Minerd - 91% Vyřešeno
-
- Level 3
- Příspěvky: 588
- Registrován: srpen 12
- Pohlaví:
- Stav:
Offline
Minerd - 91%
V PC mi běží zase nějaký proces minerd který mi zabírá 91% co je to za škodliváka a co s ním ?? :) Děkuji
Re: Minerd - 91%
Je to skodlivý vyzkus to zakázat ve službách a vypnut proces. Staci ale jen jít do Users\Public\..... a smazat minerd.exe a run.dllpak pujde vse v poho. Este bych doporucil potom pc restart a projet nejakym antivirem...
-
- Level 3
- Příspěvky: 588
- Registrován: srpen 12
- Pohlaví:
- Stav:
Offline
Re: Minerd - 91%
no ono mi to v antiviru nic nenajde (avast free) :(
-
- Level 3
- Příspěvky: 588
- Registrován: srpen 12
- Pohlaví:
- Stav:
Offline
Re: Minerd - 91%
ty soubory tam jsou ale nemají přípony dll tak které smazat?

EDIT: A ještě mě vždy po restartu vyhodí avast tuto zprávu a pak ještě jednu zprávu co snimi



EDIT: A ještě mě vždy po restartu vyhodí avast tuto zprávu a pak ještě jednu zprávu co snimi


- arnost123456789
- Level 1.5
- Příspěvky: 107
- Registrován: leden 14
- Pohlaví:
- Stav:
Offline
Re: Minerd - 91%
Prosím tě počkej až ti s tím poradí někdo z HiJackThis, můžeš sem hodit aspoň log myslím že tím ničemu neuškodíš. ( viewtopic.php?t=5119 )
My pc -
Systém - Windows 8 (64bit)
Základní deska - ASUS B75M-PLUS
Procesor - Intel Core i3 3,40 GHz (4 CPUs)
Graf. karta - Nvidia GeForce GTX650
RAM - 4GB
Systém - Windows 8 (64bit)
Základní deska - ASUS B75M-PLUS
Procesor - Intel Core i3 3,40 GHz (4 CPUs)
Graf. karta - Nvidia GeForce GTX650
RAM - 4GB
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Minerd - 91%
Pánové! Co třeba pravidla sekce HJT?
Vlož log z HJT:
viewtopic.php?f=70&t=5119
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni AdwCleaner (by Xplode)
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Pokud budou problémy , spusť v nouz. režimu.
Vlož log z HJT:
viewtopic.php?f=70&t=5119
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni AdwCleaner (by Xplode)
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
-
- Level 3
- Příspěvky: 588
- Registrován: srpen 12
- Pohlaví:
- Stav:
Offline
Re: Minerd - 91%
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:23:15, on 19. 2. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.16518)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\Michal\AppData\Local\Skillbrains\lightshot\4.4.2.10\LightShot.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\Michal\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe
C:\Windows\SysWOW64\DllHost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: SiteFinder - {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} - C:\Program Files (x86)\SiteFinder\SiteFinder.dll
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [WindowsDriverScan64] C:\Program Files (x86)\Win Drive\Drive.lnk
O4 - HKLM\..\Run: [WindowsDriverScan86] C:\Program Files (x86)\Win Drive\Drive86.lnk
O4 - HKLM\..\Run: [Xfire] C:\Program Files (x86)\Xfire2\Xfire.exe
O4 - HKLM\..\Run: [mncehobkqSrv] C:\Windows\inf\mncehobkq.vbe
O4 - HKLM\..\Run: [msrgwvqfSrv] "C:\Windows\system32\msrgwvqf.vbe" mseiakr mskppa
O4 - HKLM\..\Run: [mnclmcbcSrv] C:\Windows\inf\mnclmcbc.vbe
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [MSStp] C:\Windows\system32\msstp.vbe
O4 - HKLM\..\Run: [mncxgwaSrv] C:\Windows\inf\mncxgwa.vbe
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Lync] "C:\Program Files (x86)\Microsoft Office\Office15\lync.exe" /fromrunkey
O4 - HKCU\..\Run: [RGSC] C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
O4 - HKCU\..\Run: [OpaqueTaskbar] "C:\Users\Michal\Downloads\WINDOWS-8-NEPRŮHLEDNÝ,HLAVNÍ-PANEL\x64\OpaqueTaskbar.exe" /resident
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Xfire] C:\Program Files (x86)\Xfire2\Xfire.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [NextLive] C:\Windows\SysWOW64\rundll32.exe "C:\Users\Michal\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
O4 - HKCU\..\Run: [LightShot] C:\Users\Michal\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue
O4 - HKCU\..\Run: [Windows] C:\Users\Public\Public\run.vbs
O4 - Startup: Dropbox.lnk = Michal\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: NHL® 09 Registration.lnk = C:\Program Files (x86)\EA Sports\NHL 09\Support\EAregister.exe
O4 - Startup: Odeslat do OneNote.lnk = C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat do Bluetooth - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Site Finder - {CCC7B152-1D8C-11E3-B2AD-F3EF3D58318D} - C:\Program Files (x86)\SiteFinder\SiteFinder.dll
O9 - Extra button: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O9 - Extra 'Tools' menuitem: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: KMS Server Service (KMSServerService) - Unknown owner - C:\Windows\System32\KMSServer.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Service KMSELDI - Unknown owner - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VNC Server (vncserver) - RealVNC Ltd - C:\Program Files\RealVNC\VNC Server\vncservice.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 14510 bytes
# AdwCleaner v3.019 - Report created 19/02/2014 at 16:00:03
# Updated 17/02/2014 by Xplode
# Operating System : Windows 8.1 Pro (64 bits)
# Username : Michal - MICHAL
# Running from : C:\Users\Michal\Desktop\adwcleaner.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
File Found : C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\bpsr0739.default\Extensions\translator@zoli.bod.xpi
File Found : C:\Windows\Tasks\AmiUpdXp.job
Folder Found C:\Program Files (x86)\BitLord
Folder Found C:\Program Files (x86)\Mobogenie
Folder Found C:\Program Files (x86)\SimilarSites
Folder Found C:\Program Files (x86)\TechSmith
Folder Found C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitLord
Folder Found C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
Folder Found C:\ProgramData\TechSmith
Folder Found C:\Users\Michal\AppData\Local\genienext
Folder Found C:\Users\Michal\AppData\Local\Mobogenie
Folder Found C:\Users\Michal\AppData\Local\SwvUpdater
Folder Found C:\Users\Michal\AppData\Local\TechSmith
Folder Found C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitLord
Folder Found C:\Users\Michal\AppData\Roaming\newnext.me
Folder Found C:\Users\Michal\AppData\Roaming\SimilarSites
Folder Found C:\Users\Michal\AppData\Roaming\TechSmith
Folder Found C:\Users\Michal\Documents\Mobogenie
Folder Found C:\Windows\SysWOW64\AI_RecycleBin
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\GoforFiles
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Found : [x64] HKCU\Software\GoforFiles
Key Found : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{DCABB943-792E-44C4-9029-ECBEE6265AF9}
Key Found : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Found : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Found : HKLM\Software\GoforFiles
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16518
-\\ Mozilla Firefox v27.0.1 (cs)
[ File : C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\bpsr0739.default\prefs.js ]
*************************
AdwCleaner[R2].txt - [3651 octets] - [19/02/2014 16:00:03]
########## EOF - C:\AdwCleaner\AdwCleaner[R2].txt - [3711 octets] ##########
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Verze: v2014.02.19.08
Windows 8 x64 NTFS
Internet Explorer 11.0.9600.16518
Michal :: MICHAL [administrátor]
19. 2. 2014 16:15:18
MBAM-log-2014-02-19 (16-21-49).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 218844
Uplynulý čas: 6 minut, 10 sekund
Nalezené procesy v paměti: 1
C:\Users\Public\Public\minerd.exe (Riskware.BitcoinMiner) -> 5464 -> Nebyla provedena žádná instrukce.
Nalezené moduly v paměti: 1
C:\Users\Michal\AppData\Roaming\newnext.me\nengine.dll (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
Nalezené klíče v registru: 8
HKCR\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9} (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476} (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67} (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\Updater.AmiUpd.1 (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\Updater.AmiUpd (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\Typelib\{DCABB943-792E-44C4-9029-ECBEE6265AF9} (PUP.Optional.OutBrowse) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534} (PUP.Optional.OutBrowse) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} (PUP.Software.Updater) -> Nebyla provedena žádná instrukce.
Nalezené hodnoty v registru: 4
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|NextLive (PUP.Optional.NextLive.A) -> Data: C:\Windows\SysWOW64\rundll32.exe "C:\Users\Michal\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|MSStp (Malware.Trace) -> Data: C:\Windows\system32\msstp.vbe -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Windows (Trojan.BitcoinMiner) -> Data: C:\Users\Public\Public\run.vbs -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|msrgwvqfSrv (Trojan.Agent.VBSGen) -> Data: "C:\Windows\system32\msrgwvqf.vbe" mseiakr mskppa -> Nebyla provedena žádná instrukce.
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 7
C:\Users\Public\Public (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Michal\AppData\Roaming\newnext.me (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Users\Michal\AppData\Roaming\newnext.me\cache (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\bitstreams (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\bitstreams (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
Nalezené soubory: 44
C:\Users\Michal\AppData\Roaming\newnext.me\nengine.dll (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\minerd.exe (Riskware.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\mining_proxy.exe (PUP.Proxy.BCM) -> Nebyla provedena žádná instrukce.
C:\Users\Michal\AppData\Local\genienext\nengine.dll (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\msstp.vbe (Malware.Trace) -> Nebyla provedena žádná instrukce.
C:\Windows\SysWOW64\msstp.vbe (Malware.Trace) -> Nebyla provedena žádná instrukce.
C:\Windows\Tasks\AmiUpdXp.job (PUP.Software.Updater) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\run.vbs (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\game.bat (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\game.vbs (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\libcurl.dll (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\mining_proxy.exe (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\pthreadGC2.dll (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\run.bat (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\zlib1.dll (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Michal\AppData\Roaming\newnext.me\nengine.cookie (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Users\Michal\AppData\Roaming\newnext.me\cache\spark.bin (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\diablo130302.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\diakgcn121016.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\libcurl-4.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\libeay32.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\libidn-11.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\librtmp.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\libssh2.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\mnclmcbc.exe (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\phatk121016.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\poclbm130302.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\scrypt130511.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\ssleay32.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\zlib1.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\bitstreams\fpgaminer_top_fixed7_197MHz.ncd (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\diablo130302.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\diakgcn121016.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\libcurl-4.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\libeay32.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\libidn-11.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\librtmp.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\libssh2.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\phatk121016.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\poclbm130302.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\scrypt130511.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\ssleay32.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\zlib1.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\bitstreams\fpgaminer_top_fixed7_197MHz.ncd (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
(konec)
Scan saved at 16:23:15, on 19. 2. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.16518)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\Michal\AppData\Local\Skillbrains\lightshot\4.4.2.10\LightShot.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\Michal\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe
C:\Windows\SysWOW64\DllHost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: SiteFinder - {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} - C:\Program Files (x86)\SiteFinder\SiteFinder.dll
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [WindowsDriverScan64] C:\Program Files (x86)\Win Drive\Drive.lnk
O4 - HKLM\..\Run: [WindowsDriverScan86] C:\Program Files (x86)\Win Drive\Drive86.lnk
O4 - HKLM\..\Run: [Xfire] C:\Program Files (x86)\Xfire2\Xfire.exe
O4 - HKLM\..\Run: [mncehobkqSrv] C:\Windows\inf\mncehobkq.vbe
O4 - HKLM\..\Run: [msrgwvqfSrv] "C:\Windows\system32\msrgwvqf.vbe" mseiakr mskppa
O4 - HKLM\..\Run: [mnclmcbcSrv] C:\Windows\inf\mnclmcbc.vbe
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [MSStp] C:\Windows\system32\msstp.vbe
O4 - HKLM\..\Run: [mncxgwaSrv] C:\Windows\inf\mncxgwa.vbe
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Lync] "C:\Program Files (x86)\Microsoft Office\Office15\lync.exe" /fromrunkey
O4 - HKCU\..\Run: [RGSC] C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
O4 - HKCU\..\Run: [OpaqueTaskbar] "C:\Users\Michal\Downloads\WINDOWS-8-NEPRŮHLEDNÝ,HLAVNÍ-PANEL\x64\OpaqueTaskbar.exe" /resident
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Xfire] C:\Program Files (x86)\Xfire2\Xfire.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [NextLive] C:\Windows\SysWOW64\rundll32.exe "C:\Users\Michal\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
O4 - HKCU\..\Run: [LightShot] C:\Users\Michal\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue
O4 - HKCU\..\Run: [Windows] C:\Users\Public\Public\run.vbs
O4 - Startup: Dropbox.lnk = Michal\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: NHL® 09 Registration.lnk = C:\Program Files (x86)\EA Sports\NHL 09\Support\EAregister.exe
O4 - Startup: Odeslat do OneNote.lnk = C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat do Bluetooth - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Site Finder - {CCC7B152-1D8C-11E3-B2AD-F3EF3D58318D} - C:\Program Files (x86)\SiteFinder\SiteFinder.dll
O9 - Extra button: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O9 - Extra 'Tools' menuitem: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: KMS Server Service (KMSServerService) - Unknown owner - C:\Windows\System32\KMSServer.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Service KMSELDI - Unknown owner - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VNC Server (vncserver) - RealVNC Ltd - C:\Program Files\RealVNC\VNC Server\vncservice.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 14510 bytes
# AdwCleaner v3.019 - Report created 19/02/2014 at 16:00:03
# Updated 17/02/2014 by Xplode
# Operating System : Windows 8.1 Pro (64 bits)
# Username : Michal - MICHAL
# Running from : C:\Users\Michal\Desktop\adwcleaner.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
File Found : C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\bpsr0739.default\Extensions\translator@zoli.bod.xpi
File Found : C:\Windows\Tasks\AmiUpdXp.job
Folder Found C:\Program Files (x86)\BitLord
Folder Found C:\Program Files (x86)\Mobogenie
Folder Found C:\Program Files (x86)\SimilarSites
Folder Found C:\Program Files (x86)\TechSmith
Folder Found C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitLord
Folder Found C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
Folder Found C:\ProgramData\TechSmith
Folder Found C:\Users\Michal\AppData\Local\genienext
Folder Found C:\Users\Michal\AppData\Local\Mobogenie
Folder Found C:\Users\Michal\AppData\Local\SwvUpdater
Folder Found C:\Users\Michal\AppData\Local\TechSmith
Folder Found C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitLord
Folder Found C:\Users\Michal\AppData\Roaming\newnext.me
Folder Found C:\Users\Michal\AppData\Roaming\SimilarSites
Folder Found C:\Users\Michal\AppData\Roaming\TechSmith
Folder Found C:\Users\Michal\Documents\Mobogenie
Folder Found C:\Windows\SysWOW64\AI_RecycleBin
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\GoforFiles
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Found : [x64] HKCU\Software\GoforFiles
Key Found : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{DCABB943-792E-44C4-9029-ECBEE6265AF9}
Key Found : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Found : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Found : HKLM\Software\GoforFiles
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16518
-\\ Mozilla Firefox v27.0.1 (cs)
[ File : C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\bpsr0739.default\prefs.js ]
*************************
AdwCleaner[R2].txt - [3651 octets] - [19/02/2014 16:00:03]
########## EOF - C:\AdwCleaner\AdwCleaner[R2].txt - [3711 octets] ##########
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Verze: v2014.02.19.08
Windows 8 x64 NTFS
Internet Explorer 11.0.9600.16518
Michal :: MICHAL [administrátor]
19. 2. 2014 16:15:18
MBAM-log-2014-02-19 (16-21-49).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 218844
Uplynulý čas: 6 minut, 10 sekund
Nalezené procesy v paměti: 1
C:\Users\Public\Public\minerd.exe (Riskware.BitcoinMiner) -> 5464 -> Nebyla provedena žádná instrukce.
Nalezené moduly v paměti: 1
C:\Users\Michal\AppData\Roaming\newnext.me\nengine.dll (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
Nalezené klíče v registru: 8
HKCR\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9} (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476} (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67} (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\Updater.AmiUpd.1 (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\Updater.AmiUpd (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\Typelib\{DCABB943-792E-44C4-9029-ECBEE6265AF9} (PUP.Optional.OutBrowse) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534} (PUP.Optional.OutBrowse) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} (PUP.Software.Updater) -> Nebyla provedena žádná instrukce.
Nalezené hodnoty v registru: 4
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|NextLive (PUP.Optional.NextLive.A) -> Data: C:\Windows\SysWOW64\rundll32.exe "C:\Users\Michal\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|MSStp (Malware.Trace) -> Data: C:\Windows\system32\msstp.vbe -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Windows (Trojan.BitcoinMiner) -> Data: C:\Users\Public\Public\run.vbs -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|msrgwvqfSrv (Trojan.Agent.VBSGen) -> Data: "C:\Windows\system32\msrgwvqf.vbe" mseiakr mskppa -> Nebyla provedena žádná instrukce.
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 7
C:\Users\Public\Public (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Michal\AppData\Roaming\newnext.me (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Users\Michal\AppData\Roaming\newnext.me\cache (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\bitstreams (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\bitstreams (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
Nalezené soubory: 44
C:\Users\Michal\AppData\Roaming\newnext.me\nengine.dll (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\minerd.exe (Riskware.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\mining_proxy.exe (PUP.Proxy.BCM) -> Nebyla provedena žádná instrukce.
C:\Users\Michal\AppData\Local\genienext\nengine.dll (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\msstp.vbe (Malware.Trace) -> Nebyla provedena žádná instrukce.
C:\Windows\SysWOW64\msstp.vbe (Malware.Trace) -> Nebyla provedena žádná instrukce.
C:\Windows\Tasks\AmiUpdXp.job (PUP.Software.Updater) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\run.vbs (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\game.bat (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\game.vbs (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\libcurl.dll (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\mining_proxy.exe (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\pthreadGC2.dll (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\run.bat (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Public\Public\zlib1.dll (Trojan.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Michal\AppData\Roaming\newnext.me\nengine.cookie (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Users\Michal\AppData\Roaming\newnext.me\cache\spark.bin (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\diablo130302.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\diakgcn121016.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\libcurl-4.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\libeay32.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\libidn-11.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\librtmp.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\libssh2.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\mnclmcbc.exe (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\phatk121016.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\poclbm130302.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\scrypt130511.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\ssleay32.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\zlib1.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mnclmcbc\bitstreams\fpgaminer_top_fixed7_197MHz.ncd (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\diablo130302.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\diakgcn121016.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\libcurl-4.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\libeay32.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\libidn-11.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\librtmp.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\libssh2.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\phatk121016.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\poclbm130302.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\scrypt130511.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\ssleay32.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\zlib1.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\Inf\mncehobkq\bitstreams\fpgaminer_top_fixed7_197MHz.ncd (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
(konec)
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Minerd - 91%
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
Klikni na „ Vymazat-Clean“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
Stáhni si Junkware Removal Tool by Thisisu
na svojí plochu.
Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
. spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.
Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Klikni na „ Vymazat-Clean“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
Stáhni si Junkware Removal Tool by Thisisu
na svojí plochu.
Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
. spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.
Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
-
- Level 3
- Příspěvky: 588
- Registrován: srpen 12
- Pohlaví:
- Stav:
Offline
Re: Minerd - 91%
# AdwCleaner v3.019 - Report created 19/02/2014 at 17:22:33
# Updated 17/02/2014 by Xplode
# Operating System : Windows 8.1 Pro (64 bits)
# Username : Michal - MICHAL
# Running from : C:\Users\Michal\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\TechSmith
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitLord
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
Folder Deleted : C:\Program Files (x86)\BitLord
Folder Deleted : C:\Program Files (x86)\Mobogenie
Folder Deleted : C:\Program Files (x86)\SimilarSites
Folder Deleted : C:\Program Files (x86)\TechSmith
Folder Deleted : C:\Windows\SysWOW64\AI_RecycleBin
Folder Deleted : C:\Users\Michal\AppData\Local\genienext
Folder Deleted : C:\Users\Michal\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Michal\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Michal\AppData\Local\TechSmith
[!] Folder Deleted : C:\Users\Michal\AppData\Roaming\newnext.me
Folder Deleted : C:\Users\Michal\AppData\Roaming\SimilarSites
Folder Deleted : C:\Users\Michal\AppData\Roaming\TechSmith
Folder Deleted : C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitLord
Folder Deleted : C:\Users\Michal\Documents\Mobogenie
File Deleted : C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\bpsr0739.default\Extensions\translator@zoli.bod.xpi
File Deleted : C:\Windows\Tasks\AmiUpdXp.job
***** [ Shortcuts ] *****
***** [ Registry ] *****
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{DCABB943-792E-44C4-9029-ECBEE6265AF9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Deleted : HKCU\Software\GoforFiles
Key Deleted : HKLM\Software\GoforFiles
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16518
-\\ Mozilla Firefox v27.0.1 (cs)
[ File : C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\bpsr0739.default\prefs.js ]
*************************
AdwCleaner[R3].txt - [3811 octets] - [19/02/2014 17:18:10]
AdwCleaner[S1].txt - [3794 octets] - [19/02/2014 17:22:33]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [3854 octets] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.1 (02.04.2014:1)
OS: Windows 8.1 Pro x64
Ran by Michal on st 19. 02. 2014 at 17:28:07,05
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\OpaqueTaskbar_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\OpaqueTaskbar_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\OpaqueTaskbar_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\OpaqueTaskbar_RASMANCS
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\Program Files (x86)\smarttweak"
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on st 19. 02. 2014 at 17:37:18,16
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
RogueKiller V8.8.8 _x64_ [Feb 19 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Michal [Práva správce]
Mód : Kontrola -- Datum : 02/19/2014 18:08:29
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 3 ¤¤¤
[SUSP PATH] RTFTrack.exe -- C:\Windows\RTFTrack.exe [7] -> SMAZÁNO [TermProc]
[SUSP UNIC] OpaqueTaskbar.exe -- C:\Users\Michal\Downloads\WINDOWS-8-NEPR�?HLEDNÝ,HLAVNÍ-PANEL\x64\OpaqueTaskbar.exe [-] -> SMAZÁNO [TermProc]
[SUSP PATH] Lightshot.exe -- C:\Users\Michal\AppData\Local\Skillbrains\lightshot\4.4.2.10\LightShot.exe [7] -> SMAZÁNO [TermProc]
¤¤¤ ¤¤¤ Záznamy Registrů: : 10 ¤¤¤
[RUN][SUSP UNIC] HKCU\[...]\Run : OpaqueTaskbar ("C:\Users\Michal\Downloads\WINDOWS-8-NEPR�?HLEDNÝ,HLAVNÍ-PANEL\x64\OpaqueTaskbar.exe" /resident [-]) -> NALEZENO
[RUN][SUSP PATH] HKCU\[...]\Run : LightShot (C:\Users\Michal\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue [7][x][x]) -> NALEZENO
[RUN][SUSP UNIC] HKUS\S-1-5-21-4202670712-14329881-303778152-1001\[...]\Run : OpaqueTaskbar ("C:\Users\Michal\Downloads\WINDOWS-8-NEPR�?HLEDNÝ,HLAVNÍ-PANEL\x64\OpaqueTaskbar.exe" /resident [-]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-4202670712-14329881-303778152-1001\[...]\Run : LightShot (C:\Users\Michal\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue [7][x][x]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST1000LM014-1EJ164 +++++
--- User ---
[MBR] 630e4fdbe650d148a1f7c3eff8e7bb99
[BSP] dbcf146c463bbc7c9a28454074d03841 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] FAT32 (0x0b) [VISIBLE] Offset (sectors): 2048 | Size: 1000 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2050048 | Size: 951867 Mo
2 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 1951473664 | Size: 1000 Mo
User = LL1 ... OK!
