Ahoj,
mám nový netbook Asus EEE PC Flare series, který je ale neskutečně líný. Myslím, že viry to nebude (i když jeden nikdy neví :)jen slabým přístrojem, ale je divný, že všechno hrozně dlouho trvá (spuštění čehokoliv, aktualizace atd). Je možný, že je to nějakými zbytečně běžícími procesy - HDD pořád něco chroustá. Netbook používám výlučně na běžnou práci s Officem, plus občas nějaké hledání na webu. Prosím o kontrolu logu.
Děkuji
----
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:12:09, on 13.10.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16686)
Boot mode: Normal
Running processes:
C:\windows\system32\taskhost.exe
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\ExpressGateUtil\VAWinAgent.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\windows\system32\igfxsrvc.exe
C:\Program Files\Elantech\ETDCtrl.exe
C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\O2\O2CZ\EMMSN.exe
C:\Program Files\O2\Nori\Nori.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
C:\totalcmd\TOTALCMD.EXE
C:\windows\system32\DllHost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files\IObit Apps Toolbar\IE\7.2\iobitappsToolbarIE.dll
O2 - BHO: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files\IObit Apps Toolbar\IE\7.2\iobitappsToolbarIE.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Trend Micro NSC BHO - {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: TmBpIeBHO - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe32.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files\IObit Apps Toolbar\IE\7.2\iobitappsToolbarIE.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [GfxServiceInstall] C:\windows\system32\GfxCUIServiceInstall.vbs
O4 - HKLM\..\Run: [HotkeyMon] AsusSender.exe C:\Program Files\ASUS\HotkeyService\HotKeyMon.exe
O4 - HKLM\..\Run: [HotkeyService] AsusSender.exe C:\Program Files\ASUS\HotkeyService\HotkeyService.exe
O4 - HKLM\..\Run: [SuperHybridEngine] AsusSender.exe C:\Program Files\ASUS\SHE\SuperHybridEngine.exe
O4 - HKLM\..\Run: [CapsHook] AsusSender.exe C:\Program Files\ASUS\CapsHook\CapsHook.exe
O4 - HKLM\..\Run: [ASUSWebStorage] C:\Program Files\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S
O4 - HKLM\..\Run: [VizorHtmlDialog.exe] "C:\Program Files\Trend Micro\Titanium\UIFramework\VizorHtmlDialog.exe" "DEF" "EULA" "C:\Program Files\Trend Micro\Titanium\UI\Installer.cmpt\resources\preinstall_01_welcome_trial.html" "DEF" "DEF" "DEF"
O4 - HKLM\..\Run: [Trend Micro Client Framework] "C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe"
O4 - HKLM\..\Run: [Trend Micro Titanium] C:\Program Files\Trend Micro\Titanium\VizorShortCut.exe -ReFlush "none" "none"
O4 - HKLM\..\Run: [VAWinAgent] C:\ExpressGateUtil\VAWinAgent.exe
O4 - HKLM\..\Run: [IgfxTray] C:\windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [ETDCtrl] %ProgramFiles%\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: [ASUSPRP] C:\Program Files\ASUS\APRP\APRP.EXE
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [iSeriesCharge] AsusSender.exe C:\Program Files\ASUS\USBChargeSetting\iSeriesCharge.exe
O4 - HKLM\..\Run: [SearchSettings] "C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe"
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{84F62C85-19A7-42B5-8300-20AB10785542}: NameServer = 160.218.161.60 194.228.211.33
O17 - HKLM\System\CS1\Services\Tcpip\..\{84F62C85-19A7-42B5-8300-20AB10785542}: NameServer = 160.218.161.60 194.228.211.33
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe32.dll
O18 - Protocol: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Trend Micro Solution Platform (Amsp) - Trend Micro Inc. - C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files\Application Updater\ApplicationUpdater.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files\ASUS\InstantOn for EPC\InsOnSrv.exe
O23 - Service: Asus Launcher Service (AsusService) - Unknown owner - C:\windows\system32\AsusService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: DCDhcpService - Atheros Communication Inc. - C:\Program Files\WiSharing\DCDhcpService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TiMiniService - Trend Micro Inc. - C:\Program Files\Trend Micro\Titanium\TiMiniService.exe
O23 - Service: VideAceWindowsService - Unknown owner - C:\ExpressGateUtil\VAWinService.exe
--
End of file - 10572 bytes
Pomalý netbook Vyřešeno
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Pomalý netbook
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Pokud budou problémy , spusť v nouz. režimu.
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Pomalý netbook
Dík za pomoc, večer to zrealizuji. Co se týče prohlížečů, standardně je tam instalován Explorer a mám tam Chrome. Pokud s ním ale nejsou dobré zkušenosti, odinstaluji a dám tam Firefox :)
Re: Pomalý netbook
tak posílám, snad jsem na nic nezapoměl:
# AdwCleaner v3.007 - Report created 14/10/2013 at 18:40:50
# Updated 09/10/2013 by Xplode
# Operating System : Windows 7 Starter Service Pack 1 (32 bits)
# Username : Martina - MARTINA-PC
# Running from : C:\PC\adwcleaner.exe
# Option : Scan
***** [ Services ] *****
Service Found : Application Updater
***** [ Files / Folders ] *****
Folder Found C:\Program Files\Application Updater
Folder Found C:\Program Files\Common Files\spigot
Folder Found C:\Program Files\IObit Apps Toolbar
Folder Found C:\Users\Martina\AppData\LocalLow\Search Settings
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\AppDataLow\Software\Search Settings
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : HKCU\Software\Search Settings
Key Found : HKLM\Software\Application Updater
Key Found : HKLM\SOFTWARE\Classes\CLSID\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Key Found : HKLM\Software\Search Settings
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SearchSettings]
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16720
-\\ Google Chrome v29.0.1547.76
[ File : C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [2254 octets] - [14/10/2013 18:40:50]
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [2314 octets] ##########
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org
Verze: v2013.10.14.08
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16721
Martina :: MARTINA-PC [administrátor]
Ochrana: Povolena
14.10.2013 19:01:40
MBAM-log-2013-10-14 (19-22-39).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 190734
Uplynulý čas: 15 minut, 21 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 4
C:\Users\Martina\Downloads\rcpsetup3_dcomnew_util_300_dcomnew_util_300 (1).exe (PUP.Optional.RegCleanerPro) -> Nebyla provedena žádná instrukce.
C:\Users\Martina\Downloads\rcpsetup3_dcomnew_util_300_dcomnew_util_300 (2).exe (PUP.Optional.RegCleanerPro) -> Nebyla provedena žádná instrukce.
C:\Users\Martina\Downloads\rcpsetup3_dcomnew_util_300_dcomnew_util_300 (3).exe (PUP.Optional.RegCleanerPro) -> Nebyla provedena žádná instrukce.
C:\Users\Martina\Downloads\rcpsetup3_dcomnew_util_300_dcomnew_util_300.exe (PUP.Optional.RegCleanerPro) -> Nebyla provedena žádná instrukce.
(konec)
# AdwCleaner v3.007 - Report created 14/10/2013 at 18:40:50
# Updated 09/10/2013 by Xplode
# Operating System : Windows 7 Starter Service Pack 1 (32 bits)
# Username : Martina - MARTINA-PC
# Running from : C:\PC\adwcleaner.exe
# Option : Scan
***** [ Services ] *****
Service Found : Application Updater
***** [ Files / Folders ] *****
Folder Found C:\Program Files\Application Updater
Folder Found C:\Program Files\Common Files\spigot
Folder Found C:\Program Files\IObit Apps Toolbar
Folder Found C:\Users\Martina\AppData\LocalLow\Search Settings
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\AppDataLow\Software\Search Settings
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : HKCU\Software\Search Settings
Key Found : HKLM\Software\Application Updater
Key Found : HKLM\SOFTWARE\Classes\CLSID\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Key Found : HKLM\Software\Search Settings
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SearchSettings]
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16720
-\\ Google Chrome v29.0.1547.76
[ File : C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [2254 octets] - [14/10/2013 18:40:50]
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [2314 octets] ##########
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org
Verze: v2013.10.14.08
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16721
Martina :: MARTINA-PC [administrátor]
Ochrana: Povolena
14.10.2013 19:01:40
MBAM-log-2013-10-14 (19-22-39).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 190734
Uplynulý čas: 15 minut, 21 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 4
C:\Users\Martina\Downloads\rcpsetup3_dcomnew_util_300_dcomnew_util_300 (1).exe (PUP.Optional.RegCleanerPro) -> Nebyla provedena žádná instrukce.
C:\Users\Martina\Downloads\rcpsetup3_dcomnew_util_300_dcomnew_util_300 (2).exe (PUP.Optional.RegCleanerPro) -> Nebyla provedena žádná instrukce.
C:\Users\Martina\Downloads\rcpsetup3_dcomnew_util_300_dcomnew_util_300 (3).exe (PUP.Optional.RegCleanerPro) -> Nebyla provedena žádná instrukce.
C:\Users\Martina\Downloads\rcpsetup3_dcomnew_util_300_dcomnew_util_300.exe (PUP.Optional.RegCleanerPro) -> Nebyla provedena žádná instrukce.
(konec)
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Pomalý netbook
. Takže spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
Klikni na „ Vymazat-Clean“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
Stáhni si Junkware Removal Tool
na svojí plochu.
Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
Klikni na „ Vymazat-Clean“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
Stáhni si Junkware Removal Tool
na svojí plochu.
Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Pomalý netbook
pošlu v pátek, manželka si mašinku vzala na služebku. Jinak co se týče Hijack logu, není třeba tam některé procesy povypínat (ty Explorery apod)?
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Pomalý netbook
To až potom , bude to na delší dobu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Pomalý netbook
# AdwCleaner v3.007 - Report created 21/10/2013 at 12:15:29
# Updated 09/10/2013 by Xplode
# Operating System : Windows 7 Starter Service Pack 1 (32 bits)
# Username : Martina - MARTINA-PC
# Running from : C:\Program Files\PC\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
Service Deleted : Application Updater
***** [ Files / Folders ] *****
Folder Deleted : C:\Program Files\Application Updater
Folder Deleted : C:\Program Files\IObit Apps Toolbar
Folder Deleted : C:\Program Files\Common Files\spigot
Folder Deleted : C:\Users\Martina\AppData\LocalLow\Search Settings
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SearchSettings]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Key Deleted : HKCU\Software\Search Settings
Key Deleted : HKCU\Software\AppDataLow\Software\Search Settings
Key Deleted : HKLM\Software\Application Updater
Key Deleted : HKLM\Software\Search Settings
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16720
-\\ Google Chrome v30.0.1599.101
[ File : C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [4929 octets] - [14/10/2013 18:40:50]
AdwCleaner[S0].txt - [2510 octets] - [21/10/2013 12:15:29]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2570 octets] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.4 (10.06.2013:1)
OS: Windows 7 Starter x86
Ran by Martina on po 21.10.2013 at 12:21:38,43
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
Successfully deleted: [File] C:\windows\system32\sho3A1B.tmp
Successfully deleted: [File] C:\windows\system32\sho4D41.tmp
Successfully deleted: [File] C:\windows\system32\shoFF47.tmp
~~~ Folders
Successfully deleted: [Empty Folder] C:\Users\Martina\appdata\local\{0D7A6155-8287-487F-9F09-665CFD289571}
Successfully deleted: [Empty Folder] C:\Users\Martina\appdata\local\{B25B1A40-2102-46B7-8C91-8F656CE67729}
Successfully deleted: [Empty Folder] C:\Users\Martina\appdata\local\{C4A8A376-D927-404D-B080-7360A2AE001A}
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on po 21.10.2013 at 12:38:33,29
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
RogueKiller V8.7.2 [Oct 3 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Martina [Práva správce]
Mód : Kontrola -- Datum : 10/21/2013 18:01:17
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] SSDT[70] : NtCreateKey @ 0x82206009 -> HOOKED (Unknown @ 0x86226B80)
[Address] SSDT[74] : NtCreateMutant @ 0x8221535A -> HOOKED (Unknown @ 0x8622FAE0)
[Address] SSDT[79] : NtCreateProcess @ 0x822E11D1 -> HOOKED (Unknown @ 0x86225680)
[Address] SSDT[80] : NtCreateProcessEx @ 0x822E121C -> HOOKED (Unknown @ 0x86225980)
[Address] SSDT[86] : NtCreateSymbolicLinkObject @ 0x822069D4 -> HOOKED (Unknown @ 0x8622FEA0)
[Address] SSDT[87] : NtCreateThread @ 0x822E0FDA -> HOOKED (Unknown @ 0x8622F420)
[Address] SSDT[88] : NtCreateThreadEx @ 0x822754AB -> HOOKED (Unknown @ 0x8622F600)
[Address] SSDT[93] : NtCreateUserProcess @ 0x822733DD -> HOOKED (Unknown @ 0x86225C80)
[Address] SSDT[103] : NtDeleteKey @ 0x821F0A58 -> HOOKED (Unknown @ 0x86227180)
[Address] SSDT[106] : NtDeleteValueKey @ 0x821E2461 -> HOOKED (Unknown @ 0x86227A80)
[Address] SSDT[111] : NtDuplicateObject @ 0x82236761 -> HOOKED (Unknown @ 0x86230080)
[Address] SSDT[190] : NtOpenProcess @ 0x82216BA1 -> HOOKED (Unknown @ 0x86225F80)
[Address] SSDT[194] : NtOpenSection @ 0x8226E9FB -> HOOKED (Unknown @ 0x86227FC0)
[Address] SSDT[198] : NtOpenThread @ 0x82263102 -> HOOKED (Unknown @ 0x86226280)
[Address] SSDT[290] : NtRenameKey @ 0x822A10EB -> HOOKED (Unknown @ 0x86227480)
[Address] SSDT[302] : NtRestoreKey @ 0x82296CA2 -> HOOKED (Unknown @ 0x86227780)
[Address] SSDT[350] : NtSetSystemInformation @ 0x8225337A -> HOOKED (Unknown @ 0x8622FCC0)
[Address] SSDT[358] : NtSetValueKey @ 0x8220F606 -> HOOKED (Unknown @ 0x86226E80)
[Address] SSDT[371] : NtTerminateThread @ 0x8227D6CB -> HOOKED (Unknown @ 0x86226880)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) (Standardní diskové jednotky) - Hitachi HTS543232A7A384 +++++
--- User ---
[MBR] 08824852bcacf7ad50f0a606645b04b6
[BSP] 157c58985a93fe14dfea6f66166b01ab : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 102400 Mo
1 - [XXXXXX] FAT32 (0x1b) [HIDDEN!] Offset (sectors): 209717248 | Size: 15360 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 241174528 | Size: 187468 Mo
3 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 625108992 | Size: 16 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_S_10212013_180117.txt >>
# Updated 09/10/2013 by Xplode
# Operating System : Windows 7 Starter Service Pack 1 (32 bits)
# Username : Martina - MARTINA-PC
# Running from : C:\Program Files\PC\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
Service Deleted : Application Updater
***** [ Files / Folders ] *****
Folder Deleted : C:\Program Files\Application Updater
Folder Deleted : C:\Program Files\IObit Apps Toolbar
Folder Deleted : C:\Program Files\Common Files\spigot
Folder Deleted : C:\Users\Martina\AppData\LocalLow\Search Settings
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SearchSettings]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Key Deleted : HKCU\Software\Search Settings
Key Deleted : HKCU\Software\AppDataLow\Software\Search Settings
Key Deleted : HKLM\Software\Application Updater
Key Deleted : HKLM\Software\Search Settings
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16720
-\\ Google Chrome v30.0.1599.101
[ File : C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [4929 octets] - [14/10/2013 18:40:50]
AdwCleaner[S0].txt - [2510 octets] - [21/10/2013 12:15:29]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2570 octets] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.4 (10.06.2013:1)
OS: Windows 7 Starter x86
Ran by Martina on po 21.10.2013 at 12:21:38,43
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
Successfully deleted: [File] C:\windows\system32\sho3A1B.tmp
Successfully deleted: [File] C:\windows\system32\sho4D41.tmp
Successfully deleted: [File] C:\windows\system32\shoFF47.tmp
~~~ Folders
Successfully deleted: [Empty Folder] C:\Users\Martina\appdata\local\{0D7A6155-8287-487F-9F09-665CFD289571}
Successfully deleted: [Empty Folder] C:\Users\Martina\appdata\local\{B25B1A40-2102-46B7-8C91-8F656CE67729}
Successfully deleted: [Empty Folder] C:\Users\Martina\appdata\local\{C4A8A376-D927-404D-B080-7360A2AE001A}
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on po 21.10.2013 at 12:38:33,29
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
RogueKiller V8.7.2 [Oct 3 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Martina [Práva správce]
Mód : Kontrola -- Datum : 10/21/2013 18:01:17
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] SSDT[70] : NtCreateKey @ 0x82206009 -> HOOKED (Unknown @ 0x86226B80)
[Address] SSDT[74] : NtCreateMutant @ 0x8221535A -> HOOKED (Unknown @ 0x8622FAE0)
[Address] SSDT[79] : NtCreateProcess @ 0x822E11D1 -> HOOKED (Unknown @ 0x86225680)
[Address] SSDT[80] : NtCreateProcessEx @ 0x822E121C -> HOOKED (Unknown @ 0x86225980)
[Address] SSDT[86] : NtCreateSymbolicLinkObject @ 0x822069D4 -> HOOKED (Unknown @ 0x8622FEA0)
[Address] SSDT[87] : NtCreateThread @ 0x822E0FDA -> HOOKED (Unknown @ 0x8622F420)
[Address] SSDT[88] : NtCreateThreadEx @ 0x822754AB -> HOOKED (Unknown @ 0x8622F600)
[Address] SSDT[93] : NtCreateUserProcess @ 0x822733DD -> HOOKED (Unknown @ 0x86225C80)
[Address] SSDT[103] : NtDeleteKey @ 0x821F0A58 -> HOOKED (Unknown @ 0x86227180)
[Address] SSDT[106] : NtDeleteValueKey @ 0x821E2461 -> HOOKED (Unknown @ 0x86227A80)
[Address] SSDT[111] : NtDuplicateObject @ 0x82236761 -> HOOKED (Unknown @ 0x86230080)
[Address] SSDT[190] : NtOpenProcess @ 0x82216BA1 -> HOOKED (Unknown @ 0x86225F80)
[Address] SSDT[194] : NtOpenSection @ 0x8226E9FB -> HOOKED (Unknown @ 0x86227FC0)
[Address] SSDT[198] : NtOpenThread @ 0x82263102 -> HOOKED (Unknown @ 0x86226280)
[Address] SSDT[290] : NtRenameKey @ 0x822A10EB -> HOOKED (Unknown @ 0x86227480)
[Address] SSDT[302] : NtRestoreKey @ 0x82296CA2 -> HOOKED (Unknown @ 0x86227780)
[Address] SSDT[350] : NtSetSystemInformation @ 0x8225337A -> HOOKED (Unknown @ 0x8622FCC0)
[Address] SSDT[358] : NtSetValueKey @ 0x8220F606 -> HOOKED (Unknown @ 0x86226E80)
[Address] SSDT[371] : NtTerminateThread @ 0x8227D6CB -> HOOKED (Unknown @ 0x86226880)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) (Standardní diskové jednotky) - Hitachi HTS543232A7A384 +++++
--- User ---
[MBR] 08824852bcacf7ad50f0a606645b04b6
[BSP] 157c58985a93fe14dfea6f66166b01ab : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 102400 Mo
1 - [XXXXXX] FAT32 (0x1b) [HIDDEN!] Offset (sectors): 209717248 | Size: 15360 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 241174528 | Size: 187468 Mo
3 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 625108992 | Size: 16 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_S_10212013_180117.txt >>
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Pomalý netbook
. Takže spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.
Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.
Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Pomalý netbook
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org
Verze: v2013.10.22.03
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16721
Martina :: MARTINA-PC [administrátor]
Ochrana: Povolena
22.10.2013 9:13:26
mbam-log-2013-10-22 (09-13-26).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 191671
Uplynulý čas: 22 minut, 8 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 1
C:\Windows\Installer\4534b74.msi (PUP.Optional.Spigot.A) -> Přesun do karantény a smazání se zdařilo.
(konec)
------
RogueKiller V8.7.2 [Oct 3 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Martina [Práva správce]
Mód : Odebrat -- Datum : 10/22/2013 10:17:14
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] SSDT[70] : NtCreateKey @ 0x82214009 -> HOOKED (Unknown @ 0x861C7B80)
[Address] SSDT[74] : NtCreateMutant @ 0x8222335A -> HOOKED (Unknown @ 0x861D7AE0)
[Address] SSDT[79] : NtCreateProcess @ 0x822EF1D1 -> HOOKED (Unknown @ 0x861C6680)
[Address] SSDT[80] : NtCreateProcessEx @ 0x822EF21C -> HOOKED (Unknown @ 0x861C6980)
[Address] SSDT[86] : NtCreateSymbolicLinkObject @ 0x822149D4 -> HOOKED (Unknown @ 0x861D7EA0)
[Address] SSDT[87] : NtCreateThread @ 0x822EEFDA -> HOOKED (Unknown @ 0x861D7420)
[Address] SSDT[88] : NtCreateThreadEx @ 0x822834AB -> HOOKED (Unknown @ 0x861D7600)
[Address] SSDT[93] : NtCreateUserProcess @ 0x822813DD -> HOOKED (Unknown @ 0x861C6C80)
[Address] SSDT[103] : NtDeleteKey @ 0x821FEA58 -> HOOKED (Unknown @ 0x861C8180)
[Address] SSDT[106] : NtDeleteValueKey @ 0x821F0461 -> HOOKED (Unknown @ 0x861C8A80)
[Address] SSDT[111] : NtDuplicateObject @ 0x82244761 -> HOOKED (Unknown @ 0x861D8080)
[Address] SSDT[155] : NtLoadDriver @ 0x821D8C40 -> HOOKED (Unknown @ 0x861D77E0)
[Address] SSDT[190] : NtOpenProcess @ 0x82224BA1 -> HOOKED (Unknown @ 0x861C6F80)
[Address] SSDT[194] : NtOpenSection @ 0x8227C9FB -> HOOKED (Unknown @ 0x861C8FC0)
[Address] SSDT[198] : NtOpenThread @ 0x82271102 -> HOOKED (Unknown @ 0x861C7280)
[Address] SSDT[290] : NtRenameKey @ 0x822AF0EB -> HOOKED (Unknown @ 0x861C8480)
[Address] SSDT[302] : NtRestoreKey @ 0x822A4CA2 -> HOOKED (Unknown @ 0x861C8780)
[Address] SSDT[350] : NtSetSystemInformation @ 0x8226137A -> HOOKED (Unknown @ 0x861D7CC0)
[Address] SSDT[358] : NtSetValueKey @ 0x8221D606 -> HOOKED (Unknown @ 0x861C7E80)
[Address] SSDT[371] : NtTerminateThread @ 0x8228B6CB -> HOOKED (Unknown @ 0x861C7880)
[Address] SSDT[399] : NtWriteVirtualMemory @ 0x82272A97 -> HOOKED (Unknown @ 0x861D7240)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) (Standardní diskové jednotky) - Hitachi HTS543232A7A384 +++++
--- User ---
[MBR] 08824852bcacf7ad50f0a606645b04b6
[BSP] 157c58985a93fe14dfea6f66166b01ab : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 102400 Mo
1 - [XXXXXX] FAT32 (0x1b) [HIDDEN!] Offset (sectors): 209717248 | Size: 15360 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 241174528 | Size: 187468 Mo
3 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 625108992 | Size: 16 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_10222013_101714.txt >>
RKreport[0]_S_10222013_101154.txt
-----
www.malwarebytes.org
Verze: v2013.10.22.03
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16721
Martina :: MARTINA-PC [administrátor]
Ochrana: Povolena
22.10.2013 9:13:26
mbam-log-2013-10-22 (09-13-26).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 191671
Uplynulý čas: 22 minut, 8 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 1
C:\Windows\Installer\4534b74.msi (PUP.Optional.Spigot.A) -> Přesun do karantény a smazání se zdařilo.
(konec)
------
RogueKiller V8.7.2 [Oct 3 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Martina [Práva správce]
Mód : Odebrat -- Datum : 10/22/2013 10:17:14
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] SSDT[70] : NtCreateKey @ 0x82214009 -> HOOKED (Unknown @ 0x861C7B80)
[Address] SSDT[74] : NtCreateMutant @ 0x8222335A -> HOOKED (Unknown @ 0x861D7AE0)
[Address] SSDT[79] : NtCreateProcess @ 0x822EF1D1 -> HOOKED (Unknown @ 0x861C6680)
[Address] SSDT[80] : NtCreateProcessEx @ 0x822EF21C -> HOOKED (Unknown @ 0x861C6980)
[Address] SSDT[86] : NtCreateSymbolicLinkObject @ 0x822149D4 -> HOOKED (Unknown @ 0x861D7EA0)
[Address] SSDT[87] : NtCreateThread @ 0x822EEFDA -> HOOKED (Unknown @ 0x861D7420)
[Address] SSDT[88] : NtCreateThreadEx @ 0x822834AB -> HOOKED (Unknown @ 0x861D7600)
[Address] SSDT[93] : NtCreateUserProcess @ 0x822813DD -> HOOKED (Unknown @ 0x861C6C80)
[Address] SSDT[103] : NtDeleteKey @ 0x821FEA58 -> HOOKED (Unknown @ 0x861C8180)
[Address] SSDT[106] : NtDeleteValueKey @ 0x821F0461 -> HOOKED (Unknown @ 0x861C8A80)
[Address] SSDT[111] : NtDuplicateObject @ 0x82244761 -> HOOKED (Unknown @ 0x861D8080)
[Address] SSDT[155] : NtLoadDriver @ 0x821D8C40 -> HOOKED (Unknown @ 0x861D77E0)
[Address] SSDT[190] : NtOpenProcess @ 0x82224BA1 -> HOOKED (Unknown @ 0x861C6F80)
[Address] SSDT[194] : NtOpenSection @ 0x8227C9FB -> HOOKED (Unknown @ 0x861C8FC0)
[Address] SSDT[198] : NtOpenThread @ 0x82271102 -> HOOKED (Unknown @ 0x861C7280)
[Address] SSDT[290] : NtRenameKey @ 0x822AF0EB -> HOOKED (Unknown @ 0x861C8480)
[Address] SSDT[302] : NtRestoreKey @ 0x822A4CA2 -> HOOKED (Unknown @ 0x861C8780)
[Address] SSDT[350] : NtSetSystemInformation @ 0x8226137A -> HOOKED (Unknown @ 0x861D7CC0)
[Address] SSDT[358] : NtSetValueKey @ 0x8221D606 -> HOOKED (Unknown @ 0x861C7E80)
[Address] SSDT[371] : NtTerminateThread @ 0x8228B6CB -> HOOKED (Unknown @ 0x861C7880)
[Address] SSDT[399] : NtWriteVirtualMemory @ 0x82272A97 -> HOOKED (Unknown @ 0x861D7240)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) (Standardní diskové jednotky) - Hitachi HTS543232A7A384 +++++
--- User ---
[MBR] 08824852bcacf7ad50f0a606645b04b6
[BSP] 157c58985a93fe14dfea6f66166b01ab : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 102400 Mo
1 - [XXXXXX] FAT32 (0x1b) [HIDDEN!] Offset (sectors): 209717248 | Size: 15360 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 241174528 | Size: 187468 Mo
3 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 625108992 | Size: 16 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_10222013_101714.txt >>
RKreport[0]_S_10222013_101154.txt
-----
Re: Pomalý netbook
10:21:16.0724 1252 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
10:21:17.0052 1252 ============================================================
10:21:17.0052 1252 Current date / time: 2013/10/22 10:21:17.0052
10:21:17.0052 1252 SystemInfo:
10:21:17.0052 1252
10:21:17.0052 1252 OS Version: 6.1.7601 ServicePack: 1.0
10:21:17.0052 1252 Product type: Workstation
10:21:17.0052 1252 ComputerName: MARTINA-PC
10:21:17.0052 1252 UserName: Martina
10:21:17.0052 1252 Windows directory: C:\windows
10:21:17.0052 1252 System windows directory: C:\windows
10:21:17.0052 1252 Processor architecture: Intel x86
10:21:17.0052 1252 Number of processors: 4
10:21:17.0052 1252 Page size: 0x1000
10:21:17.0052 1252 Boot type: Normal boot
10:21:17.0052 1252 ============================================================
10:21:18.0035 1252 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
10:21:18.0066 1252 ============================================================
10:21:18.0066 1252 \Device\Harddisk0\DR0:
10:21:18.0066 1252 MBR partitions:
10:21:18.0066 1252 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xC800000
10:21:18.0066 1252 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xE600800, BlocksNum 0x16E26000
10:21:18.0066 1252 ============================================================
10:21:18.0082 1252 C: <-> \Device\Harddisk0\DR0\Partition1
10:21:18.0128 1252 D: <-> \Device\Harddisk0\DR0\Partition2
10:21:18.0128 1252 ============================================================
10:21:18.0128 1252 Initialize success
10:21:18.0128 1252 ============================================================
10:21:36.0657 5952 ============================================================
10:21:36.0657 5952 Scan started
10:21:36.0657 5952 Mode: Manual;
10:21:36.0657 5952 ============================================================
10:21:37.0452 5952 ================ Scan system memory ========================
10:21:37.0452 5952 System memory - ok
10:21:37.0452 5952 ================ Scan services =============================
10:21:37.0858 5952 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\windows\system32\drivers\1394ohci.sys
10:21:37.0874 5952 1394ohci - ok
10:21:37.0920 5952 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\windows\system32\drivers\ACPI.sys
10:21:37.0920 5952 ACPI - ok
10:21:37.0952 5952 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\windows\system32\drivers\acpipmi.sys
10:21:37.0952 5952 AcpiPmi - ok
10:21:38.0061 5952 [ A283108E14F3970432C21AF4C0CB1BCE ] AdobeFlashPlayerUpdateSvc C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
10:21:38.0076 5952 AdobeFlashPlayerUpdateSvc - ok
10:21:38.0139 5952 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\windows\system32\drivers\adp94xx.sys
10:21:38.0154 5952 adp94xx - ok
10:21:38.0170 5952 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\windows\system32\drivers\adpahci.sys
10:21:38.0186 5952 adpahci - ok
10:21:38.0201 5952 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\windows\system32\drivers\adpu320.sys
10:21:38.0217 5952 adpu320 - ok
10:21:38.0248 5952 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\windows\System32\aelupsvc.dll
10:21:38.0248 5952 AeLookupSvc - ok
10:21:38.0310 5952 [ F81BB7E487EDCEAB630A7EE66CF23913 ] AFD C:\windows\system32\drivers\afd.sys
10:21:38.0326 5952 AFD - ok
10:21:38.0357 5952 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\windows\system32\drivers\agp440.sys
10:21:38.0373 5952 agp440 - ok
10:21:38.0420 5952 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\windows\system32\drivers\djsvs.sys
10:21:38.0435 5952 aic78xx - ok
10:21:38.0498 5952 [ 68D6075D1FDC90038B0DC5B9D1F17ADF ] AiDriver C:\windows\system32\DRIVERS\AiDriver.sys
10:21:38.0498 5952 AiDriver - ok
10:21:38.0560 5952 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\windows\System32\alg.exe
10:21:38.0560 5952 ALG - ok
10:21:38.0607 5952 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\windows\system32\drivers\aliide.sys
10:21:38.0607 5952 aliide - ok
10:21:38.0638 5952 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\windows\system32\drivers\amdagp.sys
10:21:38.0654 5952 amdagp - ok
10:21:38.0685 5952 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\windows\system32\drivers\amdide.sys
10:21:38.0685 5952 amdide - ok
10:21:38.0732 5952 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\windows\system32\drivers\amdk8.sys
10:21:38.0732 5952 AmdK8 - ok
10:21:38.0778 5952 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\windows\system32\drivers\amdppm.sys
10:21:38.0778 5952 AmdPPM - ok
10:21:38.0810 5952 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\windows\system32\drivers\amdsata.sys
10:21:38.0810 5952 amdsata - ok
10:21:38.0841 5952 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\windows\system32\drivers\amdsbs.sys
10:21:38.0856 5952 amdsbs - ok
10:21:38.0872 5952 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\windows\system32\drivers\amdxata.sys
10:21:38.0888 5952 amdxata - ok
10:21:38.0981 5952 [ 6EAC742B758E110DD12EBC8446C07B6C ] Amsp C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe
10:21:38.0997 5952 Amsp - ok
10:21:39.0044 5952 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\windows\system32\drivers\appid.sys
10:21:39.0059 5952 AppID - ok
10:21:39.0106 5952 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\windows\System32\appidsvc.dll
10:21:39.0106 5952 AppIDSvc - ok
10:21:39.0137 5952 [ EACFDF31921F51C097629F1F3C9129B4 ] Appinfo C:\windows\System32\appinfo.dll
10:21:39.0153 5952 Appinfo - ok
10:21:39.0184 5952 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\windows\system32\drivers\arc.sys
10:21:39.0200 5952 arc - ok
10:21:39.0215 5952 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\windows\system32\drivers\arcsas.sys
10:21:39.0215 5952 arcsas - ok
10:21:39.0262 5952 [ 956C7177DBDA0F02436868AD644CCF31 ] AsIO C:\windows\system32\drivers\AsIO.sys
10:21:39.0262 5952 AsIO - ok
10:21:39.0371 5952 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
10:21:39.0434 5952 aspnet_state - ok
10:21:39.0480 5952 [ A9A565C669786C402752F609AFDD0DD5 ] AsUpIO C:\windows\system32\drivers\AsUpIO.sys
10:21:39.0480 5952 AsUpIO - ok
10:21:39.0558 5952 [ 8165C8825C726A7D5EFDF863A2D1C28F ] ASUS InstantOn C:\Program Files\ASUS\InstantOn for EPC\InsOnSrv.exe
10:21:39.0558 5952 ASUS InstantOn - ok
10:21:39.0605 5952 [ 689CA2A0C7ABA6C091FEEEE9439C83DB ] AsusService C:\windows\system32\AsusService.exe
10:21:39.0621 5952 AsusService - ok
10:21:39.0699 5952 [ D5730129EA9ADF7AE710DA0B14F9DE19 ] aswFsBlk C:\windows\system32\drivers\aswFsBlk.sys
10:21:39.0714 5952 aswFsBlk - ok
10:21:39.0761 5952 [ 6F23333C8358D267718F9ECB21CBB6F4 ] aswMonFlt C:\windows\system32\drivers\aswMonFlt.sys
10:21:39.0761 5952 aswMonFlt - ok
10:21:39.0839 5952 [ 2206985EF126AB90F3D7F1A020589DC9 ] aswRdr C:\windows\system32\drivers\aswRdr2.sys
10:21:39.0855 5952 aswRdr - ok
10:21:39.0902 5952 [ F385467DF95D0A73775CB3B076B8B969 ] aswRvrt C:\windows\system32\drivers\aswRvrt.sys
10:21:39.0917 5952 aswRvrt - ok
10:21:39.0964 5952 [ 50C85412AD31F5C0F687F00C2E34C673 ] aswSnx C:\windows\system32\drivers\aswSnx.sys
10:21:39.0980 5952 aswSnx - ok
10:21:40.0073 5952 [ DDEBA353975F0827143484D5A9310935 ] aswSP C:\windows\system32\drivers\aswSP.sys
10:21:40.0089 5952 aswSP - ok
10:21:40.0167 5952 [ 8BCD47E79EAA40C387D7B9DCEC41DE2D ] aswTdi C:\windows\system32\drivers\aswTdi.sys
10:21:40.0167 5952 aswTdi - ok
10:21:40.0245 5952 [ BADA8FD627F1D0E22308211C33F0BDB5 ] aswVmm C:\windows\system32\drivers\aswVmm.sys
10:21:40.0260 5952 aswVmm - ok
10:21:40.0292 5952 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys
10:21:40.0292 5952 AsyncMac - ok
10:21:40.0354 5952 [ 338C86357871C167A96AB976519BF59E ] atapi C:\windows\system32\drivers\atapi.sys
10:21:40.0354 5952 atapi - ok
10:21:40.0479 5952 [ 9B8C87C27A166CE84BE6EDDBA3854527 ] athr C:\windows\system32\DRIVERS\athr.sys
10:21:40.0510 5952 athr - ok
10:21:40.0572 5952 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
10:21:40.0588 5952 AudioEndpointBuilder - ok
10:21:40.0604 5952 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\windows\System32\Audiosrv.dll
10:21:40.0604 5952 Audiosrv - ok
10:21:40.0682 5952 [ 4BE7EC02133544CDE7A580875E130208 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
10:21:40.0697 5952 avast! Antivirus - ok
10:21:40.0744 5952 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\windows\System32\AxInstSV.dll
10:21:40.0760 5952 AxInstSV - ok
10:21:40.0806 5952 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\windows\system32\drivers\bxvbdx.sys
10:21:40.0822 5952 b06bdrv - ok
10:21:40.0869 5952 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\windows\system32\DRIVERS\b57nd60x.sys
10:21:40.0884 5952 b57nd60x - ok
10:21:40.0947 5952 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\windows\System32\bdesvc.dll
10:21:40.0947 5952 BDESVC - ok
10:21:40.0994 5952 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\windows\system32\drivers\Beep.sys
10:21:40.0994 5952 Beep - ok
10:21:41.0056 5952 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\windows\System32\bfe.dll
10:21:41.0072 5952 BFE - ok
10:21:41.0103 5952 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\windows\System32\qmgr.dll
10:21:41.0134 5952 BITS - ok
10:21:41.0165 5952 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys
10:21:41.0165 5952 blbdrive - ok
10:21:41.0196 5952 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\windows\system32\DRIVERS\bowser.sys
10:21:41.0196 5952 bowser - ok
10:21:41.0212 5952 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\windows\system32\drivers\BrFiltLo.sys
10:21:41.0212 5952 BrFiltLo - ok
10:21:41.0243 5952 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\windows\system32\drivers\BrFiltUp.sys
10:21:41.0243 5952 BrFiltUp - ok
10:21:41.0306 5952 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\windows\System32\browser.dll
10:21:41.0306 5952 Browser - ok
10:21:41.0352 5952 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\windows\System32\Drivers\Brserid.sys
10:21:41.0368 5952 Brserid - ok
10:21:41.0384 5952 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys
10:21:41.0399 5952 BrSerWdm - ok
10:21:41.0415 5952 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys
10:21:41.0415 5952 BrUsbMdm - ok
10:21:41.0446 5952 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys
10:21:41.0446 5952 BrUsbSer - ok
10:21:41.0493 5952 [ 2865A5C8E98C70C605F417908CEBB3A4 ] BthEnum C:\windows\system32\drivers\BthEnum.sys
10:21:41.0493 5952 BthEnum - ok
10:21:41.0540 5952 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\windows\system32\drivers\bthmodem.sys
10:21:41.0540 5952 BTHMODEM - ok
10:21:41.0571 5952 [ AD1872E5829E8A2C3B5B4B641C3EAB0E ] BthPan C:\windows\system32\DRIVERS\bthpan.sys
10:21:41.0586 5952 BthPan - ok
10:21:41.0633 5952 [ 1153DE2E4F5941E10C399CB5592F78A1 ] BTHPORT C:\windows\System32\Drivers\BTHport.sys
10:21:41.0633 5952 BTHPORT - ok
10:21:41.0680 5952 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\windows\system32\bthserv.dll
10:21:41.0696 5952 bthserv - ok
10:21:41.0727 5952 [ C81E9413A25A439F436B1D4B6A0CF9E9 ] BTHUSB C:\windows\System32\Drivers\BTHUSB.sys
10:21:41.0727 5952 BTHUSB - ok
10:21:41.0774 5952 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\windows\system32\DRIVERS\cdfs.sys
10:21:41.0774 5952 cdfs - ok
10:21:41.0820 5952 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\windows\system32\DRIVERS\cdrom.sys
10:21:41.0820 5952 cdrom - ok
10:21:41.0852 5952 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\windows\System32\certprop.dll
10:21:41.0867 5952 CertPropSvc - ok
10:21:41.0898 5952 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\windows\system32\drivers\circlass.sys
10:21:41.0898 5952 circlass - ok
10:21:41.0945 5952 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\windows\system32\CLFS.sys
10:21:41.0961 5952 CLFS - ok
