
18:41:02.0314 4012 storflt - ok
18:41:02.0316 4012 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys
18:41:02.0317 4012 storvsc - ok
18:41:02.0319 4012 [ EEBBD6E7D1E31F18B1BA5707FD7A04D6 ] SWDUMon C:\Windows\system32\DRIVERS\SWDUMon.sys
18:41:02.0319 4012 SWDUMon - ok
18:41:02.0321 4012 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
18:41:02.0322 4012 swenum - ok
18:41:02.0328 4012 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
18:41:02.0330 4012 swprv - ok
18:41:02.0333 4012 Synth3dVsc - ok
18:41:02.0347 4012 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
18:41:02.0359 4012 SysMain - ok
18:41:02.0362 4012 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
18:41:02.0364 4012 TabletInputService - ok
18:41:02.0368 4012 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
18:41:02.0371 4012 TapiSrv - ok
18:41:02.0373 4012 [ 048CFE7569D6ADCAB9349BB1A566A79E ] tbhsd C:\Windows\system32\drivers\tbhsd.sys
18:41:02.0374 4012 tbhsd - ok
18:41:02.0376 4012 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
18:41:02.0377 4012 TBS - ok
18:41:02.0394 4012 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] Tcpip C:\Windows\system32\drivers\tcpip.sys
18:41:02.0401 4012 Tcpip - ok
18:41:02.0417 4012 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
18:41:02.0423 4012 TCPIP6 - ok
18:41:02.0427 4012 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
18:41:02.0427 4012 tcpipreg - ok
18:41:02.0430 4012 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
18:41:02.0431 4012 TDPIPE - ok
18:41:02.0433 4012 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
18:41:02.0433 4012 TDTCP - ok
18:41:02.0436 4012 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
18:41:02.0436 4012 tdx - ok
18:41:02.0466 4012 [ 879F46329B7DC4D109345AA96F1AB47F ] TeamViewer8 C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
18:41:02.0481 4012 TeamViewer8 - ok
18:41:02.0485 4012 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
18:41:02.0485 4012 TermDD - ok
18:41:02.0492 4012 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
18:41:02.0495 4012 TermService - ok
18:41:02.0498 4012 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
18:41:02.0499 4012 Themes - ok
18:41:02.0501 4012 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
18:41:02.0502 4012 THREADORDER - ok
18:41:02.0505 4012 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
18:41:02.0507 4012 TrkWks - ok
18:41:02.0510 4012 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
18:41:02.0510 4012 TrustedInstaller - ok
18:41:02.0514 4012 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
18:41:02.0514 4012 tssecsrv - ok
18:41:02.0516 4012 [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
18:41:02.0517 4012 TsUsbFlt - ok
18:41:02.0518 4012 tsusbhub - ok
18:41:02.0522 4012 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
18:41:02.0522 4012 tunnel - ok
18:41:02.0525 4012 TVicPort - ok
18:41:02.0527 4012 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
18:41:02.0528 4012 uagp35 - ok
18:41:02.0532 4012 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
18:41:02.0533 4012 udfs - ok
18:41:02.0537 4012 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
18:41:02.0539 4012 UI0Detect - ok
18:41:02.0541 4012 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
18:41:02.0542 4012 uliagpkx - ok
18:41:02.0544 4012 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\drivers\umbus.sys
18:41:02.0544 4012 umbus - ok
18:41:02.0546 4012 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
18:41:02.0547 4012 UmPass - ok
18:41:02.0550 4012 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll
18:41:02.0553 4012 UmRdpService - ok
18:41:02.0558 4012 [ E1A119AD21F5AFE22EB516C549306D3D ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
18:41:02.0559 4012 UNS - ok
18:41:02.0563 4012 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
18:41:02.0566 4012 upnphost - ok
18:41:02.0570 4012 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
18:41:02.0571 4012 usbccgp - ok
18:41:02.0573 4012 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
18:41:02.0574 4012 usbcir - ok
18:41:02.0576 4012 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\drivers\usbehci.sys
18:41:02.0576 4012 usbehci - ok
18:41:02.0580 4012 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
18:41:02.0582 4012 usbhub - ok
18:41:02.0596 4012 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\drivers\usbohci.sys
18:41:02.0597 4012 usbohci - ok
18:41:02.0607 4012 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
