Prosím o kontrolu logu - pomalý ntb Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Babis
Level 4.5
Level 4.5
Příspěvky: 1885
Registrován: prosinec 12
Pohlaví: Muž
Stav:
Offline

Prosím o kontrolu logu - pomalý ntb

Příspěvekod Babis » 24 říj 2013 15:29

Ahoj, prosím o kontrolu logu tátovýho notebooku. Prej je poslední dobou pomalejší a i internet hodně dlouho nabíhá. Díky :smile:

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:26:57, on 24.10.2013
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe
C:\Program Files\PowerISO\PWRISOVM.EXE
C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe
C:\Program Files\COMODO\COMODO Internet Security\cis.exe
C:\Program Files\IObit\Advanced SystemCare 6\ASC.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~1\IObit\ADVANC~2\BROWER~1\ASCPLU~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [IJNetworkScanUtility] C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE -startup
O4 - HKLM\..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
O4 - HKLM\..\Run: [HTC Sync Loader] "C:\Program Files\HTC\HTC Sync 3.0\htcUPCTLoader.exe" -startup
O4 - HKCU\..\Run: [Advanced SystemCare 6] "C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe" /AutoStart
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: McAfee Application Installer Cleanup (0210061369676595) (0210061369676595mcinstcleanup) - - (no file)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Advanced SystemCare Service 6 (AdvancedSystemCareService6) - IObit - C:\Program Files\IObit\Advanced SystemCare 6\ASCService.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HTCMonitorService - Nero AG - C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

--
End of file - 7003 bytes

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43339
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý ntb

Příspěvekod jaro3 » 25 říj 2013 09:57

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.


Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni AdwCleaner

Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.

Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Babis
Level 4.5
Level 4.5
Příspěvky: 1885
Registrován: prosinec 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý ntb

Příspěvekod Babis » 25 říj 2013 12:36

ATF hotovo, TFC taky
tady je adwcleaner

# AdwCleaner v3.010 - Report created 25/10/2013 at 12:32:04
# Updated 20/10/2013 by Xplode
# Operating System : Windows 7 Professional (32 bits)
# Username : Míra - MÍRA-PC
# Running from : C:\Users\Míra\Downloads\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Users\Míra\AppData\Roaming\Mozilla\Firefox\Profiles\rnq3ev8b.default\searchplugins\Askcom.xml
File Found : C:\Users\Míra\AppData\Roaming\Mozilla\Firefox\Profiles\rnq3ev8b.default\searchplugins\daemon-search.xml
File Found : C:\Users\Míra\AppData\Roaming\Mozilla\Firefox\Profiles\rnq3ev8b.default\searchplugins\icqplugin.xml
File Found : C:\Users\Míra\AppData\Roaming\Mozilla\Firefox\Profiles\rnq3ev8b.default\user.js
Folder Found C:\Program Files\DAEMON Tools Toolbar
Folder Found C:\ProgramData\Ask
Folder Found C:\ProgramData\ICQ\ICQToolbar
Folder Found C:\ProgramData\Systweak
Folder Found C:\ProgramData\Trymedia
Folder Found C:\Users\Míra\AppData\Local\eSupport.com
Folder Found C:\Users\Míra\AppData\Local\GamePlayLabs Plugin
Folder Found C:\Users\Míra\AppData\LocalLow\AskToolbar
Folder Found C:\Users\Míra\AppData\LocalLow\boost_interprocess
Folder Found C:\Users\Míra\AppData\Roaming\Mozilla\Firefox\Profiles\rnq3ev8b.default\ICQToolbarData
Folder Found C:\Users\Míra\AppData\Roaming\Systweak

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\APN
Key Found : HKCU\Software\GamePlayLabs
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4FC7-90CC-5EA0ABBE9EB8}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKCU\Software\YahooPartnerToolbar
Key Found : HKLM\Software\APN
Key Found : HKLM\Software\AskToolbar
Key Found : HKLM\SOFTWARE\Classes\AppID\{65C994A2-C65A-4A20-BA92-AADAFC0DCE49}
Key Found : HKLM\SOFTWARE\Classes\AppID\BHO.DLL
Key Found : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
Key Found : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\ocphobfcfafpclibolpjdafgaffkaoci
Key Found : HKLM\Software\ICQ\ICQToolbar
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_call-of-duty-patch_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_call-of-duty-patch_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Value Found : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.7600.16385

Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search] - hxxp://search.icq.com/search/results.ph ... =skins7&q={searchTerms}

-\\ Mozilla Firefox v3.6.8 (cs)

[ File : C:\Users\Míra\AppData\Roaming\Mozilla\Firefox\Profiles\rnq3ev8b.default\prefs.js ]

Line Found : user_pref("browser.search.order.1", "Ask.com");
Line Found : user_pref("browser.startup.homepage", "hxxp://eu.ask.com/?l=dis&o=14672");
Line Found : user_pref("extensions.plugin2@gameplaylabs.com.fr", "1301425498");
Line Found : user_pref("extensions.plugin2@gameplaylabs.com.ranonce", true);
Line Found : user_pref("extensions.plugin2@gameplaylabs.com.rule_/", "1301425498");
Line Found : user_pref("extensions.plugin2@gameplaylabs.com.rule_dealsplugin.com/", "1301425498");
Line Found : user_pref("extensions.plugin2@gameplaylabs.com.rule_facebook.com", "1301425498");
Line Found : user_pref("extensions.plugin2@gameplaylabs.com.rule_h", "1301425498");
Line Found : user_pref("extensions.plugin2@gameplaylabs.com.rule_hxxp", "1301425498");
Line Found : user_pref("extensions.plugin2@gameplaylabs.com.rule_iqquizgame.com/", "1301425498");
Line Found : user_pref("extensions.plugin2@gameplaylabs.com.rule_play-ga.me/", "1301425498");
Line Found : user_pref("extensions.plugin2@gameplaylabs.com.rule_revealmycrush.com/", "1301425498");
Line Found : user_pref("extensions.plugin2@gameplaylabs.com.rule_unlock-this.com/browserplugin", "1301425498");
Line Found : user_pref("extensions.plugin2@gameplaylabs.com.rule_unlock-this.com/plugin", "1301425498");
Line Found : user_pref("icqtoolbar.allowSendURL", false);
Line Found : user_pref("icqtoolbar.engineVerified", true);
Line Found : user_pref("icqtoolbar.hiddenElements", "itb_options");
Line Found : user_pref("icqtoolbar.history", "foreca||profesn%C3%AD%20%C5%BEivotopis||term%C3%ADn%20p%C5%99ihl%C3%A1%C5%A1ek%20na%20V%C5%A0||%20%20%20%20Monarc||ob%C3%BDvac%C3%AD%20st%C4%9Bna%20trend||caorle%20las[...]
Line Found : user_pref("icqtoolbar.installTime", "1281955618");
Line Found : user_pref("icqtoolbar.itbsitescount", 0);
Line Found : user_pref("icqtoolbar.newtab_state", "1");
Line Found : user_pref("icqtoolbar.numberOfSearches", 0);
Line Found : user_pref("icqtoolbar.previousFFVersion", "3.6.8");
Line Found : user_pref("icqtoolbar.skip_default_search", "no");
Line Found : user_pref("icqtoolbar.suggestions", false);
Line Found : user_pref("icqtoolbar.uninstStatSent", true);
Line Found : user_pref("icqtoolbar.uniqueID", "128180031412817999551281955618550");
Line Found : user_pref("icqtoolbar.usageStatstTimestamp", 1334505834);
Line Found : user_pref("icqtoolbar.xmlEnableSuggestions", false);
Line Found : user_pref("icqtoolbar.xmlLanguage", "cs");
Line Found : user_pref("keyword.URL", "hxxp://search.icq.com/search/afe_results.php?ch_id=skins7&tb_ver=2.0.0.2&q=");
Line Found : user_pref("browser.search.defaultengine", "Ask.com");
Line Found : user_pref("browser.search.defaultenginename", "Ask.com");

-\\ Google Chrome v30.0.1599.101

[ File : C:\Users\Míra\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [10672 octets] - [25/10/2013 12:32:04]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [10733 octets] ##########

Uživatelský avatar
Babis
Level 4.5
Level 4.5
Příspěvky: 1885
Registrován: prosinec 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý ntb

Příspěvekod Babis » 25 říj 2013 12:54

a tady je mbam

Malwarebytes Anti-Malware (PRO) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.10.25.03

Windows 7 x86 NTFS
Internet Explorer 8.0.7600.16385
Míra :: MÍRA-PC [administrátor]

Ochrana: Zakázána

25.10.2013 12:41:25
MBAM-log-2013-10-25 (12-53-19).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 195221
Uplynulý čas: 11 minut, 29 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 2
C:\Users\Míra\AppData\Roaming\PowerISO\Upgrade\PowerISO5.exe (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\Míra\Downloads\SoftonicDownloader_for_call-of-duty-patch.exe (PUP.Optional.Softonic) -> Nebyla provedena žádná instrukce.