User = LL2 ... OK!
+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ USB) Samsung M3 Portable USB Device +++++
--- User ---
[MBR] 29354feedca736e080314dcbbea91fec
[BSP] e1f188301455722b228a98cc5bc0bf9b : Windows XP MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 476921 Mo
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )
Dokončeno : << RKreport[0]_S_02192014_180829.txt >>
# Updated 17/02/2014 by Xplode
# Operating System : Windows 8.1 Pro (64 bits)
# Username : Michal - MICHAL
# Running from : C:\Users\Michal\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\TechSmith
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitLord
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
Folder Deleted : C:\Program Files (x86)\BitLord
Folder Deleted : C:\Program Files (x86)\Mobogenie
Folder Deleted : C:\Program Files (x86)\SimilarSites
Folder Deleted : C:\Program Files (x86)\TechSmith
Folder Deleted : C:\Windows\SysWOW64\AI_RecycleBin
Folder Deleted : C:\Users\Michal\AppData\Local\genienext
Folder Deleted : C:\Users\Michal\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Michal\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Michal\AppData\Local\TechSmith
[!] Folder Deleted : C:\Users\Michal\AppData\Roaming\newnext.me
Folder Deleted : C:\Users\Michal\AppData\Roaming\SimilarSites
Folder Deleted : C:\Users\Michal\AppData\Roaming\TechSmith
Folder Deleted : C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitLord
Folder Deleted : C:\Users\Michal\Documents\Mobogenie
File Deleted : C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\bpsr0739.default\Extensions\translator@zoli.bod.xpi
File Deleted : C:\Windows\Tasks\AmiUpdXp.job
***** [ Shortcuts ] *****
***** [ Registry ] *****
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{DCABB943-792E-44C4-9029-ECBEE6265AF9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Key Deleted : HKCU\Software\GoforFiles
Key Deleted : HKLM\Software\GoforFiles
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16518
-\\ Mozilla Firefox v27.0.1 (cs)
[ File : C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\bpsr0739.default\prefs.js ]
*************************
AdwCleaner[R3].txt - [3811 octets] - [19/02/2014 17:18:10]
AdwCleaner[S1].txt - [3794 octets] - [19/02/2014 17:22:33]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [3854 octets] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.1 (02.04.2014:1)
OS: Windows 8.1 Pro x64
Ran by Michal on st 19. 02. 2014 at 17:28:07,05
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\OpaqueTaskbar_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\OpaqueTaskbar_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\OpaqueTaskbar_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\OpaqueTaskbar_RASMANCS
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\Program Files (x86)\smarttweak"
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on st 19. 02. 2014 at 17:37:18,16
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
RogueKiller V8.8.8 _x64_ [Feb 19 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Michal [Práva správce]
Mód : Kontrola -- Datum : 02/19/2014 18:08:29
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 3 ¤¤¤
[SUSP PATH] RTFTrack.exe -- C:\Windows\RTFTrack.exe [7] -> SMAZÁNO [TermProc]
[SUSP UNIC] OpaqueTaskbar.exe -- C:\Users\Michal\Downloads\WINDOWS-8-NEPR�?HLEDNÝ,HLAVNÍ-PANEL\x64\OpaqueTaskbar.exe [-] -> SMAZÁNO [TermProc]
[SUSP PATH] Lightshot.exe -- C:\Users\Michal\AppData\Local\Skillbrains\lightshot\4.4.2.10\LightShot.exe [7] -> SMAZÁNO [TermProc]
¤¤¤ ¤¤¤ Záznamy Registrů: : 10 ¤¤¤
[RUN][SUSP UNIC] HKCU\[...]\Run : OpaqueTaskbar ("C:\Users\Michal\Downloads\WINDOWS-8-NEPR�?HLEDNÝ,HLAVNÍ-PANEL\x64\OpaqueTaskbar.exe" /resident [-]) -> NALEZENO
[RUN][SUSP PATH] HKCU\[...]\Run : LightShot (C:\Users\Michal\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue [7][x][x]) -> NALEZENO
[RUN][SUSP UNIC] HKUS\S-1-5-21-4202670712-14329881-303778152-1001\[...]\Run : OpaqueTaskbar ("C:\Users\Michal\Downloads\WINDOWS-8-NEPR�?HLEDNÝ,HLAVNÍ-PANEL\x64\OpaqueTaskbar.exe" /resident [-]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-4202670712-14329881-303778152-1001\[...]\Run : LightShot (C:\Users\Michal\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue [7][x][x]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST1000LM014-1EJ164 +++++
--- User ---
[MBR] 630e4fdbe650d148a1f7c3eff8e7bb99
[BSP] dbcf146c463bbc7c9a28454074d03841 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] FAT32 (0x0b) [VISIBLE] Offset (sectors): 2048 | Size: 1000 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2050048 | Size: 951867 Mo
2 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 1951473664 | Size: 1000 Mo
User = LL1 ... OK!
User = LL2 ... OK!
+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ USB) Samsung M3 Portable USB Device +++++
--- User ---
[MBR] 29354feedca736e080314dcbbea91fec
[BSP] e1f188301455722b228a98cc5bc0bf9b : Windows XP MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 476921 Mo
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )
Dokončeno : << RKreport[0]_S_02192014_180829.txt >>
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Minerd - 91%
kde je log z MbAM po výmazu?
Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
-pokud bude mít log více než 60.000 znaků , rozděl ho a vlož do více příspěvků
Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
-pokud bude mít log více než 60.000 znaků , rozděl ho a vlož do více příspěvků
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
-
- Level 3
- Příspěvky: 588
- Registrován: srpen 12
- Pohlaví:
- Stav:
Offline
Re: Minerd - 91%
v mbamu to nic nenašlo :)
RogueKiller V8.8.8 _x64_ [Feb 19 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Michal [Práva správce]
Mód : Odebrat -- Datum : 02/20/2014 14:02:01
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 10 ¤¤¤
[RUN][SUSP UNIC] HKCU\[...]\Run : OpaqueTaskbar ("C:\Users\Michal\Downloads\WINDOWS-8-NEPR�?HLEDNÝ,HLAVNÍ-PANEL\x64\OpaqueTaskbar.exe" /resident [-]) -> VYMAZÁNO
[RUN][SUSP PATH] HKCU\[...]\Run : LightShot (C:\Users\Michal\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue [7][x][x]) -> VYMAZÁNO
[RUN][SUSP UNIC] HKUS\S-1-5-21-4202670712-14329881-303778152-1001\[...]\Run : OpaqueTaskbar ("C:\Users\Michal\Downloads\WINDOWS-8-NEPR�?HLEDNÝ,HLAVNÍ-PANEL\x64\OpaqueTaskbar.exe" /resident [-]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP PATH] HKUS\S-1-5-21-4202670712-14329881-303778152-1001\[...]\Run : LightShot (C:\Users\Michal\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue [7][x][x]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST1000LM014-1EJ164 +++++
--- User ---
[MBR] 630e4fdbe650d148a1f7c3eff8e7bb99
[BSP] dbcf146c463bbc7c9a28454074d03841 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] FAT32 (0x0b) [VISIBLE] Offset (sectors): 2048 | Size: 1000 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2050048 | Size: 951867 Mo
2 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 1951473664 | Size: 1000 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_02202014_140201.txt >>
RKreport[0]_S_02202014_140144.txt
14:13:37.0774 4788 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
14:13:43.0363 4788 ============================================================
14:13:43.0363 4788 Current date / time: 2014/02/20 14:13:43.0363
14:13:43.0363 4788 SystemInfo:
14:13:43.0363 4788
14:13:43.0363 4788 OS Version: 6.2.9200 ServicePack: 0.0
14:13:43.0363 4788 Product type: Workstation
14:13:43.0363 4788 ComputerName: MICHAL
14:13:43.0363 4788 UserName: Michal
14:13:43.0363 4788 Windows directory: C:\Windows
14:13:43.0363 4788 System windows directory: C:\Windows
14:13:43.0363 4788 Running under WOW64
14:13:43.0363 4788 Processor architecture: Intel x64
14:13:43.0363 4788 Number of processors: 4
14:13:43.0363 4788 Page size: 0x1000
14:13:43.0363 4788 Boot type: Normal boot
14:13:43.0363 4788 ============================================================
14:13:43.0660 4788 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
14:13:43.0676 4788 ============================================================
14:13:43.0676 4788 \Device\Harddisk0\DR0:
14:13:43.0676 4788 MBR partitions:
14:13:43.0676 4788 \Device\Harddisk0\DR0\Partition1: MBR, Type 0xB, StartLBA 0x800, BlocksNum 0x1F4000
14:13:43.0676 4788 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1F4800, BlocksNum 0x7431D800
14:13:43.0676 4788 ============================================================
14:13:43.0676 4788 C: <-> \Device\Harddisk0\DR0\Partition2
14:13:43.0676 4788 ============================================================
14:13:43.0676 4788 Initialize success
14:13:43.0676 4788 ============================================================
14:13:48.0082 4656 ============================================================
14:13:48.0082 4656 Scan started
14:13:48.0082 4656 Mode: Manual;
14:13:48.0082 4656 ============================================================
14:13:48.0363 4656 ================ Scan system memory ========================
14:13:48.0363 4656 System memory - ok
14:13:48.0363 4656 ================ Scan services =============================
14:13:48.0504 4656 [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1 ] 1394ohci C:\Windows\System32\drivers\1394ohci.sys
14:13:48.0504 4656 1394ohci - ok
14:13:48.0520 4656 [ AD508A1A46EC21B740AB31C28EFDFDB1 ] 3ware C:\Windows\system32\drivers\3ware.sys
14:13:48.0520 4656 3ware - ok
14:13:48.0582 4656 [ 3D30878A269D934100FA5F972E53AF39 ] ACPI C:\Windows\system32\drivers\ACPI.sys
14:13:48.0582 4656 ACPI - ok
14:13:48.0598 4656 [ AC8279D229398BCF05C3154ADCA86813 ] acpiex C:\Windows\system32\Drivers\acpiex.sys
14:13:48.0598 4656 acpiex - ok
14:13:48.0613 4656 [ A8970D9BF23CD309E0403978A1B58F3F ] acpipagr C:\Windows\System32\drivers\acpipagr.sys
14:13:48.0613 4656 acpipagr - ok
14:13:48.0629 4656 [ 111A89C99C5B4F1A7BCE5F643DD86F65 ] AcpiPmi C:\Windows\System32\drivers\acpipmi.sys
14:13:48.0629 4656 AcpiPmi - ok
14:13:48.0629 4656 [ 5758387D68A20AE7D3245011B07E36E7 ] acpitime C:\Windows\System32\drivers\acpitime.sys
14:13:48.0629 4656 acpitime - ok
14:13:48.0645 4656 [ 3B42D95D20CD2AACDB0564471AE43ED7 ] ACPIVPC C:\Windows\System32\drivers\AcpiVpc.sys
14:13:48.0645 4656 ACPIVPC - ok
14:13:48.0723 4656 [ B362181ED3771DC03B4141927C80F801 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
14:13:48.0723 4656 AdobeARMservice - ok
14:13:48.0816 4656 [ C8C6C0D659734FDBF63F6F421A5416BC ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
14:13:48.0832 4656 AdobeFlashPlayerUpdateSvc - ok
14:13:48.0848 4656 [ 7C1FDF1B48298CBA7CE4BDD4978951AD ] ADP80XX C:\Windows\system32\drivers\ADP80XX.SYS
14:13:48.0863 4656 ADP80XX - ok
14:13:48.0895 4656 [ B19CA8E441D35AA2B1EE51C10B27DA1B ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
14:13:48.0895 4656 AeLookupSvc - ok
14:13:48.0926 4656 [ 239268BAB58EAE9A3FF4E08334C00451 ] AFD C:\Windows\system32\drivers\afd.sys
14:13:48.0941 4656 AFD - ok
14:13:48.0941 4656 [ 7DFAEBA9AD62D20102B576D5CAC45EC8 ] agp440 C:\Windows\system32\drivers\agp440.sys
14:13:48.0957 4656 agp440 - ok
14:13:48.0957 4656 [ 8E8E34B7BA059050EED827410D0697A2 ] ahcache C:\Windows\system32\DRIVERS\ahcache.sys
14:13:48.0957 4656 ahcache - ok
14:13:48.0973 4656 [ A91D8E1E433EFB32551BCE69037E1CE7 ] ALG C:\Windows\System32\alg.exe
14:13:48.0973 4656 ALG - ok
14:13:48.0988 4656 [ 7589DE749DB6F71A68489DCE04158729 ] AmdK8 C:\Windows\System32\drivers\amdk8.sys
14:13:48.0988 4656 AmdK8 - ok
14:13:49.0004 4656 [ B46D2D89AFF8A9490FA8C98C7A5616E3 ] AmdPPM C:\Windows\System32\drivers\amdppm.sys
14:13:49.0004 4656 AmdPPM - ok
14:13:49.0020 4656 [ D2BF2F94A47D332814910FD47C6BBCD2 ] amdsata C:\Windows\system32\drivers\amdsata.sys
14:13:49.0020 4656 amdsata - ok
14:13:49.0035 4656 [ A8E04943C7BBA7219AA50400272C3C6E ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
14:13:49.0035 4656 amdsbs - ok
14:13:49.0051 4656 [ CEA5F4F27CFC08E3A44D576811B35F50 ] amdxata C:\Windows\system32\drivers\amdxata.sys
14:13:49.0051 4656 amdxata - ok
14:13:49.0051 4656 [ EA3F776E71584D7B51D9B1ADCE80DF08 ] AMPPAL C:\Windows\System32\drivers\AMPPAL.sys
14:13:49.0066 4656 AMPPAL - ok
14:13:49.0066 4656 [ EA3F776E71584D7B51D9B1ADCE80DF08 ] AMPPALP C:\Windows\system32\DRIVERS\amppal.sys
14:13:49.0082 4656 AMPPALP - ok
14:13:49.0098 4656 [ 9BE647AB104153BD0053EB4A48F50B31 ] AMPPALR3 C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
14:13:49.0113 4656 AMPPALR3 - ok
14:13:49.0129 4656 [ 04951A9A937CBE28A2D3FEEA360B6D1F ] AppID C:\Windows\system32\drivers\appid.sys
14:13:49.0129 4656 AppID - ok
14:13:49.0145 4656 [ C0DC3F58214A227980AEB091CFD2F973 ] AppIDSvc C:\Windows\System32\appidsvc.dll
14:13:49.0145 4656 AppIDSvc - ok
14:13:49.0160 4656 [ 7E790DE2487CEDB349D1750B9E47F090 ] Appinfo C:\Windows\System32\appinfo.dll
14:13:49.0160 4656 Appinfo - ok
14:13:49.0176 4656 [ 8176FBA685178FB0F52D46693474FA50 ] AppMgmt C:\Windows\System32\appmgmts.dll
14:13:49.0176 4656 AppMgmt - ok
14:13:49.0207 4656 [ 4B964AE0DF433A3BFA7BD24713BC2E9B ] AppReadiness C:\Windows\system32\AppReadiness.dll
14:13:49.0223 4656 AppReadiness - ok
14:13:49.0285 4656 [ 0B726D9ED75C787D6FFAF1E3873BCC70 ] AppXSvc C:\Windows\system32\appxdeploymentserver.dll
14:13:49.0316 4656 AppXSvc - ok
14:13:49.0332 4656 [ 65045784366F7EC5FB4E71BCF923187B ] arcsas C:\Windows\system32\drivers\arcsas.sys
14:13:49.0348 4656 arcsas - ok
14:13:49.0348 4656 [ 0ACC3F49015E628590CA4372322EB46B ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
14:13:49.0348 4656 aswMonFlt - ok
14:13:49.0363 4656 [ 679712B7A353EE665B9301592164A172 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys
14:13:49.0363 4656 aswRdr - ok
14:13:49.0379 4656 [ C04F7B373881009D7994D9BF55D24AB4 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
14:13:49.0379 4656 aswRvrt - ok
14:13:49.0410 4656 [ 43599E630DFC30AD4E6A2B4B269EB1C0 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
14:13:49.0426 4656 aswSnx - ok
14:13:49.0441 4656 [ F22DE5F5BA8ADA0A861441B624B51EB5 ] aswSP C:\Windows\system32\drivers\aswSP.sys
14:13:49.0441 4656 aswSP - ok
14:13:49.0457 4656 [ FD3EA14ADF6216BDF4030DB2EFD43D96 ] aswStm C:\Windows\system32\drivers\aswStm.sys
14:13:49.0457 4656 aswStm - ok
14:13:49.0473 4656 [ 90399625F341AB76BA4B85A5E860EB1F ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
14:13:49.0473 4656 aswVmm - ok
14:13:49.0488 4656 [ 74B14192CF79A72F7536B27CB8814FBD ] atapi C:\Windows\system32\drivers\atapi.sys
14:13:49.0488 4656 atapi - ok
14:13:49.0520 4656 [ 4903CBC14742B5AB4DCF7A92F7DEC483 ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
14:13:49.0535 4656 AudioEndpointBuilder - ok
14:13:49.0566 4656 [ EF276593AD1BDF5A99032F62D6272848 ] Audiosrv C:\Windows\System32\Audiosrv.dll
14:13:49.0582 4656 Audiosrv - ok
14:13:49.0598 4656 [ CC42F104172B4A62793083D380867317 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
14:13:49.0598 4656 avast! Antivirus - ok
14:13:49.0613 4656 [ 96E8CAF20FC4B6C31CAD7816A801EB78 ] AxInstSV C:\Windows\System32\AxInstSV.dll
14:13:49.0613 4656 AxInstSV - ok
14:13:49.0645 4656 [ A4A73F631FE2AA2826FBE4A399B04DEF ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
14:13:49.0660 4656 b06bdrv - ok
14:13:49.0660 4656 [ 8CC7F7E4AFCBA605921B137ED7992C68 ] BasicDisplay C:\Windows\System32\drivers\BasicDisplay.sys
14:13:49.0676 4656 BasicDisplay - ok
14:13:49.0676 4656 [ 2748E116F8621A4DB0D39FCDD7318C01 ] BasicRender C:\Windows\System32\drivers\BasicRender.sys
14:13:49.0676 4656 BasicRender - ok
14:13:49.0691 4656 [ C1ABB0F7E3BEA48A0417BDF6FF14AB21 ] bcmfn2 C:\Windows\System32\drivers\bcmfn2.sys
14:13:49.0691 4656 bcmfn2 - ok
14:13:49.0723 4656 [ BBE61A40665B83488901E41082A6097D ] BDESVC C:\Windows\System32\bdesvc.dll
14:13:49.0723 4656 BDESVC - ok
14:13:49.0738 4656 [ EC19013E4CF87609534165DF897274D6 ] Beep C:\Windows\system32\drivers\Beep.sys
14:13:49.0738 4656 Beep - ok
14:13:49.0785 4656 [ 6468B696C65775D51A06615830E0E79D ] BFE C:\Windows\System32\bfe.dll
14:13:49.0801 4656 BFE - ok
14:13:49.0832 4656 [ 15225081966C785A9192782401643FD4 ] BITS C:\Windows\System32\qmgr.dll
14:13:49.0863 4656 BITS - ok
14:13:49.0957 4656 [ BAE8683BE3463B25E51875B380AB695A ] Bluetooth Device Monitor C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
14:13:49.0973 4656 Bluetooth Device Monitor - ok
14:13:49.0988 4656 [ AF06006C7A8B6CE409ABD351867A9544 ] Bluetooth OBEX Service C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
14:13:50.0004 4656 Bluetooth OBEX Service - ok
14:13:50.0004 4656 [ 6B4FFFDDC618FCF64473CAA86E305697 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
14:13:50.0004 4656 bowser - ok
14:13:50.0020 4656 [ A6207A88B596F726DE558425F3B7E592 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
14:13:50.0035 4656 BrokerInfrastructure - ok
14:13:50.0051 4656 [ D528D6A92D187777691993DD757AF19A ] Browser C:\Windows\System32\browser.dll
14:13:50.0051 4656 Browser - ok
14:13:50.0051 4656 [ A8F23D453A424FF4DE04989C4727ECC7 ] BthAvrcpTg C:\Windows\System32\drivers\BthAvrcpTg.sys
14:13:50.0051 4656 BthAvrcpTg - ok
14:13:50.0066 4656 [ 131F1C8573E7BFB41C54FBF5309CCD94 ] BthEnum C:\Windows\System32\drivers\BthEnum.sys
14:13:50.0066 4656 BthEnum - ok
14:13:50.0082 4656 [ 746B9F94214915AECDE4B7FEA5FF9664 ] BthHFEnum C:\Windows\System32\drivers\bthhfenum.sys
14:13:50.0082 4656 BthHFEnum - ok
