Fixnuto. Jinak můžu odinstalovat pouze ten Advanced SystemCare Browser Protection? Když jsem otevřel programy a funkce je tam pouze Advanced SystemCare 6 a ten určitě celý odinstalovat nechci.
19:32:18.0412 5312 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
19:32:18.0568 5312 ============================================================
19:32:18.0568 5312 Current date / time: 2013/06/30 19:32:18.0568
19:32:18.0568 5312 SystemInfo:
19:32:18.0568 5312
19:32:18.0568 5312 OS Version: 6.1.7601 ServicePack: 1.0
19:32:18.0568 5312 Product type: Workstation
19:32:18.0568 5312 ComputerName: WEED
19:32:18.0568 5312 UserName: Zkuřka
19:32:18.0568 5312 Windows directory: C:\Windows
19:32:18.0568 5312 System windows directory: C:\Windows
19:32:18.0568 5312 Running under WOW64
19:32:18.0568 5312 Processor architecture: Intel x64
19:32:18.0568 5312 Number of processors: 4
19:32:18.0568 5312 Page size: 0x1000
19:32:18.0568 5312 Boot type: Normal boot
19:32:18.0568 5312 ============================================================
19:32:19.0255 5312 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1F8B1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xF0, Type 'K0', Flags 0x00000040
19:32:19.0255 5312 Drive \Device\Harddisk1\DR1 - Size: 0xAEA8CDE000 (698.64 Gb), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:32:19.0270 5312 ============================================================
19:32:19.0270 5312 \Device\Harddisk0\DR0:
19:32:19.0270 5312 MBR partitions:
19:32:19.0270 5312 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
19:32:19.0270 5312 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x12C54000
19:32:19.0270 5312 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x12C86800, BlocksNum 0x61A7F800
19:32:19.0270 5312 \Device\Harddisk1\DR1:
19:32:19.0270 5312 MBR partitions:
19:32:19.0270 5312 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x57545000
19:32:19.0270 5312 ============================================================
19:32:19.0302 5312 C: <-> \Device\Harddisk0\DR0\Partition2
19:32:19.0302 5312 D: <-> \Device\Harddisk1\DR1\Partition1
19:32:19.0333 5312 E: <-> \Device\Harddisk0\DR0\Partition3
19:32:19.0333 5312 ============================================================
19:32:19.0333 5312 Initialize success
19:32:19.0333 5312 ============================================================
19:32:20.0019 5680 ============================================================
19:32:20.0019 5680 Scan started
19:32:20.0019 5680 Mode: Manual;
19:32:20.0019 5680 ============================================================
19:32:20.0503 5680 ================ Scan system memory ========================
19:32:20.0503 5680 System memory - ok
19:32:20.0503 5680 ================ Scan services =============================
19:32:20.0628 5680 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
19:32:20.0628 5680 1394ohci - ok
19:32:20.0659 5680 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
19:32:20.0659 5680 ACPI - ok
19:32:20.0674 5680 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
19:32:20.0674 5680 AcpiPmi - ok
19:32:20.0706 5680 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
19:32:20.0706 5680 adp94xx - ok
19:32:20.0721 5680 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
19:32:20.0721 5680 adpahci - ok
19:32:20.0721 5680 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
19:32:20.0721 5680 adpu320 - ok
19:32:20.0784 5680 [ 9243229DFCCC99B5441750EBA49F1B14 ] AdvancedSystemCareService6 C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe
19:32:20.0784 5680 AdvancedSystemCareService6 - ok
19:32:20.0799 5680 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
19:32:20.0799 5680 AeLookupSvc - ok
19:32:20.0830 5680 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
19:32:20.0830 5680 AFD - ok
19:32:20.0862 5680 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
19:32:20.0862 5680 agp440 - ok
19:32:20.0877 5680 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
19:32:20.0877 5680 ALG - ok
19:32:20.0877 5680 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
19:32:20.0877 5680 aliide - ok
19:32:20.0893 5680 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
19:32:20.0893 5680 amdide - ok
19:32:20.0908 5680 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
19:32:20.0908 5680 AmdK8 - ok
19:32:20.0908 5680 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
19:32:20.0908 5680 AmdPPM - ok
19:32:20.0924 5680 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
19:32:20.0924 5680 amdsata - ok
19:32:20.0940 5680 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
19:32:20.0940 5680 amdsbs - ok
19:32:20.0940 5680 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
19:32:20.0940 5680 amdxata - ok
19:32:20.0955 5680 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
19:32:20.0971 5680 AppID - ok
19:32:20.0971 5680 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
19:32:20.0971 5680 AppIDSvc - ok
19:32:20.0986 5680 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
19:32:20.0986 5680 Appinfo - ok
19:32:21.0018 5680 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
19:32:21.0018 5680 AppMgmt - ok
19:32:21.0018 5680 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
19:32:21.0033 5680 arc - ok
19:32:21.0033 5680 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
19:32:21.0033 5680 arcsas - ok
19:32:21.0096 5680 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
19:32:21.0111 5680 aspnet_state - ok
19:32:21.0127 5680 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
19:32:21.0127 5680 AsyncMac - ok
19:32:21.0142 5680 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
19:32:21.0142 5680 atapi - ok
19:32:21.0174 5680 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
19:32:21.0174 5680 AudioEndpointBuilder - ok
19:32:21.0189 5680 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
19:32:21.0189 5680 AudioSrv - ok
19:32:21.0252 5680 [ 587EFD6A3A30A35A27904D21AE1FB882 ] AVP C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
19:32:21.0252 5680 AVP - ok
19:32:21.0267 5680 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
19:32:21.0267 5680 AxInstSV - ok
19:32:21.0314 5680 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
19:32:21.0314 5680 b06bdrv - ok
19:32:21.0330 5680 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
19:32:21.0330 5680 b57nd60a - ok
19:32:21.0345 5680 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
19:32:21.0345 5680 BDESVC - ok
19:32:21.0361 5680 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
19:32:21.0361 5680 Beep - ok
19:32:21.0408 5680 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
19:32:21.0408 5680 BFE - ok
19:32:21.0423 5680 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
19:32:21.0423 5680 BITS - ok
19:32:21.0454 5680 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
19:32:21.0454 5680 blbdrive - ok
19:32:21.0470 5680 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
19:32:21.0470 5680 bowser - ok
19:32:21.0486 5680 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
19:32:21.0486 5680 BrFiltLo - ok
19:32:21.0486 5680 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
19:32:21.0486 5680 BrFiltUp - ok
19:32:21.0486 5680 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
19:32:21.0501 5680 Browser - ok
19:32:21.0501 5680 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
19:32:21.0501 5680 Brserid - ok
19:32:21.0517 5680 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
19:32:21.0517 5680 BrSerWdm - ok
19:32:21.0517 5680 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
19:32:21.0517 5680 BrUsbMdm - ok
19:32:21.0517 5680 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
19:32:21.0517 5680 BrUsbSer - ok
19:32:21.0517 5680 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
19:32:21.0517 5680 BTHMODEM - ok
19:32:21.0532 5680 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
19:32:21.0532 5680 bthserv - ok
19:32:21.0532 5680 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
19:32:21.0532 5680 cdfs - ok
19:32:21.0564 5680 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\drivers\cdrom.sys
19:32:21.0564 5680 cdrom - ok
19:32:21.0579 5680 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
19:32:21.0579 5680 CertPropSvc - ok
19:32:21.0595 5680 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
19:32:21.0595 5680 circlass - ok
19:32:21.0626 5680 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
19:32:21.0626 5680 CLFS - ok
19:32:21.0688 5680 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:32:21.0688 5680 clr_optimization_v2.0.50727_32 - ok
19:32:21.0735 5680 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
19:32:21.0735 5680 clr_optimization_v2.0.50727_64 - ok
19:32:21.0766 5680 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:32:21.0782 5680 clr_optimization_v4.0.30319_32 - ok
19:32:21.0782 5680 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
19:32:21.0782 5680 clr_optimization_v4.0.30319_64 - ok
19:32:21.0798 5680 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
19:32:21.0798 5680 CmBatt - ok
19:32:21.0813 5680 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
19:32:21.0829 5680 cmdide - ok
19:32:21.0844 5680 [ AAFCB52FE0037207FB6FBEA070D25EFE ] CNG C:\Windows\system32\Drivers\cng.sys
19:32:21.0844 5680 CNG - ok
19:32:21.0860 5680 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
19:32:21.0860 5680 Compbatt - ok
19:32:21.0860 5680 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
19:32:21.0860 5680 CompositeBus - ok
19:32:21.0876 5680 COMSysApp - ok
19:32:21.0876 5680 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
19:32:21.0876 5680 crcdisk - ok
19:32:21.0907 5680 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
19:32:21.0907 5680 CryptSvc - ok
19:32:21.0922 5680 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys
19:32:21.0922 5680 CSC - ok
19:32:21.0954 5680 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll
19:32:21.0954 5680 CscService - ok
19:32:21.0969 5680 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
19:32:21.0969 5680 DcomLaunch - ok
19:32:22.0000 5680 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
19:32:22.0000 5680 defragsvc - ok
19:32:22.0016 5680 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
19:32:22.0016 5680 DfsC - ok
19:32:22.0032 5680 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
19:32:22.0032 5680 Dhcp - ok
19:32:22.0047 5680 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
19:32:22.0047 5680 discache - ok
19:32:22.0063 5680 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
19:32:22.0063 5680 Disk - ok
19:32:22.0078 5680 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
19:32:22.0078 5680 Dnscache - ok
19:32:22.0110 5680 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
19:32:22.0110 5680 dot3svc - ok
19:32:22.0110 5680 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
19:32:22.0110 5680 DPS - ok
19:32:22.0141 5680 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
19:32:22.0141 5680 drmkaud - ok
19:32:22.0172 5680 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
19:32:22.0172 5680 dtsoftbus01 - ok
19:32:22.0188 5680 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
19:32:22.0188 5680 DXGKrnl - ok
19:32:22.0219 5680 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
19:32:22.0219 5680 EapHost - ok
19:32:22.0281 5680 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
19:32:22.0297 5680 ebdrv - ok
19:32:22.0312 5680 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
19:32:22.0312 5680 EFS - ok
19:32:22.0344 5680 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
19:32:22.0344 5680 ehRecvr - ok
19:32:22.0359 5680 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
19:32:22.0359 5680 ehSched - ok
19:32:22.0390 5680 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
19:32:22.0390 5680 elxstor - ok
19:32:22.0406 5680 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
19:32:22.0406 5680 ErrDev - ok
19:32:22.0422 5680 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
19:32:22.0422 5680 EventSystem - ok
19:32:22.0422 5680 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
19:32:22.0437 5680 exfat - ok
19:32:22.0453 5680 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
19:32:22.0453 5680 fastfat - ok
19:32:22.0484 5680 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
19:32:22.0484 5680 Fax - ok
19:32:22.0500 5680 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
19:32:22.0500 5680 fdc - ok
19:32:22.0500 5680 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
19:32:22.0500 5680 fdPHost - ok
19:32:22.0515 5680 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
19:32:22.0515 5680 FDResPub - ok
19:32:22.0531 5680 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
19:32:22.0531 5680 FileInfo - ok
19:32:22.0531 5680 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
19:32:22.0531 5680 Filetrace - ok
19:32:22.0531 5680 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
19:32:22.0531 5680 flpydisk - ok
19:32:22.0546 5680 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
19:32:22.0546 5680 FltMgr - ok
19:32:22.0578 5680 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
19:32:22.0578 5680 FontCache - ok
19:32:22.0609 5680 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
19:32:22.0609 5680 FontCache3.0.0.0 - ok
19:32:22.0624 5680 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
19:32:22.0624 5680 FsDepends - ok
19:32:22.0640 5680 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
19:32:22.0640 5680 Fs_Rec - ok
19:32:22.0671 5680 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
19:32:22.0671 5680 fvevol - ok
19:32:22.0687 5680 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
19:32:22.0687 5680 gagp30kx - ok
19:32:22.0687 5680 gdrv - ok
19:32:22.0702 5680 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
19:32:22.0718 5680 gpsvc - ok
19:32:22.0765 5680 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:32:22.0765 5680 gupdate - ok
19:32:22.0765 5680 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:32:22.0765 5680 gupdatem - ok
19:32:22.0765 5680 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
19:32:22.0765 5680 hcw85cir - ok
19:32:22.0796 5680 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
19:32:22.0796 5680 HdAudAddService - ok
19:32:22.0812 5680 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
19:32:22.0812 5680 HDAudBus - ok
19:32:22.0827 5680 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
19:32:22.0827 5680 HidBatt - ok
19:32:22.0827 5680 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
19:32:22.0827 5680 HidBth - ok
19:32:22.0843 5680 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
19:32:22.0843 5680 HidIr - ok
19:32:22.0858 5680 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
19:32:22.0858 5680 hidserv - ok
19:32:22.0874 5680 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
19:32:22.0874 5680 HidUsb - ok
19:32:22.0905 5680 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
19:32:22.0905 5680 hkmsvc - ok
19:32:22.0936 5680 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
19:32:22.0936 5680 HomeGroupListener - ok
19:32:22.0952 5680 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
19:32:22.0952 5680 HomeGroupProvider - ok
19:32:22.0983 5680 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
19:32:22.0983 5680 HpSAMD - ok
19:32:23.0014 5680 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
19:32:23.0014 5680 HTTP - ok
19:32:23.0030 5680 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
19:32:23.0030 5680 hwpolicy - ok
19:32:23.0061 5680 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
19:32:23.0061 5680 i8042prt - ok
19:32:23.0077 5680 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
19:32:23.0077 5680 iaStorV - ok
19:32:23.0108 5680 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
19:32:23.0108 5680 idsvc - ok
19:32:23.0124 5680 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
19:32:23.0124 5680 iirsp - ok
19:32:23.0139 5680 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
19:32:23.0155 5680 IKEEXT - ok
19:32:23.0155 5680 IntcAzAudAddService - ok
19:32:23.0170 5680 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
19:32:23.0170 5680 intelide - ok
19:32:23.0170 5680 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
19:32:23.0170 5680 intelppm - ok
19:32:23.0202 5680 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
19:32:23.0202 5680 IPBusEnum - ok
19:32:23.0217 5680 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:32:23.0217 5680 IpFilterDriver - ok
19:32:23.0248 5680 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
19:32:23.0248 5680 iphlpsvc - ok
19:32:23.0264 5680 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
19:32:23.0264 5680 IPMIDRV - ok
19:32:23.0280 5680 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
19:32:23.0280 5680 IPNAT - ok
19:32:23.0295 5680 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
19:32:23.0295 5680 IRENUM - ok
19:32:23.0326 5680 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
19:32:23.0326 5680 isapnp - ok
19:32:23.0342 5680 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
19:32:23.0342 5680 iScsiPrt - ok
19:32:23.0342 5680 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
19:32:23.0342 5680 kbdclass - ok
19:32:23.0358 5680 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
19:32:23.0358 5680 kbdhid - ok
19:32:23.0373 5680 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
19:32:23.0373 5680 KeyIso - ok
19:32:23.0404 5680 [ 8B5219318DF5895ABD230C373F2DF18A ] kl1 C:\Windows\system32\DRIVERS\kl1.sys
19:32:23.0404 5680 kl1 - ok
19:32:23.0451 5680 [ 2CBD248370721DCAD632DB70D09C5A6D ] KLIF C:\Windows\system32\DRIVERS\klif.sys
19:32:23.0451 5680 KLIF - ok
19:32:23.0467 5680 [ 9BD99E1AB3F664120AB95C35F9EC1EB0 ] KLIM6 C:\Windows\system32\DRIVERS\klim6.sys
19:32:23.0467 5680 KLIM6 - ok
19:32:23.0498 5680 [ 2C43FD500522EF3B8C283A5846B7FC41 ] klkbdflt C:\Windows\system32\DRIVERS\klkbdflt.sys
19:32:23.0498 5680 klkbdflt - ok
19:32:23.0514 5680 [ 70A6D2E292017EC47949696F51ABE18D ] klmouflt C:\Windows\system32\DRIVERS\klmouflt.sys
19:32:23.0514 5680 klmouflt - ok
19:32:23.0529 5680 [ 45ECF097BC6330C2054D7D43B7AD822B ] kltdi C:\Windows\system32\DRIVERS\kltdi.sys
19:32:23.0529 5680 kltdi - ok
19:32:23.0545 5680 [ 1FCB657B581CC4DF17FD6571F93602DE ] kneps C:\Windows\system32\DRIVERS\kneps.sys
19:32:23.0545 5680 kneps - ok
19:32:23.0560 5680 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
19:32:23.0560 5680 KSecDD - ok
19:32:23.0576 5680 [ 7EFB9333E4ECCE6AE4AE9D777D9E553E ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
19:32:23.0576 5680 KSecPkg - ok
19:32:23.0607 5680 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
19:32:23.0607 5680 ksthunk - ok
19:32:23.0638 5680 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
19:32:23.0638 5680 KtmRm - ok
19:32:23.0701 5680 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
19:32:23.0701 5680 LanmanServer - ok
19:32:23.0716 5680 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
19:32:23.0716 5680 LanmanWorkstation - ok
19:32:23.0716 5680 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
19:32:23.0716 5680 lltdio - ok
19:32:23.0732 5680 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
19:32:23.0732 5680 lltdsvc - ok
19:32:23.0763 5680 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
19:32:23.0763 5680 lmhosts - ok
19:32:23.0763 5680 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
19:32:23.0763 5680 LSI_FC - ok
19:32:23.0763 5680 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
19:32:23.0763 5680 LSI_SAS - ok
19:32:23.0779 5680 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
19:32:23.0779 5680 LSI_SAS2 - ok
19:32:23.0779 5680 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
19:32:23.0779 5680 LSI_SCSI - ok
19:32:23.0779 5680 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
19:32:23.0779 5680 luafv - ok
19:32:23.0810 5680 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
19:32:23.0810 5680 MBAMProtector - ok
19:32:23.0857 5680 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler E:\Malwarebytes' Anti-Malware\mbamscheduler.exe
19:32:23.0857 5680 MBAMScheduler - ok
19:32:23.0872 5680 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService E:\Malwarebytes' Anti-Malware\mbamservice.exe
19:32:23.0872 5680 MBAMService - ok
19:32:23.0904 5680 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
19:32:23.0904 5680 Mcx2Svc - ok
19:32:23.0919 5680 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
19:32:23.0919 5680 megasas - ok
19:32:23.0919 5680 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
19:32:23.0919 5680 MegaSR - ok
19:32:23.0950 5680 [ A6518DCC42F7A6E999BB3BEA8FD87567 ] MEIx64 C:\Windows\system32\DRIVERS\HECIx64.sys
19:32:23.0950 5680 MEIx64 - ok
19:32:23.0966 5680 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
19:32:23.0966 5680 MMCSS - ok
19:32:23.0982 5680 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
19:32:23.0982 5680 Modem - ok
19:32:23.0997 5680 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
19:32:23.0997 5680 monitor - ok
19:32:24.0013 5680 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
19:32:24.0013 5680 mouclass - ok
19:32:24.0013 5680 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
19:32:24.0013 5680 mouhid - ok
19:32:24.0044 5680 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
19:32:24.0044 5680 mountmgr - ok
19:32:24.0060 5680 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
19:32:24.0060 5680 mpio - ok
19:32:24.0060 5680 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
19:32:24.0060 5680 mpsdrv - ok
19:32:24.0091 5680 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
19:32:24.0091 5680 MpsSvc - ok
19:32:24.0106 5680 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
19:32:24.0106 5680 MRxDAV - ok
19:32:24.0138 5680 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
19:32:24.0138 5680 mrxsmb - ok
19:32:24.0153 5680 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:32:24.0153 5680 mrxsmb10 - ok
19:32:24.0153 5680 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:32:24.0153 5680 mrxsmb20 - ok
19:32:24.0169 5680 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
19:32:24.0169 5680 msahci - ok
19:32:24.0184 5680 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
