Prikladam log.
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:29:41, on 28. 9. 2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16686)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\LightclawSK\Desktop\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "E:\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [uTorrent] "C:\Users\LightclawSK\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - E:\hamachi-2.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Skype C2C Service - Unknown owner - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
--
End of file - 5195 bytes
Prosím o kontrolu HJT - PC zasekáva,reaguje spomalene. Vyřešeno
-
- Level 1.5
- Příspěvky: 147
- Registrován: červenec 13
- Pohlaví:
- Stav:
Offline
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu HJT - PC zasekáva,reaguje spomalene.
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranìní historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit doèasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po probìhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranìní historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit doèasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po probìhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
-
- Level 1.5
- Příspěvky: 147
- Registrován: červenec 13
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu HJT - PC zasekáva,reaguje spomalene.
Malwarebytes Anti-Malware
Malwarebytes Anti-Malware (Skúšobná verzia) 1.75.0.1300
http://www.malwarebytes.org
Verzia databázy: v2013.09.28.05
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16686
LightclawSK :: LIGHTCLAWSK-PC [administrátor]
Ochrana: Zapnuté
28. 9. 2013 13:56:56
MBAM-log-2013-09-28 (14-05-26).txt
Typ kontroly: Rýchla kontrola
Možnosti kontroly zapnuté: Pamäť | Po spustení | Registre | Systémové súbory | Heuristika/Extra | Heuristika/Shuriken | PUP | PUM
Možnosti kontroly vypnuté: P2P
Objektov kontrolovaných: 183549
Uplynutý čas: 7 min, 22 sek
Detegované služby pamäte: 0
(Škodlivé položky neboli zistené)
Detegované moduly pamäte: 0
(Škodlivé položky neboli zistené)
Detegované registračné kľúče: 0
(Škodlivé položky neboli zistené)
Detegované registračné hodnoty: 0
(Škodlivé položky neboli zistené)
Detegované položky registračných dát: 0
(Škodlivé položky neboli zistené)
Detegované priečinky: 0
(Škodlivé položky neboli zistené)
Detegované súbory: 4
C:\Users\LightclawSK\AppData\Local\Temp\bhmz_k8_.exe.part (PUP.Optional.Conduit.A) -> Žiadna úloha nevykonaná.
C:\Users\LightclawSK\AppData\Local\Temp\LfP0tDeT.exe.part (PUP.Optional.Conduit.A) -> Žiadna úloha nevykonaná.
C:\Users\LightclawSK\Downloads\tb_5hippos_v1(1).exe (PUP.Optional.Conduit.A) -> Žiadna úloha nevykonaná.
C:\Users\LightclawSK\Downloads\tb_5hippos_v1.exe (PUP.Optional.Conduit.A) -> Žiadna úloha nevykonaná.
(koniec)
adwcleaner
# AdwCleaner v2.305 - Logfile created 07/16/2013 at 13:33:35
# Updated 11/07/2013 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Lightclaw - CHARGER
# Boot Mode : Normal
# Running from : C:\Documents and Settings\Lightclaw\Desktop\adwcleaner.exe
# Option [Search]
***** [Services] *****
Found : IBUpdaterService
***** [Files / Folders] *****
File Found : C:\Documents and Settings\Lightclaw\Application Data\Mozilla\Firefox\Profiles\kq3d9ct0.default\searchplugins\softonic.xml
File Found : C:\WINDOWS\system32\roboot.exe
Folder Found : C:\Documents and Settings\All Users\Application Data\IBUpdaterService
Folder Found : C:\Documents and Settings\Lightclaw\Application Data\Mozilla\Firefox\Profiles\kq3d9ct0.default\extensions\pluswinks@PlusWinks
Folder Found : C:\Documents and Settings\Lightclaw\Application Data\OpenCandy
Folder Found : C:\Documents and Settings\Lightclaw\Application Data\PerformerSoft
Folder Found : C:\Documents and Settings\Lightclaw\Application Data\SpeedAnalysis2
Folder Found : C:\Documents and Settings\Lightclaw\Local Settings\Application Data\Conduit
Folder Found : C:\Documents and Settings\Lightclaw\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\dgjkhjdcljddbedokogakmmdjgnbeanf
Folder Found : C:\Documents and Settings\Lightclaw\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lpgjmggepafkhenaeknpnjiceakbedpi
Folder Found : C:\Documents and Settings\Lightclaw\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lpgjmggepafkhenaeknpnjiceakbedpi
Folder Found : C:\Program Files\Common Files\spigot
***** [Registry] *****
Key Found : HKCU\Software\AppDataLow\Software\Search Settings
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Google\Chrome\Extensions\lpgjmggepafkhenaeknpnjiceakbedpi
Key Found : HKCU\Software\Google\Chrome\Extensions\lpgjmggepafkhenaeknpnjiceakbedpi
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\SmartBar
Key Found : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\dgjkhjdcljddbedokogakmmdjgnbeanf
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\lpgjmggepafkhenaeknpnjiceakbedpi
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\lpgjmggepafkhenaeknpnjiceakbedpi
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\IM
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Updater Service
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IM
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Updater Service
Key Found : HKLM\Software\systweak
***** [Internet Browsers] *****
-\\ Internet Explorer v8.0.6001.18702
[OK] Registry is clean.
-\\ Mozilla Firefox v22.0 (sk)
File : C:\Documents and Settings\cintulp\Application Data\Mozilla\Firefox\Profiles\iq8ru6nw.default\prefs.js
[OK] File is clean.
File : C:\Documents and Settings\Lightclaw\Application Data\Mozilla\Firefox\Profiles\kq3d9ct0.default\prefs.js
Found : user_pref("extensions.Softonic.admin", false);
Found : user_pref("extensions.Softonic.aflt", "SD");
Found : user_pref("extensions.Softonic.appId", "{7ABBFE1C-E485-44AA-8F36-353751B4124D}");
Found : user_pref("extensions.Softonic.autoRvrt", "false");
Found : user_pref("extensions.Softonic.dfltLng", "");
Found : user_pref("extensions.Softonic.dfltSrch", true);
Found : user_pref("extensions.Softonic.dnsErr", true);
Found : user_pref("extensions.Softonic.excTlbr", false);
Found : user_pref("extensions.Softonic.ffxUnstlRst", false);
Found : user_pref("extensions.Softonic.hmpg", true);
Found : user_pref("extensions.Softonic.hmpgUrl", "hxxp://search.softonic.com/INF00176/tb_v1?SearchSource=13&[...]
Found : user_pref("extensions.Softonic.hpOld0", "hxxp://www.zoznam.sk/");
Found : user_pref("extensions.Softonic.id", "4077360e00000000000000123f86c5d5");
Found : user_pref("extensions.Softonic.instlDay", "15865");
Found : user_pref("extensions.Softonic.instlRef", "INF00176");
Found : user_pref("extensions.Softonic.kw_url", "hxxp://search.softonic.com/INF00176/tb_v1?SearchSource=2&cc[...]
Found : user_pref("extensions.Softonic.newTab", true);
Found : user_pref("extensions.Softonic.newTabUrl", "hxxp://search.softonic.com/INF00176/tb_v1/?SearchSource=[...]
Found : user_pref("extensions.Softonic.prdct", "Softonic");
Found : user_pref("extensions.Softonic.prtnrId", "softonic");
Found : user_pref("extensions.Softonic.rvrt", "false");
Found : user_pref("extensions.Softonic.smplGrp", "none");
Found : user_pref("extensions.Softonic.srchPrvdr", "Search the web (Softonic)");
Found : user_pref("extensions.Softonic.tlbrId", "BASEirobinhoodActive");
Found : user_pref("extensions.Softonic.tlbrSrchUrl", "hxxp://search.softonic.com/INF00176/tb_v1?SearchSource[...]
Found : user_pref("extensions.Softonic.vrsn", "1.8.19.3");
Found : user_pref("extensions.Softonic.vrsnTs", "1.8.19.316:33:55");
Found : user_pref("extensions.Softonic.vrsni", "1.8.19.3");
Found : user_pref("extensions.privitize.srchPrvdr", "Search The Web (privitize)");
File : C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\ak6fyeo6.default\prefs.js
[OK] File is clean.
-\\ Google Chrome v28.0.1500.72
File : C:\Documents and Settings\Lightclaw\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences
[OK] File is clean.
*************************
AdwCleaner[R1].txt - [5930 octets] - [16/07/2013 13:33:35]
########## EOF - C:\AdwCleaner[R1].txt - [5990 octets] ##########
Malwarebytes Anti-Malware (Skúšobná verzia) 1.75.0.1300
http://www.malwarebytes.org
Verzia databázy: v2013.09.28.05
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16686
LightclawSK :: LIGHTCLAWSK-PC [administrátor]
Ochrana: Zapnuté
28. 9. 2013 13:56:56
MBAM-log-2013-09-28 (14-05-26).txt
Typ kontroly: Rýchla kontrola
Možnosti kontroly zapnuté: Pamäť | Po spustení | Registre | Systémové súbory | Heuristika/Extra | Heuristika/Shuriken | PUP | PUM
Možnosti kontroly vypnuté: P2P
Objektov kontrolovaných: 183549
Uplynutý čas: 7 min, 22 sek
Detegované služby pamäte: 0
(Škodlivé položky neboli zistené)
Detegované moduly pamäte: 0
(Škodlivé položky neboli zistené)
Detegované registračné kľúče: 0
(Škodlivé položky neboli zistené)
Detegované registračné hodnoty: 0
(Škodlivé položky neboli zistené)
Detegované položky registračných dát: 0
(Škodlivé položky neboli zistené)
Detegované priečinky: 0
(Škodlivé položky neboli zistené)
Detegované súbory: 4
C:\Users\LightclawSK\AppData\Local\Temp\bhmz_k8_.exe.part (PUP.Optional.Conduit.A) -> Žiadna úloha nevykonaná.
C:\Users\LightclawSK\AppData\Local\Temp\LfP0tDeT.exe.part (PUP.Optional.Conduit.A) -> Žiadna úloha nevykonaná.
C:\Users\LightclawSK\Downloads\tb_5hippos_v1(1).exe (PUP.Optional.Conduit.A) -> Žiadna úloha nevykonaná.
C:\Users\LightclawSK\Downloads\tb_5hippos_v1.exe (PUP.Optional.Conduit.A) -> Žiadna úloha nevykonaná.
(koniec)
adwcleaner
# AdwCleaner v2.305 - Logfile created 07/16/2013 at 13:33:35
# Updated 11/07/2013 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Lightclaw - CHARGER
# Boot Mode : Normal
# Running from : C:\Documents and Settings\Lightclaw\Desktop\adwcleaner.exe
# Option [Search]
***** [Services] *****
Found : IBUpdaterService
***** [Files / Folders] *****
File Found : C:\Documents and Settings\Lightclaw\Application Data\Mozilla\Firefox\Profiles\kq3d9ct0.default\searchplugins\softonic.xml
File Found : C:\WINDOWS\system32\roboot.exe
Folder Found : C:\Documents and Settings\All Users\Application Data\IBUpdaterService
Folder Found : C:\Documents and Settings\Lightclaw\Application Data\Mozilla\Firefox\Profiles\kq3d9ct0.default\extensions\pluswinks@PlusWinks
Folder Found : C:\Documents and Settings\Lightclaw\Application Data\OpenCandy
Folder Found : C:\Documents and Settings\Lightclaw\Application Data\PerformerSoft
Folder Found : C:\Documents and Settings\Lightclaw\Application Data\SpeedAnalysis2
Folder Found : C:\Documents and Settings\Lightclaw\Local Settings\Application Data\Conduit
Folder Found : C:\Documents and Settings\Lightclaw\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\dgjkhjdcljddbedokogakmmdjgnbeanf
Folder Found : C:\Documents and Settings\Lightclaw\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lpgjmggepafkhenaeknpnjiceakbedpi
Folder Found : C:\Documents and Settings\Lightclaw\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lpgjmggepafkhenaeknpnjiceakbedpi
Folder Found : C:\Program Files\Common Files\spigot
***** [Registry] *****
Key Found : HKCU\Software\AppDataLow\Software\Search Settings
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Google\Chrome\Extensions\lpgjmggepafkhenaeknpnjiceakbedpi
Key Found : HKCU\Software\Google\Chrome\Extensions\lpgjmggepafkhenaeknpnjiceakbedpi
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\SmartBar
Key Found : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\dgjkhjdcljddbedokogakmmdjgnbeanf
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\lpgjmggepafkhenaeknpnjiceakbedpi
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\lpgjmggepafkhenaeknpnjiceakbedpi
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\IM
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Updater Service
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IM
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Updater Service
Key Found : HKLM\Software\systweak
***** [Internet Browsers] *****
-\\ Internet Explorer v8.0.6001.18702
[OK] Registry is clean.
-\\ Mozilla Firefox v22.0 (sk)
File : C:\Documents and Settings\cintulp\Application Data\Mozilla\Firefox\Profiles\iq8ru6nw.default\prefs.js
[OK] File is clean.
File : C:\Documents and Settings\Lightclaw\Application Data\Mozilla\Firefox\Profiles\kq3d9ct0.default\prefs.js
Found : user_pref("extensions.Softonic.admin", false);
Found : user_pref("extensions.Softonic.aflt", "SD");
Found : user_pref("extensions.Softonic.appId", "{7ABBFE1C-E485-44AA-8F36-353751B4124D}");
Found : user_pref("extensions.Softonic.autoRvrt", "false");
Found : user_pref("extensions.Softonic.dfltLng", "");
Found : user_pref("extensions.Softonic.dfltSrch", true);
Found : user_pref("extensions.Softonic.dnsErr", true);
Found : user_pref("extensions.Softonic.excTlbr", false);
Found : user_pref("extensions.Softonic.ffxUnstlRst", false);
Found : user_pref("extensions.Softonic.hmpg", true);
Found : user_pref("extensions.Softonic.hmpgUrl", "hxxp://search.softonic.com/INF00176/tb_v1?SearchSource=13&[...]
Found : user_pref("extensions.Softonic.hpOld0", "hxxp://www.zoznam.sk/");
Found : user_pref("extensions.Softonic.id", "4077360e00000000000000123f86c5d5");
Found : user_pref("extensions.Softonic.instlDay", "15865");
Found : user_pref("extensions.Softonic.instlRef", "INF00176");
Found : user_pref("extensions.Softonic.kw_url", "hxxp://search.softonic.com/INF00176/tb_v1?SearchSource=2&cc[...]