10:21:42.0039 5952 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
10:21:42.0054 5952 clr_optimization_v2.0.50727_32 - ok
10:21:42.0117 5952 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
10:21:42.0195 5952 clr_optimization_v4.0.30319_32 - ok
10:21:42.0242 5952 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys
10:21:42.0242 5952 CmBatt - ok
10:21:42.0273 5952 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\windows\system32\drivers\cmdide.sys
10:21:42.0273 5952 cmdide - ok
10:21:42.0335 5952 [ 42F158036BD4C2FF3122BF142E60E6FD ] CNG C:\windows\system32\Drivers\cng.sys
10:21:42.0351 5952 CNG - ok
10:21:42.0382 5952 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\windows\system32\drivers\compbatt.sys
10:21:42.0398 5952 Compbatt - ok
10:21:42.0429 5952 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\windows\system32\DRIVERS\CompositeBus.sys
10:21:42.0429 5952 CompositeBus - ok
10:21:42.0444 5952 COMSysApp - ok
10:21:42.0476 5952 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\windows\system32\drivers\crcdisk.sys
10:21:42.0476 5952 crcdisk - ok
10:21:42.0522 5952 [ 7CA1BECEA5DE2643ADDAD32670E7A4C9 ] CryptSvc C:\windows\system32\cryptsvc.dll
10:21:42.0522 5952 CryptSvc - ok
10:21:42.0600 5952 [ 6578F71F4A6FBF197AE4EC7DC03E9538 ] DCDhcpService C:\Program Files\WiSharing\DCDhcpService.exe
10:21:42.0616 5952 DCDhcpService - ok
10:21:42.0663 5952 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\windows\system32\rpcss.dll
10:21:42.0694 5952 DcomLaunch - ok
10:21:42.0725 5952 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\windows\System32\defragsvc.dll
10:21:42.0741 5952 defragsvc - ok
10:21:42.0788 5952 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\windows\system32\Drivers\dfsc.sys
10:21:42.0803 5952 DfsC - ok
10:21:42.0834 5952 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\windows\system32\dhcpcore.dll
10:21:42.0850 5952 Dhcp - ok
10:21:42.0866 5952 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\windows\system32\drivers\discache.sys
10:21:42.0881 5952 discache - ok
10:21:42.0928 5952 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\windows\system32\drivers\disk.sys
10:21:42.0944 5952 Disk - ok
10:21:42.0975 5952 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\windows\System32\dnsrslvr.dll
10:21:42.0990 5952 Dnscache - ok
10:21:43.0022 5952 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\windows\System32\dot3svc.dll
10:21:43.0037 5952 dot3svc - ok
10:21:43.0053 5952 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\windows\system32\dps.dll
10:21:43.0068 5952 DPS - ok
10:21:43.0131 5952 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\windows\system32\drivers\drmkaud.sys
10:21:43.0146 5952 drmkaud - ok
10:21:43.0209 5952 [ 71BC35067CABC02C9453AEAA42B2E43E ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys
10:21:43.0224 5952 DXGKrnl - ok
10:21:43.0271 5952 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\windows\System32\eapsvc.dll
10:21:43.0287 5952 EapHost - ok
10:21:43.0396 5952 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\windows\system32\drivers\evbdx.sys
10:21:43.0458 5952 ebdrv - ok
10:21:43.0490 5952 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\windows\System32\lsass.exe
10:21:43.0505 5952 EFS - ok
10:21:43.0614 5952 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\windows\system32\drivers\elxstor.sys
10:21:43.0630 5952 elxstor - ok
10:21:43.0661 5952 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\windows\system32\drivers\errdev.sys
10:21:43.0677 5952 ErrDev - ok
10:21:43.0739 5952 [ 09E105E3997C2E6E126726EE5DDFAFB6 ] ETD C:\windows\system32\DRIVERS\ETD.sys
10:21:43.0755 5952 ETD - ok
10:21:43.0817 5952 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\windows\system32\es.dll
10:21:43.0833 5952 EventSystem - ok
10:21:43.0895 5952 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\windows\system32\drivers\exfat.sys
10:21:43.0895 5952 exfat - ok
10:21:43.0926 5952 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\windows\system32\drivers\fastfat.sys
10:21:43.0942 5952 fastfat - ok
10:21:44.0004 5952 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\windows\system32\fxssvc.exe
10:21:44.0020 5952 Fax - ok
10:21:44.0051 5952 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\windows\system32\drivers\fdc.sys
10:21:44.0067 5952 fdc - ok
10:21:44.0098 5952 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\windows\system32\fdPHost.dll
10:21:44.0098 5952 fdPHost - ok
10:21:44.0129 5952 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\windows\system32\fdrespub.dll
10:21:44.0145 5952 FDResPub - ok
10:21:44.0160 5952 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\windows\system32\drivers\fileinfo.sys
10:21:44.0176 5952 FileInfo - ok
10:21:44.0192 5952 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\windows\system32\drivers\filetrace.sys
10:21:44.0192 5952 Filetrace - ok
10:21:44.0223 5952 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\windows\system32\drivers\flpydisk.sys
10:21:44.0223 5952 flpydisk - ok
10:21:44.0270 5952 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\windows\system32\drivers\fltmgr.sys
10:21:44.0270 5952 FltMgr - ok
10:21:44.0332 5952 [ E12C4928B32ACE04610259647F072635 ] FontCache C:\windows\system32\FntCache.dll
10:21:44.0363 5952 FontCache - ok
10:21:44.0441 5952 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
10:21:44.0441 5952 FontCache3.0.0.0 - ok
10:21:44.0488 5952 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\windows\system32\drivers\FsDepends.sys
10:21:44.0504 5952 FsDepends - ok
10:21:44.0535 5952 [ BFAAA92861526BB0ADCD01E964AB6609 ] fssfltr C:\windows\system32\DRIVERS\fssfltr.sys
10:21:44.0535 5952 fssfltr - ok
10:21:44.0644 5952 [ 40CDFAD174B3D5E80F95DDA003C0B97F ] fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe
10:21:44.0691 5952 fsssvc - ok
10:21:44.0722 5952 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys
10:21:44.0722 5952 Fs_Rec - ok
10:21:44.0784 5952 [ E306A24D9694C724FA2491278BF50FDB ] fvevol C:\windows\system32\DRIVERS\fvevol.sys
10:21:44.0784 5952 fvevol - ok
10:21:44.0831 5952 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\windows\system32\drivers\gagp30kx.sys
10:21:44.0831 5952 gagp30kx - ok
10:21:44.0909 5952 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\windows\System32\gpsvc.dll
10:21:44.0925 5952 gpsvc - ok
10:21:45.0003 5952 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
10:21:45.0003 5952 gupdate - ok
10:21:45.0018 5952 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
10:21:45.0018 5952 gupdatem - ok
10:21:45.0065 5952 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
10:21:45.0081 5952 gusvc - ok
10:21:45.0112 5952 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys
10:21:45.0112 5952 hcw85cir - ok
10:21:45.0143 5952 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
10:21:45.0159 5952 HdAudAddService - ok
10:21:45.0190 5952 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\windows\system32\DRIVERS\HDAudBus.sys
10:21:45.0190 5952 HDAudBus - ok
10:21:45.0221 5952 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\windows\system32\drivers\HidBatt.sys
10:21:45.0221 5952 HidBatt - ok
10:21:45.0268 5952 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\windows\system32\drivers\hidbth.sys
10:21:45.0268 5952 HidBth - ok
10:21:45.0299 5952 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\windows\system32\drivers\hidir.sys
10:21:45.0299 5952 HidIr - ok
10:21:45.0330 5952 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\windows\system32\hidserv.dll
10:21:45.0330 5952 hidserv - ok
10:21:45.0377 5952 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\windows\system32\drivers\hidusb.sys
10:21:45.0377 5952 HidUsb - ok
10:21:45.0424 5952 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\windows\system32\kmsvc.dll
10:21:45.0440 5952 hkmsvc - ok
10:21:45.0455 5952 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\windows\system32\ListSvc.dll
10:21:45.0471 5952 HomeGroupListener - ok
10:21:45.0518 5952 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\windows\system32\provsvc.dll
10:21:45.0549 5952 HomeGroupProvider - ok
10:21:45.0596 5952 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys
10:21:45.0596 5952 HpSAMD - ok
10:21:45.0658 5952 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\windows\system32\drivers\HTTP.sys
10:21:45.0674 5952 HTTP - ok
10:21:45.0720 5952 [ C1258ADCBE6E51A3C06C234D2BDB81B5 ] Huawei C:\windows\system32\DRIVERS\ewdcsc.sys
10:21:45.0736 5952 Huawei - ok
10:21:45.0814 5952 [ 988C0A49F09D75D3341CB419141793C1 ] hwdatacard C:\windows\system32\DRIVERS\ewusbmdm.sys
10:21:45.0814 5952 hwdatacard - ok
10:21:45.0861 5952 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys
10:21:45.0861 5952 hwpolicy - ok
10:21:45.0923 5952 [ A259D3619AA23D4562581067F85E2006 ] hwusbdev C:\windows\system32\DRIVERS\ewusbdev.sys
10:21:45.0939 5952 hwusbdev - ok
10:21:45.0986 5952 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\windows\system32\DRIVERS\i8042prt.sys
10:21:45.0986 5952 i8042prt - ok
10:21:46.0032 5952 [ F4037A3FEDB92DD97C95F320766EA5C9 ] iaStor C:\windows\system32\drivers\iaStor.sys
10:21:46.0048 5952 iaStor - ok
10:21:46.0110 5952 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\windows\system32\drivers\iaStorV.sys
10:21:46.0126 5952 iaStorV - ok
10:21:46.0204 5952 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
10:21:46.0235 5952 idsvc - ok
10:21:46.0313 5952 [ 72A75B01371384ECBCFC6AD2AF6B9389 ] igddim32 C:\windows\system32\DRIVERS\igddim32.sys
10:21:46.0344 5952 igddim32 - ok
10:21:46.0376 5952 [ 6B78789287D43615E7908CA31C0D5D6D ] igdkmd32 C:\windows\system32\DRIVERS\igdkmd32.sys
10:21:46.0391 5952 igdkmd32 - ok
10:21:46.0422 5952 [ 6B78789287D43615E7908CA31C0D5D6D ] igfx C:\windows\system32\DRIVERS\igdkmd32.sys
10:21:46.0422 5952 igfx - ok
10:21:46.0469 5952 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\windows\system32\drivers\iirsp.sys
10:21:46.0469 5952 iirsp - ok
10:21:46.0532 5952 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\windows\System32\ikeext.dll
10:21:46.0547 5952 IKEEXT - ok
10:21:46.0719 5952 [ C281E19D77C6B0B0DB5459E7C317CF76 ] IntcAzAudAddService C:\windows\system32\drivers\RTKVHDA.sys
10:21:46.0844 5952 IntcAzAudAddService - ok
10:21:46.0890 5952 [ 8F4D251F1EA15FA97E8399128A72CC83 ] IntcDAud C:\windows\system32\DRIVERS\IntcDAud.sys
10:21:46.0890 5952 IntcDAud - ok
10:21:46.0922 5952 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\windows\system32\drivers\intelide.sys
10:21:46.0937 5952 intelide - ok
10:21:46.0968 5952 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\windows\system32\DRIVERS\intelppm.sys
10:21:46.0984 5952 intelppm - ok
10:21:47.0031 5952 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\windows\system32\ipbusenum.dll
10:21:47.0046 5952 IPBusEnum - ok
10:21:47.0078 5952 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys
10:21:47.0093 5952 IpFilterDriver - ok
10:21:47.0140 5952 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\windows\System32\iphlpsvc.dll
10:21:47.0156 5952 iphlpsvc - ok
10:21:47.0171 5952 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\windows\system32\drivers\IPMIDrv.sys
10:21:47.0171 5952 IPMIDRV - ok
10:21:47.0187 5952 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\windows\system32\drivers\ipnat.sys
10:21:47.0187 5952 IPNAT - ok
10:21:47.0218 5952 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\windows\system32\drivers\irenum.sys
10:21:47.0234 5952 IRENUM - ok
10:21:47.0249 5952 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\windows\system32\drivers\isapnp.sys
10:21:47.0265 5952 isapnp - ok
10:21:47.0296 5952 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\windows\system32\drivers\msiscsi.sys
10:21:47.0296 5952 iScsiPrt - ok
10:21:47.0327 5952 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\windows\system32\DRIVERS\kbdclass.sys
10:21:47.0327 5952 kbdclass - ok
10:21:47.0358 5952 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\windows\system32\drivers\kbdhid.sys
10:21:47.0374 5952 kbdhid - ok
10:21:47.0405 5952 [ 3EB803312987FF44265C87CB960DF6AB ] kbfiltr C:\windows\system32\DRIVERS\kbfiltr.sys
10:21:47.0421 5952 kbfiltr - ok
10:21:47.0436 5952 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\windows\system32\lsass.exe
10:21:47.0452 5952 KeyIso - ok
10:21:47.0483 5952 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys
10:21:47.0483 5952 KSecDD - ok
10:21:47.0530 5952 [ 5FE1ABF1AF591A3458C9CF24ED9A4D35 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys
10:21:47.0530 5952 KSecPkg - ok
10:21:47.0577 5952 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\windows\system32\msdtckrm.dll
10:21:47.0592 5952 KtmRm - ok
10:21:47.0624 5952 [ 2D60DFAD37C101E35520E38F12B59770 ] L1C C:\windows\system32\DRIVERS\L1C62x86.sys
10:21:47.0639 5952 L1C - ok
10:21:47.0686 5952 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\windows\system32\srvsvc.dll
10:21:47.0702 5952 LanmanServer - ok
10:21:47.0748 5952 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\windows\System32\wkssvc.dll
10:21:47.0764 5952 LanmanWorkstation - ok
10:21:47.0811 5952 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\windows\system32\DRIVERS\lltdio.sys
10:21:47.0811 5952 lltdio - ok
10:21:47.0842 5952 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\windows\System32\lltdsvc.dll
10:21:47.0858 5952 lltdsvc - ok
10:21:47.0889 5952 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\windows\System32\lmhsvc.dll
10:21:47.0889 5952 lmhosts - ok
10:21:47.0951 5952 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\windows\system32\drivers\lsi_fc.sys
10:21:47.0951 5952 LSI_FC - ok
10:21:47.0967 5952 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\windows\system32\drivers\lsi_sas.sys
10:21:47.0967 5952 LSI_SAS - ok
10:21:47.0998 5952 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\windows\system32\drivers\lsi_sas2.sys
10:21:48.0014 5952 LSI_SAS2 - ok
10:21:48.0014 5952 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\windows\system32\drivers\lsi_scsi.sys
10:21:48.0029 5952 LSI_SCSI - ok
10:21:48.0045 5952 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\windows\system32\drivers\luafv.sys
10:21:48.0045 5952 luafv - ok
10:21:48.0107 5952 [ 4470E3C1E0C3378E4CAB137893C12C3A ] MBAMProtector C:\windows\system32\drivers\mbam.sys
10:21:48.0107 5952 MBAMProtector - ok
10:21:48.0201 5952 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
10:21:48.0216 5952 MBAMScheduler - ok
10:21:48.0310 5952 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
10:21:48.0326 5952 MBAMService - ok
10:21:48.0372 5952 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\windows\system32\drivers\megasas.sys
10:21:48.0372 5952 megasas - ok
10:21:48.0404 5952 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\windows\system32\drivers\MegaSR.sys
10:21:48.0419 5952 MegaSR - ok
10:21:48.0466 5952 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\windows\system32\mmcss.dll
10:21:48.0482 5952 MMCSS - ok
10:21:48.0497 5952 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\windows\system32\drivers\modem.sys
10:21:48.0497 5952 Modem - ok
10:21:48.0528 5952 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\windows\system32\DRIVERS\monitor.sys
10:21:48.0544 5952 monitor - ok
10:21:48.0575 5952 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\windows\system32\DRIVERS\mouclass.sys
10:21:48.0591 5952 mouclass - ok
10:21:48.0622 5952 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\windows\system32\DRIVERS\mouhid.sys
10:21:48.0622 5952 mouhid - ok
10:21:48.0653 5952 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\windows\system32\drivers\mountmgr.sys
10:21:48.0669 5952 mountmgr - ok
10:21:48.0700 5952 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\windows\system32\drivers\mpio.sys
10:21:48.0716 5952 mpio - ok
10:21:48.0731 5952 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys
10:21:48.0731 5952 mpsdrv - ok
10:21:48.0778 5952 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\windows\system32\mpssvc.dll
10:21:48.0809 5952 MpsSvc - ok
10:21:48.0840 5952 [ 21F4B24ACFC79A483515BD986DD9043F ] MRxDAV C:\windows\system32\drivers\mrxdav.sys
10:21:48.0840 5952 MRxDAV - ok
10:21:48.0903 5952 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys
10:21:48.0918 5952 mrxsmb - ok
10:21:48.0934 5952 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys
10:21:48.0950 5952 mrxsmb10 - ok
10:21:48.0965 5952 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys
10:21:48.0981 5952 mrxsmb20 - ok
10:21:49.0012 5952 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\windows\system32\drivers\msahci.sys
10:21:49.0028 5952 msahci - ok
10:21:49.0059 5952 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\windows\system32\drivers\msdsm.sys
10:21:49.0059 5952 msdsm - ok
10:21:49.0090 5952 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\windows\System32\msdtc.exe
10:21:49.0106 5952 MSDTC - ok
10:21:49.0152 5952 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\windows\system32\drivers\Msfs.sys
10:21:49.0152 5952 Msfs - ok
10:21:49.0199 5952 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys
10:21:49.0199 5952 mshidkmdf - ok
10:21:49.0230 5952 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\windows\system32\drivers\msisadrv.sys
10:21:49.0230 5952 msisadrv - ok
10:21:49.0293 5952 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\windows\system32\iscsiexe.dll
10:21:49.0308 5952 MSiSCSI - ok
10:21:49.0324 5952 msiserver - ok
10:21:49.0355 5952 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys
10:21:49.0371 5952 MSKSSRV - ok
10:21:49.0402 5952 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys
10:21:49.0402 5952 MSPCLOCK - ok
10:21:49.0449 5952 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\windows\system32\drivers\MSPQM.sys
10:21:49.0449 5952 MSPQM - ok
10:21:49.0496 5952 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\windows\system32\drivers\MsRPC.sys
10:21:49.0511 5952 MsRPC - ok
10:21:49.0542 5952 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\windows\system32\DRIVERS\mssmbios.sys
10:21:49.0558 5952 mssmbios - ok
10:21:49.0605 5952 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\windows\system32\drivers\MSTEE.sys