19:32:24.0184 5680 msdsm - ok
19:32:24.0200 5680 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
19:32:24.0200 5680 MSDTC - ok
19:32:24.0216 5680 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
19:32:24.0231 5680 Msfs - ok
19:32:24.0231 5680 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
19:32:24.0231 5680 mshidkmdf - ok
19:32:24.0262 5680 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
19:32:24.0262 5680 msisadrv - ok
19:32:24.0278 5680 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
19:32:24.0278 5680 MSiSCSI - ok
19:32:24.0294 5680 msiserver - ok
19:32:24.0309 5680 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
19:32:24.0309 5680 MSKSSRV - ok
19:32:24.0309 5680 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
19:32:24.0309 5680 MSPCLOCK - ok
19:32:24.0325 5680 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
19:32:24.0325 5680 MSPQM - ok
19:32:24.0340 5680 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
19:32:24.0340 5680 MsRPC - ok
19:32:24.0340 5680 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
19:32:24.0356 5680 mssmbios - ok
19:32:24.0356 5680 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
19:32:24.0356 5680 MSTEE - ok
19:32:24.0372 5680 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
19:32:24.0372 5680 MTConfig - ok
19:32:24.0372 5680 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
19:32:24.0372 5680 Mup - ok
19:32:24.0387 5680 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
19:32:24.0403 5680 napagent - ok
19:32:24.0418 5680 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
19:32:24.0418 5680 NativeWifiP - ok
19:32:24.0465 5680 [ 3BAE2BFCB6D69E19C8373F635DD544DC ] NBService C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
19:32:24.0481 5680 NBService - ok
19:32:24.0512 5680 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
19:32:24.0512 5680 NDIS - ok
19:32:24.0528 5680 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
19:32:24.0528 5680 NdisCap - ok
19:32:24.0559 5680 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
19:32:24.0559 5680 NdisTapi - ok
19:32:24.0574 5680 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
19:32:24.0574 5680 Ndisuio - ok
19:32:24.0606 5680 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
19:32:24.0606 5680 NdisWan - ok
19:32:24.0621 5680 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
19:32:24.0621 5680 NDProxy - ok
19:32:24.0621 5680 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
19:32:24.0637 5680 NetBIOS - ok
19:32:24.0652 5680 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
19:32:24.0652 5680 NetBT - ok
19:32:24.0668 5680 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
19:32:24.0668 5680 Netlogon - ok
19:32:24.0699 5680 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
19:32:24.0699 5680 Netman - ok
19:32:24.0715 5680 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:32:24.0715 5680 NetMsmqActivator - ok
19:32:24.0730 5680 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:32:24.0730 5680 NetPipeActivator - ok
19:32:24.0730 5680 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
19:32:24.0730 5680 netprofm - ok
19:32:24.0730 5680 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:32:24.0730 5680 NetTcpActivator - ok
19:32:24.0746 5680 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:32:24.0746 5680 NetTcpPortSharing - ok
19:32:24.0746 5680 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
19:32:24.0746 5680 nfrd960 - ok
19:32:24.0762 5680 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
19:32:24.0762 5680 NlaSvc - ok
19:32:24.0824 5680 [ 193FA51DDDD0BFFDED1C340F0434999A ] NMIndexingService C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
19:32:24.0824 5680 NMIndexingService - ok
19:32:24.0871 5680 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
19:32:24.0871 5680 Npfs - ok
19:32:24.0902 5680 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
19:32:24.0902 5680 nsi - ok
19:32:24.0918 5680 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
19:32:24.0918 5680 nsiproxy - ok
19:32:24.0964 5680 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
19:32:24.0964 5680 Ntfs - ok
19:32:24.0980 5680 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
19:32:24.0980 5680 Null - ok
19:32:25.0011 5680 [ 805F0C2B9C07E4C0F74D0EF70E9E827A ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
19:32:25.0011 5680 NVHDA - ok
19:32:25.0152 5680 [ 7A711D08F1FD1AB8149B6199F84A0EB7 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
19:32:25.0198 5680 nvlddmkm - ok
19:32:25.0230 5680 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
19:32:25.0230 5680 nvraid - ok
19:32:25.0245 5680 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
19:32:25.0245 5680 nvstor - ok
19:32:25.0276 5680 [ B9F3591981D761A5CA1D24C369764D96 ] nvsvc C:\Windows\system32\nvvsvc.exe
19:32:25.0276 5680 nvsvc - ok
19:32:25.0323 5680 [ A9AFE5B0648C8D7A411A72D8222F7F6E ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
19:32:25.0339 5680 nvUpdatusService - ok
19:32:25.0354 5680 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
19:32:25.0354 5680 nv_agp - ok
19:32:25.0417 5680 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
19:32:25.0417 5680 odserv - ok
19:32:25.0432 5680 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
19:32:25.0432 5680 ohci1394 - ok
19:32:25.0448 5680 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
19:32:25.0448 5680 ose - ok
19:32:25.0464 5680 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
19:32:25.0464 5680 p2pimsvc - ok
19:32:25.0495 5680 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
19:32:25.0495 5680 p2psvc - ok
19:32:25.0526 5680 [ 3A6DCEB1848470320E4A3C12D7A35B1C ] PAC207 C:\Windows\system32\DRIVERS\PFC027.SYS
19:32:25.0526 5680 PAC207 - ok
19:32:25.0542 5680 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
19:32:25.0542 5680 Parport - ok
19:32:25.0557 5680 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
19:32:25.0557 5680 partmgr - ok
19:32:25.0557 5680 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
19:32:25.0557 5680 PcaSvc - ok
19:32:25.0573 5680 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
19:32:25.0573 5680 pci - ok
19:32:25.0588 5680 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
19:32:25.0588 5680 pciide - ok
19:32:25.0588 5680 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
19:32:25.0588 5680 pcmcia - ok
19:32:25.0604 5680 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
19:32:25.0604 5680 pcw - ok
19:32:25.0620 5680 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
19:32:25.0635 5680 PEAUTH - ok
19:32:25.0698 5680 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
19:32:25.0698 5680 PeerDistSvc - ok
19:32:25.0776 5680 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
19:32:25.0776 5680 PerfHost - ok
19:32:25.0807 5680 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
19:32:25.0807 5680 pla - ok
19:32:25.0838 5680 [ 875E4E0661F3A5994DF9E5E3A0A4F96B ] PLFlash DeviceIoControl Service C:\Windows\SysWOW64\IoctlSvc.exe
19:32:25.0838 5680 PLFlash DeviceIoControl Service - ok
19:32:25.0869 5680 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
19:32:25.0869 5680 PlugPlay - ok
19:32:25.0885 5680 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
19:32:25.0885 5680 PNRPAutoReg - ok
19:32:25.0900 5680 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
19:32:25.0900 5680 PNRPsvc - ok
19:32:25.0916 5680 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
19:32:25.0916 5680 PolicyAgent - ok
19:32:25.0947 5680 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
19:32:25.0947 5680 Power - ok
19:32:25.0963 5680 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
19:32:25.0963 5680 PptpMiniport - ok
19:32:25.0978 5680 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
19:32:25.0978 5680 Processor - ok
19:32:25.0994 5680 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
19:32:25.0994 5680 ProfSvc - ok
19:32:26.0010 5680 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
19:32:26.0010 5680 ProtectedStorage - ok
19:32:26.0025 5680 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
19:32:26.0025 5680 Psched - ok
19:32:26.0072 5680 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
19:32:26.0088 5680 ql2300 - ok
19:32:26.0088 5680 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
19:32:26.0088 5680 ql40xx - ok
19:32:26.0103 5680 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
19:32:26.0103 5680 QWAVE - ok
19:32:26.0103 5680 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
19:32:26.0103 5680 QWAVEdrv - ok
19:32:26.0119 5680 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
19:32:26.0119 5680 RasAcd - ok
19:32:26.0134 5680 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
19:32:26.0134 5680 RasAgileVpn - ok
19:32:26.0134 5680 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
19:32:26.0134 5680 RasAuto - ok
19:32:26.0150 5680 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
19:32:26.0150 5680 Rasl2tp - ok
19:32:26.0181 5680 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
19:32:26.0181 5680 RasMan - ok
19:32:26.0197 5680 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
19:32:26.0197 5680 RasPppoe - ok
19:32:26.0197 5680 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
19:32:26.0197 5680 RasSstp - ok
19:32:26.0212 5680 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
19:32:26.0212 5680 rdbss - ok
19:32:26.0228 5680 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
19:32:26.0228 5680 rdpbus - ok
19:32:26.0228 5680 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
19:32:26.0228 5680 RDPCDD - ok
19:32:26.0259 5680 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
19:32:26.0259 5680 RDPDR - ok
19:32:26.0259 5680 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
19:32:26.0275 5680 RDPENCDD - ok
Zase spamy v PC. Vyřešeno
- Scanner
- Level 3.5
- Příspěvky: 771
- Registrován: srpen 11
- Bydliště: Střední čechy
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Zase spamy v PC.
When You smoke herb it reveals you to yourself. All the wickedness you do is revealed by the herb - it's you conscience and gives you an honest picture of yourself.
---------- Robert Nesta Marley ----------
---------- Robert Nesta Marley ----------
- Scanner
- Level 3.5
- Příspěvky: 771
- Registrován: srpen 11
- Bydliště: Střední čechy
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Zase spamy v PC.
19:32:26.0275 5680 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
19:32:26.0275 5680 RDPREFMP - ok
19:32:26.0290 5680 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
19:32:26.0290 5680 RdpVideoMiniport - ok
19:32:26.0322 5680 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
19:32:26.0322 5680 RDPWD - ok
19:32:26.0322 5680 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
19:32:26.0337 5680 rdyboost - ok
19:32:26.0353 5680 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
19:32:26.0353 5680 RemoteAccess - ok
19:32:26.0353 5680 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
19:32:26.0368 5680 RemoteRegistry - ok
19:32:26.0368 5680 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
19:32:26.0368 5680 RpcEptMapper - ok
19:32:26.0384 5680 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
19:32:26.0384 5680 RpcLocator - ok
19:32:26.0400 5680 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
19:32:26.0400 5680 RpcSs - ok
19:32:26.0415 5680 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
19:32:26.0415 5680 rspndr - ok
19:32:26.0446 5680 [ 6D3C7E7D82D3DC92DC2A8B0DF9F20F8A ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
19:32:26.0446 5680 RTL8167 - ok
19:32:26.0462 5680 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
19:32:26.0462 5680 s3cap - ok
19:32:26.0478 5680 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
19:32:26.0478 5680 SamSs - ok
19:32:26.0509 5680 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
19:32:26.0509 5680 sbp2port - ok
19:32:26.0509 5680 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
19:32:26.0524 5680 SCardSvr - ok
19:32:26.0556 5680 [ DD8C29C96307FDBD2DFA6F1730FBCE9A ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys
19:32:26.0556 5680 SCDEmu - ok
19:32:26.0571 5680 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
19:32:26.0571 5680 scfilter - ok
19:32:26.0587 5680 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
19:32:26.0602 5680 Schedule - ok
19:32:26.0618 5680 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
19:32:26.0618 5680 SCPolicySvc - ok
19:32:26.0634 5680 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
19:32:26.0634 5680 SDRSVC - ok
19:32:26.0649 5680 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
19:32:26.0649 5680 secdrv - ok
19:32:26.0665 5680 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
19:32:26.0665 5680 seclogon - ok
19:32:26.0680 5680 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
19:32:26.0680 5680 SENS - ok
19:32:26.0696 5680 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
19:32:26.0696 5680 SensrSvc - ok
19:32:26.0696 5680 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
19:32:26.0696 5680 Serenum - ok
19:32:26.0712 5680 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
19:32:26.0712 5680 Serial - ok
19:32:26.0727 5680 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
19:32:26.0727 5680 sermouse - ok
19:32:26.0743 5680 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
19:32:26.0743 5680 SessionEnv - ok
19:32:26.0758 5680 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
19:32:26.0758 5680 sffdisk - ok
19:32:26.0758 5680 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
19:32:26.0758 5680 sffp_mmc - ok
19:32:26.0774 5680 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
19:32:26.0774 5680 sffp_sd - ok
19:32:26.0790 5680 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
19:32:26.0790 5680 sfloppy - ok
19:32:26.0805 5680 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
19:32:26.0805 5680 SharedAccess - ok
19:32:26.0821 5680 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
19:32:26.0821 5680 ShellHWDetection - ok
19:32:26.0821 5680 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
19:32:26.0821 5680 SiSRaid2 - ok
19:32:26.0821 5680 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
19:32:26.0821 5680 SiSRaid4 - ok
19:32:26.0852 5680 [ 4E8A4BB5B11D828FF986F6228B1CD3DF ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
19:32:26.0852 5680 SkypeUpdate - ok
19:32:26.0868 5680 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
19:32:26.0868 5680 Smb - ok
19:32:26.0883 5680 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
19:32:26.0883 5680 SNMPTRAP - ok
19:32:26.0899 5680 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
19:32:26.0899 5680 spldr - ok
19:32:26.0914 5680 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
19:32:26.0930 5680 Spooler - ok
19:32:26.0977 5680 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
19:32:26.0992 5680 sppsvc - ok
19:32:27.0008 5680 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
19:32:27.0008 5680 sppuinotify - ok
19:32:27.0024 5680 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
19:32:27.0024 5680 srv - ok
19:32:27.0039 5680 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
19:32:27.0039 5680 srv2 - ok
19:32:27.0055 5680 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
19:32:27.0055 5680 srvnet - ok
19:32:27.0086 5680 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
19:32:27.0086 5680 SSDPSRV - ok
19:32:27.0086 5680 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
19:32:27.0086 5680 SstpSvc - ok
19:32:27.0117 5680 [ 0887B293199AA2055888FABA989ED0A6 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
19:32:27.0133 5680 Stereo Service - ok
19:32:27.0148 5680 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
19:32:27.0148 5680 stexstor - ok
19:32:27.0180 5680 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
19:32:27.0180 5680 stisvc - ok
19:32:27.0195 5680 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
19:32:27.0195 5680 storflt - ok
19:32:27.0195 5680 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys
19:32:27.0195 5680 storvsc - ok
19:32:27.0211 5680 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
19:32:27.0211 5680 swenum - ok
19:32:27.0242 5680 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
19:32:27.0242 5680 swprv - ok
19:32:27.0258 5680 Synth3dVsc - ok
19:32:27.0273 5680 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
19:32:27.0289 5680 SysMain - ok
19:32:27.0304 5680 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
19:32:27.0304 5680 TabletInputService - ok
19:32:27.0320 5680 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
19:32:27.0320 5680 TapiSrv - ok
19:32:27.0336 5680 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
19:32:27.0336 5680 TBS - ok
19:32:27.0367 5680 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] Tcpip C:\Windows\system32\drivers\tcpip.sys
19:32:27.0382 5680 Tcpip - ok
19:32:27.0414 5680 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
19:32:27.0414 5680 TCPIP6 - ok
19:32:27.0445 5680 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
19:32:27.0445 5680 tcpipreg - ok
19:32:27.0460 5680 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
19:32:27.0460 5680 TDPIPE - ok
19:32:27.0476 5680 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
19:32:27.0476 5680 TDTCP - ok
19:32:27.0507 5680 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
19:32:27.0507 5680 tdx - ok
19:32:27.0523 5680 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
19:32:27.0523 5680 TermDD - ok
19:32:27.0554 5680 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
19:32:27.0554 5680 TermService - ok
19:32:27.0570 5680 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
19:32:27.0570 5680 Themes - ok
19:32:27.0585 5680 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
19:32:27.0585 5680 THREADORDER - ok
19:32:27.0601 5680 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
19:32:27.0601 5680 TrkWks - ok
19:32:27.0648 5680 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
19:32:27.0648 5680 TrustedInstaller - ok
19:32:27.0663 5680 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
19:32:27.0663 5680 tssecsrv - ok
19:32:27.0694 5680 [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
19:32:27.0694 5680 TsUsbFlt - ok
19:32:27.0694 5680 tsusbhub - ok
19:32:27.0726 5680 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
19:32:27.0726 5680 tunnel - ok
19:32:27.0741 5680 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
19:32:27.0741 5680 uagp35 - ok
19:32:27.0757 5680 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
19:32:27.0757 5680 udfs - ok
19:32:27.0772 5680 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
19:32:27.0772 5680 UI0Detect - ok
19:32:27.0788 5680 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
19:32:27.0788 5680 uliagpkx - ok
19:32:27.0819 5680 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\drivers\umbus.sys
19:32:27.0819 5680 umbus - ok
19:32:27.0835 5680 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
19:32:27.0835 5680 UmPass - ok
19:32:27.0850 5680 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll
19:32:27.0850 5680 UmRdpService - ok
19:32:27.0866 5680 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
19:32:27.0866 5680 upnphost - ok
19:32:27.0882 5680 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
19:32:27.0882 5680 usbccgp - ok
19:32:27.0897 5680 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
19:32:27.0897 5680 usbcir - ok
19:32:27.0913 5680 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
19:32:27.0913 5680 usbehci - ok
19:32:27.0928 5680 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
19:32:27.0928 5680 usbhub - ok
19:32:27.0928 5680 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\drivers\usbohci.sys
19:32:27.0944 5680 usbohci - ok
19:32:27.0944 5680 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
19:32:27.0944 5680 usbprint - ok
19:32:27.0960 5680 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:32:27.0960 5680 USBSTOR - ok
19:32:27.0975 5680 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
19:32:27.0975 5680 usbuhci - ok
19:32:27.0991 5680 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
19:32:27.0991 5680 UxSms - ok
19:32:28.0022 5680 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
19:32:28.0022 5680 VaultSvc - ok
19:32:28.0022 5680 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
19:32:28.0022 5680 vdrvroot - ok
19:32:28.0053 5680 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
19:32:28.0069 5680 vds - ok
19:32:28.0084 5680 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
19:32:28.0084 5680 vga - ok
19:32:28.0100 5680 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
19:32:28.0100 5680 VgaSave - ok
19:32:28.0100 5680 VGPU - ok
19:32:28.0131 5680 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
19:32:28.0131 5680 vhdmp - ok
19:32:28.0147 5680 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
19:32:28.0147 5680 viaide - ok
19:32:28.0162 5680 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys
19:32:28.0162 5680 vmbus - ok
19:32:28.0178 5680 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
19:32:28.0178 5680 VMBusHID - ok
19:32:28.0194 5680 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
19:32:28.0194 5680 volmgr - ok
19:32:28.0209 5680 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
19:32:28.0209 5680 volmgrx - ok
19:32:28.0225 5680 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
19:32:28.0225 5680 volsnap - ok
19:32:28.0225 5680 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
19:32:28.0225 5680 vsmraid - ok
19:32:28.0256 5680 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
19:32:28.0272 5680 VSS - ok
19:32:28.0272 5680 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
19:32:28.0272 5680 vwifibus - ok
19:32:28.0287 5680 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
19:32:28.0303 5680 W32Time - ok
19:32:28.0303 5680 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
19:32:28.0303 5680 WacomPen - ok
19:32:28.0334 5680 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
19:32:28.0334 5680 WANARP - ok
19:32:28.0334 5680 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
