Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:10:42, on 10.8.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16635)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe
C:\Windows\SysWOW64\DllHost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [KiesHelper] C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe /s
O4 - HKCU\..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
O4 - HKCU\..\Run: [KiesPDLR] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
O4 - HKCU\..\RunOnce: [KOUOC] C:\Users\Mufíček\KOUOC\start.vbs
O4 - Global Startup: Vyhledat aktualizace.lnk = C:\Program Files (x86)\Common Files\PCTV Systems\WebUpdater\WebUpdater.exe
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{FA226787-1039-4D14-8EE7-07D39403362B}: NameServer = 192.168.0.1
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8460 bytes
Prosím o kontrolu logu Vyřešeno
-
- Level 3.5
- Příspěvky: 740
- Registrován: prosinec 12
- Pohlaví:
- Stav:
Offline
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranìní historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit doèasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po probìhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranìní historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit doèasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po probìhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
-
- Level 3.5
- Příspěvky: 740
- Registrován: prosinec 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Verze: v2013.08.10.02
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16635
******* :: DELL [administrátor]
10.8.2013 19:14:17
MBAM-log-2013-08-10 (19-19-52).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 242577
Uplynulý čas: 4 minut, 47 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKCU\Software\DC3_FEXEC (Malware.Trace) -> Nebyla provedena žádná instrukce.
Nalezené hodnoty v registru: 1
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce|KOUOC (Trojan.Inject.VBS) -> Data: C:\Users\Mufíček\KOUOC\start.vbs -> Nebyla provedena žádná instrukce.
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 1
C:\Users\Mufíček\AppData\Roaming\dclogs (Stolen.Data) -> Nebyla provedena žádná instrukce.
Nalezené soubory: 39
C:\ProgramData\ccontinnuetosavoe\51a3979305411.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-02-1.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-07-6.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-08-7.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-09-1.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-16-1.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-17-2.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-18-3.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-19-4.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-20-5.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-21-6.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-22-7.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-25-3.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-26-4.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-27-5.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-28-6.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-29-7.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-05-6.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-06-7.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-07-1.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-15-2.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-16-3.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-17-4.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-18-5.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-19-6.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-22-2.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-23-3.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-25-5.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-26-6.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-27-7.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-28-1.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-29-2.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-30-3.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-31-4.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-01-5.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-08-5.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-09-6.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-10-7.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\KOUOC\start.vbs (Trojan.Inject.VBS) -> Nebyla provedena žádná instrukce.
(konec)
www.malwarebytes.org
Verze: v2013.08.10.02
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16635
******* :: DELL [administrátor]
10.8.2013 19:14:17
MBAM-log-2013-08-10 (19-19-52).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 242577
Uplynulý čas: 4 minut, 47 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKCU\Software\DC3_FEXEC (Malware.Trace) -> Nebyla provedena žádná instrukce.
Nalezené hodnoty v registru: 1
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce|KOUOC (Trojan.Inject.VBS) -> Data: C:\Users\Mufíček\KOUOC\start.vbs -> Nebyla provedena žádná instrukce.
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 1
C:\Users\Mufíček\AppData\Roaming\dclogs (Stolen.Data) -> Nebyla provedena žádná instrukce.
Nalezené soubory: 39
C:\ProgramData\ccontinnuetosavoe\51a3979305411.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-02-1.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-07-6.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-08-7.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-09-1.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-16-1.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-17-2.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-18-3.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-19-4.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-20-5.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-21-6.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-22-7.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-25-3.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-26-4.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-27-5.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-28-6.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-29-7.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-05-6.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-06-7.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-07-1.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-15-2.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-16-3.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-17-4.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-18-5.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-19-6.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-22-2.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-23-3.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-25-5.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-26-6.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-27-7.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-28-1.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-29-2.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-30-3.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-31-4.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-01-5.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-08-5.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-09-6.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-10-7.dc (Stolen.Data) -> Nebyla provedena žádná instrukce.
C:\Users\Mufíček\KOUOC\start.vbs (Trojan.Inject.VBS) -> Nebyla provedena žádná instrukce.
(konec)
-
- Level 3.5
- Příspěvky: 740
- Registrován: prosinec 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
# AdwCleaner v2.306 - Log vytvooen 10/08/2013 v 19:21:54
# Aktualizováno 19/07/2013 Xplode
# Operaení systém : Windows 7 Home Premium Service Pack 1 (64 bits)
# Uživatel : Mufíček - DELL
# Spuštin systém : Normální
# Spuštino z : C:\Users\*******\Downloads\adwcleaner.exe
# Volba [Prohledat]
***** [Služby] *****
***** [Soubory / Složky] *****
Složka Nalezeno : C:\Program Files (x86)\ParetoLogic
Složka Nalezeno : C:\ProgramData\ccontinnuetosavoe
Složka Nalezeno : C:\ProgramData\ParetoLogic
Složka Nalezeno : C:\Users\Mufíček\AppData\Roaming\NCdownloader
Složka Nalezeno : C:\Users\Mufíček\AppData\Roaming\ParetoLogic
***** [Registry] *****
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{495DA84A-2FAD-DEE4-37D5-A6160CDDA92F}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{495DA84A-2FAD-DEE4-37D5-A6160CDDA92F}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Klíe Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
***** [Internetové prohlížeee] *****
-\\ Internet Explorer v10.0.9200.16635
[OK] Registry jsou eisté.
-\\ Mozilla Firefox v22.0 (cs)
Soubor : C:\Users\Mufíček\AppData\Roaming\Mozilla\Firefox\Profiles\ii1nn44e.default\prefs.js
[OK] Soubor je eistý.
-\\ Google Chrome v28.0.1500.95
Soubor : C:\Users\Mufíček\AppData\Local\Google\Chrome\User Data\Default\Preferences
Nalezeno [l.22] : icon_url = "hxxp://websearch.pu-result.info/favicon.ico",
Nalezeno [l.25] : keyword = "websearch",
Nalezeno [l.29] : search_url = "hxxp://websearch.pu-result.info/?l=1&q={searchTerms}&pid=724&r=2013/05/25&hid=172638876&lg=EN&cc=CZ",
*************************
AdwCleaner[R1].txt - [4536 octets] - [26/05/2013 12:17:57]
AdwCleaner[R2].txt - [3204 octets] - [10/08/2013 19:21:54]
AdwCleaner[S1].txt - [6861 octets] - [04/04/2013 10:53:48]
AdwCleaner[S2].txt - [4512 octets] - [27/05/2013 15:28:15]
########## EOF - C:\AdwCleaner[R2].txt - [3384 octets] ##########
# Aktualizováno 19/07/2013 Xplode
# Operaení systém : Windows 7 Home Premium Service Pack 1 (64 bits)
# Uživatel : Mufíček - DELL
# Spuštin systém : Normální
# Spuštino z : C:\Users\*******\Downloads\adwcleaner.exe
# Volba [Prohledat]
***** [Služby] *****
***** [Soubory / Složky] *****
Složka Nalezeno : C:\Program Files (x86)\ParetoLogic
Složka Nalezeno : C:\ProgramData\ccontinnuetosavoe
Složka Nalezeno : C:\ProgramData\ParetoLogic
Složka Nalezeno : C:\Users\Mufíček\AppData\Roaming\NCdownloader
Složka Nalezeno : C:\Users\Mufíček\AppData\Roaming\ParetoLogic
***** [Registry] *****
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{495DA84A-2FAD-DEE4-37D5-A6160CDDA92F}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{495DA84A-2FAD-DEE4-37D5-A6160CDDA92F}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Klíe Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
***** [Internetové prohlížeee] *****
-\\ Internet Explorer v10.0.9200.16635
[OK] Registry jsou eisté.
-\\ Mozilla Firefox v22.0 (cs)
Soubor : C:\Users\Mufíček\AppData\Roaming\Mozilla\Firefox\Profiles\ii1nn44e.default\prefs.js
[OK] Soubor je eistý.
-\\ Google Chrome v28.0.1500.95
Soubor : C:\Users\Mufíček\AppData\Local\Google\Chrome\User Data\Default\Preferences
Nalezeno [l.22] : icon_url = "hxxp://websearch.pu-result.info/favicon.ico",
Nalezeno [l.25] : keyword = "websearch",
Nalezeno [l.29] : search_url = "hxxp://websearch.pu-result.info/?l=1&q={searchTerms}&pid=724&r=2013/05/25&hid=172638876&lg=EN&cc=CZ",
*************************
AdwCleaner[R1].txt - [4536 octets] - [26/05/2013 12:17:57]
AdwCleaner[R2].txt - [3204 octets] - [10/08/2013 19:21:54]
AdwCleaner[S1].txt - [6861 octets] - [04/04/2013 10:53:48]
AdwCleaner[S2].txt - [4512 octets] - [27/05/2013 15:28:15]
########## EOF - C:\AdwCleaner[R2].txt - [3384 octets] ##########
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
V Mbam i adw nech vše smazat a dodej logy po smazání
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Stáhni si Junkware Removal Tool
na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Stáhni si Junkware Removal Tool
na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
-
- Level 3.5
- Příspěvky: 740
- Registrován: prosinec 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
snad to je dobrý log..:
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Verze: v2013.08.10.02
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16635
Mufíček :: DELL [administrátor]
10.8.2013 19:40:48
mbam-log-2013-08-10 (19-40-48).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 242596
Uplynulý čas: 3 minut, 51 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKCU\Software\DC3_FEXEC (Malware.Trace) -> Přesun do karantény a smazání se zdařilo.
Nalezené hodnoty v registru: 1
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce|KOUOC (Trojan.Inject.VBS) -> Data: C:\Users\Mufíček\KOUOC\start.vbs -> Přesun do karantény a smazání se zdařilo.
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 1
C:\Users\Mufíček\AppData\Roaming\dclogs (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
Nalezené soubory: 39
C:\ProgramData\ccontinnuetosavoe\51a3979305411.dll (PUP.Optional.MultiPlug.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-02-1.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-07-6.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-08-7.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-09-1.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-16-1.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-17-2.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-18-3.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-19-4.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-20-5.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-21-6.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-22-7.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-25-3.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-26-4.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-27-5.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-28-6.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-29-7.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-05-6.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-06-7.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-07-1.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-15-2.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-16-3.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-17-4.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-18-5.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-19-6.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-22-2.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-23-3.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-25-5.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-26-6.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-27-7.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-28-1.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-29-2.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-30-3.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-31-4.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-01-5.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-08-5.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-09-6.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-10-7.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\KOUOC\start.vbs (Trojan.Inject.VBS) -> Přesun do karantény a smazání se zdařilo.
(konec)
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Verze: v2013.08.10.02
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16635
Mufíček :: DELL [administrátor]
10.8.2013 19:40:48
mbam-log-2013-08-10 (19-40-48).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 242596
Uplynulý čas: 3 minut, 51 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKCU\Software\DC3_FEXEC (Malware.Trace) -> Přesun do karantény a smazání se zdařilo.
Nalezené hodnoty v registru: 1
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce|KOUOC (Trojan.Inject.VBS) -> Data: C:\Users\Mufíček\KOUOC\start.vbs -> Přesun do karantény a smazání se zdařilo.
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 1
C:\Users\Mufíček\AppData\Roaming\dclogs (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
Nalezené soubory: 39
C:\ProgramData\ccontinnuetosavoe\51a3979305411.dll (PUP.Optional.MultiPlug.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-02-1.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-07-6.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-08-7.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-09-1.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-16-1.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-17-2.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-18-3.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-19-4.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-20-5.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-21-6.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-22-7.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-25-3.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-26-4.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-27-5.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-28-6.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-06-29-7.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-05-6.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-06-7.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-07-1.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-15-2.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-16-3.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-17-4.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-18-5.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-19-6.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-22-2.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-23-3.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-25-5.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-26-6.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-27-7.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-28-1.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-29-2.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-30-3.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-07-31-4.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-01-5.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-08-5.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-09-6.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\AppData\Roaming\dclogs\2013-08-10-7.dc (Stolen.Data) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Mufíček\KOUOC\start.vbs (Trojan.Inject.VBS) -> Přesun do karantény a smazání se zdařilo.