18:41:02.0607 4012 usbprint - ok
18:41:02.0610 4012 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
18:41:02.0610 4012 usbscan - ok
18:41:02.0613 4012 [ 4ACEE387FA8FD39F83564FCD2FC234F2 ] usbser C:\Windows\system32\DRIVERS\usbser.sys
18:41:02.0613 4012 usbser - ok
18:41:02.0615 4012 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
18:41:02.0616 4012 USBSTOR - ok
18:41:02.0618 4012 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
18:41:02.0618 4012 usbuhci - ok
18:41:02.0622 4012 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
18:41:02.0623 4012 usbvideo - ok
18:41:02.0626 4012 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
18:41:02.0627 4012 UxSms - ok
18:41:02.0629 4012 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
18:41:02.0629 4012 VaultSvc - ok
18:41:02.0632 4012 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
18:41:02.0632 4012 vdrvroot - ok
18:41:02.0637 4012 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
18:41:02.0642 4012 vds - ok
18:41:02.0644 4012 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
18:41:02.0644 4012 vga - ok
18:41:02.0646 4012 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
18:41:02.0647 4012 VgaSave - ok
18:41:02.0649 4012 VGPU - ok
18:41:02.0652 4012 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
18:41:02.0653 4012 vhdmp - ok
18:41:02.0671 4012 [ 3CCC0D9607419AC28B4216C18F6FA5E9 ] VIAHdAudAddService C:\Windows\system32\drivers\viahduaa.sys
18:41:02.0679 4012 VIAHdAudAddService - ok
18:41:02.0682 4012 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
18:41:02.0682 4012 viaide - ok
18:41:02.0684 4012 [ 888450E821E7A66CB8A4E5B7A01BA5C5 ] VIAKaraokeService C:\Windows\system32\viakaraokesrv.exe
18:41:02.0686 4012 VIAKaraokeService - ok
18:41:02.0689 4012 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys
18:41:02.0690 4012 vmbus - ok
18:41:02.0691 4012 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
18:41:02.0692 4012 VMBusHID - ok
18:41:02.0694 4012 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
18:41:02.0695 4012 volmgr - ok
18:41:02.0699 4012 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
18:41:02.0701 4012 volmgrx - ok
18:41:02.0704 4012 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
18:41:02.0706 4012 volsnap - ok
18:41:02.0709 4012 [ B4A73CA4EF9A02B9738CEA9AD5FE5917 ] vpcbus C:\Windows\system32\DRIVERS\vpchbus.sys
18:41:02.0710 4012 vpcbus - ok
18:41:02.0712 4012 [ E675FB2B48C54F09895482E2253B289C ] vpcnfltr C:\Windows\system32\DRIVERS\vpcnfltr.sys
18:41:02.0713 4012 vpcnfltr - ok
18:41:02.0715 4012 [ 5FB42082B0D19A0268705F1DD343DF20 ] vpcusb C:\Windows\system32\DRIVERS\vpcusb.sys
18:41:02.0716 4012 vpcusb - ok
18:41:02.0718 4012 [ 63F4E10873BEB4124028C6D1A66B0968 ] vpcuxd C:\Windows\system32\DRIVERS\vpcuxd.sys
18:41:02.0718 4012 vpcuxd - ok
18:41:02.0722 4012 [ 207B6539799CC1C112661A9B620DD233 ] vpcvmm C:\Windows\system32\drivers\vpcvmm.sys
18:41:02.0724 4012 vpcvmm - ok
18:41:02.0727 4012 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
18:41:02.0728 4012 vsmraid - ok
18:41:02.0741 4012 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
18:41:02.0748 4012 VSS - ok
18:41:02.0751 4012 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
18:41:02.0751 4012 vwifibus - ok
18:41:02.0756 4012 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
18:41:02.0759 4012 W32Time - ok
18:41:02.0762 4012 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
18:41:02.0762 4012 WacomPen - ok
18:41:02.0765 4012 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
18:41:02.0766 4012 WANARP - ok
18:41:02.0767 4012 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
18:41:02.0768 4012 Wanarpv6 - ok
18:41:02.0779 4012 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
18:41:02.0788 4012 WatAdminSvc - ok
18:41:02.0801 4012 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
18:41:02.0813 4012 wbengine - ok
18:41:02.0816 4012 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
18:41:02.0819 4012 WbioSrvc - ok
18:41:02.0823 4012 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
18:41:02.0826 4012 wcncsvc - ok
18:41:02.0829 4012 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
18:41:02.0830 4012 WcsPlugInService - ok
18:41:02.0832 4012 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
18:41:02.0833 4012 Wd - ok
18:41:02.0840 4012 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
18:41:02.0842 4012 Wdf01000 - ok
18:41:02.0845 4012 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
