Prosím o kontrolu logu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

sim20
Level 3.5
Level 3.5
Příspěvky: 654
Registrován: říjen 11
Pohlaví: Muž
Stav:
Offline

Prosím o kontrolu logu

Příspěvekod sim20 » 27 led 2014 19:22

Dobrý den, začaly mi v Chromu vyskakovat reklamní okna "You could win an ipad!" a podobně. Prosím o kontrolu
Děkuji za pomoc

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:14:30, on 27. 1. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.16384)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-search.com/?affID=1198 ... FF25B41B24
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Google Update] "C:\Users\Simon\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MIF5BA~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MIF5BA~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MIF5BA~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{98BE0671-7976-4BAF-8258-EFCCADA692A5}: NameServer = 172.31.255.254 8.8.8.8
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Overwolf Updater Service (OverwolfUpdaterService) - Overwolf - C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: Thrustmaster FAST service (TmWinService) - Guillemot Corporation - C:\Program Files (x86)\Thrustmaster\TARGET\TmService.exe
O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files (x86)\Tunngle\TnglCtrl.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10180 bytes

Reklama
Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod memphisto » 27 led 2014 19:22

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranìní historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit doèasné soubory Windows, vysypat koš atd.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po probìhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.

Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

sim20
Level 3.5
Level 3.5
Příspěvky: 654
Registrován: říjen 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod sim20 » 27 led 2014 19:47

Malwarebytes Anti-Malware 1.75.0.1300
http://www.malwarebytes.org

Verze: v2014.01.27.08

Windows 8 x64 NTFS
Internet Explorer 11.0.9600.16476
Simon :: SIMON-PC [administrátor]

27. 1. 2014 19:36:45
MBAM-log-2014-01-27 (19-39-33).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 224586
Uplynulý čas: 1 minut, 43 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 1
HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C} (PUP.Optional.OptimzerPro.A) -> Nebyla provedena žádná instrukce.

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 1
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (PUP.Optional.StartPage) -> Špatný: (http://www.delta-search.com/?affID=1198 ... FF25B41B24) Dobrý: (http://www.google.com) -> Nebyla provedena žádná instrukce.

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 2
C:\ProgramData\greatsavver\959.exe (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\YoutubeAdblocker\K5.exe (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.

(konec)

-----------------------------------------------------------------------------------------------------------------------------------------------

# AdwCleaner v3.017 - Report created 27/01/2014 at 19:43:14
# Updated 12/01/2014 by Xplode
# Operating System : Windows 8.1 Pro (64 bits)
# Username : Simon - SIMON-PC
# Running from : C:\Users\Simon\Downloads\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Found C:\Program Files (x86)\greatsavver
Folder Found C:\ProgramData\boost_interprocess
Folder Found C:\ProgramData\greatsavver
Folder Found C:\ProgramData\YoutubeAdblocker
Folder Found C:\Users\Simon\AppData\Local\torch

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Found : HKCU\Software\BI
Key Found : [x64] HKCU\Software\BI
Key Found : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Found : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CA41BB14-E67B-1653-C57B-5CA99418A866}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\GOGPACKEVILGENIUS_is1

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16384

Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.delta-search.com/?affID=1198 ... FF25B41B24

-\\ Google Chrome v32.0.1700.76

[ File : C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [1575 octets] - [27/01/2014 19:43:14]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [1635 octets] ##########

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 27 led 2014 20:05

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
Klikni na „ Vymazat-Clean
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

Stáhni si Junkware Removal Tool by Thisisu

na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

. spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.

Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

sim20
Level 3.5
Level 3.5
Příspěvky: 654
Registrován: říjen 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod sim20 » 27 led 2014 20:24

# AdwCleaner v3.017 - Report created 27/01/2014 at 20:12:47
# Updated 12/01/2014 by Xplode
# Operating System : Windows 8.1 Pro (64 bits)
# Username : Simon - SIMON-PC
# Running from : C:\Users\Simon\Downloads\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\boost_interprocess
Folder Deleted : C:\ProgramData\YoutubeAdblocker
Folder Deleted : C:\ProgramData\greatsavver
Folder Deleted : C:\Program Files (x86)\greatsavver
Folder Deleted : C:\Users\Simon\AppData\Local\torch

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\GOGPACKEVILGENIUS_is1
Key Deleted : HKCU\Software\BI
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CA41BB14-E67B-1653-C57B-5CA99418A866}

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16384

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]

-\\ Google Chrome v32.0.1700.76

[ File : C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[S0].txt - [1500 octets] - [27/01/2014 20:12:47]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1560 octets] ##########

-------------------------------------------------------------------------------------------------------------------------------------

MbAM teď nic nenašel. Neodstranil to už náhodou AdwCleaner?

-------------------------------------------------------------------------------------------------------------------------------------

Junkware Removal Tool by Thisisu nejde spustit. (spouštím jako správce)
JRT.png
JRT.png (6.97 KiB) Zobrazeno 337 x


Log z RogueKiller je prázdný.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 28 led 2014 09:49

JRT tedy nedělej. Snad se to smazalo.

Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

sim20
Level 3.5
Level 3.5
Příspěvky: 654
Registrován: říjen 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod sim20 » 28 led 2014 22:32

RogueKiller V8.8.4 _x64_ [Jan 27 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 8.1 (6.3.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Simon [Práva správce]
Mód : Kontrola -- Datum : 01/28/2014 22:30:42
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[DNS][PUM] HKLM\[...]\CCSet\[...]\{98BE0671-7976-4BAF-8258-EFCCADA692A5} : NameServer (172.31.255.254 8.8.8.8 [(Private Address) (XX) - UNITED STATES (US)]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS001\[...]\{98BE0671-7976-4BAF-8258-EFCCADA692A5} : NameServer (172.31.255.254 8.8.8.8 [(Private Address) (XX) - UNITED STATES (US)]) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 1 ¤¤¤
[Simon][SUSP UNIC] Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk : C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [-] -> NALEZENO

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD5000AVDS-63U7B1 +++++
--- User ---
[MBR] 80d10a7ec9bd83d4f8d47d5376b3d0ec
[BSP] 9de4fcf778f97586430d98646acc1327 : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 16069 | Size: 476932 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ IDE) OCZ-VERTEX4 +++++
--- User ---
[MBR] 3dbbcdcbd9787ae2b02b59819b5398c1
[BSP] 3422ac760bac6b25a6e2d75a73f5d5a0 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 122102 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_01282014_223042.txt >>

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 29 led 2014 09:51

172.31.255.254 8.8.8.8 znáš ty adresy?

Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

sim20
Level 3.5
Level 3.5
Příspěvky: 654
Registrován: říjen 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod sim20 » 29 led 2014 17:28