(konec)
-
- Level 3.5
- Příspěvky: 740
- Registrován: prosinec 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
já blbec v tom mám zmatek v Adw takže nevím jestli tento log:
# AdwCleaner v2.306 - Log vytvooen 10/08/2013 v 19:52:16
# Aktualizováno 19/07/2013 Xplode
# Operaení systém : Windows 7 Home Premium Service Pack 1 (64 bits)
# Uživatel : Mufíček - DELL
# Spuštin systém : Normální
# Spuštino z : C:\Users\Mufíček\Downloads\adwcleaner.exe
# Volba [Vymazat]
***** [Služby] *****
***** [Soubory / Složky] *****
Složka Vymazáno : C:\Program Files (x86)\ParetoLogic
Složka Vymazáno : C:\ProgramData\ccontinnuetosavoe
Složka Vymazáno : C:\ProgramData\ParetoLogic
Složka Vymazáno : C:\Users\Mufíček\AppData\Roaming\NCdownloader
Složka Vymazáno : C:\Users\Mufíček\AppData\Roaming\ParetoLogic
***** [Registry] *****
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{495DA84A-2FAD-DEE4-37D5-A6160CDDA92F}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{495DA84A-2FAD-DEE4-37D5-A6160CDDA92F}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Klíe Vymazáno : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
***** [Internetové prohlížeee] *****
-\\ Internet Explorer v10.0.9200.16635
[OK] Registry jsou eisté.
-\\ Mozilla Firefox v22.0 (cs)
Soubor : C:\Users\Mufíček\AppData\Roaming\Mozilla\Firefox\Profiles\ii1nn44e.default\prefs.js
[OK] Soubor je eistý.
-\\ Google Chrome v28.0.1500.95
Soubor : C:\Users\Mufíček\AppData\Local\Google\Chrome\User Data\Default\Preferences
Vymazáno [l.22] : icon_url = "hxxp://websearch.pu-result.info/favicon.ico",
Vymazáno [l.25] : keyword = "websearch",
Vymazáno [l.29] : search_url = "hxxp://websearch.pu-result.info/?l=1&q={searchTerms}&pid=724&r=2013/05/25&hid=1[...]
*************************
AdwCleaner[R1].txt - [4536 octets] - [26/05/2013 12:17:57]
AdwCleaner[R2].txt - [3443 octets] - [10/08/2013 19:21:54]
AdwCleaner[S1].txt - [6861 octets] - [04/04/2013 10:53:48]
AdwCleaner[S2].txt - [4512 octets] - [27/05/2013 15:28:15]
AdwCleaner[S3].txt - [3365 octets] - [10/08/2013 19:52:16]
########## EOF - C:\AdwCleaner[S3].txt - [3425 octets] ##########
nebo tento:
# AdwCleaner v2.306 - Log vytvooen 10/08/2013 v 19:56:33
# Aktualizováno 19/07/2013 Xplode
# Operaení systém : Windows 7 Home Premium Service Pack 1 (64 bits)
# Uživatel : Mufíček - DELL
# Spuštin systém : Normální
# Spuštino z : C:\Users\Mufíček\Downloads\adwcleaner.exe
# Volba [Prohledat]
***** [Služby] *****
***** [Soubory / Složky] *****
***** [Registry] *****
***** [Internetové prohlížeee] *****
-\\ Internet Explorer v10.0.9200.16635
[OK] Registry jsou eisté.
-\\ Mozilla Firefox v22.0 (cs)
Soubor : C:\Users\Mufíček\AppData\Roaming\Mozilla\Firefox\Profiles\ii1nn44e.default\prefs.js
[OK] Soubor je eistý.
-\\ Google Chrome v28.0.1500.95
Soubor : C:\Users\Mufíček\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] Soubor je eistý.
*************************
AdwCleaner[R1].txt - [4536 octets] - [26/05/2013 12:17:57]
AdwCleaner[R2].txt - [3443 octets] - [10/08/2013 19:21:54]
AdwCleaner[R3].txt - [955 octets] - [10/08/2013 19:56:33]
AdwCleaner[S1].txt - [6861 octets] - [04/04/2013 10:53:48]
AdwCleaner[S2].txt - [4512 octets] - [27/05/2013 15:28:15]
AdwCleaner[S3].txt - [3484 octets] - [10/08/2013 19:52:16]
########## EOF - C:\AdwCleaner[R3].txt - [1194 octets] ##########
# AdwCleaner v2.306 - Log vytvooen 10/08/2013 v 19:52:16
# Aktualizováno 19/07/2013 Xplode
# Operaení systém : Windows 7 Home Premium Service Pack 1 (64 bits)
# Uživatel : Mufíček - DELL
# Spuštin systém : Normální
# Spuštino z : C:\Users\Mufíček\Downloads\adwcleaner.exe
# Volba [Vymazat]
***** [Služby] *****
***** [Soubory / Složky] *****
Složka Vymazáno : C:\Program Files (x86)\ParetoLogic
Složka Vymazáno : C:\ProgramData\ccontinnuetosavoe
Složka Vymazáno : C:\ProgramData\ParetoLogic
Složka Vymazáno : C:\Users\Mufíček\AppData\Roaming\NCdownloader
Složka Vymazáno : C:\Users\Mufíček\AppData\Roaming\ParetoLogic
***** [Registry] *****
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{495DA84A-2FAD-DEE4-37D5-A6160CDDA92F}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{495DA84A-2FAD-DEE4-37D5-A6160CDDA92F}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Klíe Vymazáno : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
***** [Internetové prohlížeee] *****
-\\ Internet Explorer v10.0.9200.16635
[OK] Registry jsou eisté.
-\\ Mozilla Firefox v22.0 (cs)
Soubor : C:\Users\Mufíček\AppData\Roaming\Mozilla\Firefox\Profiles\ii1nn44e.default\prefs.js
[OK] Soubor je eistý.
-\\ Google Chrome v28.0.1500.95
Soubor : C:\Users\Mufíček\AppData\Local\Google\Chrome\User Data\Default\Preferences
Vymazáno [l.22] : icon_url = "hxxp://websearch.pu-result.info/favicon.ico",
Vymazáno [l.25] : keyword = "websearch",
Vymazáno [l.29] : search_url = "hxxp://websearch.pu-result.info/?l=1&q={searchTerms}&pid=724&r=2013/05/25&hid=1[...]
*************************
AdwCleaner[R1].txt - [4536 octets] - [26/05/2013 12:17:57]
AdwCleaner[R2].txt - [3443 octets] - [10/08/2013 19:21:54]
AdwCleaner[S1].txt - [6861 octets] - [04/04/2013 10:53:48]
AdwCleaner[S2].txt - [4512 octets] - [27/05/2013 15:28:15]
AdwCleaner[S3].txt - [3365 octets] - [10/08/2013 19:52:16]
########## EOF - C:\AdwCleaner[S3].txt - [3425 octets] ##########
nebo tento:
# AdwCleaner v2.306 - Log vytvooen 10/08/2013 v 19:56:33
# Aktualizováno 19/07/2013 Xplode
# Operaení systém : Windows 7 Home Premium Service Pack 1 (64 bits)
# Uživatel : Mufíček - DELL
# Spuštin systém : Normální
# Spuštino z : C:\Users\Mufíček\Downloads\adwcleaner.exe
# Volba [Prohledat]
***** [Služby] *****
***** [Soubory / Složky] *****
***** [Registry] *****
***** [Internetové prohlížeee] *****
-\\ Internet Explorer v10.0.9200.16635
[OK] Registry jsou eisté.
-\\ Mozilla Firefox v22.0 (cs)
Soubor : C:\Users\Mufíček\AppData\Roaming\Mozilla\Firefox\Profiles\ii1nn44e.default\prefs.js
[OK] Soubor je eistý.
-\\ Google Chrome v28.0.1500.95
Soubor : C:\Users\Mufíček\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] Soubor je eistý.
*************************
AdwCleaner[R1].txt - [4536 octets] - [26/05/2013 12:17:57]
AdwCleaner[R2].txt - [3443 octets] - [10/08/2013 19:21:54]
AdwCleaner[R3].txt - [955 octets] - [10/08/2013 19:56:33]
AdwCleaner[S1].txt - [6861 octets] - [04/04/2013 10:53:48]
AdwCleaner[S2].txt - [4512 octets] - [27/05/2013 15:28:15]
AdwCleaner[S3].txt - [3484 octets] - [10/08/2013 19:52:16]
########## EOF - C:\AdwCleaner[R3].txt - [1194 octets] ##########
-
- Level 3.5
- Příspěvky: 740
- Registrován: prosinec 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
RogueKiller V8.6.5 _x64_ [Aug 5 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Mufíček [Práva správce]
Mód : Kontrola -- Datum : 08/10/2013 20:03:02
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ POL] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 7 ¤¤¤
[V2][SUSP UNIC] {02410FA5-3B9A-47B4-80FA-D20D0F008057} : C:\Users\Mufíček\Downloads\Crossfire_downloader(5).exe [x] -> NALEZENO
[V2][SUSP UNIC] {1D294413-3FFF-4F27-BD43-DBD33AB4F7BB} : C:\Users\Mufíček\Downloads\Crossfire_downloader(1).exe [x] -> NALEZENO
[V2][SUSP UNIC] {732343A3-4B9E-4738-8BFD-C013BCDDDD11} : C:\Users\Mufíček\Downloads\Crossfire_downloader.exe [x] -> NALEZENO
[V2][SUSP UNIC] {90DA6DEB-18DC-4E4E-9A88-077A9301A961} : C:\Users\Mufíček\Downloads\Crossfire_downloader(5).exe [x] -> NALEZENO
[V2][SUSP UNIC] {B1BAEB2F-21FB-45AD-8D54-AB713D0779AF} : C:\Users\Mufíček\Downloads\Crossfire_downloader(1).exe [x] -> NALEZENO
[V2][SUSP UNIC] {CFD96787-D7F9-45F0-8768-1648C961D3B5} : C:\Users\Mufíček\Downloads\Crossfire_downloader.exe [x] -> NALEZENO
[V2][SUSP UNIC] {F86CACD7-C33D-4BF6-B348-0FE4B9D5C32B} : C:\Users\Mufíček\Downloads\Crossfire_downloader.exe [x] -> NALEZENO
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: ST9160823ASG ATA Device +++++
--- User ---
[MBR] 62b76ab3e5d824c1dc45da48e4dd6257
[BSP] 65d6b42910fe61d652c1f1a16ecd8383 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 200 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 411648 | Size: 152425 Mo
User = LL1 ... OK!
User = LL2 ... OK!
+++++ PhysicalDrive1: ST9160823ASG ATA Device +++++
--- User ---
[MBR] 2a893b10550d1ad5ebb33922e82c4805
[BSP] 33a07a59d299ab4ea9f4ab0156f9d86f : Windows XP MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 8064 | Size: 30156 Mo
User = LL1 ... OK!
Error reading LL2 MBR!
Dokončeno : << RKreport[0]_S_08102013_200302.txt >>
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Mufíček [Práva správce]
Mód : Kontrola -- Datum : 08/10/2013 20:03:02
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ POL] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 7 ¤¤¤
[V2][SUSP UNIC] {02410FA5-3B9A-47B4-80FA-D20D0F008057} : C:\Users\Mufíček\Downloads\Crossfire_downloader(5).exe [x] -> NALEZENO
[V2][SUSP UNIC] {1D294413-3FFF-4F27-BD43-DBD33AB4F7BB} : C:\Users\Mufíček\Downloads\Crossfire_downloader(1).exe [x] -> NALEZENO
[V2][SUSP UNIC] {732343A3-4B9E-4738-8BFD-C013BCDDDD11} : C:\Users\Mufíček\Downloads\Crossfire_downloader.exe [x] -> NALEZENO
[V2][SUSP UNIC] {90DA6DEB-18DC-4E4E-9A88-077A9301A961} : C:\Users\Mufíček\Downloads\Crossfire_downloader(5).exe [x] -> NALEZENO
[V2][SUSP UNIC] {B1BAEB2F-21FB-45AD-8D54-AB713D0779AF} : C:\Users\Mufíček\Downloads\Crossfire_downloader(1).exe [x] -> NALEZENO
[V2][SUSP UNIC] {CFD96787-D7F9-45F0-8768-1648C961D3B5} : C:\Users\Mufíček\Downloads\Crossfire_downloader.exe [x] -> NALEZENO
[V2][SUSP UNIC] {F86CACD7-C33D-4BF6-B348-0FE4B9D5C32B} : C:\Users\Mufíček\Downloads\Crossfire_downloader.exe [x] -> NALEZENO
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: ST9160823ASG ATA Device +++++
--- User ---
[MBR] 62b76ab3e5d824c1dc45da48e4dd6257
[BSP] 65d6b42910fe61d652c1f1a16ecd8383 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 200 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 411648 | Size: 152425 Mo
User = LL1 ... OK!