18:41:02.0846 4012 WdiServiceHost - ok
18:41:02.0848 4012 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
18:41:02.0850 4012 WdiSystemHost - ok
18:41:02.0853 4012 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
18:41:02.0855 4012 WebClient - ok
18:41:02.0859 4012 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
18:41:02.0862 4012 Wecsvc - ok
18:41:02.0864 4012 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
18:41:02.0866 4012 wercplsupport - ok
18:41:02.0868 4012 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
18:41:02.0870 4012 WerSvc - ok
18:41:02.0873 4012 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
18:41:02.0873 4012 WfpLwf - ok
18:41:02.0875 4012 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
18:41:02.0875 4012 WIMMount - ok
18:41:02.0877 4012 WinDefend - ok
18:41:02.0883 4012 [ 4032F1D329FBB5E3662DDD8EF2343E3B ] WinDriver6 C:\Windows\system32\drivers\windrvr6.sys
18:41:02.0884 4012 WinDriver6 - ok
18:41:02.0885 4012 WinHttpAutoProxySvc - ok
18:41:02.0891 4012 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
18:41:02.0892 4012 Winmgmt - ok
18:41:02.0908 4012 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
18:41:02.0922 4012 WinRM - ok
18:41:02.0933 4012 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
18:41:02.0940 4012 Wlansvc - ok
18:41:02.0943 4012 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
18:41:02.0943 4012 WmiAcpi - ok
18:41:02.0947 4012 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
18:41:02.0949 4012 wmiApSrv - ok
18:41:02.0951 4012 WMPNetworkSvc - ok
18:41:02.0963 4012 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
18:41:02.0964 4012 WPCSvc - ok
18:41:02.0967 4012 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
18:41:02.0969 4012 WPDBusEnum - ok
18:41:02.0971 4012 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
18:41:02.0972 4012 ws2ifsl - ok
18:41:02.0974 4012 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
18:41:02.0976 4012 wscsvc - ok
18:41:02.0978 4012 WSearch - ok
18:41:02.0998 4012 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
18:41:03.0007 4012 wuauserv - ok
18:41:03.0011 4012 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
18:41:03.0011 4012 WudfPf - ok
18:41:03.0015 4012 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
18:41:03.0015 4012 WUDFRd - ok
18:41:03.0018 4012 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
18:41:03.0020 4012 wudfsvc - ok
18:41:03.0023 4012 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll
18:41:03.0026 4012 WwanSvc - ok
18:41:03.0029 4012 ================ Scan global ===============================
18:41:03.0031 4012 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
18:41:03.0034 4012 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
18:41:03.0039 4012 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
18:41:03.0042 4012 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
18:41:03.0046 4012 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
18:41:03.0048 4012 [Global] - ok
18:41:03.0048 4012 ================ Scan MBR ==================================
18:41:03.0049 4012 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
18:41:03.0217 4012 \Device\Harddisk0\DR0 - ok
18:41:03.0218 4012 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1
18:41:03.0220 4012 \Device\Harddisk1\DR1 - ok
18:41:03.0220 4012 ================ Scan VBR ==================================
18:41:03.0223 4012 [ 6457A7AA6E1EE3B368551750594265E8 ] \Device\Harddisk0\DR0\Partition1
18:41:03.0224 4012 \Device\Harddisk0\DR0\Partition1 - ok
18:41:03.0225 4012 [ 17F5FA98498AA9054DC9FEC036F5BC0E ] \Device\Harddisk0\DR0\Partition2
18:41:03.0226 4012 \Device\Harddisk0\DR0\Partition2 - ok
18:41:03.0227 4012 [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk1\DR1\Partition1
18:41:03.0227 4012 \Device\Harddisk1\DR1\Partition1 - ok
18:41:03.0239 4012 [ 1B1C6EB0006E6B78DF95F4FAAFF83892 ] \Device\Harddisk1\DR1\Partition2
18:41:03.0240 4012 \Device\Harddisk1\DR1\Partition2 - ok
18:41:03.0240 4012 ============================================================
18:41:03.0240 4012 Scan finished
18:41:03.0240 4012 ============================================================
18:41:03.0244 5104 Detected object count: 0
18:41:03.0244 5104 Actual detected object count: 0
18:41:07.0912 1488 Deinitialize success
Google ví skoro vše. Ale někdy je problém co tam napsat, aby to našlo to, co hledám.
Pokud se to nepovede, vypadne tuna nepoužitelných odkazů a nebo taky nic.


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 55 hostů