10:21:49.0605 5952 MSTEE - ok
10:21:49.0636 5952 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\windows\system32\drivers\MTConfig.sys
10:21:49.0636 5952 MTConfig - ok
10:21:49.0667 5952 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\windows\system32\Drivers\mup.sys
10:21:49.0667 5952 Mup - ok
10:21:49.0698 5952 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\windows\system32\qagentRT.dll
10:21:49.0714 5952 napagent - ok
10:21:49.0776 5952 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys
10:21:49.0792 5952 NativeWifiP - ok
10:21:49.0854 5952 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\windows\system32\drivers\ndis.sys
10:21:49.0886 5952 NDIS - ok
10:21:49.0932 5952 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys
10:21:49.0948 5952 NdisCap - ok
10:21:50.0026 5952 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys
10:21:50.0026 5952 NdisTapi - ok
10:21:50.0073 5952 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys
10:21:50.0073 5952 Ndisuio - ok
10:21:50.0135 5952 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys
10:21:50.0151 5952 NdisWan - ok
10:21:50.0166 5952 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\windows\system32\drivers\NDProxy.sys
10:21:50.0182 5952 NDProxy - ok
10:21:50.0229 5952 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys
10:21:50.0229 5952 NetBIOS - ok
10:21:50.0260 5952 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\windows\system32\DRIVERS\netbt.sys
10:21:50.0276 5952 NetBT - ok
10:21:50.0291 5952 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\windows\system32\lsass.exe
10:21:50.0307 5952 Netlogon - ok
10:21:50.0354 5952 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\windows\System32\netman.dll
10:21:50.0385 5952 Netman - ok
10:21:17.0052 1252 ============================================================
10:21:17.0052 1252 Current date / time: 2013/10/22 10:21:17.0052
10:21:17.0052 1252 SystemInfo:
10:21:17.0052 1252
10:21:17.0052 1252 OS Version: 6.1.7601 ServicePack: 1.0
10:21:17.0052 1252 Product type: Workstation
10:21:17.0052 1252 ComputerName: MARTINA-PC
10:21:17.0052 1252 UserName: Martina
10:21:17.0052 1252 Windows directory: C:\windows
10:21:17.0052 1252 System windows directory: C:\windows
10:21:17.0052 1252 Processor architecture: Intel x86
10:21:17.0052 1252 Number of processors: 4
10:21:17.0052 1252 Page size: 0x1000
10:21:17.0052 1252 Boot type: Normal boot
10:21:17.0052 1252 ============================================================
10:21:18.0035 1252 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
10:21:18.0066 1252 ============================================================
10:21:18.0066 1252 \Device\Harddisk0\DR0:
10:21:18.0066 1252 MBR partitions:
10:21:18.0066 1252 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xC800000
10:21:18.0066 1252 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xE600800, BlocksNum 0x16E26000
10:21:18.0066 1252 ============================================================
10:21:18.0082 1252 C: <-> \Device\Harddisk0\DR0\Partition1
10:21:18.0128 1252 D: <-> \Device\Harddisk0\DR0\Partition2
10:21:18.0128 1252 ============================================================
10:21:18.0128 1252 Initialize success
10:21:18.0128 1252 ============================================================
10:21:36.0657 5952 ============================================================
10:21:36.0657 5952 Scan started
10:21:36.0657 5952 Mode: Manual;
10:21:36.0657 5952 ============================================================
10:21:37.0452 5952 ================ Scan system memory ========================
10:21:37.0452 5952 System memory - ok
10:21:37.0452 5952 ================ Scan services =============================
10:21:37.0858 5952 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\windows\system32\drivers\1394ohci.sys
10:21:37.0874 5952 1394ohci - ok
10:21:37.0920 5952 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\windows\system32\drivers\ACPI.sys
10:21:37.0920 5952 ACPI - ok
10:21:37.0952 5952 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\windows\system32\drivers\acpipmi.sys
10:21:37.0952 5952 AcpiPmi - ok
10:21:38.0061 5952 [ A283108E14F3970432C21AF4C0CB1BCE ] AdobeFlashPlayerUpdateSvc C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
10:21:38.0076 5952 AdobeFlashPlayerUpdateSvc - ok
10:21:38.0139 5952 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\windows\system32\drivers\adp94xx.sys
10:21:38.0154 5952 adp94xx - ok
10:21:38.0170 5952 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\windows\system32\drivers\adpahci.sys
10:21:38.0186 5952 adpahci - ok
10:21:38.0201 5952 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\windows\system32\drivers\adpu320.sys
10:21:38.0217 5952 adpu320 - ok
10:21:38.0248 5952 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\windows\System32\aelupsvc.dll
10:21:38.0248 5952 AeLookupSvc - ok
10:21:38.0310 5952 [ F81BB7E487EDCEAB630A7EE66CF23913 ] AFD C:\windows\system32\drivers\afd.sys
10:21:38.0326 5952 AFD - ok
10:21:38.0357 5952 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\windows\system32\drivers\agp440.sys
10:21:38.0373 5952 agp440 - ok
10:21:38.0420 5952 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\windows\system32\drivers\djsvs.sys
10:21:38.0435 5952 aic78xx - ok
10:21:38.0498 5952 [ 68D6075D1FDC90038B0DC5B9D1F17ADF ] AiDriver C:\windows\system32\DRIVERS\AiDriver.sys
10:21:38.0498 5952 AiDriver - ok
10:21:38.0560 5952 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\windows\System32\alg.exe
10:21:38.0560 5952 ALG - ok
10:21:38.0607 5952 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\windows\system32\drivers\aliide.sys
10:21:38.0607 5952 aliide - ok
10:21:38.0638 5952 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\windows\system32\drivers\amdagp.sys
10:21:38.0654 5952 amdagp - ok
10:21:38.0685 5952 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\windows\system32\drivers\amdide.sys
10:21:38.0685 5952 amdide - ok
10:21:38.0732 5952 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\windows\system32\drivers\amdk8.sys
10:21:38.0732 5952 AmdK8 - ok
10:21:38.0778 5952 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\windows\system32\drivers\amdppm.sys
10:21:38.0778 5952 AmdPPM - ok
10:21:38.0810 5952 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\windows\system32\drivers\amdsata.sys
10:21:38.0810 5952 amdsata - ok
10:21:38.0841 5952 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\windows\system32\drivers\amdsbs.sys
10:21:38.0856 5952 amdsbs - ok
10:21:38.0872 5952 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\windows\system32\drivers\amdxata.sys
10:21:38.0888 5952 amdxata - ok
10:21:38.0981 5952 [ 6EAC742B758E110DD12EBC8446C07B6C ] Amsp C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe
10:21:38.0997 5952 Amsp - ok
10:21:39.0044 5952 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\windows\system32\drivers\appid.sys
10:21:39.0059 5952 AppID - ok
10:21:39.0106 5952 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\windows\System32\appidsvc.dll
10:21:39.0106 5952 AppIDSvc - ok
10:21:39.0137 5952 [ EACFDF31921F51C097629F1F3C9129B4 ] Appinfo C:\windows\System32\appinfo.dll
10:21:39.0153 5952 Appinfo - ok
10:21:39.0184 5952 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\windows\system32\drivers\arc.sys
10:21:39.0200 5952 arc - ok
10:21:39.0215 5952 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\windows\system32\drivers\arcsas.sys
10:21:39.0215 5952 arcsas - ok
10:21:39.0262 5952 [ 956C7177DBDA0F02436868AD644CCF31 ] AsIO C:\windows\system32\drivers\AsIO.sys
10:21:39.0262 5952 AsIO - ok
10:21:39.0371 5952 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
10:21:39.0434 5952 aspnet_state - ok
10:21:39.0480 5952 [ A9A565C669786C402752F609AFDD0DD5 ] AsUpIO C:\windows\system32\drivers\AsUpIO.sys
10:21:39.0480 5952 AsUpIO - ok
10:21:39.0558 5952 [ 8165C8825C726A7D5EFDF863A2D1C28F ] ASUS InstantOn C:\Program Files\ASUS\InstantOn for EPC\InsOnSrv.exe
10:21:39.0558 5952 ASUS InstantOn - ok
10:21:39.0605 5952 [ 689CA2A0C7ABA6C091FEEEE9439C83DB ] AsusService C:\windows\system32\AsusService.exe
10:21:39.0621 5952 AsusService - ok
10:21:39.0699 5952 [ D5730129EA9ADF7AE710DA0B14F9DE19 ] aswFsBlk C:\windows\system32\drivers\aswFsBlk.sys
10:21:39.0714 5952 aswFsBlk - ok
10:21:39.0761 5952 [ 6F23333C8358D267718F9ECB21CBB6F4 ] aswMonFlt C:\windows\system32\drivers\aswMonFlt.sys
10:21:39.0761 5952 aswMonFlt - ok
10:21:39.0839 5952 [ 2206985EF126AB90F3D7F1A020589DC9 ] aswRdr C:\windows\system32\drivers\aswRdr2.sys
10:21:39.0855 5952 aswRdr - ok
10:21:39.0902 5952 [ F385467DF95D0A73775CB3B076B8B969 ] aswRvrt C:\windows\system32\drivers\aswRvrt.sys
10:21:39.0917 5952 aswRvrt - ok
10:21:39.0964 5952 [ 50C85412AD31F5C0F687F00C2E34C673 ] aswSnx C:\windows\system32\drivers\aswSnx.sys
10:21:39.0980 5952 aswSnx - ok
10:21:40.0073 5952 [ DDEBA353975F0827143484D5A9310935 ] aswSP C:\windows\system32\drivers\aswSP.sys
10:21:40.0089 5952 aswSP - ok
10:21:40.0167 5952 [ 8BCD47E79EAA40C387D7B9DCEC41DE2D ] aswTdi C:\windows\system32\drivers\aswTdi.sys
10:21:40.0167 5952 aswTdi - ok
10:21:40.0245 5952 [ BADA8FD627F1D0E22308211C33F0BDB5 ] aswVmm C:\windows\system32\drivers\aswVmm.sys
10:21:40.0260 5952 aswVmm - ok
10:21:40.0292 5952 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys
10:21:40.0292 5952 AsyncMac - ok
10:21:40.0354 5952 [ 338C86357871C167A96AB976519BF59E ] atapi C:\windows\system32\drivers\atapi.sys
10:21:40.0354 5952 atapi - ok
10:21:40.0479 5952 [ 9B8C87C27A166CE84BE6EDDBA3854527 ] athr C:\windows\system32\DRIVERS\athr.sys
10:21:40.0510 5952 athr - ok
10:21:40.0572 5952 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
10:21:40.0588 5952 AudioEndpointBuilder - ok
10:21:40.0604 5952 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\windows\System32\Audiosrv.dll
10:21:40.0604 5952 Audiosrv - ok
10:21:40.0682 5952 [ 4BE7EC02133544CDE7A580875E130208 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
10:21:40.0697 5952 avast! Antivirus - ok
10:21:40.0744 5952 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\windows\System32\AxInstSV.dll
10:21:40.0760 5952 AxInstSV - ok
10:21:40.0806 5952 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\windows\system32\drivers\bxvbdx.sys
10:21:40.0822 5952 b06bdrv - ok
10:21:40.0869 5952 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\windows\system32\DRIVERS\b57nd60x.sys
10:21:40.0884 5952 b57nd60x - ok
10:21:40.0947 5952 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\windows\System32\bdesvc.dll
10:21:40.0947 5952 BDESVC - ok
10:21:40.0994 5952 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\windows\system32\drivers\Beep.sys
10:21:40.0994 5952 Beep - ok
10:21:41.0056 5952 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\windows\System32\bfe.dll
10:21:41.0072 5952 BFE - ok
10:21:41.0103 5952 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\windows\System32\qmgr.dll
10:21:41.0134 5952 BITS - ok
10:21:41.0165 5952 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys
10:21:41.0165 5952 blbdrive - ok
10:21:41.0196 5952 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\windows\system32\DRIVERS\bowser.sys
10:21:41.0196 5952 bowser - ok
10:21:41.0212 5952 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\windows\system32\drivers\BrFiltLo.sys
10:21:41.0212 5952 BrFiltLo - ok
10:21:41.0243 5952 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\windows\system32\drivers\BrFiltUp.sys
10:21:41.0243 5952 BrFiltUp - ok
10:21:41.0306 5952 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\windows\System32\browser.dll
10:21:41.0306 5952 Browser - ok
10:21:41.0352 5952 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\windows\System32\Drivers\Brserid.sys
10:21:41.0368 5952 Brserid - ok
10:21:41.0384 5952 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys
10:21:41.0399 5952 BrSerWdm - ok
10:21:41.0415 5952 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys
10:21:41.0415 5952 BrUsbMdm - ok
10:21:41.0446 5952 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys
10:21:41.0446 5952 BrUsbSer - ok
10:21:41.0493 5952 [ 2865A5C8E98C70C605F417908CEBB3A4 ] BthEnum C:\windows\system32\drivers\BthEnum.sys
10:21:41.0493 5952 BthEnum - ok
10:21:41.0540 5952 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\windows\system32\drivers\bthmodem.sys
10:21:41.0540 5952 BTHMODEM - ok
10:21:41.0571 5952 [ AD1872E5829E8A2C3B5B4B641C3EAB0E ] BthPan C:\windows\system32\DRIVERS\bthpan.sys
10:21:41.0586 5952 BthPan - ok
10:21:41.0633 5952 [ 1153DE2E4F5941E10C399CB5592F78A1 ] BTHPORT C:\windows\System32\Drivers\BTHport.sys
10:21:41.0633 5952 BTHPORT - ok
10:21:41.0680 5952 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\windows\system32\bthserv.dll
10:21:41.0696 5952 bthserv - ok
10:21:41.0727 5952 [ C81E9413A25A439F436B1D4B6A0CF9E9 ] BTHUSB C:\windows\System32\Drivers\BTHUSB.sys
10:21:41.0727 5952 BTHUSB - ok
10:21:41.0774 5952 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\windows\system32\DRIVERS\cdfs.sys
10:21:41.0774 5952 cdfs - ok
10:21:41.0820 5952 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\windows\system32\DRIVERS\cdrom.sys
10:21:41.0820 5952 cdrom - ok
10:21:41.0852 5952 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\windows\System32\certprop.dll
10:21:41.0867 5952 CertPropSvc - ok
10:21:41.0898 5952 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\windows\system32\drivers\circlass.sys
10:21:41.0898 5952 circlass - ok
10:21:41.0945 5952 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\windows\system32\CLFS.sys
10:21:41.0961 5952 CLFS - ok
10:21:42.0039 5952 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
10:21:42.0054 5952 clr_optimization_v2.0.50727_32 - ok
10:21:42.0117 5952 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
10:21:42.0195 5952 clr_optimization_v4.0.30319_32 - ok
10:21:42.0242 5952 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys
10:21:42.0242 5952 CmBatt - ok
10:21:42.0273 5952 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\windows\system32\drivers\cmdide.sys
10:21:42.0273 5952 cmdide - ok
10:21:42.0335 5952 [ 42F158036BD4C2FF3122BF142E60E6FD ] CNG C:\windows\system32\Drivers\cng.sys
10:21:42.0351 5952 CNG - ok
10:21:42.0382 5952 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\windows\system32\drivers\compbatt.sys
10:21:42.0398 5952 Compbatt - ok
10:21:42.0429 5952 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\windows\system32\DRIVERS\CompositeBus.sys
10:21:42.0429 5952 CompositeBus - ok
10:21:42.0444 5952 COMSysApp - ok
10:21:42.0476 5952 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\windows\system32\drivers\crcdisk.sys
10:21:42.0476 5952 crcdisk - ok
10:21:42.0522 5952 [ 7CA1BECEA5DE2643ADDAD32670E7A4C9 ] CryptSvc C:\windows\system32\cryptsvc.dll
10:21:42.0522 5952 CryptSvc - ok
10:21:42.0600 5952 [ 6578F71F4A6FBF197AE4EC7DC03E9538 ] DCDhcpService C:\Program Files\WiSharing\DCDhcpService.exe
10:21:42.0616 5952 DCDhcpService - ok
10:21:42.0663 5952 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\windows\system32\rpcss.dll
10:21:42.0694 5952 DcomLaunch - ok
10:21:42.0725 5952 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\windows\System32\defragsvc.dll
10:21:42.0741 5952 defragsvc - ok
10:21:42.0788 5952 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\windows\system32\Drivers\dfsc.sys
10:21:42.0803 5952 DfsC - ok
10:21:42.0834 5952 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\windows\system32\dhcpcore.dll
10:21:42.0850 5952 Dhcp - ok
10:21:42.0866 5952 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\windows\system32\drivers\discache.sys
10:21:42.0881 5952 discache - ok
10:21:42.0928 5952 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\windows\system32\drivers\disk.sys
10:21:42.0944 5952 Disk - ok
10:21:42.0975 5952 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\windows\System32\dnsrslvr.dll
10:21:42.0990 5952 Dnscache - ok
10:21:43.0022 5952 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\windows\System32\dot3svc.dll
10:21:43.0037 5952 dot3svc - ok
10:21:43.0053 5952 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\windows\system32\dps.dll
10:21:43.0068 5952 DPS - ok
10:21:43.0131 5952 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\windows\system32\drivers\drmkaud.sys
10:21:43.0146 5952 drmkaud - ok
10:21:43.0209 5952 [ 71BC35067CABC02C9453AEAA42B2E43E ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys
10:21:43.0224 5952 DXGKrnl - ok
10:21:43.0271 5952 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\windows\System32\eapsvc.dll
10:21:43.0287 5952 EapHost - ok
10:21:43.0396 5952 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\windows\system32\drivers\evbdx.sys
10:21:43.0458 5952 ebdrv - ok
10:21:43.0490 5952 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\windows\System32\lsass.exe
10:21:43.0505 5952 EFS - ok
10:21:43.0614 5952 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\windows\system32\drivers\elxstor.sys
10:21:43.0630 5952 elxstor - ok
10:21:43.0661 5952 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\windows\system32\drivers\errdev.sys
10:21:43.0677 5952 ErrDev - ok
10:21:43.0739 5952 [ 09E105E3997C2E6E126726EE5DDFAFB6 ] ETD C:\windows\system32\DRIVERS\ETD.sys
10:21:43.0755 5952 ETD - ok
10:21:43.0817 5952 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\windows\system32\es.dll
10:21:43.0833 5952 EventSystem - ok
10:21:43.0895 5952 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\windows\system32\drivers\exfat.sys
10:21:43.0895 5952 exfat - ok
10:21:43.0926 5952 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\windows\system32\drivers\fastfat.sys
10:21:43.0942 5952 fastfat - ok
10:21:44.0004 5952 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\windows\system32\fxssvc.exe
10:21:44.0020 5952 Fax - ok
10:21:44.0051 5952 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\windows\system32\drivers\fdc.sys
10:21:44.0067 5952 fdc - ok
10:21:44.0098 5952 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\windows\system32\fdPHost.dll
10:21:44.0098 5952 fdPHost - ok
10:21:44.0129 5952 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\windows\system32\fdrespub.dll
