Kontrola logu hjt - vysoké vytížení procesoru

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

DsD
nováček
Příspěvky: 34
Registrován: leden 14
Pohlaví: Muž
Stav:
Offline

Kontrola logu hjt - vysoké vytížení procesoru

Příspěvekod DsD » 20 led 2014 13:30

Zdravím,
mám problém se svým netbookem, sice to není žádné dělo, ale nemyslím si, že k zapnutí videa v prohlížeči je třeba 90+% využití procesoru. Nedávno jsem reinstaloval, a pořád to není ono.
Zkrátka načítání některých stránek trvá příliš dlouho, videa na netu se sekají, občas když jsem moc rychlý, tak se mi sekne na chvíli i office.
Bez názvu.jpg


Níže logy z hijackthis a MbAM

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:56:30, on 20.1.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\windows\system32\taskhost.exe
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Elantech\ETDCtrl.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
C:\windows\system32\igfxsrvc.exe
C:\Users\Lukas\AppData\Local\VNT\vntldr.exe
C:\Program Files\Elantech\ETDCtrlHelper.exe
C:\windows\system32\wuauclt.exe
C:\windows\system32\SearchFilterHost.exe
C:\Users\Lukas\Desktop\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Ask Toolbar BHO - {5054562D-5247-006A-76A7-7A786E7484D7} - "C:\Program Files\AskPartnerNetwork\Toolbar\PTV-RG\Passport.dll" (file missing)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: Ask Toolbar - {5054562D-5247-006A-76A7-7A786E7484D7} - "C:\Program Files\AskPartnerNetwork\Toolbar\PTV-RG\Passport.dll" (file missing)
O4 - HKLM\..\Run: [EeeSplendidAgent] C:\Program Files\ASUS\EPC\EeeSplendid\AsAgent.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HotkeyMon] AsusSender.exe C:\Program Files\ASUS\HotkeyService\HotKeyMon.exe
O4 - HKLM\..\Run: [HotkeyService] AsusSender.exe C:\Program Files\ASUS\HotkeyService\HotkeyService.exe
O4 - HKLM\..\Run: [SuperHybridEngine] AsusSender.exe C:\Program Files\ASUS\SHE\SuperHybridEngine.exe
O4 - HKLM\..\Run: [CapsHook] AsusSender.exe C:\Program Files\ASUS\CapsHook\CapsHook.exe
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [ETDWare] %ProgramFiles%\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: [ASUSPRP] C:\Program Files\ASUS\APRP\APRP.EXE
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [ApnTBMon] "C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
O4 - HKLM\..\Run: [VNT] C:\Program Files\VNT\vntldr.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MIF5BA~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MIF5BA~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: Asus Launcher Service (AsusService) - Unknown owner - C:\windows\system32\AsusService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

--
End of file - 6436 bytes

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
http://www.malwarebytes.org

Verze: v2014.01.20.04

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 11.0.9600.16476
Lukas :: LUKAS-PC [administrátor]

Ochrana: Povolena

20.1.2014 13:06:26
MBAM-log-2014-01-20 (13-20-20).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 198464
Uplynulý čas: 12 minut, 31 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 2
C:\Users\Lukas\AppData\Local\Temp\ct3288691 (PUP.Optional.Conduit.A) -> Nebyla provedena žádná instrukce.
C:\Users\Lukas\AppData\Local\Temp\ct3297861 (PUP.Optional.Conduit.A) -> Nebyla provedena žádná instrukce.

Nalezené soubory: 9
C:\Users\Lukas\Desktop\install_flashplayer12x32ax_chrd_aaa_aih(ie).exe (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\Lukas\Local Settings\Temporary Internet Files\Content.IE5\6D91EXWS\checktbexist[1].exe (PUP.Optional.Conduit.A) -> Nebyla provedena žádná instrukce.
C:\Users\Lukas\Local Settings\Temporary Internet Files\Content.IE5\E5RMO7V8\mism[1].exe (PUP.Optional.Conduit.A) -> Nebyla provedena žádná instrukce.
C:\Users\Lukas\Local Settings\Temporary Internet Files\Content.IE5\K438E1W8\Offercast2802_PTV_[1].exe (PUP.Optional.Spigot.A) -> Nebyla provedena žádná instrukce.
C:\Users\Lukas\AppData\Local\Temp\ct3288691\chromeid.txt (PUP.Optional.Conduit.A) -> Nebyla provedena žádná instrukce.
C:\Users\Lukas\AppData\Local\Temp\ct3288691\ism.exe (PUP.Optional.Conduit.A) -> Nebyla provedena žádná instrukce.
C:\Users\Lukas\AppData\Local\Temp\ct3288691\setup.ini.txt (PUP.Optional.Conduit.A) -> Nebyla provedena žádná instrukce.
C:\Users\Lukas\AppData\Local\Temp\ct3297861\chromeid.txt (PUP.Optional.Conduit.A) -> Nebyla provedena žádná instrukce.
C:\Users\Lukas\AppData\Local\Temp\ct3297861\setup.ini.txt (PUP.Optional.Conduit.A) -> Nebyla provedena žádná instrukce.

(konec)

Děkuji za prohlédnutí a věnování se tomu ve Vašem volném čase.

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu hjt - vysoké vytížení procesoru

Příspěvekod jaro3 » 21 led 2014 10:01

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.


Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni AdwCleaner (by Xplode)

Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.

. spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.

Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

DsD
nováček
Příspěvky: 34
Registrován: leden 14
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu hjt - vysoké vytížení procesoru

Příspěvekod DsD » 21 led 2014 13:34

# AdwCleaner v3.017 - Report created 21/01/2014 at 12:56:13
# Updated 12/01/2014 by Xplode
# Operating System : Windows 7 Starter Service Pack 1 (32 bits)
# Username : Lukas - LUKAS-PC
# Running from : C:\Users\Lukas\Desktop\adwcleaner.exe
# Option : Scan

***** [ Services ] *****

Service Found : APNMCP

***** [ Files / Folders ] *****

File Found : C:\END
Folder Found C:\Program Files\AskPartnerNetwork
Folder Found C:\ProgramData\apn
Folder Found C:\ProgramData\AskPartnerNetwork
Folder Found C:\Users\Lukas\AppData\LocalLow\boost_interprocess

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\AskPartnerNetwork
Key Found : HKCU\Software\Conduit
Key Found : HKLM\Software\AskPartnerNetwork
Key Found : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{44CBC005-6243-4502-8A02-3A096A282664}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{F297534D-7B06-459D-BC19-2DD8EF69297B}
Key Found : HKLM\SOFTWARE\Classes\Interface\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9945959C-AAD8-4312-8B57-2DE11927E770}
Key Found : HKLM\Software\DivX\Install\Setup\WizardLayout\ConduitToolbar
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnTbMon]

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Google Chrome v32.0.1700.76

[ File : C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [2214 octets] - [21/01/2014 12:56:13]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [2274 octets] ##########


Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2014.01.21.04

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 11.0.9600.16476
Lukas :: LUKAS-PC [administrátor]

Ochrana: Zakázána

21.1.2014 13:04:29
mbam-log-2014-01-21 (13-04-29).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 196883
Uplynulý čas: 13 minut, 39 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 1
C:\Users\Lukas\Desktop\install_flashplayer12x32ax_chrd_aaa_aih(ie).exe (PUP.Optional.OpenCandy) -> Přesun do karantény a smazání se zdařilo.

(konec)


RogueKiller V8.8.2 [Jan 17 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Lukas [Práva správce]
Mód : Kontrola -- Datum : 01/21/2014 13:28:03
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[SUSP PATH] vntldr.exe -- C:\Users\Lukas\AppData\Local\VNT\vntldr.exe [7] -> SMAZÁNO [TermProc]

¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Inline] EAT @explorer.exe (?MILLIS_PER_SECOND@GCDate@@2JB) : GrooveUtil.DLL -> HOOKED (Unknown @ 0xD164333C)

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST9250315AS +++++
--- User ---
[MBR] bda844359501fd6692d2296825044e5d
[BSP] eeb7b3e32c45ea83ed621a9a2e61df73 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 102400 Mo
1 - [XXXXXX] FAT32 (0x1b) [HIDDEN!] Offset (sectors): 209717248 | Size: 15360 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 241174528 | Size: 120697 Mo
3 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 488361984 | Size: 16 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_01212014_132803.txt >>

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu hjt - vysoké vytížení procesoru

Příspěvekod Orcus » 21 led 2014 20:39

Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "

- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje "Smazání- Finished "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

====================================================

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
Klikni na „ Smazat“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

====================================================

Stáhni si TDSSKiller

Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.

====================================================

Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

DsD
nováček
Příspěvky: 34
Registrován: leden 14
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu hjt - vysoké vytížení procesoru

Příspěvekod DsD » 21 led 2014 22:36

RogueKiller V8.8.2 [Jan 17 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Lukas [Práva správce]
Mód : Odebrat -- Datum : 01/21/2014 22:15:50
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Inline] EAT @explorer.exe (?MILLIS_PER_SECOND@GCDate@@2JB) : GrooveUtil.DLL -> HOOKED (Unknown @ 0xD164333C)

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST9250315AS +++++
--- User ---
[MBR] bda844359501fd6692d2296825044e5d
[BSP] eeb7b3e32c45ea83ed621a9a2e61df73 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 102400 Mo
1 - [XXXXXX] FAT32 (0x1b) [HIDDEN!] Offset (sectors): 209717248 | Size: 15360 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 241174528 | Size: 120697 Mo
3 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 488361984 | Size: 16 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_01212014_221550.txt >>
RKreport[0]_S_01212014_221542.txt


# AdwCleaner v3.017 - Report created 21/01/2014 at 22:19:56
# Updated 12/01/2014 by Xplode
# Operating System : Windows 7 Starter Service Pack 1 (32 bits)
# Username : Lukas - LUKAS-PC
# Running from : C:\Users\Lukas\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : APNMCP

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\AskPartnerNetwork
Folder Deleted : C:\Program Files\AskPartnerNetwork
Folder Deleted : C:\Users\Lukas\AppData\Local\Temp\apn
Folder Deleted : C:\Users\Lukas\AppData\LocalLow\boost_interprocess
File Deleted : C:\END

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnTbMon]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{44CBC005-6243-4502-8A02-3A096A282664}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F297534D-7B06-459D-BC19-2DD8EF69297B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9945959C-AAD8-4312-8B57-2DE11927E770}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Key Deleted : HKCU\Software\AskPartnerNetwork
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKLM\Software\AskPartnerNetwork
Key Deleted : HKLM\Software\DivX\Install\Setup\WizardLayout\ConduitToolbar
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Google Chrome v32.0.1700.76

[ File : C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [2354 octets] - [21/01/2014 12:56:13]
AdwCleaner[R1].txt - [2466 octets] - [21/01/2014 22:18:08]
AdwCleaner[S0].txt - [2445 octets] - [21/01/2014 22:19:56]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2505 octets] ##########




aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2014-01-21 22:29:02
-----------------------------
22:29:02.409 OS Version: Windows 6.1.7601 Service Pack 1
22:29:02.409 Number of processors: 2 586 0x1C0A
22:29:02.409 ComputerName: LUKAS-PC UserName: Lukas
22:29:03.220 Initialize success
22:29:13.329 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-0
22:29:13.329 Disk 0 Vendor: ST925031 0003 Size: 238475MB BusType: 3
22:29:13.516 Disk 0 MBR read successfully
22:29:13.516 Disk 0 MBR scan
22:29:13.532 Disk 0 Windows 7 default MBR code
22:29:13.563 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 102400 MB offset 2048
22:29:13.579 Disk 0 Partition 2 00 1B Hidd FAT32 MSDOS5.0 15360 MB offset 209717248
22:29:13.610 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 120697 MB offset 241174528
22:29:13.641 Disk 0 Partition 4 00 EF EFI FAT 16 MB offset 488361984
22:29:13.641 Disk 0 scanning sectors +488394752
22:29:13.859 Disk 0 scanning C:\windows\system32\drivers
22:29:20.521 Service scanning
22:29:42.517 Modules scanning
22:29:58.741 Disk 0 trace - called modules:
22:29:58.772 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll iaStor.sys
22:29:58.788 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x865fa690]
22:29:58.803 3 CLASSPNP.SYS[887ad59e] -> nt!IofCallDriver -> [0x847a1be0]
22:29:58.819 5 ACPI.sys[880bd3d4] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-0[0x84762028]
22:29:58.850 Scan finished successfully
22:30:20.518 Disk 0 MBR has been saved successfully to "C:\Users\Lukas\Desktop\MBR.dat"
22:30:20.534 The log file has been saved successfully to "C:\Users\Lukas\Desktop\aswMBR.txt"

DsD
nováček
Příspěvky: 34
Registrován: leden 14
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu hjt - vysoké vytížení procesoru