User = LL2 ... OK!
+++++ PhysicalDrive1: ST9160823ASG ATA Device +++++
--- User ---
[MBR] 2a893b10550d1ad5ebb33922e82c4805
[BSP] 33a07a59d299ab4ea9f4ab0156f9d86f : Windows XP MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 8064 | Size: 30156 Mo
User = LL1 ... OK!
Error reading LL2 MBR!
Dokončeno : << RKreport[0]_S_08102013_200302.txt >>
-
- Level 3.5
- Příspěvky: 740
- Registrován: prosinec 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 5.2.8 (07.29.2013:2)
OS: Windows 7 Home Premium x64
Ran by Mufíček on so 10.08.2013 at 20:05:15,98
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ FireFox
Emptied folder: C:\Users\Mufíček\AppData\Roaming\mozilla\firefox\profiles\ii1nn44e.default\minidumps [3 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 10.08.2013 at 20:10:41,68
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 5.2.8 (07.29.2013:2)
OS: Windows 7 Home Premium x64
Ran by Mufíček on so 10.08.2013 at 20:05:15,98
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ FireFox
Emptied folder: C:\Users\Mufíček\AppData\Roaming\mozilla\firefox\profiles\ii1nn44e.default\minidumps [3 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 10.08.2013 at 20:10:41,68
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje "Smazání- Finished "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje "Smazání- Finished "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
-
- Level 3.5
- Příspěvky: 740
- Registrován: prosinec 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
RogueKiller V8.6.5 _x64_ [Aug 5 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Mufíček [Práva správce]
Mód : Odebrat -- Datum : 08/11/2013 10:25:48
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ POL] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 7 ¤¤¤
[V2][SUSP UNIC] {02410FA5-3B9A-47B4-80FA-D20D0F008057} : C:\Users\Mufíček\Downloads\Crossfire_downloader(5).exe [x] -> VYMAZÁNO
[V2][SUSP UNIC] {1D294413-3FFF-4F27-BD43-DBD33AB4F7BB} : C:\Users\Mufíček\Downloads\Crossfire_downloader(1).exe [x] -> VYMAZÁNO
[V2][SUSP UNIC] {732343A3-4B9E-4738-8BFD-C013BCDDDD11} : C:\Users\Mufíček\Downloads\Crossfire_downloader.exe [x] -> VYMAZÁNO
[V2][SUSP UNIC] {90DA6DEB-18DC-4E4E-9A88-077A9301A961} : C:\Users\Mufíček\Downloads\Crossfire_downloader(5).exe [x] -> VYMAZÁNO
[V2][SUSP UNIC] {B1BAEB2F-21FB-45AD-8D54-AB713D0779AF} : C:\Users\Mufíček\Downloads\Crossfire_downloader(1).exe [x] -> VYMAZÁNO
[V2][SUSP UNIC] {CFD96787-D7F9-45F0-8768-1648C961D3B5} : C:\Users\Mufíček\Downloads\Crossfire_downloader.exe [x] -> VYMAZÁNO
[V2][SUSP UNIC] {F86CACD7-C33D-4BF6-B348-0FE4B9D5C32B} : C:\Users\Mufíček\Downloads\Crossfire_downloader.exe [x] -> VYMAZÁNO
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: ST9160823ASG ATA Device +++++
--- User ---
[MBR] 62b76ab3e5d824c1dc45da48e4dd6257
[BSP] 65d6b42910fe61d652c1f1a16ecd8383 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 200 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 411648 | Size: 152425 Mo
User = LL1 ... OK!
User = LL2 ... OK!
+++++ PhysicalDrive1: ST9160823ASG ATA Device +++++
--- User ---
[MBR] 2a893b10550d1ad5ebb33922e82c4805
[BSP] 33a07a59d299ab4ea9f4ab0156f9d86f : Windows XP MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 8064 | Size: 30156 Mo
User = LL1 ... OK!
Error reading LL2 MBR!
Dokončeno : << RKreport[0]_D_08112013_102548.txt >>
RKreport[0]_S_08102013_200302.txt;RKreport[0]_S_08112013_102505.txt
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Mufíček [Práva správce]
Mód : Odebrat -- Datum : 08/11/2013 10:25:48
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ POL] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 7 ¤¤¤
[V2][SUSP UNIC] {02410FA5-3B9A-47B4-80FA-D20D0F008057} : C:\Users\Mufíček\Downloads\Crossfire_downloader(5).exe [x] -> VYMAZÁNO
[V2][SUSP UNIC] {1D294413-3FFF-4F27-BD43-DBD33AB4F7BB} : C:\Users\Mufíček\Downloads\Crossfire_downloader(1).exe [x] -> VYMAZÁNO
[V2][SUSP UNIC] {732343A3-4B9E-4738-8BFD-C013BCDDDD11} : C:\Users\Mufíček\Downloads\Crossfire_downloader.exe [x] -> VYMAZÁNO
[V2][SUSP UNIC] {90DA6DEB-18DC-4E4E-9A88-077A9301A961} : C:\Users\Mufíček\Downloads\Crossfire_downloader(5).exe [x] -> VYMAZÁNO
[V2][SUSP UNIC] {B1BAEB2F-21FB-45AD-8D54-AB713D0779AF} : C:\Users\Mufíček\Downloads\Crossfire_downloader(1).exe [x] -> VYMAZÁNO
[V2][SUSP UNIC] {CFD96787-D7F9-45F0-8768-1648C961D3B5} : C:\Users\Mufíček\Downloads\Crossfire_downloader.exe [x] -> VYMAZÁNO
[V2][SUSP UNIC] {F86CACD7-C33D-4BF6-B348-0FE4B9D5C32B} : C:\Users\Mufíček\Downloads\Crossfire_downloader.exe [x] -> VYMAZÁNO
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: ST9160823ASG ATA Device +++++
--- User ---
[MBR] 62b76ab3e5d824c1dc45da48e4dd6257
[BSP] 65d6b42910fe61d652c1f1a16ecd8383 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 200 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 411648 | Size: 152425 Mo
User = LL1 ... OK!
User = LL2 ... OK!
+++++ PhysicalDrive1: ST9160823ASG ATA Device +++++
--- User ---
[MBR] 2a893b10550d1ad5ebb33922e82c4805
[BSP] 33a07a59d299ab4ea9f4ab0156f9d86f : Windows XP MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 8064 | Size: 30156 Mo
User = LL1 ... OK!
Error reading LL2 MBR!
Dokončeno : << RKreport[0]_D_08112013_102548.txt >>
RKreport[0]_S_08102013_200302.txt;RKreport[0]_S_08112013_102505.txt
-
- Level 3.5
- Příspěvky: 740
- Registrován: prosinec 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
10:32:46.0068 4548 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
10:32:46.0239 4548 ============================================================
10:32:46.0239 4548 Current date / time: 2013/08/11 10:32:46.0239
10:32:46.0239 4548 SystemInfo:
10:32:46.0239 4548
10:32:46.0239 4548 OS Version: 6.1.7601 ServicePack: 1.0
10:32:46.0239 4548 Product type: Workstation
10:32:46.0239 4548 ComputerName: DELL
10:32:46.0239 4548 UserName: Mufíček
10:32:46.0239 4548 Windows directory: C:\Windows
10:32:46.0239 4548 System windows directory: C:\Windows
10:32:46.0239 4548 Running under WOW64
10:32:46.0239 4548 Processor architecture: Intel x64
10:32:46.0239 4548 Number of processors: 2
10:32:46.0239 4548 Page size: 0x1000
10:32:46.0239 4548 Boot type: Normal boot
10:32:46.0239 4548 ============================================================
10:32:47.0300 4548 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
10:32:47.0331 4548 Drive \Device\Harddisk1\DR1 - Size: 0x75D000000 (29.45 Gb), SectorSize: 0x200, Cylinders: 0xF04, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
10:32:47.0347 4548 ============================================================
10:32:47.0347 4548 \Device\Harddisk0\DR0:
10:32:47.0347 4548 MBR partitions:
10:32:47.0347 4548 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x64000
10:32:47.0347 4548 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x64800, BlocksNum 0x129B4800
10:32:47.0347 4548 \Device\Harddisk1\DR1:
10:32:47.0347 4548 MBR partitions:
10:32:47.0347 4548 \Device\Harddisk1\DR1\Partition1: MBR, Type 0xC, StartLBA 0x1F80, BlocksNum 0x3AE6080
10:32:47.0347 4548 ============================================================
10:32:47.0378 4548 C: <-> \Device\Harddisk0\DR0\Partition2
10:32:47.0378 4548 ============================================================
10:32:47.0378 4548 Initialize success
10:32:47.0378 4548 ============================================================
10:32:48.0283 4172 ============================================================
10:32:48.0283 4172 Scan started
10:32:48.0283 4172 Mode: Manual;
10:32:48.0283 4172 ============================================================
10:32:49.0578 4172 ================ Scan system memory ========================
10:32:49.0578 4172 System memory - ok
10:32:49.0578 4172 ================ Scan services =============================
10:32:49.0999 4172 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
10:32:50.0014 4172 1394ohci - ok
10:32:50.0046 4172 [ C31715C4BCB01B73F6B9F4F445C6BD25 ] AbilisT C:\Windows\system32\Drivers\AbilisBdaTuner.sys
10:32:50.0046 4172 AbilisT - ok
10:32:50.0077 4172 [ 1CFFE9C06E66A57DAE1452E449A58240 ] Accelerometer C:\Windows\system32\drivers\Accelerometer.sys
10:32:50.0077 4172 Accelerometer - ok
10:32:50.0108 4172 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
10:32:50.0108 4172 ACPI - ok
10:32:50.0139 4172 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
10:32:50.0139 4172 AcpiPmi - ok
10:32:50.0248 4172 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
10:32:50.0248 4172 AdobeARMservice - ok
10:32:50.0389 4172 [ 476BB014F3F68C0C15EDDD5B444DA8FF ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
10:32:50.0389 4172 AdobeFlashPlayerUpdateSvc - ok
10:32:50.0436 4172 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
10:32:50.0451 4172 adp94xx - ok
10:32:50.0482 4172 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
10:32:50.0498 4172 adpahci - ok
10:32:50.0514 4172 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
10:32:50.0514 4172 adpu320 - ok
10:32:50.0545 4172 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
10:32:50.0545 4172 AeLookupSvc - ok
10:32:50.0607 4172 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
10:32:50.0607 4172 AFD - ok
10:32:50.0670 4172 [ 98022774D9930ECBB292E70DB7601DF6 ] AgereSoftModem C:\Windows\system32\DRIVERS\agrsm64.sys
10:32:50.0685 4172 AgereSoftModem - ok
10:32:50.0701 4172 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
10:32:50.0701 4172 agp440 - ok
10:32:50.0716 4172 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
10:32:50.0716 4172 ALG - ok
10:32:50.0732 4172 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
10:32:50.0748 4172 aliide - ok
10:32:50.0748 4172 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
10:32:50.0748 4172 amdide - ok
10:32:50.0763 4172 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
10:32:50.0763 4172 AmdK8 - ok
10:32:50.0779 4172 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
10:32:50.0779 4172 AmdPPM - ok
10:32:50.0810 4172 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
10:32:50.0810 4172 amdsata - ok
10:32:50.0841 4172 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
10:32:50.0841 4172 amdsbs - ok
10:32:50.0872 4172 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
10:32:50.0872 4172 amdxata - ok
10:32:50.0904 4172 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
10:32:50.0904 4172 AppID - ok
10:32:50.0935 4172 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
10:32:50.0935 4172 AppIDSvc - ok
10:32:50.0982 4172 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
10:32:50.0982 4172 Appinfo - ok
10:32:51.0044 4172 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
10:32:51.0044 4172 arc - ok
10:32:51.0075 4172 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
10:32:51.0075 4172 arcsas - ok
10:32:51.0169 4172 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
10:32:51.0169 4172 aspnet_state - ok
10:32:51.0216 4172 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
10:32:51.0216 4172 AsyncMac - ok
10:32:51.0231 4172 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
10:32:51.0231 4172 atapi - ok
10:32:51.0262 4172 [ F1AC6C48F5DDA6AE94A8AF696E09733D ] ATSwpWDF C:\Windows\system32\Drivers\ATSwpWDF.sys
10:32:51.0278 4172 ATSwpWDF - ok
10:32:51.0325 4172 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
10:32:51.0340 4172 AudioEndpointBuilder - ok
10:32:51.0372 4172 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
10:32:51.0372 4172 AudioSrv - ok
10:32:51.0403 4172 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
10:32:51.0403 4172 AxInstSV - ok
10:32:51.0450 4172 [ 9F4320BA8E7CE2342517B182A2F2C0E6 ] azvusb C:\Windows\system32\DRIVERS\azvusb.sys
10:32:51.0450 4172 azvusb - ok
10:32:51.0496 4172 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
10:32:51.0496 4172 b06bdrv - ok
10:32:51.0528 4172 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
10:32:51.0528 4172 b57nd60a - ok
10:32:51.0652 4172 [ FB4FDA64F2E8552EAEB5986C3F34462C ] BCM43XX C:\Windows\system32\DRIVERS\bcmwl664.sys
10:32:51.0668 4172 BCM43XX - ok
10:32:51.0699 4172 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
10:32:51.0699 4172 BDESVC - ok
10:32:51.0746 4172 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
10:32:51.0746 4172 Beep - ok
10:32:51.0793 4172 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
10:32:51.0808 4172 BFE - ok
10:32:51.0855 4172 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
10:32:51.0871 4172 BITS - ok
10:32:51.0902 4172 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
10:32:51.0902 4172 blbdrive - ok
10:32:51.0949 4172 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
10:32:51.0949 4172 bowser - ok
10:32:51.0996 4172 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
10:32:51.0996 4172 BrFiltLo - ok
10:32:52.0011 4172 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
10:32:52.0011 4172 BrFiltUp - ok
10:32:52.0042 4172 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
10:32:52.0042 4172 BridgeMP - ok
10:32:52.0074 4172 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
10:32:52.0074 4172 Browser - ok
10:32:52.0089 4172 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
10:32:52.0089 4172 Brserid - ok
10:32:52.0120 4172 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