(konec)

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43339
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý ntb

Příspěvekod jaro3 » 26 říj 2013 11:04

. Takže spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
Klikni na „ Vymazat-Clean
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

Stáhni si Junkware Removal Tool

na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Babis
Level 4.5
Level 4.5
Příspěvky: 1885
Registrován: prosinec 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý ntb

Příspěvekod Babis » 26 říj 2013 17:50

# AdwCleaner v3.010 - Report created 26/10/2013 at 17:46:15
# Updated 20/10/2013 by Xplode
# Operating System : Windows 7 Professional (32 bits)
# Username : Míra - MÍRA-PC
# Running from : C:\Users\Míra\Downloads\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Ask
Folder Deleted : C:\ProgramData\ICQ\ICQToolbar
Folder Deleted : C:\ProgramData\Systweak
Folder Deleted : C:\ProgramData\Trymedia
Folder Deleted : C:\Program Files\DAEMON Tools Toolbar
Folder Deleted : C:\Users\Míra\AppData\Local\eSupport.com
Folder Deleted : C:\Users\Míra\AppData\Local\GamePlayLabs Plugin
Folder Deleted : C:\Users\Míra\AppData\LocalLow\AskToolbar
Folder Deleted : C:\Users\Míra\AppData\LocalLow\boost_interprocess
Folder Deleted : C:\Users\Míra\AppData\Roaming\Systweak
Folder Deleted : C:\Users\Míra\AppData\Roaming\Mozilla\Firefox\Profiles\rnq3ev8b.default\ICQToolbarData
File Deleted : C:\Users\Míra\AppData\Roaming\Mozilla\Firefox\Profiles\rnq3ev8b.default\searchplugins\Askcom.xml
File Deleted : C:\Users\Míra\AppData\Roaming\Mozilla\Firefox\Profiles\rnq3ev8b.default\searchplugins\daemon-search.xml
File Deleted : C:\Users\Míra\AppData\Roaming\Mozilla\Firefox\Profiles\rnq3ev8b.default\searchplugins\icqplugin.xml
File Deleted : C:\Users\Míra\AppData\Roaming\Mozilla\Firefox\Profiles\rnq3ev8b.default\user.js

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ocphobfcfafpclibolpjdafgaffkaoci
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\BHO.DLL
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_call-of-duty-patch_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_call-of-duty-patch_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{65C994A2-C65A-4A20-BA92-AADAFC0DCE49}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4FC7-90CC-5EA0ABBE9EB8}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Key Deleted : HKCU\Software\APN
Key Deleted : HKCU\Software\GamePlayLabs
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKLM\Software\APN
Key Deleted : HKLM\Software\AskToolbar
Key Deleted : HKLM\Software\ICQ\ICQToolbar
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.7600.16385

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]

-\\ Mozilla Firefox v3.6.8 (cs)

[ File : C:\Users\Míra\AppData\Roaming\Mozilla\Firefox\Profiles\rnq3ev8b.default\prefs.js ]

Line Deleted : user_pref("browser.search.order.1", "Ask.com");
Line Deleted : user_pref("browser.startup.homepage", "hxxp://eu.ask.com/?l=dis&o=14672");
Line Deleted : user_pref("extensions.plugin2@gameplaylabs.com.fr", "1301425498");
Line Deleted : user_pref("extensions.plugin2@gameplaylabs.com.ranonce", true);
Line Deleted : user_pref("extensions.plugin2@gameplaylabs.com.rule_/", "1301425498");
Line Deleted : user_pref("extensions.plugin2@gameplaylabs.com.rule_dealsplugin.com/", "1301425498");
Line Deleted : user_pref("extensions.plugin2@gameplaylabs.com.rule_facebook.com", "1301425498");
Line Deleted : user_pref("extensions.plugin2@gameplaylabs.com.rule_h", "1301425498");
Line Deleted : user_pref("extensions.plugin2@gameplaylabs.com.rule_hxxp", "1301425498");
Line Deleted : user_pref("extensions.plugin2@gameplaylabs.com.rule_iqquizgame.com/", "1301425498");
Line Deleted : user_pref("extensions.plugin2@gameplaylabs.com.rule_play-ga.me/", "1301425498");
Line Deleted : user_pref("extensions.plugin2@gameplaylabs.com.rule_revealmycrush.com/", "1301425498");
Line Deleted : user_pref("extensions.plugin2@gameplaylabs.com.rule_unlock-this.com/browserplugin", "1301425498");
Line Deleted : user_pref("extensions.plugin2@gameplaylabs.com.rule_unlock-this.com/plugin", "1301425498");
Line Deleted : user_pref("icqtoolbar.allowSendURL", false);
Line Deleted : user_pref("icqtoolbar.engineVerified", true);
Line Deleted : user_pref("icqtoolbar.hiddenElements", "itb_options");
Line Deleted : user_pref("icqtoolbar.history", "foreca||profesn%C3%AD%20%C5%BEivotopis||term%C3%ADn%20p%C5%99ihl%C3%A1%C5%A1ek%20na%20V%C5%A0||%20%20%20%20Monarc||ob%C3%BDvac%C3%AD%20st%C4%9Bna%20trend||caorle%20las[...]
Line Deleted : user_pref("icqtoolbar.installTime", "1281955618");
Line Deleted : user_pref("icqtoolbar.itbsitescount", 0);
Line Deleted : user_pref("icqtoolbar.newtab_state", "1");
Line Deleted : user_pref("icqtoolbar.numberOfSearches", 0);
Line Deleted : user_pref("icqtoolbar.previousFFVersion", "3.6.8");
Line Deleted : user_pref("icqtoolbar.skip_default_search", "no");
Line Deleted : user_pref("icqtoolbar.suggestions", false);
Line Deleted : user_pref("icqtoolbar.uninstStatSent", true);
Line Deleted : user_pref("icqtoolbar.uniqueID", "128180031412817999551281955618550");
Line Deleted : user_pref("icqtoolbar.usageStatstTimestamp", 1334505834);
Line Deleted : user_pref("icqtoolbar.xmlEnableSuggestions", false);
Line Deleted : user_pref("icqtoolbar.xmlLanguage", "cs");
Line Deleted : user_pref("keyword.URL", "hxxp://search.icq.com/search/afe_results.php?ch_id=skins7&tb_ver=2.0.0.2&q=");
Line Deleted : user_pref("browser.search.defaultengine", "Ask.com");
Line Deleted : user_pref("browser.search.defaultenginename", "Ask.com");

-\\ Google Chrome v30.0.1599.101

[ File : C:\Users\Míra\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [10814 octets] - [25/10/2013 12:32:04]
AdwCleaner[R1].txt - [10875 octets] - [26/10/2013 17:44:48]
AdwCleaner[S0].txt - [10968 octets] - [26/10/2013 17:46:15]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [11029 octets] ##########

Uživatelský avatar
Babis
Level 4.5
Level 4.5
Příspěvky: 1885
Registrován: prosinec 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý ntb

Příspěvekod Babis » 26 říj 2013 18:06

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.7 (10.15.2013:3)
OS: Windows 7 Professional x86
Ran by Mˇra on so 26.10.2013 at 17:51:53,20
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\dt soft\daemon tools toolbar
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\backupstack_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\backupstack_rasmancs
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{D28A84D1-7B51-4463-B76D-F03FE8106875}
Successfully deleted: [Registry Key] "hkey_current_user\software\microsoft\internet explorer\low rights\elevationpolicy\{a5aa24ea-11b8-4113-95ae-9ed71deaf12a}"



~~~ Files