Příspěvekod DsD » 21 led 2014 22:38

Kód: Vybrat vše

22:25:06.0755 0x071c  TDSS rootkit removing tool 3.0.0.19 Nov 18 2013 09:27:50
22:25:11.0263 0x071c  ============================================================
22:25:11.0263 0x071c  Current date / time: 2014/01/21 22:25:11.0263
22:25:11.0263 0x071c  SystemInfo:
22:25:11.0263 0x071c 
22:25:11.0263 0x071c  OS Version: 6.1.7601 ServicePack: 1.0
22:25:11.0263 0x071c  Product type: Workstation
22:25:11.0263 0x071c  ComputerName: LUKAS-PC
22:25:11.0263 0x071c  UserName: Lukas
22:25:11.0263 0x071c  Windows directory: C:\windows
22:25:11.0263 0x071c  System windows directory: C:\windows
22:25:11.0263 0x071c  Processor architecture: Intel x86
22:25:11.0263 0x071c  Number of processors: 2
22:25:11.0263 0x071c  Page size: 0x1000
22:25:11.0263 0x071c  Boot type: Normal boot
22:25:11.0263 0x071c  ============================================================
22:25:15.0803 0x071c  KLMD registered as C:\windows\system32\drivers\70101710.sys
22:25:16.0068 0x071c  System UUID: {2C06B3F2-28DE-8CB7-8DC5-8702F1773D4F}
22:25:18.0003 0x071c  Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
22:25:18.0003 0x071c  ============================================================
22:25:18.0003 0x071c  \Device\Harddisk0\DR0:
22:25:18.0003 0x071c  MBR partitions:
22:25:18.0003 0x071c  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xC800000
22:25:18.0003 0x071c  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xE600800, BlocksNum 0xEBBC800
22:25:18.0003 0x071c  ============================================================
22:25:18.0049 0x071c  C: <-> \Device\Harddisk0\DR0\Partition1
22:25:18.0174 0x071c  D: <-> \Device\Harddisk0\DR0\Partition2
22:25:18.0174 0x071c  ============================================================
22:25:18.0174 0x071c  Initialize success
22:25:18.0174 0x071c  ============================================================
22:25:27.0737 0x0ed0  ============================================================
22:25:27.0737 0x0ed0  Scan started
22:25:27.0737 0x0ed0  Mode: Manual;
22:25:27.0753 0x0ed0  ============================================================
22:25:27.0753 0x0ed0  KSN ping started
22:25:30.0654 0x0ed0  KSN ping finished: true
22:25:31.0029 0x0ed0  ================ Scan system memory ========================
22:25:31.0029 0x0ed0  System memory - ok
22:25:31.0029 0x0ed0  ================ Scan services =============================
22:25:31.0590 0x0ed0  [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci        C:\windows\system32\drivers\1394ohci.sys
22:25:31.0637 0x0ed0  1394ohci - ok
22:25:31.0731 0x0ed0  [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI            C:\windows\system32\drivers\ACPI.sys
22:25:31.0762 0x0ed0  ACPI - ok
22:25:31.0793 0x0ed0  [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi         C:\windows\system32\drivers\acpipmi.sys
22:25:31.0793 0x0ed0  AcpiPmi - ok
22:25:31.0855 0x0ed0  [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx         C:\windows\system32\drivers\adp94xx.sys
22:25:31.0902 0x0ed0  adp94xx - ok
22:25:31.0949 0x0ed0  [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci         C:\windows\system32\drivers\adpahci.sys
22:25:31.0965 0x0ed0  adpahci - ok
22:25:32.0011 0x0ed0  [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320         C:\windows\system32\drivers\adpu320.sys
22:25:32.0027 0x0ed0  adpu320 - ok
22:25:32.0074 0x0ed0  [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc     C:\windows\System32\aelupsvc.dll
22:25:32.0074 0x0ed0  AeLookupSvc - ok
22:25:32.0230 0x0ed0  [ F81BB7E487EDCEAB630A7EE66CF23913, 7D1638FD7E388EF670FA0A421762E0413351058A20DDF0F9988A383F05395A68 ] AFD             C:\windows\system32\drivers\afd.sys
22:25:32.0245 0x0ed0  AFD - ok
22:25:32.0292 0x0ed0  [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440          C:\windows\system32\drivers\agp440.sys
22:25:32.0308 0x0ed0  agp440 - ok
22:25:32.0339 0x0ed0  [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx         C:\windows\system32\drivers\djsvs.sys
22:25:32.0355 0x0ed0  aic78xx - ok
22:25:32.0417 0x0ed0  [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG             C:\windows\System32\alg.exe
22:25:32.0417 0x0ed0  ALG - ok
22:25:32.0464 0x0ed0  [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide          C:\windows\system32\drivers\aliide.sys
22:25:32.0464 0x0ed0  aliide - ok
22:25:32.0511 0x0ed0  [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp          C:\windows\system32\drivers\amdagp.sys
22:25:32.0511 0x0ed0  amdagp - ok
22:25:32.0542 0x0ed0  [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide          C:\windows\system32\drivers\amdide.sys
22:25:32.0557 0x0ed0  amdide - ok
22:25:32.0573 0x0ed0  [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8           C:\windows\system32\drivers\amdk8.sys
22:25:32.0589 0x0ed0  AmdK8 - ok
22:25:32.0604 0x0ed0  [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM          C:\windows\system32\drivers\amdppm.sys
22:25:32.0620 0x0ed0  AmdPPM - ok
22:25:32.0667 0x0ed0  [ D320BF87125326F996D4904FE24300FC, F767D8C5C58D57202905D829F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata         C:\windows\system32\drivers\amdsata.sys
22:25:32.0667 0x0ed0  amdsata - ok
22:25:32.0745 0x0ed0  [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs          C:\windows\system32\drivers\amdsbs.sys
22:25:32.0776 0x0ed0  amdsbs - ok
22:25:32.0823 0x0ed0  [ 46387FB17B086D16DEA267D5BE23A2F2, 8B8AC61B91F154B4EB5CC6DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata         C:\windows\system32\drivers\amdxata.sys
22:25:32.0823 0x0ed0  amdxata - ok
22:25:32.0869 0x0ed0  [ AEA177F783E20150ACE5383EE368DA19, 8FA9EE27AA1F22E8B8FE33A21028CA1E0062BAA95CB132C20D55B98C03B4254F ] AppID           C:\windows\system32\drivers\appid.sys
22:25:32.0885 0x0ed0  AppID - ok
22:25:32.0932 0x0ed0  [ 62A9C86CB6085E20DB4823E4E97826F5, E0F840B49710022C4FB437002AD06F64B0F6B5D628B32D00F2B66765E6B97E4B ] AppIDSvc        C:\windows\System32\appidsvc.dll
22:25:32.0947 0x0ed0  AppIDSvc - ok
22:25:32.0979 0x0ed0  [ EACFDF31921F51C097629F1F3C9129B4, 24138755D823E69760579ECBD672421192457CDC9941B2BC499C2D34D83E86C3 ] Appinfo         C:\windows\System32\appinfo.dll
22:25:32.0979 0x0ed0  Appinfo - ok
22:25:33.0025 0x0ed0  [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc             C:\windows\system32\drivers\arc.sys
22:25:33.0041 0x0ed0  arc - ok
22:25:33.0057 0x0ed0  [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas          C:\windows\system32\drivers\arcsas.sys
22:25:33.0072 0x0ed0  arcsas - ok
22:25:33.0119 0x0ed0  [ 956C7177DBDA0F02436868AD644CCF31, BC18586452ED4C23772BF4BE7FE6EAB184BE142922F88229E20EA53FC185461D ] AsIO            C:\windows\system32\drivers\AsIO.sys
22:25:33.0119 0x0ed0  AsIO - ok
22:25:33.0540 0x0ed0  [ 9D768C43FEF254DD50B1DBF8AD5C4C0B, A50854EA5C08605133B8BB4DFDC6090357C5665314AA72E0BFA1E07D4E451F09 ] aspnet_state    C:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
22:25:33.0587 0x0ed0  aspnet_state - ok
22:25:33.0634 0x0ed0  [ A9A565C669786C402752F609AFDD0DD5, 7D64828DE5503AF4B4A80F4C08BB2659B277CD664AB33724FB9387948BE8765A ] AsUpIO          C:\windows\system32\drivers\AsUpIO.sys
22:25:33.0634 0x0ed0  AsUpIO - ok
22:25:33.0712 0x0ed0  [ BDEDD780A12E75AC5902CA6BB027EAB7, 2F862B3FC4E4DBEDD0BF60BD70F24F15AA00F43E3AF630781FE4E0C3C779B504 ] AsusService     C:\windows\system32\AsusService.exe
22:25:33.0727 0x0ed0  AsusService - ok
22:25:33.0759 0x0ed0  [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac        C:\windows\system32\DRIVERS\asyncmac.sys
22:25:33.0774 0x0ed0  AsyncMac - ok
22:25:33.0837 0x0ed0  [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi           C:\windows\system32\drivers\atapi.sys
22:25:33.0837 0x0ed0  atapi - ok
22:25:34.0071 0x0ed0  [ 31CB2740BFDBAC1E48E2B7EAD38F0D27, D409B06CA4B130BC34C5F8E99A7225E3C1A2A06960897DD1F9DD1A219C11636C ] athr            C:\windows\system32\DRIVERS\athr.sys
22:25:34.0336 0x0ed0  athr - ok
22:25:34.0429 0x0ed0  [ CE3B4E731638D2EF62FCB419BE0D39F0, 3B98179CB0101778D9E7810D2CD46D9C0D7120E141BA11471666E7D9EB3C93CC ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
22:25:34.0492 0x0ed0  AudioEndpointBuilder - ok
22:25:34.0554 0x0ed0  [ CE3B4E731638D2EF62FCB419BE0D39F0, 3B98179CB0101778D9E7810D2CD46D9C0D7120E141BA11471666E7D9EB3C93CC ] Audiosrv        C:\windows\System32\Audiosrv.dll
22:25:34.0585 0x0ed0  Audiosrv - ok
22:25:34.0632 0x0ed0  [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C855A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV        C:\windows\System32\AxInstSV.dll
22:25:34.0648 0x0ed0  AxInstSV - ok
22:25:34.0757 0x0ed0  [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv         C:\windows\system32\drivers\bxvbdx.sys
22:25:34.0835 0x0ed0  b06bdrv - ok
22:25:34.0913 0x0ed0  [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x        C:\windows\system32\DRIVERS\b57nd60x.sys
22:25:34.0944 0x0ed0  b57nd60x - ok
22:25:35.0022 0x0ed0  [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC          C:\windows\System32\bdesvc.dll
22:25:35.0022 0x0ed0  BDESVC - ok
22:25:35.0053 0x0ed0  [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep            C:\windows\system32\drivers\Beep.sys
22:25:35.0053 0x0ed0  Beep - ok
22:25:35.0116 0x0ed0  [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE             C:\windows\System32\bfe.dll
22:25:35.0178 0x0ed0  BFE - ok
22:25:35.0303 0x0ed0  [ E585445D5021971FAE10393F0F1C3961, 178C008A9A0A6BFDA65EB0B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS            C:\windows\System32\qmgr.dll
22:25:35.0381 0x0ed0  BITS - ok
22:25:35.0412 0x0ed0  [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive        C:\windows\system32\DRIVERS\blbdrive.sys
22:25:35.0428 0x0ed0  blbdrive - ok
22:25:35.0475 0x0ed0  [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser          C:\windows\system32\DRIVERS\bowser.sys
22:25:35.0490 0x0ed0  bowser - ok
22:25:35.0521 0x0ed0  [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo        C:\windows\system32\drivers\BrFiltLo.sys
22:25:35.0521 0x0ed0  BrFiltLo - ok
22:25:35.0537 0x0ed0  [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp        C:\windows\system32\drivers\BrFiltUp.sys
22:25:35.0537 0x0ed0  BrFiltUp - ok
22:25:35.0584 0x0ed0  [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser         C:\windows\System32\browser.dll
22:25:35.0599 0x0ed0  Browser - ok
22:25:35.0662 0x0ed0  [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid         C:\windows\System32\Drivers\Brserid.sys
22:25:35.0677 0x0ed0  Brserid - ok
22:25:35.0693 0x0ed0  [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm        C:\windows\System32\Drivers\BrSerWdm.sys
22:25:35.0709 0x0ed0  BrSerWdm - ok
22:25:35.0724 0x0ed0  [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm        C:\windows\System32\Drivers\BrUsbMdm.sys
22:25:35.0724 0x0ed0  BrUsbMdm - ok
22:25:35.0740 0x0ed0  [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer        C:\windows\System32\Drivers\BrUsbSer.sys
22:25:35.0740 0x0ed0  BrUsbSer - ok
22:25:35.0787 0x0ed0  [ 2865A5C8E98C70C605F417908CEBB3A4, B1C5AC228BD7072AF8668C009C6CDC13EE9FCB9481F57524300F37C40BF1E935 ] BthEnum         C:\windows\system32\drivers\BthEnum.sys
22:25:35.0802 0x0ed0  BthEnum - ok
22:25:35.0818 0x0ed0  [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM        C:\windows\system32\drivers\bthmodem.sys
22:25:35.0833 0x0ed0  BTHMODEM - ok
22:25:35.0849 0x0ed0  [ AD1872E5829E8A2C3B5B4B641C3EAB0E, 8C2DBCAC08DDB41E2B44E257C55FA2D0272959B308EFF9EAF5FF9AE1E4A0AA39 ] BthPan          C:\windows\system32\DRIVERS\bthpan.sys
22:25:35.0865 0x0ed0  BthPan - ok
22:25:35.0911 0x0ed0  [ 1153DE2E4F5941E10C399CB5592F78A1, 2B88AF246D62F72FA9F5B921B0375AE59A0F263672472D5EC9FDB5CA5EF51C31 ] BTHPORT         C:\windows\System32\Drivers\BTHport.sys
22:25:35.0958 0x0ed0  BTHPORT - ok
22:25:36.0021 0x0ed0  [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv         C:\windows\system32\bthserv.dll
22:25:36.0021 0x0ed0  bthserv - ok
22:25:36.0067 0x0ed0  [ C81E9413A25A439F436B1D4B6A0CF9E9, A4C290163207AED22C70C7F90B28F6FC24892889643D60D915059405AC5A4A72 ] BTHUSB          C:\windows\System32\Drivers\BTHUSB.sys
22:25:36.0083 0x0ed0  BTHUSB - ok
22:25:36.0130 0x0ed0  [ 92C5B845803F3662637EB691AC0B250F, FD5807316C548D858B48C91E2BCEAF61B6F5D4361ED0751BBF6AA66B00AF51D5 ] btusbflt        C:\windows\system32\drivers\btusbflt.sys
22:25:36.0145 0x0ed0  btusbflt - ok
22:25:36.0177 0x0ed0  btwaudio - ok
22:25:36.0192 0x0ed0  btwavdt - ok
22:25:36.0223 0x0ed0  btwl2cap - ok
22:25:36.0239 0x0ed0  btwrchid - ok
22:25:36.0286 0x0ed0  [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs            C:\windows\system32\DRIVERS\cdfs.sys
22:25:36.0286 0x0ed0  cdfs - ok
22:25:36.0364 0x0ed0  [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom           C:\windows\system32\DRIVERS\cdrom.sys
22:25:36.0379 0x0ed0  cdrom - ok
22:25:36.0426 0x0ed0  [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc     C:\windows\System32\certprop.dll
22:25:36.0442 0x0ed0  CertPropSvc - ok
22:25:36.0457 0x0ed0  [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass        C:\windows\system32\drivers\circlass.sys
22:25:36.0457 0x0ed0  circlass - ok
22:25:36.0504 0x0ed0  [ 635181E0E9BBF16871BF5380D71DB02D, 58D5150C6F3B9F1730FFDF3A8A2ABF5FF207F9785BD66C0C1E03A0F1C223A26A ] CLFS            C:\windows\system32\CLFS.sys