10:32:52.0120 4172 BrSerWdm - ok
10:32:52.0136 4172 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
10:32:52.0136 4172 BrUsbMdm - ok
10:32:52.0152 4172 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
10:32:52.0152 4172 BrUsbSer - ok
10:32:52.0198 4172 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys
10:32:52.0198 4172 BthEnum - ok
10:32:52.0230 4172 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
10:32:52.0230 4172 BTHMODEM - ok
10:32:52.0245 4172 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
10:32:52.0245 4172 BthPan - ok
10:32:52.0276 4172 [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
10:32:52.0292 4172 BTHPORT - ok
10:32:52.0323 4172 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
10:32:52.0323 4172 bthserv - ok
10:32:52.0339 4172 [ F188B7394D81010767B6DF3178519A37 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
10:32:52.0339 4172 BTHUSB - ok
10:32:52.0370 4172 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
10:32:52.0370 4172 cdfs - ok
10:32:52.0417 4172 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
10:32:52.0417 4172 cdrom - ok
10:32:52.0432 4172 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
10:32:52.0448 4172 CertPropSvc - ok
10:32:52.0464 4172 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
10:32:52.0464 4172 circlass - ok
10:32:52.0510 4172 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
10:32:52.0510 4172 CLFS - ok
10:32:52.0573 4172 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
10:32:52.0573 4172 clr_optimization_v2.0.50727_32 - ok
10:32:52.0620 4172 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
10:32:52.0620 4172 clr_optimization_v2.0.50727_64 - ok
10:32:52.0682 4172 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
10:32:52.0682 4172 clr_optimization_v4.0.30319_32 - ok
10:32:52.0729 4172 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
10:32:52.0729 4172 clr_optimization_v4.0.30319_64 - ok
10:32:52.0760 4172 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
10:32:52.0760 4172 CmBatt - ok
10:32:52.0776 4172 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
10:32:52.0776 4172 cmdide - ok
10:32:52.0822 4172 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
10:32:52.0822 4172 CNG - ok
10:32:52.0838 4172 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
10:32:52.0838 4172 Compbatt - ok
10:32:52.0854 4172 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
10:32:52.0854 4172 CompositeBus - ok
10:32:52.0854 4172 COMSysApp - ok
10:32:52.0885 4172 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
10:32:52.0885 4172 crcdisk - ok
10:32:52.0916 4172 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
10:32:52.0916 4172 CryptSvc - ok
10:32:52.0963 4172 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
10:32:52.0963 4172 DcomLaunch - ok
10:32:53.0010 4172 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
10:32:53.0010 4172 defragsvc - ok
10:32:53.0041 4172 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
10:32:53.0041 4172 DfsC - ok
10:32:53.0072 4172 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
10:32:53.0088 4172 Dhcp - ok
10:32:53.0103 4172 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
10:32:53.0103 4172 discache - ok
10:32:53.0166 4172 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
10:32:53.0166 4172 Disk - ok
10:32:53.0197 4172 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
10:32:53.0197 4172 Dnscache - ok
10:32:53.0244 4172 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
10:32:53.0244 4172 dot3svc - ok
10:32:53.0275 4172 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
10:32:53.0275 4172 DPS - ok
10:32:53.0306 4172 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
10:32:53.0306 4172 drmkaud - ok
10:32:53.0368 4172 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
10:32:53.0384 4172 DXGKrnl - ok
10:32:53.0431 4172 [ 416A2007878ED1D6FC5DDDB9E1F6DB3E ] e1express C:\Windows\system32\DRIVERS\e1e6032e.sys
10:32:53.0431 4172 e1express - ok
10:32:53.0446 4172 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
10:32:53.0446 4172 EapHost - ok
10:32:53.0571 4172 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
10:32:53.0587 4172 ebdrv - ok
10:32:53.0634 4172 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
10:32:53.0634 4172 EFS - ok
10:32:53.0696 4172 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
10:32:53.0712 4172 ehRecvr - ok
10:32:53.0727 4172 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
10:32:53.0743 4172 ehSched - ok
10:32:53.0774 4172 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
10:32:53.0774 4172 elxstor - ok
10:32:53.0790 4172 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
10:32:53.0790 4172 ErrDev - ok
10:32:53.0836 4172 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
10:32:53.0836 4172 EventSystem - ok
10:32:53.0868 4172 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
10:32:53.0868 4172 exfat - ok
10:32:53.0946 4172 FairplayKD - ok
10:32:53.0977 4172 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
10:32:53.0992 4172 fastfat - ok
10:32:54.0039 4172 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
10:32:54.0055 4172 Fax - ok
10:32:54.0086 4172 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
10:32:54.0086 4172 fdc - ok
10:32:54.0102 4172 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
10:32:54.0102 4172 fdPHost - ok
10:32:54.0117 4172 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
10:32:54.0117 4172 FDResPub - ok
10:32:54.0133 4172 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
10:32:54.0133 4172 FileInfo - ok
10:32:54.0148 4172 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
10:32:54.0148 4172 Filetrace - ok
10:32:54.0148 4172 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
10:32:54.0148 4172 flpydisk - ok
10:32:54.0164 4172 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
10:32:54.0164 4172 FltMgr - ok
10:32:54.0226 4172 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
10:32:54.0242 4172 FontCache - ok
10:32:54.0273 4172 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
10:32:54.0273 4172 FontCache3.0.0.0 - ok
10:32:54.0289 4172 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
10:32:54.0289 4172 FsDepends - ok
10:32:54.0336 4172 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
10:32:54.0336 4172 Fs_Rec - ok
10:32:54.0367 4172 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
10:32:54.0367 4172 fvevol - ok
10:32:54.0414 4172 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
10:32:54.0414 4172 gagp30kx - ok
10:32:54.0445 4172 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
10:32:54.0445 4172 gpsvc - ok
10:32:54.0554 4172 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
10:32:54.0554 4172 gupdate - ok
10:32:54.0570 4172 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
10:32:54.0570 4172 gupdatem - ok
10:32:54.0601 4172 [ 1E6438D4EA6E1174A3B3B1EDC4DE660B ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
10:32:54.0601 4172 hamachi - ok
10:32:54.0616 4172 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
10:32:54.0616 4172 hcw85cir - ok
10:32:54.0648 4172 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
10:32:54.0648 4172 HdAudAddService - ok
10:32:54.0663 4172 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
10:32:54.0663 4172 HDAudBus - ok
10:32:54.0679 4172 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
10:32:54.0679 4172 HidBatt - ok
10:32:54.0694 4172 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
10:32:54.0694 4172 HidBth - ok
10:32:54.0710 4172 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
10:32:54.0710 4172 HidIr - ok
10:32:54.0741 4172 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
10:32:54.0741 4172 hidserv - ok
10:32:54.0757 4172 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
10:32:54.0757 4172 HidUsb - ok
10:32:54.0835 4172 [ 31AE58E64028E69BAD3328352FB8B403 ] HiPatchService C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
10:32:54.0835 4172 HiPatchService - ok
10:32:54.0866 4172 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
10:32:54.0866 4172 hkmsvc - ok
10:32:54.0913 4172 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
10:32:54.0913 4172 HomeGroupListener - ok
10:32:54.0960 4172 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
10:32:54.0960 4172 HomeGroupProvider - ok
10:32:54.0991 4172 [ 05712FDDBD45A5864EB326FAABC6A4E3 ] hpdskflt C:\Windows\system32\drivers\hpdskflt.sys
10:32:54.0991 4172 hpdskflt - ok
10:32:55.0022 4172 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
10:32:55.0022 4172 HpSAMD - ok
10:32:55.0053 4172 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
10:32:55.0053 4172 HTTP - ok
10:32:55.0069 4172 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
10:32:55.0069 4172 hwpolicy - ok
10:32:55.0084 4172 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
10:32:55.0084 4172 i8042prt - ok
10:32:55.0116 4172 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
10:32:55.0131 4172 iaStorV - ok
10:32:55.0194 4172 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
10:32:55.0209 4172 idsvc - ok
10:32:55.0396 4172 [ A87261EF1546325B559374F5689CF5BC ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
10:32:55.0428 4172 igfx - ok
10:32:55.0443 4172 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
10:32:55.0443 4172 iirsp - ok
10:32:55.0490 4172 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
10:32:55.0506 4172 IKEEXT - ok
10:32:55.0537 4172 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
10:32:55.0537 4172 intelide - ok
10:32:55.0552 4172 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
10:32:55.0552 4172 intelppm - ok
10:32:55.0584 4172 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
10:32:55.0584 4172 IPBusEnum - ok
10:32:55.0599 4172 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
10:32:55.0599 4172 IpFilterDriver - ok
10:32:55.0630 4172 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
10:32:55.0646 4172 iphlpsvc - ok
10:32:55.0662 4172 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
10:32:55.0662 4172 IPMIDRV - ok
10:32:55.0662 4172 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
10:32:55.0662 4172 IPNAT - ok
10:32:55.0693 4172 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
10:32:55.0693 4172 IRENUM - ok
10:32:55.0708 4172 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
10:32:55.0708 4172 isapnp - ok
10:32:55.0724 4172 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
10:32:55.0724 4172 iScsiPrt - ok
10:32:55.0740 4172 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
10:32:55.0740 4172 kbdclass - ok
10:32:55.0755 4172 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
10:32:55.0755 4172 kbdhid - ok
10:32:55.0771 4172 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
10:32:55.0771 4172 KeyIso - ok
10:32:55.0802 4172 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
10:32:55.0802 4172 KSecDD - ok
10:32:55.0818 4172 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
10:32:55.0833 4172 KSecPkg - ok
10:32:55.0833 4172 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
10:32:55.0833 4172 ksthunk - ok
10:32:55.0864 4172 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
10:32:55.0880 4172 KtmRm - ok
10:32:55.0911 4172 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\System32\srvsvc.dll
10:32:55.0911 4172 LanmanServer - ok
10:32:55.0927 4172 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
10:32:55.0942 4172 LanmanWorkstation - ok
10:32:55.0958 4172 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
10:32:55.0958 4172 lltdio - ok
10:32:55.0974 4172 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
10:32:55.0974 4172 lltdsvc - ok
10:32:56.0005 4172 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
10:32:56.0005 4172 lmhosts - ok
10:32:56.0036 4172 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
10:32:56.0036 4172 LSI_FC - ok
10:32:56.0067 4172 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
10:32:56.0067 4172 LSI_SAS - ok
10:32:56.0083 4172 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
10:32:56.0083 4172 LSI_SAS2 - ok
10:32:56.0098 4172 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
10:32:56.0098 4172 LSI_SCSI - ok
10:32:56.0130 4172 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
10:32:56.0130 4172 luafv - ok
10:32:56.0176 4172 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
10:32:56.0176 4172 MBAMProtector - ok
10:32:56.0254 4172 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
10:32:56.0270 4172 MBAMScheduler - ok
10:32:56.0332 4172 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
10:32:56.0332 4172 MBAMService - ok
10:32:56.0364 4172 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
10:32:56.0379 4172 Mcx2Svc - ok
10:32:56.0395 4172 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
10:32:56.0395 4172 megasas - ok
10:32:56.0426 4172 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
10:32:56.0442 4172 MegaSR - ok
10:32:56.0457 4172 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
10:32:56.0457 4172 MMCSS - ok
10:32:56.0488 4172 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
10:32:56.0488 4172 Modem - ok