10:21:44.0145 5952 FDResPub - ok
10:21:44.0160 5952 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\windows\system32\drivers\fileinfo.sys
10:21:44.0176 5952 FileInfo - ok
10:21:44.0192 5952 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\windows\system32\drivers\filetrace.sys
10:21:44.0192 5952 Filetrace - ok
10:21:44.0223 5952 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\windows\system32\drivers\flpydisk.sys
10:21:44.0223 5952 flpydisk - ok
10:21:44.0270 5952 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\windows\system32\drivers\fltmgr.sys
10:21:44.0270 5952 FltMgr - ok
10:21:44.0332 5952 [ E12C4928B32ACE04610259647F072635 ] FontCache C:\windows\system32\FntCache.dll
10:21:44.0363 5952 FontCache - ok
10:21:44.0441 5952 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
10:21:44.0441 5952 FontCache3.0.0.0 - ok
10:21:44.0488 5952 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\windows\system32\drivers\FsDepends.sys
10:21:44.0504 5952 FsDepends - ok
10:21:44.0535 5952 [ BFAAA92861526BB0ADCD01E964AB6609 ] fssfltr C:\windows\system32\DRIVERS\fssfltr.sys
10:21:44.0535 5952 fssfltr - ok
10:21:44.0644 5952 [ 40CDFAD174B3D5E80F95DDA003C0B97F ] fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe
10:21:44.0691 5952 fsssvc - ok
10:21:44.0722 5952 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys
10:21:44.0722 5952 Fs_Rec - ok
10:21:44.0784 5952 [ E306A24D9694C724FA2491278BF50FDB ] fvevol C:\windows\system32\DRIVERS\fvevol.sys
10:21:44.0784 5952 fvevol - ok
10:21:44.0831 5952 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\windows\system32\drivers\gagp30kx.sys
10:21:44.0831 5952 gagp30kx - ok
10:21:44.0909 5952 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\windows\System32\gpsvc.dll
10:21:44.0925 5952 gpsvc - ok
10:21:45.0003 5952 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
10:21:45.0003 5952 gupdate - ok
10:21:45.0018 5952 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
10:21:45.0018 5952 gupdatem - ok
10:21:45.0065 5952 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
10:21:45.0081 5952 gusvc - ok
10:21:45.0112 5952 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys
10:21:45.0112 5952 hcw85cir - ok
10:21:45.0143 5952 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
10:21:45.0159 5952 HdAudAddService - ok
10:21:45.0190 5952 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\windows\system32\DRIVERS\HDAudBus.sys
10:21:45.0190 5952 HDAudBus - ok
10:21:45.0221 5952 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\windows\system32\drivers\HidBatt.sys
10:21:45.0221 5952 HidBatt - ok
10:21:45.0268 5952 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\windows\system32\drivers\hidbth.sys
10:21:45.0268 5952 HidBth - ok
10:21:45.0299 5952 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\windows\system32\drivers\hidir.sys
10:21:45.0299 5952 HidIr - ok
10:21:45.0330 5952 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\windows\system32\hidserv.dll
10:21:45.0330 5952 hidserv - ok
10:21:45.0377 5952 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\windows\system32\drivers\hidusb.sys
10:21:45.0377 5952 HidUsb - ok
10:21:45.0424 5952 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\windows\system32\kmsvc.dll
10:21:45.0440 5952 hkmsvc - ok
10:21:45.0455 5952 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\windows\system32\ListSvc.dll
10:21:45.0471 5952 HomeGroupListener - ok
10:21:45.0518 5952 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\windows\system32\provsvc.dll
10:21:45.0549 5952 HomeGroupProvider - ok
10:21:45.0596 5952 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys
10:21:45.0596 5952 HpSAMD - ok
10:21:45.0658 5952 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\windows\system32\drivers\HTTP.sys
10:21:45.0674 5952 HTTP - ok
10:21:45.0720 5952 [ C1258ADCBE6E51A3C06C234D2BDB81B5 ] Huawei C:\windows\system32\DRIVERS\ewdcsc.sys
10:21:45.0736 5952 Huawei - ok
10:21:45.0814 5952 [ 988C0A49F09D75D3341CB419141793C1 ] hwdatacard C:\windows\system32\DRIVERS\ewusbmdm.sys
10:21:45.0814 5952 hwdatacard - ok
10:21:45.0861 5952 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys
10:21:45.0861 5952 hwpolicy - ok
10:21:45.0923 5952 [ A259D3619AA23D4562581067F85E2006 ] hwusbdev C:\windows\system32\DRIVERS\ewusbdev.sys
10:21:45.0939 5952 hwusbdev - ok
10:21:45.0986 5952 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\windows\system32\DRIVERS\i8042prt.sys
10:21:45.0986 5952 i8042prt - ok
10:21:46.0032 5952 [ F4037A3FEDB92DD97C95F320766EA5C9 ] iaStor C:\windows\system32\drivers\iaStor.sys
10:21:46.0048 5952 iaStor - ok
10:21:46.0110 5952 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\windows\system32\drivers\iaStorV.sys
10:21:46.0126 5952 iaStorV - ok
10:21:46.0204 5952 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
10:21:46.0235 5952 idsvc - ok
10:21:46.0313 5952 [ 72A75B01371384ECBCFC6AD2AF6B9389 ] igddim32 C:\windows\system32\DRIVERS\igddim32.sys
10:21:46.0344 5952 igddim32 - ok
10:21:46.0376 5952 [ 6B78789287D43615E7908CA31C0D5D6D ] igdkmd32 C:\windows\system32\DRIVERS\igdkmd32.sys
10:21:46.0391 5952 igdkmd32 - ok
10:21:46.0422 5952 [ 6B78789287D43615E7908CA31C0D5D6D ] igfx C:\windows\system32\DRIVERS\igdkmd32.sys
10:21:46.0422 5952 igfx - ok
10:21:46.0469 5952 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\windows\system32\drivers\iirsp.sys
10:21:46.0469 5952 iirsp - ok
10:21:46.0532 5952 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\windows\System32\ikeext.dll
10:21:46.0547 5952 IKEEXT - ok
10:21:46.0719 5952 [ C281E19D77C6B0B0DB5459E7C317CF76 ] IntcAzAudAddService C:\windows\system32\drivers\RTKVHDA.sys
10:21:46.0844 5952 IntcAzAudAddService - ok
10:21:46.0890 5952 [ 8F4D251F1EA15FA97E8399128A72CC83 ] IntcDAud C:\windows\system32\DRIVERS\IntcDAud.sys
10:21:46.0890 5952 IntcDAud - ok
10:21:46.0922 5952 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\windows\system32\drivers\intelide.sys
10:21:46.0937 5952 intelide - ok
10:21:46.0968 5952 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\windows\system32\DRIVERS\intelppm.sys
10:21:46.0984 5952 intelppm - ok
10:21:47.0031 5952 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\windows\system32\ipbusenum.dll
10:21:47.0046 5952 IPBusEnum - ok
10:21:47.0078 5952 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys
10:21:47.0093 5952 IpFilterDriver - ok
10:21:47.0140 5952 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\windows\System32\iphlpsvc.dll
10:21:47.0156 5952 iphlpsvc - ok
10:21:47.0171 5952 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\windows\system32\drivers\IPMIDrv.sys
10:21:47.0171 5952 IPMIDRV - ok
10:21:47.0187 5952 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\windows\system32\drivers\ipnat.sys
10:21:47.0187 5952 IPNAT - ok
10:21:47.0218 5952 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\windows\system32\drivers\irenum.sys
10:21:47.0234 5952 IRENUM - ok
10:21:47.0249 5952 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\windows\system32\drivers\isapnp.sys
10:21:47.0265 5952 isapnp - ok
10:21:47.0296 5952 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\windows\system32\drivers\msiscsi.sys
10:21:47.0296 5952 iScsiPrt - ok
10:21:47.0327 5952 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\windows\system32\DRIVERS\kbdclass.sys
10:21:47.0327 5952 kbdclass - ok
10:21:47.0358 5952 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\windows\system32\drivers\kbdhid.sys
10:21:47.0374 5952 kbdhid - ok
10:21:47.0405 5952 [ 3EB803312987FF44265C87CB960DF6AB ] kbfiltr C:\windows\system32\DRIVERS\kbfiltr.sys
10:21:47.0421 5952 kbfiltr - ok
10:21:47.0436 5952 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\windows\system32\lsass.exe
10:21:47.0452 5952 KeyIso - ok
10:21:47.0483 5952 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys
10:21:47.0483 5952 KSecDD - ok
10:21:47.0530 5952 [ 5FE1ABF1AF591A3458C9CF24ED9A4D35 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys
10:21:47.0530 5952 KSecPkg - ok
10:21:47.0577 5952 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\windows\system32\msdtckrm.dll
10:21:47.0592 5952 KtmRm - ok
10:21:47.0624 5952 [ 2D60DFAD37C101E35520E38F12B59770 ] L1C C:\windows\system32\DRIVERS\L1C62x86.sys
10:21:47.0639 5952 L1C - ok
10:21:47.0686 5952 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\windows\system32\srvsvc.dll
10:21:47.0702 5952 LanmanServer - ok
10:21:47.0748 5952 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\windows\System32\wkssvc.dll
10:21:47.0764 5952 LanmanWorkstation - ok
10:21:47.0811 5952 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\windows\system32\DRIVERS\lltdio.sys
10:21:47.0811 5952 lltdio - ok
10:21:47.0842 5952 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\windows\System32\lltdsvc.dll
10:21:47.0858 5952 lltdsvc - ok
10:21:47.0889 5952 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\windows\System32\lmhsvc.dll
10:21:47.0889 5952 lmhosts - ok
10:21:47.0951 5952 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\windows\system32\drivers\lsi_fc.sys
10:21:47.0951 5952 LSI_FC - ok
10:21:47.0967 5952 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\windows\system32\drivers\lsi_sas.sys
10:21:47.0967 5952 LSI_SAS - ok
10:21:47.0998 5952 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\windows\system32\drivers\lsi_sas2.sys
10:21:48.0014 5952 LSI_SAS2 - ok
10:21:48.0014 5952 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\windows\system32\drivers\lsi_scsi.sys
10:21:48.0029 5952 LSI_SCSI - ok
10:21:48.0045 5952 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\windows\system32\drivers\luafv.sys
10:21:48.0045 5952 luafv - ok
10:21:48.0107 5952 [ 4470E3C1E0C3378E4CAB137893C12C3A ] MBAMProtector C:\windows\system32\drivers\mbam.sys
10:21:48.0107 5952 MBAMProtector - ok
10:21:48.0201 5952 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
10:21:48.0216 5952 MBAMScheduler - ok
10:21:48.0310 5952 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
10:21:48.0326 5952 MBAMService - ok
10:21:48.0372 5952 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\windows\system32\drivers\megasas.sys
10:21:48.0372 5952 megasas - ok
10:21:48.0404 5952 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\windows\system32\drivers\MegaSR.sys
10:21:48.0419 5952 MegaSR - ok
10:21:48.0466 5952 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\windows\system32\mmcss.dll
10:21:48.0482 5952 MMCSS - ok
10:21:48.0497 5952 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\windows\system32\drivers\modem.sys
10:21:48.0497 5952 Modem - ok
10:21:48.0528 5952 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\windows\system32\DRIVERS\monitor.sys
10:21:48.0544 5952 monitor - ok
10:21:48.0575 5952 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\windows\system32\DRIVERS\mouclass.sys
10:21:48.0591 5952 mouclass - ok
10:21:48.0622 5952 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\windows\system32\DRIVERS\mouhid.sys
10:21:48.0622 5952 mouhid - ok
10:21:48.0653 5952 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\windows\system32\drivers\mountmgr.sys
10:21:48.0669 5952 mountmgr - ok
10:21:48.0700 5952 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\windows\system32\drivers\mpio.sys
10:21:48.0716 5952 mpio - ok
10:21:48.0731 5952 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys
10:21:48.0731 5952 mpsdrv - ok
10:21:48.0778 5952 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\windows\system32\mpssvc.dll
10:21:48.0809 5952 MpsSvc - ok
10:21:48.0840 5952 [ 21F4B24ACFC79A483515BD986DD9043F ] MRxDAV C:\windows\system32\drivers\mrxdav.sys
10:21:48.0840 5952 MRxDAV - ok
10:21:48.0903 5952 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys
10:21:48.0918 5952 mrxsmb - ok
10:21:48.0934 5952 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys
10:21:48.0950 5952 mrxsmb10 - ok
10:21:48.0965 5952 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys
10:21:48.0981 5952 mrxsmb20 - ok
10:21:49.0012 5952 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\windows\system32\drivers\msahci.sys
10:21:49.0028 5952 msahci - ok
10:21:49.0059 5952 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\windows\system32\drivers\msdsm.sys
10:21:49.0059 5952 msdsm - ok
10:21:49.0090 5952 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\windows\System32\msdtc.exe
10:21:49.0106 5952 MSDTC - ok
10:21:49.0152 5952 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\windows\system32\drivers\Msfs.sys
10:21:49.0152 5952 Msfs - ok
10:21:49.0199 5952 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys
10:21:49.0199 5952 mshidkmdf - ok
10:21:49.0230 5952 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\windows\system32\drivers\msisadrv.sys
10:21:49.0230 5952 msisadrv - ok
10:21:49.0293 5952 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\windows\system32\iscsiexe.dll
10:21:49.0308 5952 MSiSCSI - ok
10:21:49.0324 5952 msiserver - ok
10:21:49.0355 5952 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys
10:21:49.0371 5952 MSKSSRV - ok
10:21:49.0402 5952 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys
10:21:49.0402 5952 MSPCLOCK - ok
10:21:49.0449 5952 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\windows\system32\drivers\MSPQM.sys
10:21:49.0449 5952 MSPQM - ok
10:21:49.0496 5952 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\windows\system32\drivers\MsRPC.sys
10:21:49.0511 5952 MsRPC - ok
10:21:49.0542 5952 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\windows\system32\DRIVERS\mssmbios.sys
10:21:49.0558 5952 mssmbios - ok
10:21:49.0605 5952 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\windows\system32\drivers\MSTEE.sys
10:21:49.0605 5952 MSTEE - ok
10:21:49.0636 5952 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\windows\system32\drivers\MTConfig.sys
10:21:49.0636 5952 MTConfig - ok
10:21:49.0667 5952 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\windows\system32\Drivers\mup.sys
10:21:49.0667 5952 Mup - ok
10:21:49.0698 5952 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\windows\system32\qagentRT.dll
10:21:49.0714 5952 napagent - ok
10:21:49.0776 5952 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys
10:21:49.0792 5952 NativeWifiP - ok
10:21:49.0854 5952 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\windows\system32\drivers\ndis.sys
10:21:49.0886 5952 NDIS - ok
10:21:49.0932 5952 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys
10:21:49.0948 5952 NdisCap - ok
10:21:50.0026 5952 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys
10:21:50.0026 5952 NdisTapi - ok
10:21:50.0073 5952 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys
10:21:50.0073 5952 Ndisuio - ok
10:21:50.0135 5952 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys
10:21:50.0151 5952 NdisWan - ok
10:21:50.0166 5952 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\windows\system32\drivers\NDProxy.sys
10:21:50.0182 5952 NDProxy - ok
10:21:50.0229 5952 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys
10:21:50.0229 5952 NetBIOS - ok
10:21:50.0260 5952 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\windows\system32\DRIVERS\netbt.sys
10:21:50.0276 5952 NetBT - ok
10:21:50.0291 5952 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\windows\system32\lsass.exe
10:21:50.0307 5952 Netlogon - ok
10:21:50.0354 5952 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\windows\System32\netman.dll
10:21:50.0385 5952 Netman - ok
Re: Pomalý netbook
10:21:50.0416 5952 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:21:50.0478 5952 NetMsmqActivator - ok
10:21:50.0494 5952 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:21:50.0494 5952 NetPipeActivator - ok
10:21:50.0541 5952 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\windows\System32\netprofm.dll
10:21:50.0556 5952 netprofm - ok
10:21:50.0588 5952 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:21:50.0588 5952 NetTcpActivator - ok
10:21:50.0603 5952 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:21:50.0619 5952 NetTcpPortSharing - ok
10:21:50.0650 5952 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\windows\system32\drivers\nfrd960.sys
10:21:50.0666 5952 nfrd960 - ok
10:21:50.0697 5952 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\windows\System32\nlasvc.dll
10:21:50.0712 5952 NlaSvc - ok
10:21:50.0759 5952 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\windows\system32\drivers\Npfs.sys
10:21:50.0759 5952 Npfs - ok
10:21:50.0806 5952 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\windows\system32\nsisvc.dll
10:21:50.0837 5952 nsi - ok
10:21:50.0868 5952 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys
10:21:50.0868 5952 nsiproxy - ok
10:21:50.0962 5952 [ 5E43D2B0EE64123D4880DFA6626DEFDE ] Ntfs C:\windows\system32\drivers\Ntfs.sys
10:21:50.0993 5952 Ntfs - ok
10:21:51.0024 5952 [ F9756A98D69098DCA8945D62858A812C ] Null C:\windows\system32\drivers\Null.sys
10:21:51.0040 5952 Null - ok
10:21:51.0071 5952 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\windows\system32\drivers\nvraid.sys
10:21:51.0071 5952 nvraid - ok
10:21:51.0087 5952 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\windows\system32\drivers\nvstor.sys
10:21:51.0102 5952 nvstor - ok
10:21:51.0118 5952 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\windows\system32\drivers\nv_agp.sys
10:21:51.0134 5952 nv_agp - ok
10:21:51.0258 5952 [ 893B16E57D4896DE0411F92FDE5FA82C ] OfficeSvc C:\Program Files\Microsoft Office 15\ClientX86\integratedoffice.exe
10:21:51.0290 5952 OfficeSvc - ok
10:21:51.0321 5952 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\windows\system32\drivers\ohci1394.sys
10:21:51.0336 5952 ohci1394 - ok
10:21:51.0414 5952 [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
10:21:51.0414 5952 ose - ok
10:21:51.0633 5952 [ EE5756BDA5BE5891270E0CC6CEC44096 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
10:21:51.0789 5952 osppsvc - ok
10:21:51.0836 5952 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\windows\system32\pnrpsvc.dll
10:21:51.0851 5952 p2pimsvc - ok
10:21:51.0898 5952 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\windows\system32\p2psvc.dll
10:21:51.0914 5952 p2psvc - ok