Found : user_pref("extensions.Softonic.newTab", true);
Found : user_pref("extensions.Softonic.newTabUrl", "hxxp://search.softonic.com/INF00176/tb_v1/?SearchSource=[...]
Found : user_pref("extensions.Softonic.prdct", "Softonic");
Found : user_pref("extensions.Softonic.prtnrId", "softonic");
Found : user_pref("extensions.Softonic.rvrt", "false");
Found : user_pref("extensions.Softonic.smplGrp", "none");
Found : user_pref("extensions.Softonic.srchPrvdr", "Search the web (Softonic)");
Found : user_pref("extensions.Softonic.tlbrId", "BASEirobinhoodActive");
Found : user_pref("extensions.Softonic.tlbrSrchUrl", "hxxp://search.softonic.com/INF00176/tb_v1?SearchSource[...]
Found : user_pref("extensions.Softonic.vrsn", "1.8.19.3");
Found : user_pref("extensions.Softonic.vrsnTs", "1.8.19.316:33:55");
Found : user_pref("extensions.Softonic.vrsni", "1.8.19.3");
Found : user_pref("extensions.privitize.srchPrvdr", "Search The Web (privitize)");
File : C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\ak6fyeo6.default\prefs.js
[OK] File is clean.
-\\ Google Chrome v28.0.1500.72
File : C:\Documents and Settings\Lightclaw\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences
[OK] File is clean.
*************************
AdwCleaner[R1].txt - [5930 octets] - [16/07/2013 13:33:35]
########## EOF - C:\AdwCleaner[R1].txt - [5990 octets] ##########
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu HJT - PC zasekáva,reaguje spomalene.
Znovu spusť MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
====================================================
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
Klikni na „ Delete“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
====================================================
Stáhni si Junkware Removal Tool
na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
====================================================
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
Klikni na „ Delete“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
====================================================
Stáhni si Junkware Removal Tool
na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
-
- Level 1.5
- Příspěvky: 147
- Registrován: červenec 13
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu HJT - PC zasekáva,reaguje spomalene.
Malwarebytes Anti-Malware
Malwarebytes Anti-Malware (Skúšobná verzia) 1.75.0.1300
http://www.malwarebytes.org
Verzia databázy: v2013.09.29.01
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16686
LightclawSK :: LIGHTCLAWSK-PC [administrátor]
Ochrana: Zapnuté
29. 9. 2013 7:56:16
mbam-log-2013-09-29 (07-56-16).txt
Typ kontroly: Rýchla kontrola
Možnosti kontroly zapnuté: Pamäť | Po spustení | Registre | Systémové súbory | Heuristika/Extra | Heuristika/Shuriken | PUP | PUM
Možnosti kontroly vypnuté: P2P
Objektov kontrolovaných: 183120
Uplynutý čas: 7 min, 30 sek
Detegované služby pamäte: 0
(Škodlivé položky neboli zistené)
Detegované moduly pamäte: 0
(Škodlivé položky neboli zistené)
Detegované registračné kľúče: 5
HKCR\AppID\{33CB14BC-58BB-4B3A-9877-7946A3F41BAE} (PUP.Optional.Babylon.A) -> Pridanie do karantény a zmazanie úspešné.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1 (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
HKCU\Software\DataMngr (PUP.Optional.DataMngr.A) -> Pridanie do karantény a zmazanie úspešné.
HKCU\Software\BabSolution\Updater (PUP.Optional.Babylon.A) -> Pridanie do karantény a zmazanie úspešné.
HKCU\SOFTWARE\OPTIMIZER PRO (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
Detegované registračné hodnoty: 1
HKCU\Software\Optimizer Pro|AdsBuyNowURL (PUP.Optional.OptimizerPro.A) -> Dáta: http://pcup47.pcutilitiespro.revenuewir ... 0-D909C358 -> Pridanie do karantény a zmazanie úspešné.
Detegované položky registračných dát: 1
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (Hijack.StartPage) -> Škodlivý: (http://www.dalesearch.com/?babsrc=HP_ss ... 0&tsp=5019) Dobrý: (http://www.google.com) -> Pridanie do karantény a opravy prebehli úspešne.
Detegované priečinky: 3
C:\Users\LightclawSK\AppData\Roaming\Babylon (PUP.Optional.Babylon.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
Detegované súbory: 25
C:\Windows\Temp\Optimizer_Pro.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Users\LightclawSK\Downloads\tb_5hippos_v1(1).exe (PUP.Optional.Conduit.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Users\LightclawSK\Downloads\tb_5hippos_v1.exe (PUP.Optional.Conduit.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Users\LightclawSK\AppData\Roaming\Babylon\log_file.txt (PUP.Optional.Babylon.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptimizerPro.chm (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\English.ini (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\file_id.diz (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\HomePage.url (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptimizerPro.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptProGuard.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptProLauncher.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptProReminder.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptProSchedule.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptProSmartScan.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptProStart.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptProUninstaller.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\scan.gif (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\sqlite3.dll (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\unins000.dat (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\unins000.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\unins000.msg (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Optimizer Pro on the Web.lnk (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Help.lnk (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Optimizer Pro.lnk (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Uninstall Optimizer Pro.lnk (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
(koniec)
adwcleaner
# AdwCleaner v3.005 - Report created 29/09/2013 at 08:15:58
# Updated 22/09/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
# Username : LightclawSK - LIGHTCLAWSK-PC
# Running from : C:\Users\LightclawSK\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\Users\LightclawSK\AppData\Roaming\optimizer pro
Folder Deleted : C:\Users\LightclawSK\AppData\Roaming\Mozilla\Firefox\Profiles\oewep9zz.default\Extensions\ffxtlbr@babylon.com
File Deleted : C:\Users\LightclawSK\AppData\Roaming\Mozilla\Firefox\Profiles\oewep9zz.default\user.js
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\BabSolution
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16686
-\\ Mozilla Firefox v23.0.1 (cs)
[ File : C:\Users\LightclawSK\AppData\Roaming\Mozilla\Firefox\Profiles\oewep9zz.default\prefs.js ]
Line Deleted : user_pref("browser.startup.homepage", "hxxp://www.dalesearch.com/?babsrc=HP_ss&mntrId=407700123F86C5D5&affID=124440&tsp=5019");
-\\ Google Chrome v29.0.1547.76
[ File : C:\Users\LightclawSK\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted : icon_url
Deleted : search_url
Deleted : keyword
Deleted : urls_to_restore_on_startup
*************************
AdwCleaner[R0].txt - [1652 octets] - [28/09/2013 14:07:52]
AdwCleaner[R1].txt - [2536 octets] - [29/09/2013 08:14:47]
AdwCleaner[S0].txt - [2503 octets] - [29/09/2013 08:15:58]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2563 octets] ##########
JRT
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.3 (09.27.2013:1)
OS: Windows 7 Home Premium x86
Ran by LightclawSK on ne 29. 09. 2013 at 8:25:33,43
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-4075213465-814325269-105422406-1001\Software\SweetIM
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\Windows\system32\ai_recyclebin"
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ne 29. 09. 2013 at 8:33:35,95
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Malwarebytes Anti-Malware (Skúšobná verzia) 1.75.0.1300
http://www.malwarebytes.org
Verzia databázy: v2013.09.29.01
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16686
LightclawSK :: LIGHTCLAWSK-PC [administrátor]
Ochrana: Zapnuté
29. 9. 2013 7:56:16
mbam-log-2013-09-29 (07-56-16).txt
Typ kontroly: Rýchla kontrola
Možnosti kontroly zapnuté: Pamäť | Po spustení | Registre | Systémové súbory | Heuristika/Extra | Heuristika/Shuriken | PUP | PUM
Možnosti kontroly vypnuté: P2P
Objektov kontrolovaných: 183120
Uplynutý čas: 7 min, 30 sek
Detegované služby pamäte: 0
(Škodlivé položky neboli zistené)
Detegované moduly pamäte: 0
(Škodlivé položky neboli zistené)
Detegované registračné kľúče: 5
HKCR\AppID\{33CB14BC-58BB-4B3A-9877-7946A3F41BAE} (PUP.Optional.Babylon.A) -> Pridanie do karantény a zmazanie úspešné.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1 (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
HKCU\Software\DataMngr (PUP.Optional.DataMngr.A) -> Pridanie do karantény a zmazanie úspešné.
HKCU\Software\BabSolution\Updater (PUP.Optional.Babylon.A) -> Pridanie do karantény a zmazanie úspešné.
HKCU\SOFTWARE\OPTIMIZER PRO (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
Detegované registračné hodnoty: 1
HKCU\Software\Optimizer Pro|AdsBuyNowURL (PUP.Optional.OptimizerPro.A) -> Dáta: http://pcup47.pcutilitiespro.revenuewir ... 0-D909C358 -> Pridanie do karantény a zmazanie úspešné.
Detegované položky registračných dát: 1
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (Hijack.StartPage) -> Škodlivý: (http://www.dalesearch.com/?babsrc=HP_ss ... 0&tsp=5019) Dobrý: (http://www.google.com) -> Pridanie do karantény a opravy prebehli úspešne.
Detegované priečinky: 3
C:\Users\LightclawSK\AppData\Roaming\Babylon (PUP.Optional.Babylon.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
Detegované súbory: 25
C:\Windows\Temp\Optimizer_Pro.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Users\LightclawSK\Downloads\tb_5hippos_v1(1).exe (PUP.Optional.Conduit.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Users\LightclawSK\Downloads\tb_5hippos_v1.exe (PUP.Optional.Conduit.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Users\LightclawSK\AppData\Roaming\Babylon\log_file.txt (PUP.Optional.Babylon.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptimizerPro.chm (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\English.ini (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\file_id.diz (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\HomePage.url (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptimizerPro.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptProGuard.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptProLauncher.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptProReminder.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptProSchedule.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptProSmartScan.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptProStart.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\OptProUninstaller.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\scan.gif (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\sqlite3.dll (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\unins000.dat (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\unins000.exe (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\Program Files\Optimizer Pro\unins000.msg (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Optimizer Pro on the Web.lnk (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Help.lnk (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Optimizer Pro.lnk (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Uninstall Optimizer Pro.lnk (PUP.Optional.OptimizerPro.A) -> Pridanie do karantény a zmazanie úspešné.
(koniec)
adwcleaner
# AdwCleaner v3.005 - Report created 29/09/2013 at 08:15:58
# Updated 22/09/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
# Username : LightclawSK - LIGHTCLAWSK-PC
# Running from : C:\Users\LightclawSK\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\Users\LightclawSK\AppData\Roaming\optimizer pro
Folder Deleted : C:\Users\LightclawSK\AppData\Roaming\Mozilla\Firefox\Profiles\oewep9zz.default\Extensions\ffxtlbr@babylon.com
File Deleted : C:\Users\LightclawSK\AppData\Roaming\Mozilla\Firefox\Profiles\oewep9zz.default\user.js
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\BabSolution
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16686
-\\ Mozilla Firefox v23.0.1 (cs)
[ File : C:\Users\LightclawSK\AppData\Roaming\Mozilla\Firefox\Profiles\oewep9zz.default\prefs.js ]
Line Deleted : user_pref("browser.startup.homepage", "hxxp://www.dalesearch.com/?babsrc=HP_ss&mntrId=407700123F86C5D5&affID=124440&tsp=5019");
-\\ Google Chrome v29.0.1547.76
[ File : C:\Users\LightclawSK\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted : icon_url
Deleted : search_url
Deleted : keyword
Deleted : urls_to_restore_on_startup
*************************
AdwCleaner[R0].txt - [1652 octets] - [28/09/2013 14:07:52]
AdwCleaner[R1].txt - [2536 octets] - [29/09/2013 08:14:47]
AdwCleaner[S0].txt - [2503 octets] - [29/09/2013 08:15:58]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2563 octets] ##########
JRT
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.3 (09.27.2013:1)
OS: Windows 7 Home Premium x86
Ran by LightclawSK on ne 29. 09. 2013 at 8:25:33,43
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-4075213465-814325269-105422406-1001\Software\SweetIM
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\Windows\system32\ai_recyclebin"
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ne 29. 09. 2013 at 8:33:35,95
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu HJT - PC zasekáva,reaguje spomalene.
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
-
- Level 1.5
- Příspěvky: 147
- Registrován: červenec 13
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu HJT - PC zasekáva,reaguje spomalene.
RogueKiller
RogueKiller V8.6.12 [Sep 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : LightclawSK [Práva správce]
Mód : Kontrola -- Datum : 09/29/2013 10:09:43
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 4 ¤¤¤
[SUSP PATH][DLL] explorer.exe -- C:\Users\LightclawSK\AppData\Local\Pokki\ocdeskband_0.dll [x] -> ODEBRÁNO
[SUSP PATH] pokki.exe -- C:\Users\LightclawSK\AppData\Local\Pokki\Engine\pokki.exe [7] -> SMAZÁNO [TermProc]
[SUSP PATH] pokki.exe -- C:\Users\LightclawSK\AppData\Local\Pokki\Engine\pokki.exe [7] -> SMAZÁNO [TermProc]
[SUSP PATH] pokki.exe -- C:\Users\LightclawSK\AppData\Local\Pokki\Engine\pokki.exe [7] -> SMAZÁNO [TermProc]
¤¤¤ ¤¤¤ Záznamy Registrů: : 6 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : Pokki (C:\Windows\system32\rundll32.exe "%LOCALAPPDATA%\Pokki\Engine\Launcher.dll",RunLaunchPlatform [-][7][x]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-4075213465-814325269-105422406-1001\[...]\Run : Pokki (C:\Windows\system32\rundll32.exe "%LOCALAPPDATA%\Pokki\Engine\Launcher.dll",RunLaunchPlatform [-][7][x]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
RogueKiller V8.6.12 [Sep 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : LightclawSK [Práva správce]
Mód : Kontrola -- Datum : 09/29/2013 10:09:43
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 4 ¤¤¤
[SUSP PATH][DLL] explorer.exe -- C:\Users\LightclawSK\AppData\Local\Pokki\ocdeskband_0.dll [x] -> ODEBRÁNO
[SUSP PATH] pokki.exe -- C:\Users\LightclawSK\AppData\Local\Pokki\Engine\pokki.exe [7] -> SMAZÁNO [TermProc]
[SUSP PATH] pokki.exe -- C:\Users\LightclawSK\AppData\Local\Pokki\Engine\pokki.exe [7] -> SMAZÁNO [TermProc]
[SUSP PATH] pokki.exe -- C:\Users\LightclawSK\AppData\Local\Pokki\Engine\pokki.exe [7] -> SMAZÁNO [TermProc]
¤¤¤ ¤¤¤ Záznamy Registrů: : 6 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : Pokki (C:\Windows\system32\rundll32.exe "%LOCALAPPDATA%\Pokki\Engine\Launcher.dll",RunLaunchPlatform [-][7][x]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-4075213465-814325269-105422406-1001\[...]\Run : Pokki (C:\Windows\system32\rundll32.exe "%LOCALAPPDATA%\Pokki\Engine\Launcher.dll",RunLaunchPlatform [-][7][x]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu HJT - PC zasekáva,reaguje spomalene.
Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
-
- Level 1.5
- Příspěvky: 147
- Registrován: červenec 13
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu HJT - PC zasekáva,reaguje spomalene.
TDSSKiller
10:46:49.0657 5952 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
10:46:50.0146 5952 ============================================================
10:46:50.0146 5952 Current date / time: 2013/09/29 10:46:50.0146
10:46:50.0146 5952 SystemInfo:
10:46:50.0146 5952
10:46:50.0146 5952 OS Version: 6.1.7601 ServicePack: 1.0
10:46:50.0146 5952 Product type: Workstation
10:46:50.0146 5952 ComputerName: LIGHTCLAWSK-PC
10:46:50.0146 5952 UserName: LightclawSK
10:46:50.0146 5952 Windows directory: C:\Windows
10:46:50.0146 5952 System windows directory: C:\Windows
10:46:50.0146 5952 Processor architecture: Intel x86
10:46:50.0146 5952 Number of processors: 2
10:46:50.0146 5952 Page size: 0x1000
10:46:50.0146 5952 Boot type: Normal boot
10:46:50.0146 5952 ============================================================
10:46:51.0490 5952 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
10:46:51.0490 5952 Drive \Device\Harddisk1\DR1 - Size: 0x12A05F2000 (74.51 Gb), SectorSize: 0x200, Cylinders: 0x25FE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
10:46:51.0505 5952 ============================================================
10:46:51.0505 5952 \Device\Harddisk0\DR0:
10:46:51.0506 5952 MBR partitions:
10:46:51.0506 5952 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x1D1C4542
10:46:51.0506 5952 \Device\Harddisk1\DR1:
10:46:51.0511 5952 MBR partitions:
10:46:51.0511 5952 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x1B747, BlocksNum 0x94E3276
10:46:51.0511 5952 ============================================================
10:46:51.0522 5952 C: <-> \Device\Harddisk1\DR1\Partition1
10:46:51.0552 5952 E: <-> \Device\Harddisk0\DR0\Partition1
10:46:51.0552 5952 ============================================================
10:46:51.0552 5952 Initialize success
10:46:51.0552 5952 ============================================================
10:46:56.0226 5576 ============================================================
10:46:56.0226 5576 Scan started
10:46:56.0226 5576 Mode: Manual;
10:46:56.0226 5576 ============================================================
10:46:56.0896 5576 ================ Scan system memory ========================
10:46:56.0896 5576 System memory - ok
10:46:56.0896 5576 ================ Scan services =============================
10:46:57.0098 5576 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
10:46:57.0108 5576 1394ohci - ok
10:46:57.0158 5576 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
10:46:57.0168 5576 ACPI - ok
10:46:57.0218 5576 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
10:46:57.0218 5576 AcpiPmi - ok
10:46:57.0268 5576 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
10:46:57.0278 5576 adp94xx - ok
10:46:57.0288 5576 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
10:46:57.0298 5576 adpahci - ok
10:46:57.0318 5576 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
10:46:57.0318 5576 adpu320 - ok
10:46:57.0360 5576 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
10:46:57.0370 5576 AeLookupSvc - ok
10:46:57.0440 5576 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
10:46:57.0450 5576 AFD - ok
10:46:57.0490 5576 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
10:46:57.0490 5576 agp440 - ok
10:46:57.0530 5576 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
10:46:57.0530 5576 aic78xx - ok
10:46:57.0540 5576 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
10:46:57.0550 5576 ALG - ok
10:46:57.0590 5576 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
10:46:57.0590 5576 aliide - ok
10:46:57.0610 5576 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
10:46:57.0610 5576 amdagp - ok
10:46:57.0620 5576 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
10:46:57.0630 5576 amdide - ok
10:46:57.0660 5576 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
10:46:57.0660 5576 AmdK8 - ok
10:46:57.0680 5576 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
10:46:57.0680 5576 AmdPPM - ok
10:46:57.0760 5576 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
10:46:57.0760 5576 amdsata - ok
10:46:57.0790 5576 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
10:46:57.0790 5576 amdsbs - ok
10:46:57.0810 5576 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
10:46:57.0810 5576 amdxata - ok
10:46:57.0890 5576 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
10:46:57.0900 5576 AppID - ok
10:46:57.0940 5576 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
10:46:57.0940 5576 AppIDSvc - ok
10:46:57.0990 5576 [ EACFDF31921F51C097629F1F3C9129B4 ] Appinfo C:\Windows\System32\appinfo.dll
10:46:58.0000 5576 Appinfo - ok
10:46:58.0020 5576 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
10:46:58.0030 5576 arc - ok
10:46:58.0040 5576 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
10:46:58.0040 5576 arcsas - ok
10:46:58.0210 5576 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
10:46:58.0210 5576 aspnet_state - ok
10:46:58.0270 5576 [ B9FE438B3CAD82B2014710349A2022F7 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
10:46:58.0270 5576 aswFsBlk - ok
10:46:58.0300 5576 [ AE5549DD21F6DE06406031EF1D51ACC3 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
10:46:58.0300 5576 aswMonFlt - ok
10:46:58.0340 5576 [ A29EF1A46E110F392588F7395BB55F32 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
10:46:58.0340 5576 aswRdr - ok
10:46:58.0380 5576 [ FA72FA503F580C3C628DD8C7D7622E37 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
10:46:58.0380 5576 aswRvrt - ok
10:46:58.0560 5576 [ 4D53349D848C6BADB3D4ACBE98C27676 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
10:46:58.0560 5576 aswSnx - ok
10:46:58.0640 5576 [ 813024DFD54A41B3AFAE2B1E2796CB80 ] aswSP C:\Windows\system32\drivers\aswSP.sys
10:46:58.0650 5576 aswSP - ok
10:46:58.0710 5576 [ 5E18413310134130D7772F0668698CB7 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
10:46:58.0710 5576 aswTdi - ok
10:46:58.0780 5576 [ A5F637D61719D37A5B4868C385E363C0 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
10:46:58.0780 5576 aswVmm - ok
10:46:58.0830 5576 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
10:46:58.0840 5576 AsyncMac - ok
10:46:58.0870 5576 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
10:46:58.0880 5576 atapi - ok
10:46:59.0030 5576 [ 712D8A95E45B070114C5309ADA7358FF ] atikmdag C:\Windows\system32\drivers\atikmdag.sys
10:46:59.0060 5576 atikmdag - ok
10:46:59.0120 5576 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
10:46:59.0130 5576 AudioEndpointBuilder - ok
10:46:59.0150 5576 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
10:46:59.0160 5576 Audiosrv - ok
10:46:59.0210 5576 [ 9330941C8F6DF417F6DBBE998DB6687E ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
10:46:59.0220 5576 avast! Antivirus - ok
10:46:59.0270 5576 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
10:46:59.0270 5576 AxInstSV - ok
10:46:59.0320 5576 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
10:46:59.0320 5576 b06bdrv - ok
10:46:59.0350 5576 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
10:46:59.0360 5576 b57nd60x - ok
10:46:59.0390 5576 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
10:46:59.0400 5576 BDESVC - ok
10:46:59.0410 5576 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
10:46:59.0410 5576 Beep - ok
10:46:59.0470 5576 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
10:46:59.0480 5576 BFE - ok
10:46:59.0520 5576 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll
10:46:59.0550 5576 BITS - ok
10:46:59.0570 5576 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
10:46:59.0570 5576 blbdrive - ok
10:46:59.0600 5576 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
10:46:59.0600 5576 bowser - ok
10:46:59.0620 5576 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
10:46:59.0620 5576 BrFiltLo - ok
10:46:59.0650 5576 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
10:46:59.0650 5576 BrFiltUp - ok
10:46:59.0690 5576 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
10:46:59.0690 5576 Browser - ok
10:46:59.0740 5576 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
10:46:59.0740 5576 Brserid - ok
10:46:59.0760 5576 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
10:46:59.0760 5576 BrSerWdm - ok
10:46:59.0780 5576 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
10:46:59.0780 5576 BrUsbMdm - ok
10:46:59.0800 5576 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
10:46:59.0800 5576 BrUsbSer - ok
10:46:59.0820 5576 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
10:46:59.0820 5576 BTHMODEM - ok
10:46:59.0860 5576 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
10:46:59.0860 5576 bthserv - ok
10:46:59.0900 5576 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
10:46:59.0900 5576 cdfs - ok
10:46:59.0960 5576 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\drivers\cdrom.sys
10:46:59.0960 5576 cdrom - ok
10:47:00.0010 5576 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
10:47:00.0010 5576 CertPropSvc - ok
10:47:00.0040 5576 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
10:47:00.0040 5576 circlass - ok
10:47:00.0080 5576 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
10:47:00.0080 5576 CLFS - ok
10:47:00.0152 5576 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
10:47:00.0156 5576 clr_optimization_v2.0.50727_32 - ok
10:47:00.0211 5576 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
10:47:00.0221 5576 clr_optimization_v4.0.30319_32 - ok
10:47:00.0241 5576 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
10:47:00.0241 5576 CmBatt - ok
10:47:00.0291 5576 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
10:47:00.0291 5576 cmdide - ok
10:47:00.0331 5576 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
10:47:00.0341 5576 CNG - ok
10:47:00.0371 5576 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
10:47:00.0371 5576 Compbatt - ok
10:47:00.0421 5576 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
10:47:00.0421 5576 CompositeBus - ok
10:47:00.0431 5576 COMSysApp - ok
10:47:00.0451 5576 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
10:47:00.0451 5576 crcdisk - ok
10:47:00.0511 5576 [ 7CA1BECEA5DE2643ADDAD32670E7A4C9 ] CryptSvc C:\Windows\system32\cryptsvc.dll
10:47:00.0511 5576 CryptSvc - ok
10:47:00.0561 5576 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
10:47:00.0571 5576 DcomLaunch - ok
10:47:00.0601 5576 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
10:47:00.0611 5576 defragsvc - ok
10:47:00.0661 5576 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
10:47:00.0661 5576 DfsC - ok
10:47:00.0701 5576 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
10:47:00.0701 5576 Dhcp - ok
10:47:00.0731 5576 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
10:47:00.0731 5576 discache - ok
10:47:00.0761 5576 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
10:47:00.0761 5576 Disk - ok
10:47:00.0811 5576 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
10:47:00.0811 5576 Dnscache - ok
10:47:00.0851 5576 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
10:47:00.0861 5576 dot3svc - ok
10:47:00.0901 5576 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
10:47:00.0911 5576 DPS - ok
10:47:00.0931 5576 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
10:47:00.0931 5576 drmkaud - ok
10:47:00.0991 5576 [ 16498EBC04AE9DD07049A8884B205C05 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
10:47:01.0001 5576 DXGKrnl - ok
10:47:01.0031 5576 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
10:47:01.0031 5576 EapHost - ok
10:47:01.0181 5576 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
10:47:01.0201 5576 ebdrv - ok
10:47:01.0261 5576 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
10:47:01.0271 5576 EFS - ok
10:47:01.0331 5576 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
10:47:01.0341 5576 ehRecvr - ok
10:47:01.0361 5576 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
10:47:01.0371 5576 ehSched - ok
10:47:01.0391 5576 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
10:47:01.0401 5576 elxstor - ok
10:47:01.0431 5576 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
10:47:01.0431 5576 ErrDev - ok
10:47:01.0491 5576 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
10:47:01.0501 5576 EventSystem - ok
10:47:01.0521 5576 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
10:47:01.0521 5576 exfat - ok
10:47:01.0581 5576 FairplayKD - ok
10:47:01.0591 5576 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
10:47:01.0591 5576 fastfat - ok
10:47:01.0651 5576 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
10:47:01.0661 5576 Fax - ok
10:47:01.0681 5576 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
10:47:01.0681 5576 fdc - ok
10:47:01.0711 5576 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
10:47:01.0721 5576 fdPHost - ok
10:47:01.0751 5576 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
10:47:01.0761 5576 FDResPub - ok
10:47:01.0771 5576 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
10:47:01.0781 5576 FileInfo - ok
10:47:01.0791 5576 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
10:47:01.0791 5576 Filetrace - ok
10:47:01.0821 5576 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
10:47:01.0821 5576 flpydisk - ok
10:47:01.0851 5576 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
10:47:01.0861 5576 FltMgr - ok
10:47:01.0921 5576 [ E12C4928B32ACE04610259647F072635 ] FontCache C:\Windows\system32\FntCache.dll
10:47:01.0931 5576 FontCache - ok
10:47:02.0001 5576 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
10:47:02.0001 5576 FontCache3.0.0.0 - ok
10:47:02.0031 5576 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
10:47:02.0031 5576 FsDepends - ok
10:47:02.0071 5576 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
10:47:02.0071 5576 Fs_Rec - ok
10:47:02.0121 5576 [ E306A24D9694C724FA2491278BF50FDB ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
10:47:02.0121 5576 fvevol - ok
10:47:02.0161 5576 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
10:47:02.0161 5576 gagp30kx - ok
10:47:02.0221 5576 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
10:47:02.0221 5576 gpsvc - ok
10:47:02.0301 5576 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
10:47:02.0301 5576 gupdate - ok
10:47:02.0311 5576 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
10:47:02.0321 5576 gupdatem - ok
10:47:02.0361 5576 [ 833051C6C6C42117191935F734CFBD97 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
10:47:02.0361 5576 hamachi - ok
10:47:02.0391 5576 Hamachi2Svc - ok
10:47:02.0431 5576 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
10:47:02.0431 5576 hcw85cir - ok
10:47:02.0461 5576 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
10:47:02.0461 5576 HDAudBus - ok
10:47:02.0491 5576 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
10:47:02.0491 5576 HidBatt - ok
10:47:02.0511 5576 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
10:47:02.0511 5576 HidBth - ok
10:47:02.0551 5576 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
10:47:02.0551 5576 HidIr - ok
10:47:02.0591 5576 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
10:47:02.0631 5576 hidserv - ok
10:47:02.0701 5576 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\drivers\hidusb.sys
10:47:02.0701 5576 HidUsb - ok
10:47:02.0751 5576 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
10:47:02.0751 5576 hkmsvc - ok
10:47:02.0801 5576 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
10:47:02.0801 5576 HomeGroupListener - ok
10:47:02.0851 5576 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
10:47:02.0861 5576 HomeGroupProvider - ok
10:47:02.0901 5576 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
10:47:02.0901 5576 HpSAMD - ok
10:47:02.0971 5576 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
10:47:02.0971 5576 HTTP - ok
10:47:03.0011 5576 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
10:47:03.0011 5576 hwpolicy - ok
10:47:03.0051 5576 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
10:47:03.0051 5576 i8042prt - ok
10:47:03.0091 5576 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
10:47:03.0101 5576 iaStorV - ok
10:47:03.0161 5576 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
10:47:03.0201 5576 idsvc - ok
10:47:03.0231 5576 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
10:47:03.0241 5576 iirsp - ok
10:47:03.0301 5576 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
10:47:03.0301 5576 IKEEXT - ok
10:47:03.0361 5576 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
10:47:03.0361 5576 intelide - ok
10:47:03.0391 5576 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
10:47:03.0391 5576 intelppm - ok
10:47:03.0421 5576 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
10:47:03.0421 5576 IPBusEnum - ok
10:47:03.0451 5576 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
10:47:03.0451 5576 IpFilterDriver - ok