~~~ Folders



~~~ Chrome

Successfully deleted: [Folder] C:\Users\Mˇra\appdata\local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 26.10.2013 at 18:04:53,52
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Uživatelský avatar
Babis
Level 4.5
Level 4.5
Příspěvky: 1885
Registrován: prosinec 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý ntb

Příspěvekod Babis » 26 říj 2013 18:11

RogueKiller nejde spustit ani jako správce

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43339
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý ntb

Příspěvekod jaro3 » 27 říj 2013 10:30

Stáhnul sis 32bit. variantu? a vypnul sis antivir?

Zkus spustit v nouz. režimu.

+
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Babis
Level 4.5
Level 4.5
Příspěvky: 1885
Registrován: prosinec 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý ntb

Příspěvekod Babis » 27 říj 2013 17:05

jj 32bit, antivirák vyplej, zkusim ten nouzák

Uživatelský avatar
Babis
Level 4.5
Level 4.5
Příspěvky: 1885
Registrován: prosinec 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý ntb

Příspěvekod Babis » 27 říj 2013 17:28

17:21:46.0499 3200 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
17:21:50.0071 3200 ============================================================
17:21:50.0071 3200 Current date / time: 2013/10/27 17:21:50.0071
17:21:50.0071 3200 SystemInfo:
17:21:50.0071 3200
17:21:50.0071 3200 OS Version: 6.1.7600 ServicePack: 0.0
17:21:50.0071 3200 Product type: Workstation
17:21:50.0071 3200 ComputerName: MÍRA-PC
17:21:50.0071 3200 UserName: Míra
17:21:50.0071 3200 Windows directory: C:\Windows
17:21:50.0071 3200 System windows directory: C:\Windows
17:21:50.0071 3200 Processor architecture: Intel x86
17:21:50.0071 3200 Number of processors: 2
17:21:50.0071 3200 Page size: 0x1000
17:21:50.0071 3200 Boot type: Normal boot
17:21:50.0071 3200 ============================================================
17:21:52.0208 3200 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
17:21:52.0240 3200 ============================================================
17:21:52.0240 3200 \Device\Harddisk0\DR0:
17:21:52.0240 3200 MBR partitions:
17:21:52.0240 3200 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
17:21:52.0240 3200 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x124C6000
17:21:52.0240 3200 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x124F8800, BlocksNum 0x12F35800
17:21:52.0240 3200 ============================================================
17:21:52.0271 3200 C: <-> \Device\Harddisk0\DR0\Partition2
17:21:52.0318 3200 D: <-> \Device\Harddisk0\DR0\Partition3
17:21:52.0318 3200 ============================================================
17:21:52.0318 3200 Initialize success
17:21:52.0318 3200 ============================================================
17:22:25.0592 3980 ============================================================
17:22:25.0592 3980 Scan started
17:22:25.0592 3980 Mode: Manual;
17:22:25.0592 3980 ============================================================
17:22:26.0544 3980 ================ Scan system memory ========================
17:22:26.0544 3980 System memory - ok
17:22:26.0544 3980 ================ Scan services =============================
17:22:26.0856 3980 [ 6D2ACA41739BFE8CB86EE8E85F29697D ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
17:22:26.0856 3980 1394ohci - ok
17:22:26.0872 3980 [ F0E07D144C8685B8774BC32FC8DA4DF0 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys
17:22:26.0872 3980 ACPI - ok
17:22:26.0887 3980 [ 98D81CA942D19F7D9153B095162AC013 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys
17:22:26.0903 3980 AcpiPmi - ok
17:22:27.0028 3980 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
17:22:27.0043 3980 AdobeARMservice - ok
17:22:27.0106 3980 [ A283108E14F3970432C21AF4C0CB1BCE ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
17:22:27.0106 3980 AdobeFlashPlayerUpdateSvc - ok
17:22:27.0137 3980 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
17:22:27.0137 3980 adp94xx - ok
17:22:27.0168 3980 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
17:22:27.0168 3980 adpahci - ok
17:22:27.0199 3980 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
17:22:27.0199 3980 adpu320 - ok
17:22:27.0293 3980 [ 9243229DFCCC99B5441750EBA49F1B14 ] AdvancedSystemCareService6 C:\Program Files\IObit\Advanced SystemCare 6\ASCService.exe
17:22:27.0308 3980 AdvancedSystemCareService6 - ok
17:22:27.0340 3980 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
17:22:27.0340 3980 AeLookupSvc - ok
17:22:27.0355 3980 [ DDC040FDB01EF1712A6B13E52AFB104C ] AFD C:\Windows\system32\drivers\afd.sys
17:22:27.0371 3980 AFD - ok
17:22:27.0371 3980 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\DRIVERS\agp440.sys
17:22:27.0386 3980 agp440 - ok
17:22:27.0386 3980 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
17:22:27.0402 3980 aic78xx - ok
17:22:27.0418 3980 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
17:22:27.0418 3980 ALG - ok
17:22:27.0433 3980 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\DRIVERS\aliide.sys
17:22:27.0433 3980 aliide - ok
17:22:27.0449 3980 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\DRIVERS\amdagp.sys
17:22:27.0464 3980 amdagp - ok
17:22:27.0464 3980 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\DRIVERS\amdide.sys
17:22:27.0464 3980 amdide - ok
17:22:27.0480 3980 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
17:22:27.0496 3980 AmdK8 - ok
17:22:27.0511 3980 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
17:22:27.0511 3980 AmdPPM - ok
17:22:27.0527 3980 [ 2101A86C25C154F8314B24EF49D7FBC2 ] amdsata C:\Windows\system32\DRIVERS\amdsata.sys
17:22:27.0527 3980 amdsata - ok
17:22:27.0589 3980 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
17:22:27.0605 3980 amdsbs - ok
17:22:27.0620 3980 [ B81C2B5616F6420A9941EA093A92B150 ] amdxata C:\Windows\system32\DRIVERS\amdxata.sys
17:22:27.0620 3980 amdxata - ok
17:22:27.0636 3980 [ FEB834C02CE1E84B6A38F953CA067706 ] AppID C:\Windows\system32\drivers\appid.sys
17:22:27.0636 3980 AppID - ok
17:22:27.0652 3980 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
17:22:27.0652 3980 AppIDSvc - ok
17:22:27.0683 3980 [ 7DEAD9E3F65DCB2794F2711003BBF650 ] Appinfo C:\Windows\System32\appinfo.dll
17:22:27.0683 3980 Appinfo - ok
17:22:27.0714 3980 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
17:22:27.0714 3980 AppMgmt - ok
17:22:27.0730 3980 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
17:22:27.0730 3980 arc - ok
17:22:27.0761 3980 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
17:22:27.0761 3980 arcsas - ok
17:22:27.0901 3980 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
17:22:27.0932 3980 aspnet_state - ok
17:22:27.0948 3980 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
17:22:27.0948 3980 AsyncMac - ok
17:22:27.0964 3980 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\DRIVERS\atapi.sys
17:22:27.0964 3980 atapi - ok
17:22:28.0026 3980 [ 76BAB0C824E2D05B940C4DD40A9B08BF ] athr C:\Windows\system32\DRIVERS\athr.sys
17:22:28.0057 3980 athr - ok
17:22:28.0088 3980 [ 510C873BFA135AA829F4180352772734 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
17:22:28.0104 3980 AudioEndpointBuilder - ok
17:22:28.0135 3980 [ 510C873BFA135AA829F4180352772734 ] Audiosrv C:\Windows\System32\Audiosrv.dll
17:22:28.0135 3980 Audiosrv - ok
17:22:28.0151 3980 [ DD6A431B43E34B91A767D1CE33728175 ] AxInstSV C:\Windows\System32\AxInstSV.dll
17:22:28.0151 3980 AxInstSV - ok
17:22:28.0182 3980 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
17:22:28.0198 3980 b06bdrv - ok
17:22:28.0213 3980 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
17:22:28.0213 3980 b57nd60x - ok
17:22:28.0229 3980 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
17:22:28.0244 3980 BDESVC - ok
17:22:28.0260 3980 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
17:22:28.0260 3980 Beep - ok
17:22:28.0291 3980 [ 85AC71C045CEB054ED48A7841AAE0C11 ] BFE C:\Windows\System32\bfe.dll
17:22:28.0291 3980 BFE - ok
17:22:28.0322 3980 [ 53F476476F55A27F580661BDE09C4EC4 ] BITS C:\Windows\System32\qmgr.dll
17:22:28.0354 3980 BITS - ok
17:22:28.0369 3980 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
17:22:28.0369 3980 blbdrive - ok
17:22:28.0400 3980 [ FCAFAEF6798D7B51FF029F99A9898961 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
17:22:28.0400 3980 bowser - ok
17:22:28.0416 3980 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
17:22:28.0416 3980 BrFiltLo - ok
17:22:28.0432 3980 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
17:22:28.0432 3980 BrFiltUp - ok
17:22:28.0447 3980 [ 598E1280E7FF3744F4B8329366CC5635 ] Browser C:\Windows\System32\browser.dll
17:22:28.0447 3980 Browser - ok
17:22:28.0478 3980 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
17:22:28.0478 3980 Brserid - ok
17:22:28.0510 3980 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
17:22:28.0510 3980 BrSerWdm - ok
17:22:28.0525 3980 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
17:22:28.0525 3980 BrUsbMdm - ok
17:22:28.0525 3980 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
17:22:28.0572 3980 BrUsbSer - ok
17:22:28.0603 3980 [ CE441CCD98C5ECB10CB12FCAF97322EC ] BtHidBus C:\Windows\system32\Drivers\BtHidBus.sys
17:22:28.0603 3980 BtHidBus - ok
17:22:28.0619 3980 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
17:22:28.0619 3980 BTHMODEM - ok
17:22:28.0650 3980 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
17:22:28.0650 3980 bthserv - ok
17:22:28.0681 3980 [ D3C277A51EF9E2EC972D6221F99C0B6D ] btnetBUs C:\Windows\system32\Drivers\btnetBus.sys
17:22:28.0681 3980 btnetBUs - ok
17:22:28.0697 3980 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
17:22:28.0697 3980 cdfs - ok