19:32:28.0334 5680 Wanarpv6 - ok
19:32:28.0381 5680 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
19:32:28.0381 5680 WatAdminSvc - ok
19:32:28.0412 5680 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
19:32:28.0428 5680 wbengine - ok
19:32:28.0443 5680 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
19:32:28.0443 5680 WbioSrvc - ok
19:32:28.0474 5680 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
19:32:28.0474 5680 wcncsvc - ok
19:32:28.0490 5680 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
19:32:28.0490 5680 WcsPlugInService - ok
19:32:28.0521 5680 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
19:32:28.0521 5680 Wd - ok
19:32:28.0537 5680 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
19:32:28.0537 5680 Wdf01000 - ok
19:32:28.0552 5680 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
19:32:28.0552 5680 WdiServiceHost - ok
19:32:28.0552 5680 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
19:32:28.0552 5680 WdiSystemHost - ok
19:32:28.0584 5680 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
19:32:28.0584 5680 WebClient - ok
19:32:28.0584 5680 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
19:32:28.0599 5680 Wecsvc - ok
19:32:28.0599 5680 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
19:32:28.0599 5680 wercplsupport - ok
19:32:28.0615 5680 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
19:32:28.0630 5680 WerSvc - ok
19:32:28.0630 5680 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
19:32:28.0630 5680 WfpLwf - ok
19:32:28.0646 5680 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
19:32:28.0646 5680 WIMMount - ok
19:32:28.0646 5680 WinDefend - ok
19:32:28.0662 5680 WinHttpAutoProxySvc - ok
19:32:28.0708 5680 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
19:32:28.0708 5680 Winmgmt - ok
19:32:28.0740 5680 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
19:32:28.0755 5680 WinRM - ok
19:32:28.0771 5680 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
19:32:28.0786 5680 Wlansvc - ok
19:32:28.0864 5680 [ 357CABBF155AFD1D3926E62539D2A3A7 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
19:32:28.0880 5680 wlidsvc - ok
19:32:28.0896 5680 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
19:32:28.0896 5680 WmiAcpi - ok
19:32:28.0927 5680 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
19:32:28.0927 5680 wmiApSrv - ok
19:32:28.0942 5680 WMPNetworkSvc - ok
19:32:28.0958 5680 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
19:32:28.0958 5680 WPCSvc - ok
19:32:28.0989 5680 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
19:32:28.0989 5680 WPDBusEnum - ok
19:32:29.0005 5680 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
19:32:29.0005 5680 ws2ifsl - ok
19:32:29.0020 5680 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
19:32:29.0020 5680 wscsvc - ok
19:32:29.0020 5680 WSearch - ok
19:32:29.0067 5680 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
19:32:29.0067 5680 wuauserv - ok
19:32:29.0098 5680 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
19:32:29.0098 5680 WudfPf - ok
19:32:29.0098 5680 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
19:32:29.0098 5680 WUDFRd - ok
19:32:29.0114 5680 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
19:32:29.0114 5680 wudfsvc - ok
19:32:29.0130 5680 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll
19:32:29.0130 5680 WwanSvc - ok
19:32:29.0130 5680 ================ Scan global ===============================
19:32:29.0145 5680 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
19:32:29.0161 5680 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
19:32:29.0176 5680 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
19:32:29.0192 5680 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
19:32:29.0208 5680 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
19:32:29.0208 5680 [Global] - ok
19:32:29.0208 5680 ================ Scan MBR ==================================
19:32:29.0208 5680 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
19:32:29.0488 5680 \Device\Harddisk0\DR0 - ok
19:32:29.0488 5680 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
19:32:29.0504 5680 \Device\Harddisk1\DR1 - ok
19:32:29.0504 5680 ================ Scan VBR ==================================
19:32:29.0504 5680 [ 7962F4B042030F9E811F21856F950588 ] \Device\Harddisk0\DR0\Partition1
19:32:29.0504 5680 \Device\Harddisk0\DR0\Partition1 - ok
19:32:29.0504 5680 [ A0408CA928E69F41CC60927B75A727FF ] \Device\Harddisk0\DR0\Partition2
19:32:29.0504 5680 \Device\Harddisk0\DR0\Partition2 - ok
19:32:29.0520 5680 [ 74DF78FEE94100269ADBE130C3469CD8 ] \Device\Harddisk0\DR0\Partition3
19:32:29.0520 5680 \Device\Harddisk0\DR0\Partition3 - ok
19:32:29.0520 5680 [ 9F6CD74A41C3F96A98C8B80C3D7E98FC ] \Device\Harddisk1\DR1\Partition1
19:32:29.0520 5680 \Device\Harddisk1\DR1\Partition1 - ok
19:32:29.0520 5680 ============================================================
19:32:29.0520 5680 Scan finished
19:32:29.0520 5680 ============================================================
19:32:29.0535 5532 Detected object count: 0
19:32:29.0535 5532 Actual detected object count: 0
19:32:33.0451 4680 Deinitialize success
19:32:26.0275 5680 RDPREFMP - ok
19:32:26.0290 5680 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
19:32:26.0290 5680 RdpVideoMiniport - ok
19:32:26.0322 5680 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
19:32:26.0322 5680 RDPWD - ok
19:32:26.0322 5680 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
19:32:26.0337 5680 rdyboost - ok
19:32:26.0353 5680 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
19:32:26.0353 5680 RemoteAccess - ok
19:32:26.0353 5680 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
19:32:26.0368 5680 RemoteRegistry - ok
19:32:26.0368 5680 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
19:32:26.0368 5680 RpcEptMapper - ok
19:32:26.0384 5680 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
19:32:26.0384 5680 RpcLocator - ok
19:32:26.0400 5680 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
19:32:26.0400 5680 RpcSs - ok
19:32:26.0415 5680 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
19:32:26.0415 5680 rspndr - ok
19:32:26.0446 5680 [ 6D3C7E7D82D3DC92DC2A8B0DF9F20F8A ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
19:32:26.0446 5680 RTL8167 - ok
19:32:26.0462 5680 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
19:32:26.0462 5680 s3cap - ok
19:32:26.0478 5680 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
19:32:26.0478 5680 SamSs - ok
19:32:26.0509 5680 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
19:32:26.0509 5680 sbp2port - ok
19:32:26.0509 5680 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
19:32:26.0524 5680 SCardSvr - ok
19:32:26.0556 5680 [ DD8C29C96307FDBD2DFA6F1730FBCE9A ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys
19:32:26.0556 5680 SCDEmu - ok
19:32:26.0571 5680 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
19:32:26.0571 5680 scfilter - ok
19:32:26.0587 5680 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
19:32:26.0602 5680 Schedule - ok
19:32:26.0618 5680 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
19:32:26.0618 5680 SCPolicySvc - ok
19:32:26.0634 5680 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
19:32:26.0634 5680 SDRSVC - ok
19:32:26.0649 5680 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
19:32:26.0649 5680 secdrv - ok
19:32:26.0665 5680 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
19:32:26.0665 5680 seclogon - ok
19:32:26.0680 5680 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
19:32:26.0680 5680 SENS - ok
19:32:26.0696 5680 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
19:32:26.0696 5680 SensrSvc - ok
19:32:26.0696 5680 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
19:32:26.0696 5680 Serenum - ok
19:32:26.0712 5680 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
19:32:26.0712 5680 Serial - ok
19:32:26.0727 5680 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
19:32:26.0727 5680 sermouse - ok
19:32:26.0743 5680 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
19:32:26.0743 5680 SessionEnv - ok
19:32:26.0758 5680 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
19:32:26.0758 5680 sffdisk - ok
19:32:26.0758 5680 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
19:32:26.0758 5680 sffp_mmc - ok
19:32:26.0774 5680 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
19:32:26.0774 5680 sffp_sd - ok
19:32:26.0790 5680 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
19:32:26.0790 5680 sfloppy - ok
19:32:26.0805 5680 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
19:32:26.0805 5680 SharedAccess - ok
19:32:26.0821 5680 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
19:32:26.0821 5680 ShellHWDetection - ok
19:32:26.0821 5680 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
19:32:26.0821 5680 SiSRaid2 - ok
19:32:26.0821 5680 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
19:32:26.0821 5680 SiSRaid4 - ok
19:32:26.0852 5680 [ 4E8A4BB5B11D828FF986F6228B1CD3DF ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
19:32:26.0852 5680 SkypeUpdate - ok
19:32:26.0868 5680 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
19:32:26.0868 5680 Smb - ok
19:32:26.0883 5680 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
19:32:26.0883 5680 SNMPTRAP - ok
19:32:26.0899 5680 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
19:32:26.0899 5680 spldr - ok
19:32:26.0914 5680 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
19:32:26.0930 5680 Spooler - ok
19:32:26.0977 5680 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
19:32:26.0992 5680 sppsvc - ok
19:32:27.0008 5680 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
19:32:27.0008 5680 sppuinotify - ok
19:32:27.0024 5680 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
19:32:27.0024 5680 srv - ok
19:32:27.0039 5680 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
19:32:27.0039 5680 srv2 - ok
19:32:27.0055 5680 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
19:32:27.0055 5680 srvnet - ok
19:32:27.0086 5680 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
19:32:27.0086 5680 SSDPSRV - ok
19:32:27.0086 5680 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
19:32:27.0086 5680 SstpSvc - ok
19:32:27.0117 5680 [ 0887B293199AA2055888FABA989ED0A6 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
19:32:27.0133 5680 Stereo Service - ok
19:32:27.0148 5680 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
19:32:27.0148 5680 stexstor - ok
19:32:27.0180 5680 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
19:32:27.0180 5680 stisvc - ok
19:32:27.0195 5680 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
19:32:27.0195 5680 storflt - ok
19:32:27.0195 5680 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys
19:32:27.0195 5680 storvsc - ok
19:32:27.0211 5680 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
19:32:27.0211 5680 swenum - ok
19:32:27.0242 5680 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
19:32:27.0242 5680 swprv - ok
19:32:27.0258 5680 Synth3dVsc - ok
19:32:27.0273 5680 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
19:32:27.0289 5680 SysMain - ok
19:32:27.0304 5680 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
19:32:27.0304 5680 TabletInputService - ok
19:32:27.0320 5680 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
19:32:27.0320 5680 TapiSrv - ok
19:32:27.0336 5680 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
19:32:27.0336 5680 TBS - ok
19:32:27.0367 5680 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] Tcpip C:\Windows\system32\drivers\tcpip.sys
19:32:27.0382 5680 Tcpip - ok
19:32:27.0414 5680 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
19:32:27.0414 5680 TCPIP6 - ok
19:32:27.0445 5680 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
19:32:27.0445 5680 tcpipreg - ok
19:32:27.0460 5680 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
19:32:27.0460 5680 TDPIPE - ok
19:32:27.0476 5680 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
19:32:27.0476 5680 TDTCP - ok
19:32:27.0507 5680 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
19:32:27.0507 5680 tdx - ok
19:32:27.0523 5680 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
19:32:27.0523 5680 TermDD - ok
19:32:27.0554 5680 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
19:32:27.0554 5680 TermService - ok
19:32:27.0570 5680 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
19:32:27.0570 5680 Themes - ok
19:32:27.0585 5680 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
19:32:27.0585 5680 THREADORDER - ok
19:32:27.0601 5680 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
19:32:27.0601 5680 TrkWks - ok
19:32:27.0648 5680 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
19:32:27.0648 5680 TrustedInstaller - ok
19:32:27.0663 5680 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
19:32:27.0663 5680 tssecsrv - ok
19:32:27.0694 5680 [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
19:32:27.0694 5680 TsUsbFlt - ok
19:32:27.0694 5680 tsusbhub - ok
19:32:27.0726 5680 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
19:32:27.0726 5680 tunnel - ok
19:32:27.0741 5680 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
19:32:27.0741 5680 uagp35 - ok
19:32:27.0757 5680 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
19:32:27.0757 5680 udfs - ok
19:32:27.0772 5680 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
19:32:27.0772 5680 UI0Detect - ok
19:32:27.0788 5680 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
19:32:27.0788 5680 uliagpkx - ok
19:32:27.0819 5680 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\drivers\umbus.sys
19:32:27.0819 5680 umbus - ok
19:32:27.0835 5680 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
19:32:27.0835 5680 UmPass - ok
19:32:27.0850 5680 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll
19:32:27.0850 5680 UmRdpService - ok
19:32:27.0866 5680 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
19:32:27.0866 5680 upnphost - ok
19:32:27.0882 5680 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
19:32:27.0882 5680 usbccgp - ok
19:32:27.0897 5680 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
19:32:27.0897 5680 usbcir - ok
19:32:27.0913 5680 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
19:32:27.0913 5680 usbehci - ok
19:32:27.0928 5680 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
19:32:27.0928 5680 usbhub - ok
19:32:27.0928 5680 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\drivers\usbohci.sys
19:32:27.0944 5680 usbohci - ok
19:32:27.0944 5680 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
19:32:27.0944 5680 usbprint - ok
19:32:27.0960 5680 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:32:27.0960 5680 USBSTOR - ok
19:32:27.0975 5680 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
19:32:27.0975 5680 usbuhci - ok
19:32:27.0991 5680 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
19:32:27.0991 5680 UxSms - ok
19:32:28.0022 5680 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
19:32:28.0022 5680 VaultSvc - ok
19:32:28.0022 5680 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
19:32:28.0022 5680 vdrvroot - ok
19:32:28.0053 5680 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
19:32:28.0069 5680 vds - ok
19:32:28.0084 5680 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
19:32:28.0084 5680 vga - ok
19:32:28.0100 5680 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
19:32:28.0100 5680 VgaSave - ok
19:32:28.0100 5680 VGPU - ok
19:32:28.0131 5680 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
19:32:28.0131 5680 vhdmp - ok
19:32:28.0147 5680 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
19:32:28.0147 5680 viaide - ok
19:32:28.0162 5680 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys
19:32:28.0162 5680 vmbus - ok
19:32:28.0178 5680 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
19:32:28.0178 5680 VMBusHID - ok
19:32:28.0194 5680 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
19:32:28.0194 5680 volmgr - ok
19:32:28.0209 5680 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
19:32:28.0209 5680 volmgrx - ok
19:32:28.0225 5680 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
19:32:28.0225 5680 volsnap - ok
19:32:28.0225 5680 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
19:32:28.0225 5680 vsmraid - ok
19:32:28.0256 5680 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
19:32:28.0272 5680 VSS - ok
19:32:28.0272 5680 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
19:32:28.0272 5680 vwifibus - ok
19:32:28.0287 5680 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
19:32:28.0303 5680 W32Time - ok
19:32:28.0303 5680 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
19:32:28.0303 5680 WacomPen - ok
19:32:28.0334 5680 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
19:32:28.0334 5680 WANARP - ok
19:32:28.0334 5680 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
19:32:28.0334 5680 Wanarpv6 - ok
19:32:28.0381 5680 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
19:32:28.0381 5680 WatAdminSvc - ok
19:32:28.0412 5680 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
19:32:28.0428 5680 wbengine - ok
19:32:28.0443 5680 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
19:32:28.0443 5680 WbioSrvc - ok
19:32:28.0474 5680 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
19:32:28.0474 5680 wcncsvc - ok
19:32:28.0490 5680 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
19:32:28.0490 5680 WcsPlugInService - ok
19:32:28.0521 5680 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
19:32:28.0521 5680 Wd - ok
19:32:28.0537 5680 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
19:32:28.0537 5680 Wdf01000 - ok
19:32:28.0552 5680 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
19:32:28.0552 5680 WdiServiceHost - ok
19:32:28.0552 5680 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
19:32:28.0552 5680 WdiSystemHost - ok
19:32:28.0584 5680 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
19:32:28.0584 5680 WebClient - ok
19:32:28.0584 5680 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
19:32:28.0599 5680 Wecsvc - ok
19:32:28.0599 5680 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
19:32:28.0599 5680 wercplsupport - ok
19:32:28.0615 5680 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
19:32:28.0630 5680 WerSvc - ok
19:32:28.0630 5680 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
19:32:28.0630 5680 WfpLwf - ok
19:32:28.0646 5680 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
19:32:28.0646 5680 WIMMount - ok
19:32:28.0646 5680 WinDefend - ok
19:32:28.0662 5680 WinHttpAutoProxySvc - ok
19:32:28.0708 5680 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
19:32:28.0708 5680 Winmgmt - ok
19:32:28.0740 5680 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
19:32:28.0755 5680 WinRM - ok
19:32:28.0771 5680 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
19:32:28.0786 5680 Wlansvc - ok
19:32:28.0864 5680 [ 357CABBF155AFD1D3926E62539D2A3A7 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
19:32:28.0880 5680 wlidsvc - ok
19:32:28.0896 5680 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
19:32:28.0896 5680 WmiAcpi - ok
19:32:28.0927 5680 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
19:32:28.0927 5680 wmiApSrv - ok
19:32:28.0942 5680 WMPNetworkSvc - ok
19:32:28.0958 5680 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
19:32:28.0958 5680 WPCSvc - ok
19:32:28.0989 5680 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
19:32:28.0989 5680 WPDBusEnum - ok
19:32:29.0005 5680 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
19:32:29.0005 5680 ws2ifsl - ok
19:32:29.0020 5680 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
19:32:29.0020 5680 wscsvc - ok
19:32:29.0020 5680 WSearch - ok
19:32:29.0067 5680 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
19:32:29.0067 5680 wuauserv - ok
19:32:29.0098 5680 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
19:32:29.0098 5680 WudfPf - ok
19:32:29.0098 5680 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
19:32:29.0098 5680 WUDFRd - ok
19:32:29.0114 5680 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
19:32:29.0114 5680 wudfsvc - ok
19:32:29.0130 5680 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll
19:32:29.0130 5680 WwanSvc - ok
19:32:29.0130 5680 ================ Scan global ===============================
19:32:29.0145 5680 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
19:32:29.0161 5680 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
19:32:29.0176 5680 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
19:32:29.0192 5680 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
19:32:29.0208 5680 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
19:32:29.0208 5680 [Global] - ok
19:32:29.0208 5680 ================ Scan MBR ==================================
19:32:29.0208 5680 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
19:32:29.0488 5680 \Device\Harddisk0\DR0 - ok
19:32:29.0488 5680 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
19:32:29.0504 5680 \Device\Harddisk1\DR1 - ok
19:32:29.0504 5680 ================ Scan VBR ==================================
19:32:29.0504 5680 [ 7962F4B042030F9E811F21856F950588 ] \Device\Harddisk0\DR0\Partition1
19:32:29.0504 5680 \Device\Harddisk0\DR0\Partition1 - ok
19:32:29.0504 5680 [ A0408CA928E69F41CC60927B75A727FF ] \Device\Harddisk0\DR0\Partition2
19:32:29.0504 5680 \Device\Harddisk0\DR0\Partition2 - ok
19:32:29.0520 5680 [ 74DF78FEE94100269ADBE130C3469CD8 ] \Device\Harddisk0\DR0\Partition3
19:32:29.0520 5680 \Device\Harddisk0\DR0\Partition3 - ok
19:32:29.0520 5680 [ 9F6CD74A41C3F96A98C8B80C3D7E98FC ] \Device\Harddisk1\DR1\Partition1
19:32:29.0520 5680 \Device\Harddisk1\DR1\Partition1 - ok
19:32:29.0520 5680 ============================================================
19:32:29.0520 5680 Scan finished
19:32:29.0520 5680 ============================================================
19:32:29.0535 5532 Detected object count: 0
19:32:29.0535 5532 Actual detected object count: 0
19:32:33.0451 4680 Deinitialize success
When You smoke herb it reveals you to yourself. All the wickedness you do is revealed by the herb - it's you conscience and gives you an honest picture of yourself.