10:47:03.0491 5576 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
10:47:03.0501 5576 iphlpsvc - ok
10:47:03.0551 5576 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
10:47:03.0551 5576 IPMIDRV - ok
10:47:03.0581 5576 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
10:47:03.0581 5576 IPNAT - ok
10:47:03.0611 5576 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
10:47:03.0611 5576 IRENUM - ok
10:47:03.0651 5576 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
10:47:03.0651 5576 isapnp - ok
10:47:03.0691 5576 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
10:47:03.0691 5576 iScsiPrt - ok
10:47:03.0731 5576 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
10:47:03.0731 5576 kbdclass - ok
10:47:03.0781 5576 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
10:47:03.0781 5576 kbdhid - ok
10:47:03.0791 5576 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
10:47:03.0801 5576 KeyIso - ok
10:47:03.0981 5576 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
10:47:03.0981 5576 KSecDD - ok
10:47:04.0001 5576 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
10:47:04.0011 5576 KSecPkg - ok
10:47:04.0041 5576 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
10:47:04.0051 5576 KtmRm - ok
10:47:04.0081 5576 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll
10:47:04.0081 5576 LanmanServer - ok
10:47:04.0101 5576 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
10:47:04.0111 5576 LanmanWorkstation - ok
10:47:04.0161 5576 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
10:47:04.0171 5576 lltdio - ok
10:47:04.0211 5576 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
10:47:04.0211 5576 lltdsvc - ok
10:47:04.0241 5576 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
10:47:04.0241 5576 lmhosts - ok
10:47:04.0281 5576 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
10:47:04.0281 5576 LSI_FC - ok
10:47:04.0301 5576 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
10:47:04.0301 5576 LSI_SAS - ok
10:47:04.0321 5576 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
10:47:04.0321 5576 LSI_SAS2 - ok
10:47:04.0341 5576 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
10:47:04.0341 5576 LSI_SCSI - ok
10:47:04.0371 5576 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
10:47:04.0371 5576 luafv - ok
10:47:04.0401 5576 [ 4470E3C1E0C3378E4CAB137893C12C3A ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
10:47:04.0411 5576 MBAMProtector - ok
10:47:04.0461 5576 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
10:47:04.0461 5576 MBAMScheduler - ok
10:47:04.0511 5576 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
10:47:04.0511 5576 MBAMService - ok
10:47:04.0551 5576 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
10:47:04.0561 5576 Mcx2Svc - ok
10:47:04.0591 5576 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
10:47:04.0591 5576 megasas - ok
10:47:04.0621 5576 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
10:47:04.0621 5576 MegaSR - ok
10:47:04.0651 5576 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
10:47:04.0651 5576 MMCSS - ok
10:47:04.0671 5576 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
10:47:04.0681 5576 Modem - ok
10:47:04.0701 5576 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
10:47:04.0711 5576 monitor - ok
10:47:04.0721 5576 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\drivers\mouclass.sys
10:47:04.0721 5576 mouclass - ok
10:47:04.0741 5576 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
10:47:04.0741 5576 mouhid - ok
10:47:04.0791 5576 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
10:47:04.0791 5576 mountmgr - ok
10:47:04.0831 5576 [ A35576A433F4AEB0D48976A004657CB6 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
10:47:04.0831 5576 MozillaMaintenance - ok
10:47:04.0871 5576 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
10:47:04.0881 5576 mpio - ok
10:47:04.0901 5576 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
10:47:04.0901 5576 mpsdrv - ok
10:47:04.0941 5576 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
10:47:04.0971 5576 MpsSvc - ok
10:47:05.0011 5576 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
10:47:05.0011 5576 MRxDAV - ok
10:47:05.0061 5576 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
10:47:05.0071 5576 mrxsmb - ok
10:47:05.0091 5576 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
10:47:05.0091 5576 mrxsmb10 - ok
10:47:05.0111 5576 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
10:47:05.0111 5576 mrxsmb20 - ok
10:47:05.0151 5576 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
10:47:05.0161 5576 msahci - ok
10:47:05.0201 5576 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
10:47:05.0204 5576 msdsm - ok
10:47:05.0227 5576 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
10:47:05.0237 5576 MSDTC - ok
10:47:05.0287 5576 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
10:47:05.0287 5576 Msfs - ok
10:47:05.0297 5576 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
10:47:05.0307 5576 mshidkmdf - ok
10:47:05.0347 5576 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
10:47:05.0347 5576 msisadrv - ok
10:47:05.0387 5576 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
10:47:05.0397 5576 MSiSCSI - ok
10:47:05.0407 5576 msiserver - ok
10:47:05.0437 5576 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
10:47:05.0437 5576 MSKSSRV - ok
10:47:05.0457 5576 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
10:47:05.0457 5576 MSPCLOCK - ok
10:47:05.0477 5576 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
10:47:05.0477 5576 MSPQM - ok
10:47:05.0517 5576 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
10:47:05.0517 5576 MsRPC - ok
10:47:05.0557 5576 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
10:47:05.0557 5576 mssmbios - ok
10:47:05.0587 5576 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
10:47:05.0597 5576 MSTEE - ok
10:47:05.0617 5576 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
10:47:05.0617 5576 MTConfig - ok
10:47:05.0637 5576 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
10:47:05.0647 5576 Mup - ok
10:47:05.0687 5576 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
10:47:05.0697 5576 napagent - ok
10:47:05.0747 5576 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
10:47:05.0747 5576 NativeWifiP - ok
10:47:05.0807 5576 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
10:47:05.0817 5576 NDIS - ok
10:47:05.0837 5576 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
10:47:05.0847 5576 NdisCap - ok
10:47:05.0877 5576 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
10:47:05.0877 5576 NdisTapi - ok
10:47:05.0917 5576 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
10:47:05.0927 5576 Ndisuio - ok
10:47:05.0957 5576 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
10:47:05.0967 5576 NdisWan - ok
10:47:06.0007 5576 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
10:47:06.0007 5576 NDProxy - ok
10:47:06.0027 5576 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
10:47:06.0027 5576 NetBIOS - ok
10:47:06.0077 5576 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
10:47:06.0087 5576 NetBT - ok
10:47:06.0097 5576 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
10:47:06.0107 5576 Netlogon - ok
10:47:06.0147 5576 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
10:47:06.0147 5576 Netman - ok
10:47:06.0207 5576 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:47:06.0207 5576 NetMsmqActivator - ok
10:47:06.0217 5576 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:47:06.0217 5576 NetPipeActivator - ok
10:47:06.0237 5576 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
10:47:06.0257 5576 netprofm - ok
10:47:06.0267 5576 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:47:06.0267 5576 NetTcpActivator - ok
10:47:06.0277 5576 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:47:06.0287 5576 NetTcpPortSharing - ok
10:47:06.0327 5576 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
10:47:06.0327 5576 nfrd960 - ok
10:47:06.0367 5576 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\Windows\System32\nlasvc.dll
10:47:06.0377 5576 NlaSvc - ok
10:47:06.0397 5576 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
10:47:06.0397 5576 Npfs - ok
10:47:06.0427 5576 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
10:47:06.0427 5576 nsi - ok
10:47:06.0447 5576 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
10:47:06.0447 5576 nsiproxy - ok
10:47:06.0517 5576 [ 5E43D2B0EE64123D4880DFA6626DEFDE ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
10:47:06.0527 5576 Ntfs - ok
10:47:06.0547 5576 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
10:47:06.0557 5576 Null - ok
10:47:06.0597 5576 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
10:47:06.0597 5576 nvraid - ok
10:47:06.0617 5576 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
10:47:06.0627 5576 nvstor - ok
10:47:06.0647 5576 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
10:47:06.0647 5576 nv_agp - ok
10:47:06.0687 5576 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
10:47:06.0687 5576 ohci1394 - ok
10:47:06.0717 5576 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
10:47:06.0727 5576 p2pimsvc - ok
10:47:06.0767 5576 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
10:47:06.0777 5576 p2psvc - ok
10:47:06.0817 5576 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
10:47:06.0817 5576 Parport - ok
10:47:06.0837 5576 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
10:47:06.0837 5576 partmgr - ok
10:47:06.0857 5576 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
10:47:06.0857 5576 Parvdm - ok
10:47:06.0887 5576 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
10:47:06.0897 5576 PcaSvc - ok
10:47:06.0927 5576 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
10:47:06.0927 5576 pci - ok
10:47:06.0947 5576 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
10:47:06.0947 5576 pciide - ok
10:47:06.0977 5576 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
10:47:06.0977 5576 pcmcia - ok
10:47:06.0997 5576 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
10:47:07.0007 5576 pcw - ok
10:47:07.0047 5576 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
10:47:07.0047 5576 PEAUTH - ok
10:47:07.0147 5576 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
10:47:07.0187 5576 pla - ok
10:47:07.0237 5576 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
10:47:07.0257 5576 PlugPlay - ok
10:47:07.0287 5576 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
10:47:07.0297 5576 PNRPAutoReg - ok
10:47:07.0327 5576 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
10:47:07.0337 5576 PNRPsvc - ok
10:47:07.0357 5576 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
10:47:07.0367 5576 PolicyAgent - ok
10:47:07.0417 5576 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
10:47:07.0427 5576 Power - ok
10:47:07.0467 5576 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
10:47:07.0467 5576 PptpMiniport - ok
10:47:07.0497 5576 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys
10:47:07.0497 5576 Processor - ok
10:47:07.0537 5576 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
10:47:07.0547 5576 ProfSvc - ok
10:47:07.0557 5576 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
10:47:07.0567 5576 ProtectedStorage - ok
10:47:07.0587 5576 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
10:47:07.0597 5576 Psched - ok
10:47:07.0657 5576 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
10:47:07.0667 5576 ql2300 - ok
10:47:07.0687 5576 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
10:47:07.0687 5576 ql40xx - ok
10:47:07.0727 5576 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
10:47:07.0737 5576 QWAVE - ok
10:47:07.0767 5576 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
10:47:07.0767 5576 QWAVEdrv - ok
10:47:07.0787 5576 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
10:47:07.0797 5576 RasAcd - ok
10:47:07.0817 5576 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
10:47:07.0817 5576 RasAgileVpn - ok
10:47:07.0837 5576 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
10:47:07.0847 5576 RasAuto - ok
10:47:07.0857 5576 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
10:47:07.0867 5576 Rasl2tp - ok
10:47:07.0917 5576 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
10:47:07.0927 5576 RasMan - ok
10:47:07.0947 5576 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
10:47:07.0947 5576 RasPppoe - ok
10:47:07.0977 5576 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
10:47:07.0977 5576 RasSstp - ok
10:47:08.0017 5576 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
10:47:08.0027 5576 rdbss - ok
10:47:08.0047 5576 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
10:47:08.0047 5576 rdpbus - ok
10:47:08.0077 5576 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
10:47:08.0087 5576 RDPCDD - ok
10:47:08.0117 5576 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
10:47:08.0117 5576 RDPENCDD - ok
10:47:08.0157 5576 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
10:47:08.0157 5576 RDPREFMP - ok
10:47:08.0197 5576 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
10:47:08.0197 5576 RDPWD - ok
10:47:08.0247 5576 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
10:47:08.0257 5576 rdyboost - ok
10:47:08.0277 5576 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
10:47:08.0287 5576 RemoteAccess - ok
10:47:08.0317 5576 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
10:47:08.0327 5576 RemoteRegistry - ok
10:47:08.0347 5576 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
10:47:08.0357 5576 RpcEptMapper - ok
10:47:08.0377 5576 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
10:47:08.0377 5576 RpcLocator - ok
10:47:08.0407 5576 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
10:47:08.0417 5576 RpcSs - ok
10:47:08.0447 5576 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
10:47:08.0447 5576 rspndr - ok
10:47:08.0467 5576 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
10:47:08.0477 5576 SamSs - ok
10:47:08.0517 5576 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
10:47:08.0517 5576 sbp2port - ok
10:47:08.0547 5576 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
10:47:08.0557 5576 SCardSvr - ok
10:47:08.0567 5576 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
10:47:08.0567 5576 scfilter - ok
10:47:08.0637 5576 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
10:47:08.0647 5576 Schedule - ok
10:47:08.0667 5576 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
10:47:08.0667 5576 SCPolicySvc - ok
10:47:08.0717 5576 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
10:47:08.0727 5576 SDRSVC - ok
10:47:08.0757 5576 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
10:47:08.0757 5576 secdrv - ok
10:47:08.0777 5576 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
10:47:08.0787 5576 seclogon - ok
10:47:08.0817 5576 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
10:47:08.0827 5576 SENS - ok
10:47:08.0837 5576 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
10:47:08.0847 5576 SensrSvc - ok
10:47:08.0877 5576 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
10:47:08.0877 5576 Serenum - ok
10:47:08.0897 5576 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
10:47:08.0897 5576 Serial - ok
10:47:08.0937 5576 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
10:47:08.0937 5576 sermouse - ok
10:47:08.0997 5576 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
10:47:09.0007 5576 SessionEnv - ok
10:47:09.0037 5576 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
10:47:09.0037 5576 sffdisk - ok
10:47:09.0077 5576 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
10:47:09.0077 5576 sffp_mmc - ok
10:47:09.0097 5576 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
10:47:09.0097 5576 sffp_sd - ok
10:47:09.0127 5576 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
10:47:09.0127 5576 sfloppy - ok
10:47:09.0167 5576 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
10:47:09.0167 5576 SharedAccess - ok
10:47:09.0217 5576 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
10:47:09.0237 5576 ShellHWDetection - ok
10:47:09.0267 5576 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
10:47:09.0277 5576 sisagp - ok
10:47:09.0307 5576 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
10:47:09.0307 5576 SiSRaid2 - ok
10:47:09.0327 5576 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
10:47:09.0327 5576 SiSRaid4 - ok
10:47:09.0447 5576 [ 73E3B5D1F1EB5FDC51A5C3437EEE3348 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
10:47:09.0467 5576 Skype C2C Service - ok
10:47:09.0517 5576 [ 9CD1BB2DB803B6AC642BD643DDB773BC ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
10:47:09.0517 5576 SkypeUpdate - ok
10:47:09.0537 5576 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
10:47:09.0547 5576 Smb - ok
10:47:09.0607 5576 [ C80B84E4843B33DA56A806E1A1275BA0 ] smwdm C:\Windows\system32\drivers\smwdm.sys
10:47:09.0617 5576 smwdm - ok