17:22:28.0728 3980 [ BA6E70AA0E6091BC39DE29477D866A77 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
17:22:28.0728 3980 cdrom - ok
17:22:28.0744 3980 [ 628A9E30EC5E18DD5DE6BE4DBDC12198 ] CertPropSvc C:\Windows\System32\certprop.dll
17:22:28.0744 3980 CertPropSvc - ok
17:22:28.0759 3980 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
17:22:28.0759 3980 circlass - ok
17:22:28.0790 3980 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
17:22:28.0806 3980 CLFS - ok
17:22:28.0868 3980 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
17:22:28.0868 3980 clr_optimization_v2.0.50727_32 - ok
17:22:28.0962 3980 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
17:22:28.0993 3980 clr_optimization_v4.0.30319_32 - ok
17:22:29.0024 3980 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
17:22:29.0040 3980 CmBatt - ok
17:22:29.0212 3980 [ BB76C416AC9064F184A1C715179DE7A9 ] cmdAgent C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
17:22:29.0243 3980 cmdAgent - ok
17:22:29.0290 3980 [ 632C4D8E226100CA4F50EE32ACE115D3 ] cmderd C:\Windows\system32\DRIVERS\cmderd.sys
17:22:29.0290 3980 cmderd - ok
17:22:29.0352 3980 [ DB29F3ABFBB0661F811E3F0E24DA9ABC ] cmdGuard C:\Windows\system32\DRIVERS\cmdguard.sys
17:22:29.0383 3980 cmdGuard - ok
17:22:29.0399 3980 [ 67F5624C15923799EC973811D2176D25 ] cmdHlp C:\Windows\system32\DRIVERS\cmdhlp.sys
17:22:29.0399 3980 cmdHlp - ok
17:22:29.0414 3980 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys
17:22:29.0414 3980 cmdide - ok
17:22:29.0446 3980 [ E6E4CDA093D59D576178BF2BB272C124 ] cmdvirth C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
17:22:29.0446 3980 cmdvirth - ok
17:22:29.0477 3980 [ 1B675691ED940766149C93E8F4488D68 ] CNG C:\Windows\system32\Drivers\cng.sys
17:22:29.0477 3980 CNG - ok
17:22:29.0508 3980 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
17:22:29.0508 3980 Compbatt - ok
17:22:29.0524 3980 [ F1724BA27E97D627F808FB0BA77A28A6 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
17:22:29.0524 3980 CompositeBus - ok
17:22:29.0524 3980 COMSysApp - ok
17:22:29.0602 3980 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
17:22:29.0602 3980 crcdisk - ok
17:22:29.0648 3980 [ 9C231178CE4FB385F4B54B0A9080B8A4 ] CryptSvc C:\Windows\system32\cryptsvc.dll
17:22:29.0664 3980 CryptSvc - ok
17:22:29.0695 3980 [ 27C9490BDD0AE48911AB8CF1932591ED ] CSC C:\Windows\system32\drivers\csc.sys
17:22:29.0711 3980 CSC - ok
17:22:29.0742 3980 [ 56FB5F222EA30D3D3FC459879772CB73 ] CscService C:\Windows\System32\cscsvc.dll
17:22:29.0742 3980 CscService - ok
17:22:29.0789 3980 [ B82CD39E336973359D7C9BF911E8E84F ] DcomLaunch C:\Windows\system32\rpcss.dll
17:22:29.0804 3980 DcomLaunch - ok
17:22:29.0820 3980 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
17:22:29.0836 3980 defragsvc - ok
17:22:29.0836 3980 [ 8E09E52EE2E3CEB199EF3DD99CF9E3FB ] DfsC C:\Windows\system32\Drivers\dfsc.sys
17:22:29.0851 3980 DfsC - ok
17:22:29.0867 3980 [ C56495FBD770712367CAD35E5DE72DA6 ] Dhcp C:\Windows\system32\dhcpcore.dll
17:22:29.0867 3980 Dhcp - ok
17:22:29.0882 3980 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
17:22:29.0882 3980 discache - ok
17:22:29.0914 3980 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
17:22:29.0914 3980 Disk - ok
17:22:29.0945 3980 [ D0722E963D3C6145446874241401B209 ] Dnscache C:\Windows\System32\dnsrslvr.dll
17:22:29.0945 3980 Dnscache - ok
17:22:29.0960 3980 [ 4408C85C21EEA48EB0CE486BAEEF0502 ] dot3svc C:\Windows\System32\dot3svc.dll
17:22:29.0976 3980 dot3svc - ok
17:22:29.0976 3980 [ 7FA81C6E11CAA594ADB52084DA73A1E5 ] DPS C:\Windows\system32\dps.dll
17:22:29.0992 3980 DPS - ok
17:22:30.0007 3980 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
17:22:30.0007 3980 drmkaud - ok
17:22:30.0054 3980 [ 651554E483712B708EDE864D0CA1AA73 ] DrvAgent32 C:\Windows\system32\Drivers\DrvAgent32.sys
17:22:30.0054 3980 DrvAgent32 - ok
17:22:30.0101 3980 [ 8B6C3464D7FAC176500061DBFFF42AD4 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
17:22:30.0116 3980 DXGKrnl - ok
17:22:30.0132 3980 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
17:22:30.0132 3980 EapHost - ok
17:22:30.0226 3980 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
17:22:30.0304 3980 ebdrv - ok
17:22:30.0335 3980 [ F42309C4191C506B71DB5D1126D26318 ] EFS C:\Windows\System32\lsass.exe
17:22:30.0335 3980 EFS - ok
17:22:30.0413 3980 [ 0F1A73C91CFA379F307F86E38C8C41AB ] ehRecvr C:\Windows\ehome\ehRecvr.exe
17:22:30.0444 3980 ehRecvr - ok
17:22:30.0460 3980 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
17:22:30.0475 3980 ehSched - ok
17:22:30.0491 3980 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
17:22:30.0522 3980 elxstor - ok
17:22:30.0538 3980 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys
17:22:30.0538 3980 ErrDev - ok
17:22:30.0631 3980 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
17:22:30.0631 3980 EventSystem - ok
17:22:30.0662 3980 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
17:22:30.0662 3980 exfat - ok
17:22:30.0694 3980 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
17:22:30.0694 3980 fastfat - ok
17:22:30.0725 3980 [ F7EA23CC5E6BF2181F3F399D54F6EFC1 ] Fax C:\Windows\system32\fxssvc.exe
17:22:30.0725 3980 Fax - ok
17:22:30.0756 3980 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
17:22:30.0756 3980 fdc - ok
17:22:30.0787 3980 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
17:22:30.0787 3980 fdPHost - ok
17:22:30.0803 3980 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
17:22:30.0803 3980 FDResPub - ok
17:22:30.0818 3980 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
17:22:30.0818 3980 FileInfo - ok
17:22:30.0834 3980 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
17:22:30.0834 3980 Filetrace - ok
17:22:30.0865 3980 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
17:22:30.0865 3980 flpydisk - ok
17:22:30.0881 3980 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
17:22:30.0881 3980 FltMgr - ok
17:22:30.0928 3980 [ B6512A85815FDC3D560C3705F5BDB93D ] FontCache C:\Windows\system32\FntCache.dll
17:22:30.0943 3980 FontCache - ok
17:22:30.0990 3980 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
17:22:31.0006 3980 FontCache3.0.0.0 - ok
17:22:31.0006 3980 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
17:22:31.0021 3980 FsDepends - ok
17:22:31.0037 3980 [ A574B4360E438977038AAE4BF60D79A2 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
17:22:31.0037 3980 Fs_Rec - ok
17:22:31.0068 3980 [ DAFBD9FE39197495AED6D51F3B85B5D2 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
17:22:31.0084 3980 fvevol - ok
17:22:31.0084 3980 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
17:22:31.0099 3980 gagp30kx - ok
17:22:31.0146 3980 [ 8BA3C04702BF8F927AB36AE8313CA4EE ] gpsvc C:\Windows\System32\gpsvc.dll
17:22:31.0177 3980 gpsvc - ok
17:22:31.0271 3980 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
17:22:31.0271 3980 gupdate - ok
17:22:31.0286 3980 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
17:22:31.0286 3980 gupdatem - ok
17:22:31.0318 3980 [ 7929A161F9951D173CA9900FE7067391 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
17:22:31.0318 3980 hamachi - ok
17:22:31.0349 3980 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
17:22:31.0349 3980 hcw85cir - ok
17:22:31.0380 3980 [ 3530CAD25DEBA7DC7DE8BB51632CBC5F ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
17:22:31.0380 3980 HdAudAddService - ok
17:22:31.0411 3980 [ 717A2207FD6F13AD3E664C7D5A43C7BF ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
17:22:31.0411 3980 HDAudBus - ok
17:22:31.0427 3980 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
17:22:31.0427 3980 HidBatt - ok
17:22:31.0442 3980 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
17:22:31.0458 3980 HidBth - ok
17:22:31.0458 3980 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
17:22:31.0458 3980 HidIr - ok
17:22:31.0489 3980 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
17:22:31.0489 3980 hidserv - ok
17:22:31.0505 3980 [ 25072FB35AC90B25F9E4E3BACF774102 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
17:22:31.0505 3980 HidUsb - ok
17:22:31.0536 3980 [ 741C2A45CA8407E374AABA3E330B7872 ] hkmsvc C:\Windows\system32\kmsvc.dll
17:22:31.0536 3980 hkmsvc - ok
17:22:31.0598 3980 [ A768CA158BB06782A2835B907F4873C3 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
17:22:31.0614 3980 HomeGroupListener - ok
17:22:31.0645 3980 [ FB08DEC5EF43D0C66D83B8E9694E7549 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
17:22:31.0645 3980 HomeGroupProvider - ok
17:22:31.0661 3980 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys
17:22:31.0676 3980 HpSAMD - ok
17:22:31.0708 3980 [ 950CC1E6AE3A6CD23E0945CDE089B02C ] HTCAND32 C:\Windows\system32\Drivers\ANDROIDUSB.sys
17:22:31.0708 3980 HTCAND32 - ok
17:22:31.0848 3980 [ 5C8BC8A28798FD010E7ABC4E0D588CAA ] HTCMonitorService C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe
17:22:31.0848 3980 HTCMonitorService - ok
17:22:31.0879 3980 [ 339ADEFAD60353F960E3CA67CE468C24 ] htcnprot C:\Windows\system32\DRIVERS\htcnprot.sys
17:22:31.0879 3980 htcnprot - ok
17:22:31.0926 3980 [ C531C7FD9E8B62021112787C4E2C5A5A ] HTTP C:\Windows\system32\drivers\HTTP.sys
17:22:31.0942 3980 HTTP - ok
17:22:31.0957 3980 [ 8305F33CDE89AD6C7A0763ED0B5A8D42 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
17:22:31.0957 3980 hwpolicy - ok
17:22:31.0973 3980 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
17:22:31.0988 3980 i8042prt - ok
17:22:32.0004 3980 [ 934AF4D7C5F457B9F0743F4299B77B67 ] iaStorV C:\Windows\system32\DRIVERS\iaStorV.sys
17:22:32.0004 3980 iaStorV - ok
17:22:32.0098 3980 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
17:22:32.0098 3980 IDriverT - ok
17:22:32.0160 3980 [ 5AF815EB5BC9802E5A064E2BA62BFC0C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