Adresy neznám

17:25:02.0680 3388 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
17:25:03.0871 3388 ============================================================
17:25:03.0871 3388 Current date / time: 2014/01/29 17:25:03.0871
17:25:03.0871 3388 SystemInfo:
17:25:03.0871 3388
17:25:03.0871 3388 OS Version: 6.2.9200 ServicePack: 0.0
17:25:03.0871 3388 Product type: Workstation
17:25:03.0871 3388 ComputerName: SIMON-PC
17:25:03.0871 3388 UserName: Simon
17:25:03.0871 3388 Windows directory: C:\WINDOWS
17:25:03.0871 3388 System windows directory: C:\WINDOWS
17:25:03.0871 3388 Running under WOW64
17:25:03.0872 3388 Processor architecture: Intel x64
17:25:03.0872 3388 Number of processors: 4
17:25:03.0872 3388 Page size: 0x1000
17:25:03.0872 3388 Boot type: Normal boot
17:25:03.0872 3388 ============================================================
17:25:04.0035 3388 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
17:25:04.0036 3388 Drive \Device\Harddisk1\DR1 - Size: 0x1DCF856000 (119.24 Gb), SectorSize: 0x200, Cylinders: 0x3CCE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
17:25:04.0463 3388 ============================================================
17:25:04.0463 3388 \Device\Harddisk0\DR0:
17:25:04.0463 3388 MBR partitions:
17:25:04.0467 3388 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F04, BlocksNum 0x3A38192C
17:25:04.0467 3388 \Device\Harddisk1\DR1:
17:25:04.0467 3388 MBR partitions:
17:25:04.0467 3388 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xEE7B000
17:25:04.0467 3388 ============================================================
17:25:04.0467 3388 C: <-> \Device\Harddisk1\DR1\Partition1
17:25:04.0482 3388 E: <-> \Device\Harddisk0\DR0\Partition1
17:25:04.0482 3388 ============================================================
17:25:04.0482 3388 Initialize success
17:25:04.0482 3388 ============================================================
17:25:05.0960 5856 ============================================================
17:25:05.0960 5856 Scan started
17:25:05.0960 5856 Mode: Manual;
17:25:05.0960 5856 ============================================================
17:25:06.0056 5856 ================ Scan system memory ========================
17:25:06.0056 5856 System memory - ok
17:25:06.0056 5856 ================ Scan services =============================
17:25:06.0091 5856 [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1 ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys
17:25:06.0100 5856 1394ohci - ok
17:25:06.0107 5856 [ AD508A1A46EC21B740AB31C28EFDFDB1 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys
17:25:06.0110 5856 3ware - ok
17:25:06.0133 5856 [ E19D921EBBD1A2CA4C48D7B5F1685B30 ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys
17:25:06.0143 5856 ACPI - ok
17:25:06.0148 5856 [ AC8279D229398BCF05C3154ADCA86813 ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys
17:25:06.0149 5856 acpiex - ok
17:25:06.0153 5856 [ A8970D9BF23CD309E0403978A1B58F3F ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys
17:25:06.0153 5856 acpipagr - ok
17:25:06.0157 5856 [ 111A89C99C5B4F1A7BCE5F643DD86F65 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys
17:25:06.0158 5856 AcpiPmi - ok
17:25:06.0164 5856 [ 5758387D68A20AE7D3245011B07E36E7 ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys
17:25:06.0165 5856 acpitime - ok
17:25:06.0169 5856 [ B362181ED3771DC03B4141927C80F801 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
17:25:06.0170 5856 AdobeARMservice - ok
17:25:06.0180 5856 [ 7C1FDF1B48298CBA7CE4BDD4978951AD ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS
17:25:06.0185 5856 ADP80XX - ok
17:25:06.0190 5856 [ B19CA8E441D35AA2B1EE51C10B27DA1B ] AeLookupSvc C:\WINDOWS\System32\aelupsvc.dll
17:25:06.0192 5856 AeLookupSvc - ok
17:25:06.0200 5856 [ 239268BAB58EAE9A3FF4E08334C00451 ] AFD C:\WINDOWS\system32\drivers\afd.sys
17:25:06.0204 5856 AFD - ok
17:25:06.0208 5856 [ 7DFAEBA9AD62D20102B576D5CAC45EC8 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys
17:25:06.0209 5856 agp440 - ok
17:25:06.0212 5856 [ 8E8E34B7BA059050EED827410D0697A2 ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys
17:25:06.0213 5856 ahcache - ok
17:25:06.0216 5856 [ A91D8E1E433EFB32551BCE69037E1CE7 ] ALG C:\WINDOWS\System32\alg.exe
17:25:06.0218 5856 ALG - ok
17:25:06.0222 5856 [ 13AE8D986A8D61FBAFAF5CD3F8B3B89C ] AMD External Events Utility C:\WINDOWS\system32\atiesrxx.exe
17:25:06.0224 5856 AMD External Events Utility - ok
17:25:06.0228 5856 [ 7589DE749DB6F71A68489DCE04158729 ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys
17:25:06.0230 5856 AmdK8 - ok
17:25:06.0233 5856 [ F2FF8C1B41B3784EDBD5C6D5397F403C ] amdkmafd C:\WINDOWS\system32\drivers\amdkmafd.sys
17:25:06.0234 5856 amdkmafd - ok
17:25:06.0333 5856 [ 1BF58E56CA271FEF678DC3A9996FAB0A ] amdkmdag C:\WINDOWS\system32\DRIVERS\atikmdag.sys
17:25:06.0405 5856 amdkmdag - ok
17:25:06.0414 5856 [ 4DD3339D3818356145A4945C1B4CB4C5 ] amdkmdap C:\WINDOWS\system32\DRIVERS\atikmpag.sys
17:25:06.0418 5856 amdkmdap - ok
17:25:06.0422 5856 [ B46D2D89AFF8A9490FA8C98C7A5616E3 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys
17:25:06.0424 5856 AmdPPM - ok
17:25:06.0427 5856 [ D2BF2F94A47D332814910FD47C6BBCD2 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys
17:25:06.0428 5856 amdsata - ok
17:25:06.0432 5856 [ A8E04943C7BBA7219AA50400272C3C6E ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys
17:25:06.0435 5856 amdsbs - ok
17:25:06.0437 5856 [ CEA5F4F27CFC08E3A44D576811B35F50 ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys
17:25:06.0438 5856 amdxata - ok
17:25:06.0441 5856 [ 04951A9A937CBE28A2D3FEEA360B6D1F ] AppID C:\WINDOWS\system32\drivers\appid.sys
17:25:06.0442 5856 AppID - ok
17:25:06.0444 5856 [ C0DC3F58214A227980AEB091CFD2F973 ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll
17:25:06.0446 5856 AppIDSvc - ok
17:25:06.0448 5856 [ 7E790DE2487CEDB349D1750B9E47F090 ] Appinfo C:\WINDOWS\System32\appinfo.dll
17:25:06.0450 5856 Appinfo - ok
17:25:06.0454 5856 [ 8176FBA685178FB0F52D46693474FA50 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
17:25:06.0456 5856 AppMgmt - ok
17:25:06.0464 5856 [ EF0EE63BE56D2CAC3FA07850770326F1 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll
17:25:06.0468 5856 AppReadiness - ok
17:25:06.0480 5856 [ 0B726D9ED75C787D6FFAF1E3873BCC70 ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll
17:25:06.0488 5856 AppXSvc - ok
17:25:06.0491 5856 [ 65045784366F7EC5FB4E71BCF923187B ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys
17:25:06.0493 5856 arcsas - ok
17:25:06.0499 5856 [ AA2E8C6B8D7EA7BAF04C988801927F48 ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
17:25:06.0500 5856 aspnet_state - ok
17:25:06.0504 5856 [ 9C2BEA3957EFFD45F352F0938DFB3721 ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
17:25:06.0505 5856 aswMonFlt - ok
17:25:06.0508 5856 [ 679712B7A353EE665B9301592164A172 ] aswRdr C:\WINDOWS\system32\drivers\aswRdr2.sys
17:25:06.0509 5856 aswRdr - ok
17:25:06.0512 5856 [ C04F7B373881009D7994D9BF55D24AB4 ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
17:25:06.0513 5856 aswRvrt - ok
17:25:06.0525 5856 [ 52B5F8FAF7E78C02D26B0B6E3A05F596 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
17:25:06.0532 5856 aswSnx - ok
17:25:06.0541 5856 [ 251360C2FCA22BAFE0583314B3262F98 ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
17:25:06.0546 5856 aswSP - ok
17:25:06.0554 5856 [ AAB5F5336EDBB5D99CC7E1A9F4D8F63F ] aswStm C:\WINDOWS\system32\drivers\aswStm.sys
17:25:06.0558 5856 aswStm - ok
17:25:06.0563 5856 [ 90399625F341AB76BA4B85A5E860EB1F ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
17:25:06.0566 5856 aswVmm - ok
17:25:06.0568 5856 [ 3DB7721F06BC2FEDB25029EA23AB27DA ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
17:25:06.0569 5856 AsyncMac - ok
17:25:06.0572 5856 [ 74B14192CF79A72F7536B27CB8814FBD ] atapi C:\WINDOWS\system32\drivers\atapi.sys
17:25:06.0573 5856 atapi - ok
17:25:06.0578 5856 [ AEB8BC801F11E436EBD8D347F866F7A1 ] AtiHDAudioService C:\WINDOWS\system32\drivers\AtihdWB6.sys
17:25:06.0580 5856 AtiHDAudioService - ok
17:25:06.0583 5856 [ 4903CBC14742B5AB4DCF7A92F7DEC483 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
17:25:06.0585 5856 AudioEndpointBuilder - ok
17:25:06.0594 5856 [ 86DD7884124D363A63CCE7A11FDEBBED ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll
17:25:06.0600 5856 Audiosrv - ok
17:25:06.0605 5856 [ D74884939D53612FD84AC82C59CCFE27 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
17:25:06.0605 5856 avast! Antivirus - ok
17:25:06.0608 5856 [ 96E8CAF20FC4B6C31CAD7816A801EB78 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll
17:25:06.0610 5856 AxInstSV - ok
17:25:06.0616 5856 [ A4A73F631FE2AA2826FBE4A399B04DEF ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys
17:25:06.0620 5856 b06bdrv - ok
17:25:06.0623 5856 [ 8CC7F7E4AFCBA605921B137ED7992C68 ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys
17:25:06.0625 5856 BasicDisplay - ok
17:25:06.0627 5856 [ 2748E116F8621A4DB0D39FCDD7318C01 ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys
17:25:06.0628 5856 BasicRender - ok
17:25:06.0633 5856 [ C1ABB0F7E3BEA48A0417BDF6FF14AB21 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys
17:25:06.0633 5856 bcmfn2 - ok
17:25:06.0639 5856 [ BBE61A40665B83488901E41082A6097D ] BDESVC C:\WINDOWS\System32\bdesvc.dll
17:25:06.0642 5856 BDESVC - ok
17:25:06.0644 5856 [ EC19013E4CF87609534165DF897274D6 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
17:25:06.0644 5856 Beep - ok
17:25:06.0654 5856 [ 6468B696C65775D51A06615830E0E79D ] BFE C:\WINDOWS\System32\bfe.dll
17:25:06.0659 5856 BFE - ok
17:25:06.0671 5856 [ 15225081966C785A9192782401643FD4 ] BITS C:\WINDOWS\System32\qmgr.dll
17:25:06.0686 5856 BITS - ok
17:25:06.0689 5856 [ 6B4FFFDDC618FCF64473CAA86E305697 ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys
17:25:06.0691 5856 bowser - ok
17:25:06.0695 5856 [ 748141CC03DF40C38F17D3F96BB15C80 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
17:25:06.0698 5856 BrokerInfrastructure - ok
17:25:06.0701 5856 [ D528D6A92D187777691993DD757AF19A ] Browser C:\WINDOWS\System32\browser.dll
17:25:06.0703 5856 Browser - ok
17:25:06.0706 5856 [ A8F23D453A424FF4DE04989C4727ECC7 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
17:25:06.0707 5856 BthAvrcpTg - ok
17:25:06.0710 5856 [ 746B9F94214915AECDE4B7FEA5FF9664 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys
17:25:06.0712 5856 BthHFEnum - ok
17:25:06.0714 5856 [ 71FE2A48E4C93DDB9798C024880B6C07 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys
17:25:06.0715 5856 bthhfhid - ok
17:25:06.0718 5856 [ 07E33226AD218A2A162662A05CAFB52F ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys
17:25:06.0720 5856 BTHMODEM - ok
17:25:06.0723 5856 [ E5E48FEED73D463175EAB1542495191C ] bthserv C:\WINDOWS\system32\bthserv.dll
17:25:06.0725 5856 bthserv - ok
17:25:06.0727 5856 [ 2FA6510E33F7DEFEC03658B74101A9B9 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys
17:25:06.0728 5856 cdfs - ok