10:47:09.0647 5576 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
10:47:09.0657 5576 SNMPTRAP - ok
10:47:09.0667 5576 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
10:47:09.0667 5576 spldr - ok
10:47:09.0717 5576 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
10:47:09.0737 5576 Spooler - ok
10:47:09.0857 5576 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
10:47:09.0887 5576 sppsvc - ok
10:47:09.0937 5576 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
10:47:09.0937 5576 sppuinotify - ok
10:47:09.0957 5576 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
10:47:09.0967 5576 srv - ok
10:47:09.0987 5576 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
10:47:09.0987 5576 srv2 - ok
10:47:10.0017 5576 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
10:47:10.0017 5576 srvnet - ok
10:47:10.0047 5576 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
10:47:10.0057 5576 SSDPSRV - ok
10:47:10.0067 5576 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
10:47:10.0077 5576 SstpSvc - ok
10:47:10.0107 5576 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
10:47:10.0107 5576 stexstor - ok
10:47:10.0177 5576 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
10:47:10.0187 5576 StiSvc - ok
10:47:10.0227 5576 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\drivers\swenum.sys
10:47:10.0227 5576 swenum - ok
10:47:10.0260 5576 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
10:47:10.0277 5576 swprv - ok
10:47:10.0341 5576 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
10:47:10.0371 5576 SysMain - ok
10:47:10.0391 5576 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
10:47:10.0401 5576 TabletInputService - ok
10:47:10.0441 5576 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
10:47:10.0451 5576 TapiSrv - ok
10:47:10.0471 5576 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
10:47:10.0481 5576 TBS - ok
10:47:10.0571 5576 [ 4E8B9BE71B807B3BAEDB7F4243F85E3C ] Tcpip C:\Windows\system32\drivers\tcpip.sys
10:47:10.0581 5576 Tcpip - ok
10:47:10.0631 5576 [ 4E8B9BE71B807B3BAEDB7F4243F85E3C ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
10:47:10.0641 5576 TCPIP6 - ok
10:47:10.0721 5576 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
10:47:10.0721 5576 tcpipreg - ok
10:47:10.0761 5576 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
10:47:10.0761 5576 TDPIPE - ok
10:47:10.0771 5576 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
10:47:10.0781 5576 TDTCP - ok
10:47:10.0821 5576 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
10:47:10.0821 5576 tdx - ok
10:47:10.0861 5576 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\drivers\termdd.sys
10:47:10.0861 5576 TermDD - ok
10:47:10.0921 5576 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
10:47:10.0941 5576 TermService - ok
10:47:10.0961 5576 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
10:47:10.0971 5576 Themes - ok
10:47:10.0991 5576 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
10:47:11.0001 5576 THREADORDER - ok
10:47:11.0031 5576 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
10:47:11.0041 5576 TrkWks - ok
10:47:11.0091 5576 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
10:47:11.0091 5576 TrustedInstaller - ok
10:47:11.0141 5576 [ B37B08F2E5EEB1A37E448E09BACE1101 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
10:47:11.0141 5576 tssecsrv - ok
10:47:11.0191 5576 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
10:47:11.0191 5576 TsUsbFlt - ok
10:47:11.0241 5576 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
10:47:11.0251 5576 tunnel - ok
10:47:11.0281 5576 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
10:47:11.0291 5576 uagp35 - ok
10:47:11.0331 5576 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
10:47:11.0331 5576 udfs - ok
10:47:11.0371 5576 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
10:47:11.0381 5576 UI0Detect - ok
10:47:11.0411 5576 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
10:47:11.0411 5576 uliagpkx - ok
10:47:11.0431 5576 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\drivers\umbus.sys
10:47:11.0441 5576 umbus - ok
10:47:11.0461 5576 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
10:47:11.0461 5576 UmPass - ok
10:47:11.0491 5576 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
10:47:11.0511 5576 upnphost - ok
10:47:11.0551 5576 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
10:47:11.0561 5576 usbccgp - ok
10:47:11.0601 5576 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys
10:47:11.0601 5576 usbcir - ok
10:47:11.0641 5576 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
10:47:11.0641 5576 usbehci - ok
10:47:11.0661 5576 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
10:47:11.0661 5576 usbhub - ok
10:47:11.0691 5576 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\drivers\usbohci.sys
10:47:11.0691 5576 usbohci - ok
10:47:11.0731 5576 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
10:47:11.0731 5576 usbprint - ok
10:47:11.0751 5576 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\drivers\USBSTOR.SYS
10:47:11.0751 5576 USBSTOR - ok
10:47:11.0781 5576 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
10:47:11.0781 5576 usbuhci - ok
10:47:11.0811 5576 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
10:47:11.0821 5576 UxSms - ok
10:47:11.0831 5576 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
10:47:11.0841 5576 VaultSvc - ok
10:47:11.0891 5576 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
10:47:11.0891 5576 vdrvroot - ok
10:47:11.0951 5576 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
10:47:11.0961 5576 vds - ok
10:47:12.0001 5576 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
10:47:12.0001 5576 vga - ok
10:47:12.0021 5576 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
10:47:12.0031 5576 VgaSave - ok
10:47:12.0071 5576 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
10:47:12.0071 5576 vhdmp - ok
10:47:12.0101 5576 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
10:47:12.0101 5576 viaagp - ok
10:47:12.0121 5576 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys
10:47:12.0121 5576 ViaC7 - ok
10:47:12.0161 5576 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
10:47:12.0171 5576 viaide - ok
10:47:12.0181 5576 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
10:47:12.0191 5576 volmgr - ok
10:47:12.0211 5576 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
10:47:12.0211 5576 volmgrx - ok
10:47:12.0241 5576 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
10:47:12.0251 5576 volsnap - ok
10:47:12.0281 5576 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
10:47:12.0281 5576 vsmraid - ok
10:47:12.0351 5576 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
10:47:12.0381 5576 VSS - ok
10:47:12.0401 5576 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
10:47:12.0401 5576 vwifibus - ok
10:47:12.0441 5576 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
10:47:12.0451 5576 W32Time - ok
10:47:12.0491 5576 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
10:47:12.0491 5576 WacomPen - ok
10:47:12.0541 5576 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
10:47:12.0541 5576 WANARP - ok
10:47:12.0551 5576 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
10:47:12.0551 5576 Wanarpv6 - ok
10:47:12.0641 5576 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
10:47:12.0681 5576 WatAdminSvc - ok
10:47:12.0751 5576 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
10:47:12.0791 5576 wbengine - ok
10:47:12.0821 5576 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
10:47:12.0831 5576 WbioSrvc - ok
10:47:12.0881 5576 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
10:47:12.0891 5576 wcncsvc - ok
10:47:12.0921 5576 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
10:47:12.0931 5576 WcsPlugInService - ok
10:47:12.0951 5576 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys
10:47:12.0961 5576 Wd - ok
10:47:13.0001 5576 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
10:47:13.0011 5576 Wdf01000 - ok
10:47:13.0031 5576 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
10:47:13.0041 5576 WdiServiceHost - ok
10:47:13.0051 5576 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
10:47:13.0061 5576 WdiSystemHost - ok
10:47:13.0101 5576 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
10:47:13.0111 5576 WebClient - ok
10:47:13.0131 5576 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
10:47:13.0141 5576 Wecsvc - ok
10:47:13.0161 5576 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
10:47:13.0171 5576 wercplsupport - ok
10:46:49.0657 5952 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
10:46:50.0146 5952 ============================================================
10:46:50.0146 5952 Current date / time: 2013/09/29 10:46:50.0146
10:46:50.0146 5952 SystemInfo:
10:46:50.0146 5952
10:46:50.0146 5952 OS Version: 6.1.7601 ServicePack: 1.0
10:46:50.0146 5952 Product type: Workstation
10:46:50.0146 5952 ComputerName: LIGHTCLAWSK-PC
10:46:50.0146 5952 UserName: LightclawSK
10:46:50.0146 5952 Windows directory: C:\Windows
10:46:50.0146 5952 System windows directory: C:\Windows
10:46:50.0146 5952 Processor architecture: Intel x86
10:46:50.0146 5952 Number of processors: 2
10:46:50.0146 5952 Page size: 0x1000
10:46:50.0146 5952 Boot type: Normal boot
10:46:50.0146 5952 ============================================================
10:46:51.0490 5952 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
10:46:51.0490 5952 Drive \Device\Harddisk1\DR1 - Size: 0x12A05F2000 (74.51 Gb), SectorSize: 0x200, Cylinders: 0x25FE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
10:46:51.0505 5952 ============================================================
10:46:51.0505 5952 \Device\Harddisk0\DR0:
10:46:51.0506 5952 MBR partitions:
10:46:51.0506 5952 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x1D1C4542
10:46:51.0506 5952 \Device\Harddisk1\DR1:
10:46:51.0511 5952 MBR partitions:
10:46:51.0511 5952 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x1B747, BlocksNum 0x94E3276
10:46:51.0511 5952 ============================================================
10:46:51.0522 5952 C: <-> \Device\Harddisk1\DR1\Partition1
10:46:51.0552 5952 E: <-> \Device\Harddisk0\DR0\Partition1
10:46:51.0552 5952 ============================================================
10:46:51.0552 5952 Initialize success
10:46:51.0552 5952 ============================================================
10:46:56.0226 5576 ============================================================
10:46:56.0226 5576 Scan started
10:46:56.0226 5576 Mode: Manual;
10:46:56.0226 5576 ============================================================
10:46:56.0896 5576 ================ Scan system memory ========================
10:46:56.0896 5576 System memory - ok
10:46:56.0896 5576 ================ Scan services =============================
10:46:57.0098 5576 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
10:46:57.0108 5576 1394ohci - ok
10:46:57.0158 5576 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
10:46:57.0168 5576 ACPI - ok
10:46:57.0218 5576 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
10:46:57.0218 5576 AcpiPmi - ok
10:46:57.0268 5576 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
10:46:57.0278 5576 adp94xx - ok
10:46:57.0288 5576 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
10:46:57.0298 5576 adpahci - ok
10:46:57.0318 5576 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
10:46:57.0318 5576 adpu320 - ok
10:46:57.0360 5576 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
10:46:57.0370 5576 AeLookupSvc - ok
10:46:57.0440 5576 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
10:46:57.0450 5576 AFD - ok
10:46:57.0490 5576 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
10:46:57.0490 5576 agp440 - ok
10:46:57.0530 5576 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
10:46:57.0530 5576 aic78xx - ok
10:46:57.0540 5576 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
10:46:57.0550 5576 ALG - ok
10:46:57.0590 5576 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
10:46:57.0590 5576 aliide - ok
10:46:57.0610 5576 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
10:46:57.0610 5576 amdagp - ok
10:46:57.0620 5576 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
10:46:57.0630 5576 amdide - ok
10:46:57.0660 5576 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
10:46:57.0660 5576 AmdK8 - ok
10:46:57.0680 5576 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
10:46:57.0680 5576 AmdPPM - ok
10:46:57.0760 5576 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
10:46:57.0760 5576 amdsata - ok
10:46:57.0790 5576 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
10:46:57.0790 5576 amdsbs - ok
10:46:57.0810 5576 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
10:46:57.0810 5576 amdxata - ok
10:46:57.0890 5576 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
10:46:57.0900 5576 AppID - ok
10:46:57.0940 5576 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
10:46:57.0940 5576 AppIDSvc - ok
10:46:57.0990 5576 [ EACFDF31921F51C097629F1F3C9129B4 ] Appinfo C:\Windows\System32\appinfo.dll
10:46:58.0000 5576 Appinfo - ok
10:46:58.0020 5576 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
10:46:58.0030 5576 arc - ok
10:46:58.0040 5576 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
10:46:58.0040 5576 arcsas - ok
10:46:58.0210 5576 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
10:46:58.0210 5576 aspnet_state - ok
10:46:58.0270 5576 [ B9FE438B3CAD82B2014710349A2022F7 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
10:46:58.0270 5576 aswFsBlk - ok
10:46:58.0300 5576 [ AE5549DD21F6DE06406031EF1D51ACC3 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
10:46:58.0300 5576 aswMonFlt - ok
10:46:58.0340 5576 [ A29EF1A46E110F392588F7395BB55F32 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
10:46:58.0340 5576 aswRdr - ok
10:46:58.0380 5576 [ FA72FA503F580C3C628DD8C7D7622E37 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
10:46:58.0380 5576 aswRvrt - ok
10:46:58.0560 5576 [ 4D53349D848C6BADB3D4ACBE98C27676 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
10:46:58.0560 5576 aswSnx - ok
10:46:58.0640 5576 [ 813024DFD54A41B3AFAE2B1E2796CB80 ] aswSP C:\Windows\system32\drivers\aswSP.sys
10:46:58.0650 5576 aswSP - ok
10:46:58.0710 5576 [ 5E18413310134130D7772F0668698CB7 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
10:46:58.0710 5576 aswTdi - ok
10:46:58.0780 5576 [ A5F637D61719D37A5B4868C385E363C0 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
10:46:58.0780 5576 aswVmm - ok
10:46:58.0830 5576 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
10:46:58.0840 5576 AsyncMac - ok
10:46:58.0870 5576 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
10:46:58.0880 5576 atapi - ok
10:46:59.0030 5576 [ 712D8A95E45B070114C5309ADA7358FF ] atikmdag C:\Windows\system32\drivers\atikmdag.sys
10:46:59.0060 5576 atikmdag - ok
10:46:59.0120 5576 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
10:46:59.0130 5576 AudioEndpointBuilder - ok
10:46:59.0150 5576 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
10:46:59.0160 5576 Audiosrv - ok
10:46:59.0210 5576 [ 9330941C8F6DF417F6DBBE998DB6687E ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
10:46:59.0220 5576 avast! Antivirus - ok
10:46:59.0270 5576 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
10:46:59.0270 5576 AxInstSV - ok
10:46:59.0320 5576 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
10:46:59.0320 5576 b06bdrv - ok
10:46:59.0350 5576 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
10:46:59.0360 5576 b57nd60x - ok
10:46:59.0390 5576 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
10:46:59.0400 5576 BDESVC - ok
10:46:59.0410 5576 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
10:46:59.0410 5576 Beep - ok
10:46:59.0470 5576 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
10:46:59.0480 5576 BFE - ok
10:46:59.0520 5576 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll
10:46:59.0550 5576 BITS - ok
10:46:59.0570 5576 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
10:46:59.0570 5576 blbdrive - ok
10:46:59.0600 5576 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
10:46:59.0600 5576 bowser - ok
10:46:59.0620 5576 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
10:46:59.0620 5576 BrFiltLo - ok
10:46:59.0650 5576 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
10:46:59.0650 5576 BrFiltUp - ok
10:46:59.0690 5576 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
10:46:59.0690 5576 Browser - ok
10:46:59.0740 5576 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
10:46:59.0740 5576 Brserid - ok
10:46:59.0760 5576 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
10:46:59.0760 5576 BrSerWdm - ok
10:46:59.0780 5576 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
10:46:59.0780 5576 BrUsbMdm - ok
10:46:59.0800 5576 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
10:46:59.0800 5576 BrUsbSer - ok
10:46:59.0820 5576 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