10:32:56.0504 4172 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
10:32:56.0504 4172 monitor - ok
10:32:56.0520 4172 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
10:32:56.0520 4172 mouclass - ok
10:32:56.0535 4172 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
10:32:56.0535 4172 mouhid - ok
10:32:56.0551 4172 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
10:32:56.0551 4172 mountmgr - ok
10:32:56.0598 4172 [ E6DB6C61739E18906DC2C4191F6EDEA2 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
10:32:56.0598 4172 MozillaMaintenance - ok
10:32:56.0613 4172 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
10:32:56.0613 4172 mpio - ok
10:32:56.0629 4172 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
10:32:56.0629 4172 mpsdrv - ok
10:32:56.0676 4172 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
10:32:56.0691 4172 MpsSvc - ok
10:32:56.0707 4172 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
10:32:56.0722 4172 MRxDAV - ok
10:32:56.0754 4172 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
10:32:56.0754 4172 mrxsmb - ok
10:32:56.0785 4172 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
10:32:56.0785 4172 mrxsmb10 - ok
10:32:56.0800 4172 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
10:32:56.0800 4172 mrxsmb20 - ok
10:32:56.0816 4172 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
10:32:56.0816 4172 msahci - ok
10:32:56.0832 4172 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
10:32:56.0832 4172 msdsm - ok
10:32:56.0863 4172 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
10:32:56.0863 4172 MSDTC - ok
10:32:56.0894 4172 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
10:32:56.0894 4172 Msfs - ok
10:32:56.0894 4172 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
10:32:56.0894 4172 mshidkmdf - ok
10:32:56.0910 4172 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
10:32:56.0910 4172 msisadrv - ok
10:32:56.0941 4172 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
10:32:56.0941 4172 MSiSCSI - ok
10:32:56.0941 4172 msiserver - ok
10:32:56.0956 4172 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
10:32:56.0956 4172 MSKSSRV - ok
10:32:56.0972 4172 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
10:32:56.0972 4172 MSPCLOCK - ok
10:32:56.0988 4172 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
10:32:56.0988 4172 MSPQM - ok
10:32:57.0003 4172 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
10:32:57.0003 4172 MsRPC - ok
10:32:57.0019 4172 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
10:32:57.0019 4172 mssmbios - ok
10:32:57.0034 4172 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
10:32:57.0034 4172 MSTEE - ok
10:32:57.0050 4172 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
10:32:57.0050 4172 MTConfig - ok
10:32:57.0050 4172 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
10:32:57.0050 4172 Mup - ok
10:32:57.0097 4172 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
10:32:57.0097 4172 napagent - ok
10:32:57.0159 4172 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
10:32:57.0159 4172 NativeWifiP - ok
10:32:57.0222 4172 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
10:32:57.0237 4172 NDIS - ok
10:32:57.0253 4172 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
10:32:57.0253 4172 NdisCap - ok
10:32:57.0284 4172 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
10:32:57.0284 4172 NdisTapi - ok
10:32:57.0300 4172 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
10:32:57.0300 4172 Ndisuio - ok
10:32:57.0331 4172 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
10:32:57.0331 4172 NdisWan - ok
10:32:57.0331 4172 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
10:32:57.0331 4172 NDProxy - ok
10:32:57.0346 4172 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
10:32:57.0346 4172 NetBIOS - ok
10:32:57.0346 4172 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
10:32:57.0362 4172 NetBT - ok
10:32:57.0378 4172 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
10:32:57.0378 4172 Netlogon - ok
10:32:57.0424 4172 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
10:32:57.0424 4172 Netman - ok
10:32:57.0471 4172 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:32:57.0471 4172 NetMsmqActivator - ok
10:32:57.0487 4172 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:32:57.0487 4172 NetPipeActivator - ok
10:32:57.0518 4172 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
10:32:57.0518 4172 netprofm - ok
10:32:57.0534 4172 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:32:57.0534 4172 NetTcpActivator - ok
10:32:57.0549 4172 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:32:57.0549 4172 NetTcpPortSharing - ok
10:32:57.0596 4172 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
10:32:57.0596 4172 nfrd960 - ok
10:32:57.0627 4172 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
10:32:57.0627 4172 NlaSvc - ok
10:32:57.0643 4172 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
10:32:57.0643 4172 Npfs - ok
10:32:57.0674 4172 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
10:32:57.0674 4172 nsi - ok
10:32:57.0690 4172 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
10:32:57.0690 4172 nsiproxy - ok
10:32:57.0768 4172 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
10:32:57.0783 4172 Ntfs - ok
10:32:57.0799 4172 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
10:32:57.0799 4172 Null - ok
10:32:58.0158 4172 [ D52CB937D5C23935F732B5D0BBAFF2D7 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
10:32:58.0220 4172 nvlddmkm - ok
10:32:58.0298 4172 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
10:32:58.0314 4172 nvraid - ok
10:32:58.0345 4172 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
10:32:58.0345 4172 nvstor - ok
10:32:58.0407 4172 [ 3227EB0ECFBB7CB7F667AC2FFFCDC751 ] nvsvc C:\Windows\system32\nvvsvc.exe
10:32:58.0423 4172 nvsvc - ok
10:32:58.0454 4172 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
10:32:58.0454 4172 nv_agp - ok
10:32:58.0470 4172 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
10:32:58.0470 4172 ohci1394 - ok
10:32:58.0516 4172 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
10:32:58.0516 4172 p2pimsvc - ok
10:32:58.0548 4172 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
10:32:58.0548 4172 p2psvc - ok
10:32:58.0579 4172 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys
10:32:58.0579 4172 Parport - ok
10:32:58.0610 4172 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
10:32:58.0626 4172 partmgr - ok
10:32:58.0641 4172 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
10:32:58.0657 4172 PcaSvc - ok
10:32:58.0672 4172 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
10:32:58.0672 4172 pci - ok
10:32:58.0688 4172 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
10:32:58.0688 4172 pciide - ok
10:32:58.0704 4172 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
10:32:58.0704 4172 pcmcia - ok
10:32:58.0719 4172 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
10:32:58.0719 4172 pcw - ok
10:32:58.0750 4172 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
10:32:58.0750 4172 PEAUTH - ok
10:32:58.0813 4172 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
10:32:58.0828 4172 PerfHost - ok
10:32:58.0906 4172 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
10:32:58.0922 4172 pla - ok
10:32:58.0969 4172 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
10:32:58.0984 4172 PlugPlay - ok
10:32:59.0000 4172 PnkBstrA - ok
10:32:59.0031 4172 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
10:32:59.0031 4172 PNRPAutoReg - ok
10:32:59.0047 4172 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
10:32:59.0047 4172 PNRPsvc - ok
10:32:59.0094 4172 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
10:32:59.0094 4172 PolicyAgent - ok
10:32:59.0140 4172 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
10:32:59.0140 4172 Power - ok
10:32:59.0172 4172 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
10:32:59.0172 4172 PptpMiniport - ok
10:32:59.0187 4172 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
10:32:59.0187 4172 Processor - ok
10:32:59.0218 4172 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
10:32:59.0234 4172 ProfSvc - ok
10:32:59.0250 4172 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
10:32:59.0250 4172 ProtectedStorage - ok
10:32:59.0281 4172 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
10:32:59.0281 4172 Psched - ok
10:32:59.0343 4172 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
10:32:59.0343 4172 ql2300 - ok
10:32:59.0374 4172 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
10:32:59.0374 4172 ql40xx - ok
10:32:59.0421 4172 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
10:32:59.0421 4172 QWAVE - ok
10:32:59.0452 4172 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
10:32:59.0452 4172 QWAVEdrv - ok
10:32:59.0452 4172 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
10:32:59.0452 4172 RasAcd - ok
10:32:59.0499 4172 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
10:32:59.0499 4172 RasAgileVpn - ok
10:32:59.0515 4172 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
10:32:59.0515 4172 RasAuto - ok
10:32:59.0515 4172 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
10:32:59.0530 4172 Rasl2tp - ok
10:32:59.0562 4172 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
10:32:59.0562 4172 RasMan - ok
10:32:59.0562 4172 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
10:32:59.0562 4172 RasPppoe - ok
10:32:59.0593 4172 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
10:32:59.0593 4172 RasSstp - ok
10:32:59.0608 4172 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
10:32:59.0608 4172 rdbss - ok
10:32:59.0624 4172 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\drivers\rdpbus.sys
10:32:59.0624 4172 rdpbus - ok
10:32:59.0640 4172 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
10:32:59.0640 4172 RDPCDD - ok
10:32:59.0655 4172 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
10:32:59.0655 4172 RDPENCDD - ok
10:32:59.0671 4172 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
10:32:59.0671 4172 RDPREFMP - ok
10:32:59.0702 4172 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
10:32:59.0702 4172 RDPWD - ok
10:32:59.0733 4172 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
10:32:59.0733 4172 rdyboost - ok
10:32:59.0764 4172 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
10:32:59.0764 4172 RemoteAccess - ok
10:32:59.0796 4172 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
10:32:59.0796 4172 RemoteRegistry - ok
10:32:59.0827 4172 [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
10:32:59.0842 4172 RFCOMM - ok
10:32:59.0858 4172 [ F45D6E12EB99A668F52201637C67C8F5 ] rimmptsk C:\Windows\system32\DRIVERS\rimmpx64.sys
10:32:59.0858 4172 rimmptsk - ok
10:32:59.0889 4172 [ 82356915157AB59064A24993AE5BE8AA ] rimsptsk C:\Windows\system32\DRIVERS\rimspx64.sys
10:32:59.0905 4172 rimsptsk - ok
10:32:59.0952 4172 [ D018844DC53D8428410A2FEEEEE9373E ] rismcx64 C:\Windows\system32\DRIVERS\rismcx64.sys
10:32:59.0952 4172 rismcx64 - ok
10:33:00.0061 4172 [ C01A92A546854A3E34103B642F0F94A1 ] rismxdp C:\Windows\system32\DRIVERS\rixdpx64.sys
10:33:00.0061 4172 rismxdp - ok
10:33:00.0123 4172 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
10:33:00.0123 4172 RpcEptMapper - ok
10:33:00.0154 4172 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
10:33:00.0154 4172 RpcLocator - ok
10:33:00.0186 4172 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
10:33:00.0201 4172 RpcSs - ok
10:33:00.0232 4172 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
10:33:00.0232 4172 rspndr - ok
10:33:00.0295 4172 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
10:33:00.0295 4172 SamSs - ok
10:33:00.0326 4172 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
10:33:00.0326 4172 sbp2port - ok
10:33:00.0357 4172 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
10:33:00.0373 4172 SCardSvr - ok
10:33:00.0388 4172 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
10:33:00.0388 4172 scfilter - ok
10:33:00.0435 4172 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
10:33:00.0451 4172 Schedule - ok
10:33:00.0482 4172 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
10:33:00.0482 4172 SCPolicySvc - ok
10:33:00.0513 4172 [ 111E0EBC0AD79CB0FA014B907B231CF0 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
10:33:00.0513 4172 sdbus - ok
10:33:00.0529 4172 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
10:33:00.0529 4172 SDRSVC - ok
10:33:00.0544 4172 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
10:33:00.0544 4172 secdrv - ok
10:33:00.0560 4172 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
10:33:00.0560 4172 seclogon - ok
10:33:00.0576 4172 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
10:33:00.0576 4172 SENS - ok
10:33:00.0576 4172 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
10:33:00.0576 4172 SensrSvc - ok
10:33:00.0591 4172 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\drivers\serenum.sys
10:33:00.0591 4172 Serenum - ok
10:33:00.0622 4172 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\drivers\serial.sys
10:33:00.0622 4172 Serial - ok