14:13:50.0082 4656 [ 71FE2A48E4C93DDB9798C024880B6C07 ] bthhfhid C:\Windows\System32\drivers\BthHFHid.sys
14:13:50.0082 4656 bthhfhid - ok
14:13:50.0113 4656 [ FCD8BD17B7193CFFF18C332D1A381D7F ] BthLEEnum C:\Windows\system32\DRIVERS\BthLEEnum.sys
14:13:50.0113 4656 BthLEEnum - ok
14:13:50.0113 4656 [ 07E33226AD218A2A162662A05CAFB52F ] BTHMODEM C:\Windows\System32\drivers\bthmodem.sys
14:13:50.0113 4656 BTHMODEM - ok
14:13:50.0129 4656 [ 3AFE71D80EDF5D4DE0C5731352905669 ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
14:13:50.0129 4656 BthPan - ok
14:13:50.0176 4656 [ 10EDF9E0838BA4578FFFFF274632D454 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
14:13:50.0191 4656 BTHPORT - ok
14:13:50.0191 4656 [ E5E48FEED73D463175EAB1542495191C ] bthserv C:\Windows\system32\bthserv.dll
14:13:50.0191 4656 bthserv - ok
14:13:50.0207 4656 [ D30286FF3C7B6318C024D2BC2955C1BF ] BTHSSecurityMgr C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
14:13:50.0207 4656 BTHSSecurityMgr - ok
14:13:50.0223 4656 [ 0E7FA34B975764C33B5DBC6F8C401627 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
14:13:50.0223 4656 BTHUSB - ok
14:13:50.0223 4656 [ 8F5E4E166C19A1B60F508057CF2FF96E ] btmaux C:\Windows\system32\DRIVERS\btmaux.sys
14:13:50.0223 4656 btmaux - ok
14:13:50.0254 4656 [ FD6DCB9E986D4B88655370C7F3976F78 ] btmhsf C:\Windows\system32\DRIVERS\btmhsf.sys
14:13:50.0270 4656 btmhsf - ok
14:13:50.0285 4656 [ 2FA6510E33F7DEFEC03658B74101A9B9 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
14:13:50.0285 4656 cdfs - ok
14:13:50.0301 4656 [ C6796EA22B513E3457514D92DCDB1A3D ] cdrom C:\Windows\System32\drivers\cdrom.sys
14:13:50.0301 4656 cdrom - ok
14:13:50.0316 4656 [ AB285CE3431FF3D2ACE669245874C1C7 ] CertPropSvc C:\Windows\System32\certprop.dll
14:13:50.0316 4656 CertPropSvc - ok
14:13:50.0332 4656 [ BE9936EDD3267FAAFF94A7835867F00B ] circlass C:\Windows\System32\drivers\circlass.sys
14:13:50.0332 4656 circlass - ok
14:13:50.0363 4656 [ 7F006813C2AFE622C13D7AF94F56CD07 ] CLFS C:\Windows\system32\drivers\CLFS.sys
14:13:50.0363 4656 CLFS - ok
14:13:50.0395 4656 [ EF6EF85DADC3184A10D8F2F7159973CB ] CmBatt C:\Windows\System32\drivers\CmBatt.sys
14:13:50.0395 4656 CmBatt - ok
14:13:50.0410 4656 [ 825BE21E6395E00698D8A23955A87972 ] CNG C:\Windows\system32\Drivers\cng.sys
14:13:50.0410 4656 CNG - ok
14:13:50.0426 4656 [ 03AAED827C36F35D70900558B8274905 ] CompositeBus C:\Windows\System32\drivers\CompositeBus.sys
14:13:50.0426 4656 CompositeBus - ok
14:13:50.0441 4656 COMSysApp - ok
14:13:50.0441 4656 [ A1FF7DFBFBE164CF92603C651D304DD2 ] condrv C:\Windows\system32\drivers\condrv.sys
14:13:50.0441 4656 condrv - ok
14:13:50.0520 4656 [ CB8DEFDDD90AFDD6D817FD066C1630E6 ] cphs C:\Windows\SysWow64\IntelCpHeciSvc.exe
14:13:50.0535 4656 cphs - ok
14:13:50.0567 4656 [ 0EFE4B5884A8032617826A4D76F80969 ] CryptSvc C:\Windows\system32\cryptsvc.dll
14:13:50.0567 4656 CryptSvc - ok
14:13:50.0582 4656 [ EE2F3C0D6ADBC975D6B621EC15ACF4E2 ] CSC C:\Windows\system32\drivers\csc.sys
14:13:50.0598 4656 CSC - ok
14:13:50.0629 4656 [ 936D9E2871CEEFF6A33695D98374367B ] CscService C:\Windows\System32\cscsvc.dll
14:13:50.0645 4656 CscService - ok
14:13:50.0660 4656 [ 315BA4BC19316D72B2E037534E048B93 ] dam C:\Windows\system32\drivers\dam.sys
14:13:50.0660 4656 dam - ok
14:13:50.0691 4656 [ 3FD5AE42EC87C6F532A931F96BE731DD ] DcomLaunch C:\Windows\system32\rpcss.dll
14:13:50.0707 4656 DcomLaunch - ok
14:13:50.0738 4656 [ F4CCAADC2C78F57E4F16B24C9201CE22 ] defragsvc C:\Windows\System32\defragsvc.dll
14:13:50.0738 4656 defragsvc - ok
14:13:50.0770 4656 [ 0BC71D4D3B5883903C37BF4E13B0F0C5 ] DeviceAssociationService C:\Windows\system32\das.dll
14:13:50.0785 4656 DeviceAssociationService - ok
14:13:50.0801 4656 [ 752A457320A946E03C3AA86C3ACD735E ] DeviceInstall C:\Windows\system32\umpnpmgr.dll
14:13:50.0832 4656 DeviceInstall - ok
14:13:50.0832 4656 [ 5DB26D7E0216D0BF364A81D3829AD7B9 ] Dfsc C:\Windows\system32\Drivers\dfsc.sys
14:13:50.0832 4656 Dfsc - ok
14:13:50.0848 4656 [ 8B107F55FD61654A6C9F1B819AEC5FC4 ] Dhcp C:\Windows\system32\dhcpcore.dll
14:13:50.0863 4656 Dhcp - ok
14:13:50.0863 4656 [ 4D40C9B33F738797CF50E77CB7C53E85 ] disk C:\Windows\system32\drivers\disk.sys
14:13:50.0863 4656 disk - ok
14:13:50.0879 4656 [ EB70A894708D1BC176AFD690FF06085F ] dmvsc C:\Windows\System32\drivers\dmvsc.sys
14:13:50.0879 4656 dmvsc - ok
14:13:50.0910 4656 [ 5BAF7714E68F93515A937A3FA8587EF9 ] Dnscache C:\Windows\System32\dnsrslvr.dll
14:13:50.0910 4656 Dnscache - ok
14:13:50.0926 4656 [ 50288EA079BB520C2B8C8A154202D518 ] dot3svc C:\Windows\System32\dot3svc.dll
14:13:50.0926 4656 dot3svc - ok
14:13:50.0941 4656 [ 27069CFFF29B7F04F4B1BB10154BE52B ] dot4 C:\Windows\system32\DRIVERS\Dot4.sys
14:13:50.0941 4656 dot4 - ok
14:13:50.0941 4656 [ 0BD906A79F9CE3013F7D9D0AC45F9F9D ] Dot4Print C:\Windows\System32\drivers\Dot4Prt.sys
14:13:50.0941 4656 Dot4Print - ok
14:13:50.0957 4656 [ B7D595F2F464F7B628AD53F06547792C ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
14:13:50.0957 4656 dot4usb - ok
14:13:50.0973 4656 [ 281BEE07BA97E3E98D12A822D923D0D8 ] DPS C:\Windows\system32\dps.dll
14:13:50.0973 4656 DPS - ok
14:13:50.0988 4656 [ DDC11A202207C0400CBE07315B8FDE5E ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
14:13:50.0988 4656 drmkaud - ok
14:13:50.0988 4656 [ 5B074F14F5DD6418F46EE4CA2DEB7EA8 ] DsmSvc C:\Windows\System32\DeviceSetupManager.dll
14:13:51.0004 4656 DsmSvc - ok
14:13:51.0035 4656 [ 6A0E850DDCB136AA3D2FB7234382DF12 ] dtsoftbus01 C:\Windows\System32\drivers\dtsoftbus01.sys
14:13:51.0035 4656 dtsoftbus01 - ok
14:13:51.0082 4656 [ A3D1CB64DF885ACE126543E6D7067348 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
14:13:51.0098 4656 DXGKrnl - ok
14:13:51.0113 4656 [ 6073537F250B45E1CB2A02E97F0FE1B2 ] Eaphost C:\Windows\System32\eapsvc.dll
14:13:51.0129 4656 Eaphost - ok
14:13:51.0191 4656 [ 114BCFDF367FF37C3F1B0A96AF542E4D ] ebdrv C:\Windows\system32\drivers\evbda.sys
14:13:51.0223 4656 ebdrv - ok
14:13:51.0223 4656 [ F6F209DDB94959BA104FC8FC87C53759 ] EFS C:\Windows\System32\lsass.exe
14:13:51.0238 4656 EFS - ok
14:13:51.0238 4656 [ 43531A5993380CC5113242C29D265FD9 ] EhStorClass C:\Windows\system32\drivers\EhStorClass.sys
14:13:51.0238 4656 EhStorClass - ok
14:13:51.0254 4656 [ 6F8E738A9505A388B1157FDDE7B3101B ] EhStorTcgDrv C:\Windows\system32\drivers\EhStorTcgDrv.sys
14:13:51.0254 4656 EhStorTcgDrv - ok
14:13:51.0254 4656 [ DFFFAE1442BA4076E18EED5E406FA0D3 ] ErrDev C:\Windows\System32\drivers\errdev.sys
14:13:51.0254 4656 ErrDev - ok
14:13:51.0285 4656 [ 030CE75B7D8F75FAA7BA1EC6FD0EB5A3 ] EventSystem C:\Windows\system32\es.dll
14:13:51.0285 4656 EventSystem - ok
14:13:51.0348 4656 [ 00B132F23AA25DEF2060D490B0AB70EF ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe
14:13:51.0363 4656 EvtEng - ok
14:13:51.0363 4656 [ 7729D294A555C7AEB281ED8E4D0E01E4 ] exfat C:\Windows\system32\drivers\exfat.sys
14:13:51.0363 4656 exfat - ok
14:13:51.0379 4656 [ 7C4E0D5900B2A1D11EDD626D6DDB937B ] fastfat C:\Windows\system32\drivers\fastfat.sys
14:13:51.0379 4656 fastfat - ok
14:13:51.0395 4656 [ 2BC8532ABF2B3756B78FA1DA54147DDE ] Fax C:\Windows\system32\fxssvc.exe
14:13:51.0395 4656 Fax - ok
14:13:51.0410 4656 [ 5D8402613E778B3BD45E687A8372710B ] fdc C:\Windows\System32\drivers\fdc.sys
14:13:51.0410 4656 fdc - ok
14:13:51.0426 4656 [ DC1A78BCCCB7EE53D6FD3BD615A8E222 ] fdPHost C:\Windows\system32\fdPHost.dll
14:13:51.0426 4656 fdPHost - ok
14:13:51.0426 4656 [ E5AD448F2DC84B1CF387FA7F2A3D1936 ] FDResPub C:\Windows\system32\fdrespub.dll
14:13:51.0441 4656 FDResPub - ok
14:13:51.0441 4656 [ 0046E0BD031213D37123876B0D0FA61C ] fhsvc C:\Windows\system32\fhsvc.dll
14:13:51.0441 4656 fhsvc - ok
14:13:51.0457 4656 [ 957A7A8F5ACCAF23DD9DFF6DAA393CE5 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
14:13:51.0457 4656 FileInfo - ok
14:13:51.0457 4656 [ A1A66C4FDAFD6B0289523232AFB7D8AF ] Filetrace C:\Windows\system32\drivers\filetrace.sys
14:13:51.0457 4656 Filetrace - ok
14:13:51.0473 4656 [ BE743083CF7063C486A4398E3AEFE59A ] flpydisk C:\Windows\System32\drivers\flpydisk.sys
14:13:51.0473 4656 flpydisk - ok
14:13:51.0473 4656 [ 60D5067FCE6D9433D35E04C01D8538B3 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
14:13:51.0488 4656 FltMgr - ok
14:13:51.0504 4656 [ 183CA7699474FDE235853967D1DA4D9B ] FontCache C:\Windows\system32\FntCache.dll
14:13:51.0520 4656 FontCache - ok
14:13:51.0582 4656 [ 1C52387BF5A127F5F3BFB31288F30D93 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
14:13:51.0582 4656 FontCache3.0.0.0 - ok
14:13:51.0582 4656 [ 35005534E600E993A90B036E4E599F2B ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
14:13:51.0582 4656 FsDepends - ok
14:13:51.0582 4656 [ 09F460AFEDCA03F3BF6E07D1CCC9AC42 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
14:13:51.0598 4656 Fs_Rec - ok
14:13:51.0613 4656 [ 83E1F0983B02A6F8EC764D18E24ECF10 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
14:13:51.0629 4656 fvevol - ok
14:13:51.0629 4656 [ 9591D0B9351ED489EAFD9D1CE52A8015 ] FxPPM C:\Windows\System32\drivers\fxppm.sys
14:13:51.0629 4656 FxPPM - ok
14:13:51.0629 4656 [ FC3EF65EE20D39F8749C2218DBA681CA ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
14:13:51.0629 4656 gagp30kx - ok
14:13:51.0645 4656 [ 0BF5CAD281E25F1418E5B8875DC5ADD1 ] gencounter C:\Windows\System32\drivers\vmgencounter.sys
14:13:51.0645 4656 gencounter - ok
14:13:51.0645 4656 [ FDA72810CA2F8409D9B31E833C448E34 ] GPIOClx0101 C:\Windows\system32\Drivers\msgpioclx.sys
14:13:51.0660 4656 GPIOClx0101 - ok
14:13:51.0676 4656 [ 0BDE0FCF597E9B65600121EF54FF8340 ] gpsvc C:\Windows\System32\gpsvc.dll
14:13:51.0691 4656 gpsvc - ok
14:13:51.0770 4656 [ C1B577B2169900F4CF7190C39F085794 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
14:13:51.0770 4656 gusvc - ok
14:13:51.0801 4656 [ 56F69F7C25FB67C970997D7066DBC593 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:13:51.0816 4656 HdAudAddService - ok
14:13:51.0832 4656 [ 03909BDBFF0DCACCABF2B2D4ADEE44DC ] HDAudBus C:\Windows\System32\drivers\HDAudBus.sys
14:13:51.0832 4656 HDAudBus - ok
14:13:51.0832 4656 [ 10A70BC1871CD955D85CD88372724906 ] HidBatt C:\Windows\System32\drivers\HidBatt.sys
14:13:51.0832 4656 HidBatt - ok
14:13:51.0848 4656 [ 1EA1B4FABB8CC348E73CA90DBA22E104 ] HidBth C:\Windows\System32\drivers\hidbth.sys
14:13:51.0848 4656 HidBth - ok
14:13:51.0879 4656 [ C241A8BAFBBFC90176EA0F5240EACC17 ] hidi2c C:\Windows\System32\drivers\hidi2c.sys
14:13:51.0879 4656 hidi2c - ok
14:13:51.0879 4656 [ 9BDDEE26255421017E161CCB9D5EDA95 ] HidIr C:\Windows\System32\drivers\hidir.sys
14:13:51.0879 4656 HidIr - ok
14:13:51.0895 4656 [ 449A20A674AA3FAA7F0DD4E33EE2DC20 ] hidserv C:\Windows\system32\hidserv.dll
14:13:51.0895 4656 hidserv - ok
14:13:51.0910 4656 [ F31397220D9687E11EB448649AA6E038 ] HidUsb C:\Windows\System32\drivers\hidusb.sys
14:13:51.0910 4656 HidUsb - ok
14:13:51.0926 4656 [ 7BF3ADCBD021D4F4A84CF40EB49C71B5 ] hkmsvc C:\Windows\system32\kmsvc.dll
14:13:51.0926 4656 hkmsvc - ok
14:13:51.0957 4656 [ 6CD9C3819BE8C0A3DACC82AE5D3C4F18 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:13:51.0973 4656 HomeGroupListener - ok
14:13:51.0988 4656 [ BE5F89BAFBD4272D5A0C0A37B97865ED ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:13:52.0004 4656 HomeGroupProvider - ok
14:13:52.0051 4656 [ 0D0213498683414DDE29B1686A4C08D5 ] hpqcxs08 C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
14:13:52.0051 4656 hpqcxs08 - ok
14:13:52.0066 4656 [ EE281DD6843F3F697C1AD7933EEB1E9B ] hpqddsvc C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
14:13:52.0066 4656 hpqddsvc - ok
14:13:52.0082 4656 [ A6AACEA4C785789BDA5912AD1FEDA80D ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
14:13:52.0082 4656 HpSAMD - ok
14:13:52.0113 4656 [ C995EA1C6915D897E06D41AF95B9312C ] HPSLPSVC C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL
14:13:52.0129 4656 HPSLPSVC - ok
14:13:52.0160 4656 [ 3502776E366C913D49C0DA928AE3E6CB ] HTTP C:\Windows\system32\drivers\HTTP.sys
14:13:52.0176 4656 HTTP - ok
14:13:52.0191 4656 [ 90656C0B3864804B090434EFC582404F ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
14:13:52.0191 4656 hwpolicy - ok
14:13:52.0207 4656 [ 6D6F9E3BF0484967E52F7E846BFF1CA1 ] hyperkbd C:\Windows\System32\drivers\hyperkbd.sys
14:13:52.0207 4656 hyperkbd - ok
14:13:52.0207 4656 [ 907C870F8C31F8DDD6F090857B46AB25 ] HyperVideo C:\Windows\system32\DRIVERS\HyperVideo.sys
14:13:52.0207 4656 HyperVideo - ok
14:13:52.0223 4656 [ 84CFC5EFA97D0C965EDE1D56F116A541 ] i8042prt C:\Windows\System32\drivers\i8042prt.sys
14:13:52.0223 4656 i8042prt - ok
14:13:52.0254 4656 [ 5D90E32E36CE5D4C535D17CE08AEAF05 ] iaLPSSi_GPIO C:\Windows\System32\drivers\iaLPSSi_GPIO.sys
14:13:52.0254 4656 iaLPSSi_GPIO - ok
14:13:52.0254 4656 [ DD05E7E80F52ADE9AEB292819920F32C ] iaLPSSi_I2C C:\Windows\System32\drivers\iaLPSSi_I2C.sys
14:13:52.0270 4656 iaLPSSi_I2C - ok
14:13:52.0285 4656 [ FA4C48E36F0B24E7E33D3E7E1844B9C9 ] iaStorA C:\Windows\system32\drivers\iaStorA.sys
14:13:52.0301 4656 iaStorA - ok
14:13:52.0316 4656 [ 08BFE413B0B4AA8DFA4B5684CE06D3DC ] iaStorAV C:\Windows\system32\drivers\iaStorAV.sys
14:13:52.0332 4656 iaStorAV - ok
14:13:52.0332 4656 [ D5854F77CEEAFC5A8405F8ECCBEC09DF ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
14:13:52.0332 4656 IAStorDataMgrSvc - ok
14:13:52.0348 4656 [ A2200C3033FA4EF249FC096A7A7D02A2 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
14:13:52.0363 4656 iaStorV - ok
14:13:52.0363 4656 [ C430482AC892D52CED021EDDD4D368A2 ] ibtfltcoex C:\Windows\system32\DRIVERS\iBtFltCoex.sys
14:13:52.0379 4656 ibtfltcoex - ok
14:13:52.0379 4656 IEEtwCollectorService - ok
14:13:52.0488 4656 [ 4EB6ABBF5D78E65A418BA71EF3ACE251 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
14:13:52.0520 4656 igfx - ok
14:13:52.0567 4656 [ B82255670D270B75D2D2F0F8747D1443 ] IKEEXT C:\Windows\System32\ikeext.dll
14:13:52.0598 4656 IKEEXT - ok
14:13:52.0598 4656 [ 4011430BC9DA46ADFAE9915EFEC312FB ] intaud_WaveExtensible C:\Windows\system32\drivers\intelaud.sys
14:13:52.0598 4656 intaud_WaveExtensible - ok
14:13:52.0738 4656 [ FA2B7507CD49908B2260949E52F8B9FE ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
14:13:52.0770 4656 IntcAzAudAddService - ok
14:13:52.0785 4656 [ B375D8686E1BD2B79C0F00E3868A8C3B ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys
14:13:52.0785 4656 IntcDAud - ok
14:13:52.0832 4656 [ DDA8E5AD97231AB50B81FED04C28F64C ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
14:13:52.0848 4656 Intel(R) Capability Licensing Service Interface - ok
14:13:52.0879 4656 [ 86FE509640D77FB0998FC8B1FF5523C6 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
14:13:52.0895 4656 Intel(R) Capability Licensing Service TCP IP Interface - ok
14:13:52.0926 4656 [ 726BFAF3DC2071218F0AE53C919A4D3B ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
14:13:52.0926 4656 Intel(R) ME Service - ok
14:13:52.0942 4656 [ 4E448FCFFD00E8D657CD9E48D3E47157 ] intelide C:\Windows\system32\drivers\intelide.sys
14:13:52.0942 4656 intelide - ok
14:13:52.0957 4656 [ 139CFCDCD36B1B1782FD8C0014AC9B0E ] intelpep C:\Windows\system32\drivers\intelpep.sys
14:13:52.0957 4656 intelpep - ok
14:13:52.0973 4656 [ 47E74A8E53C7C24DCE38311E1451C1D9 ] intelppm C:\Windows\System32\drivers\intelppm.sys
14:13:52.0973 4656 intelppm - ok
14:13:52.0988 4656 [ 9DB76D7F9E4E53EFE5DD8C53DE837514 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:13:52.0988 4656 IpFilterDriver - ok
14:13:53.0035 4656 [ DFC4050D58565ADBEE793A8D4AEBDAE6 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
14:13:53.0051 4656 iphlpsvc - ok
14:13:53.0066 4656 [ 9949A3C7590B8C536C05312205079A82 ] IPMIDRV C:\Windows\System32\drivers\IPMIDrv.sys
14:13:53.0066 4656 IPMIDRV - ok
14:13:53.0082 4656 [ B7342B3C58E91107F6E946A93D9D4EFD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
14:13:53.0098 4656 IPNAT - ok
14:13:53.0098 4656 [ AE44C526AB5F8A487D941CEB57B10C97 ] IRENUM C:\Windows\system32\drivers\irenum.sys
14:13:53.0098 4656 IRENUM - ok
14:13:53.0113 4656 [ 8AFEEA3955AA43616A60F133B1D25F21 ] isapnp C:\Windows\system32\drivers\isapnp.sys
14:13:53.0113 4656 isapnp - ok
14:13:53.0129 4656 [ 034D4BD9DC67C64F3A4C8A049B5173BF ] iScsiPrt C:\Windows\System32\drivers\msiscsi.sys
14:13:53.0145 4656 iScsiPrt - ok
14:13:53.0145 4656 [ EE03564B7FAFE2E44EDA33D52E83B4A3 ] iwdbus C:\Windows\System32\drivers\iwdbus.sys
14:13:53.0145 4656 iwdbus - ok
14:13:53.0176 4656 [ 1128B38EEC9DAF1B36373B65E87C00A3 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
14:13:53.0176 4656 jhi_service - ok
14:13:53.0191 4656 [ 8BE92376799B6B44D543E8D07CDCF885 ] kbdclass C:\Windows\System32\drivers\kbdclass.sys
14:13:53.0191 4656 kbdclass - ok
14:13:53.0191 4656 [ FB6E47E569D4872ABEB506BE03A45FBA ] kbdhid C:\Windows\System32\drivers\kbdhid.sys
14:13:53.0207 4656 kbdhid - ok
14:13:53.0207 4656 [ DB7A09BC90DF20F44F16F8B0F9ED3491 ] kbldfltr C:\Windows\system32\drivers\kbldfltr.sys
14:13:53.0207 4656 kbldfltr - ok
14:13:53.0223 4656 [ 813871C7D402A05F2E3A7075F9584A05 ] kdnic C:\Windows\system32\DRIVERS\kdnic.sys
14:13:53.0223 4656 kdnic - ok
14:13:53.0238 4656 [ F6F209DDB94959BA104FC8FC87C53759 ] KeyIso C:\Windows\system32\lsass.exe
14:13:53.0238 4656 KeyIso - ok
14:13:53.0285 4656 [ E3D911D04BD85744667F6645F39D93B6 ] KMSServerService C:\Windows\System32\KMSServer.exe
14:13:53.0285 4656 KMSServerService - ok
14:13:53.0301 4656 [ ADDECBCC777665BD113BED437E602AB0 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