10:46:59.0820 5576 BTHMODEM - ok
10:46:59.0860 5576 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
10:46:59.0860 5576 bthserv - ok
10:46:59.0900 5576 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
10:46:59.0900 5576 cdfs - ok
10:46:59.0960 5576 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\drivers\cdrom.sys
10:46:59.0960 5576 cdrom - ok
10:47:00.0010 5576 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
10:47:00.0010 5576 CertPropSvc - ok
10:47:00.0040 5576 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
10:47:00.0040 5576 circlass - ok
10:47:00.0080 5576 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
10:47:00.0080 5576 CLFS - ok
10:47:00.0152 5576 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
10:47:00.0156 5576 clr_optimization_v2.0.50727_32 - ok
10:47:00.0211 5576 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
10:47:00.0221 5576 clr_optimization_v4.0.30319_32 - ok
10:47:00.0241 5576 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
10:47:00.0241 5576 CmBatt - ok
10:47:00.0291 5576 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
10:47:00.0291 5576 cmdide - ok
10:47:00.0331 5576 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
10:47:00.0341 5576 CNG - ok
10:47:00.0371 5576 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
10:47:00.0371 5576 Compbatt - ok
10:47:00.0421 5576 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
10:47:00.0421 5576 CompositeBus - ok
10:47:00.0431 5576 COMSysApp - ok
10:47:00.0451 5576 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
10:47:00.0451 5576 crcdisk - ok
10:47:00.0511 5576 [ 7CA1BECEA5DE2643ADDAD32670E7A4C9 ] CryptSvc C:\Windows\system32\cryptsvc.dll
10:47:00.0511 5576 CryptSvc - ok
10:47:00.0561 5576 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
10:47:00.0571 5576 DcomLaunch - ok
10:47:00.0601 5576 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
10:47:00.0611 5576 defragsvc - ok
10:47:00.0661 5576 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
10:47:00.0661 5576 DfsC - ok
10:47:00.0701 5576 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
10:47:00.0701 5576 Dhcp - ok
10:47:00.0731 5576 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
10:47:00.0731 5576 discache - ok
10:47:00.0761 5576 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
10:47:00.0761 5576 Disk - ok
10:47:00.0811 5576 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
10:47:00.0811 5576 Dnscache - ok
10:47:00.0851 5576 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
10:47:00.0861 5576 dot3svc - ok
10:47:00.0901 5576 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
10:47:00.0911 5576 DPS - ok
10:47:00.0931 5576 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
10:47:00.0931 5576 drmkaud - ok
10:47:00.0991 5576 [ 16498EBC04AE9DD07049A8884B205C05 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
10:47:01.0001 5576 DXGKrnl - ok
10:47:01.0031 5576 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
10:47:01.0031 5576 EapHost - ok
10:47:01.0181 5576 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
10:47:01.0201 5576 ebdrv - ok
10:47:01.0261 5576 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
10:47:01.0271 5576 EFS - ok
10:47:01.0331 5576 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
10:47:01.0341 5576 ehRecvr - ok
10:47:01.0361 5576 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
10:47:01.0371 5576 ehSched - ok
10:47:01.0391 5576 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
10:47:01.0401 5576 elxstor - ok
10:47:01.0431 5576 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
10:47:01.0431 5576 ErrDev - ok
10:47:01.0491 5576 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
10:47:01.0501 5576 EventSystem - ok
10:47:01.0521 5576 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
10:47:01.0521 5576 exfat - ok
10:47:01.0581 5576 FairplayKD - ok
10:47:01.0591 5576 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
10:47:01.0591 5576 fastfat - ok
10:47:01.0651 5576 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
10:47:01.0661 5576 Fax - ok
10:47:01.0681 5576 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
10:47:01.0681 5576 fdc - ok
10:47:01.0711 5576 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
10:47:01.0721 5576 fdPHost - ok
10:47:01.0751 5576 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
10:47:01.0761 5576 FDResPub - ok
10:47:01.0771 5576 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
10:47:01.0781 5576 FileInfo - ok
10:47:01.0791 5576 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
10:47:01.0791 5576 Filetrace - ok
10:47:01.0821 5576 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
10:47:01.0821 5576 flpydisk - ok
10:47:01.0851 5576 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
10:47:01.0861 5576 FltMgr - ok
10:47:01.0921 5576 [ E12C4928B32ACE04610259647F072635 ] FontCache C:\Windows\system32\FntCache.dll
10:47:01.0931 5576 FontCache - ok
10:47:02.0001 5576 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
10:47:02.0001 5576 FontCache3.0.0.0 - ok
10:47:02.0031 5576 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
10:47:02.0031 5576 FsDepends - ok
10:47:02.0071 5576 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
10:47:02.0071 5576 Fs_Rec - ok
10:47:02.0121 5576 [ E306A24D9694C724FA2491278BF50FDB ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
10:47:02.0121 5576 fvevol - ok
10:47:02.0161 5576 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
10:47:02.0161 5576 gagp30kx - ok
10:47:02.0221 5576 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
10:47:02.0221 5576 gpsvc - ok
10:47:02.0301 5576 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
10:47:02.0301 5576 gupdate - ok
10:47:02.0311 5576 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
10:47:02.0321 5576 gupdatem - ok
10:47:02.0361 5576 [ 833051C6C6C42117191935F734CFBD97 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
10:47:02.0361 5576 hamachi - ok
10:47:02.0391 5576 Hamachi2Svc - ok
10:47:02.0431 5576 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
10:47:02.0431 5576 hcw85cir - ok
10:47:02.0461 5576 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
10:47:02.0461 5576 HDAudBus - ok
10:47:02.0491 5576 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
10:47:02.0491 5576 HidBatt - ok
10:47:02.0511 5576 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
10:47:02.0511 5576 HidBth - ok
10:47:02.0551 5576 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
10:47:02.0551 5576 HidIr - ok
10:47:02.0591 5576 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
10:47:02.0631 5576 hidserv - ok
10:47:02.0701 5576 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\drivers\hidusb.sys
10:47:02.0701 5576 HidUsb - ok
10:47:02.0751 5576 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
10:47:02.0751 5576 hkmsvc - ok
10:47:02.0801 5576 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
10:47:02.0801 5576 HomeGroupListener - ok
10:47:02.0851 5576 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
10:47:02.0861 5576 HomeGroupProvider - ok
10:47:02.0901 5576 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
10:47:02.0901 5576 HpSAMD - ok
10:47:02.0971 5576 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
10:47:02.0971 5576 HTTP - ok
10:47:03.0011 5576 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
10:47:03.0011 5576 hwpolicy - ok
10:47:03.0051 5576 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
10:47:03.0051 5576 i8042prt - ok
10:47:03.0091 5576 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
10:47:03.0101 5576 iaStorV - ok
10:47:03.0161 5576 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
10:47:03.0201 5576 idsvc - ok
10:47:03.0231 5576 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
10:47:03.0241 5576 iirsp - ok
10:47:03.0301 5576 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
10:47:03.0301 5576 IKEEXT - ok
10:47:03.0361 5576 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
10:47:03.0361 5576 intelide - ok
10:47:03.0391 5576 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
10:47:03.0391 5576 intelppm - ok
10:47:03.0421 5576 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
10:47:03.0421 5576 IPBusEnum - ok
10:47:03.0451 5576 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
10:47:03.0451 5576 IpFilterDriver - ok
10:47:03.0491 5576 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
10:47:03.0501 5576 iphlpsvc - ok
10:47:03.0551 5576 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
10:47:03.0551 5576 IPMIDRV - ok
10:47:03.0581 5576 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
10:47:03.0581 5576 IPNAT - ok
10:47:03.0611 5576 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
10:47:03.0611 5576 IRENUM - ok
10:47:03.0651 5576 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
10:47:03.0651 5576 isapnp - ok
10:47:03.0691 5576 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
10:47:03.0691 5576 iScsiPrt - ok
10:47:03.0731 5576 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
10:47:03.0731 5576 kbdclass - ok
10:47:03.0781 5576 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
10:47:03.0781 5576 kbdhid - ok
10:47:03.0791 5576 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
10:47:03.0801 5576 KeyIso - ok
10:47:03.0981 5576 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
10:47:03.0981 5576 KSecDD - ok
10:47:04.0001 5576 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
10:47:04.0011 5576 KSecPkg - ok
10:47:04.0041 5576 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
10:47:04.0051 5576 KtmRm - ok
10:47:04.0081 5576 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll
10:47:04.0081 5576 LanmanServer - ok
10:47:04.0101 5576 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
10:47:04.0111 5576 LanmanWorkstation - ok
10:47:04.0161 5576 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
10:47:04.0171 5576 lltdio - ok
10:47:04.0211 5576 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
10:47:04.0211 5576 lltdsvc - ok
10:47:04.0241 5576 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
10:47:04.0241 5576 lmhosts - ok
10:47:04.0281 5576 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
10:47:04.0281 5576 LSI_FC - ok
10:47:04.0301 5576 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
10:47:04.0301 5576 LSI_SAS - ok
10:47:04.0321 5576 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
10:47:04.0321 5576 LSI_SAS2 - ok
10:47:04.0341 5576 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
10:47:04.0341 5576 LSI_SCSI - ok
10:47:04.0371 5576 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
10:47:04.0371 5576 luafv - ok
10:47:04.0401 5576 [ 4470E3C1E0C3378E4CAB137893C12C3A ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
10:47:04.0411 5576 MBAMProtector - ok
10:47:04.0461 5576 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
10:47:04.0461 5576 MBAMScheduler - ok
10:47:04.0511 5576 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
10:47:04.0511 5576 MBAMService - ok
10:47:04.0551 5576 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
10:47:04.0561 5576 Mcx2Svc - ok
10:47:04.0591 5576 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
10:47:04.0591 5576 megasas - ok
10:47:04.0621 5576 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
10:47:04.0621 5576 MegaSR - ok
10:47:04.0651 5576 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
10:47:04.0651 5576 MMCSS - ok
10:47:04.0671 5576 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
10:47:04.0681 5576 Modem - ok
10:47:04.0701 5576 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
10:47:04.0711 5576 monitor - ok
10:47:04.0721 5576 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\drivers\mouclass.sys
10:47:04.0721 5576 mouclass - ok
10:47:04.0741 5576 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
10:47:04.0741 5576 mouhid - ok
10:47:04.0791 5576 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
10:47:04.0791 5576 mountmgr - ok
10:47:04.0831 5576 [ A35576A433F4AEB0D48976A004657CB6 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
10:47:04.0831 5576 MozillaMaintenance - ok
10:47:04.0871 5576 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
10:47:04.0881 5576 mpio - ok
10:47:04.0901 5576 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
10:47:04.0901 5576 mpsdrv - ok
10:47:04.0941 5576 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
10:47:04.0971 5576 MpsSvc - ok
10:47:05.0011 5576 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
10:47:05.0011 5576 MRxDAV - ok
10:47:05.0061 5576 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
10:47:05.0071 5576 mrxsmb - ok
10:47:05.0091 5576 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
10:47:05.0091 5576 mrxsmb10 - ok
10:47:05.0111 5576 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
10:47:05.0111 5576 mrxsmb20 - ok
10:47:05.0151 5576 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
10:47:05.0161 5576 msahci - ok
10:47:05.0201 5576 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
10:47:05.0204 5576 msdsm - ok
10:47:05.0227 5576 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
10:47:05.0237 5576 MSDTC - ok
10:47:05.0287 5576 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
10:47:05.0287 5576 Msfs - ok
10:47:05.0297 5576 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
10:47:05.0307 5576 mshidkmdf - ok
10:47:05.0347 5576 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
10:47:05.0347 5576 msisadrv - ok
10:47:05.0387 5576 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
10:47:05.0397 5576 MSiSCSI - ok
10:47:05.0407 5576 msiserver - ok
10:47:05.0437 5576 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
10:47:05.0437 5576 MSKSSRV - ok
10:47:05.0457 5576 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
10:47:05.0457 5576 MSPCLOCK - ok
10:47:05.0477 5576 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
10:47:05.0477 5576 MSPQM - ok
10:47:05.0517 5576 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
10:47:05.0517 5576 MsRPC - ok
10:47:05.0557 5576 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
10:47:05.0557 5576 mssmbios - ok
10:47:05.0587 5576 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
10:47:05.0597 5576 MSTEE - ok
10:47:05.0617 5576 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
10:47:05.0617 5576 MTConfig - ok
10:47:05.0637 5576 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
10:47:05.0647 5576 Mup - ok
10:47:05.0687 5576 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
10:47:05.0697 5576 napagent - ok
10:47:05.0747 5576 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
10:47:05.0747 5576 NativeWifiP - ok
10:47:05.0807 5576 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
10:47:05.0817 5576 NDIS - ok
10:47:05.0837 5576 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
10:47:05.0847 5576 NdisCap - ok
10:47:05.0877 5576 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
10:47:05.0877 5576 NdisTapi - ok
10:47:05.0917 5576 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
10:47:05.0927 5576 Ndisuio - ok
10:47:05.0957 5576 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
10:47:05.0967 5576 NdisWan - ok
10:47:06.0007 5576 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
10:47:06.0007 5576 NDProxy - ok
10:47:06.0027 5576 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
10:47:06.0027 5576 NetBIOS - ok
10:47:06.0077 5576 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
10:47:06.0087 5576 NetBT - ok
10:47:06.0097 5576 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
10:47:06.0107 5576 Netlogon - ok
10:47:06.0147 5576 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
10:47:06.0147 5576 Netman - ok
10:47:06.0207 5576 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:47:06.0207 5576 NetMsmqActivator - ok
10:47:06.0217 5576 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:47:06.0217 5576 NetPipeActivator - ok
10:47:06.0237 5576 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
10:47:06.0257 5576 netprofm - ok
10:47:06.0267 5576 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:47:06.0267 5576 NetTcpActivator - ok
10:47:06.0277 5576 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:47:06.0287 5576 NetTcpPortSharing - ok
10:47:06.0327 5576 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
10:47:06.0327 5576 nfrd960 - ok
10:47:06.0367 5576 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\Windows\System32\nlasvc.dll
10:47:06.0377 5576 NlaSvc - ok
10:47:06.0397 5576 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
10:47:06.0397 5576 Npfs - ok
10:47:06.0427 5576 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
10:47:06.0427 5576 nsi - ok
10:47:06.0447 5576 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
10:47:06.0447 5576 nsiproxy - ok
10:47:06.0517 5576 [ 5E43D2B0EE64123D4880DFA6626DEFDE ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
10:47:06.0527 5576 Ntfs - ok
10:47:06.0547 5576 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
10:47:06.0557 5576 Null - ok