---------- Robert Nesta Marley ----------
---------- Robert Nesta Marley ----------
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Zase spamy v PC.
Fixnuto. Jinak můžu odinstalovat pouze ten Advanced SystemCare Browser Protection? Když jsem otevřel programy a funkce je tam pouze Advanced SystemCare 6 a ten určitě celý odinstalovat nechci.
V tom programu by se to mělo dát alespoň zastavit..
Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
- Scanner
- Level 3.5
- Příspěvky: 771
- Registrován: srpen 11
- Bydliště: Střední čechy
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Zase spamy v PC.
Vypnuto. Já jsem nevěděl pod čím to mám hledat a byla to ochrana při surfování.
Jinak sorry že jsem ten CF neudělal včera, nejdříve se my nechtěl spustit a pak se spustil v malým okýnku. Chtěl jsem to udělat přes nouzák ale dneska už to šlo v pohodě.
ComboFix 13-06-30.01 - Zkuřka 01.07.2013 9:13.1.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.4079.2372 [GMT 2:00]
Spuštěný z: c:\users\Zkuřka\Desktop\ComboFix.exe
AV: Kaspersky Internet Security *Disabled/Updated* {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
FW: Kaspersky Internet Security *Disabled* {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E}
SP: Kaspersky Internet Security *Disabled/Updated* {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\PFRO.log
c:\windows\SysWow64\frapsvid.dll
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-06-01 do 2013-07-01 )))))))))))))))))))))))))))))))
.
.
2013-07-01 07:16 . 2013-07-01 07:16 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-07-01 07:16 . 2013-07-01 07:16 -------- d-----w- c:\users\Simča\AppData\Local\temp
2013-06-30 16:51 . 2013-06-30 16:51 -------- d-----w- c:\users\Simča\AppData\Local\Microsoft Games
2013-06-30 15:44 . 2013-06-30 15:44 -------- d-----w- c:\users\Simča\AppData\Local\Ahead
2013-06-30 14:01 . 2013-06-30 14:01 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys.bak
2013-06-30 14:01 . 2013-06-30 14:01 52096 ----a-w- c:\windows\system32\drivers\winhv.sys.bak
2013-06-30 14:01 . 2013-06-30 14:01 94208 ----a-w- c:\windows\system32\drivers\serial.sys.bak
2013-06-30 14:00 . 2013-06-30 14:00 72192 ----a-w- c:\windows\system32\drivers\bthmodem.sys.bak
2013-06-30 12:35 . 2013-06-30 12:35 -------- d-----w- c:\users\Zkuřka\AppData\Local\Activision
2013-06-30 11:58 . 2013-06-30 11:58 -------- d-----w- c:\programdata\Steam
2013-06-30 11:36 . 2013-06-30 14:01 71552 ----a-w- c:\windows\system32\drivers\volmgr.sys.bak
2013-06-30 11:36 . 2013-06-30 14:00 78848 ----a-w- c:\windows\system32\drivers\IPMIDrv.sys.bak
2013-06-30 11:36 . 2013-06-30 14:00 70224 ----a-w- c:\windows\system32\drivers\fileinfo.sys.bak
2013-06-28 08:38 . 2013-06-12 03:08 9552976 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{8D7F8E0C-A504-4DE4-A907-28AC5BF5EAD1}\mpengine.dll
2013-06-27 12:51 . 2013-06-27 12:51 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-06-25 10:55 . 2013-03-15 03:33 64856 ----a-w- c:\windows\system32\klfphc.dll
2013-06-25 10:54 . 2013-06-25 10:54 -------- d-----w- c:\windows\ELAMBKUP
2013-06-25 10:54 . 2013-07-01 07:17 -------- d-----w- c:\programdata\Kaspersky Lab
2013-06-25 10:54 . 2013-06-25 10:54 -------- d-----w- c:\program files (x86)\Kaspersky Lab
2013-06-25 10:54 . 2013-06-25 11:12 90208 ----a-w- c:\windows\system32\drivers\klflt.sys
2013-06-25 10:54 . 2013-06-25 11:12 620128 ----a-w- c:\windows\system32\drivers\klif.sys
2013-06-25 10:14 . 2013-06-25 10:14 -------- d-s---w- c:\windows\SysWow64\Microsoft
2013-06-24 06:08 . 2013-06-24 06:08 -------- d-----w- c:\users\Guest\AppData\Local\Opera
2013-06-22 14:28 . 2013-06-22 14:28 -------- d-----w- c:\users\Zkuřka\AppData\Roaming\PowerISO
2013-06-22 14:22 . 2013-06-22 14:22 -------- d-----w- c:\programdata\StarApp
2013-06-22 14:22 . 2013-06-22 14:22 -------- d-----w- c:\program files (x86)\SafeSaver
2013-06-22 14:19 . 2013-04-15 09:50 127384 ----a-w- c:\windows\system32\drivers\scdemu.sys
2013-06-20 22:05 . 2012-06-17 20:18 1202688 ----a-w- c:\windows\system32\ac3filter64.acm
2013-06-20 22:05 . 2012-06-17 20:10 965120 ----a-w- c:\windows\SysWow64\ac3filter.acm
2013-06-13 21:53 . 2013-06-13 21:53 -------- d-----w- c:\users\Zkuřka\AppData\Local\PunkBuster
2013-06-13 21:01 . 2013-06-29 18:23 -------- d-----w- c:\users\Zkuřka\AppData\Local\VirtualStore
2013-06-13 20:57 . 2013-06-13 20:57 -------- d-----w- c:\programdata\Orbit
2013-06-13 20:16 . 2013-06-13 20:16 -------- d-----w- c:\users\Zkuřka\AppData\Local\Ubisoft Game Launcher
2013-06-13 09:18 . 2013-06-08 14:08 279040 ----a-w- c:\program files\Internet Explorer\sqmapi.dll
2013-06-13 05:31 . 2013-05-08 06:39 1910632 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-06-12 19:22 . 2013-06-12 19:22 -------- d-----w- c:\users\Zkuřka\AppData\Roaming\Theta
2013-06-12 18:08 . 2013-06-12 18:08 -------- d-----w- c:\program files (x86)\Common Files\Java
2013-06-12 18:08 . 2013-06-27 12:51 867240 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2013-06-12 18:08 . 2013-06-27 12:51 789416 ----a-w- c:\windows\SysWow64\deployJava1.dll
2013-06-12 18:07 . 2013-06-12 18:07 -------- d-----w- c:\program files (x86)\Java
2013-06-11 16:01 . 2002-12-05 12:12 692224 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iKernel.dll
2013-06-11 16:01 . 2002-12-05 12:10 155648 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iuser.dll
2013-06-11 16:01 . 2002-12-02 13:22 5632 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\DotNetInstaller.exe
2013-06-11 16:01 . 2002-12-02 11:33 57344 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\ctor.dll
2013-06-11 16:01 . 2002-12-02 11:33 237568 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iscript.dll
2013-06-11 16:01 . 2013-06-11 16:01 282756 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\setup.dll
2013-06-11 16:01 . 2013-06-11 16:01 163972 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iGdi.dll
2013-06-09 15:32 . 2013-04-17 18:20 26432 ----a-w- c:\windows\system32\RegistryDefragBootTime.exe
2013-06-09 09:10 . 2013-04-04 12:50 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-06-01 21:05 . 2013-06-01 21:05 -------- d-----w- c:\users\Simča\AppData\Roaming\uTorrent
2013-06-01 10:40 . 2013-06-01 10:40 -------- d-----w- c:\users\Simča\AppData\Roaming\Opera
2013-06-01 10:40 . 2013-06-01 10:40 -------- d-----w- c:\users\Simča\AppData\Local\Opera
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-06-25 11:12 . 2012-08-13 14:49 178448 ----a-w- c:\windows\system32\drivers\kneps.sys
2013-06-25 11:12 . 2013-03-15 03:33 54368 ----a-w- c:\windows\system32\drivers\kltdi.sys
2013-06-13 09:19 . 2013-05-25 17:04 75825640 ----a-w- c:\windows\system32\MRT.exe
2013-05-26 17:33 . 2012-07-17 12:37 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-05-25 19:49 . 2013-05-25 19:49 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2013-05-25 19:49 . 2013-05-25 19:49 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2013-05-25 19:49 . 2013-05-25 19:49 61952 ----a-w- c:\windows\SysWow64\tdc.ocx
2013-05-25 19:49 . 2013-05-25 19:49 523264 ----a-w- c:\windows\SysWow64\vbscript.dll
2013-05-25 19:49 . 2013-05-25 19:49 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2013-05-25 19:49 . 2013-05-25 19:49 38400 ----a-w- c:\windows\SysWow64\imgutil.dll
2013-05-25 19:49 . 2013-05-25 19:49 361984 ----a-w- c:\windows\SysWow64\html.iec
2013-05-25 19:49 . 2013-05-25 19:49 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll
2013-05-25 19:49 . 2013-05-25 19:49 226304 ----a-w- c:\windows\system32\elshyph.dll
2013-05-25 19:49 . 2013-05-25 19:49 185344 ----a-w- c:\windows\SysWow64\elshyph.dll
2013-05-25 19:49 . 2013-05-25 19:49 158720 ----a-w- c:\windows\SysWow64\msls31.dll
2013-05-25 19:49 . 2013-05-25 19:49 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2013-05-25 19:49 . 2013-05-25 19:49 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2013-05-25 19:49 . 2013-05-25 19:49 138752 ----a-w- c:\windows\SysWow64\wextract.exe
2013-05-25 19:49 . 2013-05-25 19:49 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2013-05-25 19:49 . 2013-05-25 19:49 12800 ----a-w- c:\windows\SysWow64\mshta.exe
2013-05-25 19:49 . 2013-05-25 19:49 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2013-05-25 19:49 . 2013-05-25 19:49 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-05-25 19:49 . 2013-05-25 19:49 97280 ----a-w- c:\windows\system32\mshtmled.dll
2013-05-25 19:49 . 2013-05-25 19:49 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-05-25 19:49 . 2013-05-25 19:49 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-05-25 19:49 . 2013-05-25 19:49 81408 ----a-w- c:\windows\system32\icardie.dll
2013-05-25 19:49 . 2013-05-25 19:49 77312 ----a-w- c:\windows\system32\tdc.ocx
2013-05-25 19:49 . 2013-05-25 19:49 762368 ----a-w- c:\windows\system32\ieapfltr.dll
2013-05-25 19:49 . 2013-05-25 19:49 62976 ----a-w- c:\windows\system32\pngfilt.dll
2013-05-25 19:49 . 2013-05-25 19:49 599552 ----a-w- c:\windows\system32\vbscript.dll
2013-05-25 19:49 . 2013-05-25 19:49 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2013-05-25 19:49 . 2013-05-25 19:49 51200 ----a-w- c:\windows\system32\imgutil.dll
2013-05-25 19:49 . 2013-05-25 19:49 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-05-25 19:49 . 2013-05-25 19:49 452096 ----a-w- c:\windows\system32\dxtmsft.dll
2013-05-25 19:49 . 2013-05-25 19:49 441856 ----a-w- c:\windows\system32\html.iec
2013-05-25 19:49 . 2013-05-25 19:49 281600 ----a-w- c:\windows\system32\dxtrans.dll
2013-05-25 19:49 . 2013-05-25 19:49 27648 ----a-w- c:\windows\system32\licmgr10.dll
2013-05-25 19:49 . 2013-05-25 19:49 270848 ----a-w- c:\windows\system32\iedkcs32.dll
2013-05-25 19:49 . 2013-05-25 19:49 247296 ----a-w- c:\windows\system32\webcheck.dll
2013-05-25 19:49 . 2013-05-25 19:49 235008 ----a-w- c:\windows\system32\url.dll
2013-05-25 19:49 . 2013-05-25 19:49 216064 ----a-w- c:\windows\system32\msls31.dll
2013-05-25 19:49 . 2013-05-25 19:49 197120 ----a-w- c:\windows\system32\msrating.dll
2013-05-25 19:49 . 2013-05-25 19:49 173568 ----a-w- c:\windows\system32\ieUnatt.exe
2013-05-25 19:49 . 2013-05-25 19:49 167424 ----a-w- c:\windows\system32\iexpress.exe
2013-05-25 19:49 . 2013-05-25 19:49 1509376 ----a-w- c:\windows\system32\inetcpl.cpl
2013-05-25 19:49 . 2013-05-25 19:49 149504 ----a-w- c:\windows\system32\occache.dll
2013-05-25 19:49 . 2013-05-25 19:49 144896 ----a-w- c:\windows\system32\wextract.exe
2013-05-25 19:49 . 2013-05-25 19:49 1400416 ----a-w- c:\windows\system32\ieapfltr.dat
2013-05-25 19:49 . 2013-05-25 19:49 13824 ----a-w- c:\windows\system32\mshta.exe
2013-05-25 19:49 . 2013-05-25 19:49 136192 ----a-w- c:\windows\system32\iepeers.dll
2013-05-25 19:49 . 2013-05-25 19:49 135680 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-05-25 19:49 . 2013-05-25 19:49 12800 ----a-w- c:\windows\system32\msfeedssync.exe
2013-05-25 19:49 . 2013-05-25 19:49 102912 ----a-w- c:\windows\system32\inseng.dll
2013-05-25 18:56 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2013-05-25 18:56 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2013-05-25 16:55 . 2013-05-25 16:55 283200 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2013-05-12 21:42 . 2013-05-25 15:56 9233688 ----a-w- c:\windows\system32\nvcuda.dll
2013-05-12 21:42 . 2013-05-25 15:56 7682960 ----a-w- c:\windows\SysWow64\nvcuda.dll
2013-05-12 21:42 . 2013-05-25 15:56 7641832 ----a-w- c:\windows\system32\nvopencl.dll
2013-05-12 21:42 . 2013-05-25 15:56 6324360 ----a-w- c:\windows\SysWow64\nvopencl.dll
2013-05-12 21:42 . 2013-05-25 15:56 550176 ----a-w- c:\windows\system32\NvFBC64.dll
2013-05-12 21:42 . 2013-05-25 15:56 518944 ----a-w- c:\windows\system32\NvIFR64.dll
2013-05-12 21:42 . 2013-05-25 15:56 443168 ----a-w- c:\windows\SysWow64\NvFBC.dll
2013-05-12 21:42 . 2013-05-25 15:56 421152 ----a-w- c:\windows\SysWow64\NvIFR.dll
2013-05-12 21:42 . 2013-05-25 15:56 2942240 ----a-w- c:\windows\system32\nvcuvid.dll
2013-05-12 21:42 . 2013-05-25 15:56 27775776 ----a-w- c:\windows\system32\nvoglv64.dll
2013-05-12 21:42 . 2013-05-25 15:56 2754336 ----a-w- c:\windows\SysWow64\nvcuvid.dll
2013-05-12 21:42 . 2013-05-25 15:56 2597344 ----a-w- c:\windows\SysWow64\nvapi.dll
2013-05-12 21:42 . 2013-05-25 15:56 25256224 ----a-w- c:\windows\system32\nvcompiler.dll
2013-05-12 21:42 . 2013-05-25 15:56 2363680 ----a-w- c:\windows\system32\nvcuvenc.dll
2013-05-12 21:42 . 2013-05-25 15:56 21096736 ----a-w- c:\windows\SysWow64\nvoglv32.dll
2013-05-12 21:42 . 2013-05-25 15:56 2002720 ----a-w- c:\windows\SysWow64\nvcuvenc.dll
2013-05-12 21:42 . 2013-05-25 15:56 1832224 ----a-w- c:\windows\system32\nvdispco6432018.dll
2013-05-12 21:42 . 2013-05-25 15:56 17560352 ----a-w- c:\windows\SysWow64\nvcompiler.dll
2013-05-12 21:42 . 2013-05-25 15:56 15910736 ----a-w- c:\windows\system32\nvwgf2umx.dll
2013-05-12 21:42 . 2013-05-25 15:56 15143904 ----a-w- c:\windows\system32\nvd3dumx.dll
2013-05-12 21:42 . 2013-05-25 15:56 1511712 ----a-w- c:\windows\system32\nvdispgenco6432018.dll
2013-05-12 21:42 . 2013-05-25 15:56 13403168 ----a-w- c:\windows\SysWow64\nvwgf2um.dll
2013-05-12 21:42 . 2013-05-25 15:56 12426216 ----a-w- c:\windows\SysWow64\nvd3dum.dll
2013-05-12 21:42 . 2013-05-25 15:56 11216160 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2013-05-12 21:42 . 2013-02-25 22:32 2935696 ----a-w- c:\windows\system32\nvapi64.dll
2013-05-12 20:34 . 2010-10-08 08:04 6491936 ----a-w- c:\windows\system32\nvcpl.dll
2013-05-12 20:34 . 2010-10-08 08:04 3514656 ----a-w- c:\windows\system32\nvsvc64.dll
2013-05-12 20:34 . 2010-10-08 08:04 884512 ----a-w- c:\windows\system32\nvvsvc.exe
2013-05-12 20:34 . 2010-10-08 08:04 63776 ----a-w- c:\windows\system32\nvshext.dll
2013-05-12 20:34 . 2010-10-08 08:04 2555680 ----a-w- c:\windows\system32\nvsvcr.dll
2013-05-12 20:34 . 2010-10-08 08:04 237856 ----a-w- c:\windows\system32\nvmctray.dll
2013-05-12 13:43 . 2013-05-12 13:43 566048 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2013-05-09 08:58 . 2013-05-25 16:14 287840 ----a-w- c:\windows\system32\aswBoot.exe
2013-05-02 00:06 . 2013-05-25 16:20 278800 ------w- c:\windows\system32\MpSigStub.exe
2013-04-13 05:49 . 2013-05-25 19:23 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2013-04-13 05:49 . 2013-05-25 19:23 308736 ----a-w- c:\windows\apppatch\AppPatch64\AcGenral.dll
2013-04-13 05:49 . 2013-05-25 19:23 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll
2013-04-13 05:49 . 2013-05-25 19:23 111104 ----a-w- c:\windows\apppatch\AppPatch64\acspecfc.dll
2013-04-13 04:45 . 2013-05-25 19:23 474624 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2013-04-13 04:45 . 2013-05-25 19:23 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll
2013-04-12 14:45 . 2013-05-25 16:22 1656680 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-04-10 06:01 . 2013-05-25 19:24 265064 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2013-04-10 06:01 . 2013-05-25 19:24 983400 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-04-10 03:30 . 2013-05-25 19:22 3153920 ----a-w- c:\windows\system32\win32k.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Advanced SystemCare 6"="c:\program files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe" [2013-04-18 491840]
"DAEMON Tools Lite"="e:\daemon tools lite\DTLite.exe" [2013-03-14 3672640]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2013-06-03 19603048]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe" [2008-01-22 152872]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AVP"="c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe" [2013-03-15 356376]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
.