17:25:06.0733 5856 [ C6796EA22B513E3457514D92DCDB1A3D ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys
17:25:06.0735 5856 cdrom - ok
17:25:06.0739 5856 [ AB285CE3431FF3D2ACE669245874C1C7 ] CertPropSvc C:\WINDOWS\System32\certprop.dll
17:25:06.0741 5856 CertPropSvc - ok
17:25:06.0744 5856 [ BE9936EDD3267FAAFF94A7835867F00B ] circlass C:\WINDOWS\System32\drivers\circlass.sys
17:25:06.0745 5856 circlass - ok
17:25:06.0750 5856 [ 7F006813C2AFE622C13D7AF94F56CD07 ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys
17:25:06.0753 5856 CLFS - ok
17:25:06.0760 5856 [ EF6EF85DADC3184A10D8F2F7159973CB ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys
17:25:06.0761 5856 CmBatt - ok
17:25:06.0802 5856 [ 2D1E7E163AB1C927ACBA22CBE4A9F818 ] cmdAgent C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
17:25:06.0824 5856 cmdAgent - ok
17:25:06.0827 5856 [ AB7D3EF26D9B8001870814647189FDC1 ] cmderd C:\WINDOWS\system32\DRIVERS\cmderd.sys
17:25:06.0828 5856 cmderd - ok
17:25:06.0837 5856 [ 31D0ED596299BD8BEB81C1020825CA58 ] cmdGuard C:\WINDOWS\system32\DRIVERS\cmdguard.sys
17:25:06.0842 5856 cmdGuard - ok
17:25:06.0845 5856 [ 29925B820AD0FA43449785E24716CF64 ] cmdhlp C:\WINDOWS\system32\DRIVERS\cmdhlp.sys
17:25:06.0846 5856 cmdhlp - ok
17:25:06.0849 5856 [ A3574DCC6588D6E09E069D2BE61537EC ] cmdvirth C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
17:25:06.0851 5856 cmdvirth - ok
17:25:06.0858 5856 [ 825BE21E6395E00698D8A23955A87972 ] CNG C:\WINDOWS\system32\Drivers\cng.sys
17:25:06.0862 5856 CNG - ok
17:25:06.0865 5856 [ 03AAED827C36F35D70900558B8274905 ] CompositeBus C:\WINDOWS\System32\drivers\CompositeBus.sys
17:25:06.0866 5856 CompositeBus - ok
17:25:06.0868 5856 COMSysApp - ok
17:25:06.0871 5856 [ A1FF7DFBFBE164CF92603C651D304DD2 ] condrv C:\WINDOWS\system32\drivers\condrv.sys
17:25:06.0872 5856 condrv - ok
17:25:06.0888 5856 [ 034643AFE2973A175E782AE530A0683C ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
17:25:06.0895 5856 cphs - ok
17:25:06.0900 5856 [ 0EFE4B5884A8032617826A4D76F80969 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll
17:25:06.0902 5856 CryptSvc - ok
17:25:06.0909 5856 [ EE2F3C0D6ADBC975D6B621EC15ACF4E2 ] CSC C:\WINDOWS\system32\drivers\csc.sys
17:25:06.0912 5856 CSC - ok
17:25:06.0921 5856 [ 936D9E2871CEEFF6A33695D98374367B ] CscService C:\WINDOWS\System32\cscsvc.dll
17:25:06.0926 5856 CscService - ok
17:25:06.0929 5856 [ 315BA4BC19316D72B2E037534E048B93 ] dam C:\WINDOWS\system32\drivers\dam.sys
17:25:06.0931 5856 dam - ok
17:25:06.0941 5856 [ 3FD5AE42EC87C6F532A931F96BE731DD ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
17:25:06.0949 5856 DcomLaunch - ok
17:25:06.0955 5856 [ F4CCAADC2C78F57E4F16B24C9201CE22 ] defragsvc C:\WINDOWS\System32\defragsvc.dll
17:25:06.0959 5856 defragsvc - ok
17:25:06.0965 5856 [ 0BC71D4D3B5883903C37BF4E13B0F0C5 ] DeviceAssociationService C:\WINDOWS\system32\das.dll
17:25:06.0969 5856 DeviceAssociationService - ok
17:25:06.0972 5856 [ 752A457320A946E03C3AA86C3ACD735E ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll
17:25:06.0976 5856 DeviceInstall - ok
17:25:06.0979 5856 [ 5DB26D7E0216D0BF364A81D3829AD7B9 ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys
17:25:06.0981 5856 Dfsc - ok
17:25:06.0984 5856 [ E428DFFA96FAD07D8CA3C9082563A225 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
17:25:06.0986 5856 dg_ssudbus - ok
17:25:06.0991 5856 [ 8B107F55FD61654A6C9F1B819AEC5FC4 ] Dhcp C:\WINDOWS\system32\dhcpcore.dll
17:25:06.0995 5856 Dhcp - ok
17:25:06.0996 5856 DIRECTIO - ok
17:25:07.0000 5856 [ 4D40C9B33F738797CF50E77CB7C53E85 ] disk C:\WINDOWS\system32\drivers\disk.sys
17:25:07.0002 5856 disk - ok
17:25:07.0004 5856 [ EB70A894708D1BC176AFD690FF06085F ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys
17:25:07.0004 5856 dmvsc - ok
17:25:07.0008 5856 [ FBD2D7F491F3EBC5C54C5C4DB2564953 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
17:25:07.0012 5856 Dnscache - ok
17:25:07.0015 5856 [ 50288EA079BB520C2B8C8A154202D518 ] dot3svc C:\WINDOWS\System32\dot3svc.dll
17:25:07.0018 5856 dot3svc - ok
17:25:07.0022 5856 [ 281BEE07BA97E3E98D12A822D923D0D8 ] DPS C:\WINDOWS\system32\dps.dll
17:25:07.0024 5856 DPS - ok
17:25:07.0027 5856 [ DDC11A202207C0400CBE07315B8FDE5E ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
17:25:07.0028 5856 drmkaud - ok
17:25:07.0032 5856 [ 5B074F14F5DD6418F46EE4CA2DEB7EA8 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll
17:25:07.0034 5856 DsmSvc - ok
17:25:07.0040 5856 [ 6A0E850DDCB136AA3D2FB7234382DF12 ] dtsoftbus01 C:\WINDOWS\System32\drivers\dtsoftbus01.sys
17:25:07.0042 5856 dtsoftbus01 - ok
17:25:07.0057 5856 [ A3D1CB64DF885ACE126543E6D7067348 ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys
17:25:07.0066 5856 DXGKrnl - ok
17:25:07.0070 5856 [ 6073537F250B45E1CB2A02E97F0FE1B2 ] Eaphost C:\WINDOWS\System32\eapsvc.dll
17:25:07.0072 5856 Eaphost - ok
17:25:07.0097 5856 [ 114BCFDF367FF37C3F1B0A96AF542E4D ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys
17:25:07.0117 5856 ebdrv - ok
17:25:07.0120 5856 [ F6F209DDB94959BA104FC8FC87C53759 ] EFS C:\WINDOWS\System32\lsass.exe
17:25:07.0122 5856 EFS - ok
17:25:07.0125 5856 [ 43531A5993380CC5113242C29D265FD9 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys
17:25:07.0126 5856 EhStorClass - ok
17:25:07.0129 5856 [ 6F8E738A9505A388B1157FDDE7B3101B ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
17:25:07.0131 5856 EhStorTcgDrv - ok
17:25:07.0134 5856 [ DFFFAE1442BA4076E18EED5E406FA0D3 ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys
17:25:07.0134 5856 ErrDev - ok
17:25:07.0142 5856 [ 030CE75B7D8F75FAA7BA1EC6FD0EB5A3 ] EventSystem C:\WINDOWS\system32\es.dll
17:25:07.0146 5856 EventSystem - ok
17:25:07.0150 5856 [ 7729D294A555C7AEB281ED8E4D0E01E4 ] exfat C:\WINDOWS\system32\drivers\exfat.sys
17:25:07.0152 5856 exfat - ok
17:25:07.0156 5856 [ 7C4E0D5900B2A1D11EDD626D6DDB937B ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys
17:25:07.0158 5856 fastfat - ok
17:25:07.0165 5856 [ 2BC8532ABF2B3756B78FA1DA54147DDE ] Fax C:\WINDOWS\system32\fxssvc.exe
17:25:07.0171 5856 Fax - ok
17:25:07.0173 5856 [ 5D8402613E778B3BD45E687A8372710B ] fdc C:\WINDOWS\System32\drivers\fdc.sys
17:25:07.0175 5856 fdc - ok
17:25:07.0177 5856 [ DC1A78BCCCB7EE53D6FD3BD615A8E222 ] fdPHost C:\WINDOWS\system32\fdPHost.dll
17:25:07.0179 5856 fdPHost - ok
17:25:07.0181 5856 [ E5AD448F2DC84B1CF387FA7F2A3D1936 ] FDResPub C:\WINDOWS\system32\fdrespub.dll
17:25:07.0183 5856 FDResPub - ok
17:25:07.0186 5856 [ 0046E0BD031213D37123876B0D0FA61C ] fhsvc C:\WINDOWS\system32\fhsvc.dll
17:25:07.0188 5856 fhsvc - ok
17:25:07.0191 5856 [ 957A7A8F5ACCAF23DD9DFF6DAA393CE5 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys
17:25:07.0192 5856 FileInfo - ok
17:25:07.0194 5856 [ A1A66C4FDAFD6B0289523232AFB7D8AF ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys
17:25:07.0195 5856 Filetrace - ok
17:25:07.0198 5856 [ BE743083CF7063C486A4398E3AEFE59A ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys
17:25:07.0199 5856 flpydisk - ok
17:25:07.0204 5856 [ 60D5067FCE6D9433D35E04C01D8538B3 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
17:25:07.0206 5856 FltMgr - ok
17:25:07.0219 5856 [ 183CA7699474FDE235853967D1DA4D9B ] FontCache C:\WINDOWS\system32\FntCache.dll
17:25:07.0229 5856 FontCache - ok
17:25:07.0232 5856 [ 1C52387BF5A127F5F3BFB31288F30D93 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
17:25:07.0234 5856 FontCache3.0.0.0 - ok
17:25:07.0237 5856 [ 35005534E600E993A90B036E4E599F2B ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys
17:25:07.0238 5856 FsDepends - ok
17:25:07.0240 5856 [ 09F460AFEDCA03F3BF6E07D1CCC9AC42 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
17:25:07.0241 5856 Fs_Rec - ok
17:25:07.0248 5856 [ 83E1F0983B02A6F8EC764D18E24ECF10 ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys
17:25:07.0253 5856 fvevol - ok
17:25:07.0255 5856 [ 9591D0B9351ED489EAFD9D1CE52A8015 ] FxPPM C:\WINDOWS\System32\drivers\fxppm.sys
17:25:07.0256 5856 FxPPM - ok
17:25:07.0260 5856 [ FC3EF65EE20D39F8749C2218DBA681CA ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys
17:25:07.0261 5856 gagp30kx - ok
17:25:07.0263 5856 [ 7907E14F9BCF3A4689C9A74A1A873CB6 ] gdrv C:\WINDOWS\gdrv.sys
17:25:07.0264 5856 gdrv - ok
17:25:07.0267 5856 [ 0BF5CAD281E25F1418E5B8875DC5ADD1 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys
17:25:07.0268 5856 gencounter - ok
17:25:07.0271 5856 [ FDA72810CA2F8409D9B31E833C448E34 ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys
17:25:07.0273 5856 GPIOClx0101 - ok
17:25:07.0285 5856 [ 0BDE0FCF597E9B65600121EF54FF8340 ] gpsvc C:\WINDOWS\System32\gpsvc.dll
17:25:07.0294 5856 gpsvc - ok
17:25:07.0298 5856 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
17:25:07.0299 5856 gupdate - ok
17:25:07.0301 5856 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
17:25:07.0302 5856 gupdatem - ok
17:25:07.0311 5856 [ 56F69F7C25FB67C970997D7066DBC593 ] HdAudAddService C:\WINDOWS\system32\drivers\HdAudio.sys
17:25:07.0317 5856 HdAudAddService - ok
17:25:07.0321 5856 [ 03909BDBFF0DCACCABF2B2D4ADEE44DC ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys
17:25:07.0323 5856 HDAudBus - ok
17:25:07.0325 5856 [ 10A70BC1871CD955D85CD88372724906 ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys
17:25:07.0326 5856 HidBatt - ok
17:25:07.0330 5856 [ 1EA1B4FABB8CC348E73CA90DBA22E104 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys
17:25:07.0331 5856 HidBth - ok
17:25:07.0335 5856 [ C241A8BAFBBFC90176EA0F5240EACC17 ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys
17:25:07.0337 5856 hidi2c - ok
17:25:07.0339 5856 [ 9BDDEE26255421017E161CCB9D5EDA95 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys
17:25:07.0341 5856 HidIr - ok
17:25:07.0342 5856 [ 449A20A674AA3FAA7F0DD4E33EE2DC20 ] hidserv C:\WINDOWS\system32\hidserv.dll
17:25:07.0345 5856 hidserv - ok
17:25:07.0346 5856 [ F31397220D9687E11EB448649AA6E038 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys
17:25:07.0348 5856 HidUsb - ok
17:25:07.0350 5856 [ 7BF3ADCBD021D4F4A84CF40EB49C71B5 ] hkmsvc C:\WINDOWS\system32\kmsvc.dll
17:25:07.0354 5856 hkmsvc - ok
17:25:07.0359 5856 [ 6CD9C3819BE8C0A3DACC82AE5D3C4F18 ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
17:25:07.0363 5856 HomeGroupListener - ok
17:25:07.0368 5856 [ BE5F89BAFBD4272D5A0C0A37B97865ED ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
17:25:07.0374 5856 HomeGroupProvider - ok
17:25:07.0376 5856 [ A6AACEA4C785789BDA5912AD1FEDA80D ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys
17:25:07.0378 5856 HpSAMD - ok
17:25:07.0387 5856 [ 3502776E366C913D49C0DA928AE3E6CB ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys
17:25:07.0393 5856 HTTP - ok
17:25:07.0396 5856 [ 90656C0B3864804B090434EFC582404F ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys
17:25:07.0396 5856 hwpolicy - ok
17:25:07.0399 5856 [ 6D6F9E3BF0484967E52F7E846BFF1CA1 ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys
17:25:07.0400 5856 hyperkbd - ok