22:25:36.0535 0x0ed0  CLFS - ok
22:25:36.0691 0x0ed0  [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:25:36.0801 0x0ed0  clr_optimization_v2.0.50727_32 - ok
22:25:36.0925 0x0ed0  [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:25:36.0988 0x0ed0  clr_optimization_v4.0.30319_32 - ok
22:25:37.0019 0x0ed0  [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt          C:\windows\system32\DRIVERS\CmBatt.sys
22:25:37.0019 0x0ed0  CmBatt - ok
22:25:37.0050 0x0ed0  [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide          C:\windows\system32\drivers\cmdide.sys
22:25:37.0050 0x0ed0  cmdide - ok
22:25:37.0144 0x0ed0  [ 85449EEBE8F8EBD6481EFBF0F352B4EB, E6FF04970C5A5BFDE7297A86C1C7B9BFE2E0F976A1A1AFB874CEB488DC6151CC ] CNG             C:\windows\system32\Drivers\cng.sys
22:25:37.0191 0x0ed0  CNG - ok
22:25:37.0237 0x0ed0  [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt        C:\windows\system32\drivers\compbatt.sys
22:25:37.0237 0x0ed0  Compbatt - ok
22:25:37.0284 0x0ed0  [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus    C:\windows\system32\DRIVERS\CompositeBus.sys
22:25:37.0284 0x0ed0  CompositeBus - ok
22:25:37.0300 0x0ed0  COMSysApp - ok
22:25:37.0331 0x0ed0  [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk         C:\windows\system32\drivers\crcdisk.sys
22:25:37.0331 0x0ed0  crcdisk - ok
22:25:37.0409 0x0ed0  [ 7CA1BECEA5DE2643ADDAD32670E7A4C9, E3AB4CC52A97E3855D7EAB87363F807FDD2162ED8C76A036CD71549ED64E7797 ] CryptSvc        C:\windows\system32\cryptsvc.dll
22:25:37.0425 0x0ed0  CryptSvc - ok
22:25:37.0503 0x0ed0  [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] DcomLaunch      C:\windows\system32\rpcss.dll
22:25:37.0565 0x0ed0  DcomLaunch - ok
22:25:37.0627 0x0ed0  [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc       C:\windows\System32\defragsvc.dll
22:25:37.0674 0x0ed0  defragsvc - ok
22:25:37.0705 0x0ed0  [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC            C:\windows\system32\Drivers\dfsc.sys
22:25:37.0721 0x0ed0  DfsC - ok
22:25:37.0768 0x0ed0  [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp            C:\windows\system32\dhcpcore.dll
22:25:37.0799 0x0ed0  Dhcp - ok
22:25:37.0830 0x0ed0  [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache        C:\windows\system32\drivers\discache.sys
22:25:37.0830 0x0ed0  discache - ok
22:25:37.0877 0x0ed0  [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk            C:\windows\system32\drivers\disk.sys
22:25:37.0877 0x0ed0  Disk - ok
22:25:37.0986 0x0ed0  [ 33EF4861F19A0736B11314AAD9AE28D0, 4C4B84365D85758E3263B88F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache        C:\windows\System32\dnsrslvr.dll
22:25:38.0002 0x0ed0  Dnscache - ok
22:25:38.0064 0x0ed0  [ 366BA8FB4B7BB7435E3B9EACB3843F67, 65B7C61ACF34F1F0149045AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc         C:\windows\System32\dot3svc.dll
22:25:38.0080 0x0ed0  dot3svc - ok
22:25:38.0127 0x0ed0  [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS             C:\windows\system32\dps.dll
22:25:38.0158 0x0ed0  DPS - ok
22:25:38.0205 0x0ed0  [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud         C:\windows\system32\drivers\drmkaud.sys
22:25:38.0205 0x0ed0  drmkaud - ok
22:25:38.0298 0x0ed0  [ 71BC35067CABC02C9453AEAA42B2E43E, 713B19F2C08EA5E4C087F7A74A8856932CF33E19D63384823DD4E02ED8798619 ] DXGKrnl         C:\windows\System32\drivers\dxgkrnl.sys
22:25:38.0361 0x0ed0  DXGKrnl - ok
22:25:38.0392 0x0ed0  [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost         C:\windows\System32\eapsvc.dll
22:25:38.0407 0x0ed0  EapHost - ok
22:25:38.0751 0x0ed0  [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv           C:\windows\system32\drivers\evbdx.sys
22:25:39.0047 0x0ed0  ebdrv - ok
22:25:39.0109 0x0ed0  [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] EFS             C:\windows\System32\lsass.exe
22:25:39.0109 0x0ed0  EFS - ok
22:25:39.0234 0x0ed0  [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor         C:\windows\system32\drivers\elxstor.sys
22:25:39.0281 0x0ed0  elxstor - ok
22:25:39.0297 0x0ed0  [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev          C:\windows\system32\drivers\errdev.sys
22:25:39.0312 0x0ed0  ErrDev - ok
22:25:39.0375 0x0ed0  [ 907C561D5F01133F247E4E2E74E20E30, D76FE6BFA8E0C57F6052215C520C0D2414D14125D45CFA157D73EC594BC2448B ] ETD             C:\windows\system32\DRIVERS\ETD.sys
22:25:39.0390 0x0ed0  ETD - ok
22:25:39.0453 0x0ed0  [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem     C:\windows\system32\es.dll
22:25:39.0499 0x0ed0  EventSystem - ok
22:25:39.0531 0x0ed0  [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat           C:\windows\system32\drivers\exfat.sys
22:25:39.0562 0x0ed0  exfat - ok
22:25:39.0577 0x0ed0  [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat         C:\windows\system32\drivers\fastfat.sys
22:25:39.0593 0x0ed0  fastfat - ok
22:25:39.0718 0x0ed0  [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax             C:\windows\system32\fxssvc.exe
22:25:39.0780 0x0ed0  Fax - ok
22:25:39.0827 0x0ed0  [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc             C:\windows\system32\drivers\fdc.sys
22:25:39.0827 0x0ed0  fdc - ok
22:25:39.0858 0x0ed0  [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost         C:\windows\system32\fdPHost.dll
22:25:39.0858 0x0ed0  fdPHost - ok
22:25:39.0874 0x0ed0  [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub        C:\windows\system32\fdrespub.dll
22:25:39.0889 0x0ed0  FDResPub - ok
22:25:39.0921 0x0ed0  [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo        C:\windows\system32\drivers\fileinfo.sys
22:25:39.0921 0x0ed0  FileInfo - ok
22:25:39.0952 0x0ed0  [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace       C:\windows\system32\drivers\filetrace.sys
22:25:39.0952 0x0ed0  Filetrace - ok
22:25:39.0967 0x0ed0  [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk        C:\windows\system32\drivers\flpydisk.sys
22:25:39.0967 0x0ed0  flpydisk - ok
22:25:40.0014 0x0ed0  [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr          C:\windows\system32\drivers\fltmgr.sys
22:25:40.0045 0x0ed0  FltMgr - ok
22:25:40.0201 0x0ed0  [ E12C4928B32ACE04610259647F072635, B71B9C2DF45F33C4DAC88435129B08B0BCDBBE82E8C3AD0A95F00137CC8B619F ] FontCache       C:\windows\system32\FntCache.dll
22:25:40.0295 0x0ed0  FontCache - ok
22:25:40.0373 0x0ed0  [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
22:25:40.0389 0x0ed0  FontCache3.0.0.0 - ok
22:25:40.0435 0x0ed0  [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends       C:\windows\system32\drivers\FsDepends.sys
22:25:40.0435 0x0ed0  FsDepends - ok
22:25:40.0498 0x0ed0  [ D909075FA72C090F27AA926C32CB4612, F8610C20C4DD499D5B4ACEBD7107E52E25B6449AEED58D1A203F7D654B55C4DF ] fssfltr         C:\windows\system32\DRIVERS\fssfltr.sys
22:25:40.0513 0x0ed0  fssfltr - ok
22:25:40.0701 0x0ed0  [ 4CE9DAC1518FF7E77BD213E6394B9D77, D7D0D29DF93AC7DC5F85E385EEB45306C7BD87ACA7AAC5A8D47893D120C32C03 ] fsssvc          C:\Program Files\Windows Live\Family Safety\fsssvc.exe
22:25:40.0825 0x0ed0  fsssvc - ok
22:25:40.0888 0x0ed0  [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A44583520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec          C:\windows\system32\drivers\Fs_Rec.sys
22:25:40.0888 0x0ed0  Fs_Rec - ok
22:25:40.0950 0x0ed0  [ E306A24D9694C724FA2491278BF50FDB, 1D246B9C28550640EACBF8CF9DC980FD75106B92832D392FEBEF0C7012353091 ] fvevol          C:\windows\system32\DRIVERS\fvevol.sys
22:25:40.0981 0x0ed0  fvevol - ok
22:25:41.0028 0x0ed0  [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx        C:\windows\system32\drivers\gagp30kx.sys
22:25:41.0044 0x0ed0  gagp30kx - ok
22:25:41.0153 0x0ed0  [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc           C:\windows\System32\gpsvc.dll
22:25:41.0215 0x0ed0  gpsvc - ok
22:25:41.0278 0x0ed0  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate         C:\Program Files\Google\Update\GoogleUpdate.exe
22:25:41.0293 0x0ed0  gupdate - ok
22:25:41.0309 0x0ed0  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem        C:\Program Files\Google\Update\GoogleUpdate.exe
22:25:41.0325 0x0ed0  gupdatem - ok
22:25:41.0356 0x0ed0  [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir        C:\windows\system32\drivers\hcw85cir.sys
22:25:41.0371 0x0ed0  hcw85cir - ok
22:25:41.0434 0x0ed0  [ A5EF29D5315111C80A5C1ABAD14C8972, A181DA72E946F121C3F4A19438C547B0BFD15138AB1DB5465945EC89DF1F6B0A ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
22:25:41.0465 0x0ed0  HdAudAddService - ok
22:25:41.0496 0x0ed0  [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus        C:\windows\system32\DRIVERS\HDAudBus.sys
22:25:41.0512 0x0ed0  HDAudBus - ok
22:25:41.0527 0x0ed0  [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt         C:\windows\system32\drivers\HidBatt.sys
22:25:41.0527 0x0ed0  HidBatt - ok
22:25:41.0559 0x0ed0  [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth          C:\windows\system32\drivers\hidbth.sys
22:25:41.0559 0x0ed0  HidBth - ok
22:25:41.0590 0x0ed0  [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr           C:\windows\system32\drivers\hidir.sys
22:25:41.0590 0x0ed0  HidIr - ok
22:25:41.0637 0x0ed0  [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv         C:\windows\system32\hidserv.dll
22:25:41.0652 0x0ed0  hidserv - ok
22:25:41.0699 0x0ed0  [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb          C:\windows\system32\drivers\hidusb.sys
22:25:41.0699 0x0ed0  HidUsb - ok
22:25:41.0746 0x0ed0  [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc          C:\windows\system32\kmsvc.dll
22:25:41.0761 0x0ed0  hkmsvc - ok
22:25:41.0824 0x0ed0  [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\windows\system32\ListSvc.dll
22:25:41.0855 0x0ed0  HomeGroupListener - ok
22:25:41.0902 0x0ed0  [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\windows\system32\provsvc.dll
22:25:41.0933 0x0ed0  HomeGroupProvider - ok
22:25:41.0995 0x0ed0  [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD          C:\windows\system32\drivers\HpSAMD.sys
22:25:41.0995 0x0ed0  HpSAMD - ok
22:25:42.0073 0x0ed0  [ 871917B07A141BFF43D76D8844D48106, 30C702008D0EE57D63F74864967DD19A55A268E77E42B5B3CC73037AD51D2987 ] HTTP            C:\windows\system32\drivers\HTTP.sys
22:25:42.0120 0x0ed0  HTTP - ok
22:25:42.0151 0x0ed0  [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy        C:\windows\system32\drivers\hwpolicy.sys
22:25:42.0167 0x0ed0  hwpolicy - ok
22:25:42.0198 0x0ed0  [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt        C:\windows\system32\DRIVERS\i8042prt.sys
22:25:42.0214 0x0ed0  i8042prt - ok
22:25:42.0292 0x0ed0  [ D80AA0907748D7CC8EFAB3773F32629B, BEE52B4E6099B5B8CA5D6D4DE4A90B124AC7E3EE4A69565BFDD227AF261B6242 ] iaStor          C:\windows\system32\drivers\iaStor.sys
22:25:42.0323 0x0ed0  iaStor - ok
22:25:42.0417 0x0ed0  [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE0105025B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV         C:\windows\system32\drivers\iaStorV.sys
22:25:42.0448 0x0ed0  iaStorV - ok
22:25:42.0573 0x0ed0  [ C521D7EB6497BB1AF6AFA89E322FB43C, BDDCFCBB5B76A9295669B5AC9F732D6127199ED5C300770B554C4E4794F66BB7 ] idsvc           C:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
22:25:42.0666 0x0ed0  idsvc - ok
22:25:42.0697 0x0ed0  IEEtwCollectorService - ok
22:25:43.0181 0x0ed0  [ BA41E1BBA410212CE6D30E0DAC47972B, C1D8E5C95EADD9E2083275C1DA633F0B773B65EABEBC0F52224FF1156CBBE8C1 ] igfx            C:\windows\system32\DRIVERS\igdkmd32.sys
22:25:43.0649 0x0ed0  igfx - ok
22:25:43.0758 0x0ed0  [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp           C:\windows\system32\drivers\iirsp.sys
22:25:43.0758 0x0ed0  iirsp - ok
22:25:43.0945 0x0ed0  [ B9C54120F46392100478F58F374E5709, A28EE8B0988F580D5984E815FC78DF41B169260814234AA0E453375542D0957B ] IKEEXT          C:\windows\System32\ikeext.dll
22:25:44.0023 0x0ed0  IKEEXT - ok
22:25:44.0632 0x0ed0  [ BF9866875EDF86AAE24DD8BD9418DEFF, 1990295C5CE9A556EAE5D973E1D91B6A6056D68EF8BC2D1CC68A539ADEA8B2D0 ] IntcAzAudAddService C:\windows\system32\drivers\RTKVHDA.sys
22:25:44.0866 0x0ed0  IntcAzAudAddService - ok
22:25:44.0944 0x0ed0  [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide        C:\windows\system32\drivers\intelide.sys
22:25:44.0959 0x0ed0  intelide - ok
22:25:45.0006 0x0ed0  [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm        C:\windows\system32\DRIVERS\intelppm.sys
22:25:45.0006 0x0ed0  intelppm - ok
22:25:45.0069 0x0ed0  [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum       C:\windows\system32\ipbusenum.dll
22:25:45.0069 0x0ed0  IPBusEnum - ok
22:25:45.0100 0x0ed0  [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver  C:\windows\system32\DRIVERS\ipfltdrv.sys
22:25:45.0100 0x0ed0  IpFilterDriver - ok
22:25:45.0178 0x0ed0  [ 58F67245D041FBE7AF88F4EAF79DF0FA, 67468D6A46FF4D87AD321BFEA42F2FC843D09AA292A119C76D4D795D06028F96 ] iphlpsvc        C:\windows\System32\iphlpsvc.dll
22:25:45.0287 0x0ed0  iphlpsvc - ok
22:25:45.0303 0x0ed0  [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV         C:\windows\system32\drivers\IPMIDrv.sys
22:25:45.0318 0x0ed0  IPMIDRV - ok