3;2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MBAMService;MBAMService;e:\malwarebytes' anti-malware\mbamservice.exe;e:\malwarebytes' anti-malware\mbamservice.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys;c:\windows\SYSNATIVE\DRIVERS\klim6.sys [x]
S1 kltdi;kltdi;c:\windows\system32\DRIVERS\kltdi.sys;c:\windows\SYSNATIVE\DRIVERS\kltdi.sys [x]
S1 kneps;kneps;c:\windows\system32\DRIVERS\kneps.sys;c:\windows\SYSNATIVE\DRIVERS\kneps.sys [x]
S2 AdvancedSystemCareService6;Advanced SystemCare Service 6;c:\program files (x86)\IObit\Advanced SystemCare 6\ASCService.exe;c:\program files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 klkbdflt;Kaspersky Lab KLKBDFLT;c:\windows\system32\DRIVERS\klkbdflt.sys;c:\windows\SYSNATIVE\DRIVERS\klkbdflt.sys [x]
S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys;c:\windows\SYSNATIVE\DRIVERS\klmouflt.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 PAC207;SoC PC-Camera;c:\windows\system32\DRIVERS\PFC027.SYS;c:\windows\SYSNATIVE\DRIVERS\PFC027.SYS [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-06-28 06:59 1173456 ----a-w- c:\program files (x86)\Google\Chrome\Application\28.0.1500.63\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2013-07-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-05-25 15:54]
.
2013-06-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-05-25 15:54]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Monitor"="c:\windows\PixArt\PAC207\Monitor.exe" [2006-11-03 319488]
"Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-05-16 1012000]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.cz/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - e:\micros~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 77.48.254.254 77.48.100.254
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
e:\malwarebytes' anti-malware\mbamscheduler.exe
c:\windows\SysWOW64\IoctlSvc.exe
c:\program files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler.exe
.
**************************************************************************
.
Celkový čas: 2013-07-01 09:20:19 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-07-01 07:20
.
Před spuštěním: Volných bajtů: 101 860 098 048
Po spuštění: Volných bajtů: 101 662 453 760
.
- - End Of File - - 277FC0D5423AC0270D03764FE96354D3
A36C5E4F47E84449FF07ED3517B43A31
Jinak sorry že jsem ten CF neudělal včera, nejdříve se my nechtěl spustit a pak se spustil v malým okýnku. Chtěl jsem to udělat přes nouzák ale dneska už to šlo v pohodě.
ComboFix 13-06-30.01 - Zkuřka 01.07.2013 9:13.1.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.4079.2372 [GMT 2:00]
Spuštěný z: c:\users\Zkuřka\Desktop\ComboFix.exe
AV: Kaspersky Internet Security *Disabled/Updated* {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
FW: Kaspersky Internet Security *Disabled* {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E}
SP: Kaspersky Internet Security *Disabled/Updated* {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\PFRO.log
c:\windows\SysWow64\frapsvid.dll
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-06-01 do 2013-07-01 )))))))))))))))))))))))))))))))
.
.
2013-07-01 07:16 . 2013-07-01 07:16 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-07-01 07:16 . 2013-07-01 07:16 -------- d-----w- c:\users\Simča\AppData\Local\temp
2013-06-30 16:51 . 2013-06-30 16:51 -------- d-----w- c:\users\Simča\AppData\Local\Microsoft Games
2013-06-30 15:44 . 2013-06-30 15:44 -------- d-----w- c:\users\Simča\AppData\Local\Ahead
2013-06-30 14:01 . 2013-06-30 14:01 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys.bak
2013-06-30 14:01 . 2013-06-30 14:01 52096 ----a-w- c:\windows\system32\drivers\winhv.sys.bak
2013-06-30 14:01 . 2013-06-30 14:01 94208 ----a-w- c:\windows\system32\drivers\serial.sys.bak
2013-06-30 14:00 . 2013-06-30 14:00 72192 ----a-w- c:\windows\system32\drivers\bthmodem.sys.bak
2013-06-30 12:35 . 2013-06-30 12:35 -------- d-----w- c:\users\Zkuřka\AppData\Local\Activision
2013-06-30 11:58 . 2013-06-30 11:58 -------- d-----w- c:\programdata\Steam
2013-06-30 11:36 . 2013-06-30 14:01 71552 ----a-w- c:\windows\system32\drivers\volmgr.sys.bak
2013-06-30 11:36 . 2013-06-30 14:00 78848 ----a-w- c:\windows\system32\drivers\IPMIDrv.sys.bak
2013-06-30 11:36 . 2013-06-30 14:00 70224 ----a-w- c:\windows\system32\drivers\fileinfo.sys.bak
2013-06-28 08:38 . 2013-06-12 03:08 9552976 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{8D7F8E0C-A504-4DE4-A907-28AC5BF5EAD1}\mpengine.dll
2013-06-27 12:51 . 2013-06-27 12:51 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-06-25 10:55 . 2013-03-15 03:33 64856 ----a-w- c:\windows\system32\klfphc.dll
2013-06-25 10:54 . 2013-06-25 10:54 -------- d-----w- c:\windows\ELAMBKUP
2013-06-25 10:54 . 2013-07-01 07:17 -------- d-----w- c:\programdata\Kaspersky Lab
2013-06-25 10:54 . 2013-06-25 10:54 -------- d-----w- c:\program files (x86)\Kaspersky Lab
2013-06-25 10:54 . 2013-06-25 11:12 90208 ----a-w- c:\windows\system32\drivers\klflt.sys
2013-06-25 10:54 . 2013-06-25 11:12 620128 ----a-w- c:\windows\system32\drivers\klif.sys
2013-06-25 10:14 . 2013-06-25 10:14 -------- d-s---w- c:\windows\SysWow64\Microsoft
2013-06-24 06:08 . 2013-06-24 06:08 -------- d-----w- c:\users\Guest\AppData\Local\Opera
2013-06-22 14:28 . 2013-06-22 14:28 -------- d-----w- c:\users\Zkuřka\AppData\Roaming\PowerISO
2013-06-22 14:22 . 2013-06-22 14:22 -------- d-----w- c:\programdata\StarApp
2013-06-22 14:22 . 2013-06-22 14:22 -------- d-----w- c:\program files (x86)\SafeSaver
2013-06-22 14:19 . 2013-04-15 09:50 127384 ----a-w- c:\windows\system32\drivers\scdemu.sys
2013-06-20 22:05 . 2012-06-17 20:18 1202688 ----a-w- c:\windows\system32\ac3filter64.acm
2013-06-20 22:05 . 2012-06-17 20:10 965120 ----a-w- c:\windows\SysWow64\ac3filter.acm
2013-06-13 21:53 . 2013-06-13 21:53 -------- d-----w- c:\users\Zkuřka\AppData\Local\PunkBuster
2013-06-13 21:01 . 2013-06-29 18:23 -------- d-----w- c:\users\Zkuřka\AppData\Local\VirtualStore
2013-06-13 20:57 . 2013-06-13 20:57 -------- d-----w- c:\programdata\Orbit
2013-06-13 20:16 . 2013-06-13 20:16 -------- d-----w- c:\users\Zkuřka\AppData\Local\Ubisoft Game Launcher
2013-06-13 09:18 . 2013-06-08 14:08 279040 ----a-w- c:\program files\Internet Explorer\sqmapi.dll
2013-06-13 05:31 . 2013-05-08 06:39 1910632 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-06-12 19:22 . 2013-06-12 19:22 -------- d-----w- c:\users\Zkuřka\AppData\Roaming\Theta
2013-06-12 18:08 . 2013-06-12 18:08 -------- d-----w- c:\program files (x86)\Common Files\Java
2013-06-12 18:08 . 2013-06-27 12:51 867240 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2013-06-12 18:08 . 2013-06-27 12:51 789416 ----a-w- c:\windows\SysWow64\deployJava1.dll
2013-06-12 18:07 . 2013-06-12 18:07 -------- d-----w- c:\program files (x86)\Java
2013-06-11 16:01 . 2002-12-05 12:12 692224 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iKernel.dll
2013-06-11 16:01 . 2002-12-05 12:10 155648 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iuser.dll
2013-06-11 16:01 . 2002-12-02 13:22 5632 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\DotNetInstaller.exe
2013-06-11 16:01 . 2002-12-02 11:33 57344 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\ctor.dll
2013-06-11 16:01 . 2002-12-02 11:33 237568 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iscript.dll
2013-06-11 16:01 . 2013-06-11 16:01 282756 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\setup.dll
2013-06-11 16:01 . 2013-06-11 16:01 163972 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iGdi.dll
2013-06-09 15:32 . 2013-04-17 18:20 26432 ----a-w- c:\windows\system32\RegistryDefragBootTime.exe
2013-06-09 09:10 . 2013-04-04 12:50 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-06-01 21:05 . 2013-06-01 21:05 -------- d-----w- c:\users\Simča\AppData\Roaming\uTorrent
2013-06-01 10:40 . 2013-06-01 10:40 -------- d-----w- c:\users\Simča\AppData\Roaming\Opera
2013-06-01 10:40 . 2013-06-01 10:40 -------- d-----w- c:\users\Simča\AppData\Local\Opera
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-06-25 11:12 . 2012-08-13 14:49 178448 ----a-w- c:\windows\system32\drivers\kneps.sys
2013-06-25 11:12 . 2013-03-15 03:33 54368 ----a-w- c:\windows\system32\drivers\kltdi.sys
2013-06-13 09:19 . 2013-05-25 17:04 75825640 ----a-w- c:\windows\system32\MRT.exe
2013-05-26 17:33 . 2012-07-17 12:37 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-05-25 19:49 . 2013-05-25 19:49 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2013-05-25 19:49 . 2013-05-25 19:49 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2013-05-25 19:49 . 2013-05-25 19:49 61952 ----a-w- c:\windows\SysWow64\tdc.ocx
2013-05-25 19:49 . 2013-05-25 19:49 523264 ----a-w- c:\windows\SysWow64\vbscript.dll
2013-05-25 19:49 . 2013-05-25 19:49 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2013-05-25 19:49 . 2013-05-25 19:49 38400 ----a-w- c:\windows\SysWow64\imgutil.dll
2013-05-25 19:49 . 2013-05-25 19:49 361984 ----a-w- c:\windows\SysWow64\html.iec
2013-05-25 19:49 . 2013-05-25 19:49 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll
2013-05-25 19:49 . 2013-05-25 19:49 226304 ----a-w- c:\windows\system32\elshyph.dll
2013-05-25 19:49 . 2013-05-25 19:49 185344 ----a-w- c:\windows\SysWow64\elshyph.dll
2013-05-25 19:49 . 2013-05-25 19:49 158720 ----a-w- c:\windows\SysWow64\msls31.dll
2013-05-25 19:49 . 2013-05-25 19:49 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2013-05-25 19:49 . 2013-05-25 19:49 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2013-05-25 19:49 . 2013-05-25 19:49 138752 ----a-w- c:\windows\SysWow64\wextract.exe
2013-05-25 19:49 . 2013-05-25 19:49 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2013-05-25 19:49 . 2013-05-25 19:49 12800 ----a-w- c:\windows\SysWow64\mshta.exe
2013-05-25 19:49 . 2013-05-25 19:49 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2013-05-25 19:49 . 2013-05-25 19:49 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-05-25 19:49 . 2013-05-25 19:49 97280 ----a-w- c:\windows\system32\mshtmled.dll
2013-05-25 19:49 . 2013-05-25 19:49 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-05-25 19:49 . 2013-05-25 19:49 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-05-25 19:49 . 2013-05-25 19:49 81408 ----a-w- c:\windows\system32\icardie.dll
2013-05-25 19:49 . 2013-05-25 19:49 77312 ----a-w- c:\windows\system32\tdc.ocx
2013-05-25 19:49 . 2013-05-25 19:49 762368 ----a-w- c:\windows\system32\ieapfltr.dll
2013-05-25 19:49 . 2013-05-25 19:49 62976 ----a-w- c:\windows\system32\pngfilt.dll
2013-05-25 19:49 . 2013-05-25 19:49 599552 ----a-w- c:\windows\system32\vbscript.dll
2013-05-25 19:49 . 2013-05-25 19:49 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2013-05-25 19:49 . 2013-05-25 19:49 51200 ----a-w- c:\windows\system32\imgutil.dll
2013-05-25 19:49 . 2013-05-25 19:49 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-05-25 19:49 . 2013-05-25 19:49 452096 ----a-w- c:\windows\system32\dxtmsft.dll
2013-05-25 19:49 . 2013-05-25 19:49 441856 ----a-w- c:\windows\system32\html.iec
2013-05-25 19:49 . 2013-05-25 19:49 281600 ----a-w- c:\windows\system32\dxtrans.dll
2013-05-25 19:49 . 2013-05-25 19:49 27648 ----a-w- c:\windows\system32\licmgr10.dll
2013-05-25 19:49 . 2013-05-25 19:49 270848 ----a-w- c:\windows\system32\iedkcs32.dll
2013-05-25 19:49 . 2013-05-25 19:49 247296 ----a-w- c:\windows\system32\webcheck.dll
2013-05-25 19:49 . 2013-05-25 19:49 235008 ----a-w- c:\windows\system32\url.dll
2013-05-25 19:49 . 2013-05-25 19:49 216064 ----a-w- c:\windows\system32\msls31.dll
2013-05-25 19:49 . 2013-05-25 19:49 197120 ----a-w- c:\windows\system32\msrating.dll
2013-05-25 19:49 . 2013-05-25 19:49 173568 ----a-w- c:\windows\system32\ieUnatt.exe
2013-05-25 19:49 . 2013-05-25 19:49 167424 ----a-w- c:\windows\system32\iexpress.exe
2013-05-25 19:49 . 2013-05-25 19:49 1509376 ----a-w- c:\windows\system32\inetcpl.cpl
2013-05-25 19:49 . 2013-05-25 19:49 149504 ----a-w- c:\windows\system32\occache.dll
2013-05-25 19:49 . 2013-05-25 19:49 144896 ----a-w- c:\windows\system32\wextract.exe
2013-05-25 19:49 . 2013-05-25 19:49 1400416 ----a-w- c:\windows\system32\ieapfltr.dat
2013-05-25 19:49 . 2013-05-25 19:49 13824 ----a-w- c:\windows\system32\mshta.exe
2013-05-25 19:49 . 2013-05-25 19:49 136192 ----a-w- c:\windows\system32\iepeers.dll
2013-05-25 19:49 . 2013-05-25 19:49 135680 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-05-25 19:49 . 2013-05-25 19:49 12800 ----a-w- c:\windows\system32\msfeedssync.exe
2013-05-25 19:49 . 2013-05-25 19:49 102912 ----a-w- c:\windows\system32\inseng.dll
2013-05-25 18:56 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2013-05-25 18:56 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2013-05-25 16:55 . 2013-05-25 16:55 283200 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2013-05-12 21:42 . 2013-05-25 15:56 9233688 ----a-w- c:\windows\system32\nvcuda.dll
2013-05-12 21:42 . 2013-05-25 15:56 7682960 ----a-w- c:\windows\SysWow64\nvcuda.dll
2013-05-12 21:42 . 2013-05-25 15:56 7641832 ----a-w- c:\windows\system32\nvopencl.dll
2013-05-12 21:42 . 2013-05-25 15:56 6324360 ----a-w- c:\windows\SysWow64\nvopencl.dll
2013-05-12 21:42 . 2013-05-25 15:56 550176 ----a-w- c:\windows\system32\NvFBC64.dll
2013-05-12 21:42 . 2013-05-25 15:56 518944 ----a-w- c:\windows\system32\NvIFR64.dll
2013-05-12 21:42 . 2013-05-25 15:56 443168 ----a-w- c:\windows\SysWow64\NvFBC.dll
2013-05-12 21:42 . 2013-05-25 15:56 421152 ----a-w- c:\windows\SysWow64\NvIFR.dll
2013-05-12 21:42 . 2013-05-25 15:56 2942240 ----a-w- c:\windows\system32\nvcuvid.dll
2013-05-12 21:42 . 2013-05-25 15:56 27775776 ----a-w- c:\windows\system32\nvoglv64.dll
2013-05-12 21:42 . 2013-05-25 15:56 2754336 ----a-w- c:\windows\SysWow64\nvcuvid.dll
2013-05-12 21:42 . 2013-05-25 15:56 2597344 ----a-w- c:\windows\SysWow64\nvapi.dll
2013-05-12 21:42 . 2013-05-25 15:56 25256224 ----a-w- c:\windows\system32\nvcompiler.dll
2013-05-12 21:42 . 2013-05-25 15:56 2363680 ----a-w- c:\windows\system32\nvcuvenc.dll
2013-05-12 21:42 . 2013-05-25 15:56 21096736 ----a-w- c:\windows\SysWow64\nvoglv32.dll
2013-05-12 21:42 . 2013-05-25 15:56 2002720 ----a-w- c:\windows\SysWow64\nvcuvenc.dll
2013-05-12 21:42 . 2013-05-25 15:56 1832224 ----a-w- c:\windows\system32\nvdispco6432018.dll
2013-05-12 21:42 . 2013-05-25 15:56 17560352 ----a-w- c:\windows\SysWow64\nvcompiler.dll
2013-05-12 21:42 . 2013-05-25 15:56 15910736 ----a-w- c:\windows\system32\nvwgf2umx.dll
2013-05-12 21:42 . 2013-05-25 15:56 15143904 ----a-w- c:\windows\system32\nvd3dumx.dll
2013-05-12 21:42 . 2013-05-25 15:56 1511712 ----a-w- c:\windows\system32\nvdispgenco6432018.dll
2013-05-12 21:42 . 2013-05-25 15:56 13403168 ----a-w- c:\windows\SysWow64\nvwgf2um.dll
2013-05-12 21:42 . 2013-05-25 15:56 12426216 ----a-w- c:\windows\SysWow64\nvd3dum.dll
2013-05-12 21:42 . 2013-05-25 15:56 11216160 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2013-05-12 21:42 . 2013-02-25 22:32 2935696 ----a-w- c:\windows\system32\nvapi64.dll
2013-05-12 20:34 . 2010-10-08 08:04 6491936 ----a-w- c:\windows\system32\nvcpl.dll
2013-05-12 20:34 . 2010-10-08 08:04 3514656 ----a-w- c:\windows\system32\nvsvc64.dll
2013-05-12 20:34 . 2010-10-08 08:04 884512 ----a-w- c:\windows\system32\nvvsvc.exe
2013-05-12 20:34 . 2010-10-08 08:04 63776 ----a-w- c:\windows\system32\nvshext.dll
2013-05-12 20:34 . 2010-10-08 08:04 2555680 ----a-w- c:\windows\system32\nvsvcr.dll
2013-05-12 20:34 . 2010-10-08 08:04 237856 ----a-w- c:\windows\system32\nvmctray.dll
2013-05-12 13:43 . 2013-05-12 13:43 566048 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2013-05-09 08:58 . 2013-05-25 16:14 287840 ----a-w- c:\windows\system32\aswBoot.exe
2013-05-02 00:06 . 2013-05-25 16:20 278800 ------w- c:\windows\system32\MpSigStub.exe
2013-04-13 05:49 . 2013-05-25 19:23 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2013-04-13 05:49 . 2013-05-25 19:23 308736 ----a-w- c:\windows\apppatch\AppPatch64\AcGenral.dll
2013-04-13 05:49 . 2013-05-25 19:23 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll
2013-04-13 05:49 . 2013-05-25 19:23 111104 ----a-w- c:\windows\apppatch\AppPatch64\acspecfc.dll
2013-04-13 04:45 . 2013-05-25 19:23 474624 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2013-04-13 04:45 . 2013-05-25 19:23 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll
2013-04-12 14:45 . 2013-05-25 16:22 1656680 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-04-10 06:01 . 2013-05-25 19:24 265064 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2013-04-10 06:01 . 2013-05-25 19:24 983400 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-04-10 03:30 . 2013-05-25 19:22 3153920 ----a-w- c:\windows\system32\win32k.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Advanced SystemCare 6"="c:\program files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe" [2013-04-18 491840]
"DAEMON Tools Lite"="e:\daemon tools lite\DTLite.exe" [2013-03-14 3672640]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2013-06-03 19603048]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe" [2008-01-22 152872]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AVP"="c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe" [2013-03-15 356376]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
.