17:22:32.0191 3980 idsvc - ok
17:22:32.0207 3980 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
17:22:32.0222 3980 iirsp - ok
17:22:32.0316 3980 [ A06EFD4965F8A3F97A8C9A291D032678 ] IJPLMSVC C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
17:22:32.0316 3980 IJPLMSVC - ok
17:22:32.0347 3980 [ FAC0EE6562B121B1399D6E855583F7A5 ] IKEEXT C:\Windows\System32\ikeext.dll
17:22:32.0363 3980 IKEEXT - ok
17:22:32.0410 3980 [ A6EDD553824FEFE32B126E815EFF323F ] inspect C:\Windows\system32\DRIVERS\inspect.sys
17:22:32.0410 3980 inspect - ok
17:22:32.0441 3980 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\DRIVERS\intelide.sys
17:22:32.0456 3980 intelide - ok
17:22:32.0472 3980 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
17:22:32.0472 3980 intelppm - ok
17:22:32.0488 3980 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
17:22:32.0488 3980 IPBusEnum - ok
17:22:32.0503 3980 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
17:22:32.0519 3980 IpFilterDriver - ok
17:22:32.0550 3980 [ 477397B432A256A50EE7E4339EB9EA14 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
17:22:32.0612 3980 iphlpsvc - ok
17:22:32.0628 3980 [ E4454B6C37D7FFD5649611F6496308A7 ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys
17:22:32.0628 3980 IPMIDRV - ok
17:22:32.0644 3980 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
17:22:32.0644 3980 IPNAT - ok
17:22:32.0659 3980 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
17:22:32.0659 3980 IRENUM - ok
17:22:32.0675 3980 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys
17:22:32.0675 3980 isapnp - ok
17:22:32.0706 3980 [ ED46C223AE46C6866AB77CDC41C404B7 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
17:22:32.0706 3980 iScsiPrt - ok
17:22:32.0753 3980 [ 71E1FC547CC488D5CD7BF0860C96F5AF ] IvtBtBUs C:\Windows\system32\Drivers\IvtBtBus.sys
17:22:32.0753 3980 IvtBtBUs - ok
17:22:32.0753 3980 jbridgep - ok
17:22:32.0784 3980 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
17:22:32.0784 3980 kbdclass - ok
17:22:32.0800 3980 [ 3D9F0EBF350EDCFD6498057301455964 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
17:22:32.0800 3980 kbdhid - ok
17:22:32.0815 3980 [ F42309C4191C506B71DB5D1126D26318 ] KeyIso C:\Windows\system32\lsass.exe
17:22:32.0815 3980 KeyIso - ok
17:22:32.0846 3980 [ E36A061EC11B373826905B21BE10948F ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
17:22:32.0846 3980 KSecDD - ok
17:22:32.0878 3980 [ 365C6154BBBC5377173F1CA7BFB6CC59 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
17:22:32.0878 3980 KSecPkg - ok
17:22:32.0909 3980 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
17:22:32.0924 3980 KtmRm - ok
17:22:32.0956 3980 [ BCA92CB047A4326925ECEF759DBAA233 ] LanmanServer C:\Windows\system32\srvsvc.dll
17:22:32.0956 3980 LanmanServer - ok
17:22:32.0987 3980 [ B9891F885DCF1F0513A51CB58493CB1F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
17:22:33.0002 3980 LanmanWorkstation - ok
17:22:33.0096 3980 [ EE963D96BFD97E54BA6CE6D2AC58DE35 ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe
17:22:33.0096 3980 LightScribeService - ok
17:22:33.0112 3980 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
17:22:33.0127 3980 lltdio - ok
17:22:33.0158 3980 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
17:22:33.0158 3980 lltdsvc - ok
17:22:33.0190 3980 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
17:22:33.0190 3980 lmhosts - ok
17:22:33.0205 3980 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
17:22:33.0205 3980 LSI_FC - ok
17:22:33.0236 3980 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
17:22:33.0236 3980 LSI_SAS - ok
17:22:33.0252 3980 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
17:22:33.0268 3980 LSI_SAS2 - ok
17:22:33.0283 3980 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
17:22:33.0283 3980 LSI_SCSI - ok
17:22:33.0299 3980 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
17:22:33.0299 3980 luafv - ok
17:22:33.0346 3980 [ A3E700D78EEC390F1208098CDCA5C6B6 ] MarvinBus C:\Windows\system32\DRIVERS\MarvinBus.sys
17:22:33.0346 3980 MarvinBus - ok
17:22:33.0392 3980 [ 4470E3C1E0C3378E4CAB137893C12C3A ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
17:22:33.0392 3980 MBAMProtector - ok
17:22:33.0455 3980 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
17:22:33.0455 3980 MBAMScheduler - ok
17:22:33.0502 3980 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
17:22:33.0502 3980 MBAMService - ok
17:22:33.0533 3980 [ E2B0887816ED336685954E3D8FDAA51D ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
17:22:33.0533 3980 Mcx2Svc - ok
17:22:33.0611 3980 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
17:22:33.0611 3980 megasas - ok
17:22:33.0642 3980 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
17:22:33.0642 3980 MegaSR - ok
17:22:33.0736 3980 Microsoft SharePoint Workspace Audit Service - ok
17:22:33.0767 3980 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
17:22:33.0767 3980 MMCSS - ok
17:22:33.0798 3980 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
17:22:33.0798 3980 Modem - ok
17:22:33.0814 3980 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
17:22:33.0829 3980 monitor - ok
17:22:33.0845 3980 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
17:22:33.0845 3980 mouclass - ok
17:22:33.0860 3980 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
17:22:33.0860 3980 mouhid - ok
17:22:33.0892 3980 [ 921C18727C5920D6C0300736646931C2 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
17:22:33.0892 3980 mountmgr - ok
17:22:33.0907 3980 [ 2AF5997438C55FB79D33D015C30E1974 ] mpio C:\Windows\system32\DRIVERS\mpio.sys
17:22:33.0907 3980 mpio - ok
17:22:33.0938 3980 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
17:22:33.0938 3980 mpsdrv - ok
17:22:33.0954 3980 [ 5CD996CECF45CBC3E8D109C86B82D69E ] MpsSvc C:\Windows\system32\mpssvc.dll
17:22:33.0970 3980 MpsSvc - ok
17:22:33.0985 3980 [ B1BE47008D20E43DA3ADC37C24CDB89D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
17:22:33.0985 3980 MRxDAV - ok

Uživatelský avatar
Babis
Level 4.5
Level 4.5
Příspěvky: 1885
Registrován: prosinec 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý ntb

Příspěvekod Babis » 27 říj 2013 17:29

17:22:34.0016 3980 [ F1B6AA08497EA86CA6EF6F7A08B0BFB8 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
17:22:34.0032 3980 mrxsmb - ok
17:22:34.0048 3980 [ 5613358B4050F46F5A9832DA8050D6E4 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
17:22:34.0048 3980 mrxsmb10 - ok
17:22:34.0079 3980 [ 25C9792778D80FEB4C8201E62281BFDF ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
17:22:34.0079 3980 mrxsmb20 - ok
17:22:34.0094 3980 [ 4326D168944123F38DD3B2D9C37A0B12 ] msahci C:\Windows\system32\DRIVERS\msahci.sys
17:22:34.0094 3980 msahci - ok
17:22:34.0110 3980 [ 455029C7174A2DBB03DBA8A0D8BDDD9A ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys
17:22:34.0126 3980 msdsm - ok
17:22:34.0141 3980 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
17:22:34.0157 3980 MSDTC - ok
17:22:34.0188 3980 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
17:22:34.0204 3980 Msfs - ok
17:22:34.0204 3980 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
17:22:34.0204 3980 mshidkmdf - ok
17:22:34.0235 3980 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\DRIVERS\msisadrv.sys
17:22:34.0235 3980 msisadrv - ok
17:22:34.0297 3980 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
17:22:34.0297 3980 MSiSCSI - ok
17:22:34.0297 3980 msiserver - ok
17:22:34.0328 3980 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
17:22:34.0328 3980 MSKSSRV - ok
17:22:34.0344 3980 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
17:22:34.0344 3980 MSPCLOCK - ok
17:22:34.0344 3980 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
17:22:34.0360 3980 MSPQM - ok
17:22:34.0375 3980 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
17:22:34.0375 3980 MsRPC - ok
17:22:34.0406 3980 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
17:22:34.0406 3980 mssmbios - ok
17:22:34.0422 3980 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
17:22:34.0422 3980 MSTEE - ok
17:22:34.0438 3980 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
17:22:34.0438 3980 MTConfig - ok
17:22:34.0453 3980 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
17:22:34.0453 3980 Mup - ok
17:22:34.0484 3980 [ 80284F1985C70C86F0B5F86DA2DFE1DF ] napagent C:\Windows\system32\qagentRT.dll
17:22:34.0484 3980 napagent - ok
17:22:34.0516 3980 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
17:22:34.0516 3980 NativeWifiP - ok
17:22:34.0609 3980 [ 23759D175A0A9BAAF04D05047BC135A8 ] NDIS C:\Windows\system32\drivers\ndis.sys
17:22:34.0625 3980 NDIS - ok
17:22:34.0640 3980 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
17:22:34.0640 3980 NdisCap - ok
17:22:34.0672 3980 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
17:22:34.0672 3980 NdisTapi - ok
17:22:34.0687 3980 [ B30AE7F2B6D7E343B0DF32E6C08FCE75 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
17:22:34.0687 3980 Ndisuio - ok
17:22:34.0703 3980 [ 267C415EADCBE53C9CA873DEE39CF3A4 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
17:22:34.0703 3980 NdisWan - ok
17:22:34.0718 3980 [ AF7E7C63DCEF3F8772726F86039D6EB4 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
17:22:34.0734 3980 NDProxy - ok
17:22:34.0750 3980 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
17:22:34.0750 3980 NetBIOS - ok
17:22:34.0781 3980 [ DD52A733BF4CA5AF84562A5E2F963B91 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
17:22:34.0796 3980 NetBT - ok
17:22:34.0843 3980 [ F42309C4191C506B71DB5D1126D26318 ] Netlogon C:\Windows\system32\lsass.exe
17:22:34.0843 3980 Netlogon - ok
17:22:34.0890 3980 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
17:22:34.0890 3980 Netman - ok