10:33:00.0638 4172 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
10:33:00.0638 4172 sermouse - ok
10:33:00.0669 4172 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
10:33:00.0669 4172 SessionEnv - ok
10:33:00.0685 4172 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
10:33:00.0685 4172 sffdisk - ok
10:33:00.0685 4172 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
10:33:00.0685 4172 sffp_mmc - ok
10:33:00.0685 4172 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
10:33:00.0685 4172 sffp_sd - ok
10:33:00.0700 4172 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
10:33:00.0700 4172 sfloppy - ok
10:33:00.0732 4172 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
10:33:00.0732 4172 SharedAccess - ok
10:33:00.0763 4172 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
10:33:00.0763 4172 ShellHWDetection - ok
10:33:00.0794 4172 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
10:33:00.0794 4172 SiSRaid2 - ok
10:33:00.0810 4172 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
10:33:00.0810 4172 SiSRaid4 - ok
10:33:00.0997 4172 [ AE40D1BC6FB02A5625516AD74CA9A309 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
10:33:01.0028 4172 Skype C2C Service - ok
10:33:01.0137 4172 [ F2B755D3835089590E8113F48AA931F7 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
10:33:01.0137 4172 SkypeUpdate - ok
10:33:01.0184 4172 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
10:33:01.0184 4172 Smb - ok
10:33:01.0231 4172 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
10:33:01.0231 4172 SNMPTRAP - ok
10:33:01.0262 4172 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
10:33:01.0262 4172 spldr - ok
10:33:01.0309 4172 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
10:33:01.0309 4172 Spooler - ok
10:33:01.0418 4172 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
10:33:01.0449 4172 sppsvc - ok
10:33:01.0465 4172 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
10:33:01.0465 4172 sppuinotify - ok
10:33:01.0512 4172 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
10:33:01.0512 4172 srv - ok
10:33:01.0527 4172 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
10:33:01.0527 4172 srv2 - ok
10:33:01.0558 4172 [ 0C4540311E11664B245A263E1154CEF8 ] SrvHsfHDA C:\Windows\system32\DRIVERS\VSTAZL6.SYS
10:33:01.0558 4172 SrvHsfHDA - ok
10:33:01.0605 4172 [ 02071D207A9858FBE3A48CBFD59C4A04 ] SrvHsfV92 C:\Windows\system32\DRIVERS\VSTDPV6.SYS
10:33:01.0621 4172 SrvHsfV92 - ok
10:33:01.0636 4172 [ 18E40C245DBFAF36FD0134A7EF2DF396 ] SrvHsfWinac C:\Windows\system32\DRIVERS\VSTCNXT6.SYS
10:33:01.0636 4172 SrvHsfWinac - ok
10:33:01.0668 4172 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
10:33:01.0668 4172 srvnet - ok
10:32:46.0239 4548 ============================================================
10:32:46.0239 4548 Current date / time: 2013/08/11 10:32:46.0239
10:32:46.0239 4548 SystemInfo:
10:32:46.0239 4548
10:32:46.0239 4548 OS Version: 6.1.7601 ServicePack: 1.0
10:32:46.0239 4548 Product type: Workstation
10:32:46.0239 4548 ComputerName: DELL
10:32:46.0239 4548 UserName: Mufíček
10:32:46.0239 4548 Windows directory: C:\Windows
10:32:46.0239 4548 System windows directory: C:\Windows
10:32:46.0239 4548 Running under WOW64
10:32:46.0239 4548 Processor architecture: Intel x64
10:32:46.0239 4548 Number of processors: 2
10:32:46.0239 4548 Page size: 0x1000
10:32:46.0239 4548 Boot type: Normal boot
10:32:46.0239 4548 ============================================================
10:32:47.0300 4548 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
10:32:47.0331 4548 Drive \Device\Harddisk1\DR1 - Size: 0x75D000000 (29.45 Gb), SectorSize: 0x200, Cylinders: 0xF04, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
10:32:47.0347 4548 ============================================================
10:32:47.0347 4548 \Device\Harddisk0\DR0:
10:32:47.0347 4548 MBR partitions:
10:32:47.0347 4548 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x64000
10:32:47.0347 4548 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x64800, BlocksNum 0x129B4800
10:32:47.0347 4548 \Device\Harddisk1\DR1:
10:32:47.0347 4548 MBR partitions:
10:32:47.0347 4548 \Device\Harddisk1\DR1\Partition1: MBR, Type 0xC, StartLBA 0x1F80, BlocksNum 0x3AE6080
10:32:47.0347 4548 ============================================================
10:32:47.0378 4548 C: <-> \Device\Harddisk0\DR0\Partition2
10:32:47.0378 4548 ============================================================
10:32:47.0378 4548 Initialize success
10:32:47.0378 4548 ============================================================
10:32:48.0283 4172 ============================================================
10:32:48.0283 4172 Scan started
10:32:48.0283 4172 Mode: Manual;
10:32:48.0283 4172 ============================================================
10:32:49.0578 4172 ================ Scan system memory ========================
10:32:49.0578 4172 System memory - ok
10:32:49.0578 4172 ================ Scan services =============================
10:32:49.0999 4172 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
10:32:50.0014 4172 1394ohci - ok
10:32:50.0046 4172 [ C31715C4BCB01B73F6B9F4F445C6BD25 ] AbilisT C:\Windows\system32\Drivers\AbilisBdaTuner.sys
10:32:50.0046 4172 AbilisT - ok
10:32:50.0077 4172 [ 1CFFE9C06E66A57DAE1452E449A58240 ] Accelerometer C:\Windows\system32\drivers\Accelerometer.sys
10:32:50.0077 4172 Accelerometer - ok
10:32:50.0108 4172 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
10:32:50.0108 4172 ACPI - ok
10:32:50.0139 4172 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
10:32:50.0139 4172 AcpiPmi - ok
10:32:50.0248 4172 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
10:32:50.0248 4172 AdobeARMservice - ok
10:32:50.0389 4172 [ 476BB014F3F68C0C15EDDD5B444DA8FF ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
10:32:50.0389 4172 AdobeFlashPlayerUpdateSvc - ok
10:32:50.0436 4172 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
10:32:50.0451 4172 adp94xx - ok
10:32:50.0482 4172 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
10:32:50.0498 4172 adpahci - ok
10:32:50.0514 4172 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
10:32:50.0514 4172 adpu320 - ok
10:32:50.0545 4172 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
10:32:50.0545 4172 AeLookupSvc - ok
10:32:50.0607 4172 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
10:32:50.0607 4172 AFD - ok
10:32:50.0670 4172 [ 98022774D9930ECBB292E70DB7601DF6 ] AgereSoftModem C:\Windows\system32\DRIVERS\agrsm64.sys
10:32:50.0685 4172 AgereSoftModem - ok
10:32:50.0701 4172 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
10:32:50.0701 4172 agp440 - ok
10:32:50.0716 4172 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
10:32:50.0716 4172 ALG - ok
10:32:50.0732 4172 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
10:32:50.0748 4172 aliide - ok
10:32:50.0748 4172 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
10:32:50.0748 4172 amdide - ok
10:32:50.0763 4172 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
10:32:50.0763 4172 AmdK8 - ok
10:32:50.0779 4172 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
10:32:50.0779 4172 AmdPPM - ok
10:32:50.0810 4172 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
10:32:50.0810 4172 amdsata - ok
10:32:50.0841 4172 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
10:32:50.0841 4172 amdsbs - ok
10:32:50.0872 4172 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
10:32:50.0872 4172 amdxata - ok
10:32:50.0904 4172 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
10:32:50.0904 4172 AppID - ok
10:32:50.0935 4172 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
10:32:50.0935 4172 AppIDSvc - ok
10:32:50.0982 4172 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
10:32:50.0982 4172 Appinfo - ok
10:32:51.0044 4172 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
10:32:51.0044 4172 arc - ok
10:32:51.0075 4172 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
10:32:51.0075 4172 arcsas - ok
10:32:51.0169 4172 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
10:32:51.0169 4172 aspnet_state - ok
10:32:51.0216 4172 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
10:32:51.0216 4172 AsyncMac - ok
10:32:51.0231 4172 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
10:32:51.0231 4172 atapi - ok
10:32:51.0262 4172 [ F1AC6C48F5DDA6AE94A8AF696E09733D ] ATSwpWDF C:\Windows\system32\Drivers\ATSwpWDF.sys
10:32:51.0278 4172 ATSwpWDF - ok
10:32:51.0325 4172 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
10:32:51.0340 4172 AudioEndpointBuilder - ok
10:32:51.0372 4172 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
10:32:51.0372 4172 AudioSrv - ok
10:32:51.0403 4172 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
10:32:51.0403 4172 AxInstSV - ok
10:32:51.0450 4172 [ 9F4320BA8E7CE2342517B182A2F2C0E6 ] azvusb C:\Windows\system32\DRIVERS\azvusb.sys
10:32:51.0450 4172 azvusb - ok
10:32:51.0496 4172 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
10:32:51.0496 4172 b06bdrv - ok
10:32:51.0528 4172 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
10:32:51.0528 4172 b57nd60a - ok
10:32:51.0652 4172 [ FB4FDA64F2E8552EAEB5986C3F34462C ] BCM43XX C:\Windows\system32\DRIVERS\bcmwl664.sys
10:32:51.0668 4172 BCM43XX - ok
10:32:51.0699 4172 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
10:32:51.0699 4172 BDESVC - ok
10:32:51.0746 4172 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
10:32:51.0746 4172 Beep - ok
10:32:51.0793 4172 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
10:32:51.0808 4172 BFE - ok
10:32:51.0855 4172 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
10:32:51.0871 4172 BITS - ok
10:32:51.0902 4172 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
10:32:51.0902 4172 blbdrive - ok
10:32:51.0949 4172 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
10:32:51.0949 4172 bowser - ok
10:32:51.0996 4172 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
10:32:51.0996 4172 BrFiltLo - ok
10:32:52.0011 4172 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
10:32:52.0011 4172 BrFiltUp - ok
10:32:52.0042 4172 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
10:32:52.0042 4172 BridgeMP - ok
10:32:52.0074 4172 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
10:32:52.0074 4172 Browser - ok
10:32:52.0089 4172 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
10:32:52.0089 4172 Brserid - ok
10:32:52.0120 4172 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
10:32:52.0120 4172 BrSerWdm - ok
10:32:52.0136 4172 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
10:32:52.0136 4172 BrUsbMdm - ok
10:32:52.0152 4172 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
10:32:52.0152 4172 BrUsbSer - ok
10:32:52.0198 4172 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys
10:32:52.0198 4172 BthEnum - ok
10:32:52.0230 4172 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
10:32:52.0230 4172 BTHMODEM - ok
10:32:52.0245 4172 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
10:32:52.0245 4172 BthPan - ok
10:32:52.0276 4172 [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
10:32:52.0292 4172 BTHPORT - ok
10:32:52.0323 4172 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
10:32:52.0323 4172 bthserv - ok
10:32:52.0339 4172 [ F188B7394D81010767B6DF3178519A37 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
10:32:52.0339 4172 BTHUSB - ok
10:32:52.0370 4172 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
10:32:52.0370 4172 cdfs - ok
10:32:52.0417 4172 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
10:32:52.0417 4172 cdrom - ok
10:32:52.0432 4172 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
10:32:52.0448 4172 CertPropSvc - ok
10:32:52.0464 4172 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
10:32:52.0464 4172 circlass - ok
10:32:52.0510 4172 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
10:32:52.0510 4172 CLFS - ok
10:32:52.0573 4172 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
10:32:52.0573 4172 clr_optimization_v2.0.50727_32 - ok
10:32:52.0620 4172 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
10:32:52.0620 4172 clr_optimization_v2.0.50727_64 - ok
10:32:52.0682 4172 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
10:32:52.0682 4172 clr_optimization_v4.0.30319_32 - ok
10:32:52.0729 4172 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
10:32:52.0729 4172 clr_optimization_v4.0.30319_64 - ok
10:32:52.0760 4172 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
10:32:52.0760 4172 CmBatt - ok
10:32:52.0776 4172 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
10:32:52.0776 4172 cmdide - ok
10:32:52.0822 4172 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
10:32:52.0822 4172 CNG - ok
10:32:52.0838 4172 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
10:32:52.0838 4172 Compbatt - ok
10:32:52.0854 4172 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
10:32:52.0854 4172 CompositeBus - ok
10:32:52.0854 4172 COMSysApp - ok
10:32:52.0885 4172 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
10:32:52.0885 4172 crcdisk - ok
10:32:52.0916 4172 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
10:32:52.0916 4172 CryptSvc - ok