3;2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MBAMService;MBAMService;e:\malwarebytes' anti-malware\mbamservice.exe;e:\malwarebytes' anti-malware\mbamservice.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys;c:\windows\SYSNATIVE\DRIVERS\klim6.sys [x]
S1 kltdi;kltdi;c:\windows\system32\DRIVERS\kltdi.sys;c:\windows\SYSNATIVE\DRIVERS\kltdi.sys [x]
S1 kneps;kneps;c:\windows\system32\DRIVERS\kneps.sys;c:\windows\SYSNATIVE\DRIVERS\kneps.sys [x]
S2 AdvancedSystemCareService6;Advanced SystemCare Service 6;c:\program files (x86)\IObit\Advanced SystemCare 6\ASCService.exe;c:\program files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 klkbdflt;Kaspersky Lab KLKBDFLT;c:\windows\system32\DRIVERS\klkbdflt.sys;c:\windows\SYSNATIVE\DRIVERS\klkbdflt.sys [x]
S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys;c:\windows\SYSNATIVE\DRIVERS\klmouflt.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 PAC207;SoC PC-Camera;c:\windows\system32\DRIVERS\PFC027.SYS;c:\windows\SYSNATIVE\DRIVERS\PFC027.SYS [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-06-28 06:59 1173456 ----a-w- c:\program files (x86)\Google\Chrome\Application\28.0.1500.63\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2013-07-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-05-25 15:54]
.
2013-06-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-05-25 15:54]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Monitor"="c:\windows\PixArt\PAC207\Monitor.exe" [2006-11-03 319488]
"Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-05-16 1012000]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.cz/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - e:\micros~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 77.48.254.254 77.48.100.254
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
e:\malwarebytes' anti-malware\mbamscheduler.exe
c:\windows\SysWOW64\IoctlSvc.exe
c:\program files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler.exe
.
**************************************************************************
.
Celkový čas: 2013-07-01 09:20:19 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-07-01 07:20
.
Před spuštěním: Volných bajtů: 101 860 098 048
Po spuštění: Volných bajtů: 101 662 453 760
.
- - End Of File - - 277FC0D5423AC0270D03764FE96354D3
A36C5E4F47E84449FF07ED3517B43A31
When You smoke herb it reveals you to yourself. All the wickedness you do is revealed by the herb - it's you conscience and gives you an honest picture of yourself.
---------- Robert Nesta Marley ----------
---------- Robert Nesta Marley ----------
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Zase spamy v PC.
Odinstaluj:
SafeSaver
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
SafeSaver
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Kód: Vybrat vše
ClearJavaCache::
KillAll::
File::
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
Folder::
c:\program files (x86)\SafeSaver
c:\program files (x86)\Skype\Updater
c:\program files (x86)\Google\Update
Driver::
SkypeUpdate
Registry::
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000000
RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
- Scanner
- Level 3.5
- Příspěvky: 771
- Registrován: srpen 11
- Bydliště: Střední čechy
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Zase spamy v PC.
ComboFix 13-06-30.01 - Zkuřka 02.07.2013 13:06:54.2.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.4079.2556 [GMT 2:00]
Spuštěný z: c:\users\Zkuřka\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Zkuřka\Desktop\CFScript.txt
AV: Kaspersky Internet Security *Disabled/Updated* {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
FW: Kaspersky Internet Security *Disabled* {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E}
SP: Kaspersky Internet Security *Disabled/Updated* {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Google\Update
c:\program files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler.exe
c:\program files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler64.exe
c:\program files (x86)\Google\Update\1.3.21.145\GoogleUpdate.exe
c:\program files (x86)\Google\Update\1.3.21.145\GoogleUpdateBroker.exe
c:\program files (x86)\Google\Update\1.3.21.145\GoogleUpdateHelper.msi
c:\program files (x86)\Google\Update\1.3.21.145\GoogleUpdateOnDemand.exe
c:\program files (x86)\Google\Update\1.3.21.145\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\1.3.21.145\goopdate.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_am.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ar.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_bg.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_bn.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ca.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_cs.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_da.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_de.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_el.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_en-GB.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_en.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_es-419.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_es.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_et.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_fa.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_fi.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_fil.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_fr.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_gu.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_hi.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_hr.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_hu.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_id.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_is.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_it.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_iw.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ja.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_kn.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ko.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_lt.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_lv.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ml.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_mr.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ms.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_nl.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_no.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_pl.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_pt-BR.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_pt-PT.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ro.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ru.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_sk.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_sl.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_sr.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_sv.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_sw.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ta.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_te.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_th.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_tr.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_uk.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ur.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_vi.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_zh-CN.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_zh-TW.dll
c:\program files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll
c:\program files (x86)\Google\Update\1.3.21.145\psmachine.dll
c:\program files (x86)\Google\Update\1.3.21.145\psuser.dll
c:\program files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\28.0.1500.63\28.0.1500.63_28.0.1500.52_chrome_updater.exe
c:\program files (x86)\Google\Update\Download\{74AF07D8-FB8F-4D51-8AC7-927721D56EBB}\0.0.0.0\GoogleEarth-Win-Bundle-7.1.1.1580.exe
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\program files (x86)\Skype\Updater
c:\program files (x86)\Skype\Updater\Updater.dll
c:\program files (x86)\Skype\Updater\Updater.exe
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_SkypeUpdate
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_gupdate
-------\Service_gupdatem
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-06-02 do 2013-07-02 )))))))))))))))))))))))))))))))
.
.
2013-07-02 11:10 . 2013-07-02 11:10 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-07-02 11:10 . 2013-07-02 11:10 -------- d-----w- c:\users\Simča\AppData\Local\temp
2013-07-02 11:10 . 2013-07-02 11:10 -------- d-----w- c:\users\Guest\AppData\Local\temp
2013-07-02 11:10 . 2013-07-02 11:10 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-07-02 10:29 . 2013-06-12 03:08 9552976 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{FC214394-481B-4412-8C2D-3B6A0204BDD4}\mpengine.dll
2013-06-30 16:51 . 2013-06-30 16:51 -------- d-----w- c:\users\Simča\AppData\Local\Microsoft Games
2013-06-30 15:44 . 2013-06-30 15:44 -------- d-----w- c:\users\Simča\AppData\Local\Ahead
2013-06-30 14:01 . 2013-06-30 14:01 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys.bak
2013-06-30 14:01 . 2013-06-30 14:01 52096 ----a-w- c:\windows\system32\drivers\winhv.sys.bak
2013-06-30 14:01 . 2013-06-30 14:01 94208 ----a-w- c:\windows\system32\drivers\serial.sys.bak
2013-06-30 14:00 . 2013-06-30 14:00 72192 ----a-w- c:\windows\system32\drivers\bthmodem.sys.bak
2013-06-30 12:35 . 2013-06-30 12:35 -------- d-----w- c:\users\Zkuřka\AppData\Local\Activision
2013-06-30 11:58 . 2013-06-30 11:58 -------- d-----w- c:\programdata\Steam
2013-06-30 11:36 . 2013-06-30 14:01 71552 ----a-w- c:\windows\system32\drivers\volmgr.sys.bak
2013-06-30 11:36 . 2013-06-30 14:00 78848 ----a-w- c:\windows\system32\drivers\IPMIDrv.sys.bak
2013-06-30 11:36 . 2013-06-30 14:00 70224 ----a-w- c:\windows\system32\drivers\fileinfo.sys.bak
2013-06-27 12:51 . 2013-06-27 12:51 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-06-25 10:55 . 2013-03-15 03:33 64856 ----a-w- c:\windows\system32\klfphc.dll
2013-06-25 10:54 . 2013-06-25 10:54 -------- d-----w- c:\windows\ELAMBKUP
2013-06-25 10:54 . 2013-07-02 11:11 -------- d-----w- c:\programdata\Kaspersky Lab
2013-06-25 10:54 . 2013-06-25 10:54 -------- d-----w- c:\program files (x86)\Kaspersky Lab
2013-06-25 10:54 . 2013-06-25 11:12 90208 ----a-w- c:\windows\system32\drivers\klflt.sys
2013-06-25 10:54 . 2013-06-25 11:12 620128 ----a-w- c:\windows\system32\drivers\klif.sys
2013-06-25 10:14 . 2013-06-25 10:14 -------- d-s---w- c:\windows\SysWow64\Microsoft
2013-06-24 06:08 . 2013-06-24 06:08 -------- d-----w- c:\users\Guest\AppData\Local\Opera
2013-06-22 14:28 . 2013-06-22 14:28 -------- d-----w- c:\users\Zkuřka\AppData\Roaming\PowerISO
2013-06-22 14:22 . 2013-06-22 14:22 -------- d-----w- c:\programdata\StarApp
2013-06-22 14:19 . 2013-04-15 09:50 127384 ----a-w- c:\windows\system32\drivers\scdemu.sys
2013-06-20 22:05 . 2012-06-17 20:18 1202688 ----a-w- c:\windows\system32\ac3filter64.acm
2013-06-20 22:05 . 2012-06-17 20:10 965120 ----a-w- c:\windows\SysWow64\ac3filter.acm
2013-06-13 21:53 . 2013-06-13 21:53 -------- d-----w- c:\users\Zkuřka\AppData\Local\PunkBuster
2013-06-13 21:01 . 2013-06-29 18:23 -------- d-----w- c:\users\Zkuřka\AppData\Local\VirtualStore
2013-06-13 20:57 . 2013-06-13 20:57 -------- d-----w- c:\programdata\Orbit
2013-06-13 20:16 . 2013-06-13 20:16 -------- d-----w- c:\users\Zkuřka\AppData\Local\Ubisoft Game Launcher
2013-06-13 09:18 . 2013-06-08 14:08 279040 ----a-w- c:\program files\Internet Explorer\sqmapi.dll
2013-06-13 05:31 . 2013-05-08 06:39 1910632 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-06-12 19:22 . 2013-06-12 19:22 -------- d-----w- c:\users\Zkuřka\AppData\Roaming\Theta
2013-06-12 18:08 . 2013-06-12 18:08 -------- d-----w- c:\program files (x86)\Common Files\Java
2013-06-12 18:08 . 2013-06-27 12:51 867240 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2013-06-12 18:08 . 2013-06-27 12:51 789416 ----a-w- c:\windows\SysWow64\deployJava1.dll
2013-06-12 18:07 . 2013-06-12 18:07 -------- d-----w- c:\program files (x86)\Java
2013-06-11 16:01 . 2002-12-05 12:12 692224 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iKernel.dll
2013-06-11 16:01 . 2002-12-05 12:10 155648 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iuser.dll
2013-06-11 16:01 . 2002-12-02 13:22 5632 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\DotNetInstaller.exe
2013-06-11 16:01 . 2002-12-02 11:33 57344 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\ctor.dll
2013-06-11 16:01 . 2002-12-02 11:33 237568 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iscript.dll
2013-06-11 16:01 . 2013-06-11 16:01 282756 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\setup.dll
2013-06-11 16:01 . 2013-06-11 16:01 163972 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iGdi.dll
2013-06-09 15:32 . 2013-04-17 18:20 26432 ----a-w- c:\windows\system32\RegistryDefragBootTime.exe
2013-06-09 09:10 . 2013-04-04 12:50 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-06-25 11:12 . 2012-08-13 14:49 178448 ----a-w- c:\windows\system32\drivers\kneps.sys
2013-06-25 11:12 . 2013-03-15 03:33 54368 ----a-w- c:\windows\system32\drivers\kltdi.sys
2013-06-13 09:19 . 2013-05-25 17:04 75825640 ----a-w- c:\windows\system32\MRT.exe
2013-05-26 17:33 . 2012-07-17 12:37 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-05-25 19:49 . 2013-05-25 19:49 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2013-05-25 19:49 . 2013-05-25 19:49 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2013-05-25 19:49 . 2013-05-25 19:49 61952 ----a-w- c:\windows\SysWow64\tdc.ocx
2013-05-25 19:49 . 2013-05-25 19:49 523264 ----a-w- c:\windows\SysWow64\vbscript.dll
2013-05-25 19:49 . 2013-05-25 19:49 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2013-05-25 19:49 . 2013-05-25 19:49 38400 ----a-w- c:\windows\SysWow64\imgutil.dll
2013-05-25 19:49 . 2013-05-25 19:49 361984 ----a-w- c:\windows\SysWow64\html.iec
2013-05-25 19:49 . 2013-05-25 19:49 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll
2013-05-25 19:49 . 2013-05-25 19:49 226304 ----a-w- c:\windows\system32\elshyph.dll
2013-05-25 19:49 . 2013-05-25 19:49 185344 ----a-w- c:\windows\SysWow64\elshyph.dll
2013-05-25 19:49 . 2013-05-25 19:49 158720 ----a-w- c:\windows\SysWow64\msls31.dll
2013-05-25 19:49 . 2013-05-25 19:49 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2013-05-25 19:49 . 2013-05-25 19:49 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2013-05-25 19:49 . 2013-05-25 19:49 138752 ----a-w- c:\windows\SysWow64\wextract.exe
2013-05-25 19:49 . 2013-05-25 19:49 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2013-05-25 19:49 . 2013-05-25 19:49 12800 ----a-w- c:\windows\SysWow64\mshta.exe
2013-05-25 19:49 . 2013-05-25 19:49 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2013-05-25 19:49 . 2013-05-25 19:49 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-05-25 19:49 . 2013-05-25 19:49 97280 ----a-w- c:\windows\system32\mshtmled.dll
2013-05-25 19:49 . 2013-05-25 19:49 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-05-25 19:49 . 2013-05-25 19:49 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-05-25 19:49 . 2013-05-25 19:49 81408 ----a-w- c:\windows\system32\icardie.dll
2013-05-25 19:49 . 2013-05-25 19:49 77312 ----a-w- c:\windows\system32\tdc.ocx
2013-05-25 19:49 . 2013-05-25 19:49 762368 ----a-w- c:\windows\system32\ieapfltr.dll
2013-05-25 19:49 . 2013-05-25 19:49 62976 ----a-w- c:\windows\system32\pngfilt.dll
2013-05-25 19:49 . 2013-05-25 19:49 599552 ----a-w- c:\windows\system32\vbscript.dll
2013-05-25 19:49 . 2013-05-25 19:49 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2013-05-25 19:49 . 2013-05-25 19:49 51200 ----a-w- c:\windows\system32\imgutil.dll
2013-05-25 19:49 . 2013-05-25 19:49 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-05-25 19:49 . 2013-05-25 19:49 452096 ----a-w- c:\windows\system32\dxtmsft.dll
2013-05-25 19:49 . 2013-05-25 19:49 441856 ----a-w- c:\windows\system32\html.iec
2013-05-25 19:49 . 2013-05-25 19:49 281600 ----a-w- c:\windows\system32\dxtrans.dll
2013-05-25 19:49 . 2013-05-25 19:49 27648 ----a-w- c:\windows\system32\licmgr10.dll
2013-05-25 19:49 . 2013-05-25 19:49 270848 ----a-w- c:\windows\system32\iedkcs32.dll
2013-05-25 19:49 . 2013-05-25 19:49 247296 ----a-w- c:\windows\system32\webcheck.dll
2013-05-25 19:49 . 2013-05-25 19:49 235008 ----a-w- c:\windows\system32\url.dll
2013-05-25 19:49 . 2013-05-25 19:49 216064 ----a-w- c:\windows\system32\msls31.dll
2013-05-25 19:49 . 2013-05-25 19:49 197120 ----a-w- c:\windows\system32\msrating.dll
2013-05-25 19:49 . 2013-05-25 19:49 173568 ----a-w- c:\windows\system32\ieUnatt.exe
2013-05-25 19:49 . 2013-05-25 19:49 167424 ----a-w- c:\windows\system32\iexpress.exe
2013-05-25 19:49 . 2013-05-25 19:49 1509376 ----a-w- c:\windows\system32\inetcpl.cpl
2013-05-25 19:49 . 2013-05-25 19:49 149504 ----a-w- c:\windows\system32\occache.dll
2013-05-25 19:49 . 2013-05-25 19:49 144896 ----a-w- c:\windows\system32\wextract.exe
2013-05-25 19:49 . 2013-05-25 19:49 1400416 ----a-w- c:\windows\system32\ieapfltr.dat
2013-05-25 19:49 . 2013-05-25 19:49 13824 ----a-w- c:\windows\system32\mshta.exe
2013-05-25 19:49 . 2013-05-25 19:49 136192 ----a-w- c:\windows\system32\iepeers.dll
2013-05-25 19:49 . 2013-05-25 19:49 135680 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-05-25 19:49 . 2013-05-25 19:49 12800 ----a-w- c:\windows\system32\msfeedssync.exe
2013-05-25 19:49 . 2013-05-25 19:49 102912 ----a-w- c:\windows\system32\inseng.dll
2013-05-25 18:56 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2013-05-25 18:56 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2013-05-25 16:55 . 2013-05-25 16:55 283200 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2013-05-12 21:42 . 2013-05-25 15:56 9233688 ----a-w- c:\windows\system32\nvcuda.dll
2013-05-12 21:42 . 2013-05-25 15:56 7682960 ----a-w- c:\windows\SysWow64\nvcuda.dll
2013-05-12 21:42 . 2013-05-25 15:56 7641832 ----a-w- c:\windows\system32\nvopencl.dll
2013-05-12 21:42 . 2013-05-25 15:56 6324360 ----a-w- c:\windows\SysWow64\nvopencl.dll
2013-05-12 21:42 . 2013-05-25 15:56 550176 ----a-w- c:\windows\system32\NvFBC64.dll
2013-05-12 21:42 . 2013-05-25 15:56 518944 ----a-w- c:\windows\system32\NvIFR64.dll