22:25:45.0334 0x0ed0  [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT           C:\windows\system32\drivers\ipnat.sys
22:25:45.0349 0x0ed0  IPNAT - ok
22:25:45.0381 0x0ed0  [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM          C:\windows\system32\drivers\irenum.sys
22:25:45.0381 0x0ed0  IRENUM - ok
22:25:45.0396 0x0ed0  [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp          C:\windows\system32\drivers\isapnp.sys
22:25:45.0412 0x0ed0  isapnp - ok
22:25:45.0443 0x0ed0  [ CB7A9ABB12B8415BCE5D74994C7BA3AE, 464BFF3F5EEE985BE075E23E1813F5CB82A9A0771A92C6D889B13B867BCDF647 ] iScsiPrt        C:\windows\system32\drivers\msiscsi.sys
22:25:45.0474 0x0ed0  iScsiPrt - ok
22:25:45.0490 0x0ed0  [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass        C:\windows\system32\DRIVERS\kbdclass.sys
22:25:45.0505 0x0ed0  kbdclass - ok
22:25:45.0537 0x0ed0  [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid          C:\windows\system32\drivers\kbdhid.sys
22:25:45.0537 0x0ed0  kbdhid - ok
22:25:45.0568 0x0ed0  [ 3EB803312987FF44265C87CB960DF6AB, D6F44702F92089A0C847044A3933F7311D6A72C4647C3FECB35CDBF96A913A40 ] kbfiltr         C:\windows\system32\DRIVERS\kbfiltr.sys
22:25:45.0583 0x0ed0  kbfiltr - ok
22:25:45.0599 0x0ed0  [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] KeyIso          C:\windows\system32\lsass.exe
22:25:45.0599 0x0ed0  KeyIso - ok
22:25:45.0677 0x0ed0  [ F286830298323272260332D6ABC905C1, FF4CD182A95CA53119B228690D682EE9214BE131A0DBCB09B6189FBEBBFF902C ] KSecDD          C:\windows\system32\Drivers\ksecdd.sys
22:25:45.0693 0x0ed0  KSecDD - ok
22:25:45.0708 0x0ed0  [ D7C760D57B1656DD748B9E4AB6CB5A51, F8AE4185A6A9F7005DEFF1FDC03F395C6189825B482B8C650637FD29DE93AB68 ] KSecPkg         C:\windows\system32\Drivers\ksecpkg.sys
22:25:45.0724 0x0ed0  KSecPkg - ok
22:25:45.0786 0x0ed0  [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm           C:\windows\system32\msdtckrm.dll
22:25:45.0849 0x0ed0  KtmRm - ok
22:25:45.0880 0x0ed0  [ 1A91EAAD2D73758140B3B7B6AD736573, 5D2B355B01E4A01BEE32E219960ED701AE419581ACC2E792E36E5C53F7ED88CA ] L1C             C:\windows\system32\DRIVERS\L1C62x86.sys
22:25:45.0895 0x0ed0  L1C - ok
22:25:45.0942 0x0ed0  [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB5060356A3B07449712B21B50E03378BEF04AF180F9 ] LanmanServer    C:\windows\system32\srvsvc.dll
22:25:45.0973 0x0ed0  LanmanServer - ok
22:25:46.0020 0x0ed0  [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\windows\System32\wkssvc.dll
22:25:46.0036 0x0ed0  LanmanWorkstation - ok
22:25:46.0098 0x0ed0  [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio          C:\windows\system32\DRIVERS\lltdio.sys
22:25:46.0098 0x0ed0  lltdio - ok
22:25:46.0145 0x0ed0  [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc         C:\windows\System32\lltdsvc.dll
22:25:46.0176 0x0ed0  lltdsvc - ok
22:25:46.0192 0x0ed0  [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts         C:\windows\System32\lmhsvc.dll
22:25:46.0192 0x0ed0  lmhosts - ok
22:25:46.0223 0x0ed0  [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC          C:\windows\system32\drivers\lsi_fc.sys
22:25:46.0239 0x0ed0  LSI_FC - ok
22:25:46.0270 0x0ed0  [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS         C:\windows\system32\drivers\lsi_sas.sys
22:25:46.0270 0x0ed0  LSI_SAS - ok
22:25:46.0301 0x0ed0  [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2        C:\windows\system32\drivers\lsi_sas2.sys
22:25:46.0301 0x0ed0  LSI_SAS2 - ok
22:25:46.0332 0x0ed0  [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI        C:\windows\system32\drivers\lsi_scsi.sys
22:25:46.0332 0x0ed0  LSI_SCSI - ok
22:25:46.0363 0x0ed0  [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv           C:\windows\system32\drivers\luafv.sys
22:25:46.0379 0x0ed0  luafv - ok
22:25:46.0410 0x0ed0  [ 4470E3C1E0C3378E4CAB137893C12C3A, CA8E66356F0E671D5454E561E7EAD74DE25DCF53BE452369F96ECACFA8709489 ] MBAMProtector   C:\windows\system32\drivers\mbam.sys
22:25:46.0410 0x0ed0  MBAMProtector - ok
22:25:46.0504 0x0ed0  [ 65085456FD9A74D7F1A999520C299ECB, EA564BC913EF1B8A4CAA9242FC70F525B68CF1F3CA462F63B0B7215B93FE8530 ] MBAMScheduler   C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
22:25:46.0551 0x0ed0  MBAMScheduler - ok
22:25:46.0660 0x0ed0  [ E0D7732F2D2E24B2DB3F67B6750295B8, AA5CA86AF1ACEC900F60339016B3DC55472DB40ADB99186005A7ABE67B7D66FC ] MBAMService     C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
22:25:46.0738 0x0ed0  MBAMService - ok
22:25:46.0769 0x0ed0  [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas         C:\windows\system32\drivers\megasas.sys
22:25:46.0785 0x0ed0  megasas - ok
22:25:46.0847 0x0ed0  [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR          C:\windows\system32\drivers\MegaSR.sys
22:25:46.0878 0x0ed0  MegaSR - ok
22:25:47.0065 0x0ed0  [ 123271BD5237AB991DC5C21FDF8835EB, 004F8F9228EE291A0E36CE33078D572D61733516F9AA5CFC832AF204C6869E89 ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
22:25:47.0081 0x0ed0  Microsoft Office Groove Audit Service - ok
22:25:47.0128 0x0ed0  [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS           C:\windows\system32\mmcss.dll
22:25:47.0128 0x0ed0  MMCSS - ok
22:25:47.0175 0x0ed0  [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem           C:\windows\system32\drivers\modem.sys
22:25:47.0175 0x0ed0  Modem - ok
22:25:47.0221 0x0ed0  [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor         C:\windows\system32\DRIVERS\monitor.sys
22:25:47.0221 0x0ed0  monitor - ok
22:25:47.0284 0x0ed0  [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass        C:\windows\system32\DRIVERS\mouclass.sys
22:25:47.0284 0x0ed0  mouclass - ok
22:25:47.0331 0x0ed0  [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid          C:\windows\system32\drivers\mouhid.sys
22:25:47.0331 0x0ed0  mouhid - ok
22:25:47.0362 0x0ed0  [ FC8771F45ECCCFD89684E38842539B9B, 806DDF2B4830CA866582FE74A521BB7DF26CA0E19013DAF584D3677FB48CC77A ] mountmgr        C:\windows\system32\drivers\mountmgr.sys
22:25:47.0377 0x0ed0  mountmgr - ok
22:25:47.0409 0x0ed0  [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio            C:\windows\system32\drivers\mpio.sys
22:25:47.0424 0x0ed0  mpio - ok
22:25:47.0455 0x0ed0  [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv          C:\windows\system32\drivers\mpsdrv.sys
22:25:47.0455 0x0ed0  mpsdrv - ok
22:25:47.0580 0x0ed0  [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc          C:\windows\system32\mpssvc.dll
22:25:47.0643 0x0ed0  MpsSvc - ok
22:25:47.0705 0x0ed0  [ 21F4B24ACFC79A483515BD986DD9043F, 22681907E02E0B723ABE2CEF0602D36C8EF862E7E2B62A9B40A5EF582E58D7BA ] MRxDAV          C:\windows\system32\drivers\mrxdav.sys
22:25:47.0705 0x0ed0  MRxDAV - ok
22:25:47.0783 0x0ed0  [ 5D16C921E3671636C0EBA3BBAAC5FD25, 5BC107B95CAFC88F51FBB9F657B99944B20627A2B618F263093D7045E4FFD65C ] mrxsmb          C:\windows\system32\DRIVERS\mrxsmb.sys
22:25:47.0783 0x0ed0  mrxsmb - ok
22:25:47.0845 0x0ed0  [ 6D17A4791ACA19328C685D256349FEFC, 012AA3D84EEAAF53780D06D2D11B9727DFC3441F3FAD75BC9E751FB814403668 ] mrxsmb10        C:\windows\system32\DRIVERS\mrxsmb10.sys
22:25:47.0877 0x0ed0  mrxsmb10 - ok
22:25:47.0908 0x0ed0  [ B81F204D146000BE76651A50670A5E9E, 78193D0F967BE9829E53F9B500342934B4B1E1F4CEFC444382959E2061BC3B17 ] mrxsmb20        C:\windows\system32\DRIVERS\mrxsmb20.sys
22:25:47.0923 0x0ed0  mrxsmb20 - ok
22:25:47.0955 0x0ed0  [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci          C:\windows\system32\drivers\msahci.sys
22:25:47.0955 0x0ed0  msahci - ok
22:25:48.0001 0x0ed0  [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1CD0835E8234405BB80084065ED05363B77868397304 ] msdsm           C:\windows\system32\drivers\msdsm.sys
22:25:48.0017 0x0ed0  msdsm - ok
22:25:48.0064 0x0ed0  [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC           C:\windows\System32\msdtc.exe
22:25:48.0079 0x0ed0  MSDTC - ok
22:25:48.0111 0x0ed0  [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs            C:\windows\system32\drivers\Msfs.sys
22:25:48.0111 0x0ed0  Msfs - ok
22:25:48.0126 0x0ed0  [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf       C:\windows\System32\drivers\mshidkmdf.sys
22:25:48.0126 0x0ed0  mshidkmdf - ok
22:25:48.0142 0x0ed0  [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv        C:\windows\system32\drivers\msisadrv.sys
22:25:48.0142 0x0ed0  msisadrv - ok
22:25:48.0204 0x0ed0  [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI         C:\windows\system32\iscsiexe.dll
22:25:48.0235 0x0ed0  MSiSCSI - ok
22:25:48.0251 0x0ed0  msiserver - ok
22:25:48.0298 0x0ed0  [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV         C:\windows\system32\drivers\MSKSSRV.sys
22:25:48.0313 0x0ed0  MSKSSRV - ok
22:25:48.0345 0x0ed0  [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK        C:\windows\system32\drivers\MSPCLOCK.sys
22:25:48.0345 0x0ed0  MSPCLOCK - ok
22:25:48.0360 0x0ed0  [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM           C:\windows\system32\drivers\MSPQM.sys
22:25:48.0360 0x0ed0  MSPQM - ok
22:25:48.0391 0x0ed0  [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC           C:\windows\system32\drivers\MsRPC.sys
22:25:48.0391 0x0ed0  MsRPC - ok
22:25:48.0438 0x0ed0  [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios        C:\windows\system32\DRIVERS\mssmbios.sys
22:25:48.0438 0x0ed0  mssmbios - ok
22:25:48.0454 0x0ed0  [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE           C:\windows\system32\drivers\MSTEE.sys
22:25:48.0469 0x0ed0  MSTEE - ok
22:25:48.0485 0x0ed0  [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig        C:\windows\system32\drivers\MTConfig.sys
22:25:48.0485 0x0ed0  MTConfig - ok
22:25:48.0516 0x0ed0  [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup             C:\windows\system32\Drivers\mup.sys
22:25:48.0516 0x0ed0  Mup - ok
22:25:48.0579 0x0ed0  [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent        C:\windows\system32\qagentRT.dll
22:25:48.0641 0x0ed0  napagent - ok
22:25:48.0703 0x0ed0  [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP     C:\windows\system32\DRIVERS\nwifi.sys
22:25:48.0735 0x0ed0  NativeWifiP - ok
22:25:48.0844 0x0ed0  [ 8C9C922D71F1CD4DEF73F186416B7896, 15FF43CD90C7913F83B35F2E7986561584588E8A45196EBD965C3A355836A9C7 ] NDIS            C:\windows\system32\drivers\ndis.sys
22:25:48.0937 0x0ed0  NDIS - ok
22:25:49.0000 0x0ed0  [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap         C:\windows\system32\DRIVERS\ndiscap.sys
22:25:49.0015 0x0ed0  NdisCap - ok
22:25:49.0031 0x0ed0  [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi        C:\windows\system32\DRIVERS\ndistapi.sys
22:25:49.0031 0x0ed0  NdisTapi - ok
22:25:49.0047 0x0ed0  [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio         C:\windows\system32\DRIVERS\ndisuio.sys
22:25:49.0062 0x0ed0  Ndisuio - ok
22:25:49.0078 0x0ed0  [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan         C:\windows\system32\DRIVERS\ndiswan.sys
22:25:49.0093 0x0ed0  NdisWan - ok
22:25:49.0125 0x0ed0  [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy         C:\windows\system32\drivers\NDProxy.sys
22:25:49.0125 0x0ed0  NDProxy - ok
22:25:49.0140 0x0ed0  [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS         C:\windows\system32\DRIVERS\netbios.sys
22:25:49.0156 0x0ed0  NetBIOS - ok
22:25:49.0171 0x0ed0  [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT           C:\windows\system32\DRIVERS\netbt.sys
22:25:49.0187 0x0ed0  NetBT - ok
22:25:49.0218 0x0ed0  [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] Netlogon        C:\windows\system32\lsass.exe
22:25:49.0234 0x0ed0  Netlogon - ok
22:25:49.0312 0x0ed0  [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman          C:\windows\System32\netman.dll
22:25:49.0343 0x0ed0  Netman - ok
22:25:49.0421 0x0ed0  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:25:49.0483 0x0ed0  NetMsmqActivator - ok
22:25:49.0561 0x0ed0  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:25:49.0577 0x0ed0  NetPipeActivator - ok
22:25:49.0655 0x0ed0  [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm        C:\windows\System32\netprofm.dll
22:25:49.0702 0x0ed0  netprofm - ok
22:25:49.0764 0x0ed0  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:25:49.0780 0x0ed0  NetTcpActivator - ok
22:25:49.0795 0x0ed0  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:25:49.0811 0x0ed0  NetTcpPortSharing - ok
22:25:49.0873 0x0ed0  [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960         C:\windows\system32\drivers\nfrd960.sys
22:25:49.0873 0x0ed0  nfrd960 - ok
22:25:49.0936 0x0ed0  [ 374071043F9E4231EE43BE2BB48DD36D, C4FA3FC40CC49DBBB91901D14210A55D3831FAC9F9B3FF45FCA7F5CF242C9E92 ] NlaSvc          C:\windows\System32\nlasvc.dll
22:25:49.0967 0x0ed0  NlaSvc - ok
22:25:49.0983 0x0ed0  [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs            C:\windows\system32\drivers\Npfs.sys
22:25:49.0983 0x0ed0  Npfs - ok
22:25:50.0029 0x0ed0  [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi             C:\windows\system32\nsisvc.dll
22:25:50.0029 0x0ed0  nsi - ok
22:25:50.0076 0x0ed0  [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy        C:\windows\system32\drivers\nsiproxy.sys
22:25:50.0092 0x0ed0  nsiproxy - ok
Naposledy upravil(a) DsD dne 21 led 2014 22:39, celkem upraveno 1 x.