10:47:06.0597 5576 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
10:47:06.0597 5576 nvraid - ok
10:47:06.0617 5576 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
10:47:06.0627 5576 nvstor - ok
10:47:06.0647 5576 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
10:47:06.0647 5576 nv_agp - ok
10:47:06.0687 5576 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
10:47:06.0687 5576 ohci1394 - ok
10:47:06.0717 5576 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
10:47:06.0727 5576 p2pimsvc - ok
10:47:06.0767 5576 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
10:47:06.0777 5576 p2psvc - ok
10:47:06.0817 5576 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
10:47:06.0817 5576 Parport - ok
10:47:06.0837 5576 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
10:47:06.0837 5576 partmgr - ok
10:47:06.0857 5576 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
10:47:06.0857 5576 Parvdm - ok
10:47:06.0887 5576 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
10:47:06.0897 5576 PcaSvc - ok
10:47:06.0927 5576 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
10:47:06.0927 5576 pci - ok
10:47:06.0947 5576 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
10:47:06.0947 5576 pciide - ok
10:47:06.0977 5576 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
10:47:06.0977 5576 pcmcia - ok
10:47:06.0997 5576 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
10:47:07.0007 5576 pcw - ok
10:47:07.0047 5576 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
10:47:07.0047 5576 PEAUTH - ok
10:47:07.0147 5576 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
10:47:07.0187 5576 pla - ok
10:47:07.0237 5576 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
10:47:07.0257 5576 PlugPlay - ok
10:47:07.0287 5576 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
10:47:07.0297 5576 PNRPAutoReg - ok
10:47:07.0327 5576 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
10:47:07.0337 5576 PNRPsvc - ok
10:47:07.0357 5576 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
10:47:07.0367 5576 PolicyAgent - ok
10:47:07.0417 5576 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
10:47:07.0427 5576 Power - ok
10:47:07.0467 5576 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
10:47:07.0467 5576 PptpMiniport - ok
10:47:07.0497 5576 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys
10:47:07.0497 5576 Processor - ok
10:47:07.0537 5576 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
10:47:07.0547 5576 ProfSvc - ok
10:47:07.0557 5576 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
10:47:07.0567 5576 ProtectedStorage - ok
10:47:07.0587 5576 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
10:47:07.0597 5576 Psched - ok
10:47:07.0657 5576 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
10:47:07.0667 5576 ql2300 - ok
10:47:07.0687 5576 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
10:47:07.0687 5576 ql40xx - ok
10:47:07.0727 5576 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
10:47:07.0737 5576 QWAVE - ok
10:47:07.0767 5576 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
10:47:07.0767 5576 QWAVEdrv - ok
10:47:07.0787 5576 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
10:47:07.0797 5576 RasAcd - ok
10:47:07.0817 5576 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
10:47:07.0817 5576 RasAgileVpn - ok
10:47:07.0837 5576 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
10:47:07.0847 5576 RasAuto - ok
10:47:07.0857 5576 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
10:47:07.0867 5576 Rasl2tp - ok
10:47:07.0917 5576 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
10:47:07.0927 5576 RasMan - ok
10:47:07.0947 5576 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
10:47:07.0947 5576 RasPppoe - ok
10:47:07.0977 5576 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
10:47:07.0977 5576 RasSstp - ok
10:47:08.0017 5576 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
10:47:08.0027 5576 rdbss - ok
10:47:08.0047 5576 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
10:47:08.0047 5576 rdpbus - ok
10:47:08.0077 5576 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
10:47:08.0087 5576 RDPCDD - ok
10:47:08.0117 5576 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
10:47:08.0117 5576 RDPENCDD - ok
10:47:08.0157 5576 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
10:47:08.0157 5576 RDPREFMP - ok
10:47:08.0197 5576 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
10:47:08.0197 5576 RDPWD - ok
10:47:08.0247 5576 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
10:47:08.0257 5576 rdyboost - ok
10:47:08.0277 5576 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
10:47:08.0287 5576 RemoteAccess - ok
10:47:08.0317 5576 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
10:47:08.0327 5576 RemoteRegistry - ok
10:47:08.0347 5576 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
10:47:08.0357 5576 RpcEptMapper - ok
10:47:08.0377 5576 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
10:47:08.0377 5576 RpcLocator - ok
10:47:08.0407 5576 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
10:47:08.0417 5576 RpcSs - ok
10:47:08.0447 5576 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
10:47:08.0447 5576 rspndr - ok
10:47:08.0467 5576 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
10:47:08.0477 5576 SamSs - ok
10:47:08.0517 5576 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
10:47:08.0517 5576 sbp2port - ok
10:47:08.0547 5576 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
10:47:08.0557 5576 SCardSvr - ok
10:47:08.0567 5576 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
10:47:08.0567 5576 scfilter - ok
10:47:08.0637 5576 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
10:47:08.0647 5576 Schedule - ok
10:47:08.0667 5576 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
10:47:08.0667 5576 SCPolicySvc - ok
10:47:08.0717 5576 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
10:47:08.0727 5576 SDRSVC - ok
10:47:08.0757 5576 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
10:47:08.0757 5576 secdrv - ok
10:47:08.0777 5576 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
10:47:08.0787 5576 seclogon - ok
10:47:08.0817 5576 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
10:47:08.0827 5576 SENS - ok
10:47:08.0837 5576 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
10:47:08.0847 5576 SensrSvc - ok
10:47:08.0877 5576 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
10:47:08.0877 5576 Serenum - ok
10:47:08.0897 5576 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
10:47:08.0897 5576 Serial - ok
10:47:08.0937 5576 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
10:47:08.0937 5576 sermouse - ok
10:47:08.0997 5576 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
10:47:09.0007 5576 SessionEnv - ok
10:47:09.0037 5576 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
10:47:09.0037 5576 sffdisk - ok
10:47:09.0077 5576 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
10:47:09.0077 5576 sffp_mmc - ok
10:47:09.0097 5576 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
10:47:09.0097 5576 sffp_sd - ok
10:47:09.0127 5576 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
10:47:09.0127 5576 sfloppy - ok
10:47:09.0167 5576 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
10:47:09.0167 5576 SharedAccess - ok
10:47:09.0217 5576 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
10:47:09.0237 5576 ShellHWDetection - ok
10:47:09.0267 5576 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
10:47:09.0277 5576 sisagp - ok
10:47:09.0307 5576 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
10:47:09.0307 5576 SiSRaid2 - ok
10:47:09.0327 5576 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
10:47:09.0327 5576 SiSRaid4 - ok
10:47:09.0447 5576 [ 73E3B5D1F1EB5FDC51A5C3437EEE3348 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
10:47:09.0467 5576 Skype C2C Service - ok
10:47:09.0517 5576 [ 9CD1BB2DB803B6AC642BD643DDB773BC ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
10:47:09.0517 5576 SkypeUpdate - ok
10:47:09.0537 5576 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
10:47:09.0547 5576 Smb - ok
10:47:09.0607 5576 [ C80B84E4843B33DA56A806E1A1275BA0 ] smwdm C:\Windows\system32\drivers\smwdm.sys
10:47:09.0617 5576 smwdm - ok
10:47:09.0647 5576 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
10:47:09.0657 5576 SNMPTRAP - ok
10:47:09.0667 5576 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
10:47:09.0667 5576 spldr - ok
10:47:09.0717 5576 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
10:47:09.0737 5576 Spooler - ok
10:47:09.0857 5576 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
10:47:09.0887 5576 sppsvc - ok
10:47:09.0937 5576 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
10:47:09.0937 5576 sppuinotify - ok
10:47:09.0957 5576 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
10:47:09.0967 5576 srv - ok
10:47:09.0987 5576 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
10:47:09.0987 5576 srv2 - ok
10:47:10.0017 5576 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
10:47:10.0017 5576 srvnet - ok
10:47:10.0047 5576 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
10:47:10.0057 5576 SSDPSRV - ok
10:47:10.0067 5576 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
10:47:10.0077 5576 SstpSvc - ok
10:47:10.0107 5576 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
10:47:10.0107 5576 stexstor - ok
10:47:10.0177 5576 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
10:47:10.0187 5576 StiSvc - ok
10:47:10.0227 5576 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\drivers\swenum.sys
10:47:10.0227 5576 swenum - ok
10:47:10.0260 5576 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
10:47:10.0277 5576 swprv - ok
10:47:10.0341 5576 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
10:47:10.0371 5576 SysMain - ok
10:47:10.0391 5576 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
10:47:10.0401 5576 TabletInputService - ok
10:47:10.0441 5576 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
10:47:10.0451 5576 TapiSrv - ok
10:47:10.0471 5576 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
10:47:10.0481 5576 TBS - ok
10:47:10.0571 5576 [ 4E8B9BE71B807B3BAEDB7F4243F85E3C ] Tcpip C:\Windows\system32\drivers\tcpip.sys
10:47:10.0581 5576 Tcpip - ok
10:47:10.0631 5576 [ 4E8B9BE71B807B3BAEDB7F4243F85E3C ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
10:47:10.0641 5576 TCPIP6 - ok
10:47:10.0721 5576 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
10:47:10.0721 5576 tcpipreg - ok
10:47:10.0761 5576 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
10:47:10.0761 5576 TDPIPE - ok
10:47:10.0771 5576 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
10:47:10.0781 5576 TDTCP - ok
10:47:10.0821 5576 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
10:47:10.0821 5576 tdx - ok
10:47:10.0861 5576 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\drivers\termdd.sys
10:47:10.0861 5576 TermDD - ok
10:47:10.0921 5576 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
10:47:10.0941 5576 TermService - ok
10:47:10.0961 5576 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
10:47:10.0971 5576 Themes - ok
10:47:10.0991 5576 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
10:47:11.0001 5576 THREADORDER - ok
10:47:11.0031 5576 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
10:47:11.0041 5576 TrkWks - ok
10:47:11.0091 5576 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
10:47:11.0091 5576 TrustedInstaller - ok
10:47:11.0141 5576 [ B37B08F2E5EEB1A37E448E09BACE1101 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
10:47:11.0141 5576 tssecsrv - ok
10:47:11.0191 5576 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
10:47:11.0191 5576 TsUsbFlt - ok
10:47:11.0241 5576 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
10:47:11.0251 5576 tunnel - ok
10:47:11.0281 5576 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
10:47:11.0291 5576 uagp35 - ok
10:47:11.0331 5576 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
10:47:11.0331 5576 udfs - ok
10:47:11.0371 5576 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
10:47:11.0381 5576 UI0Detect - ok
10:47:11.0411 5576 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
10:47:11.0411 5576 uliagpkx - ok
10:47:11.0431 5576 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\drivers\umbus.sys
10:47:11.0441 5576 umbus - ok
10:47:11.0461 5576 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
10:47:11.0461 5576 UmPass - ok
10:47:11.0491 5576 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
10:47:11.0511 5576 upnphost - ok
10:47:11.0551 5576 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
10:47:11.0561 5576 usbccgp - ok
10:47:11.0601 5576 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys
10:47:11.0601 5576 usbcir - ok
10:47:11.0641 5576 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
10:47:11.0641 5576 usbehci - ok
10:47:11.0661 5576 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
10:47:11.0661 5576 usbhub - ok
10:47:11.0691 5576 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\drivers\usbohci.sys
10:47:11.0691 5576 usbohci - ok
10:47:11.0731 5576 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
10:47:11.0731 5576 usbprint - ok
10:47:11.0751 5576 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\drivers\USBSTOR.SYS
10:47:11.0751 5576 USBSTOR - ok
10:47:11.0781 5576 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
10:47:11.0781 5576 usbuhci - ok
10:47:11.0811 5576 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
10:47:11.0821 5576 UxSms - ok
10:47:11.0831 5576 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
10:47:11.0841 5576 VaultSvc - ok
10:47:11.0891 5576 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
10:47:11.0891 5576 vdrvroot - ok
10:47:11.0951 5576 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
10:47:11.0961 5576 vds - ok
10:47:12.0001 5576 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
10:47:12.0001 5576 vga - ok
10:47:12.0021 5576 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
10:47:12.0031 5576 VgaSave - ok
10:47:12.0071 5576 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
10:47:12.0071 5576 vhdmp - ok
10:47:12.0101 5576 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
10:47:12.0101 5576 viaagp - ok
10:47:12.0121 5576 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys
10:47:12.0121 5576 ViaC7 - ok
10:47:12.0161 5576 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
10:47:12.0171 5576 viaide - ok
10:47:12.0181 5576 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
10:47:12.0191 5576 volmgr - ok
10:47:12.0211 5576 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
10:47:12.0211 5576 volmgrx - ok
10:47:12.0241 5576 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
10:47:12.0251 5576 volsnap - ok
10:47:12.0281 5576 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
10:47:12.0281 5576 vsmraid - ok
10:47:12.0351 5576 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
10:47:12.0381 5576 VSS - ok
10:47:12.0401 5576 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
10:47:12.0401 5576 vwifibus - ok
10:47:12.0441 5576 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
10:47:12.0451 5576 W32Time - ok
10:47:12.0491 5576 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
10:47:12.0491 5576 WacomPen - ok
10:47:12.0541 5576 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
10:47:12.0541 5576 WANARP - ok
10:47:12.0551 5576 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
10:47:12.0551 5576 Wanarpv6 - ok
10:47:12.0641 5576 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
10:47:12.0681 5576 WatAdminSvc - ok
10:47:12.0751 5576 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
10:47:12.0791 5576 wbengine - ok
10:47:12.0821 5576 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
10:47:12.0831 5576 WbioSrvc - ok
10:47:12.0881 5576 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
10:47:12.0891 5576 wcncsvc - ok
10:47:12.0921 5576 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
10:47:12.0931 5576 WcsPlugInService - ok
10:47:12.0951 5576 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys
10:47:12.0961 5576 Wd - ok
10:47:13.0001 5576 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
10:47:13.0011 5576 Wdf01000 - ok
10:47:13.0031 5576 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
10:47:13.0041 5576 WdiServiceHost - ok
10:47:13.0051 5576 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
10:47:13.0061 5576 WdiSystemHost - ok
10:47:13.0101 5576 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
10:47:13.0111 5576 WebClient - ok
10:47:13.0131 5576 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
10:47:13.0141 5576 Wecsvc - ok
10:47:13.0161 5576 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
10:47:13.0171 5576 wercplsupport - ok
-
- Level 1.5
- Příspěvky: 147
- Registrován: červenec 13
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu HJT - PC zasekáva,reaguje spomalene.