2013-05-12 21:42 . 2013-05-25 15:56 443168 ----a-w- c:\windows\SysWow64\NvFBC.dll
2013-05-12 21:42 . 2013-05-25 15:56 421152 ----a-w- c:\windows\SysWow64\NvIFR.dll
2013-05-12 21:42 . 2013-05-25 15:56 2942240 ----a-w- c:\windows\system32\nvcuvid.dll
2013-05-12 21:42 . 2013-05-25 15:56 27775776 ----a-w- c:\windows\system32\nvoglv64.dll
2013-05-12 21:42 . 2013-05-25 15:56 2754336 ----a-w- c:\windows\SysWow64\nvcuvid.dll
2013-05-12 21:42 . 2013-05-25 15:56 2597344 ----a-w- c:\windows\SysWow64\nvapi.dll
2013-05-12 21:42 . 2013-05-25 15:56 25256224 ----a-w- c:\windows\system32\nvcompiler.dll
2013-05-12 21:42 . 2013-05-25 15:56 2363680 ----a-w- c:\windows\system32\nvcuvenc.dll
2013-05-12 21:42 . 2013-05-25 15:56 21096736 ----a-w- c:\windows\SysWow64\nvoglv32.dll
2013-05-12 21:42 . 2013-05-25 15:56 2002720 ----a-w- c:\windows\SysWow64\nvcuvenc.dll
2013-05-12 21:42 . 2013-05-25 15:56 1832224 ----a-w- c:\windows\system32\nvdispco6432018.dll
2013-05-12 21:42 . 2013-05-25 15:56 17560352 ----a-w- c:\windows\SysWow64\nvcompiler.dll
2013-05-12 21:42 . 2013-05-25 15:56 15910736 ----a-w- c:\windows\system32\nvwgf2umx.dll
2013-05-12 21:42 . 2013-05-25 15:56 15143904 ----a-w- c:\windows\system32\nvd3dumx.dll
2013-05-12 21:42 . 2013-05-25 15:56 1511712 ----a-w- c:\windows\system32\nvdispgenco6432018.dll
2013-05-12 21:42 . 2013-05-25 15:56 13403168 ----a-w- c:\windows\SysWow64\nvwgf2um.dll
2013-05-12 21:42 . 2013-05-25 15:56 12426216 ----a-w- c:\windows\SysWow64\nvd3dum.dll
2013-05-12 21:42 . 2013-05-25 15:56 11216160 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2013-05-12 21:42 . 2013-02-25 22:32 2935696 ----a-w- c:\windows\system32\nvapi64.dll
2013-05-12 20:34 . 2010-10-08 08:04 6491936 ----a-w- c:\windows\system32\nvcpl.dll
2013-05-12 20:34 . 2010-10-08 08:04 3514656 ----a-w- c:\windows\system32\nvsvc64.dll
2013-05-12 20:34 . 2010-10-08 08:04 884512 ----a-w- c:\windows\system32\nvvsvc.exe
2013-05-12 20:34 . 2010-10-08 08:04 63776 ----a-w- c:\windows\system32\nvshext.dll
2013-05-12 20:34 . 2010-10-08 08:04 2555680 ----a-w- c:\windows\system32\nvsvcr.dll
2013-05-12 20:34 . 2010-10-08 08:04 237856 ----a-w- c:\windows\system32\nvmctray.dll
2013-05-12 13:43 . 2013-05-12 13:43 566048 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2013-05-09 08:58 . 2013-05-25 16:14 287840 ----a-w- c:\windows\system32\aswBoot.exe
2013-05-02 00:06 . 2013-05-25 16:20 278800 ------w- c:\windows\system32\MpSigStub.exe
2013-04-13 05:49 . 2013-05-25 19:23 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2013-04-13 05:49 . 2013-05-25 19:23 308736 ----a-w- c:\windows\apppatch\AppPatch64\AcGenral.dll
2013-04-13 05:49 . 2013-05-25 19:23 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll
2013-04-13 05:49 . 2013-05-25 19:23 111104 ----a-w- c:\windows\apppatch\AppPatch64\acspecfc.dll
2013-04-13 04:45 . 2013-05-25 19:23 474624 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2013-04-13 04:45 . 2013-05-25 19:23 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll
2013-04-12 14:45 . 2013-05-25 16:22 1656680 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-04-10 06:01 . 2013-05-25 19:24 265064 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2013-04-10 06:01 . 2013-05-25 19:24 983400 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-04-10 03:30 . 2013-05-25 19:22 3153920 ----a-w- c:\windows\system32\win32k.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="e:\daemon tools lite\DTLite.exe" [2013-03-14 3672640]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2013-06-03 19603048]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe" [2008-01-22 152872]
"Advanced SystemCare 6"="e:\advanced systemcare 6\ASCTray.exe" [2013-04-18 491840]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AVP"="c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe" [2013-03-15 356376]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MBAMService;MBAMService;e:\malwarebytes' anti-malware\mbamservice.exe;e:\malwarebytes' anti-malware\mbamservice.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys;c:\windows\SYSNATIVE\DRIVERS\klim6.sys [x]
S1 kltdi;kltdi;c:\windows\system32\DRIVERS\kltdi.sys;c:\windows\SYSNATIVE\DRIVERS\kltdi.sys [x]
S1 kneps;kneps;c:\windows\system32\DRIVERS\kneps.sys;c:\windows\SYSNATIVE\DRIVERS\kneps.sys [x]
S2 AdvancedSystemCareService6;Advanced SystemCare Service 6;e:\advanced systemcare 6\ASCService.exe;e:\advanced systemcare 6\ASCService.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 klkbdflt;Kaspersky Lab KLKBDFLT;c:\windows\system32\DRIVERS\klkbdflt.sys;c:\windows\SYSNATIVE\DRIVERS\klkbdflt.sys [x]
S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys;c:\windows\SYSNATIVE\DRIVERS\klmouflt.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 PAC207;SoC PC-Camera;c:\windows\system32\DRIVERS\PFC027.SYS;c:\windows\SYSNATIVE\DRIVERS\PFC027.SYS [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-06-28 06:59 1173456 ----a-w- c:\program files (x86)\Google\Chrome\Application\28.0.1500.63\Installer\chrmstp.exe
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Monitor"="c:\windows\PixArt\PAC207\Monitor.exe" [2006-11-03 319488]
"Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-05-16 1012000]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.cz/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - e:\micros~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 77.48.254.254 77.48.100.254
.
.
Celkový čas: 2013-07-02 13:14:36 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-07-02 11:14
ComboFix2.txt 2013-07-01 07:20
.
Před spuštěním: Volných bajtů: 103 034 970 112
Po spuštění: Volných bajtů: 102 652 817 408
.
- - End Of File - - B9B7FD30EEA811A42ACE86994777D265
A36C5E4F47E84449FF07ED3517B43A31
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.4079.2556 [GMT 2:00]
Spuštěný z: c:\users\Zkuřka\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Zkuřka\Desktop\CFScript.txt
AV: Kaspersky Internet Security *Disabled/Updated* {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
FW: Kaspersky Internet Security *Disabled* {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E}
SP: Kaspersky Internet Security *Disabled/Updated* {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Google\Update
c:\program files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler.exe
c:\program files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler64.exe
c:\program files (x86)\Google\Update\1.3.21.145\GoogleUpdate.exe
c:\program files (x86)\Google\Update\1.3.21.145\GoogleUpdateBroker.exe
c:\program files (x86)\Google\Update\1.3.21.145\GoogleUpdateHelper.msi
c:\program files (x86)\Google\Update\1.3.21.145\GoogleUpdateOnDemand.exe
c:\program files (x86)\Google\Update\1.3.21.145\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\1.3.21.145\goopdate.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_am.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ar.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_bg.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_bn.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ca.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_cs.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_da.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_de.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_el.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_en-GB.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_en.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_es-419.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_es.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_et.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_fa.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_fi.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_fil.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_fr.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_gu.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_hi.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_hr.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_hu.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_id.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_is.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_it.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_iw.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ja.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_kn.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ko.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_lt.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_lv.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ml.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_mr.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ms.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_nl.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_no.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_pl.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_pt-BR.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_pt-PT.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ro.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ru.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_sk.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_sl.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_sr.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_sv.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_sw.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ta.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_te.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_th.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_tr.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_uk.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_ur.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_vi.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_zh-CN.dll
c:\program files (x86)\Google\Update\1.3.21.145\goopdateres_zh-TW.dll
c:\program files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll
c:\program files (x86)\Google\Update\1.3.21.145\psmachine.dll
c:\program files (x86)\Google\Update\1.3.21.145\psuser.dll
c:\program files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\28.0.1500.63\28.0.1500.63_28.0.1500.52_chrome_updater.exe
c:\program files (x86)\Google\Update\Download\{74AF07D8-FB8F-4D51-8AC7-927721D56EBB}\0.0.0.0\GoogleEarth-Win-Bundle-7.1.1.1580.exe
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\program files (x86)\Skype\Updater
c:\program files (x86)\Skype\Updater\Updater.dll
c:\program files (x86)\Skype\Updater\Updater.exe
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_SkypeUpdate
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_gupdate
-------\Service_gupdatem
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-06-02 do 2013-07-02 )))))))))))))))))))))))))))))))
.
.
2013-07-02 11:10 . 2013-07-02 11:10 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-07-02 11:10 . 2013-07-02 11:10 -------- d-----w- c:\users\Simča\AppData\Local\temp
2013-07-02 11:10 . 2013-07-02 11:10 -------- d-----w- c:\users\Guest\AppData\Local\temp
2013-07-02 11:10 . 2013-07-02 11:10 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-07-02 10:29 . 2013-06-12 03:08 9552976 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{FC214394-481B-4412-8C2D-3B6A0204BDD4}\mpengine.dll
2013-06-30 16:51 . 2013-06-30 16:51 -------- d-----w- c:\users\Simča\AppData\Local\Microsoft Games
2013-06-30 15:44 . 2013-06-30 15:44 -------- d-----w- c:\users\Simča\AppData\Local\Ahead
2013-06-30 14:01 . 2013-06-30 14:01 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys.bak
2013-06-30 14:01 . 2013-06-30 14:01 52096 ----a-w- c:\windows\system32\drivers\winhv.sys.bak
2013-06-30 14:01 . 2013-06-30 14:01 94208 ----a-w- c:\windows\system32\drivers\serial.sys.bak
2013-06-30 14:00 . 2013-06-30 14:00 72192 ----a-w- c:\windows\system32\drivers\bthmodem.sys.bak
2013-06-30 12:35 . 2013-06-30 12:35 -------- d-----w- c:\users\Zkuřka\AppData\Local\Activision
2013-06-30 11:58 . 2013-06-30 11:58 -------- d-----w- c:\programdata\Steam
2013-06-30 11:36 . 2013-06-30 14:01 71552 ----a-w- c:\windows\system32\drivers\volmgr.sys.bak
2013-06-30 11:36 . 2013-06-30 14:00 78848 ----a-w- c:\windows\system32\drivers\IPMIDrv.sys.bak
2013-06-30 11:36 . 2013-06-30 14:00 70224 ----a-w- c:\windows\system32\drivers\fileinfo.sys.bak
2013-06-27 12:51 . 2013-06-27 12:51 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-06-25 10:55 . 2013-03-15 03:33 64856 ----a-w- c:\windows\system32\klfphc.dll
2013-06-25 10:54 . 2013-06-25 10:54 -------- d-----w- c:\windows\ELAMBKUP
2013-06-25 10:54 . 2013-07-02 11:11 -------- d-----w- c:\programdata\Kaspersky Lab
2013-06-25 10:54 . 2013-06-25 10:54 -------- d-----w- c:\program files (x86)\Kaspersky Lab
2013-06-25 10:54 . 2013-06-25 11:12 90208 ----a-w- c:\windows\system32\drivers\klflt.sys
2013-06-25 10:54 . 2013-06-25 11:12 620128 ----a-w- c:\windows\system32\drivers\klif.sys
2013-06-25 10:14 . 2013-06-25 10:14 -------- d-s---w- c:\windows\SysWow64\Microsoft
2013-06-24 06:08 . 2013-06-24 06:08 -------- d-----w- c:\users\Guest\AppData\Local\Opera
2013-06-22 14:28 . 2013-06-22 14:28 -------- d-----w- c:\users\Zkuřka\AppData\Roaming\PowerISO
2013-06-22 14:22 . 2013-06-22 14:22 -------- d-----w- c:\programdata\StarApp
2013-06-22 14:19 . 2013-04-15 09:50 127384 ----a-w- c:\windows\system32\drivers\scdemu.sys
2013-06-20 22:05 . 2012-06-17 20:18 1202688 ----a-w- c:\windows\system32\ac3filter64.acm
2013-06-20 22:05 . 2012-06-17 20:10 965120 ----a-w- c:\windows\SysWow64\ac3filter.acm
2013-06-13 21:53 . 2013-06-13 21:53 -------- d-----w- c:\users\Zkuřka\AppData\Local\PunkBuster
2013-06-13 21:01 . 2013-06-29 18:23 -------- d-----w- c:\users\Zkuřka\AppData\Local\VirtualStore
2013-06-13 20:57 . 2013-06-13 20:57 -------- d-----w- c:\programdata\Orbit
2013-06-13 20:16 . 2013-06-13 20:16 -------- d-----w- c:\users\Zkuřka\AppData\Local\Ubisoft Game Launcher
2013-06-13 09:18 . 2013-06-08 14:08 279040 ----a-w- c:\program files\Internet Explorer\sqmapi.dll
2013-06-13 05:31 . 2013-05-08 06:39 1910632 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-06-12 19:22 . 2013-06-12 19:22 -------- d-----w- c:\users\Zkuřka\AppData\Roaming\Theta
2013-06-12 18:08 . 2013-06-12 18:08 -------- d-----w- c:\program files (x86)\Common Files\Java
2013-06-12 18:08 . 2013-06-27 12:51 867240 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2013-06-12 18:08 . 2013-06-27 12:51 789416 ----a-w- c:\windows\SysWow64\deployJava1.dll
2013-06-12 18:07 . 2013-06-12 18:07 -------- d-----w- c:\program files (x86)\Java
2013-06-11 16:01 . 2002-12-05 12:12 692224 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iKernel.dll
2013-06-11 16:01 . 2002-12-05 12:10 155648 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iuser.dll
2013-06-11 16:01 . 2002-12-02 13:22 5632 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\DotNetInstaller.exe
2013-06-11 16:01 . 2002-12-02 11:33 57344 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\ctor.dll
2013-06-11 16:01 . 2002-12-02 11:33 237568 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iscript.dll
2013-06-11 16:01 . 2013-06-11 16:01 282756 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\setup.dll
2013-06-11 16:01 . 2013-06-11 16:01 163972 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iGdi.dll
2013-06-09 15:32 . 2013-04-17 18:20 26432 ----a-w- c:\windows\system32\RegistryDefragBootTime.exe
2013-06-09 09:10 . 2013-04-04 12:50 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-06-25 11:12 . 2012-08-13 14:49 178448 ----a-w- c:\windows\system32\drivers\kneps.sys
2013-06-25 11:12 . 2013-03-15 03:33 54368 ----a-w- c:\windows\system32\drivers\kltdi.sys
2013-06-13 09:19 . 2013-05-25 17:04 75825640 ----a-w- c:\windows\system32\MRT.exe
2013-05-26 17:33 . 2012-07-17 12:37 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-05-25 19:49 . 2013-05-25 19:49 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2013-05-25 19:49 . 2013-05-25 19:49 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2013-05-25 19:49 . 2013-05-25 19:49 61952 ----a-w- c:\windows\SysWow64\tdc.ocx
2013-05-25 19:49 . 2013-05-25 19:49 523264 ----a-w- c:\windows\SysWow64\vbscript.dll
2013-05-25 19:49 . 2013-05-25 19:49 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2013-05-25 19:49 . 2013-05-25 19:49 38400 ----a-w- c:\windows\SysWow64\imgutil.dll
2013-05-25 19:49 . 2013-05-25 19:49 361984 ----a-w- c:\windows\SysWow64\html.iec
2013-05-25 19:49 . 2013-05-25 19:49 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll
2013-05-25 19:49 . 2013-05-25 19:49 226304 ----a-w- c:\windows\system32\elshyph.dll
2013-05-25 19:49 . 2013-05-25 19:49 185344 ----a-w- c:\windows\SysWow64\elshyph.dll
2013-05-25 19:49 . 2013-05-25 19:49 158720 ----a-w- c:\windows\SysWow64\msls31.dll
2013-05-25 19:49 . 2013-05-25 19:49 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2013-05-25 19:49 . 2013-05-25 19:49 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2013-05-25 19:49 . 2013-05-25 19:49 138752 ----a-w- c:\windows\SysWow64\wextract.exe
2013-05-25 19:49 . 2013-05-25 19:49 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2013-05-25 19:49 . 2013-05-25 19:49 12800 ----a-w- c:\windows\SysWow64\mshta.exe
2013-05-25 19:49 . 2013-05-25 19:49 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2013-05-25 19:49 . 2013-05-25 19:49 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-05-25 19:49 . 2013-05-25 19:49 97280 ----a-w- c:\windows\system32\mshtmled.dll
2013-05-25 19:49 . 2013-05-25 19:49 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-05-25 19:49 . 2013-05-25 19:49 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-05-25 19:49 . 2013-05-25 19:49 81408 ----a-w- c:\windows\system32\icardie.dll
2013-05-25 19:49 . 2013-05-25 19:49 77312 ----a-w- c:\windows\system32\tdc.ocx
2013-05-25 19:49 . 2013-05-25 19:49 762368 ----a-w- c:\windows\system32\ieapfltr.dll
2013-05-25 19:49 . 2013-05-25 19:49 62976 ----a-w- c:\windows\system32\pngfilt.dll
2013-05-25 19:49 . 2013-05-25 19:49 599552 ----a-w- c:\windows\system32\vbscript.dll
2013-05-25 19:49 . 2013-05-25 19:49 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2013-05-25 19:49 . 2013-05-25 19:49 51200 ----a-w- c:\windows\system32\imgutil.dll
2013-05-25 19:49 . 2013-05-25 19:49 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-05-25 19:49 . 2013-05-25 19:49 452096 ----a-w- c:\windows\system32\dxtmsft.dll