DsD
nováček
Příspěvky: 34
Registrován: leden 14
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu hjt - vysoké vytížení procesoru

Příspěvekod DsD » 21 led 2014 22:38

Kód: Vybrat vše

22:25:50.0232 0x0ed0  [ 5E43D2B0EE64123D4880DFA6626DEFDE, 164413A22DE58B19EA2B4120034B46D6BE1F424B80C3421E10BE5C81153D049F ] Ntfs            C:\windows\system32\drivers\Ntfs.sys
22:25:50.0341 0x0ed0  Ntfs - ok
22:25:50.0404 0x0ed0  [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null            C:\windows\system32\drivers\Null.sys
22:25:50.0404 0x0ed0  Null - ok
22:25:50.0451 0x0ed0  [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid          C:\windows\system32\drivers\nvraid.sys
22:25:50.0466 0x0ed0  nvraid - ok
22:25:50.0513 0x0ed0  [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970DD29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor          C:\windows\system32\drivers\nvstor.sys
22:25:50.0529 0x0ed0  nvstor - ok
22:25:50.0560 0x0ed0  [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp          C:\windows\system32\drivers\nv_agp.sys
22:25:50.0575 0x0ed0  nv_agp - ok
22:25:50.0763 0x0ed0  [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv          C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
22:25:50.0794 0x0ed0  odserv - ok
22:25:50.0825 0x0ed0  [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394        C:\windows\system32\drivers\ohci1394.sys
22:25:50.0841 0x0ed0  ohci1394 - ok
22:25:50.0919 0x0ed0  [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose             C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
22:25:50.0934 0x0ed0  ose - ok
22:25:50.0997 0x0ed0  [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc        C:\windows\system32\pnrpsvc.dll
22:25:51.0028 0x0ed0  p2pimsvc - ok
22:25:51.0090 0x0ed0  [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc          C:\windows\system32\p2psvc.dll
22:25:51.0137 0x0ed0  p2psvc - ok
22:25:51.0168 0x0ed0  [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport         C:\windows\system32\drivers\parport.sys
22:25:51.0168 0x0ed0  Parport - ok
22:25:51.0231 0x0ed0  [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0EEBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr         C:\windows\system32\drivers\partmgr.sys
22:25:51.0231 0x0ed0  partmgr - ok
22:25:51.0246 0x0ed0  [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm          C:\windows\system32\drivers\parvdm.sys
22:25:51.0246 0x0ed0  Parvdm - ok
22:25:51.0309 0x0ed0  [ 358AB7956D3160000726574083DFC8A6, 6CAFD4D1B8AB8C1D167ADC018985DDAB5AC2CBFFB3434FE6390F14AF50C19025 ] PcaSvc          C:\windows\System32\pcasvc.dll
22:25:51.0340 0x0ed0  PcaSvc - ok
22:25:51.0371 0x0ed0  [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD569416C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci             C:\windows\system32\drivers\pci.sys
22:25:51.0387 0x0ed0  pci - ok
22:25:51.0418 0x0ed0  [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide          C:\windows\system32\drivers\pciide.sys
22:25:51.0433 0x0ed0  pciide - ok
22:25:51.0480 0x0ed0  [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia          C:\windows\system32\drivers\pcmcia.sys
22:25:51.0511 0x0ed0  pcmcia - ok
22:25:51.0527 0x0ed0  [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw             C:\windows\system32\drivers\pcw.sys
22:25:51.0527 0x0ed0  pcw - ok
22:25:51.0589 0x0ed0  [ 9E0104BA49F4E6973749A02BF41344ED, B32F39F38DB48D77FBA884DEE34112BAB81CCEF5DD2EAAA12D9589D73D2BB116 ] PEAUTH          C:\windows\system32\drivers\peauth.sys
22:25:51.0636 0x0ed0  PEAUTH - ok
22:25:51.0886 0x0ed0  [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA402044824DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla             C:\windows\system32\pla.dll
22:25:52.0073 0x0ed0  pla - ok
22:25:52.0151 0x0ed0  [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay        C:\windows\system32\umpnpmgr.dll
22:25:52.0198 0x0ed0  PlugPlay - ok
22:25:52.0229 0x0ed0  [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg     C:\windows\system32\pnrpauto.dll
22:25:52.0245 0x0ed0  PNRPAutoReg - ok
22:25:52.0291 0x0ed0  [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc         C:\windows\system32\pnrpsvc.dll
22:25:52.0307 0x0ed0  PNRPsvc - ok
22:25:52.0401 0x0ed0  [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent     C:\windows\System32\ipsecsvc.dll
22:25:52.0447 0x0ed0  PolicyAgent - ok
22:25:52.0494 0x0ed0  [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power           C:\windows\system32\umpo.dll
22:25:52.0525 0x0ed0  Power - ok
22:25:52.0572 0x0ed0  [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport    C:\windows\system32\DRIVERS\raspptp.sys
22:25:52.0588 0x0ed0  PptpMiniport - ok
22:25:52.0619 0x0ed0  [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB04007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor       C:\windows\system32\drivers\processr.sys
22:25:52.0635 0x0ed0  Processor - ok
22:25:52.0713 0x0ed0  [ CADEFAC453040E370A1BDFF3973BE00D, 2E3DD8DA702468D8AB0F3CE27188B1991D4CB015FB36BAE4C6E7996B61CF49B8 ] ProfSvc         C:\windows\system32\profsvc.dll
22:25:52.0744 0x0ed0  ProfSvc - ok
22:25:52.0759 0x0ed0  [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] ProtectedStorage C:\windows\system32\lsass.exe
22:25:52.0775 0x0ed0  ProtectedStorage - ok
22:25:52.0822 0x0ed0  [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched          C:\windows\system32\DRIVERS\pacer.sys
22:25:52.0837 0x0ed0  Psched - ok
22:25:53.0056 0x0ed0  [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300          C:\windows\system32\drivers\ql2300.sys
22:25:53.0196 0x0ed0  ql2300 - ok
22:25:53.0243 0x0ed0  [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx          C:\windows\system32\drivers\ql40xx.sys
22:25:53.0259 0x0ed0  ql40xx - ok
22:25:53.0305 0x0ed0  [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE           C:\windows\system32\qwave.dll
22:25:53.0337 0x0ed0  QWAVE - ok
22:25:53.0352 0x0ed0  [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv        C:\windows\system32\drivers\qwavedrv.sys
22:25:53.0352 0x0ed0  QWAVEdrv - ok
22:25:53.0383 0x0ed0  [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd          C:\windows\system32\DRIVERS\rasacd.sys
22:25:53.0399 0x0ed0  RasAcd - ok
22:25:53.0446 0x0ed0  [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn     C:\windows\system32\DRIVERS\AgileVpn.sys
22:25:53.0446 0x0ed0  RasAgileVpn - ok
22:25:53.0477 0x0ed0  [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto         C:\windows\System32\rasauto.dll
22:25:53.0493 0x0ed0  RasAuto - ok
22:25:53.0539 0x0ed0  [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp         C:\windows\system32\DRIVERS\rasl2tp.sys
22:25:53.0555 0x0ed0  Rasl2tp - ok
22:25:53.0602 0x0ed0  [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan          C:\windows\System32\rasmans.dll
22:25:53.0649 0x0ed0  RasMan - ok
22:25:53.0680 0x0ed0  [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe        C:\windows\system32\DRIVERS\raspppoe.sys
22:25:53.0695 0x0ed0  RasPppoe - ok
22:25:53.0742 0x0ed0  [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp         C:\windows\system32\DRIVERS\rassstp.sys
22:25:53.0758 0x0ed0  RasSstp - ok
22:25:53.0789 0x0ed0  [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss           C:\windows\system32\DRIVERS\rdbss.sys
22:25:53.0820 0x0ed0  rdbss - ok
22:25:53.0836 0x0ed0  [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus          C:\windows\system32\drivers\rdpbus.sys
22:25:53.0851 0x0ed0  rdpbus - ok
22:25:53.0867 0x0ed0  [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD          C:\windows\system32\DRIVERS\RDPCDD.sys
22:25:53.0867 0x0ed0  RDPCDD - ok
22:25:53.0898 0x0ed0  [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD        C:\windows\system32\drivers\rdpencdd.sys
22:25:53.0898 0x0ed0  RDPENCDD - ok
22:25:53.0929 0x0ed0  [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP        C:\windows\system32\drivers\rdprefmp.sys
22:25:53.0929 0x0ed0  RDPREFMP - ok
22:25:54.0007 0x0ed0  [ 65375DF758CA1872AB7EBBBA457FD5E6, 8AC7681F51277E799C22FF95FA0B833E9E260D37C0416319FF05B66FB3948005 ] RdpVideoMiniport C:\windows\system32\drivers\rdpvideominiport.sys
22:25:54.0007 0x0ed0  RdpVideoMiniport - ok
22:25:54.0054 0x0ed0  [ F031683E6D1FEA157ABB2FF260B51E61, 83B552819A5964152882C527E1421DBCEAACC74DEB897E3C4B53F52F1467FED3 ] RDPWD           C:\windows\system32\drivers\RDPWD.sys
22:25:54.0085 0x0ed0  RDPWD - ok
22:25:54.0132 0x0ed0  [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost        C:\windows\system32\drivers\rdyboost.sys
22:25:54.0148 0x0ed0  rdyboost - ok
22:25:54.0195 0x0ed0  [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess    C:\windows\System32\mprdim.dll
22:25:54.0195 0x0ed0  RemoteAccess - ok
22:25:54.0257 0x0ed0  [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry  C:\windows\system32\regsvc.dll
22:25:54.0273 0x0ed0  RemoteRegistry - ok
22:25:54.0335 0x0ed0  [ CB928D9E6DAF51879DD6BA8D02F01321, DFD263B67DDF98AE09AF6D6986CBC7BE3206BCE8403AAC51BCF9459E78233D12 ] RFCOMM          C:\windows\system32\DRIVERS\rfcomm.sys
22:25:54.0366 0x0ed0  RFCOMM - ok
22:25:54.0397 0x0ed0  [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper    C:\windows\System32\RpcEpMap.dll
22:25:54.0413 0x0ed0  RpcEptMapper - ok
22:25:54.0460 0x0ed0  [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator      C:\windows\system32\locator.exe
22:25:54.0460 0x0ed0  RpcLocator - ok
22:25:54.0507 0x0ed0  [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs           C:\windows\system32\rpcss.dll
22:25:54.0553 0x0ed0  RpcSs - ok
22:25:54.0616 0x0ed0  [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr          C:\windows\system32\DRIVERS\rspndr.sys
22:25:54.0631 0x0ed0  rspndr - ok
22:25:54.0663 0x0ed0  [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] SamSs           C:\windows\system32\lsass.exe
22:25:54.0663 0x0ed0  SamSs - ok
22:25:54.0694 0x0ed0  [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port        C:\windows\system32\drivers\sbp2port.sys
22:25:54.0694 0x0ed0  sbp2port - ok
22:25:54.0756 0x0ed0  [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr        C:\windows\System32\SCardSvr.dll
22:25:54.0787 0x0ed0  SCardSvr - ok
22:25:54.0819 0x0ed0  [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter        C:\windows\system32\DRIVERS\scfilter.sys
22:25:54.0819 0x0ed0  scfilter - ok
22:25:54.0943 0x0ed0  [ A04BB13F8A72F8B6E8B4071723E4E336, E63287FF71C39CBF64C3347C455324C8437F9CF398153E269543588B65389502 ] Schedule        C:\windows\system32\schedsvc.dll
22:25:55.0021 0x0ed0  Schedule - ok
22:25:55.0053 0x0ed0  [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc     C:\windows\System32\certprop.dll
22:25:55.0053 0x0ed0  SCPolicySvc - ok
22:25:55.0099 0x0ed0  [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC          C:\windows\System32\SDRSVC.dll
22:25:55.0131 0x0ed0  SDRSVC - ok
22:25:55.0177 0x0ed0  [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv          C:\windows\system32\drivers\secdrv.sys
22:25:55.0177 0x0ed0  secdrv - ok
22:25:55.0209 0x0ed0  [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AAF39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon        C:\windows\system32\seclogon.dll
22:25:55.0224 0x0ed0  seclogon - ok
22:25:55.0255 0x0ed0  [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS            C:\windows\System32\sens.dll
22:25:55.0255 0x0ed0  SENS - ok
22:25:55.0271 0x0ed0  [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum         C:\windows\system32\drivers\serenum.sys
22:25:55.0287 0x0ed0  Serenum - ok
22:25:55.0318 0x0ed0  [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial          C:\windows\system32\drivers\serial.sys
22:25:55.0318 0x0ed0  Serial - ok
22:25:55.0333 0x0ed0  [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse        C:\windows\system32\drivers\sermouse.sys
22:25:55.0349 0x0ed0  sermouse - ok
22:25:55.0396 0x0ed0  [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv      C:\windows\system32\sessenv.dll
22:25:55.0443 0x0ed0  SessionEnv - ok
22:25:55.0474 0x0ed0  [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk         C:\windows\system32\drivers\sffdisk.sys
22:25:55.0474 0x0ed0  sffdisk - ok
22:25:55.0489 0x0ed0  [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc        C:\windows\system32\drivers\sffp_mmc.sys
22:25:55.0489 0x0ed0  sffp_mmc - ok
22:25:55.0505 0x0ed0  [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd         C:\windows\system32\drivers\sffp_sd.sys
22:25:55.0505 0x0ed0  sffp_sd - ok
22:25:55.0521 0x0ed0  [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy         C:\windows\system32\drivers\sfloppy.sys
22:25:55.0536 0x0ed0  sfloppy - ok
22:25:55.0614 0x0ed0  [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess    C:\windows\System32\ipnathlp.dll
22:25:55.0661 0x0ed0  SharedAccess - ok
22:25:55.0739 0x0ed0  [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\windows\System32\shsvcs.dll
22:25:55.0786 0x0ed0  ShellHWDetection - ok
22:25:55.0817 0x0ed0  [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp          C:\windows\system32\drivers\sisagp.sys
22:25:55.0817 0x0ed0  sisagp - ok
22:25:55.0864 0x0ed0  [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2        C:\windows\system32\drivers\SiSRaid2.sys
22:25:55.0864 0x0ed0  SiSRaid2 - ok
22:25:55.0880 0x0ed0  [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4        C:\windows\system32\drivers\sisraid4.sys
22:25:55.0895 0x0ed0  SiSRaid4 - ok
22:25:55.0958 0x0ed0  [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate     C:\Program Files\Skype\Updater\Updater.exe
22:25:55.0989 0x0ed0  SkypeUpdate - ok
22:25:56.0020 0x0ed0  [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb             C:\windows\system32\DRIVERS\smb.sys
22:25:56.0036 0x0ed0  Smb - ok
22:25:56.0114 0x0ed0  [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP        C:\windows\System32\snmptrap.exe
22:25:56.0114 0x0ed0  SNMPTRAP - ok
22:25:56.0129 0x0ed0  [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr           C:\windows\system32\drivers\spldr.sys
22:25:56.0145 0x0ed0  spldr - ok
22:25:56.0207 0x0ed0  [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler         C:\windows\System32\spoolsv.exe
22:25:56.0238 0x0ed0  Spooler - ok
22:25:56.0566 0x0ed0  [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc          C:\windows\system32\sppsvc.exe
22:25:56.0831 0x0ed0  sppsvc - ok
22:25:56.0878 0x0ed0  [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify     C:\windows\system32\sppuinotify.dll
22:25:56.0894 0x0ed0  sppuinotify - ok
22:25:56.0956 0x0ed0  [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv             C:\windows\system32\DRIVERS\srv.sys
22:25:56.0987 0x0ed0  srv - ok
22:25:57.0050 0x0ed0  [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2            C:\windows\system32\DRIVERS\srv2.sys
22:25:57.0081 0x0ed0  srv2 - ok
22:25:57.0128 0x0ed0  [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet          C:\windows\system32\DRIVERS\srvnet.sys
22:25:57.0128 0x0ed0  srvnet - ok
22:25:57.0190 0x0ed0  [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV         C:\windows\System32\ssdpsrv.dll
22:25:57.0221 0x0ed0  SSDPSRV - ok
22:25:57.0252 0x0ed0  [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc         C:\windows\system32\sstpsvc.dll
22:25:57.0268 0x0ed0  SstpSvc - ok
22:25:57.0330 0x0ed0  [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor        C:\windows\system32\drivers\stexstor.sys
22:25:57.0346 0x0ed0  stexstor - ok
22:25:57.0440 0x0ed0  [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc          C:\windows\System32\wiaservc.dll
22:25:57.0518 0x0ed0  StiSvc - ok
22:25:57.0533 0x0ed0  [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum          C:\windows\system32\DRIVERS\swenum.sys
22:25:57.0533 0x0ed0  swenum - ok
22:25:57.0596 0x0ed0  [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv           C:\windows\System32\swprv.dll
22:25:57.0658 0x0ed0  swprv - ok
22:25:57.0861 0x0ed0  [ 36650D618CA34C9D357DFD3D89B2C56F, 7C3774E53DCF32CB3A4B3504E32D2A651E18467FA0A6AC4C7993C696741B704B ] SysMain         C:\windows\system32\sysmain.dll
22:25:57.0986 0x0ed0  SysMain - ok
22:25:58.0064 0x0ed0  [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\windows\System32\TabSvc.dll
22:25:58.0095 0x0ed0  TabletInputService - ok
22:25:58.0142 0x0ed0  [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv         C:\windows\System32\tapisrv.dll
22:25:58.0188 0x0ed0  TapiSrv - ok
22:25:58.0235 0x0ed0  [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS             C:\windows\System32\tbssvc.dll
22:25:58.0266 0x0ed0  TBS - ok
22:25:58.0438 0x0ed0  [ CA59F7C570AF70BC174F477CFE2D9EE3, F09E4E14207A2AC6957D2C0AC8707D0E356A9087FA6DC703373242D8EEB026BD ] Tcpip           C:\windows\system32\drivers\tcpip.sys
22:25:58.0610 0x0ed0  Tcpip - ok
22:25:58.0781 0x0ed0  [ CA59F7C570AF70BC174F477CFE2D9EE3, F09E4E14207A2AC6957D2C0AC8707D0E356A9087FA6DC703373242D8EEB026BD ] TCPIP6          C:\windows\system32\DRIVERS\tcpip.sys
22:25:58.0890 0x0ed0  TCPIP6 - ok
22:25:58.0968 0x0ed0  [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] tcpipreg        C:\windows\system32\drivers\tcpipreg.sys
22:25:58.0968 0x0ed0  tcpipreg - ok
22:25:59.0031 0x0ed0  [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE          C:\windows\system32\drivers\tdpipe.sys
22:25:59.0031 0x0ed0  TDPIPE - ok