10:21:51.0945 5952 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\windows\system32\drivers\parport.sys
10:21:51.0960 5952 Parport - ok
10:21:51.0992 5952 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\windows\system32\drivers\partmgr.sys
10:21:51.0992 5952 partmgr - ok
10:21:52.0023 5952 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\windows\system32\drivers\parvdm.sys
10:21:52.0023 5952 Parvdm - ok
10:21:52.0070 5952 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\windows\System32\pcasvc.dll
10:21:52.0085 5952 PcaSvc - ok
10:21:52.0101 5952 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\windows\system32\drivers\pci.sys
10:21:52.0116 5952 pci - ok
10:21:52.0148 5952 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\windows\system32\drivers\pciide.sys
10:21:52.0148 5952 pciide - ok
10:21:52.0194 5952 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\windows\system32\drivers\pcmcia.sys
10:21:52.0194 5952 pcmcia - ok
10:21:52.0210 5952 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\windows\system32\drivers\pcw.sys
10:21:52.0226 5952 pcw - ok
10:21:52.0272 5952 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\windows\system32\drivers\peauth.sys
10:21:52.0288 5952 PEAUTH - ok
10:21:52.0413 5952 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\windows\system32\pla.dll
10:21:52.0475 5952 pla - ok
10:21:52.0538 5952 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\windows\system32\umpnpmgr.dll
10:21:52.0569 5952 PlugPlay - ok
10:21:52.0600 5952 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll
10:21:52.0616 5952 PNRPAutoReg - ok
10:21:52.0647 5952 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\windows\system32\pnrpsvc.dll
10:21:52.0662 5952 PNRPsvc - ok
10:21:52.0709 5952 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\windows\System32\ipsecsvc.dll
10:21:52.0725 5952 PolicyAgent - ok
10:21:52.0756 5952 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\windows\system32\umpo.dll
10:21:52.0772 5952 Power - ok
10:21:52.0818 5952 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys
10:21:52.0834 5952 PptpMiniport - ok
10:21:52.0850 5952 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\windows\system32\drivers\processr.sys
10:21:52.0850 5952 Processor - ok
10:21:52.0896 5952 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\windows\system32\profsvc.dll
10:21:52.0912 5952 ProfSvc - ok
10:21:52.0943 5952 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\windows\system32\lsass.exe
10:21:52.0959 5952 ProtectedStorage - ok
10:21:52.0990 5952 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\windows\system32\DRIVERS\pacer.sys
10:21:53.0006 5952 Psched - ok
10:21:53.0068 5952 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\windows\system32\drivers\ql2300.sys
10:21:53.0084 5952 ql2300 - ok
10:21:53.0099 5952 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\windows\system32\drivers\ql40xx.sys
10:21:53.0115 5952 ql40xx - ok
10:21:53.0146 5952 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\windows\system32\qwave.dll
10:21:53.0162 5952 QWAVE - ok
10:21:53.0193 5952 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys
10:21:53.0193 5952 QWAVEdrv - ok
10:21:53.0208 5952 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys
10:21:53.0224 5952 RasAcd - ok
10:21:53.0255 5952 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys
10:21:53.0255 5952 RasAgileVpn - ok
10:21:53.0286 5952 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\windows\System32\rasauto.dll
10:21:53.0302 5952 RasAuto - ok
10:21:53.0349 5952 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys
10:21:53.0364 5952 Rasl2tp - ok
10:21:53.0411 5952 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\windows\System32\rasmans.dll
10:21:53.0427 5952 RasMan - ok
10:21:53.0458 5952 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys
10:21:53.0474 5952 RasPppoe - ok
10:21:53.0489 5952 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys
10:21:53.0489 5952 RasSstp - ok
10:21:53.0520 5952 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\windows\system32\DRIVERS\rdbss.sys
10:21:53.0536 5952 rdbss - ok
10:21:53.0567 5952 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\windows\system32\drivers\rdpbus.sys
10:21:53.0583 5952 rdpbus - ok
10:21:53.0598 5952 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys
10:21:53.0614 5952 RDPCDD - ok
10:21:53.0645 5952 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys
10:21:53.0645 5952 RDPENCDD - ok
10:21:53.0676 5952 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys
10:21:53.0676 5952 RDPREFMP - ok
10:21:53.0754 5952 [ 65375DF758CA1872AB7EBBBA457FD5E6 ] RdpVideoMiniport C:\windows\system32\drivers\rdpvideominiport.sys
10:21:53.0770 5952 RdpVideoMiniport - ok
10:21:53.0801 5952 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\windows\system32\drivers\RDPWD.sys
10:21:53.0817 5952 RDPWD - ok
10:21:53.0864 5952 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\windows\system32\drivers\rdyboost.sys
10:21:53.0879 5952 rdyboost - ok
10:21:53.0926 5952 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\windows\System32\mprdim.dll
10:21:53.0942 5952 RemoteAccess - ok
10:21:53.0973 5952 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\windows\system32\regsvc.dll
10:21:53.0988 5952 RemoteRegistry - ok
10:21:54.0051 5952 [ CB928D9E6DAF51879DD6BA8D02F01321 ] RFCOMM C:\windows\system32\DRIVERS\rfcomm.sys
10:21:54.0051 5952 RFCOMM - ok
10:21:54.0098 5952 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\windows\System32\RpcEpMap.dll
10:21:54.0113 5952 RpcEptMapper - ok
10:21:54.0160 5952 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\windows\system32\locator.exe
10:21:54.0176 5952 RpcLocator - ok
10:21:54.0207 5952 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\windows\system32\rpcss.dll
10:21:54.0222 5952 RpcSs - ok
10:21:54.0269 5952 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\windows\system32\DRIVERS\rspndr.sys
10:21:54.0269 5952 rspndr - ok
10:21:54.0300 5952 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\windows\system32\lsass.exe
10:21:54.0300 5952 SamSs - ok
10:21:54.0347 5952 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\windows\system32\drivers\sbp2port.sys
10:21:54.0347 5952 sbp2port - ok
10:21:54.0394 5952 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\windows\System32\SCardSvr.dll
10:21:54.0410 5952 SCardSvr - ok
10:21:54.0441 5952 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\windows\system32\DRIVERS\scfilter.sys
10:21:54.0456 5952 scfilter - ok
10:21:54.0519 5952 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\windows\system32\schedsvc.dll
10:21:54.0550 5952 Schedule - ok
10:21:54.0566 5952 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\windows\System32\certprop.dll
10:21:54.0566 5952 SCPolicySvc - ok
10:21:54.0612 5952 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\windows\System32\SDRSVC.dll
10:21:54.0628 5952 SDRSVC - ok
10:21:54.0659 5952 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\windows\system32\drivers\secdrv.sys
10:21:54.0675 5952 secdrv - ok
10:21:54.0706 5952 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\windows\system32\seclogon.dll
10:21:54.0722 5952 seclogon - ok
10:21:54.0753 5952 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\windows\System32\sens.dll
10:21:54.0768 5952 SENS - ok
10:21:54.0784 5952 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\windows\system32\drivers\serenum.sys
10:21:54.0800 5952 Serenum - ok
10:21:54.0831 5952 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\windows\system32\drivers\serial.sys
10:21:54.0831 5952 Serial - ok
10:21:54.0862 5952 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\windows\system32\drivers\sermouse.sys
10:21:54.0862 5952 sermouse - ok
10:21:54.0924 5952 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\windows\system32\sessenv.dll
10:21:54.0940 5952 SessionEnv - ok
10:21:54.0971 5952 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\windows\system32\drivers\sffdisk.sys
10:21:54.0971 5952 sffdisk - ok
10:21:54.0987 5952 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\windows\system32\drivers\sffp_mmc.sys
10:21:54.0987 5952 sffp_mmc - ok
10:21:55.0018 5952 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\windows\system32\drivers\sffp_sd.sys
10:21:55.0018 5952 sffp_sd - ok
10:21:55.0049 5952 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\windows\system32\drivers\sfloppy.sys
10:21:55.0049 5952 sfloppy - ok
10:21:55.0096 5952 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\windows\System32\ipnathlp.dll
10:21:55.0112 5952 SharedAccess - ok
10:21:55.0143 5952 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\windows\System32\shsvcs.dll
10:21:55.0158 5952 ShellHWDetection - ok
10:21:55.0190 5952 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\windows\system32\drivers\sisagp.sys
10:21:55.0205 5952 sisagp - ok
10:21:55.0236 5952 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\windows\system32\drivers\SiSRaid2.sys
10:21:55.0252 5952 SiSRaid2 - ok
10:21:55.0283 5952 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\windows\system32\drivers\sisraid4.sys
10:21:55.0299 5952 SiSRaid4 - ok
10:21:55.0361 5952 [ 4E8A4BB5B11D828FF986F6228B1CD3DF ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
10:21:55.0377 5952 SkypeUpdate - ok
10:21:55.0455 5952 [ BF302072DC8374CF4E118FD88AA817A2 ] SmartDefragDriver C:\windows\system32\Drivers\SmartDefragDriver.sys
10:21:55.0470 5952 SmartDefragDriver - ok
10:21:55.0517 5952 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\windows\system32\DRIVERS\smb.sys
10:21:55.0517 5952 Smb - ok
10:21:55.0611 5952 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\windows\System32\snmptrap.exe
10:21:55.0626 5952 SNMPTRAP - ok
10:21:55.0658 5952 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\windows\system32\drivers\spldr.sys
10:21:55.0673 5952 spldr - ok
10:21:55.0720 5952 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\windows\System32\spoolsv.exe
10:21:55.0751 5952 Spooler - ok
10:21:55.0876 5952 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\windows\system32\sppsvc.exe
10:21:55.0970 5952 sppsvc - ok
10:21:56.0001 5952 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\windows\system32\sppuinotify.dll
10:21:56.0016 5952 sppuinotify - ok
10:21:56.0048 5952 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\windows\system32\DRIVERS\srv.sys
10:21:56.0063 5952 srv - ok
10:21:56.0094 5952 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\windows\system32\DRIVERS\srv2.sys
10:21:56.0094 5952 srv2 - ok
10:21:56.0126 5952 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\windows\system32\DRIVERS\srvnet.sys
10:21:56.0126 5952 srvnet - ok
10:21:56.0157 5952 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\windows\System32\ssdpsrv.dll
10:21:56.0172 5952 SSDPSRV - ok
10:21:56.0204 5952 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\windows\system32\sstpsvc.dll
10:21:56.0219 5952 SstpSvc - ok
10:21:56.0250 5952 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\windows\system32\drivers\stexstor.sys
10:21:56.0266 5952 stexstor - ok
10:21:56.0313 5952 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\windows\System32\wiaservc.dll
10:21:56.0344 5952 StiSvc - ok
10:21:56.0375 5952 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\windows\system32\DRIVERS\swenum.sys
10:21:56.0375 5952 swenum - ok
10:21:56.0406 5952 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\windows\System32\swprv.dll
10:21:56.0438 5952 swprv - ok
10:21:56.0484 5952 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\windows\system32\sysmain.dll
10:21:56.0516 5952 SysMain - ok
10:21:56.0547 5952 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\windows\System32\TabSvc.dll
10:21:56.0562 5952 TabletInputService - ok
10:21:56.0578 5952 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\windows\System32\tapisrv.dll
10:21:56.0609 5952 TapiSrv - ok
10:21:56.0625 5952 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\windows\System32\tbssvc.dll
10:21:56.0640 5952 TBS - ok
10:21:56.0718 5952 [ CA59F7C570AF70BC174F477CFE2D9EE3 ] Tcpip C:\windows\system32\drivers\tcpip.sys
10:21:56.0750 5952 Tcpip - ok
10:21:56.0828 5952 [ CA59F7C570AF70BC174F477CFE2D9EE3 ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys
10:21:56.0859 5952 TCPIP6 - ok
10:21:56.0890 5952 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys
10:21:56.0890 5952 tcpipreg - ok
10:21:56.0937 5952 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\windows\system32\drivers\tdpipe.sys
10:21:56.0937 5952 TDPIPE - ok
10:21:56.0984 5952 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\windows\system32\drivers\tdtcp.sys
10:21:56.0999 5952 TDTCP - ok
10:21:57.0015 5952 [ B459575348C20E8121D6039DA063C704 ] tdx C:\windows\system32\DRIVERS\tdx.sys
10:21:57.0030 5952 tdx - ok
10:21:57.0062 5952 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\windows\system32\DRIVERS\termdd.sys
10:21:57.0062 5952 TermDD - ok
10:21:57.0108 5952 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\windows\System32\termsrv.dll
10:21:57.0140 5952 TermService - ok
10:21:57.0171 5952 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\windows\system32\themeservice.dll
10:21:57.0186 5952 Themes - ok
10:21:57.0202 5952 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\windows\system32\mmcss.dll
10:21:57.0218 5952 THREADORDER - ok
10:21:57.0296 5952 [ E5EFD1068D24F9F052A027CAFED3AA5A ] TiMiniService C:\Program Files\Trend Micro\Titanium\TiMiniService.exe
10:21:57.0296 5952 TiMiniService - ok
10:21:57.0358 5952 [ DE87A23D2DDC7378D1C7AB681E20DE47 ] tmactmon C:\windows\system32\DRIVERS\tmactmon.sys
10:21:57.0358 5952 tmactmon - ok
10:21:57.0389 5952 [ 540C2B5DC47651C572C2804DC72FDDA8 ] tmcomm C:\windows\system32\DRIVERS\tmcomm.sys
10:21:57.0405 5952 tmcomm - ok
10:21:57.0436 5952 [ 2DE1FA64EBAFF376F2C038F64492F62C ] tmevtmgr C:\windows\system32\DRIVERS\tmevtmgr.sys
10:21:57.0436 5952 tmevtmgr - ok
10:21:57.0483 5952 [ 5A61679B2277B9AD550E30479A69503B ] tmtdi C:\windows\system32\DRIVERS\tmtdi.sys
10:21:57.0483 5952 tmtdi - ok
10:21:57.0545 5952 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\windows\System32\trkwks.dll
10:21:57.0561 5952 TrkWks - ok
10:21:57.0639 5952 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
10:21:57.0639 5952 TrustedInstaller - ok
10:21:57.0686 5952 [ B37B08F2E5EEB1A37E448E09BACE1101 ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys
10:21:57.0701 5952 tssecsrv - ok
10:21:57.0748 5952 [ 9CE253214ACAA5A7D323327D2055EFAA ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys
10:21:57.0748 5952 TsUsbFlt - ok
10:21:57.0795 5952 [ 57C527AF84748B5C2F5178C499C0B81F ] TsUsbGD C:\windows\system32\drivers\TsUsbGD.sys
10:21:57.0810 5952 TsUsbGD - ok
10:21:57.0857 5952 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\windows\system32\DRIVERS\tunnel.sys
10:21:57.0873 5952 tunnel - ok
10:21:57.0904 5952 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\windows\system32\drivers\uagp35.sys
10:21:57.0904 5952 uagp35 - ok
10:21:57.0935 5952 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\windows\system32\DRIVERS\udfs.sys
10:21:57.0951 5952 udfs - ok
10:21:57.0998 5952 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\windows\system32\UI0Detect.exe
10:21:58.0029 5952 UI0Detect - ok
10:21:58.0060 5952 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys
10:21:58.0076 5952 uliagpkx - ok
10:21:58.0122 5952 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\windows\system32\DRIVERS\umbus.sys
10:21:58.0122 5952 umbus - ok
10:21:58.0154 5952 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\windows\system32\drivers\umpass.sys
10:21:58.0154 5952 UmPass - ok
10:21:58.0185 5952 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\windows\System32\upnphost.dll
10:21:58.0216 5952 upnphost - ok
10:21:58.0247 5952 [ 71D97F1A3CC47A56728F7A400A3F8295 ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys
10:21:58.0247 5952 usbccgp - ok
10:21:58.0278 5952 [ 2352AB5F9F8F097BF9D41D5A4718A041 ] usbcir C:\windows\system32\drivers\usbcir.sys
10:21:58.0294 5952 usbcir - ok
10:21:58.0310 5952 [ C4FB8E7ADEA9B5CEEA885A1B504B7E40 ] usbehci C:\windows\system32\drivers\usbehci.sys
10:21:58.0310 5952 usbehci - ok
10:21:58.0372 5952 [ 86AA95ACB611001E26CD2C0145F2225A ] usbhub C:\windows\system32\DRIVERS\usbhub.sys
10:21:58.0372 5952 usbhub - ok
10:21:58.0388 5952 [ DCDF9855145A14DFCA0AB32308871961 ] usbohci C:\windows\system32\drivers\usbohci.sys
10:21:58.0403 5952 usbohci - ok
10:21:58.0434 5952 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\windows\system32\drivers\usbprint.sys
10:21:58.0434 5952 usbprint - ok
10:21:58.0466 5952 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\windows\system32\DRIVERS\USBSTOR.SYS
10:21:58.0481 5952 USBSTOR - ok
10:21:58.0512 5952 [ 8E51D04175BAA14C4F79AA5F6D248770 ] usbuhci C:\windows\system32\drivers\usbuhci.sys
10:21:58.0512 5952 usbuhci - ok
10:21:58.0544 5952 [ DE014425522610BEDCA3821BB8C0F1D5 ] usbvideo C:\windows\System32\Drivers\usbvideo.sys
10:21:58.0559 5952 usbvideo - ok
10:21:58.0590 5952 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\windows\System32\uxsms.dll
10:21:58.0606 5952 UxSms - ok
10:21:58.0622 5952 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\windows\system32\lsass.exe
10:21:58.0637 5952 VaultSvc - ok
10:21:58.0684 5952 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys
10:21:58.0684 5952 vdrvroot - ok
10:21:58.0731 5952 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\windows\System32\vds.exe
10:21:58.0762 5952 vds - ok
10:21:58.0793 5952 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\windows\system32\DRIVERS\vgapnp.sys
10:21:58.0793 5952 vga - ok
10:21:58.0809 5952 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\windows\System32\drivers\vga.sys
10:21:58.0824 5952 VgaSave - ok
10:21:58.0856 5952 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\windows\system32\drivers\vhdmp.sys
10:21:58.0856 5952 vhdmp - ok
10:21:58.0902 5952 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\windows\system32\drivers\viaagp.sys
10:21:58.0902 5952 viaagp - ok