14:13:53.0301 4656 KSecDD - ok
14:13:53.0316 4656 [ 7296EA420134EAC390798B3232D066A4 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
14:13:53.0316 4656 KSecPkg - ok
14:13:53.0332 4656 [ 11AFB527AA370B1DAFD5C36F35F6D45F ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
14:13:53.0332 4656 ksthunk - ok
14:13:53.0348 4656 [ 32B1A8351160F307A8C66BCB0F94A9C2 ] KtmRm C:\Windows\system32\msdtckrm.dll
14:13:53.0363 4656 KtmRm - ok
14:13:53.0395 4656 [ 50AECF8C21AB2A6428A6E1E10549D8E5 ] L1C C:\Windows\system32\DRIVERS\L1C63x64.sys
14:13:53.0395 4656 L1C - ok
14:13:53.0410 4656 [ 27B58E16CF895AC1F1A97C04814C2239 ] LanmanServer C:\Windows\system32\srvsvc.dll
14:13:53.0426 4656 LanmanServer - ok
14:13:53.0457 4656 [ D0D9C2ECA4D03A8F06DCD91236B90C98 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:13:53.0473 4656 LanmanWorkstation - ok
14:13:53.0504 4656 [ EE289BD147FDFF95EF1B9BD65D3B974A ] lfsvc C:\Windows\System32\GeofenceMonitorService.dll
14:13:53.0504 4656 lfsvc - ok
14:13:53.0520 4656 [ BE166935083F9C38EDFDC21B9A7A679B ] LHDmgr C:\Windows\system32\DRIVERS\LhdX64.sys
14:13:53.0520 4656 LHDmgr - ok
14:13:53.0535 4656 [ C09010B3680860131631F53E8FE7BAD8 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
14:13:53.0535 4656 lltdio - ok
14:13:53.0551 4656 [ 00E070FC0C673311AFD4B068D1242780 ] lltdsvc C:\Windows\System32\lltdsvc.dll
14:13:53.0567 4656 lltdsvc - ok
14:13:53.0582 4656 [ D113FAD71A5E67AA94B32A0F8828D265 ] lmhosts C:\Windows\System32\lmhsvc.dll
14:13:53.0582 4656 lmhosts - ok
14:13:53.0598 4656 [ 60471C88EB4906DB0C2026B3290EE4B6 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
14:13:53.0613 4656 LMS - ok
14:13:53.0629 4656 [ C755AE4635457AA2A11F79C0DF857ABC ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
14:13:53.0629 4656 LSI_SAS - ok
14:13:53.0629 4656 [ ADAC09CBE7A2040B7F68B5E5C9A75141 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
14:13:53.0645 4656 LSI_SAS2 - ok
14:13:53.0645 4656 [ 04D1274BB9BBCCF12BD12374002AA191 ] LSI_SAS3 C:\Windows\system32\drivers\lsi_sas3.sys
14:13:53.0645 4656 LSI_SAS3 - ok
14:13:53.0660 4656 [ 327469EEF3833D0C584B7E88A76AEC0C ] LSI_SSS C:\Windows\system32\drivers\lsi_sss.sys
14:13:53.0660 4656 LSI_SSS - ok
14:13:53.0707 4656 [ B6B69FF200F68888A7FAFDF204D00C91 ] LSM C:\Windows\System32\lsm.dll
14:13:53.0723 4656 LSM - ok
14:13:53.0738 4656 [ 5EF604B0698F4FA962778285E8C5F1F2 ] luafv C:\Windows\system32\drivers\luafv.sys
14:13:53.0738 4656 luafv - ok
14:13:53.0754 4656 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
14:13:53.0754 4656 MBAMProtector - ok
14:13:53.0770 4656 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
14:13:53.0770 4656 MBAMScheduler - ok
14:13:53.0801 4656 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
14:13:53.0816 4656 MBAMService - ok
14:13:53.0816 4656 [ EB5C03A070F30D64A6DF80E53B22F53F ] megasas C:\Windows\system32\drivers\megasas.sys
14:13:53.0816 4656 megasas - ok
14:13:53.0848 4656 [ F6F13533196DE7A582D422B0241E4363 ] megasr C:\Windows\system32\drivers\megasr.sys
14:13:53.0848 4656 megasr - ok
14:13:53.0863 4656 [ 6FE7B681F1840366B2E4E8B15BE8E2CB ] MEIx64 C:\Windows\system32\DRIVERS\TeeDriverx64.sys
14:13:53.0863 4656 MEIx64 - ok
14:13:53.0895 4656 [ FD788C2D96EA91469A3C1D13E80D7473 ] MMCSS C:\Windows\system32\mmcss.dll
14:13:53.0895 4656 MMCSS - ok
14:13:53.0910 4656 [ 8B38C44F69259987C95135C9627E2378 ] Modem C:\Windows\system32\drivers\modem.sys
14:13:53.0910 4656 Modem - ok
14:13:53.0926 4656 [ 601589000CC90F0DF8DA2CC254A3CCC9 ] monitor C:\Windows\System32\drivers\monitor.sys
14:13:53.0926 4656 monitor - ok
14:13:53.0941 4656 [ CEAC6D40FE887CE8406C2393CF97DE06 ] mouclass C:\Windows\System32\drivers\mouclass.sys
14:13:53.0941 4656 mouclass - ok
14:13:53.0941 4656 [ 02D98BF804084E9A0D69D1C69B02CCA9 ] mouhid C:\Windows\System32\drivers\mouhid.sys
14:13:53.0957 4656 mouhid - ok
14:13:53.0957 4656 [ 515549560D481138E6E21AF7C6998E56 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
14:13:53.0957 4656 mountmgr - ok
14:13:54.0004 4656 [ 338037EFA0E8E8699B2667D57B751574 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
14:13:54.0004 4656 MozillaMaintenance - ok
14:13:54.0004 4656 [ F170510BE94CF45E3C6274578F6204B2 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
14:13:54.0020 4656 mpsdrv - ok
14:13:54.0051 4656 [ D186C5844393252147BE934F3871DB7A ] MpsSvc C:\Windows\system32\mpssvc.dll
14:13:54.0067 4656 MpsSvc - ok
14:13:54.0098 4656 [ 59DCEC7499095DE5AED741358037AE2D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
14:13:54.0098 4656 MRxDAV - ok
14:13:54.0145 4656 [ 79B6F3DF7CDFD12159871FF71464F0CE ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
14:13:54.0145 4656 mrxsmb - ok
14:13:54.0160 4656 [ 295771B092D4F7FCF2B62F80CCD14320 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:13:54.0160 4656 mrxsmb10 - ok
14:13:54.0176 4656 [ AAF56E4E84D35411B4E446C445732DFE ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:13:54.0176 4656 mrxsmb20 - ok
14:13:54.0191 4656 [ 4E888019078AC363076A5433E89AA4F8 ] MsBridge C:\Windows\system32\DRIVERS\bridge.sys
14:13:54.0191 4656 MsBridge - ok
14:13:54.0207 4656 [ A082C17D14D0790E27D064EA4B138AE1 ] MSDTC C:\Windows\System32\msdtc.exe
14:13:54.0223 4656 MSDTC - ok
14:13:54.0223 4656 [ D13329FBF8345B28AB30F44CC247DC08 ] Msfs C:\Windows\system32\drivers\Msfs.sys
14:13:54.0238 4656 Msfs - ok
14:13:54.0238 4656 [ C6B474E46F9E543B875981ED3FFE6ADD ] msgpiowin32 C:\Windows\System32\drivers\msgpiowin32.sys
14:13:54.0238 4656 msgpiowin32 - ok
14:13:54.0254 4656 [ 65C92EB9D08DB5C69F28C7FFD4E84E31 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
14:13:54.0254 4656 mshidkmdf - ok
14:13:54.0270 4656 [ 52299F086AC2DAFD100DD5DC4A8614BA ] mshidumdf C:\Windows\System32\drivers\mshidumdf.sys
14:13:54.0270 4656 mshidumdf - ok
14:13:54.0270 4656 [ 36D92AF3343C3A3E57FEF11C449AEA4C ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
14:13:54.0285 4656 msisadrv - ok
14:13:54.0301 4656 [ 810F8A0A0680662BB0CE44D0E2CEF90C ] MSiSCSI C:\Windows\system32\iscsiexe.dll
14:13:54.0317 4656 MSiSCSI - ok
14:13:54.0317 4656 msiserver - ok
14:13:54.0332 4656 [ D22AE5313F6B7EFDDD8C117B5501F4A3 ] MsKeyboardFilter C:\Windows\System32\KeyboardFilterSvc.dll
14:13:54.0348 4656 MsKeyboardFilter - ok
14:13:54.0348 4656 [ A9BBBD2BAE6142253B9195E949AC2E8D ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
14:13:54.0348 4656 MSKSSRV - ok
14:13:54.0363 4656 [ 375E44168F2DFB91A68B8A3F619C5A7C ] MsLldp C:\Windows\system32\DRIVERS\mslldp.sys
14:13:54.0363 4656 MsLldp - ok
14:13:54.0363 4656 [ 7B2128EB875DCBC006E6A913211006D6 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
14:13:54.0379 4656 MSPCLOCK - ok
14:13:54.0379 4656 [ 1E88171579B218115C7A772F8DE04BD8 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
14:13:54.0379 4656 MSPQM - ok
14:13:54.0395 4656 [ BBE2A455053E63BECBF42C2F9B21FAE0 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
14:13:54.0410 4656 MsRPC - ok
14:13:54.0410 4656 [ 8D6B7D515C5CBCDB75B928A0B73C3C5E ] mssmbios C:\Windows\System32\drivers\mssmbios.sys
14:13:54.0410 4656 mssmbios - ok
14:13:54.0426 4656 [ 115019AE01E0EB9C048530D2928AB4A2 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
14:13:54.0426 4656 MSTEE - ok
14:13:54.0426 4656 [ 96D604A35070360F0DD4A7A8AF410B5E ] MTConfig C:\Windows\System32\drivers\MTConfig.sys
14:13:54.0426 4656 MTConfig - ok
14:13:54.0441 4656 [ 619CA29326B82372621DB2C0964D8365 ] Mup C:\Windows\system32\Drivers\mup.sys
14:13:54.0441 4656 Mup - ok
14:13:54.0441 4656 [ B8C35C94DCB2DFEAF03BB42131F2F77F ] mvumis C:\Windows\system32\drivers\mvumis.sys
14:13:54.0441 4656 mvumis - ok
14:13:54.0473 4656 [ 74E1E62819D33F176821ADC9AFF8A3E7 ] MyWiFiDHCPDNS C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
14:13:54.0473 4656 MyWiFiDHCPDNS - ok
14:13:54.0488 4656 [ 41A45D2A75494EABF2806EA051E00376 ] napagent C:\Windows\system32\qagentRT.dll
14:13:54.0504 4656 napagent - ok
14:13:54.0520 4656 [ CF8B989D89D6807B887690F2CF24EFD9 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
14:13:54.0535 4656 NativeWifiP - ok
14:13:54.0535 4656 [ 71E3C0100AA19D11373CCEB2F51A6008 ] NcaSvc C:\Windows\System32\ncasvc.dll
14:13:54.0551 4656 NcaSvc - ok
14:13:54.0566 4656 [ 51DF09CAB2CAC64FEE3E371D9028ED01 ] NcbService C:\Windows\System32\ncbservice.dll
14:13:54.0582 4656 NcbService - ok
14:13:54.0582 4656 [ 2586C4C167499210DCBF3ECFD8CCE210 ] NcdAutoSetup C:\Windows\System32\NcdAutoSetup.dll
14:13:54.0598 4656 NcdAutoSetup - ok
14:13:54.0613 4656 [ ED39D676080A1AEA755F1DEC1A8DF1A4 ] NDIS C:\Windows\system32\drivers\ndis.sys
14:13:54.0629 4656 NDIS - ok
14:13:54.0629 4656 [ C6BB12BC35D1637CA17AE16D3A4725EB ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
14:13:54.0645 4656 NdisCap - ok
14:13:54.0645 4656 [ 9F1DA20E943BE7AA4ED5F3E1EBA78B37 ] NdisImPlatform C:\Windows\system32\DRIVERS\NdisImPlatform.sys
14:13:54.0645 4656 NdisImPlatform - ok
14:13:54.0660 4656 [ 9423421E735BD5394351E0C47C76BB92 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
14:13:54.0660 4656 NdisTapi - ok
14:13:54.0660 4656 [ B832B35055BA2B7B4181861FF94D8E59 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
14:13:54.0660 4656 Ndisuio - ok
14:13:54.0676 4656 [ 1F58E48EF75F34C35D8E93A0DC535CFE ] NdisVirtualBus C:\Windows\System32\drivers\NdisVirtualBus.sys
14:13:54.0676 4656 NdisVirtualBus - ok
14:13:54.0692 4656 [ DEC29080202D4F9F17F55E18BCFCC41A ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
14:13:54.0692 4656 NdisWan - ok
14:13:54.0707 4656 [ DEC29080202D4F9F17F55E18BCFCC41A ] NdisWanLegacy C:\Windows\system32\DRIVERS\ndiswan.sys
14:13:54.0707 4656 NdisWanLegacy - ok
14:13:54.0707 4656 [ A5BD69A8812FA79D1A487691DD3FB244 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
14:13:54.0707 4656 NDProxy - ok
14:13:54.0723 4656 [ 5A072F0B90C29C5233D78BE33EF5ED78 ] Ndu C:\Windows\system32\drivers\Ndu.sys
14:13:54.0723 4656 Ndu - ok
14:13:54.0738 4656 [ 2334DC48997BA203B794DF3EE70521DB ] Net Driver HPZ12 C:\Windows\System32\HPZinw12.dll
14:13:54.0754 4656 Net Driver HPZ12 - ok
14:13:54.0754 4656 [ A83D67D347A684F10B7D3019C8A6380C ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
14:13:54.0754 4656 NetBIOS - ok
14:13:54.0770 4656 [ 0217532E19A748F0E5D569307363D5FD ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
14:13:54.0770 4656 NetBT - ok
14:13:54.0785 4656 [ F6F209DDB94959BA104FC8FC87C53759 ] Netlogon C:\Windows\system32\lsass.exe
14:13:54.0785 4656 Netlogon - ok
14:13:54.0816 4656 [ B7AD851A21FEBA3BA214972627614207 ] Netman C:\Windows\System32\netman.dll
14:13:54.0832 4656 Netman - ok
14:13:54.0863 4656 [ F0F0A372C2EF6358399C4936F91B6131 ] netprofm C:\Windows\System32\netprofmsvc.dll
14:13:54.0879 4656 netprofm - ok
14:13:54.0926 4656 [ 1092B3190E69E0C5ECBCE90F171DE047 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:13:54.0926 4656 NetTcpPortSharing - ok
14:13:54.0941 4656 [ 70414DB660BFBB7BD58FCE8EA4364E1B ] netvsc C:\Windows\system32\DRIVERS\netvsc63.sys
14:13:54.0941 4656 netvsc - ok
14:13:55.0035 4656 [ 75B9B86878CC159FBC40C4F9202ADBE3 ] NETwNe64 C:\Windows\system32\DRIVERS\NETwew00.sys
14:13:55.0082 4656 NETwNe64 - ok
14:13:55.0113 4656 [ 3A280F3B3C7A46E29C404ACD46ECBF5E ] NlaSvc C:\Windows\System32\nlasvc.dll
14:13:55.0113 4656 NlaSvc - ok
14:13:55.0129 4656 [ 8F44A2F57C9F1A19AC9C6288C10FB351 ] Npfs C:\Windows\system32\drivers\Npfs.sys
14:13:55.0129 4656 Npfs - ok
14:13:55.0145 4656 [ CBDB4F0871C88DF930FC0E8588CA67FC ] npsvctrig C:\Windows\System32\drivers\npsvctrig.sys
14:13:55.0145 4656 npsvctrig - ok
14:13:55.0160 4656 [ 6E2271ED0C3E95B8E29F3752B91B9E84 ] nsi C:\Windows\system32\nsisvc.dll
14:13:55.0160 4656 nsi - ok
14:13:55.0176 4656 [ E490B459978CB87779E84C761D22B827 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
14:13:55.0176 4656 nsiproxy - ok
14:13:55.0238 4656 [ 4412D565C0278C401575E11072C7DCE3 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
14:13:55.0270 4656 Ntfs - ok
14:13:55.0270 4656 [ EF1B290FC9F0E47CC0B537292BEE5904 ] Null C:\Windows\system32\drivers\Null.sys
14:13:55.0270 4656 Null - ok
14:13:55.0535 4656 [ 0218E1CE8F7B5D404980192B9112D03A ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
14:13:55.0660 4656 nvlddmkm - ok
14:13:55.0707 4656 [ 903A40C958D471F9D30D29FA6D2800A4 ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
14:13:55.0723 4656 NvNetworkService - ok
14:13:55.0738 4656 [ F76296368BB813E0C6996501A3271C7C ] nvpciflt C:\Windows\system32\DRIVERS\nvpciflt.sys
14:13:55.0738 4656 nvpciflt - ok
14:13:55.0738 4656 [ BC6B5942AFF25EBAF62DE43C3807EDF8 ] nvraid C:\Windows\system32\drivers\nvraid.sys
14:13:55.0754 4656 nvraid - ok
14:13:55.0754 4656 [ 1F43ABFFAC3D6CA356851D517392966E ] nvstor C:\Windows\system32\drivers\nvstor.sys
14:13:55.0770 4656 nvstor - ok
14:13:56.0067 4656 [ 68DE8D996D8FF628AB6B3D422035F862 ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
14:13:56.0176 4656 NvStreamSvc - ok
14:13:56.0207 4656 [ B7973C405247C5A44BA46B12A4B7AEEA ] nvsvc C:\Windows\system32\nvvsvc.exe
14:13:56.0223 4656 nvsvc - ok
14:13:56.0223 4656 [ 09216A70CC364D0974F606F6F2109210 ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys
14:13:56.0223 4656 nvvad_WaveExtensible - ok
14:13:56.0238 4656 [ 6934A936A7369DFE37B7DBA93F5E5E49 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
14:13:56.0238 4656 nv_agp - ok
14:13:56.0270 4656 [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:13:56.0285 4656 ose - ok
14:13:56.0317 4656 [ 3B510F20806B94E389784ED09DBD2111 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
14:13:56.0332 4656 p2pimsvc - ok
14:13:56.0363 4656 [ 2A57A937BC5B1B2D6AFE6A8C5925F50B ] p2psvc C:\Windows\system32\p2psvc.dll
14:13:56.0379 4656 p2psvc - ok
14:13:56.0379 4656 [ 764B1121867B2D9B31C491668AC72B2B ] Parport C:\Windows\System32\drivers\parport.sys
14:13:56.0395 4656 Parport - ok
14:13:56.0395 4656 [ EF0C1749C9A8CEE9A457473D433CC00F ] partmgr C:\Windows\system32\drivers\partmgr.sys
14:13:56.0395 4656 partmgr - ok
14:13:56.0426 4656 [ 9A5309EF92F39346CFD5A4C2C3D1BFAD ] PcaSvc C:\Windows\System32\pcasvc.dll
14:13:56.0442 4656 PcaSvc - ok
14:13:56.0473 4656 [ C0D3F3BC1C84B4BA746D9847314C1164 ] pci C:\Windows\system32\drivers\pci.sys
14:13:56.0473 4656 pci - ok
14:13:56.0488 4656 [ 346E38FCC6859A727DD28AFAD1F0AFF4 ] pciide C:\Windows\system32\drivers\pciide.sys
14:13:56.0488 4656 pciide - ok
14:13:56.0504 4656 [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
14:13:56.0504 4656 pcmcia - ok
14:13:56.0520 4656 [ BF28771D1436C88BE1D297D3098B0F7D ] pcw C:\Windows\system32\drivers\pcw.sys
14:13:56.0520 4656 pcw - ok
14:13:56.0535 4656 [ B9D968D8E2B0F9C6301CEB39CFC9B9E4 ] pdc C:\Windows\system32\drivers\pdc.sys
14:13:56.0535 4656 pdc - ok
14:13:56.0551 4656 [ BA50CC0BD19004AAB88BE37338B6FA0D ] PEAUTH C:\Windows\system32\drivers\peauth.sys
14:13:56.0567 4656 PEAUTH - ok
14:13:56.0629 4656 [ 084DE525DFE82AE7453DD527390FA110 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
14:13:56.0676 4656 PeerDistSvc - ok
14:13:56.0754 4656 [ 8E3C640FFF5A963F570233AE99C0FFF3 ] PerfHost C:\Windows\SysWow64\perfhost.exe
14:13:56.0754 4656 PerfHost - ok
14:13:56.0832 4656 [ 928061178CD9856CA6B67FFFCE6BA766 ] pla C:\Windows\system32\pla.dll
14:13:56.0863 4656 pla - ok
14:13:56.0879 4656 [ 752A457320A946E03C3AA86C3ACD735E ] PlugPlay C:\Windows\system32\umpnpmgr.dll
14:13:56.0879 4656 PlugPlay - ok
14:13:56.0895 4656 [ AC78DF349F0E4CFB8B667C0CFFF83CCE ] Pml Driver HPZ12 C:\Windows\System32\HPZipm12.dll
14:13:56.0910 4656 Pml Driver HPZ12 - ok
14:13:56.0910 4656 [ 045EB4F260606A03BE340D09DEAF3BA4 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
14:13:56.0910 4656 PNRPAutoReg - ok
14:13:56.0926 4656 [ 3B510F20806B94E389784ED09DBD2111 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
14:13:56.0942 4656 PNRPsvc - ok
14:13:56.0957 4656 [ C16097D77A232A288D65F299E2E01105 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
14:13:56.0973 4656 PolicyAgent - ok
14:13:56.0988 4656 [ 00E08B30E7F7C13ECE2CDF4F46A77311 ] Power C:\Windows\system32\umpo.dll
14:13:57.0004 4656 Power - ok
14:13:57.0082 4656 [ B7DB57A000D46D4DE75BC0C563E58072 ] PrintNotify C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
14:13:57.0113 4656 PrintNotify - ok
14:13:57.0129 4656 [ ECD373F9571C745894367CC2635EA44F ] Processor C:\Windows\System32\drivers\processr.sys
14:13:57.0129 4656 Processor - ok
14:13:57.0145 4656 [ 8513A1E7AE4B9DC82C4B4F432C648A58 ] ProfSvc C:\Windows\system32\profsvc.dll
14:13:57.0145 4656 ProfSvc - ok
14:13:57.0176 4656 [ 8528BB05E4D4E25945F78B00B2555FB7 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
14:13:57.0176 4656 Psched - ok
14:13:57.0192 4656 [ AF90BB44C99D6820BE52C9BBAA523283 ] QWAVE C:\Windows\system32\qwave.dll
14:13:57.0192 4656 QWAVE - ok
14:13:57.0207 4656 [ 3FB466684609A4329858CF2EBD62E0FD ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
14:13:57.0207 4656 QWAVEdrv - ok
14:13:57.0207 4656 [ 2C56F0EE27E4EF70CA4B4983D3638905 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
14:13:57.0207 4656 RasAcd - ok
14:13:57.0223 4656 [ 5F061AC45266841A2860C1858ED863B8 ] RasAuto C:\Windows\System32\rasauto.dll
14:13:57.0223 4656 RasAuto - ok
14:13:57.0254 4656 [ BF3B17016764F20F9D28CF1A8DC210C0 ] RasMan C:\Windows\System32\rasmans.dll
14:13:57.0270 4656 RasMan - ok
14:13:57.0270 4656 [ 5247F308C4103CDC4FE12AE1D235800A ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
14:13:57.0270 4656 RasPppoe - ok