22:25:59.0078 0x0ed0  [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP           C:\windows\system32\drivers\tdtcp.sys
22:25:59.0078 0x0ed0  TDTCP - ok
22:25:59.0093 0x0ed0  [ B459575348C20E8121D6039DA063C704, 1B4328A9EA39FF5A57F258E02254D04B73455F1DF7C997C13702A8B2F12D0347 ] tdx             C:\windows\system32\DRIVERS\tdx.sys
22:25:59.0109 0x0ed0  tdx - ok
22:25:59.0140 0x0ed0  [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD          C:\windows\system32\DRIVERS\termdd.sys
22:25:59.0140 0x0ed0  TermDD - ok
22:25:59.0234 0x0ed0  [ 382C804C92811BE57829D8E550A900E2, 5F52C2E7902024CF1C9CC0069F411C3F19CCA3DB209F437FA0F3932D4898EB50 ] TermService     C:\windows\System32\termsrv.dll
22:25:59.0312 0x0ed0  TermService - ok
22:25:59.0343 0x0ed0  [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes          C:\windows\system32\themeservice.dll
22:25:59.0358 0x0ed0  Themes - ok
22:25:59.0390 0x0ed0  [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER     C:\windows\system32\mmcss.dll
22:25:59.0405 0x0ed0  THREADORDER - ok
22:25:59.0468 0x0ed0  [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks          C:\windows\System32\trkwks.dll
22:25:59.0483 0x0ed0  TrkWks - ok
22:25:59.0561 0x0ed0  [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
22:25:59.0577 0x0ed0  TrustedInstaller - ok
22:25:59.0639 0x0ed0  [ B37B08F2E5EEB1A37E448E09BACE1101, 32CC9E06B88BAB6FAB4696B744548DFCE9199A7FD2BA8B019F269CA75895852C ] tssecsrv        C:\windows\system32\DRIVERS\tssecsrv.sys
22:25:59.0655 0x0ed0  tssecsrv - ok
22:25:59.0717 0x0ed0  [ 9CE253214ACAA5A7D323327D2055EFAA, 15E7DB578EDF36DD2FD5BA960C3941B2353037323B6B96702CDCDC07588EA724 ] TsUsbFlt        C:\windows\system32\drivers\tsusbflt.sys
22:25:59.0733 0x0ed0  TsUsbFlt - ok
22:25:59.0764 0x0ed0  [ 57C527AF84748B5C2F5178C499C0B81F, 2FF1F25BA16F8984E9F2CE4DE663F261BAF267EDF10D466A52BB211C567F763C ] TsUsbGD         C:\windows\system32\drivers\TsUsbGD.sys
22:25:59.0780 0x0ed0  TsUsbGD - ok
22:25:59.0842 0x0ed0  [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel          C:\windows\system32\DRIVERS\tunnel.sys
22:25:59.0858 0x0ed0  tunnel - ok
22:25:59.0873 0x0ed0  [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35          C:\windows\system32\drivers\uagp35.sys
22:25:59.0889 0x0ed0  uagp35 - ok
22:25:59.0920 0x0ed0  [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs            C:\windows\system32\DRIVERS\udfs.sys
22:25:59.0951 0x0ed0  udfs - ok
22:26:00.0014 0x0ed0  [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect       C:\windows\system32\UI0Detect.exe
22:26:00.0045 0x0ed0  UI0Detect - ok
22:26:00.0076 0x0ed0  [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx        C:\windows\system32\drivers\uliagpkx.sys
22:26:00.0092 0x0ed0  uliagpkx - ok
22:26:00.0138 0x0ed0  [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus           C:\windows\system32\DRIVERS\umbus.sys
22:26:00.0138 0x0ed0  umbus - ok
22:26:00.0170 0x0ed0  [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass          C:\windows\system32\drivers\umpass.sys
22:26:00.0170 0x0ed0  UmPass - ok
22:26:00.0248 0x0ed0  [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost        C:\windows\System32\upnphost.dll
22:26:00.0294 0x0ed0  upnphost - ok
22:26:00.0341 0x0ed0  [ 71D97F1A3CC47A56728F7A400A3F8295, ED3FDB73D8A98D9BAF702C0F5C7AD79D525D19DCE1487D442536913BEA5C7F15 ] usbccgp         C:\windows\system32\DRIVERS\usbccgp.sys
22:26:00.0357 0x0ed0  usbccgp - ok
22:26:00.0404 0x0ed0  [ 2352AB5F9F8F097BF9D41D5A4718A041, 25BC7828C625B9B2A5110C25B230C5828CEC18EC97ECF9EC4745E8930CBF472C ] usbcir          C:\windows\system32\drivers\usbcir.sys
22:26:00.0419 0x0ed0  usbcir - ok
22:26:00.0466 0x0ed0  [ C4FB8E7ADEA9B5CEEA885A1B504B7E40, 3E0AE5D236890452F2EA33504309A7E5FE49C567FF6F68A83A5987F05ED01BF0 ] usbehci         C:\windows\system32\drivers\usbehci.sys
22:26:00.0482 0x0ed0  usbehci - ok
22:26:00.0544 0x0ed0  [ 86AA95ACB611001E26CD2C0145F2225A, 584D26E8C9407A4E717DCBF2D3819DB441C2D455B5FDA6654FBA3794E19B4D51 ] usbhub          C:\windows\system32\DRIVERS\usbhub.sys
22:26:00.0575 0x0ed0  usbhub - ok
22:26:00.0622 0x0ed0  [ DCDF9855145A14DFCA0AB32308871961, 9A21013AD032195D54CE655DE5363E78BB74CC55C40B889520B478892F4BA40A ] usbohci         C:\windows\system32\drivers\usbohci.sys
22:26:00.0622 0x0ed0  usbohci - ok
22:26:00.0669 0x0ed0  [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint        C:\windows\system32\drivers\usbprint.sys
22:26:00.0684 0x0ed0  usbprint - ok
22:26:00.0762 0x0ed0  [ F991AB9CC6B908DB552166768176896A, AD8E7A16B23B244B7F834622D4E38B5844193C6E31EF96F61E0E2EA16C945026 ] USBSTOR         C:\windows\system32\DRIVERS\USBSTOR.SYS
22:26:00.0778 0x0ed0  USBSTOR - ok
22:26:00.0809 0x0ed0  [ 8E51D04175BAA14C4F79AA5F6D248770, 6CE2E45E272734A5D1D0C4CE2BD7B61C61C7538903E87203E376495D198EFBD0 ] usbuhci         C:\windows\system32\drivers\usbuhci.sys
22:26:00.0825 0x0ed0  usbuhci - ok
22:26:00.0887 0x0ed0  [ DE014425522610BEDCA3821BB8C0F1D5, D6FEA0DF07F89834AEEE8C02CC7FD41068D758B6CCECE2EEE5CF4B9DB646FA1E ] usbvideo        C:\windows\System32\Drivers\usbvideo.sys
22:26:00.0918 0x0ed0  usbvideo - ok
22:26:00.0965 0x0ed0  [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms           C:\windows\System32\uxsms.dll
22:26:00.0981 0x0ed0  UxSms - ok
22:26:01.0012 0x0ed0  [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] VaultSvc        C:\windows\system32\lsass.exe
22:26:01.0012 0x0ed0  VaultSvc - ok
22:26:01.0074 0x0ed0  [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFEF9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot        C:\windows\system32\drivers\vdrvroot.sys
22:26:01.0074 0x0ed0  vdrvroot - ok
22:26:01.0168 0x0ed0  [ C3CD30495687C2A2F66A65CA6FD89BE9, 582E4706C1D6A151020D14B26C7BF166F4E42BDD6E410F30EC452469270C5E9B ] vds             C:\windows\System32\vds.exe
22:26:01.0246 0x0ed0  vds - ok
22:26:01.0262 0x0ed0  [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga             C:\windows\system32\DRIVERS\vgapnp.sys
22:26:01.0277 0x0ed0  vga - ok
22:26:01.0293 0x0ed0  [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave         C:\windows\System32\drivers\vga.sys
22:26:01.0308 0x0ed0  VgaSave - ok
22:26:01.0340 0x0ed0  [ 5461686CCA2FDA57B024547733AB42E3, 2721D0659AA890172FCAD4EC4D926B58ACD0EE4887DA51545DC7237420D5BF84 ] vhdmp           C:\windows\system32\drivers\vhdmp.sys
22:26:01.0371 0x0ed0  vhdmp - ok
22:26:01.0418 0x0ed0  [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp          C:\windows\system32\drivers\viaagp.sys
22:26:01.0418 0x0ed0  viaagp - ok
22:26:01.0449 0x0ed0  [ E02F079A6AA107F06B16549C6E5C7B74, B530DCE3EE4F285B3D5F69F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7           C:\windows\system32\drivers\viac7.sys
22:26:01.0449 0x0ed0  ViaC7 - ok
22:26:01.0480 0x0ed0  [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFED70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide          C:\windows\system32\drivers\viaide.sys
22:26:01.0480 0x0ed0  viaide - ok
22:26:01.0511 0x0ed0  [ 4C63E00F2F4B5F86AB48A58CD990F212, 9796BD4B9CFEEEAF57C5E332A732EFC2770B21F9B35301A5D202F5FC52C1E035 ] volmgr          C:\windows\system32\drivers\volmgr.sys
22:26:01.0511 0x0ed0  volmgr - ok
22:26:01.0558 0x0ed0  [ B5BB72067DDDDBBFB04B2F89FF8C3C87, 65B9AD55F43940A5FDD88B6EC5034A7E375DF8E6F5F1AE6519A4BD6B7E992EBC ] volmgrx         C:\windows\system32\drivers\volmgrx.sys
22:26:01.0589 0x0ed0  volmgrx - ok
22:26:01.0652 0x0ed0  [ F497F67932C6FA693D7DE2780631CFE7, DAE544ED99D2CF570DA31343BD87D2F856D0D13529656D38E1BF854C77F017F6 ] volsnap         C:\windows\system32\drivers\volsnap.sys
22:26:01.0698 0x0ed0  volsnap - ok
22:26:01.0745 0x0ed0  [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A315FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid         C:\windows\system32\drivers\vsmraid.sys
22:26:01.0761 0x0ed0  vsmraid - ok
22:26:01.0932 0x0ed0  [ 209A3B1901B83AEB8527ED211CCE9E4C, 1A431F6409F8E0531F600F8F988ECECECB902DA26BBAAF1DE74A5CAC29A7CB44 ] VSS             C:\windows\system32\vssvc.exe
22:26:02.0057 0x0ed0  VSS - ok
22:26:02.0104 0x0ed0  [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB523DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus        C:\windows\system32\DRIVERS\vwifibus.sys
22:26:02.0104 0x0ed0  vwifibus - ok
22:26:02.0135 0x0ed0  [ 7090D3436EEB4E7DA3373090A23448F7, 3A130B28F2BFA7DCEC8596C4CE4E187B019F5ECF1AAC8DD1BBDE9CBD2428FEC2 ] vwififlt        C:\windows\system32\DRIVERS\vwififlt.sys
22:26:02.0135 0x0ed0  vwififlt - ok
22:26:02.0182 0x0ed0  [ 55187FD710E27D5095D10A472C8BAF1C, AE298E2D3BA366BCBDC092C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time         C:\windows\system32\w32time.dll
22:26:02.0229 0x0ed0  W32Time - ok
22:26:02.0244 0x0ed0  [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen        C:\windows\system32\drivers\wacompen.sys
22:26:02.0260 0x0ed0  WacomPen - ok
22:26:02.0291 0x0ed0  [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] WANARP          C:\windows\system32\DRIVERS\wanarp.sys
22:26:02.0291 0x0ed0  WANARP - ok
22:26:02.0307 0x0ed0  [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] Wanarpv6        C:\windows\system32\DRIVERS\wanarp.sys
22:26:02.0322 0x0ed0  Wanarpv6 - ok
22:26:02.0463 0x0ed0  [ 691E3285E53DCA558E1A84667F13E15A, 12EDB66EF8FC100402BEA221F354D3BD5542F6DDF715B6E7D873D6BAE7E3D329 ] wbengine        C:\windows\system32\wbengine.exe
22:26:02.0572 0x0ed0  wbengine - ok
22:26:02.0619 0x0ed0  [ 9614B5D29DC76AC3C29F6D2D3AA70E67, A2FFB92F0030B4CD771E862DA575ECCF2F3A5B4B85858C1241A0C59262C0EC88 ] WbioSrvc        C:\windows\System32\wbiosrvc.dll
22:26:02.0634 0x0ed0  WbioSrvc - ok
22:26:02.0697 0x0ed0  [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F86C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc         C:\windows\System32\wcncsvc.dll
22:26:02.0728 0x0ed0  wcncsvc - ok
22:26:02.0744 0x0ed0  [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710DA81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
22:26:02.0759 0x0ed0  WcsPlugInService - ok
22:26:02.0806 0x0ed0  [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E6945FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd              C:\windows\system32\drivers\wd.sys
22:26:02.0806 0x0ed0  Wd - ok
22:26:02.0900 0x0ed0  [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000        C:\windows\system32\drivers\Wdf01000.sys
22:26:02.0962 0x0ed0  Wdf01000 - ok
22:26:02.0993 0x0ed0  [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiServiceHost  C:\windows\system32\wdi.dll
22:26:03.0009 0x0ed0  WdiServiceHost - ok
22:26:03.0040 0x0ed0  [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiSystemHost   C:\windows\system32\wdi.dll
22:26:03.0040 0x0ed0  WdiSystemHost - ok
22:26:03.0102 0x0ed0  [ 75E8EBD7040CE238684333F97014762A, 2CA0B267FBAEB303D1F8B639D733DC0DE17BA1276CC9096035B4F2BBBED3EF7F ] WebClient       C:\windows\System32\webclnt.dll
22:26:03.0134 0x0ed0  WebClient - ok
22:26:03.0180 0x0ed0  [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F16B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc          C:\windows\system32\wecsvc.dll
22:26:03.0212 0x0ed0  Wecsvc - ok
22:26:03.0258 0x0ed0  [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport   C:\windows\System32\wercplsupport.dll
22:26:03.0274 0x0ed0  wercplsupport - ok
22:26:03.0305 0x0ed0  [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76DA6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc          C:\windows\System32\WerSvc.dll
22:26:03.0321 0x0ed0  WerSvc - ok
22:26:03.0368 0x0ed0  [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf          C:\windows\system32\DRIVERS\wfplwf.sys
22:26:03.0383 0x0ed0  WfpLwf - ok
22:26:03.0399 0x0ed0  [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount        C:\windows\system32\drivers\wimmount.sys
22:26:03.0399 0x0ed0  WIMMount - ok
22:26:03.0586 0x0ed0  [ 082CF481F659FAE0DE51AD060881EB47, BB67D2AF0BB9192D4CCF66C23D80CE5A1B38715556D94E2561DBF8F805FA30A5 ] WinDefend       C:\Program Files\Windows Defender\mpsvc.dll
22:26:03.0664 0x0ed0  WinDefend - ok
22:26:03.0742 0x0ed0  WinHttpAutoProxySvc - ok
22:26:03.0882 0x0ed0  [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt         C:\windows\system32\wbem\WMIsvc.dll
22:26:03.0898 0x0ed0  Winmgmt - ok
22:26:04.0101 0x0ed0  [ 1B91CD34EA3A90AB6A4EF0550174F4CC, 5B6618615EBFBA594C945AD35F5C68DA8C6053892B6D12D626BB6120910D80DC ] WinRM           C:\windows\system32\WsmSvc.dll
22:26:04.0257 0x0ed0  WinRM - ok
22:26:04.0350 0x0ed0  [ A67E5F9A400F3BD1BE3D80613B45F708, E170A8BD31A779403DC9C43ED6483DA8E186512D3EE700B87F6BA292E284E367 ] WinUsb          C:\windows\system32\DRIVERS\WinUsb.sys
22:26:04.0366 0x0ed0  WinUsb - ok
22:26:04.0506 0x0ed0  [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc         C:\windows\System32\wlansvc.dll
22:26:04.0616 0x0ed0  Wlansvc - ok
22:26:04.0725 0x0ed0  [ 6067ACEF367E79914AF628FA1E9B5330, 491A705267B48C103E00B26BBD21FA8829DB03A88343CBC27264CEE5DE8C8DEF ] wlcrasvc        C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
22:26:04.0725 0x0ed0  wlcrasvc - ok
22:26:05.0021 0x0ed0  [ 0A70F4022EC2E14C159EFC4F69AA2477, FF248136576F9803762C54DE5439D3411B52DCBC95B93176A5DAB857967D9AC4 ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
22:26:05.0208 0x0ed0  wlidsvc - ok
22:26:05.0255 0x0ed0  [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi         C:\windows\system32\DRIVERS\wmiacpi.sys
22:26:05.0255 0x0ed0  WmiAcpi - ok
22:26:05.0333 0x0ed0  [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062ADBB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv        C:\windows\system32\wbem\WmiApSrv.exe
22:26:05.0380 0x0ed0  wmiApSrv - ok
22:26:05.0583 0x0ed0  [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc   C:\Program Files\Windows Media Player\wmpnetwk.exe
22:26:05.0754 0x0ed0  WMPNetworkSvc - ok
22:26:05.0864 0x0ed0  [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC449D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc          C:\windows\System32\wpcsvc.dll
22:26:05.0879 0x0ed0  WPCSvc - ok
22:26:05.0910 0x0ed0  [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C1891750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] WPDBusEnum      C:\windows\system32\wpdbusenum.dll
22:26:05.0926 0x0ed0  WPDBusEnum - ok
22:26:05.0942 0x0ed0  [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BCEF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl         C:\windows\system32\drivers\ws2ifsl.sys
22:26:05.0957 0x0ed0  ws2ifsl - ok
22:26:06.0004 0x0ed0  [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc          C:\windows\System32\wscsvc.dll
22:26:06.0020 0x0ed0  wscsvc - ok
22:26:06.0035 0x0ed0  WSearch - ok
22:26:06.0410 0x0ed0  [ FC3EC24FCE372C89423E015A2AC1A31E, 8D028182CF83667D3E4D148979972D208FA6D9B8540EE47A0A7831B770ECD257 ] wuauserv        C:\windows\system32\wuaueng.dll
22:26:06.0690 0x0ed0  wuauserv - ok
22:26:06.0768 0x0ed0  [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf          C:\windows\system32\drivers\WudfPf.sys
22:26:06.0784 0x0ed0  WudfPf - ok
22:26:06.0831 0x0ed0  [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd          C:\windows\system32\DRIVERS\WUDFRd.sys
22:26:06.0846 0x0ed0  WUDFRd - ok
22:26:06.0909 0x0ed0  [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc         C:\windows\System32\WUDFSvc.dll
22:26:06.0924 0x0ed0  wudfsvc - ok
22:26:06.0971 0x0ed0  [ 3C5E51C05BE9B56EAFF4E388C3AB25E4, 10D9FDEDAB1FB2E76D54661AFA5C1A6B1B0980525F38F5D061537077841C6AEE ] WwanSvc         C:\windows\System32\wwansvc.dll
22:26:07.0018 0x0ed0  WwanSvc - ok
22:26:07.0065 0x0ed0  ================ Scan global ===============================
22:26:07.0127 0x0ed0  [ DAB748AE0439955ED2FA22357533DDDB, 73EDD402C7479DDCE1998D0C7E99E1EC2974F64EFC33A851439CC85D09EDCDF9 ] C:\windows\system32\basesrv.dll
22:26:07.0174 0x0ed0  [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\windows\system32\winsrv.dll
22:26:07.0236 0x0ed0  [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\windows\system32\winsrv.dll
22:26:07.0299 0x0ed0  [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\windows\system32\sxssrv.dll
22:26:07.0346 0x0ed0  [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6, D7BC4ED605B32274B45328FD9914FB0E7B90D869A38F0E6F94FB1BF4E9E2B407 ] C:\windows\system32\services.exe
22:26:07.0392 0x0ed0  [ Global ] - ok
22:26:07.0392 0x0ed0  ================ Scan MBR ==================================
22:26:07.0408 0x0ed0  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
22:26:07.0829 0x0ed0  \Device\Harddisk0\DR0 - ok
22:26:07.0845 0x0ed0  ================ Scan VBR ==================================
22:26:07.0876 0x0ed0  [ 4DA68F6D440A05FA609F70375D58E80B ] \Device\Harddisk0\DR0\Partition1
22:26:07.0876 0x0ed0  \Device\Harddisk0\DR0\Partition1 - ok
22:26:07.0938 0x0ed0  [ 5938BF22459907897AC24B19BF6D331B ] \Device\Harddisk0\DR0\Partition2
22:26:07.0938 0x0ed0  \Device\Harddisk0\DR0\Partition2 - ok
22:26:07.0938 0x0ed0  Waiting for KSN requests completion. In queue: 32
22:26:08.0952 0x0ed0  Waiting for KSN requests completion. In queue: 32
22:26:09.0966 0x0ed0  Waiting for KSN requests completion. In queue: 32
22:26:11.0058 0x0ed0  Win FW state via NFP2: enabled
22:26:13.0851 0x0ed0  ============================================================
22:26:13.0851 0x0ed0  Scan finished
22:26:13.0851 0x0ed0  ============================================================
22:26:13.0882 0x0b0c  Detected object count: 0
22:26:13.0882 0x0b0c  Actual detected object count: 0
22:28:37.0995 0x0c64  Deinitialize success