10:21:58.0934 5952 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\windows\system32\drivers\viac7.sys
10:21:58.0949 5952 ViaC7 - ok
10:21:58.0980 5952 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\windows\system32\drivers\viaide.sys
10:21:58.0996 5952 viaide - ok
10:21:59.0058 5952 [ C37CE43FB54066FFB540729C6E6E194E ] VideAceWindowsService C:\ExpressGateUtil\VAWinService.exe
10:21:59.0074 5952 VideAceWindowsService - ok
10:21:59.0121 5952 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\windows\system32\drivers\volmgr.sys
10:21:59.0136 5952 volmgr - ok
10:21:59.0152 5952 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\windows\system32\drivers\volmgrx.sys
10:21:59.0168 5952 volmgrx - ok
10:21:59.0199 5952 [ C37AEE5966EB5929E2051AC7409B5730 ] volsnap C:\windows\system32\drivers\volsnap.sys
10:21:59.0199 5952 volsnap - ok
10:21:59.0261 5952 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\windows\system32\drivers\vsmraid.sys
10:21:59.0261 5952 vsmraid - ok
10:21:59.0339 5952 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\windows\system32\vssvc.exe
10:21:59.0370 5952 VSS - ok
10:21:59.0402 5952 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\windows\system32\DRIVERS\vwifibus.sys
10:21:59.0417 5952 vwifibus - ok
10:21:59.0448 5952 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\windows\system32\DRIVERS\vwififlt.sys
10:21:59.0448 5952 vwififlt - ok
10:21:59.0480 5952 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\windows\system32\w32time.dll
10:21:59.0495 5952 W32Time - ok
10:21:59.0542 5952 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\windows\system32\drivers\wacompen.sys
10:21:59.0558 5952 WacomPen - ok
10:21:59.0604 5952 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\windows\system32\DRIVERS\wanarp.sys
10:21:59.0604 5952 WANARP - ok
10:21:59.0620 5952 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys
10:21:59.0636 5952 Wanarpv6 - ok
10:21:59.0682 5952 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\windows\system32\wbengine.exe
10:21:59.0714 5952 wbengine - ok
10:21:59.0729 5952 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\windows\System32\wbiosrvc.dll
10:21:59.0760 5952 WbioSrvc - ok
10:21:59.0776 5952 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\windows\System32\wcncsvc.dll
10:21:59.0807 5952 wcncsvc - ok
10:21:59.0823 5952 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
10:21:59.0838 5952 WcsPlugInService - ok
10:21:59.0870 5952 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\windows\system32\drivers\wd.sys
10:21:59.0870 5952 Wd - ok
10:21:59.0901 5952 [ 25944D2CC49E0A6C581D02A74B7D6645 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys
10:21:59.0916 5952 Wdf01000 - ok
10:21:59.0932 5952 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\windows\system32\wdi.dll
10:21:59.0963 5952 WdiServiceHost - ok
10:21:59.0963 5952 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\windows\system32\wdi.dll
10:21:59.0979 5952 WdiSystemHost - ok
10:22:00.0041 5952 [ 75E8EBD7040CE238684333F97014762A ] WebClient C:\windows\System32\webclnt.dll
10:22:00.0057 5952 WebClient - ok
10:22:00.0119 5952 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\windows\system32\wecsvc.dll
10:22:00.0135 5952 Wecsvc - ok
10:22:00.0166 5952 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\windows\System32\wercplsupport.dll
10:22:00.0182 5952 wercplsupport - ok
10:22:00.0213 5952 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\windows\System32\WerSvc.dll
10:22:00.0228 5952 WerSvc - ok
10:22:00.0275 5952 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\windows\system32\DRIVERS\wfplwf.sys
10:22:00.0275 5952 WfpLwf - ok
10:22:00.0306 5952 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\windows\system32\drivers\wimmount.sys
10:22:00.0322 5952 WIMMount - ok
10:22:00.0384 5952 [ 082CF481F659FAE0DE51AD060881EB47 ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
10:22:00.0400 5952 WinDefend - ok
10:22:00.0431 5952 WinHttpAutoProxySvc - ok
10:22:00.0494 5952 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll
10:22:00.0494 5952 Winmgmt - ok
10:22:00.0572 5952 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\windows\system32\WsmSvc.dll
10:22:00.0603 5952 WinRM - ok
10:22:00.0712 5952 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\windows\system32\DRIVERS\WinUsb.sys
10:22:00.0712 5952 WinUsb - ok
10:22:00.0790 5952 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\windows\System32\wlansvc.dll
10:22:00.0837 5952 Wlansvc - ok
10:22:00.0993 5952 [ 6067ACEF367E79914AF628FA1E9B5330 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
10:22:01.0024 5952 wlcrasvc - ok
10:22:01.0196 5952 [ FB01D4AE207B9EFDBABFC55DC95C7E31 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
10:22:01.0227 5952 wlidsvc - ok
10:22:01.0258 5952 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\windows\system32\DRIVERS\wmiacpi.sys
10:22:01.0258 5952 WmiAcpi - ok
10:22:01.0305 5952 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe
10:22:01.0320 5952 wmiApSrv - ok
10:22:01.0414 5952 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
10:22:01.0445 5952 WMPNetworkSvc - ok
10:22:01.0492 5952 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\windows\System32\wpcsvc.dll
10:22:01.0523 5952 WPCSvc - ok
10:22:01.0539 5952 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\windows\system32\wpdbusenum.dll
10:22:01.0570 5952 WPDBusEnum - ok
10:22:01.0648 5952 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys
10:22:01.0648 5952 ws2ifsl - ok
10:22:01.0695 5952 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\windows\System32\wscsvc.dll
10:22:01.0726 5952 wscsvc - ok
10:22:01.0757 5952 WSearch - ok
10:22:01.0866 5952 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\windows\system32\wuaueng.dll
10:22:01.0913 5952 wuauserv - ok
10:22:01.0960 5952 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\windows\system32\drivers\WudfPf.sys
10:22:01.0960 5952 WudfPf - ok
10:22:01.0991 5952 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\windows\system32\DRIVERS\WUDFRd.sys
10:22:01.0991 5952 WUDFRd - ok
10:22:02.0054 5952 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\windows\System32\WUDFSvc.dll
10:22:02.0069 5952 wudfsvc - ok
10:22:02.0116 5952 [ 3C5E51C05BE9B56EAFF4E388C3AB25E4 ] WwanSvc C:\windows\System32\wwansvc.dll
10:22:02.0132 5952 WwanSvc - ok
10:22:02.0178 5952 ================ Scan global ===============================
10:22:02.0210 5952 [ DAB748AE0439955ED2FA22357533DDDB ] C:\windows\system32\basesrv.dll
10:22:02.0241 5952 [ 51BB04243DF6196C06E125898127E397 ] C:\windows\system32\winsrv.dll
10:22:02.0272 5952 [ 51BB04243DF6196C06E125898127E397 ] C:\windows\system32\winsrv.dll
10:22:02.0319 5952 [ 364455805E64882844EE9ACB72522830 ] C:\windows\system32\sxssrv.dll
10:22:02.0366 5952 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\windows\system32\services.exe
10:22:02.0381 5952 [Global] - ok
10:22:02.0381 5952 ================ Scan MBR ==================================
10:22:02.0397 5952 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
10:22:03.0723 5952 \Device\Harddisk0\DR0 - ok
10:22:03.0723 5952 ================ Scan VBR ==================================
10:22:03.0754 5952 [ C4261563CC553AC3C34F6528267C6C8E ] \Device\Harddisk0\DR0\Partition1
10:22:03.0770 5952 \Device\Harddisk0\DR0\Partition1 - ok
10:22:03.0785 5952 [ 5227DB24F17502F97DBE952E1B66BC39 ] \Device\Harddisk0\DR0\Partition2
10:22:03.0816 5952 \Device\Harddisk0\DR0\Partition2 - ok
10:22:03.0816 5952 ============================================================
10:22:03.0816 5952 Scan finished
10:22:03.0816 5952 ============================================================
10:22:03.0848 5196 Detected object count: 0
10:22:03.0848 5196 Actual detected object count: 0
10:21:50.0478 5952 NetMsmqActivator - ok
10:21:50.0494 5952 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:21:50.0494 5952 NetPipeActivator - ok
10:21:50.0541 5952 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\windows\System32\netprofm.dll
10:21:50.0556 5952 netprofm - ok
10:21:50.0588 5952 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:21:50.0588 5952 NetTcpActivator - ok
10:21:50.0603 5952 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:21:50.0619 5952 NetTcpPortSharing - ok
10:21:50.0650 5952 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\windows\system32\drivers\nfrd960.sys
10:21:50.0666 5952 nfrd960 - ok
10:21:50.0697 5952 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\windows\System32\nlasvc.dll
10:21:50.0712 5952 NlaSvc - ok
10:21:50.0759 5952 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\windows\system32\drivers\Npfs.sys
10:21:50.0759 5952 Npfs - ok
10:21:50.0806 5952 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\windows\system32\nsisvc.dll
10:21:50.0837 5952 nsi - ok
10:21:50.0868 5952 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys
10:21:50.0868 5952 nsiproxy - ok
10:21:50.0962 5952 [ 5E43D2B0EE64123D4880DFA6626DEFDE ] Ntfs C:\windows\system32\drivers\Ntfs.sys
10:21:50.0993 5952 Ntfs - ok
10:21:51.0024 5952 [ F9756A98D69098DCA8945D62858A812C ] Null C:\windows\system32\drivers\Null.sys
10:21:51.0040 5952 Null - ok
10:21:51.0071 5952 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\windows\system32\drivers\nvraid.sys
10:21:51.0071 5952 nvraid - ok
10:21:51.0087 5952 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\windows\system32\drivers\nvstor.sys
10:21:51.0102 5952 nvstor - ok
10:21:51.0118 5952 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\windows\system32\drivers\nv_agp.sys
10:21:51.0134 5952 nv_agp - ok
10:21:51.0258 5952 [ 893B16E57D4896DE0411F92FDE5FA82C ] OfficeSvc C:\Program Files\Microsoft Office 15\ClientX86\integratedoffice.exe
10:21:51.0290 5952 OfficeSvc - ok
10:21:51.0321 5952 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\windows\system32\drivers\ohci1394.sys
10:21:51.0336 5952 ohci1394 - ok
10:21:51.0414 5952 [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
10:21:51.0414 5952 ose - ok
10:21:51.0633 5952 [ EE5756BDA5BE5891270E0CC6CEC44096 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
10:21:51.0789 5952 osppsvc - ok
10:21:51.0836 5952 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\windows\system32\pnrpsvc.dll
10:21:51.0851 5952 p2pimsvc - ok
10:21:51.0898 5952 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\windows\system32\p2psvc.dll
10:21:51.0914 5952 p2psvc - ok
10:21:51.0945 5952 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\windows\system32\drivers\parport.sys
10:21:51.0960 5952 Parport - ok
10:21:51.0992 5952 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\windows\system32\drivers\partmgr.sys
10:21:51.0992 5952 partmgr - ok
10:21:52.0023 5952 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\windows\system32\drivers\parvdm.sys
10:21:52.0023 5952 Parvdm - ok
10:21:52.0070 5952 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\windows\System32\pcasvc.dll
10:21:52.0085 5952 PcaSvc - ok
10:21:52.0101 5952 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\windows\system32\drivers\pci.sys
10:21:52.0116 5952 pci - ok
10:21:52.0148 5952 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\windows\system32\drivers\pciide.sys
10:21:52.0148 5952 pciide - ok
10:21:52.0194 5952 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\windows\system32\drivers\pcmcia.sys
10:21:52.0194 5952 pcmcia - ok
10:21:52.0210 5952 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\windows\system32\drivers\pcw.sys
10:21:52.0226 5952 pcw - ok
10:21:52.0272 5952 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\windows\system32\drivers\peauth.sys
10:21:52.0288 5952 PEAUTH - ok
10:21:52.0413 5952 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\windows\system32\pla.dll
10:21:52.0475 5952 pla - ok
10:21:52.0538 5952 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\windows\system32\umpnpmgr.dll
10:21:52.0569 5952 PlugPlay - ok
10:21:52.0600 5952 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll
10:21:52.0616 5952 PNRPAutoReg - ok
10:21:52.0647 5952 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\windows\system32\pnrpsvc.dll
10:21:52.0662 5952 PNRPsvc - ok
10:21:52.0709 5952 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\windows\System32\ipsecsvc.dll
10:21:52.0725 5952 PolicyAgent - ok
10:21:52.0756 5952 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\windows\system32\umpo.dll
10:21:52.0772 5952 Power - ok
10:21:52.0818 5952 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys
10:21:52.0834 5952 PptpMiniport - ok
10:21:52.0850 5952 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\windows\system32\drivers\processr.sys
10:21:52.0850 5952 Processor - ok
10:21:52.0896 5952 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\windows\system32\profsvc.dll
10:21:52.0912 5952 ProfSvc - ok
10:21:52.0943 5952 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\windows\system32\lsass.exe
10:21:52.0959 5952 ProtectedStorage - ok
10:21:52.0990 5952 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\windows\system32\DRIVERS\pacer.sys
10:21:53.0006 5952 Psched - ok
10:21:53.0068 5952 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\windows\system32\drivers\ql2300.sys
10:21:53.0084 5952 ql2300 - ok
10:21:53.0099 5952 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\windows\system32\drivers\ql40xx.sys
10:21:53.0115 5952 ql40xx - ok
10:21:53.0146 5952 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\windows\system32\qwave.dll
10:21:53.0162 5952 QWAVE - ok
10:21:53.0193 5952 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys
10:21:53.0193 5952 QWAVEdrv - ok
10:21:53.0208 5952 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys
10:21:53.0224 5952 RasAcd - ok
10:21:53.0255 5952 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys
10:21:53.0255 5952 RasAgileVpn - ok
10:21:53.0286 5952 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\windows\System32\rasauto.dll
10:21:53.0302 5952 RasAuto - ok
10:21:53.0349 5952 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys
10:21:53.0364 5952 Rasl2tp - ok
10:21:53.0411 5952 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\windows\System32\rasmans.dll
10:21:53.0427 5952 RasMan - ok
10:21:53.0458 5952 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys
10:21:53.0474 5952 RasPppoe - ok
10:21:53.0489 5952 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys
10:21:53.0489 5952 RasSstp - ok
10:21:53.0520 5952 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\windows\system32\DRIVERS\rdbss.sys
10:21:53.0536 5952 rdbss - ok
10:21:53.0567 5952 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\windows\system32\drivers\rdpbus.sys
10:21:53.0583 5952 rdpbus - ok
10:21:53.0598 5952 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys
10:21:53.0614 5952 RDPCDD - ok
10:21:53.0645 5952 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys
10:21:53.0645 5952 RDPENCDD - ok
10:21:53.0676 5952 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys
10:21:53.0676 5952 RDPREFMP - ok
10:21:53.0754 5952 [ 65375DF758CA1872AB7EBBBA457FD5E6 ] RdpVideoMiniport C:\windows\system32\drivers\rdpvideominiport.sys
10:21:53.0770 5952 RdpVideoMiniport - ok
10:21:53.0801 5952 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\windows\system32\drivers\RDPWD.sys
10:21:53.0817 5952 RDPWD - ok
10:21:53.0864 5952 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\windows\system32\drivers\rdyboost.sys
10:21:53.0879 5952 rdyboost - ok
10:21:53.0926 5952 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\windows\System32\mprdim.dll
10:21:53.0942 5952 RemoteAccess - ok
10:21:53.0973 5952 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\windows\system32\regsvc.dll
10:21:53.0988 5952 RemoteRegistry - ok
10:21:54.0051 5952 [ CB928D9E6DAF51879DD6BA8D02F01321 ] RFCOMM C:\windows\system32\DRIVERS\rfcomm.sys
10:21:54.0051 5952 RFCOMM - ok
10:21:54.0098 5952 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\windows\System32\RpcEpMap.dll
10:21:54.0113 5952 RpcEptMapper - ok
10:21:54.0160 5952 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\windows\system32\locator.exe
10:21:54.0176 5952 RpcLocator - ok
10:21:54.0207 5952 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\windows\system32\rpcss.dll
10:21:54.0222 5952 RpcSs - ok
10:21:54.0269 5952 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\windows\system32\DRIVERS\rspndr.sys
10:21:54.0269 5952 rspndr - ok
10:21:54.0300 5952 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\windows\system32\lsass.exe
10:21:54.0300 5952 SamSs - ok
10:21:54.0347 5952 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\windows\system32\drivers\sbp2port.sys
10:21:54.0347 5952 sbp2port - ok
10:21:54.0394 5952 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\windows\System32\SCardSvr.dll
10:21:54.0410 5952 SCardSvr - ok
10:21:54.0441 5952 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\windows\system32\DRIVERS\scfilter.sys
10:21:54.0456 5952 scfilter - ok
10:21:54.0519 5952 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\windows\system32\schedsvc.dll
10:21:54.0550 5952 Schedule - ok
10:21:54.0566 5952 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\windows\System32\certprop.dll
10:21:54.0566 5952 SCPolicySvc - ok
10:21:54.0612 5952 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\windows\System32\SDRSVC.dll
10:21:54.0628 5952 SDRSVC - ok
10:21:54.0659 5952 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\windows\system32\drivers\secdrv.sys
10:21:54.0675 5952 secdrv - ok
10:21:54.0706 5952 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\windows\system32\seclogon.dll
10:21:54.0722 5952 seclogon - ok
10:21:54.0753 5952 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\windows\System32\sens.dll
10:21:54.0768 5952 SENS - ok
10:21:54.0784 5952 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\windows\system32\drivers\serenum.sys
10:21:54.0800 5952 Serenum - ok
10:21:54.0831 5952 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\windows\system32\drivers\serial.sys
10:21:54.0831 5952 Serial - ok
10:21:54.0862 5952 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\windows\system32\drivers\sermouse.sys
10:21:54.0862 5952 sermouse - ok