17:22:34.0952 3980 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
17:22:34.0968 3980 NetMsmqActivator - ok
17:22:34.0984 3980 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
17:22:34.0984 3980 NetPipeActivator - ok
17:22:34.0999 3980 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
17:22:34.0999 3980 netprofm - ok
17:22:35.0030 3980 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
17:22:35.0046 3980 NetTcpActivator - ok
17:22:35.0046 3980 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
17:22:35.0046 3980 NetTcpPortSharing - ok
17:22:35.0077 3980 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
17:22:35.0077 3980 nfrd960 - ok
17:22:35.0108 3980 [ 2226496E34BD40734946A054B1CD657F ] NlaSvc C:\Windows\System32\nlasvc.dll
17:22:35.0108 3980 NlaSvc - ok
17:22:35.0155 3980 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
17:22:35.0155 3980 Npfs - ok
17:22:35.0186 3980 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
17:22:35.0186 3980 nsi - ok
17:22:35.0202 3980 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
17:22:35.0202 3980 nsiproxy - ok
17:22:35.0264 3980 [ 3795DCD21F740EE799FB7223234215AF ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
17:22:35.0296 3980 Ntfs - ok
17:22:35.0311 3980 [ 7F1C1F78D709C4A54CBB46EDE7E0B48D ] NTIDrvr C:\Windows\system32\DRIVERS\NTIDrvr.sys
17:22:35.0327 3980 NTIDrvr - ok
17:22:35.0342 3980 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
17:22:35.0342 3980 Null - ok
17:22:35.0389 3980 [ B5E37E31C053BC9950455A257526514B ] NVENETFD C:\Windows\system32\DRIVERS\nvm62x32.sys
17:22:35.0389 3980 NVENETFD - ok
17:22:35.0436 3980 [ 92CFE8964B3A6DA0692331FA66630DB3 ] NVHDA C:\Windows\system32\drivers\nvhda32v.sys
17:22:35.0436 3980 NVHDA - ok
17:22:35.0748 3980 [ FD5A76AF84FC210CD15548C701243A3F ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
17:22:35.0998 3980 nvlddmkm - ok
17:22:36.0029 3980 [ 3F3D04B1D08D43C16EA7963954EC768D ] nvraid C:\Windows\system32\DRIVERS\nvraid.sys
17:22:36.0029 3980 nvraid - ok
17:22:36.0044 3980 [ C99F251A5DE63C6F129CF71933ACED0F ] nvstor C:\Windows\system32\DRIVERS\nvstor.sys
17:22:36.0044 3980 nvstor - ok
17:22:36.0122 3980 [ 6004D55C0434E15CE98A4CF2A6A4BE94 ] nvsvc C:\Windows\system32\nvvsvc.exe
17:22:36.0138 3980 nvsvc - ok
17:22:36.0169 3980 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\DRIVERS\nv_agp.sys
17:22:36.0169 3980 nv_agp - ok
17:22:36.0185 3980 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
17:22:36.0185 3980 ohci1394 - ok
17:22:36.0247 3980 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
17:22:36.0247 3980 ose - ok
17:22:36.0419 3980 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
17:22:36.0528 3980 osppsvc - ok
17:22:36.0622 3980 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
17:22:36.0637 3980 p2pimsvc - ok
17:22:36.0668 3980 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
17:22:36.0684 3980 p2psvc - ok
17:22:36.0715 3980 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
17:22:36.0715 3980 Parport - ok
17:22:36.0731 3980 [ FF4218952B51DE44FE910953A3E686B9 ] partmgr C:\Windows\system32\drivers\partmgr.sys
17:22:36.0746 3980 partmgr - ok
17:22:36.0778 3980 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
17:22:36.0778 3980 Parvdm - ok
17:22:36.0809 3980 [ 3CAE2BBC86FCF7F94C9696994AF30386 ] PassThru Service C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
17:22:36.0809 3980 PassThru Service - ok
17:22:36.0840 3980 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
17:22:36.0840 3980 PcaSvc - ok
17:22:36.0856 3980 [ C858CB77C577780ECC456A892E7E7D0F ] pci C:\Windows\system32\DRIVERS\pci.sys
17:22:36.0871 3980 pci - ok
17:22:36.0871 3980 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\DRIVERS\pciide.sys
17:22:36.0887 3980 pciide - ok
17:22:36.0902 3980 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
17:22:36.0902 3980 pcmcia - ok
17:22:36.0918 3980 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
17:22:36.0934 3980 pcw - ok
17:22:36.0965 3980 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
17:22:36.0980 3980 PEAUTH - ok
17:22:37.0027 3980 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
17:22:37.0058 3980 PeerDistSvc - ok
17:22:37.0136 3980 [ 9C1BFF7910C89A1D12E57343475840CB ] pla C:\Windows\system32\pla.dll
17:22:37.0183 3980 pla - ok
17:22:37.0214 3980 [ 2CC2008F1296968FBA162ED9F9AFE328 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
17:22:37.0214 3980 PlugPlay - ok
17:22:37.0246 3980 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
17:22:37.0246 3980 PNRPAutoReg - ok
17:22:37.0261 3980 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
17:22:37.0277 3980 PNRPsvc - ok
17:22:37.0324 3980 [ 48E1B75C6DC0232FD92BAAE4BD344721 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
17:22:37.0324 3980 PolicyAgent - ok
17:22:37.0355 3980 [ DBFF83F709A91049621C1D35DD45C92C ] Power C:\Windows\system32\umpo.dll
17:22:37.0355 3980 Power - ok
17:22:37.0386 3980 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
17:22:37.0386 3980 PptpMiniport - ok
17:22:37.0402 3980 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys
17:22:37.0417 3980 Processor - ok
17:22:37.0448 3980 [ 630CF26F0227498B7D5A92B12548960F ] ProfSvc C:\Windows\system32\profsvc.dll
17:22:37.0464 3980 ProfSvc - ok
17:22:37.0480 3980 [ F42309C4191C506B71DB5D1126D26318 ] ProtectedStorage C:\Windows\system32\lsass.exe
17:22:37.0480 3980 ProtectedStorage - ok
17:22:37.0495 3980 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
17:22:37.0495 3980 Psched - ok
17:22:37.0620 3980 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
17:22:37.0667 3980 ql2300 - ok
17:22:37.0698 3980 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
17:22:37.0698 3980 ql40xx - ok
17:22:37.0714 3980 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
17:22:37.0729 3980 QWAVE - ok
17:22:37.0745 3980 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
17:22:37.0745 3980 QWAVEdrv - ok
17:22:37.0760 3980 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
17:22:37.0760 3980 RasAcd - ok
17:22:37.0792 3980 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
17:22:37.0792 3980 RasAgileVpn - ok
17:22:37.0807 3980 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
17:22:37.0823 3980 RasAuto - ok
17:22:37.0823 3980 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
17:22:37.0823 3980 Rasl2tp - ok
17:22:37.0854 3980 [ 0CE66EC736B7FC526D78F7624C7D2A94 ] RasMan C:\Windows\System32\rasmans.dll
17:22:37.0870 3980 RasMan - ok
17:22:37.0901 3980 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
17:22:37.0901 3980 RasPppoe - ok
17:22:37.0916 3980 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
17:22:37.0916 3980 RasSstp - ok
17:22:37.0948 3980 [ 835D7E81BF517A3B72384BDCC85E1CE6 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
17:22:37.0948 3980 rdbss - ok
17:22:37.0963 3980 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
17:22:37.0979 3980 rdpbus - ok
17:22:37.0979 3980 [ 1E016846895B15A99F9A176A05029075 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
17:22:37.0979 3980 RDPCDD - ok
17:22:38.0026 3980 [ C5FF95883FFEF704D50C40D21CFB3AB5 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
17:22:38.0026 3980 RDPDR - ok
17:22:38.0057 3980 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
17:22:38.0057 3980 RDPENCDD - ok
17:22:38.0088 3980 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
17:22:38.0088 3980 RDPREFMP - ok
17:22:38.0119 3980 [ 801371BA9782282892D00AADB08EE367 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
17:22:38.0119 3980 RDPWD - ok
17:22:38.0166 3980 [ 4EA225BF1CF05E158853F30A99CA29A7 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
17:22:38.0166 3980 rdyboost - ok
17:22:38.0197 3980 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
17:22:38.0197 3980 RemoteAccess - ok
17:22:38.0228 3980 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
17:22:38.0244 3980 RemoteRegistry - ok
17:22:38.0260 3980 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
17:22:38.0260 3980 RpcEptMapper - ok
17:22:38.0306 3980 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
17:22:38.0306 3980 RpcLocator - ok
17:22:38.0338 3980 [ B82CD39E336973359D7C9BF911E8E84F ] RpcSs C:\Windows\system32\rpcss.dll
17:22:38.0338 3980 RpcSs - ok
17:22:38.0369 3980 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
17:22:38.0384 3980 rspndr - ok
17:22:38.0416 3980 [ 594FF5620661D1386475406E78CB6F2F ] s0017bus C:\Windows\system32\DRIVERS\s0017bus.sys
17:22:38.0431 3980 s0017bus - ok
17:22:38.0447 3980 [ 7258F550419D543BC5C8E80C578A5D54 ] s0017mdfl C:\Windows\system32\DRIVERS\s0017mdfl.sys
17:22:38.0447 3980 s0017mdfl - ok
17:22:38.0462 3980 [ 1DE4F6607FEB17A15DBD4F1B139E6D2F ] s0017mdm C:\Windows\system32\DRIVERS\s0017mdm.sys
17:22:38.0462 3980 s0017mdm - ok
17:22:38.0478 3980 [ 9814E6BACC06D2526CD52981C7EEEDF0 ] s0017mgmt C:\Windows\system32\DRIVERS\s0017mgmt.sys
17:22:38.0494 3980 s0017mgmt - ok
17:22:38.0509 3980 [ 2C62CD58225973F26682CD4F783DDEDE ] s0017nd5 C:\Windows\system32\DRIVERS\s0017nd5.sys
17:22:38.0509 3980 s0017nd5 - ok
17:22:38.0525 3980 [ F87C3422E84B2FB1B43E0A26247AD5A5 ] s0017obex C:\Windows\system32\DRIVERS\s0017obex.sys
17:22:38.0540 3980 s0017obex - ok
17:22:38.0587 3980 [ DF5E7360A0AFA5956BF75DA683D0679F ] s0017unic C:\Windows\system32\DRIVERS\s0017unic.sys
17:22:38.0603 3980 s0017unic - ok
17:22:38.0634 3980 [ 5423D8437051E89DD34749F242C98648 ] s3cap C:\Windows\system32\DRIVERS\vms3cap.sys
17:22:38.0634 3980 s3cap - ok
17:22:38.0650 3980 [ F42309C4191C506B71DB5D1126D26318 ] SamSs C:\Windows\system32\lsass.exe
17:22:38.0665 3980 SamSs - ok
17:22:38.0681 3980 [ 34EE0C44B724E3E4CE2EFF29126DE5B5 ] sbp2port C:\Windows\system32\DRIVERS\sbp2port.sys
17:22:38.0681 3980 sbp2port - ok