17:25:07.0402 5856 [ 907C870F8C31F8DDD6F090857B46AB25 ] HyperVideo C:\WINDOWS\system32\DRIVERS\HyperVideo.sys
17:25:07.0403 5856 HyperVideo - ok
17:25:07.0407 5856 [ 84CFC5EFA97D0C965EDE1D56F116A541 ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys
17:25:07.0408 5856 i8042prt - ok
17:25:07.0411 5856 [ 5D90E32E36CE5D4C535D17CE08AEAF05 ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
17:25:07.0412 5856 iaLPSSi_GPIO - ok
17:25:07.0415 5856 [ DD05E7E80F52ADE9AEB292819920F32C ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
17:25:07.0416 5856 iaLPSSi_I2C - ok
17:25:07.0424 5856 [ 57CD95DEB3529181BCC931DD2DFB2341 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
17:25:07.0426 5856 iaStorA - ok
17:25:07.0433 5856 [ 08BFE413B0B4AA8DFA4B5684CE06D3DC ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys
17:25:07.0438 5856 iaStorAV - ok
17:25:07.0440 5856 [ 20E83F4632E15A5E9E716FF2E8AC7FAE ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
17:25:07.0442 5856 IAStorDataMgrSvc - ok
17:25:07.0447 5856 [ A2200C3033FA4EF249FC096A7A7D02A2 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys
17:25:07.0450 5856 iaStorV - ok
17:25:07.0452 5856 IEEtwCollectorService - ok
17:25:07.0482 5856 [ 7A5A61997B5404C8EDDFCC62378164DC ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
17:25:07.0507 5856 igfx - ok
17:25:07.0521 5856 [ B82255670D270B75D2D2F0F8747D1443 ] IKEEXT C:\WINDOWS\System32\ikeext.dll
17:25:07.0536 5856 IKEEXT - ok
17:25:07.0544 5856 [ 49E73AB19378230BBCD1209D44165EA7 ] inspect C:\WINDOWS\system32\DRIVERS\inspect.sys
17:25:07.0546 5856 inspect - ok
17:25:07.0549 5856 [ 4011430BC9DA46ADFAE9915EFEC312FB ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys
17:25:07.0551 5856 intaud_WaveExtensible - ok
17:25:07.0579 5856 [ 8EB4D1D7806D05E5AB39D96464D801CA ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
17:25:07.0602 5856 IntcAzAudAddService - ok
17:25:07.0606 5856 [ 4E448FCFFD00E8D657CD9E48D3E47157 ] intelide C:\WINDOWS\system32\drivers\intelide.sys
17:25:07.0607 5856 intelide - ok
17:25:07.0610 5856 [ 139CFCDCD36B1B1782FD8C0014AC9B0E ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys
17:25:07.0611 5856 intelpep - ok
17:25:07.0614 5856 [ 47E74A8E53C7C24DCE38311E1451C1D9 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys
17:25:07.0616 5856 intelppm - ok
17:25:07.0619 5856 [ 9DB76D7F9E4E53EFE5DD8C53DE837514 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
17:25:07.0620 5856 IpFilterDriver - ok
17:25:07.0629 5856 [ 201EDF3C5E674BF1FE44D28CC6A76EA2 ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll
17:25:07.0636 5856 iphlpsvc - ok
17:25:07.0639 5856 [ 9949A3C7590B8C536C05312205079A82 ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys
17:25:07.0641 5856 IPMIDRV - ok
17:25:07.0644 5856 [ E23D32BAF152FBE35F18C6A2AB8EF271 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys
17:25:07.0645 5856 IPNAT - ok
17:25:07.0649 5856 [ AE44C526AB5F8A487D941CEB57B10C97 ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys
17:25:07.0650 5856 IRENUM - ok
17:25:07.0652 5856 [ 8AFEEA3955AA43616A60F133B1D25F21 ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys
17:25:07.0653 5856 isapnp - ok
17:25:07.0659 5856 [ 034D4BD9DC67C64F3A4C8A049B5173BF ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys
17:25:07.0663 5856 iScsiPrt - ok
17:25:07.0666 5856 [ EE03564B7FAFE2E44EDA33D52E83B4A3 ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys
17:25:07.0667 5856 iwdbus - ok
17:25:07.0670 5856 [ 8BE92376799B6B44D543E8D07CDCF885 ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys
17:25:07.0671 5856 kbdclass - ok
17:25:07.0673 5856 [ FB6E47E569D4872ABEB506BE03A45FBA ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys
17:25:07.0674 5856 kbdhid - ok
17:25:07.0677 5856 [ DB7A09BC90DF20F44F16F8B0F9ED3491 ] kbldfltr C:\WINDOWS\system32\drivers\kbldfltr.sys
17:25:07.0679 5856 kbldfltr - ok
17:25:07.0681 5856 [ 813871C7D402A05F2E3A7075F9584A05 ] kdnic C:\WINDOWS\system32\DRIVERS\kdnic.sys
17:25:07.0682 5856 kdnic - ok
17:25:07.0684 5856 [ F6F209DDB94959BA104FC8FC87C53759 ] KeyIso C:\WINDOWS\system32\lsass.exe
17:25:07.0686 5856 KeyIso - ok
17:25:07.0689 5856 [ ADDECBCC777665BD113BED437E602AB0 ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys
17:25:07.0690 5856 KSecDD - ok
17:25:07.0694 5856 [ 7296EA420134EAC390798B3232D066A4 ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys
17:25:07.0695 5856 KSecPkg - ok
17:25:07.0698 5856 [ 11AFB527AA370B1DAFD5C36F35F6D45F ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys
17:25:07.0698 5856 ksthunk - ok
17:25:07.0703 5856 [ 32B1A8351160F307A8C66BCB0F94A9C2 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll
17:25:07.0708 5856 KtmRm - ok
17:25:07.0713 5856 [ 27B58E16CF895AC1F1A97C04814C2239 ] LanmanServer C:\WINDOWS\system32\srvsvc.dll
17:25:07.0718 5856 LanmanServer - ok
17:25:07.0722 5856 [ D0D9C2ECA4D03A8F06DCD91236B90C98 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
17:25:07.0727 5856 LanmanWorkstation - ok
17:25:07.0735 5856 [ EE289BD147FDFF95EF1B9BD65D3B974A ] lfsvc C:\WINDOWS\System32\GeofenceMonitorService.dll
17:25:07.0739 5856 lfsvc - ok
17:25:07.0742 5856 [ C09010B3680860131631F53E8FE7BAD8 ] lltdio C:\WINDOWS\system32\DRIVERS\lltdio.sys
17:25:07.0743 5856 lltdio - ok
17:25:07.0747 5856 [ 00E070FC0C673311AFD4B068D1242780 ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll
17:25:07.0751 5856 lltdsvc - ok
17:25:07.0754 5856 [ D113FAD71A5E67AA94B32A0F8828D265 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll
17:25:07.0756 5856 lmhosts - ok
17:25:07.0761 5856 [ 8EFE2A57B85CD92018113B1E8AAC6C46 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
17:25:07.0765 5856 LMS - ok
17:25:07.0769 5856 [ C755AE4635457AA2A11F79C0DF857ABC ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys
17:25:07.0770 5856 LSI_SAS - ok
17:25:07.0773 5856 [ ADAC09CBE7A2040B7F68B5E5C9A75141 ] LSI_SAS2 C:\WINDOWS\system32\drivers\lsi_sas2.sys
17:25:07.0775 5856 LSI_SAS2 - ok
17:25:07.0778 5856 [ 04D1274BB9BBCCF12BD12374002AA191 ] LSI_SAS3 C:\WINDOWS\system32\drivers\lsi_sas3.sys
17:25:07.0779 5856 LSI_SAS3 - ok
17:25:07.0782 5856 [ 327469EEF3833D0C584B7E88A76AEC0C ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys
17:25:07.0783 5856 LSI_SSS - ok
17:25:07.0791 5856 [ B6B69FF200F68888A7FAFDF204D00C91 ] LSM C:\WINDOWS\System32\lsm.dll
17:25:07.0797 5856 LSM - ok
17:25:07.0801 5856 [ 5EF604B0698F4FA962778285E8C5F1F2 ] luafv C:\WINDOWS\system32\drivers\luafv.sys
17:25:07.0802 5856 luafv - ok
17:25:07.0805 5856 [ EB5C03A070F30D64A6DF80E53B22F53F ] megasas C:\WINDOWS\system32\drivers\megasas.sys
17:25:07.0806 5856 megasas - ok
17:25:07.0813 5856 [ F6F13533196DE7A582D422B0241E4363 ] megasr C:\WINDOWS\system32\drivers\megasr.sys
17:25:07.0817 5856 megasr - ok
17:25:07.0820 5856 [ 926C135CFB0C75B32FB714B5C0C58FAA ] MEIx64 C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys
17:25:07.0821 5856 MEIx64 - ok
17:25:07.0825 5856 [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
17:25:07.0827 5856 Microsoft Office Groove Audit Service - ok
17:25:07.0829 5856 [ FD788C2D96EA91469A3C1D13E80D7473 ] MMCSS C:\WINDOWS\system32\mmcss.dll
17:25:07.0832 5856 MMCSS - ok
17:25:07.0835 5856 [ 8B38C44F69259987C95135C9627E2378 ] Modem C:\WINDOWS\system32\drivers\modem.sys
17:25:07.0836 5856 Modem - ok
17:25:07.0839 5856 [ 601589000CC90F0DF8DA2CC254A3CCC9 ] monitor C:\WINDOWS\System32\drivers\monitor.sys
17:25:07.0839 5856 monitor - ok
17:25:07.0842 5856 [ CEAC6D40FE887CE8406C2393CF97DE06 ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys
17:25:07.0844 5856 mouclass - ok
17:25:07.0846 5856 [ 02D98BF804084E9A0D69D1C69B02CCA9 ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys
17:25:07.0847 5856 mouhid - ok
17:25:07.0851 5856 [ 515549560D481138E6E21AF7C6998E56 ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys
17:25:07.0852 5856 mountmgr - ok
17:25:07.0855 5856 [ F170510BE94CF45E3C6274578F6204B2 ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys
17:25:07.0856 5856 mpsdrv - ok
17:25:07.0865 5856 [ D186C5844393252147BE934F3871DB7A ] MpsSvc C:\WINDOWS\system32\mpssvc.dll
17:25:07.0873 5856 MpsSvc - ok
17:25:07.0876 5856 [ 59DCEC7499095DE5AED741358037AE2D ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys
17:25:07.0878 5856 MRxDAV - ok
17:25:07.0883 5856 [ 6129EDB793A4255B1E2FB41773AC9D9A ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
17:25:07.0886 5856 mrxsmb - ok
17:25:07.0890 5856 [ 295771B092D4F7FCF2B62F80CCD14320 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
17:25:07.0893 5856 mrxsmb10 - ok
17:25:07.0898 5856 [ AAF56E4E84D35411B4E446C445732DFE ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
17:25:07.0900 5856 mrxsmb20 - ok
17:25:07.0903 5856 [ 4E888019078AC363076A5433E89AA4F8 ] MsBridge C:\WINDOWS\system32\DRIVERS\bridge.sys
17:25:07.0904 5856 MsBridge - ok
17:25:07.0908 5856 [ A082C17D14D0790E27D064EA4B138AE1 ] MSDTC C:\WINDOWS\System32\msdtc.exe
17:25:07.0911 5856 MSDTC - ok
17:25:07.0915 5856 [ D13329FBF8345B28AB30F44CC247DC08 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
17:25:07.0916 5856 Msfs - ok
17:25:07.0919 5856 [ C6B474E46F9E543B875981ED3FFE6ADD ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys
17:25:07.0920 5856 msgpiowin32 - ok
17:25:07.0922 5856 [ 65C92EB9D08DB5C69F28C7FFD4E84E31 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys
17:25:07.0923 5856 mshidkmdf - ok
17:25:07.0925 5856 [ 52299F086AC2DAFD100DD5DC4A8614BA ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys
17:25:07.0926 5856 mshidumdf - ok
17:25:07.0928 5856 [ 36D92AF3343C3A3E57FEF11C449AEA4C ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys
17:25:07.0929 5856 msisadrv - ok
17:25:07.0933 5856 [ 810F8A0A0680662BB0CE44D0E2CEF90C ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll
17:25:07.0936 5856 MSiSCSI - ok
17:25:07.0938 5856 msiserver - ok
17:25:07.0941 5856 [ D22AE5313F6B7EFDDD8C117B5501F4A3 ] MsKeyboardFilter C:\WINDOWS\System32\KeyboardFilterSvc.dll
17:25:07.0944 5856 MsKeyboardFilter - ok
17:25:07.0947 5856 [ A9BBBD2BAE6142253B9195E949AC2E8D ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
17:25:07.0949 5856 MSKSSRV - ok
17:25:07.0952 5856 [ 375E44168F2DFB91A68B8A3F619C5A7C ] MsLldp C:\WINDOWS\system32\DRIVERS\mslldp.sys
17:25:07.0953 5856 MsLldp - ok
17:25:07.0955 5856 [ 7B2128EB875DCBC006E6A913211006D6 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
17:25:07.0956 5856 MSPCLOCK - ok
17:25:07.0958 5856 [ 1E88171579B218115C7A772F8DE04BD8 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
17:25:07.0958 5856 MSPQM - ok
17:25:07.0963 5856 [ BBE2A455053E63BECBF42C2F9B21FAE0 ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys
17:25:07.0966 5856 MsRPC - ok
17:25:07.0970 5856 [ 8D6B7D515C5CBCDB75B928A0B73C3C5E ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys
17:25:07.0971 5856 mssmbios - ok
17:25:07.0973 5856 [ 115019AE01E0EB9C048530D2928AB4A2 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
17:25:07.0974 5856 MSTEE - ok
17:25:07.0976 5856 [ 96D604A35070360F0DD4A7A8AF410B5E ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys
17:25:07.0977 5856 MTConfig - ok
17:25:07.0980 5856 [ 619CA29326B82372621DB2C0964D8365 ] Mup C:\WINDOWS\system32\Drivers\mup.sys
17:25:07.0981 5856 Mup - ok
17:25:07.0984 5856 [ B8C35C94DCB2DFEAF03BB42131F2F77F ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys
17:25:07.0985 5856 mvumis - ok
17:25:07.0991 5856 [ 41A45D2A75494EABF2806EA051E00376 ] napagent C:\WINDOWS\system32\qagentRT.dll
17:25:07.0996 5856 napagent - ok
17:25:08.0002 5856 [ CF8B989D89D6807B887690F2CF24EFD9 ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys
17:25:08.0005 5856 NativeWifiP - ok
17:25:08.0009 5856 [ 71E3C0100AA19D11373CCEB2F51A6008 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll
17:25:08.0012 5856 NcaSvc - ok
17:25:08.0016 5856 [ 51DF09CAB2CAC64FEE3E371D9028ED01 ] NcbService C:\WINDOWS\System32\ncbservice.dll
17:25:08.0019 5856 NcbService - ok
17:25:08.0022 5856 [ 2586C4C167499210DCBF3ECFD8CCE210 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll
17:25:08.0025 5856 NcdAutoSetup - ok
17:25:08.0037 5856 [ AD9086052A5E5153AF43FE74138A4B27 ] NDIS C:\WINDOWS\system32\drivers\ndis.sys
17:25:08.0044 5856 NDIS - ok
17:25:08.0047 5856 [ C6BB12BC35D1637CA17AE16D3A4725EB ] NdisCap C:\WINDOWS\system32\DRIVERS\ndiscap.sys
17:25:08.0048 5856 NdisCap - ok
17:25:08.0051 5856 [ 9F1DA20E943BE7AA4ED5F3E1EBA78B37 ] NdisImPlatform C:\WINDOWS\system32\DRIVERS\NdisImPlatform.sys
17:25:08.0053 5856 NdisImPlatform - ok
17:25:08.0055 5856 [ 9423421E735BD5394351E0C47C76BB92 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
17:25:08.0056 5856 NdisTapi - ok
17:25:08.0059 5856 [ B832B35055BA2B7B4181861FF94D8E59 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
17:25:08.0060 5856 Ndisuio - ok
17:25:08.0062 5856 [ 1F58E48EF75F34C35D8E93A0DC535CFE ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
17:25:08.0063 5856 NdisVirtualBus - ok
17:25:08.0067 5856 [ DEC29080202D4F9F17F55E18BCFCC41A ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
17:25:08.0069 5856 NdisWan - ok
17:25:08.0073 5856 [ DEC29080202D4F9F17F55E18BCFCC41A ] NdisWanLegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys
17:25:08.0074 5856 NdisWanLegacy - ok
17:25:08.0077 5856 [ A5BD69A8812FA79D1A487691DD3FB244 ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
17:25:08.0078 5856 NDProxy - ok
17:25:08.0081 5856 [ 5A072F0B90C29C5233D78BE33EF5ED78 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys
17:25:08.0082 5856 Ndu - ok
17:25:08.0085 5856 [ A83D67D347A684F10B7D3019C8A6380C ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
17:25:08.0086 5856 NetBIOS - ok
17:25:08.0090 5856 [ 0217532E19A748F0E5D569307363D5FD ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
17:25:08.0092 5856 NetBT - ok
17:25:08.0095 5856 [ F6F209DDB94959BA104FC8FC87C53759 ] Netlogon C:\WINDOWS\system32\lsass.exe
17:25:08.0097 5856 Netlogon - ok
17:25:08.0101 5856 [ B7AD851A21FEBA3BA214972627614207 ] Netman C:\WINDOWS\System32\netman.dll
17:25:08.0105 5856 Netman - ok
17:25:08.0112 5856 [ F0F0A372C2EF6358399C4936F91B6131 ] netprofm C:\WINDOWS\System32\netprofmsvc.dll
17:25:08.0117 5856 netprofm - ok
17:25:08.0122 5856 [ 1092B3190E69E0C5ECBCE90F171DE047 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
17:25:08.0124 5856 NetTcpPortSharing - ok
17:25:08.0127 5856 [ 70414DB660BFBB7BD58FCE8EA4364E1B ] netvsc C:\WINDOWS\system32\DRIVERS\netvsc63.sys
17:25:08.0128 5856 netvsc - ok
17:25:08.0133 5856 [ 3A280F3B3C7A46E29C404ACD46ECBF5E ] NlaSvc C:\WINDOWS\System32\nlasvc.dll
17:25:08.0138 5856 NlaSvc - ok
17:25:08.0141 5856 [ 8F44A2F57C9F1A19AC9C6288C10FB351 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
17:25:08.0142 5856 Npfs - ok
17:25:08.0144 5856 [ CBDB4F0871C88DF930FC0E8588CA67FC ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys
17:25:08.0145 5856 npsvctrig - ok
17:25:08.0148 5856 [ 6E2271ED0C3E95B8E29F3752B91B9E84 ] nsi C:\WINDOWS\system32\nsisvc.dll
17:25:08.0150 5856 nsi - ok
17:25:08.0153 5856 [ E490B459978CB87779E84C761D22B827 ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys
17:25:08.0154 5856 nsiproxy - ok
17:25:08.0170 5856 [ 4412D565C0278C401575E11072C7DCE3 ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
17:25:08.0183 5856 Ntfs - ok
17:25:08.0185 5856 [ EF1B290FC9F0E47CC0B537292BEE5904 ] Null C:\WINDOWS\system32\drivers\Null.sys
17:25:08.0186 5856 Null - ok
17:25:08.0189 5856 [ BC6B5942AFF25EBAF62DE43C3807EDF8 ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys
17:25:08.0191 5856 nvraid - ok
17:25:08.0195 5856 [ 1F43ABFFAC3D6CA356851D517392966E ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys
17:25:08.0197 5856 nvstor - ok
17:25:08.0200 5856 [ 6934A936A7369DFE37B7DBA93F5E5E49 ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys
17:25:08.0202 5856 nv_agp - ok
17:25:08.0209 5856 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
17:25:08.0212 5856 odserv - ok
17:25:08.0215 5856 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
17:25:08.0217 5856 ose - ok
17:25:08.0221 5856 [ 2B7D360154E5324F9BA181AF0DBFB2AA ] OverwolfUpdaterService C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe
17:25:08.0223 5856 OverwolfUpdaterService - ok
17:25:08.0229 5856 [ 3B510F20806B94E389784ED09DBD2111 ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll
17:25:08.0234 5856 p2pimsvc - ok
17:25:08.0241 5856 [ 2A57A937BC5B1B2D6AFE6A8C5925F50B ] p2psvc C:\WINDOWS\system32\p2psvc.dll
17:25:08.0246 5856 p2psvc - ok
17:25:08.0250 5856 [ 764B1121867B2D9B31C491668AC72B2B ] Parport C:\WINDOWS\System32\drivers\parport.sys
17:25:08.0252 5856 Parport - ok
17:25:08.0255 5856 [ EF0C1749C9A8CEE9A457473D433CC00F ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys
17:25:08.0256 5856 partmgr - ok
17:25:08.0262 5856 [ 9A5309EF92F39346CFD5A4C2C3D1BFAD ] PcaSvc C:\WINDOWS\System32\pcasvc.dll
17:25:08.0267 5856 PcaSvc - ok
17:25:08.0274 5856 [ C0D3F3BC1C84B4BA746D9847314C1164 ] pci C:\WINDOWS\system32\drivers\pci.sys
17:25:08.0278 5856 pci - ok
17:25:08.0280 5856 [ 346E38FCC6859A727DD28AFAD1F0AFF4 ] pciide C:\WINDOWS\system32\drivers\pciide.sys
17:25:08.0281 5856 pciide - ok
17:25:08.0285 5856 [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397 ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys
17:25:08.0287 5856 pcmcia - ok
17:25:08.0290 5856 [ BF28771D1436C88BE1D297D3098B0F7D ] pcw C:\WINDOWS\system32\drivers\pcw.sys
17:25:08.0291 5856 pcw - ok
17:25:08.0294 5856 [ B9D968D8E2B0F9C6301CEB39CFC9B9E4 ] pdc C:\WINDOWS\system32\drivers\pdc.sys
17:25:08.0295 5856 pdc - ok
17:25:08.0304 5856 [ BA50CC0BD19004AAB88BE37338B6FA0D ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys
17:25:08.0308 5856 PEAUTH - ok
17:25:08.0325 5856 [ 084DE525DFE82AE7453DD527390FA110 ] PeerDistSvc C:\WINDOWS\system32\peerdistsvc.dll
17:25:08.0340 5856 PeerDistSvc - ok
17:25:08.0356 5856 [ 8E3C640FFF5A963F570233AE99C0FFF3 ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe
17:25:08.0359 5856 PerfHost - ok
17:25:08.0374 5856 [ 928061178CD9856CA6B67FFFCE6BA766 ] pla C:\WINDOWS\system32\pla.dll
17:25:08.0385 5856 pla - ok
17:25:08.0389 5856 [ 752A457320A946E03C3AA86C3ACD735E ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll
17:25:08.0392 5856 PlugPlay - ok
17:25:08.0394 5856 PnkBstrA - ok
17:25:08.0397 5856 [ 045EB4F260606A03BE340D09DEAF3BA4 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll
17:25:08.0400 5856 PNRPAutoReg - ok
17:25:08.0406 5856 [ 3B510F20806B94E389784ED09DBD2111 ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll
17:25:08.0410 5856 PNRPsvc - ok
17:25:08.0415 5856 [ C16097D77A232A288D65F299E2E01105 ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll
17:25:08.0420 5856 PolicyAgent - ok
17:25:08.0424 5856 [ 00E08B30E7F7C13ECE2CDF4F46A77311 ] Power C:\WINDOWS\system32\umpo.dll
17:25:08.0427 5856 Power - ok
17:25:08.0431 5856 [ E075CC071022BD4E9BE7C024717C0E0A ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
17:25:08.0432 5856 PptpMiniport - ok
17:25:08.0453 5856 [ B7DB57A000D46D4DE75BC0C563E58072 ] PrintNotify C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
17:25:08.0470 5856 PrintNotify - ok
17:25:08.0475 5856 [ ECD373F9571C745894367CC2635EA44F ] Processor C:\WINDOWS\System32\drivers\processr.sys
17:25:08.0477 5856 Processor - ok
17:25:08.0481 5856 [ 9E5A3A3B702ECB9E88AA07731F0E65EB ] ProfSvc C:\WINDOWS\system32\profsvc.dll
17:25:08.0485 5856 ProfSvc - ok
17:25:08.0489 5856 [ 8528BB05E4D4E25945F78B00B2555FB7 ] Psched C:\WINDOWS\system32\DRIVERS\pacer.sys
17:25:08.0490 5856 Psched - ok
17:25:08.0495 5856 [ AF90BB44C99D6820BE52C9BBAA523283 ] QWAVE C:\WINDOWS\system32\qwave.dll
17:25:08.0500 5856 QWAVE - ok
17:25:08.0503 5856 [ 3FB466684609A4329858CF2EBD62E0FD ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys
17:25:08.0504 5856 QWAVEdrv - ok
17:25:08.0507 5856 [ 2C56F0EE27E4EF70CA4B4983D3638905 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
17:25:08.0507 5856 RasAcd - ok
17:25:08.0511 5856 [ 55FE43112F61836D0581D615C72AA113 ] RasAgileVpn C:\WINDOWS\system32\DRIVERS\AgileVpn.sys
17:25:08.0512 5856 RasAgileVpn - ok
17:25:08.0515 5856 [ 5F061AC45266841A2860C1858ED863B8 ] RasAuto C:\WINDOWS\System32\rasauto.dll
17:25:08.0518 5856 RasAuto - ok
17:25:08.0521 5856 [ BBB6272B7F46C4640A8CDB8A70C3450F ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
17:25:08.0523 5856 Rasl2tp - ok
17:25:08.0529 5856 [ BF3B17016764F20F9D28CF1A8DC210C0 ] RasMan C:\WINDOWS\System32\rasmans.dll
17:25:08.0536 5856 RasMan - ok
17:25:08.0539 5856 [ 5247F308C4103CDC4FE12AE1D235800A ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
17:25:08.0540 5856 RasPppoe - ok
17:25:08.0543 5856 [ 2B0F1677CDD08967005F34488559BC6F ] RasSstp C:\WINDOWS\system32\DRIVERS\rassstp.sys
17:25:08.0545 5856 RasSstp - ok
17:25:08.0551 5856 [ B939A2A0F9D6C6C186721E268EB6FA93 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
17:25:08.0554 5856 rdbss - ok
17:25:08.0558 5856 [ 6B21EBF892CD8CACB71669B35AB5DE32 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys
17:25:08.0559 5856 rdpbus - ok
17:25:08.0563 5856 [ 680C1DAE268B6FB67FA21B389A8B79EF ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys
17:25:08.0565 5856 RDPDR - ok
17:25:08.0569 5856 [ 858776908AF838E3790F3261B799CDA6 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
17:25:08.0570 5856 RdpVideoMiniport - ok
17:25:08.0575 5856 [ 06250FF7F8E5F98DAA6F2D6251B1694E ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys
17:25:08.0577 5856 rdyboost - ok
17:25:08.0587 5856 [ 036746D54347FD2D0385668E2A4064E4 ] ReFS C:\WINDOWS\system32\drivers\ReFS.sys
17:25:08.0593 5856 ReFS - ok
17:25:08.0598 5856 [ BFFB40FBE6D2C3469F8D06EE5E4934AB ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
17:25:08.0602 5856 RemoteAccess - ok
17:25:08.0606 5856 [ 4DCCABE03D06955ED61BABBD8EF9F30F ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
17:25:08.0610 5856 RemoteRegistry - ok
17:25:08.0613 5856 [ D894CBD7DA753C881EE8D5E33B583225 ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll
17:25:08.0616 5856 RpcEptMapper - ok
Naposledy upravil(a) sim20 dne 29 led 2014 19:01, celkem upraveno 1 x.