10:47:13.0191 5576 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
10:47:13.0201 5576 WerSvc - ok
10:47:13.0221 5576 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
10:47:13.0221 5576 WfpLwf - ok
10:47:13.0261 5576 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
10:47:13.0261 5576 WIMMount - ok
10:47:13.0331 5576 [ 082CF481F659FAE0DE51AD060881EB47 ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
10:47:13.0331 5576 WinDefend - ok
10:47:13.0371 5576 WinHttpAutoProxySvc - ok
10:47:13.0411 5576 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
10:47:13.0411 5576 Winmgmt - ok
10:47:13.0491 5576 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
10:47:13.0541 5576 WinRM - ok
10:47:13.0611 5576 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
10:47:13.0631 5576 Wlansvc - ok
10:47:13.0771 5576 [ 5E7C103F8475C4289847D15E129C20F7 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
10:47:13.0791 5576 wlidsvc - ok
10:47:13.0821 5576 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
10:47:13.0821 5576 WmiAcpi - ok
10:47:13.0861 5576 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
10:47:13.0861 5576 wmiApSrv - ok
10:47:13.0961 5576 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
10:47:13.0971 5576 WMPNetworkSvc - ok
10:47:14.0011 5576 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
10:47:14.0021 5576 WPCSvc - ok
10:47:14.0061 5576 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
10:47:14.0071 5576 WPDBusEnum - ok
10:47:14.0101 5576 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
10:47:14.0101 5576 ws2ifsl - ok
10:47:14.0121 5576 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll
10:47:14.0131 5576 wscsvc - ok
10:47:14.0141 5576 WSearch - ok
10:47:14.0231 5576 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
10:47:14.0291 5576 wuauserv - ok
10:47:14.0341 5576 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
10:47:14.0341 5576 WudfPf - ok
10:47:14.0361 5576 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
10:47:14.0371 5576 WUDFRd - ok
10:47:14.0421 5576 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
10:47:14.0431 5576 wudfsvc - ok
10:47:14.0481 5576 [ 3C5E51C05BE9B56EAFF4E388C3AB25E4 ] WwanSvc C:\Windows\System32\wwansvc.dll
10:47:14.0491 5576 WwanSvc - ok
10:47:14.0511 5576 ================ Scan global ===============================
10:47:14.0551 5576 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
10:47:14.0591 5576 [ 51BB04243DF6196C06E125898127E397 ] C:\Windows\system32\winsrv.dll
10:47:14.0611 5576 [ 51BB04243DF6196C06E125898127E397 ] C:\Windows\system32\winsrv.dll
10:47:14.0641 5576 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
10:47:14.0681 5576 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
10:47:14.0691 5576 [Global] - ok
10:47:14.0691 5576 ================ Scan MBR ==================================
10:47:14.0701 5576 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
10:47:14.0801 5576 \Device\Harddisk0\DR0 - ok
10:47:14.0811 5576 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
10:47:15.0261 5576 \Device\Harddisk1\DR1 - ok
10:47:15.0261 5576 ================ Scan VBR ==================================
10:47:15.0261 5576 [ 5D6BEEA90A312ECE2A5C338010362916 ] \Device\Harddisk0\DR0\Partition1
10:47:15.0271 5576 \Device\Harddisk0\DR0\Partition1 - ok
10:47:15.0271 5576 [ 0EFC467436AA16259C08EB6EEBAE09D9 ] \Device\Harddisk1\DR1\Partition1
10:47:15.0281 5576 \Device\Harddisk1\DR1\Partition1 - ok
10:47:15.0281 5576 ============================================================
10:47:15.0281 5576 Scan finished
10:47:15.0281 5576 ============================================================
10:47:15.0311 4396 Detected object count: 0
10:47:15.0311 4396 Actual detected object count: 0
10:47:13.0201 5576 WerSvc - ok
10:47:13.0221 5576 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
10:47:13.0221 5576 WfpLwf - ok
10:47:13.0261 5576 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
10:47:13.0261 5576 WIMMount - ok
10:47:13.0331 5576 [ 082CF481F659FAE0DE51AD060881EB47 ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
10:47:13.0331 5576 WinDefend - ok
10:47:13.0371 5576 WinHttpAutoProxySvc - ok
10:47:13.0411 5576 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
10:47:13.0411 5576 Winmgmt - ok
10:47:13.0491 5576 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
10:47:13.0541 5576 WinRM - ok
10:47:13.0611 5576 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
10:47:13.0631 5576 Wlansvc - ok
10:47:13.0771 5576 [ 5E7C103F8475C4289847D15E129C20F7 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
10:47:13.0791 5576 wlidsvc - ok
10:47:13.0821 5576 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
10:47:13.0821 5576 WmiAcpi - ok
10:47:13.0861 5576 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
10:47:13.0861 5576 wmiApSrv - ok
10:47:13.0961 5576 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
10:47:13.0971 5576 WMPNetworkSvc - ok
10:47:14.0011 5576 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
10:47:14.0021 5576 WPCSvc - ok
10:47:14.0061 5576 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
10:47:14.0071 5576 WPDBusEnum - ok
10:47:14.0101 5576 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
10:47:14.0101 5576 ws2ifsl - ok
10:47:14.0121 5576 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll
10:47:14.0131 5576 wscsvc - ok
10:47:14.0141 5576 WSearch - ok
10:47:14.0231 5576 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
10:47:14.0291 5576 wuauserv - ok
10:47:14.0341 5576 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
10:47:14.0341 5576 WudfPf - ok
10:47:14.0361 5576 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
10:47:14.0371 5576 WUDFRd - ok
10:47:14.0421 5576 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
10:47:14.0431 5576 wudfsvc - ok
10:47:14.0481 5576 [ 3C5E51C05BE9B56EAFF4E388C3AB25E4 ] WwanSvc C:\Windows\System32\wwansvc.dll
10:47:14.0491 5576 WwanSvc - ok
10:47:14.0511 5576 ================ Scan global ===============================
10:47:14.0551 5576 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
10:47:14.0591 5576 [ 51BB04243DF6196C06E125898127E397 ] C:\Windows\system32\winsrv.dll
10:47:14.0611 5576 [ 51BB04243DF6196C06E125898127E397 ] C:\Windows\system32\winsrv.dll
10:47:14.0641 5576 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
10:47:14.0681 5576 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
10:47:14.0691 5576 [Global] - ok
10:47:14.0691 5576 ================ Scan MBR ==================================
10:47:14.0701 5576 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
10:47:14.0801 5576 \Device\Harddisk0\DR0 - ok
10:47:14.0811 5576 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
10:47:15.0261 5576 \Device\Harddisk1\DR1 - ok
10:47:15.0261 5576 ================ Scan VBR ==================================
10:47:15.0261 5576 [ 5D6BEEA90A312ECE2A5C338010362916 ] \Device\Harddisk0\DR0\Partition1
10:47:15.0271 5576 \Device\Harddisk0\DR0\Partition1 - ok
10:47:15.0271 5576 [ 0EFC467436AA16259C08EB6EEBAE09D9 ] \Device\Harddisk1\DR1\Partition1
10:47:15.0281 5576 \Device\Harddisk1\DR1\Partition1 - ok
10:47:15.0281 5576 ============================================================
10:47:15.0281 5576 Scan finished
10:47:15.0281 5576 ============================================================
10:47:15.0311 4396 Detected object count: 0
10:47:15.0311 4396 Actual detected object count: 0
-
- Level 1.5
- Příspěvky: 147
- Registrován: červenec 13
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu HJT - PC zasekáva,reaguje spomalene.
RogueKiller
RogueKiller V8.6.12 [Sep 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : LightclawSK [Práva správce]
Mód : Odebrat -- Datum : 09/29/2013 10:44:26
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 6 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : Pokki (C:\Windows\system32\rundll32.exe "%LOCALAPPDATA%\Pokki\Engine\Launcher.dll",RunLaunchPlatform [-][7][x]) -> VYMAZÁNO
[RUN][SUSP PATH] HKUS\S-1-5-21-4075213465-814325269-105422406-1001\[...]\Run : Pokki (C:\Windows\system32\rundll32.exe "%LOCALAPPDATA%\Pokki\Engine\Launcher.dll",RunLaunchPlatform [-][7][x]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) (Standardní diskové jednotky) - MAXTOR STM3250820A ATA Device +++++
--- User ---
[MBR] 80c77661c26b6dedb07dea1aab8ff58d
[BSP] 229999cce3bb13fe206d9b1b186a4a60 : Windows XP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 238472 Mo
User = LL1 ... OK!
User = LL2 ... OK!
+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ IDE) (Standardní diskové jednotky) - ST380013AS ATA Device +++++
--- User ---
[MBR] cc5891e8d868013f0511ada7e80d5ed8
[BSP] b7f733ae6209a3ca65ff9d10514949a0 : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] DELL-UTIL (0xde) [VISIBLE] Offset (sectors): 63 | Size: 54 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 112455 | Size: 76230 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_09292013_104426.txt >>
RKreport[0]_S_09292013_100943.txt;RKreport[0]_S_09292013_104421.txt
RogueKiller V8.6.12 [Sep 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : LightclawSK [Práva správce]
Mód : Odebrat -- Datum : 09/29/2013 10:44:26
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 6 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : Pokki (C:\Windows\system32\rundll32.exe "%LOCALAPPDATA%\Pokki\Engine\Launcher.dll",RunLaunchPlatform [-][7][x]) -> VYMAZÁNO
[RUN][SUSP PATH] HKUS\S-1-5-21-4075213465-814325269-105422406-1001\[...]\Run : Pokki (C:\Windows\system32\rundll32.exe "%LOCALAPPDATA%\Pokki\Engine\Launcher.dll",RunLaunchPlatform [-][7][x]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) (Standardní diskové jednotky) - MAXTOR STM3250820A ATA Device +++++
--- User ---
[MBR] 80c77661c26b6dedb07dea1aab8ff58d
[BSP] 229999cce3bb13fe206d9b1b186a4a60 : Windows XP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 238472 Mo
User = LL1 ... OK!
User = LL2 ... OK!
+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ IDE) (Standardní diskové jednotky) - ST380013AS ATA Device +++++
--- User ---
[MBR] cc5891e8d868013f0511ada7e80d5ed8
[BSP] b7f733ae6209a3ca65ff9d10514949a0 : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] DELL-UTIL (0xde) [VISIBLE] Offset (sectors): 63 | Size: 54 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 112455 | Size: 76230 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_09292013_104426.txt >>
RKreport[0]_S_09292013_100943.txt;RKreport[0]_S_09292013_104421.txt
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu HJT - PC zasekáva,reaguje spomalene.
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je oznaèen pro odstranění, stačí restartovat počítač.
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je oznaèen pro odstranění, stačí restartovat počítač.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 50 hostů