14:13:57.0285 4656 [ B939A2A0F9D6C6C186721E268EB6FA93 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
14:13:57.0285 4656 rdbss - ok
14:13:57.0301 4656 [ 6B21EBF892CD8CACB71669B35AB5DE32 ] rdpbus C:\Windows\System32\drivers\rdpbus.sys
14:13:57.0301 4656 rdpbus - ok
14:13:57.0317 4656 [ 680C1DAE268B6FB67FA21B389A8B79EF ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
14:13:57.0317 4656 RDPDR - ok
14:13:57.0332 4656 [ 858776908AF838E3790F3261B799CDA6 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
14:13:57.0332 4656 RdpVideoMiniport - ok
14:13:57.0348 4656 [ 847C6A08912C3515807049C93E526D65 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
14:13:57.0348 4656 rdyboost - ok
14:13:57.0363 4656 [ 036746D54347FD2D0385668E2A4064E4 ] ReFS C:\Windows\system32\drivers\ReFS.sys
14:13:57.0379 4656 ReFS - ok
14:13:57.0426 4656 [ 5A118234A2251D6CFB8A11DFE7AC4B4A ] RegSrvc C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
14:13:57.0426 4656 RegSrvc - ok
14:13:57.0442 4656 [ BFFB40FBE6D2C3469F8D06EE5E4934AB ] RemoteAccess C:\Windows\System32\mprdim.dll
14:13:57.0457 4656 RemoteAccess - ok
14:13:57.0473 4656 [ 4DCCABE03D06955ED61BABBD8EF9F30F ] RemoteRegistry C:\Windows\system32\regsvc.dll
14:13:57.0488 4656 RemoteRegistry - ok
14:13:57.0504 4656 [ 02307C86CB24769306B0DFA0C751952E ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
14:13:57.0504 4656 RFCOMM - ok
14:13:57.0520 4656 [ D894CBD7DA753C881EE8D5E33B583225 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
14:13:57.0535 4656 RpcEptMapper - ok
14:13:57.0535 4656 [ 5CAE8F47B31D5CFC322B5B898C19E0FE ] RpcLocator C:\Windows\system32\locator.exe
14:13:57.0551 4656 RpcLocator - ok
14:13:57.0582 4656 [ 3FD5AE42EC87C6F532A931F96BE731DD ] RpcSs C:\Windows\system32\rpcss.dll
14:13:57.0598 4656 RpcSs - ok
14:13:57.0613 4656 [ 2D05A5508F4685412F2B89E8C2189ABC ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
14:13:57.0613 4656 rspndr - ok
14:13:57.0817 4656 [ 48D95A57DBFDA470DED69573411E4C55 ] rtsuvc C:\Windows\system32\DRIVERS\rtsuvc.sys
14:13:57.0879 4656 rtsuvc - ok
14:13:57.0926 4656 [ 1A063730F221B2746FF00457AE17E4F0 ] s3cap C:\Windows\System32\drivers\vms3cap.sys
14:13:57.0926 4656 s3cap - ok
14:13:57.0926 4656 [ F6F209DDB94959BA104FC8FC87C53759 ] SamSs C:\Windows\system32\lsass.exe
14:13:57.0942 4656 SamSs - ok
14:13:57.0957 4656 [ C624A1B32211C3166EDB3F4AB02A30B7 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
14:13:57.0957 4656 sbp2port - ok
14:13:57.0973 4656 [ 47C497FA4DDEA908633CAA60CEBE6805 ] SCardSvr C:\Windows\System32\SCardSvr.dll
14:13:57.0988 4656 SCardSvr - ok
RogueKiller V8.8.8 _x64_ [Feb 19 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Michal [Práva správce]
Mód : Odebrat -- Datum : 02/20/2014 14:02:01
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 10 ¤¤¤
[RUN][SUSP UNIC] HKCU\[...]\Run : OpaqueTaskbar ("C:\Users\Michal\Downloads\WINDOWS-8-NEPR�?HLEDNÝ,HLAVNÍ-PANEL\x64\OpaqueTaskbar.exe" /resident [-]) -> VYMAZÁNO
[RUN][SUSP PATH] HKCU\[...]\Run : LightShot (C:\Users\Michal\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue [7][x][x]) -> VYMAZÁNO
[RUN][SUSP UNIC] HKUS\S-1-5-21-4202670712-14329881-303778152-1001\[...]\Run : OpaqueTaskbar ("C:\Users\Michal\Downloads\WINDOWS-8-NEPR�?HLEDNÝ,HLAVNÍ-PANEL\x64\OpaqueTaskbar.exe" /resident [-]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP PATH] HKUS\S-1-5-21-4202670712-14329881-303778152-1001\[...]\Run : LightShot (C:\Users\Michal\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue [7][x][x]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST1000LM014-1EJ164 +++++
--- User ---
[MBR] 630e4fdbe650d148a1f7c3eff8e7bb99
[BSP] dbcf146c463bbc7c9a28454074d03841 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] FAT32 (0x0b) [VISIBLE] Offset (sectors): 2048 | Size: 1000 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2050048 | Size: 951867 Mo
2 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 1951473664 | Size: 1000 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_02202014_140201.txt >>
RKreport[0]_S_02202014_140144.txt
14:13:37.0774 4788 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
14:13:43.0363 4788 ============================================================
14:13:43.0363 4788 Current date / time: 2014/02/20 14:13:43.0363
14:13:43.0363 4788 SystemInfo:
14:13:43.0363 4788
14:13:43.0363 4788 OS Version: 6.2.9200 ServicePack: 0.0
14:13:43.0363 4788 Product type: Workstation
14:13:43.0363 4788 ComputerName: MICHAL
14:13:43.0363 4788 UserName: Michal
14:13:43.0363 4788 Windows directory: C:\Windows
14:13:43.0363 4788 System windows directory: C:\Windows
14:13:43.0363 4788 Running under WOW64
14:13:43.0363 4788 Processor architecture: Intel x64
14:13:43.0363 4788 Number of processors: 4
14:13:43.0363 4788 Page size: 0x1000
14:13:43.0363 4788 Boot type: Normal boot
14:13:43.0363 4788 ============================================================
14:13:43.0660 4788 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
14:13:43.0676 4788 ============================================================
14:13:43.0676 4788 \Device\Harddisk0\DR0:
14:13:43.0676 4788 MBR partitions:
14:13:43.0676 4788 \Device\Harddisk0\DR0\Partition1: MBR, Type 0xB, StartLBA 0x800, BlocksNum 0x1F4000
14:13:43.0676 4788 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1F4800, BlocksNum 0x7431D800
14:13:43.0676 4788 ============================================================
14:13:43.0676 4788 C: <-> \Device\Harddisk0\DR0\Partition2
14:13:43.0676 4788 ============================================================
14:13:43.0676 4788 Initialize success
14:13:43.0676 4788 ============================================================
14:13:48.0082 4656 ============================================================
14:13:48.0082 4656 Scan started
14:13:48.0082 4656 Mode: Manual;
14:13:48.0082 4656 ============================================================
14:13:48.0363 4656 ================ Scan system memory ========================
14:13:48.0363 4656 System memory - ok
14:13:48.0363 4656 ================ Scan services =============================
14:13:48.0504 4656 [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1 ] 1394ohci C:\Windows\System32\drivers\1394ohci.sys
14:13:48.0504 4656 1394ohci - ok
14:13:48.0520 4656 [ AD508A1A46EC21B740AB31C28EFDFDB1 ] 3ware C:\Windows\system32\drivers\3ware.sys
14:13:48.0520 4656 3ware - ok
14:13:48.0582 4656 [ 3D30878A269D934100FA5F972E53AF39 ] ACPI C:\Windows\system32\drivers\ACPI.sys
14:13:48.0582 4656 ACPI - ok
14:13:48.0598 4656 [ AC8279D229398BCF05C3154ADCA86813 ] acpiex C:\Windows\system32\Drivers\acpiex.sys
14:13:48.0598 4656 acpiex - ok
14:13:48.0613 4656 [ A8970D9BF23CD309E0403978A1B58F3F ] acpipagr C:\Windows\System32\drivers\acpipagr.sys
14:13:48.0613 4656 acpipagr - ok
14:13:48.0629 4656 [ 111A89C99C5B4F1A7BCE5F643DD86F65 ] AcpiPmi C:\Windows\System32\drivers\acpipmi.sys
14:13:48.0629 4656 AcpiPmi - ok
14:13:48.0629 4656 [ 5758387D68A20AE7D3245011B07E36E7 ] acpitime C:\Windows\System32\drivers\acpitime.sys
14:13:48.0629 4656 acpitime - ok
14:13:48.0645 4656 [ 3B42D95D20CD2AACDB0564471AE43ED7 ] ACPIVPC C:\Windows\System32\drivers\AcpiVpc.sys
14:13:48.0645 4656 ACPIVPC - ok
14:13:48.0723 4656 [ B362181ED3771DC03B4141927C80F801 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
14:13:48.0723 4656 AdobeARMservice - ok
14:13:48.0816 4656 [ C8C6C0D659734FDBF63F6F421A5416BC ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
14:13:48.0832 4656 AdobeFlashPlayerUpdateSvc - ok
14:13:48.0848 4656 [ 7C1FDF1B48298CBA7CE4BDD4978951AD ] ADP80XX C:\Windows\system32\drivers\ADP80XX.SYS
14:13:48.0863 4656 ADP80XX - ok
14:13:48.0895 4656 [ B19CA8E441D35AA2B1EE51C10B27DA1B ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
14:13:48.0895 4656 AeLookupSvc - ok
14:13:48.0926 4656 [ 239268BAB58EAE9A3FF4E08334C00451 ] AFD C:\Windows\system32\drivers\afd.sys
14:13:48.0941 4656 AFD - ok
14:13:48.0941 4656 [ 7DFAEBA9AD62D20102B576D5CAC45EC8 ] agp440 C:\Windows\system32\drivers\agp440.sys
14:13:48.0957 4656 agp440 - ok
14:13:48.0957 4656 [ 8E8E34B7BA059050EED827410D0697A2 ] ahcache C:\Windows\system32\DRIVERS\ahcache.sys
14:13:48.0957 4656 ahcache - ok
14:13:48.0973 4656 [ A91D8E1E433EFB32551BCE69037E1CE7 ] ALG C:\Windows\System32\alg.exe
14:13:48.0973 4656 ALG - ok
14:13:48.0988 4656 [ 7589DE749DB6F71A68489DCE04158729 ] AmdK8 C:\Windows\System32\drivers\amdk8.sys
14:13:48.0988 4656 AmdK8 - ok
14:13:49.0004 4656 [ B46D2D89AFF8A9490FA8C98C7A5616E3 ] AmdPPM C:\Windows\System32\drivers\amdppm.sys
14:13:49.0004 4656 AmdPPM - ok
14:13:49.0020 4656 [ D2BF2F94A47D332814910FD47C6BBCD2 ] amdsata C:\Windows\system32\drivers\amdsata.sys
14:13:49.0020 4656 amdsata - ok
14:13:49.0035 4656 [ A8E04943C7BBA7219AA50400272C3C6E ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
14:13:49.0035 4656 amdsbs - ok
14:13:49.0051 4656 [ CEA5F4F27CFC08E3A44D576811B35F50 ] amdxata C:\Windows\system32\drivers\amdxata.sys
14:13:49.0051 4656 amdxata - ok
14:13:49.0051 4656 [ EA3F776E71584D7B51D9B1ADCE80DF08 ] AMPPAL C:\Windows\System32\drivers\AMPPAL.sys
14:13:49.0066 4656 AMPPAL - ok
14:13:49.0066 4656 [ EA3F776E71584D7B51D9B1ADCE80DF08 ] AMPPALP C:\Windows\system32\DRIVERS\amppal.sys
14:13:49.0082 4656 AMPPALP - ok
14:13:49.0098 4656 [ 9BE647AB104153BD0053EB4A48F50B31 ] AMPPALR3 C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
14:13:49.0113 4656 AMPPALR3 - ok
14:13:49.0129 4656 [ 04951A9A937CBE28A2D3FEEA360B6D1F ] AppID C:\Windows\system32\drivers\appid.sys
14:13:49.0129 4656 AppID - ok
14:13:49.0145 4656 [ C0DC3F58214A227980AEB091CFD2F973 ] AppIDSvc C:\Windows\System32\appidsvc.dll
14:13:49.0145 4656 AppIDSvc - ok
14:13:49.0160 4656 [ 7E790DE2487CEDB349D1750B9E47F090 ] Appinfo C:\Windows\System32\appinfo.dll
14:13:49.0160 4656 Appinfo - ok
14:13:49.0176 4656 [ 8176FBA685178FB0F52D46693474FA50 ] AppMgmt C:\Windows\System32\appmgmts.dll
14:13:49.0176 4656 AppMgmt - ok
14:13:49.0207 4656 [ 4B964AE0DF433A3BFA7BD24713BC2E9B ] AppReadiness C:\Windows\system32\AppReadiness.dll
14:13:49.0223 4656 AppReadiness - ok
14:13:49.0285 4656 [ 0B726D9ED75C787D6FFAF1E3873BCC70 ] AppXSvc C:\Windows\system32\appxdeploymentserver.dll
14:13:49.0316 4656 AppXSvc - ok
14:13:49.0332 4656 [ 65045784366F7EC5FB4E71BCF923187B ] arcsas C:\Windows\system32\drivers\arcsas.sys
14:13:49.0348 4656 arcsas - ok
14:13:49.0348 4656 [ 0ACC3F49015E628590CA4372322EB46B ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
14:13:49.0348 4656 aswMonFlt - ok
14:13:49.0363 4656 [ 679712B7A353EE665B9301592164A172 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys
14:13:49.0363 4656 aswRdr - ok
14:13:49.0379 4656 [ C04F7B373881009D7994D9BF55D24AB4 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
14:13:49.0379 4656 aswRvrt - ok
14:13:49.0410 4656 [ 43599E630DFC30AD4E6A2B4B269EB1C0 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
14:13:49.0426 4656 aswSnx - ok
14:13:49.0441 4656 [ F22DE5F5BA8ADA0A861441B624B51EB5 ] aswSP C:\Windows\system32\drivers\aswSP.sys
14:13:49.0441 4656 aswSP - ok
14:13:49.0457 4656 [ FD3EA14ADF6216BDF4030DB2EFD43D96 ] aswStm C:\Windows\system32\drivers\aswStm.sys
14:13:49.0457 4656 aswStm - ok
14:13:49.0473 4656 [ 90399625F341AB76BA4B85A5E860EB1F ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
14:13:49.0473 4656 aswVmm - ok
14:13:49.0488 4656 [ 74B14192CF79A72F7536B27CB8814FBD ] atapi C:\Windows\system32\drivers\atapi.sys
14:13:49.0488 4656 atapi - ok
14:13:49.0520 4656 [ 4903CBC14742B5AB4DCF7A92F7DEC483 ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
14:13:49.0535 4656 AudioEndpointBuilder - ok
14:13:49.0566 4656 [ EF276593AD1BDF5A99032F62D6272848 ] Audiosrv C:\Windows\System32\Audiosrv.dll
14:13:49.0582 4656 Audiosrv - ok
14:13:49.0598 4656 [ CC42F104172B4A62793083D380867317 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
14:13:49.0598 4656 avast! Antivirus - ok
14:13:49.0613 4656 [ 96E8CAF20FC4B6C31CAD7816A801EB78 ] AxInstSV C:\Windows\System32\AxInstSV.dll
14:13:49.0613 4656 AxInstSV - ok
14:13:49.0645 4656 [ A4A73F631FE2AA2826FBE4A399B04DEF ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
14:13:49.0660 4656 b06bdrv - ok
14:13:49.0660 4656 [ 8CC7F7E4AFCBA605921B137ED7992C68 ] BasicDisplay C:\Windows\System32\drivers\BasicDisplay.sys
14:13:49.0676 4656 BasicDisplay - ok
14:13:49.0676 4656 [ 2748E116F8621A4DB0D39FCDD7318C01 ] BasicRender C:\Windows\System32\drivers\BasicRender.sys
14:13:49.0676 4656 BasicRender - ok
14:13:49.0691 4656 [ C1ABB0F7E3BEA48A0417BDF6FF14AB21 ] bcmfn2 C:\Windows\System32\drivers\bcmfn2.sys
14:13:49.0691 4656 bcmfn2 - ok
14:13:49.0723 4656 [ BBE61A40665B83488901E41082A6097D ] BDESVC C:\Windows\System32\bdesvc.dll
14:13:49.0723 4656 BDESVC - ok
14:13:49.0738 4656 [ EC19013E4CF87609534165DF897274D6 ] Beep C:\Windows\system32\drivers\Beep.sys
14:13:49.0738 4656 Beep - ok
14:13:49.0785 4656 [ 6468B696C65775D51A06615830E0E79D ] BFE C:\Windows\System32\bfe.dll
14:13:49.0801 4656 BFE - ok
14:13:49.0832 4656 [ 15225081966C785A9192782401643FD4 ] BITS C:\Windows\System32\qmgr.dll
14:13:49.0863 4656 BITS - ok
14:13:49.0957 4656 [ BAE8683BE3463B25E51875B380AB695A ] Bluetooth Device Monitor C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
14:13:49.0973 4656 Bluetooth Device Monitor - ok
14:13:49.0988 4656 [ AF06006C7A8B6CE409ABD351867A9544 ] Bluetooth OBEX Service C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
14:13:50.0004 4656 Bluetooth OBEX Service - ok
14:13:50.0004 4656 [ 6B4FFFDDC618FCF64473CAA86E305697 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
14:13:50.0004 4656 bowser - ok
14:13:50.0020 4656 [ A6207A88B596F726DE558425F3B7E592 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
14:13:50.0035 4656 BrokerInfrastructure - ok
14:13:50.0051 4656 [ D528D6A92D187777691993DD757AF19A ] Browser C:\Windows\System32\browser.dll
14:13:50.0051 4656 Browser - ok
14:13:50.0051 4656 [ A8F23D453A424FF4DE04989C4727ECC7 ] BthAvrcpTg C:\Windows\System32\drivers\BthAvrcpTg.sys
14:13:50.0051 4656 BthAvrcpTg - ok
14:13:50.0066 4656 [ 131F1C8573E7BFB41C54FBF5309CCD94 ] BthEnum C:\Windows\System32\drivers\BthEnum.sys
14:13:50.0066 4656 BthEnum - ok
14:13:50.0082 4656 [ 746B9F94214915AECDE4B7FEA5FF9664 ] BthHFEnum C:\Windows\System32\drivers\bthhfenum.sys
14:13:50.0082 4656 BthHFEnum - ok
14:13:50.0082 4656 [ 71FE2A48E4C93DDB9798C024880B6C07 ] bthhfhid C:\Windows\System32\drivers\BthHFHid.sys
14:13:50.0082 4656 bthhfhid - ok
14:13:50.0113 4656 [ FCD8BD17B7193CFFF18C332D1A381D7F ] BthLEEnum C:\Windows\system32\DRIVERS\BthLEEnum.sys
14:13:50.0113 4656 BthLEEnum - ok
14:13:50.0113 4656 [ 07E33226AD218A2A162662A05CAFB52F ] BTHMODEM C:\Windows\System32\drivers\bthmodem.sys
14:13:50.0113 4656 BTHMODEM - ok
14:13:50.0129 4656 [ 3AFE71D80EDF5D4DE0C5731352905669 ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
14:13:50.0129 4656 BthPan - ok
14:13:50.0176 4656 [ 10EDF9E0838BA4578FFFFF274632D454 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
14:13:50.0191 4656 BTHPORT - ok
14:13:50.0191 4656 [ E5E48FEED73D463175EAB1542495191C ] bthserv C:\Windows\system32\bthserv.dll
14:13:50.0191 4656 bthserv - ok
14:13:50.0207 4656 [ D30286FF3C7B6318C024D2BC2955C1BF ] BTHSSecurityMgr C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
14:13:50.0207 4656 BTHSSecurityMgr - ok
14:13:50.0223 4656 [ 0E7FA34B975764C33B5DBC6F8C401627 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
14:13:50.0223 4656 BTHUSB - ok
14:13:50.0223 4656 [ 8F5E4E166C19A1B60F508057CF2FF96E ] btmaux C:\Windows\system32\DRIVERS\btmaux.sys
14:13:50.0223 4656 btmaux - ok
14:13:50.0254 4656 [ FD6DCB9E986D4B88655370C7F3976F78 ] btmhsf C:\Windows\system32\DRIVERS\btmhsf.sys
14:13:50.0270 4656 btmhsf - ok
14:13:50.0285 4656 [ 2FA6510E33F7DEFEC03658B74101A9B9 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
14:13:50.0285 4656 cdfs - ok
14:13:50.0301 4656 [ C6796EA22B513E3457514D92DCDB1A3D ] cdrom C:\Windows\System32\drivers\cdrom.sys
14:13:50.0301 4656 cdrom - ok
14:13:50.0316 4656 [ AB285CE3431FF3D2ACE669245874C1C7 ] CertPropSvc C:\Windows\System32\certprop.dll
14:13:50.0316 4656 CertPropSvc - ok
14:13:50.0332 4656 [ BE9936EDD3267FAAFF94A7835867F00B ] circlass C:\Windows\System32\drivers\circlass.sys
14:13:50.0332 4656 circlass - ok
14:13:50.0363 4656 [ 7F006813C2AFE622C13D7AF94F56CD07 ] CLFS C:\Windows\system32\drivers\CLFS.sys
14:13:50.0363 4656 CLFS - ok
14:13:50.0395 4656 [ EF6EF85DADC3184A10D8F2F7159973CB ] CmBatt C:\Windows\System32\drivers\CmBatt.sys
14:13:50.0395 4656 CmBatt - ok
14:13:50.0410 4656 [ 825BE21E6395E00698D8A23955A87972 ] CNG C:\Windows\system32\Drivers\cng.sys
14:13:50.0410 4656 CNG - ok
14:13:50.0426 4656 [ 03AAED827C36F35D70900558B8274905 ] CompositeBus C:\Windows\System32\drivers\CompositeBus.sys
14:13:50.0426 4656 CompositeBus - ok
14:13:50.0441 4656 COMSysApp - ok
14:13:50.0441 4656 [ A1FF7DFBFBE164CF92603C651D304DD2 ] condrv C:\Windows\system32\drivers\condrv.sys
14:13:50.0441 4656 condrv - ok
14:13:50.0520 4656 [ CB8DEFDDD90AFDD6D817FD066C1630E6 ] cphs C:\Windows\SysWow64\IntelCpHeciSvc.exe
14:13:50.0535 4656 cphs - ok
14:13:50.0567 4656 [ 0EFE4B5884A8032617826A4D76F80969 ] CryptSvc C:\Windows\system32\cryptsvc.dll
14:13:50.0567 4656 CryptSvc - ok
14:13:50.0582 4656 [ EE2F3C0D6ADBC975D6B621EC15ACF4E2 ] CSC C:\Windows\system32\drivers\csc.sys
14:13:50.0598 4656 CSC - ok
14:13:50.0629 4656 [ 936D9E2871CEEFF6A33695D98374367B ] CscService C:\Windows\System32\cscsvc.dll