17:22:38.0728 3980 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
17:22:38.0728 3980 SCardSvr - ok
17:22:38.0806 3980 [ 51EC343E322DD43C6BE884F1CDA4CA38 ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys
17:22:38.0806 3980 SCDEmu - ok
17:22:38.0837 3980 [ A95C54B2AC3CC9C73FCDF9E51A1D6B51 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
17:22:38.0852 3980 scfilter - ok
17:22:38.0884 3980 [ 3E8B0C453E25613A1F59762A5C42AA75 ] Schedule C:\Windows\system32\schedsvc.dll
17:22:38.0915 3980 Schedule - ok
17:22:38.0946 3980 [ 628A9E30EC5E18DD5DE6BE4DBDC12198 ] SCPolicySvc C:\Windows\System32\certprop.dll
17:22:38.0946 3980 SCPolicySvc - ok
17:22:38.0962 3980 [ 5FD90ABDBFAEE85986802622CBB03446 ] SDRSVC C:\Windows\System32\SDRSVC.dll
17:22:38.0977 3980 SDRSVC - ok
17:22:38.0993 3980 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
17:22:38.0993 3980 secdrv - ok
17:22:39.0008 3980 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
17:22:39.0024 3980 seclogon - ok
17:22:39.0024 3980 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
17:22:39.0040 3980 SENS - ok
17:22:39.0055 3980 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
17:22:39.0071 3980 SensrSvc - ok
17:22:39.0071 3980 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
17:22:39.0086 3980 Serenum - ok
17:22:39.0102 3980 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
17:22:39.0102 3980 Serial - ok
17:22:39.0133 3980 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
17:22:39.0133 3980 sermouse - ok
17:22:39.0180 3980 [ 8F55CE568C543D5ADF45C409D16718FC ] SessionEnv C:\Windows\system32\sessenv.dll
17:22:39.0180 3980 SessionEnv - ok
17:22:39.0196 3980 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
17:22:39.0196 3980 sffdisk - ok
17:22:39.0211 3980 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\DRIVERS\sffp_mmc.sys
17:22:39.0211 3980 sffp_mmc - ok
17:22:39.0242 3980 [ 4F1E5B0FE7C8050668DBFADE8999AEFB ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
17:22:39.0242 3980 sffp_sd - ok
17:22:39.0258 3980 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
17:22:39.0258 3980 sfloppy - ok
17:22:39.0320 3980 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
17:22:39.0336 3980 SharedAccess - ok
17:22:39.0383 3980 [ CD2E48FA5B29EE2B3B5858056D246EF2 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
17:22:39.0398 3980 ShellHWDetection - ok
17:22:39.0414 3980 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\DRIVERS\sisagp.sys
17:22:39.0414 3980 sisagp - ok
17:22:39.0430 3980 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
17:22:39.0445 3980 SiSRaid2 - ok
17:22:39.0461 3980 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
17:22:39.0461 3980 SiSRaid4 - ok
17:22:39.0617 3980 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
17:22:39.0617 3980 SkypeUpdate - ok
17:22:39.0617 3980 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
17:22:39.0632 3980 Smb - ok
17:22:39.0679 3980 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
17:22:39.0695 3980 SNMPTRAP - ok
17:22:39.0726 3980 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
17:22:39.0726 3980 spldr - ok
17:22:39.0773 3980 [ D1BB750EB51694DE183E08B9C33BE5B2 ] Spooler C:\Windows\System32\spoolsv.exe
17:22:39.0773 3980 Spooler - ok
17:22:39.0866 3980 [ 4C287F9069FEDBD791178876EE9DE536 ] sppsvc C:\Windows\system32\sppsvc.exe
17:22:39.0898 3980 sppsvc - ok
17:22:39.0929 3980 [ D8E3E19EEBDAB49DD4A8D3062EAD4EC7 ] sppuinotify C:\Windows\system32\sppuinotify.dll
17:22:39.0944 3980 sppuinotify - ok
17:22:39.0991 3980 [ CDDDEC541BC3C96F91ECB48759673505 ] sptd C:\Windows\system32\Drivers\sptd.sys
17:22:39.0991 3980 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: CDDDEC541BC3C96F91ECB48759673505
17:22:39.0991 3980 sptd ( LockedFile.Multi.Generic ) - warning
17:22:39.0991 3980 sptd - detected LockedFile.Multi.Generic (1)
17:22:40.0054 3980 [ DD0DD124D95390FDFFA7FB6283923ED4 ] srv C:\Windows\system32\DRIVERS\srv.sys
17:22:40.0054 3980 srv - ok
17:22:40.0085 3980 [ 59EF6D9C690E89D51B0692CCB13A06FC ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
17:22:40.0085 3980 srv2 - ok
17:22:40.0132 3980 [ E00FDFAFF025E94F9821153750C35A6D ] SrvHsfHDA C:\Windows\system32\DRIVERS\VSTAZL3.SYS
17:22:40.0132 3980 SrvHsfHDA - ok
17:22:40.0178 3980 [ CEB4E3B6890E1E42DCA6694D9E59E1A0 ] SrvHsfV92 C:\Windows\system32\DRIVERS\VSTDPV3.SYS
17:22:40.0225 3980 SrvHsfV92 - ok
17:22:40.0256 3980 [ BC0C7EA89194C299F051C24119000E17 ] SrvHsfWinac C:\Windows\system32\DRIVERS\VSTCNXT3.SYS
17:22:40.0272 3980 SrvHsfWinac - ok
17:22:40.0303 3980 [ 08F28676802B58138E48A2B40CAF6204 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
17:22:40.0303 3980 srvnet - ok
17:22:40.0334 3980 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
17:22:40.0334 3980 SSDPSRV - ok
17:22:40.0381 3980 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
17:22:40.0381 3980 SstpSvc - ok
17:22:40.0412 3980 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
17:22:40.0412 3980 stexstor - ok
17:22:40.0459 3980 [ A22825E7BB7018E8AF3E229A5AF17221 ] StiSvc C:\Windows\System32\wiaservc.dll
17:22:40.0490 3980 StiSvc - ok
17:22:40.0522 3980 [ 957E346CA948668F2496A6CCF6FF82CC ] storflt C:\Windows\system32\DRIVERS\vmstorfl.sys
17:22:40.0522 3980 storflt - ok
17:22:40.0615 3980 [ 0BF669F0A910BEDA4A32258D363AF2A5 ] StorSvc C:\Windows\system32\storsvc.dll
17:22:40.0615 3980 StorSvc - ok
17:22:40.0631 3980 [ D5751969DC3E4B88BF482AC8EC9FE019 ] storvsc C:\Windows\system32\DRIVERS\storvsc.sys
17:22:40.0631 3980 storvsc - ok
17:22:40.0662 3980 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
17:22:40.0662 3980 swenum - ok
17:22:40.0709 3980 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
17:22:40.0724 3980 swprv - ok
17:22:40.0787 3980 [ 04105C8DA62353589C29BDAEB8D88BD8 ] SysMain C:\Windows\system32\sysmain.dll
17:22:40.0818 3980 SysMain - ok
17:22:40.0849 3980 [ FCFB6C552FBC0DA299799CBD50AD9FD4 ] TabletInputService C:\Windows\System32\TabSvc.dll
17:22:40.0849 3980 TabletInputService - ok
17:22:40.0880 3980 [ 2F46B0C70A4ADC8C90CF825DA3B4FEAF ] TapiSrv C:\Windows\System32\tapisrv.dll
17:22:40.0880 3980 TapiSrv - ok
17:22:40.0912 3980 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
17:22:40.0912 3980 TBS - ok
17:22:40.0974 3980 [ BB7F39C31C4A4417FD318E7CD184E225 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
17:22:41.0021 3980 Tcpip - ok
17:22:41.0052 3980 [ BB7F39C31C4A4417FD318E7CD184E225 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
17:22:41.0068 3980 TCPIP6 - ok
17:22:41.0099 3980 [ E64444523ADD154F86567C469BC0B17F ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
17:22:41.0114 3980 tcpipreg - ok
17:22:41.0130 3980 [ 1875C1490D99E70E449E3AFAE9FCBADF ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
17:22:41.0130 3980 TDPIPE - ok
17:22:41.0161 3980 [ 7551E91EA999EE9A8E9C331D5A9C31F3 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
17:22:41.0161 3980 TDTCP - ok
17:22:41.0177 3980 [ CB39E896A2A83702D1737BFD402B3542 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
17:22:41.0177 3980 tdx - ok
17:22:41.0208 3980 [ C36F41EE20E6999DBF4B0425963268A5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
17:22:41.0208 3980 TermDD - ok
17:22:41.0239 3980 [ A01E50A04D7B1960B33E92B9080E6A94 ] TermService C:\Windows\System32\termsrv.dll
17:22:41.0255 3980 TermService - ok
17:22:41.0286 3980 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
17:22:41.0286 3980 Themes - ok
17:22:41.0302 3980 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
17:22:41.0317 3980 THREADORDER - ok
17:22:41.0333 3980 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
17:22:41.0348 3980 TrkWks - ok
17:22:41.0395 3980 [ 41A4C781D2286208D397D72099304133 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
17:22:41.0411 3980 TrustedInstaller - ok
17:22:41.0442 3980 [ 98AE6FA07D12CB4EC5CF4A9BFA5F4242 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
17:22:41.0442 3980 tssecsrv - ok
17:22:41.0473 3980 [ 3E461D890A97F9D4C168F5FDA36E1D00 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
17:22:41.0473 3980 tunnel - ok
17:22:41.0504 3980 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
17:22:41.0504 3980 uagp35 - ok
17:22:41.0536 3980 [ 09CC3E16F8E5EE7168E01CF8FCBE061A ] udfs C:\Windows\system32\DRIVERS\udfs.sys
17:22:41.0551 3980 udfs - ok
17:22:41.0598 3980 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
17:22:41.0614 3980 UI0Detect - ok
17:22:41.0629 3980 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\DRIVERS\uliagpkx.sys
17:22:41.0629 3980 uliagpkx - ok
17:22:41.0645 3980 [ 049B3A50B3D646BAEEEE9EEC9B0668DC ] umbus C:\Windows\system32\DRIVERS\umbus.sys
17:22:41.0645 3980 umbus - ok
17:22:41.0660 3980 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
17:22:41.0676 3980 UmPass - ok
17:22:41.0707 3980 [ 8ECACA5454844F66386F7BE4AE0D7CD1 ] UmRdpService C:\Windows\System32\umrdp.dll
17:22:41.0707 3980 UmRdpService - ok
17:22:41.0738 3980 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
17:22:41.0754 3980 upnphost - ok
17:22:41.0770 3980 upperdev - ok
17:22:41.0816 3980 [ 8455C4ED038EFD09E99327F9D2D48FFA ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
17:22:41.0816 3980 usbccgp - ok
17:22:41.0832 3980 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys
17:22:41.0832 3980 usbcir - ok
17:22:41.0863 3980 [ FF32D4F3EC3C68B2CA61782C7964F54E ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
17:22:41.0863 3980 usbehci - ok
17:22:41.0894 3980 [ B0DFC7B484E0CA0C27BDA5433B82D94A ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
17:22:41.0910 3980 usbhub - ok
17:22:41.0926 3980 [ A6FB7957EA7AFB1165991E54CE934B74 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
17:22:41.0926 3980 usbohci - ok
17:22:41.0941 3980 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