10:32:52.0963 4172 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
10:32:52.0963 4172 DcomLaunch - ok
10:32:53.0010 4172 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
10:32:53.0010 4172 defragsvc - ok
10:32:53.0041 4172 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
10:32:53.0041 4172 DfsC - ok
10:32:53.0072 4172 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
10:32:53.0088 4172 Dhcp - ok
10:32:53.0103 4172 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
10:32:53.0103 4172 discache - ok
10:32:53.0166 4172 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
10:32:53.0166 4172 Disk - ok
10:32:53.0197 4172 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
10:32:53.0197 4172 Dnscache - ok
10:32:53.0244 4172 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
10:32:53.0244 4172 dot3svc - ok
10:32:53.0275 4172 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
10:32:53.0275 4172 DPS - ok
10:32:53.0306 4172 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
10:32:53.0306 4172 drmkaud - ok
10:32:53.0368 4172 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
10:32:53.0384 4172 DXGKrnl - ok
10:32:53.0431 4172 [ 416A2007878ED1D6FC5DDDB9E1F6DB3E ] e1express C:\Windows\system32\DRIVERS\e1e6032e.sys
10:32:53.0431 4172 e1express - ok
10:32:53.0446 4172 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
10:32:53.0446 4172 EapHost - ok
10:32:53.0571 4172 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
10:32:53.0587 4172 ebdrv - ok
10:32:53.0634 4172 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
10:32:53.0634 4172 EFS - ok
10:32:53.0696 4172 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
10:32:53.0712 4172 ehRecvr - ok
10:32:53.0727 4172 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
10:32:53.0743 4172 ehSched - ok
10:32:53.0774 4172 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
10:32:53.0774 4172 elxstor - ok
10:32:53.0790 4172 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
10:32:53.0790 4172 ErrDev - ok
10:32:53.0836 4172 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
10:32:53.0836 4172 EventSystem - ok
10:32:53.0868 4172 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
10:32:53.0868 4172 exfat - ok
10:32:53.0946 4172 FairplayKD - ok
10:32:53.0977 4172 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
10:32:53.0992 4172 fastfat - ok
10:32:54.0039 4172 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
10:32:54.0055 4172 Fax - ok
10:32:54.0086 4172 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
10:32:54.0086 4172 fdc - ok
10:32:54.0102 4172 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
10:32:54.0102 4172 fdPHost - ok
10:32:54.0117 4172 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
10:32:54.0117 4172 FDResPub - ok
10:32:54.0133 4172 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
10:32:54.0133 4172 FileInfo - ok
10:32:54.0148 4172 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
10:32:54.0148 4172 Filetrace - ok
10:32:54.0148 4172 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
10:32:54.0148 4172 flpydisk - ok
10:32:54.0164 4172 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
10:32:54.0164 4172 FltMgr - ok
10:32:54.0226 4172 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
10:32:54.0242 4172 FontCache - ok
10:32:54.0273 4172 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
10:32:54.0273 4172 FontCache3.0.0.0 - ok
10:32:54.0289 4172 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
10:32:54.0289 4172 FsDepends - ok
10:32:54.0336 4172 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
10:32:54.0336 4172 Fs_Rec - ok
10:32:54.0367 4172 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
10:32:54.0367 4172 fvevol - ok
10:32:54.0414 4172 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
10:32:54.0414 4172 gagp30kx - ok
10:32:54.0445 4172 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
10:32:54.0445 4172 gpsvc - ok
10:32:54.0554 4172 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
10:32:54.0554 4172 gupdate - ok
10:32:54.0570 4172 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
10:32:54.0570 4172 gupdatem - ok
10:32:54.0601 4172 [ 1E6438D4EA6E1174A3B3B1EDC4DE660B ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
10:32:54.0601 4172 hamachi - ok
10:32:54.0616 4172 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
10:32:54.0616 4172 hcw85cir - ok
10:32:54.0648 4172 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
10:32:54.0648 4172 HdAudAddService - ok
10:32:54.0663 4172 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
10:32:54.0663 4172 HDAudBus - ok
10:32:54.0679 4172 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
10:32:54.0679 4172 HidBatt - ok
10:32:54.0694 4172 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
10:32:54.0694 4172 HidBth - ok
10:32:54.0710 4172 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
10:32:54.0710 4172 HidIr - ok
10:32:54.0741 4172 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
10:32:54.0741 4172 hidserv - ok
10:32:54.0757 4172 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
10:32:54.0757 4172 HidUsb - ok
10:32:54.0835 4172 [ 31AE58E64028E69BAD3328352FB8B403 ] HiPatchService C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
10:32:54.0835 4172 HiPatchService - ok
10:32:54.0866 4172 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
10:32:54.0866 4172 hkmsvc - ok
10:32:54.0913 4172 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
10:32:54.0913 4172 HomeGroupListener - ok
10:32:54.0960 4172 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
10:32:54.0960 4172 HomeGroupProvider - ok
10:32:54.0991 4172 [ 05712FDDBD45A5864EB326FAABC6A4E3 ] hpdskflt C:\Windows\system32\drivers\hpdskflt.sys
10:32:54.0991 4172 hpdskflt - ok
10:32:55.0022 4172 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
10:32:55.0022 4172 HpSAMD - ok
10:32:55.0053 4172 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
10:32:55.0053 4172 HTTP - ok
10:32:55.0069 4172 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
10:32:55.0069 4172 hwpolicy - ok
10:32:55.0084 4172 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
10:32:55.0084 4172 i8042prt - ok
10:32:55.0116 4172 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
10:32:55.0131 4172 iaStorV - ok
10:32:55.0194 4172 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
10:32:55.0209 4172 idsvc - ok
10:32:55.0396 4172 [ A87261EF1546325B559374F5689CF5BC ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
10:32:55.0428 4172 igfx - ok
10:32:55.0443 4172 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
10:32:55.0443 4172 iirsp - ok
10:32:55.0490 4172 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
10:32:55.0506 4172 IKEEXT - ok
10:32:55.0537 4172 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
10:32:55.0537 4172 intelide - ok
10:32:55.0552 4172 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
10:32:55.0552 4172 intelppm - ok
10:32:55.0584 4172 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
10:32:55.0584 4172 IPBusEnum - ok
10:32:55.0599 4172 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
10:32:55.0599 4172 IpFilterDriver - ok
10:32:55.0630 4172 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
10:32:55.0646 4172 iphlpsvc - ok
10:32:55.0662 4172 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
10:32:55.0662 4172 IPMIDRV - ok
10:32:55.0662 4172 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
10:32:55.0662 4172 IPNAT - ok
10:32:55.0693 4172 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
10:32:55.0693 4172 IRENUM - ok
10:32:55.0708 4172 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
10:32:55.0708 4172 isapnp - ok
10:32:55.0724 4172 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
10:32:55.0724 4172 iScsiPrt - ok
10:32:55.0740 4172 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
10:32:55.0740 4172 kbdclass - ok
10:32:55.0755 4172 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
10:32:55.0755 4172 kbdhid - ok
10:32:55.0771 4172 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
10:32:55.0771 4172 KeyIso - ok
10:32:55.0802 4172 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
10:32:55.0802 4172 KSecDD - ok
10:32:55.0818 4172 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
10:32:55.0833 4172 KSecPkg - ok
10:32:55.0833 4172 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
10:32:55.0833 4172 ksthunk - ok
10:32:55.0864 4172 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
10:32:55.0880 4172 KtmRm - ok
10:32:55.0911 4172 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\System32\srvsvc.dll
10:32:55.0911 4172 LanmanServer - ok
10:32:55.0927 4172 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
10:32:55.0942 4172 LanmanWorkstation - ok
10:32:55.0958 4172 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
10:32:55.0958 4172 lltdio - ok
10:32:55.0974 4172 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
10:32:55.0974 4172 lltdsvc - ok
10:32:56.0005 4172 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
10:32:56.0005 4172 lmhosts - ok
10:32:56.0036 4172 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
10:32:56.0036 4172 LSI_FC - ok
10:32:56.0067 4172 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
10:32:56.0067 4172 LSI_SAS - ok
10:32:56.0083 4172 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
10:32:56.0083 4172 LSI_SAS2 - ok
10:32:56.0098 4172 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
10:32:56.0098 4172 LSI_SCSI - ok
10:32:56.0130 4172 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
10:32:56.0130 4172 luafv - ok
10:32:56.0176 4172 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
10:32:56.0176 4172 MBAMProtector - ok
10:32:56.0254 4172 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
10:32:56.0270 4172 MBAMScheduler - ok
10:32:56.0332 4172 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
10:32:56.0332 4172 MBAMService - ok
10:32:56.0364 4172 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
10:32:56.0379 4172 Mcx2Svc - ok
10:32:56.0395 4172 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
10:32:56.0395 4172 megasas - ok
10:32:56.0426 4172 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
10:32:56.0442 4172 MegaSR - ok
10:32:56.0457 4172 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
10:32:56.0457 4172 MMCSS - ok
10:32:56.0488 4172 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
10:32:56.0488 4172 Modem - ok
10:32:56.0504 4172 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
10:32:56.0504 4172 monitor - ok
10:32:56.0520 4172 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
10:32:56.0520 4172 mouclass - ok
10:32:56.0535 4172 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
10:32:56.0535 4172 mouhid - ok
10:32:56.0551 4172 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
10:32:56.0551 4172 mountmgr - ok
10:32:56.0598 4172 [ E6DB6C61739E18906DC2C4191F6EDEA2 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
10:32:56.0598 4172 MozillaMaintenance - ok
10:32:56.0613 4172 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
10:32:56.0613 4172 mpio - ok
10:32:56.0629 4172 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
10:32:56.0629 4172 mpsdrv - ok
10:32:56.0676 4172 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
10:32:56.0691 4172 MpsSvc - ok
10:32:56.0707 4172 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
10:32:56.0722 4172 MRxDAV - ok
10:32:56.0754 4172 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
10:32:56.0754 4172 mrxsmb - ok
10:32:56.0785 4172 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
10:32:56.0785 4172 mrxsmb10 - ok
10:32:56.0800 4172 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
10:32:56.0800 4172 mrxsmb20 - ok
10:32:56.0816 4172 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
10:32:56.0816 4172 msahci - ok
10:32:56.0832 4172 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
10:32:56.0832 4172 msdsm - ok
10:32:56.0863 4172 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
10:32:56.0863 4172 MSDTC - ok
10:32:56.0894 4172 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
10:32:56.0894 4172 Msfs - ok
10:32:56.0894 4172 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
10:32:56.0894 4172 mshidkmdf - ok
10:32:56.0910 4172 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
10:32:56.0910 4172 msisadrv - ok
10:32:56.0941 4172 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
10:32:56.0941 4172 MSiSCSI - ok
10:32:56.0941 4172 msiserver - ok
10:32:56.0956 4172 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
10:32:56.0956 4172 MSKSSRV - ok
10:32:56.0972 4172 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
10:32:56.0972 4172 MSPCLOCK - ok
10:32:56.0988 4172 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
10:32:56.0988 4172 MSPQM - ok
10:32:57.0003 4172 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
10:32:57.0003 4172 MsRPC - ok
10:32:57.0019 4172 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
10:32:57.0019 4172 mssmbios - ok
10:32:57.0034 4172 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
10:32:57.0034 4172 MSTEE - ok
10:32:57.0050 4172 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