14:13:50.0645 4656 CscService - ok
14:13:50.0660 4656 [ 315BA4BC19316D72B2E037534E048B93 ] dam C:\Windows\system32\drivers\dam.sys
14:13:50.0660 4656 dam - ok
14:13:50.0691 4656 [ 3FD5AE42EC87C6F532A931F96BE731DD ] DcomLaunch C:\Windows\system32\rpcss.dll
14:13:50.0707 4656 DcomLaunch - ok
14:13:50.0738 4656 [ F4CCAADC2C78F57E4F16B24C9201CE22 ] defragsvc C:\Windows\System32\defragsvc.dll
14:13:50.0738 4656 defragsvc - ok
14:13:50.0770 4656 [ 0BC71D4D3B5883903C37BF4E13B0F0C5 ] DeviceAssociationService C:\Windows\system32\das.dll
14:13:50.0785 4656 DeviceAssociationService - ok
14:13:50.0801 4656 [ 752A457320A946E03C3AA86C3ACD735E ] DeviceInstall C:\Windows\system32\umpnpmgr.dll
14:13:50.0832 4656 DeviceInstall - ok
14:13:50.0832 4656 [ 5DB26D7E0216D0BF364A81D3829AD7B9 ] Dfsc C:\Windows\system32\Drivers\dfsc.sys
14:13:50.0832 4656 Dfsc - ok
14:13:50.0848 4656 [ 8B107F55FD61654A6C9F1B819AEC5FC4 ] Dhcp C:\Windows\system32\dhcpcore.dll
14:13:50.0863 4656 Dhcp - ok
14:13:50.0863 4656 [ 4D40C9B33F738797CF50E77CB7C53E85 ] disk C:\Windows\system32\drivers\disk.sys
14:13:50.0863 4656 disk - ok
14:13:50.0879 4656 [ EB70A894708D1BC176AFD690FF06085F ] dmvsc C:\Windows\System32\drivers\dmvsc.sys
14:13:50.0879 4656 dmvsc - ok
14:13:50.0910 4656 [ 5BAF7714E68F93515A937A3FA8587EF9 ] Dnscache C:\Windows\System32\dnsrslvr.dll
14:13:50.0910 4656 Dnscache - ok
14:13:50.0926 4656 [ 50288EA079BB520C2B8C8A154202D518 ] dot3svc C:\Windows\System32\dot3svc.dll
14:13:50.0926 4656 dot3svc - ok
14:13:50.0941 4656 [ 27069CFFF29B7F04F4B1BB10154BE52B ] dot4 C:\Windows\system32\DRIVERS\Dot4.sys
14:13:50.0941 4656 dot4 - ok
14:13:50.0941 4656 [ 0BD906A79F9CE3013F7D9D0AC45F9F9D ] Dot4Print C:\Windows\System32\drivers\Dot4Prt.sys
14:13:50.0941 4656 Dot4Print - ok
14:13:50.0957 4656 [ B7D595F2F464F7B628AD53F06547792C ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
14:13:50.0957 4656 dot4usb - ok
14:13:50.0973 4656 [ 281BEE07BA97E3E98D12A822D923D0D8 ] DPS C:\Windows\system32\dps.dll
14:13:50.0973 4656 DPS - ok
14:13:50.0988 4656 [ DDC11A202207C0400CBE07315B8FDE5E ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
14:13:50.0988 4656 drmkaud - ok
14:13:50.0988 4656 [ 5B074F14F5DD6418F46EE4CA2DEB7EA8 ] DsmSvc C:\Windows\System32\DeviceSetupManager.dll
14:13:51.0004 4656 DsmSvc - ok
14:13:51.0035 4656 [ 6A0E850DDCB136AA3D2FB7234382DF12 ] dtsoftbus01 C:\Windows\System32\drivers\dtsoftbus01.sys
14:13:51.0035 4656 dtsoftbus01 - ok
14:13:51.0082 4656 [ A3D1CB64DF885ACE126543E6D7067348 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
14:13:51.0098 4656 DXGKrnl - ok
14:13:51.0113 4656 [ 6073537F250B45E1CB2A02E97F0FE1B2 ] Eaphost C:\Windows\System32\eapsvc.dll
14:13:51.0129 4656 Eaphost - ok
14:13:51.0191 4656 [ 114BCFDF367FF37C3F1B0A96AF542E4D ] ebdrv C:\Windows\system32\drivers\evbda.sys
14:13:51.0223 4656 ebdrv - ok
14:13:51.0223 4656 [ F6F209DDB94959BA104FC8FC87C53759 ] EFS C:\Windows\System32\lsass.exe
14:13:51.0238 4656 EFS - ok
14:13:51.0238 4656 [ 43531A5993380CC5113242C29D265FD9 ] EhStorClass C:\Windows\system32\drivers\EhStorClass.sys
14:13:51.0238 4656 EhStorClass - ok
14:13:51.0254 4656 [ 6F8E738A9505A388B1157FDDE7B3101B ] EhStorTcgDrv C:\Windows\system32\drivers\EhStorTcgDrv.sys
14:13:51.0254 4656 EhStorTcgDrv - ok
14:13:51.0254 4656 [ DFFFAE1442BA4076E18EED5E406FA0D3 ] ErrDev C:\Windows\System32\drivers\errdev.sys
14:13:51.0254 4656 ErrDev - ok
14:13:51.0285 4656 [ 030CE75B7D8F75FAA7BA1EC6FD0EB5A3 ] EventSystem C:\Windows\system32\es.dll
14:13:51.0285 4656 EventSystem - ok
14:13:51.0348 4656 [ 00B132F23AA25DEF2060D490B0AB70EF ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe
14:13:51.0363 4656 EvtEng - ok
14:13:51.0363 4656 [ 7729D294A555C7AEB281ED8E4D0E01E4 ] exfat C:\Windows\system32\drivers\exfat.sys
14:13:51.0363 4656 exfat - ok
14:13:51.0379 4656 [ 7C4E0D5900B2A1D11EDD626D6DDB937B ] fastfat C:\Windows\system32\drivers\fastfat.sys
14:13:51.0379 4656 fastfat - ok
14:13:51.0395 4656 [ 2BC8532ABF2B3756B78FA1DA54147DDE ] Fax C:\Windows\system32\fxssvc.exe
14:13:51.0395 4656 Fax - ok
14:13:51.0410 4656 [ 5D8402613E778B3BD45E687A8372710B ] fdc C:\Windows\System32\drivers\fdc.sys
14:13:51.0410 4656 fdc - ok
14:13:51.0426 4656 [ DC1A78BCCCB7EE53D6FD3BD615A8E222 ] fdPHost C:\Windows\system32\fdPHost.dll
14:13:51.0426 4656 fdPHost - ok
14:13:51.0426 4656 [ E5AD448F2DC84B1CF387FA7F2A3D1936 ] FDResPub C:\Windows\system32\fdrespub.dll
14:13:51.0441 4656 FDResPub - ok
14:13:51.0441 4656 [ 0046E0BD031213D37123876B0D0FA61C ] fhsvc C:\Windows\system32\fhsvc.dll
14:13:51.0441 4656 fhsvc - ok
14:13:51.0457 4656 [ 957A7A8F5ACCAF23DD9DFF6DAA393CE5 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
14:13:51.0457 4656 FileInfo - ok
14:13:51.0457 4656 [ A1A66C4FDAFD6B0289523232AFB7D8AF ] Filetrace C:\Windows\system32\drivers\filetrace.sys
14:13:51.0457 4656 Filetrace - ok
14:13:51.0473 4656 [ BE743083CF7063C486A4398E3AEFE59A ] flpydisk C:\Windows\System32\drivers\flpydisk.sys
14:13:51.0473 4656 flpydisk - ok
14:13:51.0473 4656 [ 60D5067FCE6D9433D35E04C01D8538B3 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
14:13:51.0488 4656 FltMgr - ok
14:13:51.0504 4656 [ 183CA7699474FDE235853967D1DA4D9B ] FontCache C:\Windows\system32\FntCache.dll
14:13:51.0520 4656 FontCache - ok
14:13:51.0582 4656 [ 1C52387BF5A127F5F3BFB31288F30D93 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
14:13:51.0582 4656 FontCache3.0.0.0 - ok
14:13:51.0582 4656 [ 35005534E600E993A90B036E4E599F2B ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
14:13:51.0582 4656 FsDepends - ok
14:13:51.0582 4656 [ 09F460AFEDCA03F3BF6E07D1CCC9AC42 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
14:13:51.0598 4656 Fs_Rec - ok
14:13:51.0613 4656 [ 83E1F0983B02A6F8EC764D18E24ECF10 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
14:13:51.0629 4656 fvevol - ok
14:13:51.0629 4656 [ 9591D0B9351ED489EAFD9D1CE52A8015 ] FxPPM C:\Windows\System32\drivers\fxppm.sys
14:13:51.0629 4656 FxPPM - ok
14:13:51.0629 4656 [ FC3EF65EE20D39F8749C2218DBA681CA ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
14:13:51.0629 4656 gagp30kx - ok
14:13:51.0645 4656 [ 0BF5CAD281E25F1418E5B8875DC5ADD1 ] gencounter C:\Windows\System32\drivers\vmgencounter.sys
14:13:51.0645 4656 gencounter - ok
14:13:51.0645 4656 [ FDA72810CA2F8409D9B31E833C448E34 ] GPIOClx0101 C:\Windows\system32\Drivers\msgpioclx.sys
14:13:51.0660 4656 GPIOClx0101 - ok
14:13:51.0676 4656 [ 0BDE0FCF597E9B65600121EF54FF8340 ] gpsvc C:\Windows\System32\gpsvc.dll
14:13:51.0691 4656 gpsvc - ok
14:13:51.0770 4656 [ C1B577B2169900F4CF7190C39F085794 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
14:13:51.0770 4656 gusvc - ok
14:13:51.0801 4656 [ 56F69F7C25FB67C970997D7066DBC593 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:13:51.0816 4656 HdAudAddService - ok
14:13:51.0832 4656 [ 03909BDBFF0DCACCABF2B2D4ADEE44DC ] HDAudBus C:\Windows\System32\drivers\HDAudBus.sys
14:13:51.0832 4656 HDAudBus - ok
14:13:51.0832 4656 [ 10A70BC1871CD955D85CD88372724906 ] HidBatt C:\Windows\System32\drivers\HidBatt.sys
14:13:51.0832 4656 HidBatt - ok
14:13:51.0848 4656 [ 1EA1B4FABB8CC348E73CA90DBA22E104 ] HidBth C:\Windows\System32\drivers\hidbth.sys
14:13:51.0848 4656 HidBth - ok
14:13:51.0879 4656 [ C241A8BAFBBFC90176EA0F5240EACC17 ] hidi2c C:\Windows\System32\drivers\hidi2c.sys
14:13:51.0879 4656 hidi2c - ok
14:13:51.0879 4656 [ 9BDDEE26255421017E161CCB9D5EDA95 ] HidIr C:\Windows\System32\drivers\hidir.sys
14:13:51.0879 4656 HidIr - ok
14:13:51.0895 4656 [ 449A20A674AA3FAA7F0DD4E33EE2DC20 ] hidserv C:\Windows\system32\hidserv.dll
14:13:51.0895 4656 hidserv - ok
14:13:51.0910 4656 [ F31397220D9687E11EB448649AA6E038 ] HidUsb C:\Windows\System32\drivers\hidusb.sys
14:13:51.0910 4656 HidUsb - ok
14:13:51.0926 4656 [ 7BF3ADCBD021D4F4A84CF40EB49C71B5 ] hkmsvc C:\Windows\system32\kmsvc.dll
14:13:51.0926 4656 hkmsvc - ok
14:13:51.0957 4656 [ 6CD9C3819BE8C0A3DACC82AE5D3C4F18 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:13:51.0973 4656 HomeGroupListener - ok
14:13:51.0988 4656 [ BE5F89BAFBD4272D5A0C0A37B97865ED ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:13:52.0004 4656 HomeGroupProvider - ok
14:13:52.0051 4656 [ 0D0213498683414DDE29B1686A4C08D5 ] hpqcxs08 C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
14:13:52.0051 4656 hpqcxs08 - ok
14:13:52.0066 4656 [ EE281DD6843F3F697C1AD7933EEB1E9B ] hpqddsvc C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
14:13:52.0066 4656 hpqddsvc - ok
14:13:52.0082 4656 [ A6AACEA4C785789BDA5912AD1FEDA80D ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
14:13:52.0082 4656 HpSAMD - ok
14:13:52.0113 4656 [ C995EA1C6915D897E06D41AF95B9312C ] HPSLPSVC C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL
14:13:52.0129 4656 HPSLPSVC - ok
14:13:52.0160 4656 [ 3502776E366C913D49C0DA928AE3E6CB ] HTTP C:\Windows\system32\drivers\HTTP.sys
14:13:52.0176 4656 HTTP - ok
14:13:52.0191 4656 [ 90656C0B3864804B090434EFC582404F ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
14:13:52.0191 4656 hwpolicy - ok
14:13:52.0207 4656 [ 6D6F9E3BF0484967E52F7E846BFF1CA1 ] hyperkbd C:\Windows\System32\drivers\hyperkbd.sys
14:13:52.0207 4656 hyperkbd - ok
14:13:52.0207 4656 [ 907C870F8C31F8DDD6F090857B46AB25 ] HyperVideo C:\Windows\system32\DRIVERS\HyperVideo.sys
14:13:52.0207 4656 HyperVideo - ok
14:13:52.0223 4656 [ 84CFC5EFA97D0C965EDE1D56F116A541 ] i8042prt C:\Windows\System32\drivers\i8042prt.sys
14:13:52.0223 4656 i8042prt - ok
14:13:52.0254 4656 [ 5D90E32E36CE5D4C535D17CE08AEAF05 ] iaLPSSi_GPIO C:\Windows\System32\drivers\iaLPSSi_GPIO.sys
14:13:52.0254 4656 iaLPSSi_GPIO - ok
14:13:52.0254 4656 [ DD05E7E80F52ADE9AEB292819920F32C ] iaLPSSi_I2C C:\Windows\System32\drivers\iaLPSSi_I2C.sys
14:13:52.0270 4656 iaLPSSi_I2C - ok
14:13:52.0285 4656 [ FA4C48E36F0B24E7E33D3E7E1844B9C9 ] iaStorA C:\Windows\system32\drivers\iaStorA.sys
14:13:52.0301 4656 iaStorA - ok
14:13:52.0316 4656 [ 08BFE413B0B4AA8DFA4B5684CE06D3DC ] iaStorAV C:\Windows\system32\drivers\iaStorAV.sys
14:13:52.0332 4656 iaStorAV - ok
14:13:52.0332 4656 [ D5854F77CEEAFC5A8405F8ECCBEC09DF ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
14:13:52.0332 4656 IAStorDataMgrSvc - ok
14:13:52.0348 4656 [ A2200C3033FA4EF249FC096A7A7D02A2 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
14:13:52.0363 4656 iaStorV - ok
14:13:52.0363 4656 [ C430482AC892D52CED021EDDD4D368A2 ] ibtfltcoex C:\Windows\system32\DRIVERS\iBtFltCoex.sys
14:13:52.0379 4656 ibtfltcoex - ok
14:13:52.0379 4656 IEEtwCollectorService - ok
14:13:52.0488 4656 [ 4EB6ABBF5D78E65A418BA71EF3ACE251 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
14:13:52.0520 4656 igfx - ok
14:13:52.0567 4656 [ B82255670D270B75D2D2F0F8747D1443 ] IKEEXT C:\Windows\System32\ikeext.dll
14:13:52.0598 4656 IKEEXT - ok
14:13:52.0598 4656 [ 4011430BC9DA46ADFAE9915EFEC312FB ] intaud_WaveExtensible C:\Windows\system32\drivers\intelaud.sys
14:13:52.0598 4656 intaud_WaveExtensible - ok
14:13:52.0738 4656 [ FA2B7507CD49908B2260949E52F8B9FE ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
14:13:52.0770 4656 IntcAzAudAddService - ok
14:13:52.0785 4656 [ B375D8686E1BD2B79C0F00E3868A8C3B ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys
14:13:52.0785 4656 IntcDAud - ok
14:13:52.0832 4656 [ DDA8E5AD97231AB50B81FED04C28F64C ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
14:13:52.0848 4656 Intel(R) Capability Licensing Service Interface - ok
14:13:52.0879 4656 [ 86FE509640D77FB0998FC8B1FF5523C6 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
14:13:52.0895 4656 Intel(R) Capability Licensing Service TCP IP Interface - ok
14:13:52.0926 4656 [ 726BFAF3DC2071218F0AE53C919A4D3B ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
14:13:52.0926 4656 Intel(R) ME Service - ok
14:13:52.0942 4656 [ 4E448FCFFD00E8D657CD9E48D3E47157 ] intelide C:\Windows\system32\drivers\intelide.sys
14:13:52.0942 4656 intelide - ok
14:13:52.0957 4656 [ 139CFCDCD36B1B1782FD8C0014AC9B0E ] intelpep C:\Windows\system32\drivers\intelpep.sys
14:13:52.0957 4656 intelpep - ok
14:13:52.0973 4656 [ 47E74A8E53C7C24DCE38311E1451C1D9 ] intelppm C:\Windows\System32\drivers\intelppm.sys
14:13:52.0973 4656 intelppm - ok
14:13:52.0988 4656 [ 9DB76D7F9E4E53EFE5DD8C53DE837514 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:13:52.0988 4656 IpFilterDriver - ok
14:13:53.0035 4656 [ DFC4050D58565ADBEE793A8D4AEBDAE6 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
14:13:53.0051 4656 iphlpsvc - ok
14:13:53.0066 4656 [ 9949A3C7590B8C536C05312205079A82 ] IPMIDRV C:\Windows\System32\drivers\IPMIDrv.sys
14:13:53.0066 4656 IPMIDRV - ok
14:13:53.0082 4656 [ B7342B3C58E91107F6E946A93D9D4EFD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
14:13:53.0098 4656 IPNAT - ok
14:13:53.0098 4656 [ AE44C526AB5F8A487D941CEB57B10C97 ] IRENUM C:\Windows\system32\drivers\irenum.sys
14:13:53.0098 4656 IRENUM - ok
14:13:53.0113 4656 [ 8AFEEA3955AA43616A60F133B1D25F21 ] isapnp C:\Windows\system32\drivers\isapnp.sys
14:13:53.0113 4656 isapnp - ok
14:13:53.0129 4656 [ 034D4BD9DC67C64F3A4C8A049B5173BF ] iScsiPrt C:\Windows\System32\drivers\msiscsi.sys
14:13:53.0145 4656 iScsiPrt - ok
14:13:53.0145 4656 [ EE03564B7FAFE2E44EDA33D52E83B4A3 ] iwdbus C:\Windows\System32\drivers\iwdbus.sys
14:13:53.0145 4656 iwdbus - ok
14:13:53.0176 4656 [ 1128B38EEC9DAF1B36373B65E87C00A3 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
14:13:53.0176 4656 jhi_service - ok
14:13:53.0191 4656 [ 8BE92376799B6B44D543E8D07CDCF885 ] kbdclass C:\Windows\System32\drivers\kbdclass.sys
14:13:53.0191 4656 kbdclass - ok
14:13:53.0191 4656 [ FB6E47E569D4872ABEB506BE03A45FBA ] kbdhid C:\Windows\System32\drivers\kbdhid.sys
14:13:53.0207 4656 kbdhid - ok
14:13:53.0207 4656 [ DB7A09BC90DF20F44F16F8B0F9ED3491 ] kbldfltr C:\Windows\system32\drivers\kbldfltr.sys
14:13:53.0207 4656 kbldfltr - ok
14:13:53.0223 4656 [ 813871C7D402A05F2E3A7075F9584A05 ] kdnic C:\Windows\system32\DRIVERS\kdnic.sys
14:13:53.0223 4656 kdnic - ok
14:13:53.0238 4656 [ F6F209DDB94959BA104FC8FC87C53759 ] KeyIso C:\Windows\system32\lsass.exe
14:13:53.0238 4656 KeyIso - ok
14:13:53.0285 4656 [ E3D911D04BD85744667F6645F39D93B6 ] KMSServerService C:\Windows\System32\KMSServer.exe
14:13:53.0285 4656 KMSServerService - ok
14:13:53.0301 4656 [ ADDECBCC777665BD113BED437E602AB0 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
14:13:53.0301 4656 KSecDD - ok
14:13:53.0316 4656 [ 7296EA420134EAC390798B3232D066A4 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
14:13:53.0316 4656 KSecPkg - ok
14:13:53.0332 4656 [ 11AFB527AA370B1DAFD5C36F35F6D45F ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
14:13:53.0332 4656 ksthunk - ok
14:13:53.0348 4656 [ 32B1A8351160F307A8C66BCB0F94A9C2 ] KtmRm C:\Windows\system32\msdtckrm.dll
14:13:53.0363 4656 KtmRm - ok
14:13:53.0395 4656 [ 50AECF8C21AB2A6428A6E1E10549D8E5 ] L1C C:\Windows\system32\DRIVERS\L1C63x64.sys
14:13:53.0395 4656 L1C - ok
14:13:53.0410 4656 [ 27B58E16CF895AC1F1A97C04814C2239 ] LanmanServer C:\Windows\system32\srvsvc.dll
14:13:53.0426 4656 LanmanServer - ok
14:13:53.0457 4656 [ D0D9C2ECA4D03A8F06DCD91236B90C98 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:13:53.0473 4656 LanmanWorkstation - ok
14:13:53.0504 4656 [ EE289BD147FDFF95EF1B9BD65D3B974A ] lfsvc C:\Windows\System32\GeofenceMonitorService.dll
14:13:53.0504 4656 lfsvc - ok
14:13:53.0520 4656 [ BE166935083F9C38EDFDC21B9A7A679B ] LHDmgr C:\Windows\system32\DRIVERS\LhdX64.sys
14:13:53.0520 4656 LHDmgr - ok
14:13:53.0535 4656 [ C09010B3680860131631F53E8FE7BAD8 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
14:13:53.0535 4656 lltdio - ok
14:13:53.0551 4656 [ 00E070FC0C673311AFD4B068D1242780 ] lltdsvc C:\Windows\System32\lltdsvc.dll
14:13:53.0567 4656 lltdsvc - ok
14:13:53.0582 4656 [ D113FAD71A5E67AA94B32A0F8828D265 ] lmhosts C:\Windows\System32\lmhsvc.dll
14:13:53.0582 4656 lmhosts - ok
14:13:53.0598 4656 [ 60471C88EB4906DB0C2026B3290EE4B6 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
14:13:53.0613 4656 LMS - ok
14:13:53.0629 4656 [ C755AE4635457AA2A11F79C0DF857ABC ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
14:13:53.0629 4656 LSI_SAS - ok
14:13:53.0629 4656 [ ADAC09CBE7A2040B7F68B5E5C9A75141 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
14:13:53.0645 4656 LSI_SAS2 - ok
14:13:53.0645 4656 [ 04D1274BB9BBCCF12BD12374002AA191 ] LSI_SAS3 C:\Windows\system32\drivers\lsi_sas3.sys
14:13:53.0645 4656 LSI_SAS3 - ok
14:13:53.0660 4656 [ 327469EEF3833D0C584B7E88A76AEC0C ] LSI_SSS C:\Windows\system32\drivers\lsi_sss.sys
14:13:53.0660 4656 LSI_SSS - ok
14:13:53.0707 4656 [ B6B69FF200F68888A7FAFDF204D00C91 ] LSM C:\Windows\System32\lsm.dll
14:13:53.0723 4656 LSM - ok
14:13:53.0738 4656 [ 5EF604B0698F4FA962778285E8C5F1F2 ] luafv C:\Windows\system32\drivers\luafv.sys
14:13:53.0738 4656 luafv - ok
14:13:53.0754 4656 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
14:13:53.0754 4656 MBAMProtector - ok
14:13:53.0770 4656 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
14:13:53.0770 4656 MBAMScheduler - ok
14:13:53.0801 4656 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
14:13:53.0816 4656 MBAMService - ok
14:13:53.0816 4656 [ EB5C03A070F30D64A6DF80E53B22F53F ] megasas C:\Windows\system32\drivers\megasas.sys
14:13:53.0816 4656 megasas - ok
14:13:53.0848 4656 [ F6F13533196DE7A582D422B0241E4363 ] megasr C:\Windows\system32\drivers\megasr.sys
14:13:53.0848 4656 megasr - ok