sim20
Level 3.5
Level 3.5
Příspěvky: 654
Registrován: říjen 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod sim20 » 29 led 2014 17:28

17:25:08.0619 5856 [ 5CAE8F47B31D5CFC322B5B898C19E0FE ] RpcLocator C:\WINDOWS\system32\locator.exe
17:25:08.0621 5856 RpcLocator - ok
17:25:08.0630 5856 [ 3FD5AE42EC87C6F532A931F96BE731DD ] RpcSs C:\WINDOWS\system32\rpcss.dll
17:25:08.0635 5856 RpcSs - ok
17:25:08.0638 5856 [ 2D05A5508F4685412F2B89E8C2189ABC ] rspndr C:\WINDOWS\system32\DRIVERS\rspndr.sys
17:25:08.0640 5856 rspndr - ok
17:25:08.0643 5856 [ 6FA271B6816AFFAEF640808FC51AC8AF ] RTCore64 C:\Program Files (x86)\MSI Afterburner\RTCore64.sys
17:25:08.0644 5856 RTCore64 - ok
17:25:08.0651 5856 [ 19764658C1468C2C0CEF133D28414A6B ] RTL8168 C:\WINDOWS\system32\DRIVERS\Rt630x64.sys
17:25:08.0656 5856 RTL8168 - ok
17:25:08.0658 5856 [ 1A063730F221B2746FF00457AE17E4F0 ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys
17:25:08.0659 5856 s3cap - ok
17:25:08.0662 5856 [ F6F209DDB94959BA104FC8FC87C53759 ] SamSs C:\WINDOWS\system32\lsass.exe
17:25:08.0664 5856 SamSs - ok
17:25:08.0668 5856 [ C624A1B32211C3166EDB3F4AB02A30B7 ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys
17:25:08.0671 5856 sbp2port - ok
17:25:08.0675 5856 [ 47C497FA4DDEA908633CAA60CEBE6805 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll
17:25:08.0679 5856 SCardSvr - ok
17:25:08.0683 5856 [ E76C4E98302AE39CC6FA5D20FC8B5438 ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll
17:25:08.0686 5856 ScDeviceEnum - ok
17:25:08.0689 5856 [ ABD0237B15DBD2B4695F4B7D734A58F7 ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys
17:25:08.0691 5856 scfilter - ok
17:25:08.0702 5856 [ 888A30EAB651502352C18745367FD179 ] Schedule C:\WINDOWS\system32\schedsvc.dll
17:25:08.0712 5856 Schedule - ok
17:25:08.0716 5856 [ AB285CE3431FF3D2ACE669245874C1C7 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll
17:25:08.0717 5856 SCPolicySvc - ok
17:25:08.0723 5856 [ 2F9A3380B8C0380E5608E29C7AA66899 ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys
17:25:08.0727 5856 sdbus - ok
17:25:08.0731 5856 [ 4EAF4DCF9DBD9A56952A58F56D61C005 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys
17:25:08.0732 5856 sdstor - ok
17:25:08.0735 5856 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\WINDOWS\system32\drivers\secdrv.sys
17:25:08.0736 5856 secdrv - ok
17:25:08.0739 5856 [ C49009F897BA4F2F4F31043663AA1485 ] seclogon C:\WINDOWS\system32\seclogon.dll
17:25:08.0742 5856 seclogon - ok
17:25:08.0745 5856 [ A88882E64BDC1D8E8D6E727B71CCCC53 ] SENS C:\WINDOWS\System32\sens.dll
17:25:08.0748 5856 SENS - ok
17:25:08.0753 5856 [ 19240C13F526125554B5370566F21A0A ] SensorsSimulatorDriver C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
17:25:08.0755 5856 SensorsSimulatorDriver - ok
17:25:08.0759 5856 [ E66A7C8CE7ED22DED6DF1CA479FB4790 ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll
17:25:08.0763 5856 SensrSvc - ok
17:25:08.0766 5856 [ DB2FF24CE0BDD15FE75870AFE312BA89 ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys
17:25:08.0768 5856 SerCx - ok
17:25:08.0771 5856 [ 0044B31F93946D5D41982314381FE431 ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys
17:25:08.0773 5856 SerCx2 - ok
17:25:08.0776 5856 [ 3CD600C089C1251BEEB4CD4CD5164F9E ] Serenum C:\WINDOWS\System32\drivers\serenum.sys
17:25:08.0777 5856 Serenum - ok
17:25:08.0781 5856 [ D864381BC9C725FAB01D94C060660166 ] Serial C:\WINDOWS\System32\drivers\serial.sys
17:25:08.0782 5856 Serial - ok
17:25:08.0785 5856 [ 0BD2B65DCE756FDE95A2E5CCCBF7705D ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys
17:25:08.0786 5856 sermouse - ok
17:25:08.0795 5856 [ 441E6FF1F34D7A942946DB42A15FB519 ] SessionEnv C:\WINDOWS\system32\sessenv.dll
17:25:08.0801 5856 SessionEnv - ok
17:25:08.0804 5856 [ 472B7A5AC181C050888DB454663DD764 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys
17:25:08.0804 5856 sfloppy - ok
17:25:08.0810 5856 [ 08A08EC17F1874802A8BC6D083BF1C55 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
17:25:08.0815 5856 SharedAccess - ok
17:25:08.0823 5856 [ 0D190D8B4B20446BE6299AC734DFADF1 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
17:25:08.0829 5856 ShellHWDetection - ok
17:25:08.0833 5856 [ 2F518D13DD6F3053837FE606F1A2EA1F ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys
17:25:08.0834 5856 SiSRaid2 - ok
17:25:08.0837 5856 [ 1AC9A200A9C49C4508F04AAFFCA34A3F ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys
17:25:08.0838 5856 SiSRaid4 - ok
17:25:08.0842 5856 [ F5BBEDF602C310B00036EB2DBF4348A5 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
17:25:08.0843 5856 SkypeUpdate - ok
17:25:08.0846 5856 [ 587ACA15210D1B01FBF272E07A08F91A ] smphost C:\WINDOWS\System32\smphost.dll
17:25:08.0849 5856 smphost - ok
17:25:08.0855 5856 [ 49EEB92DE930B8566EF615D600781DB4 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe
17:25:08.0859 5856 SNMPTRAP - ok
17:25:08.0866 5856 [ F6EBE514D13ECE7EDC23440039CDF9AB ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys
17:25:08.0871 5856 spaceport - ok
17:25:08.0875 5856 [ F337BE11071818FC3F5DC2940B6BDE34 ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys
17:25:08.0876 5856 SpbCx - ok
17:25:08.0885 5856 [ FE0CB40F36D3FCDD3A1B312EF72C38D5 ] Spooler C:\WINDOWS\System32\spoolsv.exe
17:25:08.0890 5856 Spooler - ok
17:25:08.0935 5856 [ E6DEC72A2A23FAA53EB9FEC3C7E29D66 ] sppsvc C:\WINDOWS\system32\sppsvc.exe
17:25:08.0973 5856 sppsvc - ok
17:25:08.0978 5856 [ EAD5300C93946B0250A309E2BF2BE4CF ] SQLWriter C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
17:25:08.0979 5856 SQLWriter - ok
17:25:08.0985 5856 [ CD7534BA5BA92086B1BC10ADF880FC49 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys
17:25:08.0988 5856 srv - ok
17:25:08.0996 5856 [ C1AE59C0B0817236EC083A91C396005A ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys
17:25:09.0000 5856 srv2 - ok
17:25:09.0004 5856 [ 77195C32175FC63D6054EBA5A066D727 ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys
17:25:09.0006 5856 srvnet - ok
17:25:09.0011 5856 [ BB9ED3EDD8E85008215A7250D325A72E ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
17:25:09.0015 5856 SSDPSRV - ok
17:25:09.0019 5856 [ 3911418AFDE10EA6823B7799E4815524 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll
17:25:09.0023 5856 SstpSvc - ok
17:25:09.0028 5856 [ AAF6F247F1DC370C593B4430974EAD9C ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
17:25:09.0030 5856 ssudmdm - ok
17:25:09.0037 5856 [ 5FFDA96330357A914A69D79BE1988A38 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
17:25:09.0039 5856 Steam Client Service - ok
17:25:09.0043 5856 [ 366DEA74BBA65B362BCCFC6FC2ADFD8B ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys
17:25:09.0044 5856 stexstor - ok
17:25:09.0052 5856 [ D638904FE86A5FE542A1BA13A9D68E5C ] stisvc C:\WINDOWS\System32\wiaservc.dll
17:25:09.0059 5856 stisvc - ok
17:25:09.0063 5856 [ 0ED2E318ABB68C1A35A8B8038BDB4C90 ] storahci C:\WINDOWS\system32\drivers\storahci.sys
17:25:09.0065 5856 storahci - ok
17:25:09.0068 5856 [ 7A08CEE1535F5A448215634C5EA74E50 ] storflt C:\WINDOWS\system32\DRIVERS\vmstorfl.sys
17:25:09.0069 5856 storflt - ok
17:25:09.0072 5856 [ D57AEE34C7C0DD1DC8B6B54B7A89649C ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys
17:25:09.0074 5856 stornvme - ok
17:25:09.0076 5856 [ 3118058E3D07021A55324A943C6D722B ] StorSvc C:\WINDOWS\system32\storsvc.dll
17:25:09.0080 5856 StorSvc - ok
17:25:09.0083 5856 [ 548759755BC73DAD663250239D7E0B9F ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys
17:25:09.0084 5856 storvsc - ok
17:25:09.0087 5856 [ 03618F935379614837F915D04C45FC0E ] storvsp C:\WINDOWS\System32\drivers\storvsp.sys
17:25:09.0089 5856 storvsp - ok
17:25:09.0092 5856 [ D8E1AE075AB3E8AD56F69C44AA978596 ] svsvc C:\WINDOWS\system32\svsvc.dll
17:25:09.0095 5856 svsvc - ok
17:25:09.0098 5856 [ 84E0F5D41C138C5CC975137A2A98F6D3 ] swenum C:\WINDOWS\System32\drivers\swenum.sys
17:25:09.0098 5856 swenum - ok
17:25:09.0108 5856 [ A5DC2E63F5E5D3C0B843307374998479 ] swprv C:\WINDOWS\System32\swprv.dll
17:25:09.0115 5856 swprv - ok
17:25:09.0127 5856 [ E45DA7CBBA34510C8B9473AD7D4FFD0B ] SysMain C:\WINDOWS\system32\sysmain.dll
17:25:09.0137 5856 SysMain - ok
17:25:09.0143 5856 [ 373382005ACB27CB16ED16722FBE946A ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
17:25:09.0147 5856 SystemEventsBroker - ok
17:25:09.0151 5856 [ BA6DD39266A5E15515C8C14DA2DA3E5C ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
17:25:09.0155 5856 TabletInputService - ok
17:25:09.0158 5856 [ F9BE29D5E097F03F81D3CD12B794CB66 ] tap0901 C:\WINDOWS\system32\DRIVERS\tap0901.sys
17:25:09.0159 5856 tap0901 - ok
17:25:09.0162 5856 [ B08740047145B9BCE15BF75CA0F9718A ] tap0901t C:\WINDOWS\system32\DRIVERS\tap0901t.sys
17:25:09.0163 5856 tap0901t - ok
17:25:09.0168 5856 [ B517410F157693043DACA21B19B258A6 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
17:25:09.0173 5856 TapiSrv - ok
17:25:09.0194 5856 [ 59238CA23C6C7E881A2D403FC90A8C3B ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys
17:25:09.0209 5856 Tcpip - ok