10:32:57.0050 4172 MTConfig - ok
10:32:57.0050 4172 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
10:32:57.0050 4172 Mup - ok
10:32:57.0097 4172 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
10:32:57.0097 4172 napagent - ok
10:32:57.0159 4172 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
10:32:57.0159 4172 NativeWifiP - ok
10:32:57.0222 4172 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
10:32:57.0237 4172 NDIS - ok
10:32:57.0253 4172 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
10:32:57.0253 4172 NdisCap - ok
10:32:57.0284 4172 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
10:32:57.0284 4172 NdisTapi - ok
10:32:57.0300 4172 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
10:32:57.0300 4172 Ndisuio - ok
10:32:57.0331 4172 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
10:32:57.0331 4172 NdisWan - ok
10:32:57.0331 4172 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
10:32:57.0331 4172 NDProxy - ok
10:32:57.0346 4172 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
10:32:57.0346 4172 NetBIOS - ok
10:32:57.0346 4172 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
10:32:57.0362 4172 NetBT - ok
10:32:57.0378 4172 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
10:32:57.0378 4172 Netlogon - ok
10:32:57.0424 4172 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
10:32:57.0424 4172 Netman - ok
10:32:57.0471 4172 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:32:57.0471 4172 NetMsmqActivator - ok
10:32:57.0487 4172 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:32:57.0487 4172 NetPipeActivator - ok
10:32:57.0518 4172 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
10:32:57.0518 4172 netprofm - ok
10:32:57.0534 4172 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:32:57.0534 4172 NetTcpActivator - ok
10:32:57.0549 4172 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:32:57.0549 4172 NetTcpPortSharing - ok
10:32:57.0596 4172 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
10:32:57.0596 4172 nfrd960 - ok
10:32:57.0627 4172 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
10:32:57.0627 4172 NlaSvc - ok
10:32:57.0643 4172 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
10:32:57.0643 4172 Npfs - ok
10:32:57.0674 4172 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
10:32:57.0674 4172 nsi - ok
10:32:57.0690 4172 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
10:32:57.0690 4172 nsiproxy - ok
10:32:57.0768 4172 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
10:32:57.0783 4172 Ntfs - ok
10:32:57.0799 4172 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
10:32:57.0799 4172 Null - ok
10:32:58.0158 4172 [ D52CB937D5C23935F732B5D0BBAFF2D7 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
10:32:58.0220 4172 nvlddmkm - ok
10:32:58.0298 4172 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
10:32:58.0314 4172 nvraid - ok
10:32:58.0345 4172 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
10:32:58.0345 4172 nvstor - ok
10:32:58.0407 4172 [ 3227EB0ECFBB7CB7F667AC2FFFCDC751 ] nvsvc C:\Windows\system32\nvvsvc.exe
10:32:58.0423 4172 nvsvc - ok
10:32:58.0454 4172 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
10:32:58.0454 4172 nv_agp - ok
10:32:58.0470 4172 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
10:32:58.0470 4172 ohci1394 - ok
10:32:58.0516 4172 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
10:32:58.0516 4172 p2pimsvc - ok
10:32:58.0548 4172 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
10:32:58.0548 4172 p2psvc - ok
10:32:58.0579 4172 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys
10:32:58.0579 4172 Parport - ok
10:32:58.0610 4172 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
10:32:58.0626 4172 partmgr - ok
10:32:58.0641 4172 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
10:32:58.0657 4172 PcaSvc - ok
10:32:58.0672 4172 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
10:32:58.0672 4172 pci - ok
10:32:58.0688 4172 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
10:32:58.0688 4172 pciide - ok
10:32:58.0704 4172 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
10:32:58.0704 4172 pcmcia - ok
10:32:58.0719 4172 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
10:32:58.0719 4172 pcw - ok
10:32:58.0750 4172 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
10:32:58.0750 4172 PEAUTH - ok
10:32:58.0813 4172 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
10:32:58.0828 4172 PerfHost - ok
10:32:58.0906 4172 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
10:32:58.0922 4172 pla - ok
10:32:58.0969 4172 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
10:32:58.0984 4172 PlugPlay - ok
10:32:59.0000 4172 PnkBstrA - ok
10:32:59.0031 4172 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
10:32:59.0031 4172 PNRPAutoReg - ok
10:32:59.0047 4172 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
10:32:59.0047 4172 PNRPsvc - ok
10:32:59.0094 4172 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
10:32:59.0094 4172 PolicyAgent - ok
10:32:59.0140 4172 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
10:32:59.0140 4172 Power - ok
10:32:59.0172 4172 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
10:32:59.0172 4172 PptpMiniport - ok
10:32:59.0187 4172 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
10:32:59.0187 4172 Processor - ok
10:32:59.0218 4172 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
10:32:59.0234 4172 ProfSvc - ok
10:32:59.0250 4172 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
10:32:59.0250 4172 ProtectedStorage - ok
10:32:59.0281 4172 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
10:32:59.0281 4172 Psched - ok
10:32:59.0343 4172 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
10:32:59.0343 4172 ql2300 - ok
10:32:59.0374 4172 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
10:32:59.0374 4172 ql40xx - ok
10:32:59.0421 4172 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
10:32:59.0421 4172 QWAVE - ok
10:32:59.0452 4172 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
10:32:59.0452 4172 QWAVEdrv - ok
10:32:59.0452 4172 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
10:32:59.0452 4172 RasAcd - ok
10:32:59.0499 4172 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
10:32:59.0499 4172 RasAgileVpn - ok
10:32:59.0515 4172 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
10:32:59.0515 4172 RasAuto - ok
10:32:59.0515 4172 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
10:32:59.0530 4172 Rasl2tp - ok
10:32:59.0562 4172 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
10:32:59.0562 4172 RasMan - ok
10:32:59.0562 4172 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
10:32:59.0562 4172 RasPppoe - ok
10:32:59.0593 4172 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
10:32:59.0593 4172 RasSstp - ok
10:32:59.0608 4172 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
10:32:59.0608 4172 rdbss - ok
10:32:59.0624 4172 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\drivers\rdpbus.sys
10:32:59.0624 4172 rdpbus - ok
10:32:59.0640 4172 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
10:32:59.0640 4172 RDPCDD - ok
10:32:59.0655 4172 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
10:32:59.0655 4172 RDPENCDD - ok
10:32:59.0671 4172 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
10:32:59.0671 4172 RDPREFMP - ok
10:32:59.0702 4172 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
10:32:59.0702 4172 RDPWD - ok
10:32:59.0733 4172 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
10:32:59.0733 4172 rdyboost - ok
10:32:59.0764 4172 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
10:32:59.0764 4172 RemoteAccess - ok
10:32:59.0796 4172 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
10:32:59.0796 4172 RemoteRegistry - ok
10:32:59.0827 4172 [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
10:32:59.0842 4172 RFCOMM - ok
10:32:59.0858 4172 [ F45D6E12EB99A668F52201637C67C8F5 ] rimmptsk C:\Windows\system32\DRIVERS\rimmpx64.sys
10:32:59.0858 4172 rimmptsk - ok
10:32:59.0889 4172 [ 82356915157AB59064A24993AE5BE8AA ] rimsptsk C:\Windows\system32\DRIVERS\rimspx64.sys
10:32:59.0905 4172 rimsptsk - ok
10:32:59.0952 4172 [ D018844DC53D8428410A2FEEEEE9373E ] rismcx64 C:\Windows\system32\DRIVERS\rismcx64.sys
10:32:59.0952 4172 rismcx64 - ok
10:33:00.0061 4172 [ C01A92A546854A3E34103B642F0F94A1 ] rismxdp C:\Windows\system32\DRIVERS\rixdpx64.sys
10:33:00.0061 4172 rismxdp - ok
10:33:00.0123 4172 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
10:33:00.0123 4172 RpcEptMapper - ok
10:33:00.0154 4172 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
10:33:00.0154 4172 RpcLocator - ok
10:33:00.0186 4172 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
10:33:00.0201 4172 RpcSs - ok
10:33:00.0232 4172 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
10:33:00.0232 4172 rspndr - ok
10:33:00.0295 4172 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
10:33:00.0295 4172 SamSs - ok
10:33:00.0326 4172 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
10:33:00.0326 4172 sbp2port - ok
10:33:00.0357 4172 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
10:33:00.0373 4172 SCardSvr - ok
10:33:00.0388 4172 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
10:33:00.0388 4172 scfilter - ok
10:33:00.0435 4172 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
10:33:00.0451 4172 Schedule - ok
10:33:00.0482 4172 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
10:33:00.0482 4172 SCPolicySvc - ok
10:33:00.0513 4172 [ 111E0EBC0AD79CB0FA014B907B231CF0 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
10:33:00.0513 4172 sdbus - ok
10:33:00.0529 4172 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
10:33:00.0529 4172 SDRSVC - ok
10:33:00.0544 4172 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
10:33:00.0544 4172 secdrv - ok
10:33:00.0560 4172 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
10:33:00.0560 4172 seclogon - ok
10:33:00.0576 4172 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
10:33:00.0576 4172 SENS - ok
10:33:00.0576 4172 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
10:33:00.0576 4172 SensrSvc - ok
10:33:00.0591 4172 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\drivers\serenum.sys
10:33:00.0591 4172 Serenum - ok
10:33:00.0622 4172 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\drivers\serial.sys
10:33:00.0622 4172 Serial - ok
10:33:00.0638 4172 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
10:33:00.0638 4172 sermouse - ok
10:33:00.0669 4172 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
10:33:00.0669 4172 SessionEnv - ok
10:33:00.0685 4172 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
10:33:00.0685 4172 sffdisk - ok
10:33:00.0685 4172 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
10:33:00.0685 4172 sffp_mmc - ok
10:33:00.0685 4172 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
10:33:00.0685 4172 sffp_sd - ok
10:33:00.0700 4172 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
10:33:00.0700 4172 sfloppy - ok
10:33:00.0732 4172 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
10:33:00.0732 4172 SharedAccess - ok
10:33:00.0763 4172 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
10:33:00.0763 4172 ShellHWDetection - ok
10:33:00.0794 4172 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
10:33:00.0794 4172 SiSRaid2 - ok
10:33:00.0810 4172 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
10:33:00.0810 4172 SiSRaid4 - ok
10:33:00.0997 4172 [ AE40D1BC6FB02A5625516AD74CA9A309 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
10:33:01.0028 4172 Skype C2C Service - ok
10:33:01.0137 4172 [ F2B755D3835089590E8113F48AA931F7 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
10:33:01.0137 4172 SkypeUpdate - ok
10:33:01.0184 4172 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
10:33:01.0184 4172 Smb - ok
10:33:01.0231 4172 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
10:33:01.0231 4172 SNMPTRAP - ok
10:33:01.0262 4172 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
10:33:01.0262 4172 spldr - ok
10:33:01.0309 4172 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
10:33:01.0309 4172 Spooler - ok
10:33:01.0418 4172 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
10:33:01.0449 4172 sppsvc - ok
10:33:01.0465 4172 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
10:33:01.0465 4172 sppuinotify - ok
10:33:01.0512 4172 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
10:33:01.0512 4172 srv - ok
10:33:01.0527 4172 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
10:33:01.0527 4172 srv2 - ok
10:33:01.0558 4172 [ 0C4540311E11664B245A263E1154CEF8 ] SrvHsfHDA C:\Windows\system32\DRIVERS\VSTAZL6.SYS
10:33:01.0558 4172 SrvHsfHDA - ok
10:33:01.0605 4172 [ 02071D207A9858FBE3A48CBFD59C4A04 ] SrvHsfV92 C:\Windows\system32\DRIVERS\VSTDPV6.SYS
10:33:01.0621 4172 SrvHsfV92 - ok
10:33:01.0636 4172 [ 18E40C245DBFAF36FD0134A7EF2DF396 ] SrvHsfWinac C:\Windows\system32\DRIVERS\VSTCNXT6.SYS
10:33:01.0636 4172 SrvHsfWinac - ok
10:33:01.0668 4172 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
10:33:01.0668 4172 srvnet - ok
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 103 hostů