14:13:53.0863 4656 [ 6FE7B681F1840366B2E4E8B15BE8E2CB ] MEIx64 C:\Windows\system32\DRIVERS\TeeDriverx64.sys
14:13:53.0863 4656 MEIx64 - ok
14:13:53.0895 4656 [ FD788C2D96EA91469A3C1D13E80D7473 ] MMCSS C:\Windows\system32\mmcss.dll
14:13:53.0895 4656 MMCSS - ok
14:13:53.0910 4656 [ 8B38C44F69259987C95135C9627E2378 ] Modem C:\Windows\system32\drivers\modem.sys
14:13:53.0910 4656 Modem - ok
14:13:53.0926 4656 [ 601589000CC90F0DF8DA2CC254A3CCC9 ] monitor C:\Windows\System32\drivers\monitor.sys
14:13:53.0926 4656 monitor - ok
14:13:53.0941 4656 [ CEAC6D40FE887CE8406C2393CF97DE06 ] mouclass C:\Windows\System32\drivers\mouclass.sys
14:13:53.0941 4656 mouclass - ok
14:13:53.0941 4656 [ 02D98BF804084E9A0D69D1C69B02CCA9 ] mouhid C:\Windows\System32\drivers\mouhid.sys
14:13:53.0957 4656 mouhid - ok
14:13:53.0957 4656 [ 515549560D481138E6E21AF7C6998E56 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
14:13:53.0957 4656 mountmgr - ok
14:13:54.0004 4656 [ 338037EFA0E8E8699B2667D57B751574 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
14:13:54.0004 4656 MozillaMaintenance - ok
14:13:54.0004 4656 [ F170510BE94CF45E3C6274578F6204B2 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
14:13:54.0020 4656 mpsdrv - ok
14:13:54.0051 4656 [ D186C5844393252147BE934F3871DB7A ] MpsSvc C:\Windows\system32\mpssvc.dll
14:13:54.0067 4656 MpsSvc - ok
14:13:54.0098 4656 [ 59DCEC7499095DE5AED741358037AE2D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
14:13:54.0098 4656 MRxDAV - ok
14:13:54.0145 4656 [ 79B6F3DF7CDFD12159871FF71464F0CE ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
14:13:54.0145 4656 mrxsmb - ok
14:13:54.0160 4656 [ 295771B092D4F7FCF2B62F80CCD14320 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:13:54.0160 4656 mrxsmb10 - ok
14:13:54.0176 4656 [ AAF56E4E84D35411B4E446C445732DFE ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:13:54.0176 4656 mrxsmb20 - ok
14:13:54.0191 4656 [ 4E888019078AC363076A5433E89AA4F8 ] MsBridge C:\Windows\system32\DRIVERS\bridge.sys
14:13:54.0191 4656 MsBridge - ok
14:13:54.0207 4656 [ A082C17D14D0790E27D064EA4B138AE1 ] MSDTC C:\Windows\System32\msdtc.exe
14:13:54.0223 4656 MSDTC - ok
14:13:54.0223 4656 [ D13329FBF8345B28AB30F44CC247DC08 ] Msfs C:\Windows\system32\drivers\Msfs.sys
14:13:54.0238 4656 Msfs - ok
14:13:54.0238 4656 [ C6B474E46F9E543B875981ED3FFE6ADD ] msgpiowin32 C:\Windows\System32\drivers\msgpiowin32.sys
14:13:54.0238 4656 msgpiowin32 - ok
14:13:54.0254 4656 [ 65C92EB9D08DB5C69F28C7FFD4E84E31 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
14:13:54.0254 4656 mshidkmdf - ok
14:13:54.0270 4656 [ 52299F086AC2DAFD100DD5DC4A8614BA ] mshidumdf C:\Windows\System32\drivers\mshidumdf.sys
14:13:54.0270 4656 mshidumdf - ok
14:13:54.0270 4656 [ 36D92AF3343C3A3E57FEF11C449AEA4C ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
14:13:54.0285 4656 msisadrv - ok
14:13:54.0301 4656 [ 810F8A0A0680662BB0CE44D0E2CEF90C ] MSiSCSI C:\Windows\system32\iscsiexe.dll
14:13:54.0317 4656 MSiSCSI - ok
14:13:54.0317 4656 msiserver - ok
14:13:54.0332 4656 [ D22AE5313F6B7EFDDD8C117B5501F4A3 ] MsKeyboardFilter C:\Windows\System32\KeyboardFilterSvc.dll
14:13:54.0348 4656 MsKeyboardFilter - ok
14:13:54.0348 4656 [ A9BBBD2BAE6142253B9195E949AC2E8D ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
14:13:54.0348 4656 MSKSSRV - ok
14:13:54.0363 4656 [ 375E44168F2DFB91A68B8A3F619C5A7C ] MsLldp C:\Windows\system32\DRIVERS\mslldp.sys
14:13:54.0363 4656 MsLldp - ok
14:13:54.0363 4656 [ 7B2128EB875DCBC006E6A913211006D6 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
14:13:54.0379 4656 MSPCLOCK - ok
14:13:54.0379 4656 [ 1E88171579B218115C7A772F8DE04BD8 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
14:13:54.0379 4656 MSPQM - ok
14:13:54.0395 4656 [ BBE2A455053E63BECBF42C2F9B21FAE0 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
14:13:54.0410 4656 MsRPC - ok
14:13:54.0410 4656 [ 8D6B7D515C5CBCDB75B928A0B73C3C5E ] mssmbios C:\Windows\System32\drivers\mssmbios.sys
14:13:54.0410 4656 mssmbios - ok
14:13:54.0426 4656 [ 115019AE01E0EB9C048530D2928AB4A2 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
14:13:54.0426 4656 MSTEE - ok
14:13:54.0426 4656 [ 96D604A35070360F0DD4A7A8AF410B5E ] MTConfig C:\Windows\System32\drivers\MTConfig.sys
14:13:54.0426 4656 MTConfig - ok
14:13:54.0441 4656 [ 619CA29326B82372621DB2C0964D8365 ] Mup C:\Windows\system32\Drivers\mup.sys
14:13:54.0441 4656 Mup - ok
14:13:54.0441 4656 [ B8C35C94DCB2DFEAF03BB42131F2F77F ] mvumis C:\Windows\system32\drivers\mvumis.sys
14:13:54.0441 4656 mvumis - ok
14:13:54.0473 4656 [ 74E1E62819D33F176821ADC9AFF8A3E7 ] MyWiFiDHCPDNS C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
14:13:54.0473 4656 MyWiFiDHCPDNS - ok
14:13:54.0488 4656 [ 41A45D2A75494EABF2806EA051E00376 ] napagent C:\Windows\system32\qagentRT.dll
14:13:54.0504 4656 napagent - ok
14:13:54.0520 4656 [ CF8B989D89D6807B887690F2CF24EFD9 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
14:13:54.0535 4656 NativeWifiP - ok
14:13:54.0535 4656 [ 71E3C0100AA19D11373CCEB2F51A6008 ] NcaSvc C:\Windows\System32\ncasvc.dll
14:13:54.0551 4656 NcaSvc - ok
14:13:54.0566 4656 [ 51DF09CAB2CAC64FEE3E371D9028ED01 ] NcbService C:\Windows\System32\ncbservice.dll
14:13:54.0582 4656 NcbService - ok
14:13:54.0582 4656 [ 2586C4C167499210DCBF3ECFD8CCE210 ] NcdAutoSetup C:\Windows\System32\NcdAutoSetup.dll
14:13:54.0598 4656 NcdAutoSetup - ok
14:13:54.0613 4656 [ ED39D676080A1AEA755F1DEC1A8DF1A4 ] NDIS C:\Windows\system32\drivers\ndis.sys
14:13:54.0629 4656 NDIS - ok
14:13:54.0629 4656 [ C6BB12BC35D1637CA17AE16D3A4725EB ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
14:13:54.0645 4656 NdisCap - ok
14:13:54.0645 4656 [ 9F1DA20E943BE7AA4ED5F3E1EBA78B37 ] NdisImPlatform C:\Windows\system32\DRIVERS\NdisImPlatform.sys
14:13:54.0645 4656 NdisImPlatform - ok
14:13:54.0660 4656 [ 9423421E735BD5394351E0C47C76BB92 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
14:13:54.0660 4656 NdisTapi - ok
14:13:54.0660 4656 [ B832B35055BA2B7B4181861FF94D8E59 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
14:13:54.0660 4656 Ndisuio - ok
14:13:54.0676 4656 [ 1F58E48EF75F34C35D8E93A0DC535CFE ] NdisVirtualBus C:\Windows\System32\drivers\NdisVirtualBus.sys
14:13:54.0676 4656 NdisVirtualBus - ok
14:13:54.0692 4656 [ DEC29080202D4F9F17F55E18BCFCC41A ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
14:13:54.0692 4656 NdisWan - ok
14:13:54.0707 4656 [ DEC29080202D4F9F17F55E18BCFCC41A ] NdisWanLegacy C:\Windows\system32\DRIVERS\ndiswan.sys
14:13:54.0707 4656 NdisWanLegacy - ok
14:13:54.0707 4656 [ A5BD69A8812FA79D1A487691DD3FB244 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
14:13:54.0707 4656 NDProxy - ok
14:13:54.0723 4656 [ 5A072F0B90C29C5233D78BE33EF5ED78 ] Ndu C:\Windows\system32\drivers\Ndu.sys
14:13:54.0723 4656 Ndu - ok
14:13:54.0738 4656 [ 2334DC48997BA203B794DF3EE70521DB ] Net Driver HPZ12 C:\Windows\System32\HPZinw12.dll
14:13:54.0754 4656 Net Driver HPZ12 - ok
14:13:54.0754 4656 [ A83D67D347A684F10B7D3019C8A6380C ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
14:13:54.0754 4656 NetBIOS - ok
14:13:54.0770 4656 [ 0217532E19A748F0E5D569307363D5FD ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
14:13:54.0770 4656 NetBT - ok
14:13:54.0785 4656 [ F6F209DDB94959BA104FC8FC87C53759 ] Netlogon C:\Windows\system32\lsass.exe
14:13:54.0785 4656 Netlogon - ok
14:13:54.0816 4656 [ B7AD851A21FEBA3BA214972627614207 ] Netman C:\Windows\System32\netman.dll
14:13:54.0832 4656 Netman - ok
14:13:54.0863 4656 [ F0F0A372C2EF6358399C4936F91B6131 ] netprofm C:\Windows\System32\netprofmsvc.dll
14:13:54.0879 4656 netprofm - ok
14:13:54.0926 4656 [ 1092B3190E69E0C5ECBCE90F171DE047 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:13:54.0926 4656 NetTcpPortSharing - ok
14:13:54.0941 4656 [ 70414DB660BFBB7BD58FCE8EA4364E1B ] netvsc C:\Windows\system32\DRIVERS\netvsc63.sys
14:13:54.0941 4656 netvsc - ok
14:13:55.0035 4656 [ 75B9B86878CC159FBC40C4F9202ADBE3 ] NETwNe64 C:\Windows\system32\DRIVERS\NETwew00.sys
14:13:55.0082 4656 NETwNe64 - ok
14:13:55.0113 4656 [ 3A280F3B3C7A46E29C404ACD46ECBF5E ] NlaSvc C:\Windows\System32\nlasvc.dll
14:13:55.0113 4656 NlaSvc - ok
14:13:55.0129 4656 [ 8F44A2F57C9F1A19AC9C6288C10FB351 ] Npfs C:\Windows\system32\drivers\Npfs.sys
14:13:55.0129 4656 Npfs - ok
14:13:55.0145 4656 [ CBDB4F0871C88DF930FC0E8588CA67FC ] npsvctrig C:\Windows\System32\drivers\npsvctrig.sys
14:13:55.0145 4656 npsvctrig - ok
14:13:55.0160 4656 [ 6E2271ED0C3E95B8E29F3752B91B9E84 ] nsi C:\Windows\system32\nsisvc.dll
14:13:55.0160 4656 nsi - ok
14:13:55.0176 4656 [ E490B459978CB87779E84C761D22B827 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
14:13:55.0176 4656 nsiproxy - ok
14:13:55.0238 4656 [ 4412D565C0278C401575E11072C7DCE3 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
14:13:55.0270 4656 Ntfs - ok
14:13:55.0270 4656 [ EF1B290FC9F0E47CC0B537292BEE5904 ] Null C:\Windows\system32\drivers\Null.sys
14:13:55.0270 4656 Null - ok
14:13:55.0535 4656 [ 0218E1CE8F7B5D404980192B9112D03A ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
14:13:55.0660 4656 nvlddmkm - ok
14:13:55.0707 4656 [ 903A40C958D471F9D30D29FA6D2800A4 ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
14:13:55.0723 4656 NvNetworkService - ok
14:13:55.0738 4656 [ F76296368BB813E0C6996501A3271C7C ] nvpciflt C:\Windows\system32\DRIVERS\nvpciflt.sys
14:13:55.0738 4656 nvpciflt - ok
14:13:55.0738 4656 [ BC6B5942AFF25EBAF62DE43C3807EDF8 ] nvraid C:\Windows\system32\drivers\nvraid.sys
14:13:55.0754 4656 nvraid - ok
14:13:55.0754 4656 [ 1F43ABFFAC3D6CA356851D517392966E ] nvstor C:\Windows\system32\drivers\nvstor.sys
14:13:55.0770 4656 nvstor - ok
14:13:56.0067 4656 [ 68DE8D996D8FF628AB6B3D422035F862 ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
14:13:56.0176 4656 NvStreamSvc - ok
14:13:56.0207 4656 [ B7973C405247C5A44BA46B12A4B7AEEA ] nvsvc C:\Windows\system32\nvvsvc.exe
14:13:56.0223 4656 nvsvc - ok
14:13:56.0223 4656 [ 09216A70CC364D0974F606F6F2109210 ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys
14:13:56.0223 4656 nvvad_WaveExtensible - ok
14:13:56.0238 4656 [ 6934A936A7369DFE37B7DBA93F5E5E49 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
14:13:56.0238 4656 nv_agp - ok
14:13:56.0270 4656 [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:13:56.0285 4656 ose - ok
14:13:56.0317 4656 [ 3B510F20806B94E389784ED09DBD2111 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
14:13:56.0332 4656 p2pimsvc - ok
14:13:56.0363 4656 [ 2A57A937BC5B1B2D6AFE6A8C5925F50B ] p2psvc C:\Windows\system32\p2psvc.dll
14:13:56.0379 4656 p2psvc - ok
14:13:56.0379 4656 [ 764B1121867B2D9B31C491668AC72B2B ] Parport C:\Windows\System32\drivers\parport.sys
14:13:56.0395 4656 Parport - ok
14:13:56.0395 4656 [ EF0C1749C9A8CEE9A457473D433CC00F ] partmgr C:\Windows\system32\drivers\partmgr.sys
14:13:56.0395 4656 partmgr - ok
14:13:56.0426 4656 [ 9A5309EF92F39346CFD5A4C2C3D1BFAD ] PcaSvc C:\Windows\System32\pcasvc.dll
14:13:56.0442 4656 PcaSvc - ok
14:13:56.0473 4656 [ C0D3F3BC1C84B4BA746D9847314C1164 ] pci C:\Windows\system32\drivers\pci.sys
14:13:56.0473 4656 pci - ok
14:13:56.0488 4656 [ 346E38FCC6859A727DD28AFAD1F0AFF4 ] pciide C:\Windows\system32\drivers\pciide.sys
14:13:56.0488 4656 pciide - ok
14:13:56.0504 4656 [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
14:13:56.0504 4656 pcmcia - ok
14:13:56.0520 4656 [ BF28771D1436C88BE1D297D3098B0F7D ] pcw C:\Windows\system32\drivers\pcw.sys
14:13:56.0520 4656 pcw - ok
14:13:56.0535 4656 [ B9D968D8E2B0F9C6301CEB39CFC9B9E4 ] pdc C:\Windows\system32\drivers\pdc.sys
14:13:56.0535 4656 pdc - ok
14:13:56.0551 4656 [ BA50CC0BD19004AAB88BE37338B6FA0D ] PEAUTH C:\Windows\system32\drivers\peauth.sys
14:13:56.0567 4656 PEAUTH - ok
14:13:56.0629 4656 [ 084DE525DFE82AE7453DD527390FA110 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
14:13:56.0676 4656 PeerDistSvc - ok
14:13:56.0754 4656 [ 8E3C640FFF5A963F570233AE99C0FFF3 ] PerfHost C:\Windows\SysWow64\perfhost.exe
14:13:56.0754 4656 PerfHost - ok
14:13:56.0832 4656 [ 928061178CD9856CA6B67FFFCE6BA766 ] pla C:\Windows\system32\pla.dll
14:13:56.0863 4656 pla - ok
14:13:56.0879 4656 [ 752A457320A946E03C3AA86C3ACD735E ] PlugPlay C:\Windows\system32\umpnpmgr.dll
14:13:56.0879 4656 PlugPlay - ok
14:13:56.0895 4656 [ AC78DF349F0E4CFB8B667C0CFFF83CCE ] Pml Driver HPZ12 C:\Windows\System32\HPZipm12.dll
14:13:56.0910 4656 Pml Driver HPZ12 - ok
14:13:56.0910 4656 [ 045EB4F260606A03BE340D09DEAF3BA4 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
14:13:56.0910 4656 PNRPAutoReg - ok
14:13:56.0926 4656 [ 3B510F20806B94E389784ED09DBD2111 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
14:13:56.0942 4656 PNRPsvc - ok
14:13:56.0957 4656 [ C16097D77A232A288D65F299E2E01105 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
14:13:56.0973 4656 PolicyAgent - ok
14:13:56.0988 4656 [ 00E08B30E7F7C13ECE2CDF4F46A77311 ] Power C:\Windows\system32\umpo.dll
14:13:57.0004 4656 Power - ok
14:13:57.0082 4656 [ B7DB57A000D46D4DE75BC0C563E58072 ] PrintNotify C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
14:13:57.0113 4656 PrintNotify - ok
14:13:57.0129 4656 [ ECD373F9571C745894367CC2635EA44F ] Processor C:\Windows\System32\drivers\processr.sys
14:13:57.0129 4656 Processor - ok
14:13:57.0145 4656 [ 8513A1E7AE4B9DC82C4B4F432C648A58 ] ProfSvc C:\Windows\system32\profsvc.dll
14:13:57.0145 4656 ProfSvc - ok
14:13:57.0176 4656 [ 8528BB05E4D4E25945F78B00B2555FB7 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
14:13:57.0176 4656 Psched - ok
14:13:57.0192 4656 [ AF90BB44C99D6820BE52C9BBAA523283 ] QWAVE C:\Windows\system32\qwave.dll
14:13:57.0192 4656 QWAVE - ok
14:13:57.0207 4656 [ 3FB466684609A4329858CF2EBD62E0FD ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
14:13:57.0207 4656 QWAVEdrv - ok
14:13:57.0207 4656 [ 2C56F0EE27E4EF70CA4B4983D3638905 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
14:13:57.0207 4656 RasAcd - ok
14:13:57.0223 4656 [ 5F061AC45266841A2860C1858ED863B8 ] RasAuto C:\Windows\System32\rasauto.dll
14:13:57.0223 4656 RasAuto - ok
14:13:57.0254 4656 [ BF3B17016764F20F9D28CF1A8DC210C0 ] RasMan C:\Windows\System32\rasmans.dll
14:13:57.0270 4656 RasMan - ok
14:13:57.0270 4656 [ 5247F308C4103CDC4FE12AE1D235800A ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
14:13:57.0270 4656 RasPppoe - ok
14:13:57.0285 4656 [ B939A2A0F9D6C6C186721E268EB6FA93 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
14:13:57.0285 4656 rdbss - ok
14:13:57.0301 4656 [ 6B21EBF892CD8CACB71669B35AB5DE32 ] rdpbus C:\Windows\System32\drivers\rdpbus.sys
14:13:57.0301 4656 rdpbus - ok
14:13:57.0317 4656 [ 680C1DAE268B6FB67FA21B389A8B79EF ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
14:13:57.0317 4656 RDPDR - ok
14:13:57.0332 4656 [ 858776908AF838E3790F3261B799CDA6 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
14:13:57.0332 4656 RdpVideoMiniport - ok
14:13:57.0348 4656 [ 847C6A08912C3515807049C93E526D65 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
14:13:57.0348 4656 rdyboost - ok
14:13:57.0363 4656 [ 036746D54347FD2D0385668E2A4064E4 ] ReFS C:\Windows\system32\drivers\ReFS.sys
14:13:57.0379 4656 ReFS - ok
14:13:57.0426 4656 [ 5A118234A2251D6CFB8A11DFE7AC4B4A ] RegSrvc C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
14:13:57.0426 4656 RegSrvc - ok
14:13:57.0442 4656 [ BFFB40FBE6D2C3469F8D06EE5E4934AB ] RemoteAccess C:\Windows\System32\mprdim.dll
14:13:57.0457 4656 RemoteAccess - ok
14:13:57.0473 4656 [ 4DCCABE03D06955ED61BABBD8EF9F30F ] RemoteRegistry C:\Windows\system32\regsvc.dll
14:13:57.0488 4656 RemoteRegistry - ok
14:13:57.0504 4656 [ 02307C86CB24769306B0DFA0C751952E ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
14:13:57.0504 4656 RFCOMM - ok
14:13:57.0520 4656 [ D894CBD7DA753C881EE8D5E33B583225 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
14:13:57.0535 4656 RpcEptMapper - ok
14:13:57.0535 4656 [ 5CAE8F47B31D5CFC322B5B898C19E0FE ] RpcLocator C:\Windows\system32\locator.exe
14:13:57.0551 4656 RpcLocator - ok
14:13:57.0582 4656 [ 3FD5AE42EC87C6F532A931F96BE731DD ] RpcSs C:\Windows\system32\rpcss.dll
14:13:57.0598 4656 RpcSs - ok
14:13:57.0613 4656 [ 2D05A5508F4685412F2B89E8C2189ABC ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
14:13:57.0613 4656 rspndr - ok
14:13:57.0817 4656 [ 48D95A57DBFDA470DED69573411E4C55 ] rtsuvc C:\Windows\system32\DRIVERS\rtsuvc.sys
14:13:57.0879 4656 rtsuvc - ok
14:13:57.0926 4656 [ 1A063730F221B2746FF00457AE17E4F0 ] s3cap C:\Windows\System32\drivers\vms3cap.sys
14:13:57.0926 4656 s3cap - ok
14:13:57.0926 4656 [ F6F209DDB94959BA104FC8FC87C53759 ] SamSs C:\Windows\system32\lsass.exe
14:13:57.0942 4656 SamSs - ok
14:13:57.0957 4656 [ C624A1B32211C3166EDB3F4AB02A30B7 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
14:13:57.0957 4656 sbp2port - ok
14:13:57.0973 4656 [ 47C497FA4DDEA908633CAA60CEBE6805 ] SCardSvr C:\Windows\System32\SCardSvr.dll
14:13:57.0988 4656 SCardSvr - ok
-
- Level 3
- Příspěvky: 588
- Registrován: srpen 12
- Pohlaví:
- Stav:
Offline
Re: Minerd - 91%
14:13:57.0988 4656 [ E76C4E98302AE39CC6FA5D20FC8B5438 ] ScDeviceEnum C:\Windows\System32\ScDeviceEnum.dll
14:13:58.0004 4656 ScDeviceEnum - ok
14:13:58.0020 4656 [ ABD0237B15DBD2B4695F4B7D734A58F7 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
14:13:58.0020 4656 scfilter - ok
14:13:58.0067 4656 [ 888A30EAB651502352C18745367FD179 ] Schedule C:\Windows\system32\schedsvc.dll