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu hjt - vysoké vytížení procesoru

Příspěvekod jaro3 » 21 led 2014 23:01

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

DsD
nováček
Příspěvky: 34
Registrován: leden 14
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu hjt - vysoké vytížení procesoru

Příspěvekod DsD » 22 led 2014 08:55

Musím říct, že jsem zaznamenal zhoršení, pravděpodobně kvůli tomu, že jeden z programů vyresetoval nastavení chromu, kde jsem měl nainstalovaný nový flash player.

ComboFix 14-01-22.01 - Lukas 22.01.2014 8:28.1.2 - x86
Microsoft Windows 7 Starter 6.1.7601.1.1250.420.1029.18.2038.1413 [GMT 1:00]
Spuštěný z: c:\users\Lukas\Desktop\ComboFix.exe
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\system32\Thumbs.db
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-12-22 do 2014-01-22 )))))))))))))))))))))))))))))))
.
.
2014-01-22 07:42 . 2014-01-22 07:42 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-01-21 11:55 . 2014-01-21 21:20 -------- d-----w- C:\AdwCleaner
2014-01-20 12:01 . 2014-01-20 12:01 -------- d-----w- c:\programdata\Malwarebytes
2014-01-20 12:01 . 2013-04-04 13:50 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-01-20 12:01 . 2014-01-20 12:01 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2014-01-18 14:04 . 2014-01-18 14:04 -------- d-----w- c:\program files\Opera
2014-01-07 13:23 . 2014-01-16 07:39 -------- d-----w- c:\program files\VNT
2013-12-26 19:23 . 2013-11-26 07:32 1928192 ----a-w- c:\windows\system32\inetcpl.cpl
2013-12-26 19:23 . 2013-11-26 08:16 4243968 ----a-w- c:\windows\system32\jscript9.dll
2013-12-26 19:20 . 2013-09-04 01:15 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2013-12-26 19:20 . 2013-09-04 01:14 76288 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2013-12-26 19:20 . 2013-09-04 01:14 284672 ----a-w- c:\windows\system32\drivers\usbport.sys
2013-12-26 19:20 . 2013-09-04 01:14 43008 ----a-w- c:\windows\system32\drivers\usbehci.sys
2013-12-26 19:20 . 2013-09-04 01:14 20480 ----a-w- c:\windows\system32\drivers\usbohci.sys
2013-12-26 19:20 . 2013-09-04 01:14 24064 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2013-12-26 19:20 . 2013-09-04 01:14 6016 ----a-w- c:\windows\system32\drivers\usbd.sys
2013-12-26 17:37 . 2012-08-23 14:10 12288 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-12-26 17:37 . 2012-08-23 14:44 14848 ----a-w- c:\windows\system32\drivers\rdpvideominiport.sys
2013-12-26 17:37 . 2012-08-23 14:10 13312 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-12-26 17:37 . 2012-08-23 13:52 12800 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2013-12-26 17:34 . 2012-05-04 09:59 514560 ----a-w- c:\windows\system32\qdvd.dll
2013-12-26 17:16 . 2011-02-25 05:30 2616320 ----a-w- c:\windows\explorer.exe
2013-12-26 17:16 . 2013-04-17 07:02 1230336 ----a-w- c:\windows\system32\WindowsCodecs.dll
2013-12-26 16:55 . 2013-12-26 16:55 -------- d-----w- c:\windows\system32\wbem\sk-SK
2013-12-26 16:55 . 2013-12-26 16:55 -------- d-----w- c:\windows\system32\wbem\pl-PL
2013-12-26 16:55 . 2013-12-26 16:55 -------- d-----w- c:\windows\system32\wbem\hu-HU
2013-12-26 12:00 . 2013-12-26 12:07 -------- d-----w- c:\windows\system32\MRT
2013-12-26 11:55 . 2012-07-26 02:32 155136 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2013-12-26 11:55 . 2012-07-26 02:33 66560 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2013-12-26 11:55 . 2012-07-26 03:20 73216 ----a-w- c:\windows\system32\WUDFSvc.dll
2013-12-26 11:55 . 2012-07-26 03:20 172032 ----a-w- c:\windows\system32\WUDFPlatform.dll
2013-12-26 11:55 . 2012-07-26 03:21 196608 ----a-w- c:\windows\system32\WUDFHost.exe
2013-12-26 11:55 . 2012-07-26 03:20 38912 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2013-12-26 11:55 . 2012-07-26 03:20 613888 ----a-w- c:\windows\system32\WUDFx.dll
2013-12-26 11:49 . 2010-02-11 07:10 293376 ----a-w- c:\windows\system32\browserchoice.exe
2013-12-26 11:37 . 2013-05-10 04:56 12625408 ----a-w- c:\windows\system32\wmploc.DLL
2013-12-26 11:37 . 2013-05-10 03:48 164864 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2013-12-26 11:18 . 2013-12-26 11:18 -------- d-----w- c:\windows\Migration
2013-12-26 11:18 . 2013-04-09 23:34 1247744 ----a-w- c:\windows\system32\DWrite.dll
2013-12-25 22:12 . 2013-12-25 22:12 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2013-12-25 21:27 . 2013-12-25 21:27 1052672 ----a-w- c:\program files\Internet Explorer\perf_nt.dll
2013-12-25 21:27 . 2013-12-25 21:27 126464 ----a-w- c:\program files\Internet Explorer\perfcore.dll
2013-12-25 21:24 . 2013-12-25 21:24 69632 ----a-w- c:\windows\system32\smss.exe
2013-12-25 21:24 . 2013-12-25 21:24 640512 ----a-w- c:\windows\system32\advapi32.dll
2013-12-25 21:24 . 2013-12-25 21:24 619520 ----a-w- c:\windows\system32\tdh.dll
2013-12-25 21:24 . 2013-12-25 21:24 3969472 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-12-25 21:24 . 2013-12-25 21:24 1289096 ----a-w- c:\windows\system32\ntdll.dll
2013-12-25 21:24 . 2013-12-25 21:24 3914176 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-12-25 21:24 . 2013-12-25 21:24 38912 ----a-w- c:\windows\system32\csrsrv.dll
2013-12-25 21:23 . 2013-12-25 21:23 240496 ----a-w- c:\windows\system32\drivers\netio.sys
2013-12-25 21:23 . 2013-12-25 21:23 1294272 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-12-25 21:23 . 2013-12-25 21:23 338944 ----a-w- c:\windows\system32\drivers\afd.sys
2013-12-25 21:23 . 2013-12-25 21:23 231424 ----a-w- c:\windows\system32\mswsock.dll
2013-12-25 21:23 . 2013-12-25 21:23 49152 ----a-w- c:\windows\system32\taskhost.exe
2013-12-25 21:14 . 2013-12-25 21:14 1505280 ----a-w- c:\windows\system32\d3d11.dll
2013-12-25 12:51 . 2013-07-04 11:50 530432 ----a-w- c:\windows\system32\comctl32.dll
2013-12-25 12:51 . 2013-07-03 03:36 55808 ----a-w- c:\windows\system32\drivers\hidclass.sys
2013-12-25 12:51 . 2013-07-03 03:36 25728 ----a-w- c:\windows\system32\drivers\hidparse.sys
2013-12-25 12:51 . 2013-04-12 13:45 1211752 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-12-25 12:51 . 2012-11-22 04:45 626688 ----a-w- c:\windows\system32\usp10.dll
2013-12-25 12:51 . 2013-07-09 04:50 652800 ----a-w- c:\windows\system32\rpcrt4.dll
2013-12-25 12:51 . 2012-08-22 17:16 712048 ----a-w- c:\windows\system32\drivers\ndis.sys
2013-12-25 12:51 . 2012-07-04 19:45 33280 ----a-w- c:\windows\system32\drivers\RNDISMP.sys
2013-12-25 12:50 . 2013-07-09 04:52 175104 ----a-w- c:\windows\system32\wintrust.dll
2013-12-25 12:49 . 2013-10-04 01:56 1796096 ----a-w- c:\windows\system32\authui.dll
2013-12-25 12:49 . 2013-10-04 01:58 152576 ----a-w- c:\windows\system32\SmartcardCredentialProvider.dll
2013-12-25 12:49 . 2013-10-04 01:56 168960 ----a-w- c:\windows\system32\credui.dll
2013-12-25 12:47 . 2011-04-29 02:46 310272 ----a-w- c:\windows\system32\drivers\srv2.sys
2013-12-25 12:47 . 2011-04-29 02:46 311808 ----a-w- c:\windows\system32\drivers\srv.sys
2013-12-25 12:47 . 2011-04-29 02:46 114688 ----a-w- c:\windows\system32\drivers\srvnet.sys
2013-12-25 12:47 . 2013-02-12 03:32 15872 ----a-w- c:\windows\system32\drivers\usb8023.sys
2013-12-25 12:44 . 2012-11-02 05:11 376832 ----a-w- c:\windows\system32\dpnet.dll
2013-12-25 12:44 . 2011-02-18 05:39 31232 ----a-w- c:\windows\system32\prevhost.exe
2013-12-25 12:44 . 2013-10-30 02:19 301568 ----a-w- c:\windows\system32\msieftp.dll
2013-12-25 12:42 . 2013-01-24 04:47 196328 ----a-w- c:\windows\system32\drivers\fvevol.sys
2013-12-25 12:42 . 2013-09-25 01:57 247808 ----a-w- c:\windows\system32\schannel.dll
2013-12-25 12:42 . 2013-09-25 02:01 136640 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2013-12-25 12:42 . 2013-09-25 01:56 220160 ----a-w- c:\windows\system32\ncrypt.dll
2013-12-25 12:42 . 2013-07-04 12:16 369848 ----a-w- c:\windows\system32\drivers\cng.sys
2013-12-25 12:42 . 2013-09-25 02:01 67520 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2013-12-25 12:42 . 2013-09-25 01:56 1038848 ----a-w- c:\windows\system32\lsasrv.dll
2013-12-25 12:42 . 2013-09-25 00:49 22016 ----a-w- c:\windows\system32\lsass.exe
2013-12-25 12:42 . 2013-09-25 01:57 99840 ----a-w- c:\windows\system32\sspicli.dll
2013-12-25 12:42 . 2013-09-25 01:57 22016 ----a-w- c:\windows\system32\secur32.dll
2013-12-25 12:42 . 2013-09-25 00:49 15872 ----a-w- c:\windows\system32\sspisrv.dll
2013-12-25 12:41 . 2011-03-03 05:38 132608 ----a-w- c:\windows\system32\dnsrslvr.dll
2013-12-25 12:41 . 2011-03-03 05:36 28672 ----a-w- c:\windows\system32\dnscacheugc.exe
2013-12-25 12:41 . 2011-10-01 04:37 708608 ----a-w- c:\program files\Common Files\System\wab32.dll
2013-12-25 12:39 . 2013-10-19 01:36 159232 ----a-w- c:\windows\system32\imagehlp.dll
2013-12-25 12:39 . 2012-03-01 05:46 19824 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2013-12-25 12:39 . 2012-03-01 05:29 5120 ----a-w- c:\windows\system32\wmi.dll
2013-12-25 12:39 . 2013-10-12 02:04 121856 ----a-w- c:\windows\system32\wshom.ocx
2013-12-25 12:39 . 2013-10-12 01:15 141824 ----a-w- c:\windows\system32\wscript.exe
2013-12-25 12:39 . 2013-10-12 02:03 163840 ----a-w- c:\windows\system32\scrrun.dll
2013-12-25 12:39 . 2013-10-12 01:15 126976 ----a-w- c:\windows\system32\cscript.exe
2013-12-25 12:39 . 2012-08-21 20:12 245760 ----a-w- c:\windows\system32\OxpsConverter.exe
2013-12-25 12:38 . 2011-08-17 04:19 75776 ----a-w- c:\windows\system32\psisrndr.ax
2013-12-25 12:38 . 2011-08-17 04:24 465408 ----a-w- c:\windows\system32\psisdecd.dll
2013-12-25 12:38 . 2011-12-30 05:27 478720 ----a-w- c:\windows\system32\timedate.cpl
2013-12-25 12:38 . 2012-04-28 03:17 183808 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2013-12-25 12:38 . 2011-05-24 10:44 293376 ----a-w- c:\windows\system32\umpnpmgr.dll
2013-12-25 12:38 . 2013-08-01 11:03 729024 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-12-25 12:38 . 2013-04-10 05:18 218984 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2013-12-25 12:37 . 2012-06-06 05:05 1236992 ----a-w- c:\windows\system32\msxml3.dll
2013-12-25 12:37 . 2010-06-26 03:24 2048 ----a-w- c:\windows\system32\msxml3r.dll
2013-12-25 12:37 . 2013-03-19 04:53 186368 ----a-w- c:\windows\system32\wwansvc.dll
2013-12-25 12:37 . 2013-03-19 03:33 40960 ----a-w- c:\windows\system32\wwanprotdim.dll
2013-12-25 12:37 . 2013-05-10 03:20 24576 ----a-w- c:\windows\system32\cryptdlg.dll
2013-12-25 12:36 . 2011-07-09 02:30 223744 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2013-12-25 12:36 . 2011-04-27 02:17 96768 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2013-12-25 12:36 . 2011-04-27 02:17 123904 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2013-12-25 12:36 . 2011-08-27 04:26 571904 ----a-w- c:\windows\system32\oleaut32.dll
2013-12-25 12:36 . 2011-08-27 04:26 233472 ----a-w- c:\windows\system32\oleacc.dll
2013-12-25 12:36 . 2013-11-12 02:07 2048 ----a-w- c:\windows\system32\tzres.dll
2013-12-25 12:35 . 2013-07-20 10:33 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-12-25 12:33 . 2013-04-26 04:55 492544 ----a-w- c:\windows\system32\win32spl.dll
2013-12-25 12:33 . 2012-11-01 04:47 1389568 ----a-w- c:\windows\system32\msxml6.dll
2013-12-25 12:33 . 2011-05-03 04:30 741376 ----a-w- c:\windows\system32\inetcomm.dll
2013-12-25 12:33 . 2013-06-06 04:50 10240 ----a-w- c:\windows\system32\dciman32.dll
2013-12-25 12:33 . 2013-06-06 03:01 295424 ----a-w- c:\windows\system32\atmfd.dll
2013-12-25 12:33 . 2013-06-06 04:52 26112 ----a-w- c:\windows\system32\lpk.dll
2013-12-25 12:33 . 2013-06-06 03:01 34304 ----a-w- c:\windows\system32\atmlib.dll
2013-12-25 12:33 . 2013-06-06 04:51 70656 ----a-w- c:\windows\system32\fontsub.dll
2013-12-25 12:33 . 2013-08-28 00:57 434688 ----a-w- c:\windows\system32\scavengeui.dll
2013-12-25 12:32 . 2013-05-13 03:08 903168 ----a-w- c:\windows\system32\certutil.exe
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-12-26 15:44 . 2013-12-26 15:44 208384 ----a-w- c:\windows\system32\webcheck.dll
2013-12-24 08:00 . 2010-06-24 18:33 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-28 35696]
"HotkeyMon"="AsusSender.exe" [2011-03-11 34728]
"HotkeyService"="AsusSender.exe" [2011-03-11 34728]
"SuperHybridEngine"="AsusSender.exe" [2011-03-11 34728]
"CapsHook"="AsusSender.exe" [2011-03-11 34728]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2010-04-27 9177632]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2010-06-10 548744]
"ASUSPRP"="c:\program files\ASUS\APRP\APRP.EXE" [2011-04-18 2018032]
"DivXMediaServer"="c:\program files\DivX\DivX Media Server\DivXMediaServer.exe" [2013-09-11 450560]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2013-08-29 1861968]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-10-25 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-10-25 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-10-25 150552]
"VNT"="c:\program files\VNT\vntldr.exe" [2014-01-13 202192]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2013-10-23 172192]
R3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys [2009-07-01 43944]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2013-11-26 108032]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 14848]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 49664]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2012-08-23 27136]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
S1 AsUpIO;AsUpIO;c:\windows\system32\drivers\AsUpIO.sys [2010-08-03 11832]
S2 AsusService;Asus Launcher Service;c:\windows\system32\AsusService.exe [2010-12-07 224680]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2010-07-21 102912]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x86.sys [2010-08-24 68208]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-04-04 22856]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-01-16 07:03 1211672 ----a-w- c:\program files\Google\Chrome\Application\32.0.1700.76\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-01-22 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-12-24 08:50]
.
2014-01-21 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-12-24 08:50]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://asus.msn.com
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MIF5BA~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.1
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
BHO-{5054562D-5247-006A-76A7-7A786E7484D7} - c:\program files\AskPartnerNetwork\Toolbar\PTV-RG\Passport.dll
Toolbar-Locked - (no file)
Toolbar-{5054562D-5247-006A-76A7-7A786E7484D7} - c:\program files\AskPartnerNetwork\Toolbar\PTV-RG\Passport.dll
HKLM-Run-EeeSplendidAgent - c:\program files\ASUS\EPC\EeeSplendid\AsAgent.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2014-01-22 08:46:57
ComboFix-quarantined-files.txt 2014-01-22 07:46
.
Před spuštěním: Volných bajtů: 69 809 868 800
Po spuštění: Volných bajtů: 69 579 169 792
.
- - End Of File - - FFFB2AADC8ADD426EE7A81E6286C3932
A36C5E4F47E84449FF07ED3517B43A31

DsD
nováček
Příspěvky: 34
Registrován: leden 14
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu hjt - vysoké vytížení procesoru

Příspěvekod DsD » 22 led 2014 09:37

Bez názvu.png

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu hjt - vysoké vytížení procesoru

Příspěvekod jaro3 » 22 led 2014 11:20

To vypadá na problém s jádrem CPU.

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:

Kód: Vybrat vše

ClearJavaCache::

KillAll::
File::
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

Folder::
c:\program files\Skype\Updater
c:\program files\Google\Update

Driver::
SkypeUpdate

RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)



Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.

Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.

Stáhni si HeavyLoad
http://www.stahuj.centrum.cz/utility_a_ ... ownload/?g[hledano]=&g[oz]=2.4

Aplikace, která prověří stabilitu vašeho počítače. Po zapnutí programu zvolte rychlost obnovení grafu, zapněte vykreslování a povolte obsazování fyzické paměti. Popřípadě můžete zapnout i další funkce programu. Pak můžete test spustit.

Program postupně zabere veškerou dostupnou paměť a test pokračuje. Roste teplota procesoru a dalších zařízení. Pokud je váš počítač na toto všechno připraven, tak zvládne fungovat i jako databázový nebo souborový server. Pokud ne, mohlo by už během testu dojít k pádu systému a možná i poškození některých částí počítače - například přehřání procesoru.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

DsD
nováček
Příspěvky: 34
Registrován: leden 14
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu hjt - vysoké vytížení procesoru