10:21:54.0924 5952 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\windows\system32\sessenv.dll
10:21:54.0940 5952 SessionEnv - ok
10:21:54.0971 5952 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\windows\system32\drivers\sffdisk.sys
10:21:54.0971 5952 sffdisk - ok
10:21:54.0987 5952 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\windows\system32\drivers\sffp_mmc.sys
10:21:54.0987 5952 sffp_mmc - ok
10:21:55.0018 5952 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\windows\system32\drivers\sffp_sd.sys
10:21:55.0018 5952 sffp_sd - ok
10:21:55.0049 5952 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\windows\system32\drivers\sfloppy.sys
10:21:55.0049 5952 sfloppy - ok
10:21:55.0096 5952 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\windows\System32\ipnathlp.dll
10:21:55.0112 5952 SharedAccess - ok
10:21:55.0143 5952 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\windows\System32\shsvcs.dll
10:21:55.0158 5952 ShellHWDetection - ok
10:21:55.0190 5952 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\windows\system32\drivers\sisagp.sys
10:21:55.0205 5952 sisagp - ok
10:21:55.0236 5952 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\windows\system32\drivers\SiSRaid2.sys
10:21:55.0252 5952 SiSRaid2 - ok
10:21:55.0283 5952 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\windows\system32\drivers\sisraid4.sys
10:21:55.0299 5952 SiSRaid4 - ok
10:21:55.0361 5952 [ 4E8A4BB5B11D828FF986F6228B1CD3DF ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
10:21:55.0377 5952 SkypeUpdate - ok
10:21:55.0455 5952 [ BF302072DC8374CF4E118FD88AA817A2 ] SmartDefragDriver C:\windows\system32\Drivers\SmartDefragDriver.sys
10:21:55.0470 5952 SmartDefragDriver - ok
10:21:55.0517 5952 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\windows\system32\DRIVERS\smb.sys
10:21:55.0517 5952 Smb - ok
10:21:55.0611 5952 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\windows\System32\snmptrap.exe
10:21:55.0626 5952 SNMPTRAP - ok
10:21:55.0658 5952 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\windows\system32\drivers\spldr.sys
10:21:55.0673 5952 spldr - ok
10:21:55.0720 5952 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\windows\System32\spoolsv.exe
10:21:55.0751 5952 Spooler - ok
10:21:55.0876 5952 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\windows\system32\sppsvc.exe
10:21:55.0970 5952 sppsvc - ok
10:21:56.0001 5952 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\windows\system32\sppuinotify.dll
10:21:56.0016 5952 sppuinotify - ok
10:21:56.0048 5952 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\windows\system32\DRIVERS\srv.sys
10:21:56.0063 5952 srv - ok
10:21:56.0094 5952 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\windows\system32\DRIVERS\srv2.sys
10:21:56.0094 5952 srv2 - ok
10:21:56.0126 5952 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\windows\system32\DRIVERS\srvnet.sys
10:21:56.0126 5952 srvnet - ok
10:21:56.0157 5952 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\windows\System32\ssdpsrv.dll
10:21:56.0172 5952 SSDPSRV - ok
10:21:56.0204 5952 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\windows\system32\sstpsvc.dll
10:21:56.0219 5952 SstpSvc - ok
10:21:56.0250 5952 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\windows\system32\drivers\stexstor.sys
10:21:56.0266 5952 stexstor - ok
10:21:56.0313 5952 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\windows\System32\wiaservc.dll
10:21:56.0344 5952 StiSvc - ok
10:21:56.0375 5952 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\windows\system32\DRIVERS\swenum.sys
10:21:56.0375 5952 swenum - ok
10:21:56.0406 5952 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\windows\System32\swprv.dll
10:21:56.0438 5952 swprv - ok
10:21:56.0484 5952 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\windows\system32\sysmain.dll
10:21:56.0516 5952 SysMain - ok
10:21:56.0547 5952 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\windows\System32\TabSvc.dll
10:21:56.0562 5952 TabletInputService - ok
10:21:56.0578 5952 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\windows\System32\tapisrv.dll
10:21:56.0609 5952 TapiSrv - ok
10:21:56.0625 5952 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\windows\System32\tbssvc.dll
10:21:56.0640 5952 TBS - ok
10:21:56.0718 5952 [ CA59F7C570AF70BC174F477CFE2D9EE3 ] Tcpip C:\windows\system32\drivers\tcpip.sys
10:21:56.0750 5952 Tcpip - ok
10:21:56.0828 5952 [ CA59F7C570AF70BC174F477CFE2D9EE3 ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys
10:21:56.0859 5952 TCPIP6 - ok
10:21:56.0890 5952 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys
10:21:56.0890 5952 tcpipreg - ok
10:21:56.0937 5952 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\windows\system32\drivers\tdpipe.sys
10:21:56.0937 5952 TDPIPE - ok
10:21:56.0984 5952 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\windows\system32\drivers\tdtcp.sys
10:21:56.0999 5952 TDTCP - ok
10:21:57.0015 5952 [ B459575348C20E8121D6039DA063C704 ] tdx C:\windows\system32\DRIVERS\tdx.sys
10:21:57.0030 5952 tdx - ok
10:21:57.0062 5952 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\windows\system32\DRIVERS\termdd.sys
10:21:57.0062 5952 TermDD - ok
10:21:57.0108 5952 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\windows\System32\termsrv.dll
10:21:57.0140 5952 TermService - ok
10:21:57.0171 5952 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\windows\system32\themeservice.dll
10:21:57.0186 5952 Themes - ok
10:21:57.0202 5952 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\windows\system32\mmcss.dll
10:21:57.0218 5952 THREADORDER - ok
10:21:57.0296 5952 [ E5EFD1068D24F9F052A027CAFED3AA5A ] TiMiniService C:\Program Files\Trend Micro\Titanium\TiMiniService.exe
10:21:57.0296 5952 TiMiniService - ok
10:21:57.0358 5952 [ DE87A23D2DDC7378D1C7AB681E20DE47 ] tmactmon C:\windows\system32\DRIVERS\tmactmon.sys
10:21:57.0358 5952 tmactmon - ok
10:21:57.0389 5952 [ 540C2B5DC47651C572C2804DC72FDDA8 ] tmcomm C:\windows\system32\DRIVERS\tmcomm.sys
10:21:57.0405 5952 tmcomm - ok
10:21:57.0436 5952 [ 2DE1FA64EBAFF376F2C038F64492F62C ] tmevtmgr C:\windows\system32\DRIVERS\tmevtmgr.sys
10:21:57.0436 5952 tmevtmgr - ok
10:21:57.0483 5952 [ 5A61679B2277B9AD550E30479A69503B ] tmtdi C:\windows\system32\DRIVERS\tmtdi.sys
10:21:57.0483 5952 tmtdi - ok
10:21:57.0545 5952 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\windows\System32\trkwks.dll
10:21:57.0561 5952 TrkWks - ok
10:21:57.0639 5952 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
10:21:57.0639 5952 TrustedInstaller - ok
10:21:57.0686 5952 [ B37B08F2E5EEB1A37E448E09BACE1101 ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys
10:21:57.0701 5952 tssecsrv - ok
10:21:57.0748 5952 [ 9CE253214ACAA5A7D323327D2055EFAA ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys
10:21:57.0748 5952 TsUsbFlt - ok
10:21:57.0795 5952 [ 57C527AF84748B5C2F5178C499C0B81F ] TsUsbGD C:\windows\system32\drivers\TsUsbGD.sys
10:21:57.0810 5952 TsUsbGD - ok
10:21:57.0857 5952 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\windows\system32\DRIVERS\tunnel.sys
10:21:57.0873 5952 tunnel - ok
10:21:57.0904 5952 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\windows\system32\drivers\uagp35.sys
10:21:57.0904 5952 uagp35 - ok
10:21:57.0935 5952 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\windows\system32\DRIVERS\udfs.sys
10:21:57.0951 5952 udfs - ok
10:21:57.0998 5952 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\windows\system32\UI0Detect.exe
10:21:58.0029 5952 UI0Detect - ok
10:21:58.0060 5952 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys
10:21:58.0076 5952 uliagpkx - ok
10:21:58.0122 5952 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\windows\system32\DRIVERS\umbus.sys
10:21:58.0122 5952 umbus - ok
10:21:58.0154 5952 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\windows\system32\drivers\umpass.sys
10:21:58.0154 5952 UmPass - ok
10:21:58.0185 5952 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\windows\System32\upnphost.dll
10:21:58.0216 5952 upnphost - ok
10:21:58.0247 5952 [ 71D97F1A3CC47A56728F7A400A3F8295 ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys
10:21:58.0247 5952 usbccgp - ok
10:21:58.0278 5952 [ 2352AB5F9F8F097BF9D41D5A4718A041 ] usbcir C:\windows\system32\drivers\usbcir.sys
10:21:58.0294 5952 usbcir - ok
10:21:58.0310 5952 [ C4FB8E7ADEA9B5CEEA885A1B504B7E40 ] usbehci C:\windows\system32\drivers\usbehci.sys
10:21:58.0310 5952 usbehci - ok
10:21:58.0372 5952 [ 86AA95ACB611001E26CD2C0145F2225A ] usbhub C:\windows\system32\DRIVERS\usbhub.sys
10:21:58.0372 5952 usbhub - ok
10:21:58.0388 5952 [ DCDF9855145A14DFCA0AB32308871961 ] usbohci C:\windows\system32\drivers\usbohci.sys
10:21:58.0403 5952 usbohci - ok
10:21:58.0434 5952 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\windows\system32\drivers\usbprint.sys
10:21:58.0434 5952 usbprint - ok
10:21:58.0466 5952 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\windows\system32\DRIVERS\USBSTOR.SYS
10:21:58.0481 5952 USBSTOR - ok
10:21:58.0512 5952 [ 8E51D04175BAA14C4F79AA5F6D248770 ] usbuhci C:\windows\system32\drivers\usbuhci.sys
10:21:58.0512 5952 usbuhci - ok
10:21:58.0544 5952 [ DE014425522610BEDCA3821BB8C0F1D5 ] usbvideo C:\windows\System32\Drivers\usbvideo.sys
10:21:58.0559 5952 usbvideo - ok
10:21:58.0590 5952 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\windows\System32\uxsms.dll
10:21:58.0606 5952 UxSms - ok
10:21:58.0622 5952 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\windows\system32\lsass.exe
10:21:58.0637 5952 VaultSvc - ok
10:21:58.0684 5952 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys
10:21:58.0684 5952 vdrvroot - ok
10:21:58.0731 5952 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\windows\System32\vds.exe
10:21:58.0762 5952 vds - ok
10:21:58.0793 5952 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\windows\system32\DRIVERS\vgapnp.sys
10:21:58.0793 5952 vga - ok
10:21:58.0809 5952 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\windows\System32\drivers\vga.sys
10:21:58.0824 5952 VgaSave - ok
10:21:58.0856 5952 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\windows\system32\drivers\vhdmp.sys
10:21:58.0856 5952 vhdmp - ok
10:21:58.0902 5952 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\windows\system32\drivers\viaagp.sys
10:21:58.0902 5952 viaagp - ok
10:21:58.0934 5952 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\windows\system32\drivers\viac7.sys
10:21:58.0949 5952 ViaC7 - ok
10:21:58.0980 5952 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\windows\system32\drivers\viaide.sys
10:21:58.0996 5952 viaide - ok
10:21:59.0058 5952 [ C37CE43FB54066FFB540729C6E6E194E ] VideAceWindowsService C:\ExpressGateUtil\VAWinService.exe
10:21:59.0074 5952 VideAceWindowsService - ok
10:21:59.0121 5952 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\windows\system32\drivers\volmgr.sys
10:21:59.0136 5952 volmgr - ok
10:21:59.0152 5952 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\windows\system32\drivers\volmgrx.sys
10:21:59.0168 5952 volmgrx - ok
10:21:59.0199 5952 [ C37AEE5966EB5929E2051AC7409B5730 ] volsnap C:\windows\system32\drivers\volsnap.sys
10:21:59.0199 5952 volsnap - ok
10:21:59.0261 5952 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\windows\system32\drivers\vsmraid.sys
10:21:59.0261 5952 vsmraid - ok
10:21:59.0339 5952 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\windows\system32\vssvc.exe
10:21:59.0370 5952 VSS - ok
10:21:59.0402 5952 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\windows\system32\DRIVERS\vwifibus.sys
10:21:59.0417 5952 vwifibus - ok
10:21:59.0448 5952 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\windows\system32\DRIVERS\vwififlt.sys
10:21:59.0448 5952 vwififlt - ok
10:21:59.0480 5952 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\windows\system32\w32time.dll
10:21:59.0495 5952 W32Time - ok
10:21:59.0542 5952 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\windows\system32\drivers\wacompen.sys
10:21:59.0558 5952 WacomPen - ok
10:21:59.0604 5952 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\windows\system32\DRIVERS\wanarp.sys
10:21:59.0604 5952 WANARP - ok
10:21:59.0620 5952 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys
10:21:59.0636 5952 Wanarpv6 - ok
10:21:59.0682 5952 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\windows\system32\wbengine.exe
10:21:59.0714 5952 wbengine - ok
10:21:59.0729 5952 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\windows\System32\wbiosrvc.dll
10:21:59.0760 5952 WbioSrvc - ok
10:21:59.0776 5952 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\windows\System32\wcncsvc.dll
10:21:59.0807 5952 wcncsvc - ok
10:21:59.0823 5952 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
10:21:59.0838 5952 WcsPlugInService - ok
10:21:59.0870 5952 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\windows\system32\drivers\wd.sys
10:21:59.0870 5952 Wd - ok
10:21:59.0901 5952 [ 25944D2CC49E0A6C581D02A74B7D6645 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys
10:21:59.0916 5952 Wdf01000 - ok
10:21:59.0932 5952 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\windows\system32\wdi.dll
10:21:59.0963 5952 WdiServiceHost - ok
10:21:59.0963 5952 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\windows\system32\wdi.dll
10:21:59.0979 5952 WdiSystemHost - ok
10:22:00.0041 5952 [ 75E8EBD7040CE238684333F97014762A ] WebClient C:\windows\System32\webclnt.dll
10:22:00.0057 5952 WebClient - ok
10:22:00.0119 5952 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\windows\system32\wecsvc.dll
10:22:00.0135 5952 Wecsvc - ok
10:22:00.0166 5952 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\windows\System32\wercplsupport.dll
10:22:00.0182 5952 wercplsupport - ok
10:22:00.0213 5952 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\windows\System32\WerSvc.dll
10:22:00.0228 5952 WerSvc - ok
10:22:00.0275 5952 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\windows\system32\DRIVERS\wfplwf.sys
10:22:00.0275 5952 WfpLwf - ok
10:22:00.0306 5952 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\windows\system32\drivers\wimmount.sys
10:22:00.0322 5952 WIMMount - ok
10:22:00.0384 5952 [ 082CF481F659FAE0DE51AD060881EB47 ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
10:22:00.0400 5952 WinDefend - ok
10:22:00.0431 5952 WinHttpAutoProxySvc - ok
10:22:00.0494 5952 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll
10:22:00.0494 5952 Winmgmt - ok
10:22:00.0572 5952 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\windows\system32\WsmSvc.dll
10:22:00.0603 5952 WinRM - ok
10:22:00.0712 5952 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\windows\system32\DRIVERS\WinUsb.sys
10:22:00.0712 5952 WinUsb - ok
10:22:00.0790 5952 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\windows\System32\wlansvc.dll
10:22:00.0837 5952 Wlansvc - ok
10:22:00.0993 5952 [ 6067ACEF367E79914AF628FA1E9B5330 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
10:22:01.0024 5952 wlcrasvc - ok
10:22:01.0196 5952 [ FB01D4AE207B9EFDBABFC55DC95C7E31 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
10:22:01.0227 5952 wlidsvc - ok
10:22:01.0258 5952 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\windows\system32\DRIVERS\wmiacpi.sys
10:22:01.0258 5952 WmiAcpi - ok
10:22:01.0305 5952 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe
10:22:01.0320 5952 wmiApSrv - ok
10:22:01.0414 5952 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
10:22:01.0445 5952 WMPNetworkSvc - ok
10:22:01.0492 5952 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\windows\System32\wpcsvc.dll
10:22:01.0523 5952 WPCSvc - ok
10:22:01.0539 5952 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\windows\system32\wpdbusenum.dll
10:22:01.0570 5952 WPDBusEnum - ok
10:22:01.0648 5952 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys
10:22:01.0648 5952 ws2ifsl - ok
10:22:01.0695 5952 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\windows\System32\wscsvc.dll
10:22:01.0726 5952 wscsvc - ok
10:22:01.0757 5952 WSearch - ok
10:22:01.0866 5952 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\windows\system32\wuaueng.dll
10:22:01.0913 5952 wuauserv - ok
10:22:01.0960 5952 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\windows\system32\drivers\WudfPf.sys
10:22:01.0960 5952 WudfPf - ok
10:22:01.0991 5952 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\windows\system32\DRIVERS\WUDFRd.sys
10:22:01.0991 5952 WUDFRd - ok
10:22:02.0054 5952 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\windows\System32\WUDFSvc.dll
10:22:02.0069 5952 wudfsvc - ok
10:22:02.0116 5952 [ 3C5E51C05BE9B56EAFF4E388C3AB25E4 ] WwanSvc C:\windows\System32\wwansvc.dll
10:22:02.0132 5952 WwanSvc - ok
10:22:02.0178 5952 ================ Scan global ===============================
10:22:02.0210 5952 [ DAB748AE0439955ED2FA22357533DDDB ] C:\windows\system32\basesrv.dll
10:22:02.0241 5952 [ 51BB04243DF6196C06E125898127E397 ] C:\windows\system32\winsrv.dll
10:22:02.0272 5952 [ 51BB04243DF6196C06E125898127E397 ] C:\windows\system32\winsrv.dll
10:22:02.0319 5952 [ 364455805E64882844EE9ACB72522830 ] C:\windows\system32\sxssrv.dll
10:22:02.0366 5952 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\windows\system32\services.exe
10:22:02.0381 5952 [Global] - ok
10:22:02.0381 5952 ================ Scan MBR ==================================
10:22:02.0397 5952 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
10:22:03.0723 5952 \Device\Harddisk0\DR0 - ok
10:22:03.0723 5952 ================ Scan VBR ==================================
10:22:03.0754 5952 [ C4261563CC553AC3C34F6528267C6C8E ] \Device\Harddisk0\DR0\Partition1
10:22:03.0770 5952 \Device\Harddisk0\DR0\Partition1 - ok
10:22:03.0785 5952 [ 5227DB24F17502F97DBE952E1B66BC39 ] \Device\Harddisk0\DR0\Partition2
10:22:03.0816 5952 \Device\Harddisk0\DR0\Partition2 - ok
10:22:03.0816 5952 ============================================================
10:22:03.0816 5952 Scan finished
10:22:03.0816 5952 ============================================================
10:22:03.0848 5196 Detected object count: 0
10:22:03.0848 5196 Actual detected object count: 0
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 6 hostů