17:25:09.0229 5856 [ 59238CA23C6C7E881A2D403FC90A8C3B ] TCPIP6 C:\WINDOWS\system32\DRIVERS\tcpip.sys
17:25:09.0237 5856 TCPIP6 - ok
17:25:09.0242 5856 [ 33A7D83EEB15431773A6E186CFAABA21 ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys
17:25:09.0243 5856 tcpipreg - ok
17:25:09.0248 5856 [ FFF28F9F6823EB1756C60F1649560BBF ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys
17:25:09.0250 5856 tdx - ok
17:25:09.0253 5856 [ 232D185D2337F141311D0CF1983E1431 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys
17:25:09.0255 5856 terminpt - ok
17:25:09.0265 5856 [ 2C77831737491F4D684D315B95C62883 ] TermService C:\WINDOWS\System32\termsrv.dll
17:25:09.0274 5856 TermService - ok
17:25:09.0278 5856 [ 05FBE1F7C13E87AF7A414CDF288B1F62 ] Themes C:\WINDOWS\system32\themeservice.dll
17:25:09.0281 5856 Themes - ok
17:25:09.0285 5856 [ FD788C2D96EA91469A3C1D13E80D7473 ] THREADORDER C:\WINDOWS\system32\mmcss.dll
17:25:09.0287 5856 THREADORDER - ok
17:25:09.0291 5856 [ 347A3E49CE18402305B8119A6EC7CFEB ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll
17:25:09.0296 5856 TimeBroker - ok
17:25:09.0299 5856 [ 2867DEC7A25DCF98CA65BBDCEDA0A78E ] TmBusEn C:\WINDOWS\System32\drivers\TmBusEn.sys
17:25:09.0299 5856 TmBusEn - ok
17:25:09.0303 5856 [ C0C94A84AF75661E951AEAC04F044351 ] TmFilter C:\WINDOWS\System32\drivers\TmFilter.sys
17:25:09.0304 5856 TmFilter - ok
17:25:09.0307 5856 [ 59F698C8B9D9BBB84F3499A92C4B53E7 ] TmHid C:\WINDOWS\system32\DRIVERS\TmHid.sys
17:25:09.0309 5856 TmHid - ok
17:25:09.0313 5856 [ 6E0034A5D665472E508F02F9B44DB3C8 ] TmWinService C:\Program Files (x86)\Thrustmaster\TARGET\TmService.exe
17:25:09.0315 5856 TmWinService - ok
17:25:09.0319 5856 [ 82F909359600D3603FE852DB7F135626 ] TPM C:\WINDOWS\system32\drivers\tpm.sys
17:25:09.0322 5856 TPM - ok
17:25:09.0326 5856 [ C97E14BB6A196B0554D6EB67D8818175 ] TrkWks C:\WINDOWS\System32\trkwks.dll
17:25:09.0329 5856 TrkWks - ok
17:25:09.0333 5856 [ DA56FFA46030E6FEB215E3D5DAA65B11 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
17:25:09.0334 5856 TrustedInstaller - ok
17:25:09.0338 5856 [ BF8F54CA37E9C9D6582C31C5761F8C93 ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys
17:25:09.0340 5856 TsUsbFlt - ok
17:25:09.0343 5856 [ E0088068DCE2EE82897027DDB8E05254 ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys
17:25:09.0344 5856 TsUsbGD - ok
17:25:09.0348 5856 [ C8E0E78B5D284C2FF59BDFFDAF997242 ] tunnel C:\WINDOWS\system32\DRIVERS\tunnel.sys
17:25:09.0350 5856 tunnel - ok
17:25:09.0359 5856 [ 97D6177C2DCCDA2BA25F053B3C75D74E ] TunngleService C:\Program Files (x86)\Tunngle\TnglCtrl.exe
17:25:09.0364 5856 TunngleService - ok
17:25:09.0367 5856 [ F6EEAD052943B5A3104C1405BB856C54 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys
17:25:09.0368 5856 uagp35 - ok
17:25:09.0372 5856 [ FE6067B1FD4E63650C667B33D080565B ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys
17:25:09.0374 5856 UASPStor - ok
17:25:09.0379 5856 [ 5D1B430EA11064C56E7C8F84B90DEB6A ] UCX01000 C:\WINDOWS\System32\drivers\ucx01000.sys
17:25:09.0382 5856 UCX01000 - ok
17:25:09.0388 5856 [ 1EC649F112896FAE33250F0B97AC5D0B ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys
17:25:09.0390 5856 udfs - ok
17:25:09.0394 5856 [ 9578691F297E1B1F519970FE6D47CB21 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys
17:25:09.0395 5856 UEFI - ok
17:25:09.0401 5856 [ 320878AFECDBBD61BBE98624A6CAAC08 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe
17:25:09.0404 5856 UI0Detect - ok
17:25:09.0408 5856 [ 5EAB5117DDB24FC4D39E6FFFCF1837B9 ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys
17:25:09.0409 5856 uliagpkx - ok
17:25:09.0412 5856 [ DA34C39A18E60E7C3FA0630566408034 ] umbus C:\WINDOWS\System32\drivers\umbus.sys
17:25:09.0413 5856 umbus - ok
17:25:09.0416 5856 [ AE8294875E5446E359B1E8035D40C05E ] UmPass C:\WINDOWS\System32\drivers\umpass.sys
17:25:09.0417 5856 UmPass - ok
17:25:09.0422 5856 [ E3DDF7D43E05784FAA5E042605EEE528 ] UmRdpService C:\WINDOWS\System32\umrdp.dll
17:25:09.0427 5856 UmRdpService - ok
17:25:09.0434 5856 [ 4A2FFDAC45F317E17DF642C7160EB633 ] upnphost C:\WINDOWS\System32\upnphost.dll
17:25:09.0440 5856 upnphost - ok
17:25:09.0445 5856 [ 3432E857B8EC1C1316AB098F2BCCDFB6 ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys
17:25:09.0448 5856 usbccgp - ok
17:25:09.0452 5856 [ B3D6457D841A0CAEF4C52D88621715F2 ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys
17:25:09.0454 5856 usbcir - ok
17:25:09.0458 5856 [ 5477D6E27C7D266EF8C152B9A25ADE5E ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys
17:25:09.0460 5856 usbehci - ok
17:25:09.0469 5856 [ DF56C2C04EFA328D7A66B69007130266 ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys
17:25:09.0474 5856 usbhub - ok
17:25:09.0484 5856 [ C0E33820326199CE3CFD3B9F27F81D99 ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys
17:25:09.0490 5856 USBHUB3 - ok
17:25:09.0494 5856 [ 3019097FB6C985EF24C058090FF3BDBD ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys
17:25:09.0495 5856 usbohci - ok
17:25:09.0498 5856 [ 4D655E3B684BE9B0F7FFD8A2935C348C ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys
17:25:09.0499 5856 usbprint - ok
17:25:09.0502 5856 [ 029DFB6E5B38ADD45561A8CE0F60B331 ] usbser C:\WINDOWS\system32\DRIVERS\usbser.sys
17:25:09.0504 5856 usbser - ok
17:25:09.0509 5856 [ B1230E9813B5C7E762DF27756AA23917 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS
17:25:09.0511 5856 USBSTOR - ok
17:25:09.0515 5856 [ BA4FA655E0FC577DB7436FC963932CE4 ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys
17:25:09.0516 5856 usbuhci - ok
17:25:09.0523 5856 [ 3B44CB989757428208CCFCC028C13110 ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS
17:25:09.0528 5856 USBXHCI - ok
17:25:09.0531 5856 [ F6F209DDB94959BA104FC8FC87C53759 ] VaultSvc C:\WINDOWS\system32\lsass.exe
17:25:09.0533 5856 VaultSvc - ok
17:25:09.0536 5856 [ FEB26E3B8345A7E8D62F945C4AE86562 ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys
17:25:09.0537 5856 vdrvroot - ok
17:25:09.0549 5856 [ CFBAD6B48EDFAA0828A52646B7C4C08D ] vds C:\WINDOWS\System32\vds.exe
17:25:09.0560 5856 vds - ok
17:25:09.0565 5856 [ A026EDEAA5EECAE0B08E2748B616D4BD ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys
17:25:09.0567 5856 VerifierExt - ok
17:25:09.0578 5856 [ 041D3EF364E624DBB2703A64A5AADF89 ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
17:25:09.0586 5856 vhdmp - ok
17:25:09.0589 5856 [ 06D38968028E9AB19DE9B618C7B6D199 ] viaide C:\WINDOWS\system32\drivers\viaide.sys
17:25:09.0591 5856 viaide - ok
17:25:09.0595 5856 [ 3CE922E34DB12D9F3C0EA856BC09687C ] Vid C:\WINDOWS\System32\drivers\Vid.sys
17:25:09.0598 5856 Vid - ok
17:25:09.0601 5856 [ C6305BDFC4F7CE51F72BB072C03D4ACE ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys
17:25:09.0603 5856 vmbus - ok
17:25:09.0606 5856 [ DA40BEA0A863CE768C940CA9723BF81F ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys
17:25:09.0607 5856 VMBusHID - ok
17:25:09.0611 5856 [ 68F8C26DEA2D42E8DEC0778943433C80 ] vmbusr C:\WINDOWS\System32\drivers\vmbusr.sys
17:25:09.0612 5856 vmbusr - ok
17:25:09.0619 5856 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
17:25:09.0624 5856 vmicguestinterface - ok
17:25:09.0631 5856 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll
17:25:09.0634 5856 vmicheartbeat - ok
17:25:09.0641 5856 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
17:25:09.0644 5856 vmickvpexchange - ok
17:25:09.0650 5856 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicrdv C:\WINDOWS\System32\ICSvc.dll
17:25:09.0654 5856 vmicrdv - ok
17:25:09.0660 5856 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll
17:25:09.0663 5856 vmicshutdown - ok
17:25:09.0670 5856 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmictimesync C:\WINDOWS\System32\ICSvc.dll
17:25:09.0673 5856 vmictimesync - ok
17:25:09.0681 5856 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicvss C:\WINDOWS\System32\ICSvc.dll
17:25:09.0684 5856 vmicvss - ok
17:25:09.0690 5856 [ 55D7D963DE85162F1C49721E502F9744 ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys
17:25:09.0694 5856 volmgr - ok
17:25:09.0700 5856 [ CCB9E901F7254BF96D28EB1B0E5329B7 ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys
17:25:09.0703 5856 volmgrx - ok
17:25:09.0710 5856 [ 9F9CE33B50611A1C61A46B8911E0B30B ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys
17:25:09.0715 5856 volsnap - ok
17:25:09.0719 5856 [ 01355C98B5C3ED1EC446743CDA848FCE ] vpci C:\WINDOWS\System32\drivers\vpci.sys
17:25:09.0720 5856 vpci - ok
17:25:09.0724 5856 [ ADBE96C33D1A5BB1BBAF90B4BC84F523 ] vpcivsp C:\WINDOWS\System32\drivers\vpcivsp.sys
17:25:09.0726 5856 vpcivsp - ok
17:25:09.0729 5856 [ 4539F45F9F4C9757A86A56C949421E07 ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys
17:25:09.0731 5856 vsmraid - ok
17:25:09.0745 5856 [ D51D7EF1EA5ED2BB01E9D07E6E0533BC ] VSS C:\WINDOWS\system32\vssvc.exe
17:25:09.0756 5856 VSS - ok
17:25:09.0762 5856 [ 0849B7260F26FE05EA56DED0672E2F4B ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys
17:25:09.0764 5856 VSTXRAID - ok