2013-05-25 19:49 . 2013-05-25 19:49 441856 ----a-w- c:\windows\system32\html.iec
2013-05-25 19:49 . 2013-05-25 19:49 281600 ----a-w- c:\windows\system32\dxtrans.dll
2013-05-25 19:49 . 2013-05-25 19:49 27648 ----a-w- c:\windows\system32\licmgr10.dll
2013-05-25 19:49 . 2013-05-25 19:49 270848 ----a-w- c:\windows\system32\iedkcs32.dll
2013-05-25 19:49 . 2013-05-25 19:49 247296 ----a-w- c:\windows\system32\webcheck.dll
2013-05-25 19:49 . 2013-05-25 19:49 235008 ----a-w- c:\windows\system32\url.dll
2013-05-25 19:49 . 2013-05-25 19:49 216064 ----a-w- c:\windows\system32\msls31.dll
2013-05-25 19:49 . 2013-05-25 19:49 197120 ----a-w- c:\windows\system32\msrating.dll
2013-05-25 19:49 . 2013-05-25 19:49 173568 ----a-w- c:\windows\system32\ieUnatt.exe
2013-05-25 19:49 . 2013-05-25 19:49 167424 ----a-w- c:\windows\system32\iexpress.exe
2013-05-25 19:49 . 2013-05-25 19:49 1509376 ----a-w- c:\windows\system32\inetcpl.cpl
2013-05-25 19:49 . 2013-05-25 19:49 149504 ----a-w- c:\windows\system32\occache.dll
2013-05-25 19:49 . 2013-05-25 19:49 144896 ----a-w- c:\windows\system32\wextract.exe
2013-05-25 19:49 . 2013-05-25 19:49 1400416 ----a-w- c:\windows\system32\ieapfltr.dat
2013-05-25 19:49 . 2013-05-25 19:49 13824 ----a-w- c:\windows\system32\mshta.exe
2013-05-25 19:49 . 2013-05-25 19:49 136192 ----a-w- c:\windows\system32\iepeers.dll
2013-05-25 19:49 . 2013-05-25 19:49 135680 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-05-25 19:49 . 2013-05-25 19:49 12800 ----a-w- c:\windows\system32\msfeedssync.exe
2013-05-25 19:49 . 2013-05-25 19:49 102912 ----a-w- c:\windows\system32\inseng.dll
2013-05-25 18:56 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2013-05-25 18:56 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2013-05-25 16:55 . 2013-05-25 16:55 283200 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2013-05-12 21:42 . 2013-05-25 15:56 9233688 ----a-w- c:\windows\system32\nvcuda.dll
2013-05-12 21:42 . 2013-05-25 15:56 7682960 ----a-w- c:\windows\SysWow64\nvcuda.dll
2013-05-12 21:42 . 2013-05-25 15:56 7641832 ----a-w- c:\windows\system32\nvopencl.dll
2013-05-12 21:42 . 2013-05-25 15:56 6324360 ----a-w- c:\windows\SysWow64\nvopencl.dll
2013-05-12 21:42 . 2013-05-25 15:56 550176 ----a-w- c:\windows\system32\NvFBC64.dll
2013-05-12 21:42 . 2013-05-25 15:56 518944 ----a-w- c:\windows\system32\NvIFR64.dll
2013-05-12 21:42 . 2013-05-25 15:56 443168 ----a-w- c:\windows\SysWow64\NvFBC.dll
2013-05-12 21:42 . 2013-05-25 15:56 421152 ----a-w- c:\windows\SysWow64\NvIFR.dll
2013-05-12 21:42 . 2013-05-25 15:56 2942240 ----a-w- c:\windows\system32\nvcuvid.dll
2013-05-12 21:42 . 2013-05-25 15:56 27775776 ----a-w- c:\windows\system32\nvoglv64.dll
2013-05-12 21:42 . 2013-05-25 15:56 2754336 ----a-w- c:\windows\SysWow64\nvcuvid.dll
2013-05-12 21:42 . 2013-05-25 15:56 2597344 ----a-w- c:\windows\SysWow64\nvapi.dll
2013-05-12 21:42 . 2013-05-25 15:56 25256224 ----a-w- c:\windows\system32\nvcompiler.dll
2013-05-12 21:42 . 2013-05-25 15:56 2363680 ----a-w- c:\windows\system32\nvcuvenc.dll
2013-05-12 21:42 . 2013-05-25 15:56 21096736 ----a-w- c:\windows\SysWow64\nvoglv32.dll
2013-05-12 21:42 . 2013-05-25 15:56 2002720 ----a-w- c:\windows\SysWow64\nvcuvenc.dll
2013-05-12 21:42 . 2013-05-25 15:56 1832224 ----a-w- c:\windows\system32\nvdispco6432018.dll
2013-05-12 21:42 . 2013-05-25 15:56 17560352 ----a-w- c:\windows\SysWow64\nvcompiler.dll
2013-05-12 21:42 . 2013-05-25 15:56 15910736 ----a-w- c:\windows\system32\nvwgf2umx.dll
2013-05-12 21:42 . 2013-05-25 15:56 15143904 ----a-w- c:\windows\system32\nvd3dumx.dll
2013-05-12 21:42 . 2013-05-25 15:56 1511712 ----a-w- c:\windows\system32\nvdispgenco6432018.dll
2013-05-12 21:42 . 2013-05-25 15:56 13403168 ----a-w- c:\windows\SysWow64\nvwgf2um.dll
2013-05-12 21:42 . 2013-05-25 15:56 12426216 ----a-w- c:\windows\SysWow64\nvd3dum.dll
2013-05-12 21:42 . 2013-05-25 15:56 11216160 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2013-05-12 21:42 . 2013-02-25 22:32 2935696 ----a-w- c:\windows\system32\nvapi64.dll
2013-05-12 20:34 . 2010-10-08 08:04 6491936 ----a-w- c:\windows\system32\nvcpl.dll
2013-05-12 20:34 . 2010-10-08 08:04 3514656 ----a-w- c:\windows\system32\nvsvc64.dll
2013-05-12 20:34 . 2010-10-08 08:04 884512 ----a-w- c:\windows\system32\nvvsvc.exe
2013-05-12 20:34 . 2010-10-08 08:04 63776 ----a-w- c:\windows\system32\nvshext.dll
2013-05-12 20:34 . 2010-10-08 08:04 2555680 ----a-w- c:\windows\system32\nvsvcr.dll
2013-05-12 20:34 . 2010-10-08 08:04 237856 ----a-w- c:\windows\system32\nvmctray.dll
2013-05-12 13:43 . 2013-05-12 13:43 566048 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2013-05-09 08:58 . 2013-05-25 16:14 287840 ----a-w- c:\windows\system32\aswBoot.exe
2013-05-02 00:06 . 2013-05-25 16:20 278800 ------w- c:\windows\system32\MpSigStub.exe
2013-04-13 05:49 . 2013-05-25 19:23 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2013-04-13 05:49 . 2013-05-25 19:23 308736 ----a-w- c:\windows\apppatch\AppPatch64\AcGenral.dll
2013-04-13 05:49 . 2013-05-25 19:23 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll
2013-04-13 05:49 . 2013-05-25 19:23 111104 ----a-w- c:\windows\apppatch\AppPatch64\acspecfc.dll
2013-04-13 04:45 . 2013-05-25 19:23 474624 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2013-04-13 04:45 . 2013-05-25 19:23 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll
2013-04-12 14:45 . 2013-05-25 16:22 1656680 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-04-10 06:01 . 2013-05-25 19:24 265064 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2013-04-10 06:01 . 2013-05-25 19:24 983400 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-04-10 03:30 . 2013-05-25 19:22 3153920 ----a-w- c:\windows\system32\win32k.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="e:\daemon tools lite\DTLite.exe" [2013-03-14 3672640]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2013-06-03 19603048]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe" [2008-01-22 152872]
"Advanced SystemCare 6"="e:\advanced systemcare 6\ASCTray.exe" [2013-04-18 491840]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AVP"="c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe" [2013-03-15 356376]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MBAMService;MBAMService;e:\malwarebytes' anti-malware\mbamservice.exe;e:\malwarebytes' anti-malware\mbamservice.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys;c:\windows\SYSNATIVE\DRIVERS\klim6.sys [x]
S1 kltdi;kltdi;c:\windows\system32\DRIVERS\kltdi.sys;c:\windows\SYSNATIVE\DRIVERS\kltdi.sys [x]
S1 kneps;kneps;c:\windows\system32\DRIVERS\kneps.sys;c:\windows\SYSNATIVE\DRIVERS\kneps.sys [x]
S2 AdvancedSystemCareService6;Advanced SystemCare Service 6;e:\advanced systemcare 6\ASCService.exe;e:\advanced systemcare 6\ASCService.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 klkbdflt;Kaspersky Lab KLKBDFLT;c:\windows\system32\DRIVERS\klkbdflt.sys;c:\windows\SYSNATIVE\DRIVERS\klkbdflt.sys [x]
S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys;c:\windows\SYSNATIVE\DRIVERS\klmouflt.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 PAC207;SoC PC-Camera;c:\windows\system32\DRIVERS\PFC027.SYS;c:\windows\SYSNATIVE\DRIVERS\PFC027.SYS [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-06-28 06:59 1173456 ----a-w- c:\program files (x86)\Google\Chrome\Application\28.0.1500.63\Installer\chrmstp.exe
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Monitor"="c:\windows\PixArt\PAC207\Monitor.exe" [2006-11-03 319488]
"Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-05-16 1012000]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.cz/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - e:\micros~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 77.48.254.254 77.48.100.254
.
.
Celkový čas: 2013-07-02 13:14:36 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-07-02 11:14
ComboFix2.txt 2013-07-01 07:20
.
Před spuštěním: Volných bajtů: 103 034 970 112
Po spuštění: Volných bajtů: 102 652 817 408
.
- - End Of File - - B9B7FD30EEA811A42ACE86994777D265
A36C5E4F47E84449FF07ED3517B43A31
When You smoke herb it reveals you to yourself. All the wickedness you do is revealed by the herb - it's you conscience and gives you an honest picture of yourself.
---------- Robert Nesta Marley ----------
---------- Robert Nesta Marley ----------
- Scanner
- Level 3.5
- Příspěvky: 771
- Registrován: srpen 11
- Bydliště: Střední čechy
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Zase spamy v PC.
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:20:20, on 2.7.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal
Running processes:
C:\Windows\PixArt\Pac207\Monitor.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
E:\Advanced SystemCare 6\ASCTray.exe
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Users\Zkuřka\Desktop\hijackthis.exe
C:\Windows\SysWOW64\DllHost.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
O2 - BHO: VirtualKeyboardBrowserHelperObject - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - E:\ADVANC~1\BROWER~1\ASCPLU~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll
O4 - HKLM\..\Run: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "E:\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Advanced SystemCare 6] "E:\Advanced SystemCare 6\ASCTray.exe" /AutoStart
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://E:\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Přidat do Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ie_banner_deny.htm
O9 - Extra button: Virtuální klávesnice - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Kontrola adres URL - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Advanced SystemCare Service 6 (AdvancedSystemCareService6) - IObit - E:\Advanced SystemCare 6\ASCService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Služba Kaspersky Anti-Virus (AVP) - Kaspersky Lab ZAO - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - E:\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - E:\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\SysWOW64\IoctlSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8567 bytes
Scan saved at 13:20:20, on 2.7.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal
Running processes:
C:\Windows\PixArt\Pac207\Monitor.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
E:\Advanced SystemCare 6\ASCTray.exe
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Users\Zkuřka\Desktop\hijackthis.exe
C:\Windows\SysWOW64\DllHost.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
O2 - BHO: VirtualKeyboardBrowserHelperObject - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - E:\ADVANC~1\BROWER~1\ASCPLU~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll
O4 - HKLM\..\Run: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "E:\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Advanced SystemCare 6] "E:\Advanced SystemCare 6\ASCTray.exe" /AutoStart
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://E:\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Přidat do Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ie_banner_deny.htm
O9 - Extra button: Virtuální klávesnice - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Kontrola adres URL - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Advanced SystemCare Service 6 (AdvancedSystemCareService6) - IObit - E:\Advanced SystemCare 6\ASCService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Služba Kaspersky Anti-Virus (AVP) - Kaspersky Lab ZAO - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - E:\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - E:\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\SysWOW64\IoctlSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8567 bytes
When You smoke herb it reveals you to yourself. All the wickedness you do is revealed by the herb - it's you conscience and gives you an honest picture of yourself.
---------- Robert Nesta Marley ----------
---------- Robert Nesta Marley ----------
- Scanner
- Level 3.5
- Příspěvky: 771
- Registrován: srpen 11
- Bydliště: Střední čechy
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Zase spamy v PC.
aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2013-07-02 13:21:44
-----------------------------
13:21:44.547 OS Version: Windows x64 6.1.7601 Service Pack 1
13:21:44.547 Number of processors: 4 586 0x2A07
13:21:44.547 ComputerName: WEED UserName:
13:21:45.358 Initialize success
13:21:52.627 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
13:21:52.627 Disk 0 Vendor: Hitachi_HDS721010CLA632 JP4OA41A Size: 953869MB BusType: 3
13:21:52.627 Disk 1 \Device\Harddisk1\DR1 -> \Device\Ide\IdeDeviceP0T1L0-5
13:21:52.627 Disk 1 Vendor: SAMSUNG_HD753LJ 1AA01113 Size: 715404MB BusType: 3
13:21:52.705 Disk 0 MBR read successfully
13:21:52.721 Disk 0 MBR scan
13:21:52.721 Disk 0 Windows 7 default MBR code
13:21:52.721 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
13:21:52.736 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 153768 MB offset 206848
13:21:52.752 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 799999 MB offset 315123712
13:21:52.767 Disk 0 scanning C:\Windows\system32\drivers
13:21:57.525 Service scanning
13:22:02.970 Service kl1 C:\Windows\system32\DRIVERS\kl1.sys **LOCKED** 5
13:22:03.547 Service KLIM6 C:\Windows\system32\DRIVERS\klim6.sys **LOCKED** 5
13:22:04.109 Service klkbdflt C:\Windows\system32\DRIVERS\klkbdflt.sys **LOCKED** 5
13:22:04.124 Service klmouflt C:\Windows\system32\DRIVERS\klmouflt.sys **LOCKED** 5
13:22:04.155 Service kltdi C:\Windows\system32\DRIVERS\kltdi.sys **LOCKED** 5
13:22:04.171 Service kneps C:\Windows\system32\DRIVERS\kneps.sys **LOCKED** 5
13:22:10.208 Modules scanning
13:22:10.208 Disk 0 trace - called modules:
13:22:10.224 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys ataport.SYS pciide.sys
13:22:10.224 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004a81060]
13:22:10.239 3 CLASSPNP.SYS[fffff8800215143f] -> nt!IofCallDriver -> [0xfffffa8004812520]
13:22:10.239 5 ACPI.sys[fffff88000f847a1] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0xfffffa8004803060]
13:22:10.239 Scan finished successfully
13:22:28.382 Disk 0 MBR has been saved successfully to "C:\Users\Zkuřka\Desktop\MBR.dat"
13:22:28.382 The log file has been saved successfully to "C:\Users\Zkuřka\Desktop\aswMBR.txt"
Run date: 2013-07-02 13:21:44
-----------------------------
13:21:44.547 OS Version: Windows x64 6.1.7601 Service Pack 1
13:21:44.547 Number of processors: 4 586 0x2A07
13:21:44.547 ComputerName: WEED UserName:
13:21:45.358 Initialize success
13:21:52.627 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
13:21:52.627 Disk 0 Vendor: Hitachi_HDS721010CLA632 JP4OA41A Size: 953869MB BusType: 3
13:21:52.627 Disk 1 \Device\Harddisk1\DR1 -> \Device\Ide\IdeDeviceP0T1L0-5
13:21:52.627 Disk 1 Vendor: SAMSUNG_HD753LJ 1AA01113 Size: 715404MB BusType: 3
13:21:52.705 Disk 0 MBR read successfully
13:21:52.721 Disk 0 MBR scan
13:21:52.721 Disk 0 Windows 7 default MBR code
13:21:52.721 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
13:21:52.736 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 153768 MB offset 206848
13:21:52.752 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 799999 MB offset 315123712
13:21:52.767 Disk 0 scanning C:\Windows\system32\drivers
13:21:57.525 Service scanning
13:22:02.970 Service kl1 C:\Windows\system32\DRIVERS\kl1.sys **LOCKED** 5
13:22:03.547 Service KLIM6 C:\Windows\system32\DRIVERS\klim6.sys **LOCKED** 5
13:22:04.109 Service klkbdflt C:\Windows\system32\DRIVERS\klkbdflt.sys **LOCKED** 5
13:22:04.124 Service klmouflt C:\Windows\system32\DRIVERS\klmouflt.sys **LOCKED** 5
13:22:04.155 Service kltdi C:\Windows\system32\DRIVERS\kltdi.sys **LOCKED** 5
13:22:04.171 Service kneps C:\Windows\system32\DRIVERS\kneps.sys **LOCKED** 5
13:22:10.208 Modules scanning
13:22:10.208 Disk 0 trace - called modules:
13:22:10.224 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys ataport.SYS pciide.sys
13:22:10.224 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004a81060]
13:22:10.239 3 CLASSPNP.SYS[fffff8800215143f] -> nt!IofCallDriver -> [0xfffffa8004812520]
13:22:10.239 5 ACPI.sys[fffff88000f847a1] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0xfffffa8004803060]
13:22:10.239 Scan finished successfully
13:22:28.382 Disk 0 MBR has been saved successfully to "C:\Users\Zkuřka\Desktop\MBR.dat"
13:22:28.382 The log file has been saved successfully to "C:\Users\Zkuřka\Desktop\aswMBR.txt"
When You smoke herb it reveals you to yourself. All the wickedness you do is revealed by the herb - it's you conscience and gives you an honest picture of yourself.
---------- Robert Nesta Marley ----------
---------- Robert Nesta Marley ----------
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Zase spamy v PC.
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
vyčisti systém CCleanerem
Stáhni si OTC na plochu, spusť jej a klikni na Clean up!
Fixni:
Jak se chová PC?
Start-Spustit a zadej ComboFix /Uninstall
vyčisti systém CCleanerem
Stáhni si OTC na plochu, spusť jej a klikni na Clean up!
Fixni:
Kód: Vybrat vše
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Advanced SystemCare 6] "E:\Advanced SystemCare 6\ASCTray.exe" /AutoStart
Jak se chová PC?
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
- Scanner
- Level 3.5
- Příspěvky: 771
- Registrován: srpen 11
- Bydliště: Střední čechy
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Zase spamy v PC.
Vše je v pořádku. Spamy jsou pryč PC krásně funguje. Ještě budu něco dělat nebo můžu uzavřít? 

When You smoke herb it reveals you to yourself. All the wickedness you do is revealed by the herb - it's you conscience and gives you an honest picture of yourself.
---------- Robert Nesta Marley ----------
---------- Robert Nesta Marley ----------
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Zase spamy v PC.
Je to všechno 

PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
- Scanner
- Level 3.5
- Příspěvky: 771
- Registrován: srpen 11
- Bydliště: Střední čechy
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Zase spamy v PC. Vyřešeno
Na Vás se vždycky můžu spolehnout. Díky 

When You smoke herb it reveals you to yourself. All the wickedness you do is revealed by the herb - it's you conscience and gives you an honest picture of yourself.
---------- Robert Nesta Marley ----------
---------- Robert Nesta Marley ----------
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 47 hostů