17:22:41.0941 3980 usbprint - ok
17:22:41.0957 3980 [ D8889D56E0D27E57ED4591837FE71D27 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
17:22:41.0957 3980 USBSTOR - ok
17:22:41.0988 3980 [ 78780C3EBCE17405B1CCD07A3A8A7D72 ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
17:22:41.0988 3980 usbuhci - ok
17:22:42.0035 3980 [ F642A7E4BF78CFA359CCA0A3557C28D7 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
17:22:42.0035 3980 usbvideo - ok
17:22:42.0066 3980 [ D82F43D15FDAA666856C0190CB73E7C9 ] usb_rndisx C:\Windows\system32\DRIVERS\usb8023x.sys
17:22:42.0082 3980 usb_rndisx - ok
17:22:42.0097 3980 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
17:22:42.0097 3980 UxSms - ok
17:22:42.0128 3980 [ F42309C4191C506B71DB5D1126D26318 ] VaultSvc C:\Windows\system32\lsass.exe
17:22:42.0128 3980 VaultSvc - ok
17:22:42.0144 3980 VComm - ok
17:22:42.0160 3980 VcommMgr - ok
17:22:42.0175 3980 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\DRIVERS\vdrvroot.sys
17:22:42.0175 3980 vdrvroot - ok
17:22:42.0222 3980 [ 8C4E7C49D3641BC9E299E466A7F8867D ] vds C:\Windows\System32\vds.exe
17:22:42.0238 3980 vds - ok
17:22:42.0253 3980 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
17:22:42.0253 3980 vga - ok
17:22:42.0269 3980 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
17:22:42.0269 3980 VgaSave - ok
17:22:42.0300 3980 [ 3BE6E1F3A4F1AFEC8CEE0D7883F93583 ] vhdmp C:\Windows\system32\DRIVERS\vhdmp.sys
17:22:42.0300 3980 vhdmp - ok
17:22:42.0347 3980 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\DRIVERS\viaagp.sys
17:22:42.0347 3980 viaagp - ok
17:22:42.0362 3980 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys
17:22:42.0362 3980 ViaC7 - ok
17:22:42.0378 3980 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\DRIVERS\viaide.sys
17:22:42.0378 3980 viaide - ok
17:22:42.0425 3980 [ 379B349F65F453D2A6E75EA6B7448E49 ] vmbus C:\Windows\system32\DRIVERS\vmbus.sys
17:22:42.0440 3980 vmbus - ok
17:22:42.0456 3980 [ EC2BBAB4B84D0738C6C83D2234DC36FE ] VMBusHID C:\Windows\system32\DRIVERS\VMBusHID.sys
17:22:42.0456 3980 VMBusHID - ok
17:22:42.0472 3980 [ 384E5A2AA49934295171E499F86BA6F3 ] volmgr C:\Windows\system32\DRIVERS\volmgr.sys
17:22:42.0472 3980 volmgr - ok
17:22:42.0503 3980 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
17:22:42.0503 3980 volmgrx - ok
17:22:42.0534 3980 [ 58DF9D2481A56EDDE167E51B334D44FD ] volsnap C:\Windows\system32\DRIVERS\volsnap.sys
17:22:42.0534 3980 volsnap - ok
17:22:42.0565 3980 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
17:22:42.0581 3980 vsmraid - ok
17:22:42.0643 3980 [ 7EA2BCD94D9CFAF4C556F5CC94532A6C ] VSS C:\Windows\system32\vssvc.exe
17:22:42.0674 3980 VSS - ok
17:22:42.0690 3980 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
17:22:42.0690 3980 vwifibus - ok
17:22:42.0721 3980 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
17:22:42.0721 3980 vwififlt - ok
17:22:42.0752 3980 [ A3F04CBEA6C2A10E6CB01F8B47611882 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
17:22:42.0752 3980 vwifimp - ok
17:22:42.0784 3980 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
17:22:42.0799 3980 W32Time - ok
17:22:42.0830 3980 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
17:22:42.0830 3980 WacomPen - ok
17:22:42.0862 3980 [ 692A712062146E96D28BA0B7D75DE31B ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
17:22:42.0862 3980 WANARP - ok
17:22:42.0862 3980 [ 692A712062146E96D28BA0B7D75DE31B ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
17:22:42.0877 3980 Wanarpv6 - ok
17:22:42.0924 3980 [ 7790B77FE1E5EE47DCC66247095BB4C9 ] wbengine C:\Windows\system32\wbengine.exe
17:22:42.0955 3980 wbengine - ok
17:22:42.0986 3980 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
17:22:42.0986 3980 WbioSrvc - ok
17:22:43.0018 3980 [ D0F88AA11EE1A62BCC6D6A8A7783CA11 ] wcncsvc C:\Windows\System32\wcncsvc.dll
17:22:43.0033 3980 wcncsvc - ok
17:22:43.0049 3980 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
17:22:43.0064 3980 WcsPlugInService - ok
17:22:43.0080 3980 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys
17:22:43.0080 3980 Wd - ok
17:22:43.0111 3980 [ 9950E3D0F08141C7E89E64456AE7DC73 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
17:22:43.0111 3980 Wdf01000 - ok
17:22:43.0142 3980 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
17:22:43.0142 3980 WdiServiceHost - ok
17:22:43.0158 3980 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
17:22:43.0158 3980 WdiSystemHost - ok
17:22:43.0189 3980 [ D87C7D2C517F82A5AB7A73E203063D9E ] WebClient C:\Windows\System32\webclnt.dll
17:22:43.0189 3980 WebClient - ok
17:22:43.0220 3980 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
17:22:43.0220 3980 Wecsvc - ok
17:22:43.0252 3980 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
17:22:43.0252 3980 wercplsupport - ok
17:22:43.0267 3980 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
17:22:43.0267 3980 WerSvc - ok
17:22:43.0298 3980 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
17:22:43.0298 3980 WfpLwf - ok
17:22:43.0314 3980 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
17:22:43.0314 3980 WIMMount - ok
17:22:43.0392 3980 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
17:22:43.0423 3980 WinDefend - ok
17:22:43.0454 3980 WinHttpAutoProxySvc - ok
17:22:43.0532 3980 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
17:22:43.0532 3980 Winmgmt - ok
17:22:43.0642 3980 [ C4F5D3901D1B41D602DDC196E0B95B51 ] WinRM C:\Windows\system32\WsmSvc.dll
17:22:43.0657 3980 WinRM - ok
17:22:43.0720 3980 [ 30FC6E5448D0CBAAA95280EEEF7FEDAE ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
17:22:43.0735 3980 WinUsb - ok
17:22:43.0782 3980 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
17:22:43.0813 3980 Wlansvc - ok
17:22:43.0907 3980 [ 5144AE67D60EC653F97DDF3FEED29E77 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
17:22:43.0922 3980 wlidsvc - ok
17:22:43.0985 3980 [ 1ABFD1399436E81C9D857F5FC76EAF98 ] WmBEnum C:\Windows\system32\drivers\WmBEnum.sys
17:22:44.0000 3980 WmBEnum - ok
17:22:44.0063 3980 [ B3CFCBCC91FF61EF82FC693B8B57E7F0 ] WmFilter C:\Windows\system32\drivers\WmFilter.sys
17:22:44.0063 3980 WmFilter - ok
17:22:44.0110 3980 [ 84E2258C942C940198E60BE605C85601 ] WmHidLo C:\Windows\system32\drivers\WmHidLo.sys
17:22:44.0110 3980 WmHidLo - ok
17:22:44.0156 3980 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
17:22:44.0156 3980 WmiAcpi - ok
17:22:44.0234 3980 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
17:22:44.0234 3980 wmiApSrv - ok
17:22:44.0312 3980 [ 77FBD400984CF72BA0FC4B3489D65F74 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
17:22:44.0344 3980 WMPNetworkSvc - ok
17:22:44.0390 3980 [ A40D2DD0F019423EF6C363F1295EB38D ] WmVirHid C:\Windows\system32\drivers\WmVirHid.sys
17:22:44.0390 3980 WmVirHid - ok
17:22:44.0437 3980 [ 2BF505424F469155CD90D7B3301D7ADC ] WmXlCore C:\Windows\system32\drivers\WmXlCore.sys
17:22:44.0437 3980 WmXlCore - ok
17:22:44.0484 3980 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
17:22:44.0484 3980 WPCSvc - ok
17:22:44.0515 3980 [ B7F658A2EBC07129538AD9AB35212637 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
17:22:44.0531 3980 WPDBusEnum - ok
17:22:44.0546 3980 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
17:22:44.0578 3980 ws2ifsl - ok
17:22:44.0702 3980 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll
17:22:44.0702 3980 wscsvc - ok
17:22:44.0718 3980 WSearch - ok
17:22:44.0812 3980 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
17:22:44.0843 3980 wuauserv - ok
17:22:44.0858 3980 [ 6F9B6C0C93232CFF47D0F72D6DB1D21E ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
17:22:44.0874 3980 WudfPf - ok
17:22:44.0890 3980 [ F91FF1E51FCA30B3C3981DB7D5924252 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
17:22:44.0890 3980 WUDFRd - ok
17:22:44.0905 3980 [ DDEE3682FE97037C45F4D7AB467CB8B6 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
17:22:44.0921 3980 wudfsvc - ok
17:22:44.0968 3980 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
17:22:44.0968 3980 WwanSvc - ok
17:22:45.0030 3980 ================ Scan global ===============================
17:22:45.0077 3980 [ 9A595DF601070DA78C40481120DD2C06 ] C:\Windows\system32\basesrv.dll
17:22:45.0092 3980 [ 827E4F75901CA3F990B1487D3301841E ] C:\Windows\system32\winsrv.dll
17:22:45.0108 3980 [ 827E4F75901CA3F990B1487D3301841E ] C:\Windows\system32\winsrv.dll
17:22:45.0139 3980 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
17:22:45.0170 3980 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
17:22:45.0186 3980 [Global] - ok
17:22:45.0186 3980 ================ Scan MBR ==================================
17:22:45.0186 3980 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
17:22:45.0404 3980 \Device\Harddisk0\DR0 - ok
17:22:45.0404 3980 ================ Scan VBR ==================================
17:22:45.0404 3980 [ 921C39CCD086E0B45F0C9058B57A9C04 ] \Device\Harddisk0\DR0\Partition1
17:22:45.0404 3980 \Device\Harddisk0\DR0\Partition1 - ok
17:22:45.0436 3980 [ A69E3440B40EDC04E15A73D7901591C9 ] \Device\Harddisk0\DR0\Partition2
17:22:45.0436 3980 \Device\Harddisk0\DR0\Partition2 - ok
17:22:45.0467 3980 [ 05E8D40E284B408EA70637A57E6DE302 ] \Device\Harddisk0\DR0\Partition3
17:22:45.0467 3980 \Device\Harddisk0\DR0\Partition3 - ok
17:22:45.0467 3980 ============================================================
17:22:45.0467 3980 Scan finished
17:22:45.0467 3980 ============================================================
17:22:45.0482 1228 Detected object count: 1
17:22:45.0482 1228 Actual detected object count: 1
17:27:15.0144 1228 sptd ( LockedFile.Multi.Generic ) - skipped by user
17:27:15.0144 1228 sptd ( LockedFile.Multi.Generic ) - User select action: Skip


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 24 hostů