Příspěvekod DsD » 22 led 2014 12:21

ComboFix 14-01-22.01 - Lukas 22.01.2014 11:49:26.2.2 - x86
Microsoft Windows 7 Starter 6.1.7601.1.1250.420.1029.18.2038.1168 [GMT 1:00]
Spuštěný z: c:\users\Lukas\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Lukas\Desktop\CFScript.txt
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Google\Update
c:\program files\Google\Update\1.3.22.3\GoogleCrashHandler.exe
c:\program files\Google\Update\1.3.22.3\GoogleCrashHandler64.exe
c:\program files\Google\Update\1.3.22.3\GoogleUpdate.exe
c:\program files\Google\Update\1.3.22.3\GoogleUpdateBroker.exe
c:\program files\Google\Update\1.3.22.3\GoogleUpdateHelper.msi
c:\program files\Google\Update\1.3.22.3\GoogleUpdateOnDemand.exe
c:\program files\Google\Update\1.3.22.3\GoogleUpdateSetup.exe
c:\program files\Google\Update\1.3.22.3\goopdate.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_am.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_ar.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_bg.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_bn.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_ca.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_cs.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_da.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_de.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_el.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_en-GB.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_en.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_es-419.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_es.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_et.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_fa.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_fi.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_fil.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_fr.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_gu.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_hi.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_hr.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_hu.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_id.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_is.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_it.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_iw.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_ja.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_kn.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_ko.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_lt.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_lv.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_ml.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_mr.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_ms.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_nl.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_no.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_pl.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_pt-BR.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_pt-PT.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_ro.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_ru.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_sk.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_sl.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_sr.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_sv.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_sw.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_ta.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_te.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_th.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_tr.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_uk.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_ur.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_vi.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_zh-CN.dll
c:\program files\Google\Update\1.3.22.3\goopdateres_zh-TW.dll
c:\program files\Google\Update\1.3.22.3\npGoogleUpdate3.dll
c:\program files\Google\Update\1.3.22.3\psmachine.dll
c:\program files\Google\Update\1.3.22.3\psuser.dll
c:\program files\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.22.3\GoogleUpdateSetup.exe
c:\program files\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\32.0.1700.76\32.0.1700.76_31.0.1650.63_chrome_updater.exe
c:\program files\Google\Update\GoogleUpdate.exe
c:\program files\Skype\Updater
c:\program files\Skype\Updater\Updater.dll
c:\program files\Skype\Updater\Updater.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_SkypeUpdate
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_gupdate
-------\Service_gupdatem
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-12-22 do 2014-01-22 )))))))))))))))))))))))))))))))
.
.
2014-01-22 11:00 . 2014-01-22 11:00 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-01-22 10:45 . 2014-01-22 10:45 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{54934E32-DAFF-425C-AEAD-5F54954EFC99}\offreg.dll
2014-01-22 08:24 . 2014-01-22 08:24 -------- d-----w- c:\program files\Lavalys
2014-01-21 11:55 . 2014-01-21 21:20 -------- d-----w- C:\AdwCleaner
2014-01-20 12:01 . 2014-01-20 12:01 -------- d-----w- c:\programdata\Malwarebytes
2014-01-20 12:01 . 2013-04-04 13:50 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-01-20 12:01 . 2014-01-20 12:01 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2014-01-18 14:04 . 2014-01-18 14:04 -------- d-----w- c:\program files\Opera
2014-01-07 13:23 . 2014-01-16 07:39 -------- d-----w- c:\program files\VNT
2013-12-26 19:23 . 2013-11-26 07:32 1928192 ----a-w- c:\windows\system32\inetcpl.cpl
2013-12-26 19:23 . 2013-11-26 08:16 4243968 ----a-w- c:\windows\system32\jscript9.dll
2013-12-26 19:20 . 2013-09-04 01:15 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2013-12-26 19:20 . 2013-09-04 01:14 76288 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2013-12-26 19:20 . 2013-09-04 01:14 284672 ----a-w- c:\windows\system32\drivers\usbport.sys
2013-12-26 19:20 . 2013-09-04 01:14 43008 ----a-w- c:\windows\system32\drivers\usbehci.sys
2013-12-26 19:20 . 2013-09-04 01:14 20480 ----a-w- c:\windows\system32\drivers\usbohci.sys
2013-12-26 19:20 . 2013-09-04 01:14 24064 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2013-12-26 19:20 . 2013-09-04 01:14 6016 ----a-w- c:\windows\system32\drivers\usbd.sys
2013-12-26 17:37 . 2012-08-23 14:10 12288 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-12-26 17:37 . 2012-08-23 14:44 14848 ----a-w- c:\windows\system32\drivers\rdpvideominiport.sys
2013-12-26 17:37 . 2012-08-23 14:10 13312 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-12-26 17:37 . 2012-08-23 13:52 12800 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2013-12-26 17:34 . 2012-05-04 09:59 514560 ----a-w- c:\windows\system32\qdvd.dll
2013-12-26 17:16 . 2011-02-25 05:30 2616320 ----a-w- c:\windows\explorer.exe
2013-12-26 17:16 . 2013-04-17 07:02 1230336 ----a-w- c:\windows\system32\WindowsCodecs.dll
2013-12-26 16:55 . 2013-12-26 16:55 -------- d-----w- c:\windows\system32\wbem\sk-SK
2013-12-26 16:55 . 2013-12-26 16:55 -------- d-----w- c:\windows\system32\wbem\pl-PL
2013-12-26 16:55 . 2013-12-26 16:55 -------- d-----w- c:\windows\system32\wbem\hu-HU
2013-12-26 12:00 . 2013-12-26 12:07 -------- d-----w- c:\windows\system32\MRT
2013-12-26 11:55 . 2012-07-26 02:32 155136 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2013-12-26 11:55 . 2012-07-26 02:33 66560 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2013-12-26 11:55 . 2012-07-26 03:20 73216 ----a-w- c:\windows\system32\WUDFSvc.dll
2013-12-26 11:55 . 2012-07-26 03:20 172032 ----a-w- c:\windows\system32\WUDFPlatform.dll
2013-12-26 11:55 . 2012-07-26 03:21 196608 ----a-w- c:\windows\system32\WUDFHost.exe
2013-12-26 11:55 . 2012-07-26 03:20 38912 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2013-12-26 11:55 . 2012-07-26 03:20 613888 ----a-w- c:\windows\system32\WUDFx.dll
2013-12-26 11:49 . 2010-02-11 07:10 293376 ----a-w- c:\windows\system32\browserchoice.exe
2013-12-26 11:37 . 2013-05-10 04:56 12625408 ----a-w- c:\windows\system32\wmploc.DLL
2013-12-26 11:37 . 2013-05-10 03:48 164864 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2013-12-26 11:18 . 2013-12-26 11:18 -------- d-----w- c:\windows\Migration
2013-12-26 11:18 . 2013-04-09 23:34 1247744 ----a-w- c:\windows\system32\DWrite.dll
2013-12-25 22:12 . 2013-12-25 22:12 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2013-12-25 21:27 . 2013-12-25 21:27 1052672 ----a-w- c:\program files\Internet Explorer\perf_nt.dll
2013-12-25 21:27 . 2013-12-25 21:27 126464 ----a-w- c:\program files\Internet Explorer\perfcore.dll
2013-12-25 21:24 . 2013-12-25 21:24 69632 ----a-w- c:\windows\system32\smss.exe
2013-12-25 21:24 . 2013-12-25 21:24 640512 ----a-w- c:\windows\system32\advapi32.dll
2013-12-25 21:24 . 2013-12-25 21:24 619520 ----a-w- c:\windows\system32\tdh.dll
2013-12-25 21:24 . 2013-12-25 21:24 3969472 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-12-25 21:24 . 2013-12-25 21:24 1289096 ----a-w- c:\windows\system32\ntdll.dll
2013-12-25 21:24 . 2013-12-25 21:24 3914176 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-12-25 21:24 . 2013-12-25 21:24 38912 ----a-w- c:\windows\system32\csrsrv.dll
2013-12-25 21:23 . 2013-12-25 21:23 240496 ----a-w- c:\windows\system32\drivers\netio.sys
2013-12-25 21:23 . 2013-12-25 21:23 1294272 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-12-25 21:23 . 2013-12-25 21:23 338944 ----a-w- c:\windows\system32\drivers\afd.sys
2013-12-25 21:23 . 2013-12-25 21:23 231424 ----a-w- c:\windows\system32\mswsock.dll
2013-12-25 21:23 . 2013-12-25 21:23 49152 ----a-w- c:\windows\system32\taskhost.exe
2013-12-25 21:14 . 2013-12-25 21:14 1505280 ----a-w- c:\windows\system32\d3d11.dll
2013-12-25 12:51 . 2013-07-04 11:50 530432 ----a-w- c:\windows\system32\comctl32.dll
2013-12-25 12:51 . 2013-07-03 03:36 55808 ----a-w- c:\windows\system32\drivers\hidclass.sys
2013-12-25 12:51 . 2013-07-03 03:36 25728 ----a-w- c:\windows\system32\drivers\hidparse.sys
2013-12-25 12:51 . 2013-04-12 13:45 1211752 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-12-25 12:51 . 2012-11-22 04:45 626688 ----a-w- c:\windows\system32\usp10.dll
2013-12-25 12:51 . 2013-07-09 04:50 652800 ----a-w- c:\windows\system32\rpcrt4.dll
2013-12-25 12:51 . 2012-08-22 17:16 712048 ----a-w- c:\windows\system32\drivers\ndis.sys
2013-12-25 12:51 . 2012-07-04 19:45 33280 ----a-w- c:\windows\system32\drivers\RNDISMP.sys
2013-12-25 12:50 . 2013-07-09 04:52 175104 ----a-w- c:\windows\system32\wintrust.dll
2013-12-25 12:49 . 2013-10-04 01:56 1796096 ----a-w- c:\windows\system32\authui.dll
2013-12-25 12:49 . 2013-10-04 01:58 152576 ----a-w- c:\windows\system32\SmartcardCredentialProvider.dll
2013-12-25 12:49 . 2013-10-04 01:56 168960 ----a-w- c:\windows\system32\credui.dll
2013-12-25 12:47 . 2011-04-29 02:46 310272 ----a-w- c:\windows\system32\drivers\srv2.sys
2013-12-25 12:47 . 2011-04-29 02:46 311808 ----a-w- c:\windows\system32\drivers\srv.sys
2013-12-25 12:47 . 2011-04-29 02:46 114688 ----a-w- c:\windows\system32\drivers\srvnet.sys
2013-12-25 12:47 . 2013-02-12 03:32 15872 ----a-w- c:\windows\system32\drivers\usb8023.sys
2013-12-25 12:44 . 2012-11-02 05:11 376832 ----a-w- c:\windows\system32\dpnet.dll
2013-12-25 12:44 . 2011-02-18 05:39 31232 ----a-w- c:\windows\system32\prevhost.exe
2013-12-25 12:44 . 2013-10-30 02:19 301568 ----a-w- c:\windows\system32\msieftp.dll
2013-12-25 12:42 . 2013-01-24 04:47 196328 ----a-w- c:\windows\system32\drivers\fvevol.sys
2013-12-25 12:42 . 2013-09-25 01:57 247808 ----a-w- c:\windows\system32\schannel.dll
2013-12-25 12:42 . 2013-09-25 02:01 136640 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2013-12-25 12:42 . 2013-09-25 01:56 220160 ----a-w- c:\windows\system32\ncrypt.dll
2013-12-25 12:42 . 2013-07-04 12:16 369848 ----a-w- c:\windows\system32\drivers\cng.sys
2013-12-25 12:42 . 2013-09-25 02:01 67520 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2013-12-25 12:42 . 2013-09-25 01:56 1038848 ----a-w- c:\windows\system32\lsasrv.dll
2013-12-25 12:42 . 2013-09-25 00:49 22016 ----a-w- c:\windows\system32\lsass.exe
2013-12-25 12:42 . 2013-09-25 01:57 99840 ----a-w- c:\windows\system32\sspicli.dll
2013-12-25 12:42 . 2013-09-25 01:57 22016 ----a-w- c:\windows\system32\secur32.dll
2013-12-25 12:42 . 2013-09-25 00:49 15872 ----a-w- c:\windows\system32\sspisrv.dll
2013-12-25 12:41 . 2011-03-03 05:38 132608 ----a-w- c:\windows\system32\dnsrslvr.dll
2013-12-25 12:41 . 2011-03-03 05:36 28672 ----a-w- c:\windows\system32\dnscacheugc.exe
2013-12-25 12:41 . 2011-10-01 04:37 708608 ----a-w- c:\program files\Common Files\System\wab32.dll
2013-12-25 12:39 . 2013-10-19 01:36 159232 ----a-w- c:\windows\system32\imagehlp.dll
2013-12-25 12:39 . 2012-03-01 05:46 19824 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2013-12-25 12:39 . 2012-03-01 05:29 5120 ----a-w- c:\windows\system32\wmi.dll
2013-12-25 12:39 . 2013-10-12 02:04 121856 ----a-w- c:\windows\system32\wshom.ocx
2013-12-25 12:39 . 2013-10-12 01:15 141824 ----a-w- c:\windows\system32\wscript.exe
2013-12-25 12:39 . 2013-10-12 02:03 163840 ----a-w- c:\windows\system32\scrrun.dll
2013-12-25 12:39 . 2013-10-12 01:15 126976 ----a-w- c:\windows\system32\cscript.exe
2013-12-25 12:39 . 2012-08-21 20:12 245760 ----a-w- c:\windows\system32\OxpsConverter.exe
2013-12-25 12:38 . 2011-08-17 04:19 75776 ----a-w- c:\windows\system32\psisrndr.ax
2013-12-25 12:38 . 2011-08-17 04:24 465408 ----a-w- c:\windows\system32\psisdecd.dll
2013-12-25 12:38 . 2011-12-30 05:27 478720 ----a-w- c:\windows\system32\timedate.cpl
2013-12-25 12:38 . 2012-04-28 03:17 183808 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2013-12-25 12:38 . 2011-05-24 10:44 293376 ----a-w- c:\windows\system32\umpnpmgr.dll
2013-12-25 12:38 . 2013-08-01 11:03 729024 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-12-25 12:38 . 2013-04-10 05:18 218984 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2013-12-25 12:37 . 2012-06-06 05:05 1236992 ----a-w- c:\windows\system32\msxml3.dll
2013-12-25 12:37 . 2010-06-26 03:24 2048 ----a-w- c:\windows\system32\msxml3r.dll
2013-12-25 12:37 . 2013-03-19 04:53 186368 ----a-w- c:\windows\system32\wwansvc.dll
2013-12-25 12:37 . 2013-03-19 03:33 40960 ----a-w- c:\windows\system32\wwanprotdim.dll
2013-12-25 12:37 . 2013-05-10 03:20 24576 ----a-w- c:\windows\system32\cryptdlg.dll
2013-12-25 12:36 . 2011-07-09 02:30 223744 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2013-12-25 12:36 . 2011-04-27 02:17 96768 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2013-12-25 12:36 . 2011-04-27 02:17 123904 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2013-12-25 12:36 . 2011-08-27 04:26 571904 ----a-w- c:\windows\system32\oleaut32.dll
2013-12-25 12:36 . 2011-08-27 04:26 233472 ----a-w- c:\windows\system32\oleacc.dll
2013-12-25 12:36 . 2013-11-12 02:07 2048 ----a-w- c:\windows\system32\tzres.dll
2013-12-25 12:35 . 2013-07-20 10:33 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-12-25 12:33 . 2013-04-26 04:55 492544 ----a-w- c:\windows\system32\win32spl.dll
2013-12-25 12:33 . 2012-11-01 04:47 1389568 ----a-w- c:\windows\system32\msxml6.dll
2013-12-25 12:33 . 2011-05-03 04:30 741376 ----a-w- c:\windows\system32\inetcomm.dll
2013-12-25 12:33 . 2013-06-06 04:50 10240 ----a-w- c:\windows\system32\dciman32.dll
2013-12-25 12:33 . 2013-06-06 03:01 295424 ----a-w- c:\windows\system32\atmfd.dll
2013-12-25 12:33 . 2013-06-06 04:52 26112 ----a-w- c:\windows\system32\lpk.dll
2013-12-25 12:33 . 2013-06-06 03:01 34304 ----a-w- c:\windows\system32\atmlib.dll
2013-12-25 12:33 . 2013-06-06 04:51 70656 ----a-w- c:\windows\system32\fontsub.dll
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-12-26 15:44 . 2013-12-26 15:44 208384 ----a-w- c:\windows\system32\webcheck.dll
2013-12-24 08:00 . 2010-06-24 18:33 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-28 35696]
"HotkeyMon"="AsusSender.exe" [2011-03-11 34728]
"HotkeyService"="AsusSender.exe" [2011-03-11 34728]
"SuperHybridEngine"="AsusSender.exe" [2011-03-11 34728]
"CapsHook"="AsusSender.exe" [2011-03-11 34728]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2010-04-27 9177632]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2010-06-10 548744]
"ASUSPRP"="c:\program files\ASUS\APRP\APRP.EXE" [2011-04-18 2018032]
"DivXMediaServer"="c:\program files\DivX\DivX Media Server\DivXMediaServer.exe" [2013-09-11 450560]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2013-08-29 1861968]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-10-25 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-10-25 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-10-25 150552]
"VNT"="c:\program files\VNT\vntldr.exe" [2014-01-13 202192]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys [2009-07-01 43944]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2013-11-26 108032]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 14848]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 49664]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2012-08-23 27136]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
S1 AsUpIO;AsUpIO;c:\windows\system32\drivers\AsUpIO.sys [2010-08-03 11832]
S2 AsusService;Asus Launcher Service;c:\windows\system32\AsusService.exe [2010-12-07 224680]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2010-07-21 102912]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x86.sys [2010-08-24 68208]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-04-04 22856]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-01-16 07:03 1211672 ----a-w- c:\program files\Google\Chrome\Application\32.0.1700.76\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://asus.msn.com
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MIF5BA~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.1
.
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\taskhost.exe
c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\system32\conhost.exe
c:\windows\system32\sppsvc.exe
c:\program files\Windows Media Player\wmpnetwk.exe
.
**************************************************************************
.
Celkový čas: 2014-01-22 12:07:25 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-01-22 11:07
ComboFix2.txt 2014-01-22 07:46
.
Před spuštěním: Volných bajtů: 69 658 017 792
Po spuštění: Volných bajtů: 69 109 645 312
.
- - End Of File - - F266412535B0B9B2024355D009A43F1B
A36C5E4F47E84449FF07ED3517B43A31

HJT LOG

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:10:07, on 22.1.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\windows\system32\taskhost.exe
C:\windows\system32\Dwm.exe
C:\windows\system32\wuauclt.exe
C:\windows\Explorer.exe
C:\windows\system32\SearchFilterHost.exe
C:\Users\Lukas\Desktop\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HotkeyMon] AsusSender.exe C:\Program Files\ASUS\HotkeyService\HotKeyMon.exe
O4 - HKLM\..\Run: [HotkeyService] AsusSender.exe C:\Program Files\ASUS\HotkeyService\HotkeyService.exe
O4 - HKLM\..\Run: [SuperHybridEngine] AsusSender.exe C:\Program Files\ASUS\SHE\SuperHybridEngine.exe
O4 - HKLM\..\Run: [CapsHook] AsusSender.exe C:\Program Files\ASUS\CapsHook\CapsHook.exe
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [ETDWare] %ProgramFiles%\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: [ASUSPRP] C:\Program Files\ASUS\APRP\APRP.EXE
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [VNT] C:\Program Files\VNT\vntldr.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MIF5BA~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MIF5BA~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Asus Launcher Service (AsusService) - Unknown owner - C:\windows\system32\AsusService.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

--
End of file - 4450 bytes

ASWMBR LOG

aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2014-01-22 12:15:51
-----------------------------
12:15:51.299 OS Version: Windows 6.1.7601 Service Pack 1
12:15:51.299 Number of processors: 2 586 0x1C0A
12:15:51.299 ComputerName: LUKAS-PC UserName: Lukas
12:15:51.939 Initialize success
12:16:11.538 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-0
12:16:11.554 Disk 0 Vendor: ST925031 0003 Size: 238475MB BusType: 3
12:16:11.726 Disk 0 MBR read successfully
12:16:11.726 Disk 0 MBR scan
12:16:11.741 Disk 0 Windows 7 default MBR code
12:16:11.741 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 102400 MB offset 2048
12:16:11.772 Disk 0 Partition 2 00 1B Hidd FAT32 MSDOS5.0 15360 MB offset 209717248
12:16:11.804 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 120697 MB offset 241174528
12:16:11.819 Disk 0 Partition 4 00 EF EFI FAT 16 MB offset 488361984
12:16:11.835 Disk 0 scanning sectors +488394752
12:16:12.038 Disk 0 scanning C:\windows\system32\drivers
12:16:18.449 Service scanning
12:16:45.110 Modules scanning
12:17:04.454 Disk 0 trace - called modules:
12:17:04.500 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll iaStor.sys
12:17:04.500 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x865f7030]
12:17:04.516 3 CLASSPNP.SYS[887ba59e] -> nt!IofCallDriver -> [0x84b67928]
12:17:04.532 5 ACPI.sys[880d73d4] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-0[0x84764028]
12:17:04.547 Scan finished successfully
12:17:14.656 Disk 0 MBR has been saved successfully to "C:\Users\Lukas\Desktop\MBR.dat"
12:17:14.672 The log file has been saved successfully to "C:\Users\Lukas\Desktop\aswMBR.txt"


Teď jdu spustit ten heavyload

EDIT (10:00): Po 21,5 hodinách jsem to vypl, nezdálo se že by to ještě něco dělalo. CPU bylo celou dobu na 100%


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 109 hostů