17:25:09.0767 5856 [ BE970C369E43B509C1EDA2B8FA7CECB0 ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys
17:25:09.0769 5856 vwifibus - ok
17:25:09.0775 5856 [ 7599E582CA3A6AAA95A18FFE1172D339 ] W32Time C:\WINDOWS\system32\w32time.dll
17:25:09.0780 5856 W32Time - ok
17:25:09.0784 5856 [ 0910AB9ED404C1434E2D0376C2AD5D8B ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys
17:25:09.0785 5856 WacomPen - ok
17:25:09.0789 5856 [ AFCD4054D61BD708B82991348ED1C763 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
17:25:09.0790 5856 Wanarp - ok
17:25:09.0793 5856 [ AFCD4054D61BD708B82991348ED1C763 ] Wanarpv6 C:\WINDOWS\system32\DRIVERS\wanarp.sys
17:25:09.0794 5856 Wanarpv6 - ok
17:25:09.0807 5856 [ 92BF4B3EBD6F163B94B7A20C65E7B698 ] wbengine C:\WINDOWS\system32\wbengine.exe
17:25:09.0819 5856 wbengine - ok
17:25:09.0826 5856 [ 58F28103889817C93E5B5AFABC87E709 ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll
17:25:09.0831 5856 WbioSrvc - ok
17:25:09.0838 5856 [ 772365894F14652D376B2E5030179DC9 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll
17:25:09.0843 5856 Wcmsvc - ok
17:25:09.0850 5856 [ D2726823DF7E19F213F4805A9D6D145F ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll
17:25:09.0857 5856 wcncsvc - ok
17:25:09.0860 5856 [ 846C02A8B48CBD921A3D6AB521AA0DC4 ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
17:25:09.0863 5856 WcsPlugInService - ok
17:25:09.0867 5856 [ 694B28DE12AD47031FFB4B052662131A ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys
17:25:09.0868 5856 WdBoot - ok
17:25:09.0878 5856 [ CB6C63FF8342B467E2EF76E98D5B934D ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys
17:25:09.0883 5856 Wdf01000 - ok
17:25:09.0888 5856 [ 0B99529A3BECC3528D865DDECB62503B ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys
17:25:09.0891 5856 WdFilter - ok
17:25:09.0894 5856 [ 40C67D1A4891120874767F6E6604D6C5 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll
17:25:09.0898 5856 WdiServiceHost - ok
17:25:09.0901 5856 [ 40C67D1A4891120874767F6E6604D6C5 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll
17:25:09.0905 5856 WdiSystemHost - ok
17:25:09.0908 5856 [ 282E7D46310338FF4A6B7680440EB0DA ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys
17:25:09.0910 5856 WdNisDrv - ok
17:25:09.0912 5856 WdNisSvc - ok
17:25:09.0917 5856 [ 6588A957873326361AB1CAC4E76F8394 ] WebClient C:\WINDOWS\System32\webclnt.dll
17:25:09.0922 5856 WebClient - ok
17:25:09.0927 5856 [ 3274312F263882B51B964329FAF49734 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll
17:25:09.0931 5856 Wecsvc - ok
17:25:09.0935 5856 [ 7CDD84E0023A0C5C230B06A7965EC65E ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll
17:25:09.0938 5856 WEPHOSTSVC - ok
17:25:09.0941 5856 [ AA1315B87D9B2E39584165318A59F15D ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll
17:25:09.0945 5856 wercplsupport - ok
17:25:09.0949 5856 [ 22B4C24AB921BFF7827FFBCA1F4E1BB3 ] WerSvc C:\WINDOWS\System32\WerSvc.dll
17:25:09.0953 5856 WerSvc - ok
17:25:09.0957 5856 [ 2E3E82D7B1076B90F4E228A8EF17B261 ] WFPLWFS C:\WINDOWS\system32\DRIVERS\wfplwfs.sys
17:25:09.0958 5856 WFPLWFS - ok
17:25:09.0962 5856 [ E06AFE2F94BA7CFA2FE4FD2A449E60E2 ] WiaRpc C:\WINDOWS\System32\wiarpc.dll
17:25:09.0966 5856 WiaRpc - ok
17:25:09.0969 5856 [ 867BCC69ED9C31C501465EB0E8BA9DFA ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys
17:25:09.0970 5856 WIMMount - ok
17:25:09.0972 5856 WinDefend - ok
17:25:09.0984 5856 [ DD079EC8F44DCA3A176B345C6ADEFB66 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
17:25:09.0992 5856 WinHttpAutoProxySvc - ok
17:25:09.0998 5856 [ 9DB490F3E823C5C3C070644B96CB9D59 ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
17:25:10.0000 5856 Winmgmt - ok
17:25:10.0027 5856 [ 690C3FC5C9DBD6B9AEDF8341EC720E41 ] WinRM C:\WINDOWS\system32\WsmSvc.dll
17:25:10.0055 5856 WinRM - ok
17:25:10.0069 5856 [ AC263C2F66405589528995AA41040599 ] WinUsb C:\WINDOWS\system32\DRIVERS\WinUsb.sys
17:25:10.0071 5856 WinUsb - ok
17:25:10.0084 5856 [ 9378B4E7E4E3EAE2F05823CFFF2C6EF4 ] WlanSvc C:\WINDOWS\System32\wlansvc.dll
17:25:10.0095 5856 WlanSvc - ok
17:25:10.0110 5856 [ C2838466CCC44FAEF2C3D4C1E5971ECB ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll
17:25:10.0122 5856 wlidsvc - ok
17:25:10.0126 5856 [ 2834D9D3B4F554A39C72F00EA3F0E128 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys
17:25:10.0127 5856 WmiAcpi - ok
17:25:10.0133 5856 [ 7AFAC828F52D62F304A911EC32F42EEE ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe
17:25:10.0135 5856 wmiApSrv - ok
17:25:10.0138 5856 WMPNetworkSvc - ok
17:25:10.0154 5856 [ 53A36BD7ABD1E56C9A0C923F09C717E3 ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll
17:25:10.0166 5856 workfolderssvc - ok
17:25:10.0170 5856 [ E746BCDBA2E02CF6B8D6B26FB167FBE0 ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
17:25:10.0171 5856 wpcfltr - ok
17:25:10.0174 5856 [ 4E6A0F60DA7EF050D3D26417CD4D24E9 ] WPCSvc C:\WINDOWS\System32\wpcsvc.dll
17:25:10.0178 5856 WPCSvc - ok
17:25:10.0181 5856 [ D27491CFCE452C154CECFA155AD0EBC8 ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll
17:25:10.0185 5856 WPDBusEnum - ok
17:25:10.0188 5856 [ 9F2904B55F6CECCD1A8D986B5CE2609A ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys
17:25:10.0189 5856 WpdUpFltr - ok
17:25:10.0193 5856 [ AE072B0339D0A18E455DC21666CAD572 ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys
17:25:10.0194 5856 ws2ifsl - ok
17:25:10.0198 5856 [ 5CFA46C4ACB2FD70572017052378DAE5 ] wscsvc C:\WINDOWS\System32\wscsvc.dll
17:25:10.0202 5856 wscsvc - ok
17:25:10.0205 5856 WSearch - ok
17:25:10.0232 5856 [ D8E3A4701376CCFD0BE542D745FA4809 ] WSService C:\WINDOWS\System32\WSService.dll
17:25:10.0255 5856 WSService - ok
17:25:10.0282 5856 [ A4158154BABB7A29BF5639CFAB3CEC2C ] wuauserv C:\WINDOWS\system32\wuaueng.dll
17:25:10.0305 5856 wuauserv - ok
17:25:10.0309 5856 [ 2FEAE33E9B2B56104596E1BA444405A9 ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys
17:25:10.0311 5856 WudfPf - ok
17:25:10.0316 5856 [ 19240C13F526125554B5370566F21A0A ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys
17:25:10.0317 5856 WUDFRd - ok
17:25:10.0322 5856 [ 19240C13F526125554B5370566F21A0A ] WUDFSensorLP C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
17:25:10.0323 5856 WUDFSensorLP - ok
17:25:10.0328 5856 [ BB73CBC65AABC4EA0A5C6A1474A0A743 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll
17:25:10.0332 5856 wudfsvc - ok
17:25:10.0337 5856 [ 19240C13F526125554B5370566F21A0A ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
17:25:10.0338 5856 WUDFWpdFs - ok
17:25:10.0343 5856 [ 19240C13F526125554B5370566F21A0A ] WUDFWpdMtp C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
17:25:10.0344 5856 WUDFWpdMtp - ok
17:25:10.0352 5856 [ 2FA9794CA36147756F3FDFD6CA29B46F ] WwanSvc C:\WINDOWS\System32\wwansvc.dll
17:25:10.0359 5856 WwanSvc - ok
17:25:10.0364 5856 [ 2C6BC21B2D5B58D8B1D638C1704CB494 ] xusb21 C:\WINDOWS\system32\DRIVERS\xusb21.sys
17:25:10.0366 5856 xusb21 - ok
17:25:10.0370 5856 [ 18D476A18E4DCC9B5823EBF6DAD96C58 ] xusb22 C:\WINDOWS\system32\DRIVERS\xusb22.sys
17:25:10.0371 5856 xusb22 - ok
17:25:10.0376 5856 ================ Scan global ===============================
17:25:10.0379 5856 [ C89780A6F58D113C28A96D85D1261DC5 ] C:\WINDOWS\system32\basesrv.dll
17:25:10.0384 5856 [ 599F1244C60E3D6C28A8DA7FBA7A2C13 ] C:\WINDOWS\system32\winsrv.dll
17:25:10.0390 5856 [ 9C1833ABD62876856836C5AE55C7CE86 ] C:\WINDOWS\system32\sxssrv.dll
17:25:10.0398 5856 [ B4B610BBCB002EC478C6FD80CF915697 ] C:\WINDOWS\system32\services.exe
17:25:10.0402 5856 [Global] - ok
17:25:10.0402 5856 ================ Scan MBR ==================================
17:25:10.0403 5856 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
17:25:10.0407 5856 \Device\Harddisk0\DR0 - ok
17:25:10.0408 5856 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
17:25:10.0443 5856 \Device\Harddisk1\DR1 - ok
17:25:10.0443 5856 ================ Scan VBR ==================================
17:25:10.0445 5856 [ 4D27082537A6FEFB850072C1BCFE16D0 ] \Device\Harddisk0\DR0\Partition1
17:25:10.0445 5856 \Device\Harddisk0\DR0\Partition1 - ok
17:25:10.0447 5856 [ 1F9EE704D86031F64F439AB4AC0CEC72 ] \Device\Harddisk1\DR1\Partition1
17:25:10.0447 5856 \Device\Harddisk1\DR1\Partition1 - ok
17:25:10.0448 5856 ============================================================
17:25:10.0448 5856 Scan finished
17:25:10.0448 5856 ============================================================
17:25:10.0452 5068 Detected object count: 0
17:25:10.0452 5068 Actual detected object count: 0
17:25:14.0366 1832 Deinitialize success

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 29 led 2014 20:06

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

sim20
Level 3.5
Level 3.5
Příspěvky: 654
Registrován: říjen 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod sim20 » 30 led 2014 00:01

Chrome se už chová normálně.
ComboFix nejde spustit. Mám Win8.1, v režimu kompatibility ho nespouštím.
Přílohy
CF.png
CF.png (4.43 KiB) Zobrazeno 276 x


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 87 hostů