14:13:58.0082 4656 Schedule - ok
14:13:58.0098 4656 [ AB285CE3431FF3D2ACE669245874C1C7 ] SCPolicySvc C:\Windows\System32\certprop.dll
14:13:58.0113 4656 SCPolicySvc - ok
14:13:58.0129 4656 [ 2F9A3380B8C0380E5608E29C7AA66899 ] sdbus C:\Windows\System32\drivers\sdbus.sys
14:13:58.0129 4656 sdbus - ok
14:13:58.0145 4656 [ 4EAF4DCF9DBD9A56952A58F56D61C005 ] sdstor C:\Windows\System32\drivers\sdstor.sys
14:13:58.0145 4656 sdstor - ok
14:13:58.0160 4656 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
14:13:58.0160 4656 secdrv - ok
14:13:58.0176 4656 [ C49009F897BA4F2F4F31043663AA1485 ] seclogon C:\Windows\system32\seclogon.dll
14:13:58.0192 4656 seclogon - ok
14:13:58.0207 4656 [ A88882E64BDC1D8E8D6E727B71CCCC53 ] SENS C:\Windows\System32\sens.dll
14:13:58.0207 4656 SENS - ok
14:13:58.0223 4656 [ E66A7C8CE7ED22DED6DF1CA479FB4790 ] SensrSvc C:\Windows\system32\sensrsvc.dll
14:13:58.0238 4656 SensrSvc - ok
14:13:58.0254 4656 [ DB2FF24CE0BDD15FE75870AFE312BA89 ] SerCx C:\Windows\system32\drivers\SerCx.sys
14:13:58.0254 4656 SerCx - ok
14:13:58.0270 4656 [ 0044B31F93946D5D41982314381FE431 ] SerCx2 C:\Windows\system32\drivers\SerCx2.sys
14:13:58.0270 4656 SerCx2 - ok
14:13:58.0285 4656 [ 3CD600C089C1251BEEB4CD4CD5164F9E ] Serenum C:\Windows\System32\drivers\serenum.sys
14:13:58.0285 4656 Serenum - ok
14:13:58.0301 4656 [ D864381BC9C725FAB01D94C060660166 ] Serial C:\Windows\System32\drivers\serial.sys
14:13:58.0301 4656 Serial - ok
14:13:58.0317 4656 [ 0BD2B65DCE756FDE95A2E5CCCBF7705D ] sermouse C:\Windows\System32\drivers\sermouse.sys
14:13:58.0317 4656 sermouse - ok
14:13:58.0348 4656 [ F32DFA228910EAA64F0A3E2CEEFF2066 ] Service KMSELDI C:\Program Files\KMSpico\Service_KMS.exe
14:13:58.0363 4656 Service KMSELDI - ok
14:13:58.0395 4656 [ 441E6FF1F34D7A942946DB42A15FB519 ] SessionEnv C:\Windows\system32\sessenv.dll
14:13:58.0395 4656 SessionEnv - ok
14:13:58.0410 4656 [ 472B7A5AC181C050888DB454663DD764 ] sfloppy C:\Windows\System32\drivers\sfloppy.sys
14:13:58.0410 4656 sfloppy - ok
14:13:58.0442 4656 [ F4414F57DF2CECB8FC969AA43A6B0D50 ] SharedAccess C:\Windows\System32\ipnathlp.dll
14:13:58.0457 4656 SharedAccess - ok
14:13:58.0488 4656 [ 0D190D8B4B20446BE6299AC734DFADF1 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
14:13:58.0520 4656 ShellHWDetection - ok
14:13:58.0520 4656 [ 2F518D13DD6F3053837FE606F1A2EA1F ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
14:13:58.0520 4656 SiSRaid2 - ok
14:13:58.0535 4656 [ 1AC9A200A9C49C4508F04AAFFCA34A3F ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
14:13:58.0535 4656 SiSRaid4 - ok
14:13:58.0535 4656 [ 50D9949020E02B847CD48F1243FCB895 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
14:13:58.0551 4656 SkypeUpdate - ok
14:13:58.0551 4656 [ 99A76D83444026619CA36744F2A468C5 ] SmbDrvI C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys
14:13:58.0551 4656 SmbDrvI - ok
14:13:58.0567 4656 [ 587ACA15210D1B01FBF272E07A08F91A ] smphost C:\Windows\System32\smphost.dll
14:13:58.0582 4656 smphost - ok
14:13:58.0598 4656 [ 49EEB92DE930B8566EF615D600781DB4 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
14:13:58.0613 4656 SNMPTRAP - ok
14:13:58.0645 4656 [ F6EBE514D13ECE7EDC23440039CDF9AB ] spaceport C:\Windows\system32\drivers\spaceport.sys
14:13:58.0660 4656 spaceport - ok
14:13:58.0692 4656 [ F337BE11071818FC3F5DC2940B6BDE34 ] SpbCx C:\Windows\system32\drivers\SpbCx.sys
14:13:58.0692 4656 SpbCx - ok
14:13:58.0723 4656 [ FE0CB40F36D3FCDD3A1B312EF72C38D5 ] Spooler C:\Windows\System32\spoolsv.exe
14:13:58.0723 4656 Spooler - ok
14:13:58.0879 4656 [ E6DEC72A2A23FAA53EB9FEC3C7E29D66 ] sppsvc C:\Windows\system32\sppsvc.exe
14:13:58.0942 4656 sppsvc - ok
14:13:58.0942 4656 [ 2B78788A1485F9B99A578A299DF42C02 ] srv C:\Windows\system32\DRIVERS\srv.sys
14:13:58.0957 4656 srv - ok
14:13:59.0004 4656 [ C1AE59C0B0817236EC083A91C396005A ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
14:13:59.0020 4656 srv2 - ok
14:13:59.0020 4656 [ 77195C32175FC63D6054EBA5A066D727 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
14:13:59.0020 4656 srvnet - ok
14:13:59.0035 4656 [ BB9ED3EDD8E85008215A7250D325A72E ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
14:13:59.0051 4656 SSDPSRV - ok
14:13:59.0051 4656 [ 3911418AFDE10EA6823B7799E4815524 ] SstpSvc C:\Windows\system32\sstpsvc.dll
14:13:59.0067 4656 SstpSvc - ok
14:13:59.0067 4656 [ 366DEA74BBA65B362BCCFC6FC2ADFD8B ] stexstor C:\Windows\system32\drivers\stexstor.sys
14:13:59.0067 4656 stexstor - ok
14:13:59.0098 4656 [ D638904FE86A5FE542A1BA13A9D68E5C ] stisvc C:\Windows\System32\wiaservc.dll
14:13:59.0098 4656 stisvc - ok
14:13:59.0113 4656 [ 0ED2E318ABB68C1A35A8B8038BDB4C90 ] storahci C:\Windows\system32\drivers\storahci.sys
14:13:59.0113 4656 storahci - ok
14:13:59.0129 4656 [ 7A08CEE1535F5A448215634C5EA74E50 ] storflt C:\Windows\system32\DRIVERS\vmstorfl.sys
14:13:59.0129 4656 storflt - ok
14:13:59.0145 4656 [ 6B06E2D11E604BE2B1A406C4CB3B90DE ] stornvme C:\Windows\system32\drivers\stornvme.sys
14:13:59.0160 4656 stornvme - ok
14:13:59.0160 4656 [ 3118058E3D07021A55324A943C6D722B ] StorSvc C:\Windows\system32\storsvc.dll
14:13:59.0176 4656 StorSvc - ok
14:13:59.0192 4656 [ 548759755BC73DAD663250239D7E0B9F ] storvsc C:\Windows\system32\drivers\storvsc.sys
14:13:59.0192 4656 storvsc - ok
14:13:59.0207 4656 [ 03618F935379614837F915D04C45FC0E ] storvsp C:\Windows\System32\drivers\storvsp.sys
14:13:59.0207 4656 storvsp - ok
14:13:59.0238 4656 [ D8E1AE075AB3E8AD56F69C44AA978596 ] svsvc C:\Windows\system32\svsvc.dll
14:13:59.0238 4656 svsvc - ok
14:13:59.0254 4656 [ 9CFEFD62D86DABFAC12D1C5ED72BA6A4 ] SWDUMon C:\Windows\system32\DRIVERS\SWDUMon.sys
14:13:59.0254 4656 SWDUMon - ok
14:13:59.0270 4656 [ 84E0F5D41C138C5CC975137A2A98F6D3 ] swenum C:\Windows\System32\drivers\swenum.sys
14:13:59.0270 4656 swenum - ok
14:13:59.0317 4656 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
14:13:59.0332 4656 SwitchBoard - ok
14:13:59.0363 4656 [ A5DC2E63F5E5D3C0B843307374998479 ] swprv C:\Windows\System32\swprv.dll
14:13:59.0395 4656 swprv - ok
14:13:59.0410 4656 [ DEDF257245AD25EAA727CB8D3CFBE5C3 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
14:13:59.0410 4656 SynTP - ok
14:13:59.0442 4656 [ E45DA7CBBA34510C8B9473AD7D4FFD0B ] SysMain C:\Windows\system32\sysmain.dll
14:13:59.0457 4656 SysMain - ok
14:13:59.0488 4656 [ D65B1C952AEB864C2BAC7A770B17ECCE ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
14:13:59.0504 4656 SystemEventsBroker - ok
14:13:59.0504 4656 [ BA6DD39266A5E15515C8C14DA2DA3E5C ] TabletInputService C:\Windows\System32\TabSvc.dll
14:13:59.0520 4656 TabletInputService - ok
14:13:59.0535 4656 [ 3C32FF010F869BC184DF71290477384E ] tap0901 C:\Windows\system32\DRIVERS\tap0901.sys
14:13:59.0535 4656 tap0901 - ok
14:13:59.0567 4656 [ B517410F157693043DACA21B19B258A6 ] TapiSrv C:\Windows\System32\tapisrv.dll
14:13:59.0567 4656 TapiSrv - ok
14:13:59.0675 4656 [ 3D9A5AC880D7AA2305812D665D24ED23 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
14:13:59.0702 4656 Tcpip - ok
14:13:59.0827 4656 [ 3D9A5AC880D7AA2305812D665D24ED23 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
14:13:59.0843 4656 TCPIP6 - ok
14:13:59.0859 4656 [ 33A7D83EEB15431773A6E186CFAABA21 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
14:13:59.0859 4656 tcpipreg - ok
14:13:59.0874 4656 [ FFF28F9F6823EB1756C60F1649560BBF ] tdx C:\Windows\system32\DRIVERS\tdx.sys
14:13:59.0874 4656 tdx - ok
14:13:59.0874 4656 [ 232D185D2337F141311D0CF1983E1431 ] terminpt C:\Windows\System32\drivers\terminpt.sys
14:13:59.0874 4656 terminpt - ok
14:13:59.0937 4656 [ 2C77831737491F4D684D315B95C62883 ] TermService C:\Windows\System32\termsrv.dll
14:13:59.0968 4656 TermService - ok
14:13:59.0984 4656 [ 05FBE1F7C13E87AF7A414CDF288B1F62 ] Themes C:\Windows\system32\themeservice.dll
14:13:59.0999 4656 Themes - ok
14:14:00.0015 4656 [ FD788C2D96EA91469A3C1D13E80D7473 ] THREADORDER C:\Windows\system32\mmcss.dll
14:14:00.0015 4656 THREADORDER - ok
14:14:00.0030 4656 [ 347A3E49CE18402305B8119A6EC7CFEB ] TimeBroker C:\Windows\System32\TimeBrokerServer.dll
14:14:00.0046 4656 TimeBroker - ok
14:14:00.0062 4656 [ 82F909359600D3603FE852DB7F135626 ] TPM C:\Windows\system32\drivers\tpm.sys
14:14:00.0077 4656 TPM - ok
14:14:00.0093 4656 [ C97E14BB6A196B0554D6EB67D8818175 ] TrkWks C:\Windows\System32\trkwks.dll
14:14:00.0093 4656 TrkWks - ok
14:14:00.0109 4656 [ DA56FFA46030E6FEB215E3D5DAA65B11 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
14:14:00.0109 4656 TrustedInstaller - ok
14:14:00.0124 4656 [ BF8F54CA37E9C9D6582C31C5761F8C93 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
14:14:00.0124 4656 TsUsbFlt - ok
14:14:00.0140 4656 [ E0088068DCE2EE82897027DDB8E05254 ] TsUsbGD C:\Windows\System32\drivers\TsUsbGD.sys
14:14:00.0140 4656 TsUsbGD - ok
14:14:00.0155 4656 [ C8E0E78B5D284C2FF59BDFFDAF997242 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
14:14:00.0155 4656 tunnel - ok
14:14:00.0155 4656 [ F6EEAD052943B5A3104C1405BB856C54 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
14:14:00.0155 4656 uagp35 - ok
14:14:00.0171 4656 [ FE6067B1FD4E63650C667B33D080565B ] UASPStor C:\Windows\System32\drivers\uaspstor.sys
14:14:00.0171 4656 UASPStor - ok
14:14:00.0187 4656 [ 5D1B430EA11064C56E7C8F84B90DEB6A ] UCX01000 C:\Windows\System32\drivers\ucx01000.sys
14:14:00.0202 4656 UCX01000 - ok
14:14:00.0218 4656 [ 1EC649F112896FAE33250F0B97AC5D0B ] udfs C:\Windows\system32\DRIVERS\udfs.sys
14:14:00.0218 4656 udfs - ok
14:14:00.0234 4656 [ 9578691F297E1B1F519970FE6D47CB21 ] UEFI C:\Windows\System32\drivers\UEFI.sys
14:14:00.0234 4656 UEFI - ok
14:14:00.0249 4656 [ 320878AFECDBBD61BBE98624A6CAAC08 ] UI0Detect C:\Windows\system32\UI0Detect.exe
14:14:00.0265 4656 UI0Detect - ok
14:14:00.0280 4656 [ 5EAB5117DDB24FC4D39E6FFFCF1837B9 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
14:14:00.0280 4656 uliagpkx - ok
14:14:00.0296 4656 [ DA34C39A18E60E7C3FA0630566408034 ] umbus C:\Windows\System32\drivers\umbus.sys
14:14:00.0296 4656 umbus - ok
14:14:00.0312 4656 [ AE8294875E5446E359B1E8035D40C05E ] UmPass C:\Windows\System32\drivers\umpass.sys
14:14:00.0312 4656 UmPass - ok
14:14:00.0327 4656 [ E3DDF7D43E05784FAA5E042605EEE528 ] UmRdpService C:\Windows\System32\umrdp.dll
14:14:00.0343 4656 UmRdpService - ok
14:14:00.0374 4656 [ 4A2FFDAC45F317E17DF642C7160EB633 ] upnphost C:\Windows\System32\upnphost.dll
14:14:00.0390 4656 upnphost - ok
14:14:00.0421 4656 [ 433ECDE01A52691FA7ACA51C10C09B70 ] usbccgp C:\Windows\System32\drivers\usbccgp.sys
14:14:00.0421 4656 usbccgp - ok
14:14:00.0437 4656 [ B3D6457D841A0CAEF4C52D88621715F2 ] usbcir C:\Windows\System32\drivers\usbcir.sys
14:14:00.0452 4656 usbcir - ok
14:14:00.0468 4656 [ 5477D6E27C7D266EF8C152B9A25ADE5E ] usbehci C:\Windows\System32\drivers\usbehci.sys
14:14:00.0468 4656 usbehci - ok
14:14:00.0499 4656 [ DF56C2C04EFA328D7A66B69007130266 ] usbhub C:\Windows\System32\drivers\usbhub.sys
14:14:00.0499 4656 usbhub - ok
14:14:00.0530 4656 [ C0E33820326199CE3CFD3B9F27F81D99 ] USBHUB3 C:\Windows\System32\drivers\UsbHub3.sys
14:14:00.0546 4656 USBHUB3 - ok
14:14:00.0562 4656 [ 3019097FB6C985EF24C058090FF3BDBD ] usbohci C:\Windows\System32\drivers\usbohci.sys
14:14:00.0562 4656 usbohci - ok
14:14:00.0562 4656 [ 4D655E3B684BE9B0F7FFD8A2935C348C ] usbprint C:\Windows\System32\drivers\usbprint.sys
14:14:00.0577 4656 usbprint - ok
14:14:00.0577 4656 [ F04D164C4168701A4E7835607722E5F1 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
14:14:00.0577 4656 usbscan - ok
14:14:00.0609 4656 [ 4628B415A84EA9D4D396A56F1D0CB6C6 ] USBSTOR C:\Windows\System32\drivers\USBSTOR.SYS
14:14:00.0609 4656 USBSTOR - ok
14:14:00.0624 4656 [ BA4FA655E0FC577DB7436FC963932CE4 ] usbuhci C:\Windows\System32\drivers\usbuhci.sys
14:14:00.0624 4656 usbuhci - ok
14:14:00.0640 4656 [ 18F744E8CCEB2670040EBAF7AD77B8C6 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
14:14:00.0655 4656 usbvideo - ok
14:14:00.0687 4656 [ 3B44CB989757428208CCFCC028C13110 ] USBXHCI C:\Windows\System32\drivers\USBXHCI.SYS
14:14:00.0702 4656 USBXHCI - ok
14:14:00.0702 4656 [ F6F209DDB94959BA104FC8FC87C53759 ] VaultSvc C:\Windows\system32\lsass.exe
14:14:00.0718 4656 VaultSvc - ok
14:14:00.0718 4656 [ FEB26E3B8345A7E8D62F945C4AE86562 ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
14:14:00.0734 4656 vdrvroot - ok
14:14:00.0765 4656 [ CFBAD6B48EDFAA0828A52646B7C4C08D ] vds C:\Windows\System32\vds.exe
14:14:00.0796 4656 vds - ok
14:14:00.0796 4656 [ A026EDEAA5EECAE0B08E2748B616D4BD ] VerifierExt C:\Windows\system32\drivers\VerifierExt.sys
14:14:00.0812 4656 VerifierExt - ok
14:14:00.0827 4656 [ 041D3EF364E624DBB2703A64A5AADF89 ] vhdmp C:\Windows\System32\drivers\vhdmp.sys
14:14:00.0827 4656 vhdmp - ok
14:14:00.0843 4656 [ 06D38968028E9AB19DE9B618C7B6D199 ] viaide C:\Windows\system32\drivers\viaide.sys
14:14:00.0843 4656 viaide - ok
14:14:00.0859 4656 [ 3CE922E34DB12D9F3C0EA856BC09687C ] Vid C:\Windows\System32\drivers\Vid.sys
14:14:00.0859 4656 Vid - ok
14:14:00.0859 4656 [ C6305BDFC4F7CE51F72BB072C03D4ACE ] vmbus C:\Windows\system32\drivers\vmbus.sys
14:14:00.0859 4656 vmbus - ok
14:14:00.0874 4656 [ DA40BEA0A863CE768C940CA9723BF81F ] VMBusHID C:\Windows\System32\drivers\VMBusHID.sys
14:14:00.0874 4656 VMBusHID - ok
14:14:00.0874 4656 [ 68F8C26DEA2D42E8DEC0778943433C80 ] vmbusr C:\Windows\System32\drivers\vmbusr.sys
14:14:00.0874 4656 vmbusr - ok
14:14:00.0905 4656 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicguestinterface C:\Windows\System32\ICSvc.dll
14:14:00.0905 4656 vmicguestinterface - ok
14:14:00.0921 4656 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicheartbeat C:\Windows\System32\ICSvc.dll
14:14:00.0937 4656 vmicheartbeat - ok
14:14:00.0937 4656 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmickvpexchange C:\Windows\System32\ICSvc.dll
14:14:00.0952 4656 vmickvpexchange - ok
14:14:00.0952 4656 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicrdv C:\Windows\System32\ICSvc.dll
14:14:00.0968 4656 vmicrdv - ok
14:14:00.0968 4656 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicshutdown C:\Windows\System32\ICSvc.dll
14:14:00.0984 4656 vmicshutdown - ok
14:14:00.0999 4656 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmictimesync C:\Windows\System32\ICSvc.dll
14:14:00.0999 4656 vmictimesync - ok
14:14:01.0015 4656 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicvss C:\Windows\System32\ICSvc.dll
14:14:01.0015 4656 vmicvss - ok
14:14:01.0030 4656 [ C20954256B779768313CBC0E5E4033FB ] vncserver C:\Program Files\RealVNC\VNC Server\vncservice.exe
14:14:01.0030 4656 vncserver - ok
14:14:01.0046 4656 [ 55D7D963DE85162F1C49721E502F9744 ] volmgr C:\Windows\system32\drivers\volmgr.sys
14:14:01.0046 4656 volmgr - ok
14:14:01.0062 4656 [ CCB9E901F7254BF96D28EB1B0E5329B7 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
14:14:01.0062 4656 volmgrx - ok
14:14:01.0077 4656 [ 9F9CE33B50611A1C61A46B8911E0B30B ] volsnap C:\Windows\system32\drivers\volsnap.sys
14:14:01.0077 4656 volsnap - ok
14:14:01.0093 4656 [ 01355C98B5C3ED1EC446743CDA848FCE ] vpci C:\Windows\System32\drivers\vpci.sys
14:14:01.0093 4656 vpci - ok
14:14:01.0093 4656 [ ADBE96C33D1A5BB1BBAF90B4BC84F523 ] vpcivsp C:\Windows\System32\drivers\vpcivsp.sys
14:14:01.0093 4656 vpcivsp - ok
14:14:01.0109 4656 [ 4539F45F9F4C9757A86A56C949421E07 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
14:14:01.0109 4656 vsmraid - ok
14:14:01.0140 4656 [ D51D7EF1EA5ED2BB01E9D07E6E0533BC ] VSS C:\Windows\system32\vssvc.exe
14:14:01.0155 4656 VSS - ok
14:14:01.0171 4656 [ 0849B7260F26FE05EA56DED0672E2F4B ] VSTXRAID C:\Windows\system32\drivers\vstxraid.sys
14:14:01.0187 4656 VSTXRAID - ok
14:14:01.0187 4656 [ BE970C369E43B509C1EDA2B8FA7CECB0 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
14:14:01.0187 4656 vwifibus - ok
14:14:01.0202 4656 [ 6B26AD573CCDD5209DF4397438B76354 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
14:14:01.0202 4656 vwififlt - ok
14:14:01.0202 4656 [ 0B48E0DFB44EE475F4FD8A8EE599AF30 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
14:14:01.0202 4656 vwifimp - ok
14:14:01.0218 4656 [ 7599E582CA3A6AAA95A18FFE1172D339 ] W32Time C:\Windows\system32\w32time.dll
14:14:01.0234 4656 W32Time - ok
14:14:01.0234 4656 [ 0910AB9ED404C1434E2D0376C2AD5D8B ] WacomPen C:\Windows\System32\drivers\wacompen.sys
14:14:01.0234 4656 WacomPen - ok
14:14:01.0265 4656 [ 92BF4B3EBD6F163B94B7A20C65E7B698 ] wbengine C:\Windows\system32\wbengine.exe
14:14:01.0280 4656 wbengine - ok
14:14:01.0312 4656 [ 58F28103889817C93E5B5AFABC87E709 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
14:14:01.0327 4656 WbioSrvc - ok
14:14:01.0343 4656 [ 772365894F14652D376B2E5030179DC9 ] Wcmsvc C:\Windows\System32\wcmsvc.dll
14:14:01.0359 4656 Wcmsvc - ok
14:14:01.0359 4656 [ D2726823DF7E19F213F4805A9D6D145F ] wcncsvc C:\Windows\System32\wcncsvc.dll
14:14:01.0374 4656 wcncsvc - ok
14:14:01.0390 4656 [ 846C02A8B48CBD921A3D6AB521AA0DC4 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
14:14:01.0390 4656 WcsPlugInService - ok
14:14:01.0390 4656 [ 694B28DE12AD47031FFB4B052662131A ] WdBoot C:\Windows\system32\drivers\WdBoot.sys
14:14:01.0390 4656 WdBoot - ok
14:14:01.0421 4656 [ CB6C63FF8342B467E2EF76E98D5B934D ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
14:14:01.0421 4656 Wdf01000 - ok
14:14:01.0437 4656 [ 0B99529A3BECC3528D865DDECB62503B ] WdFilter C:\Windows\system32\drivers\WdFilter.sys
14:14:01.0437 4656 WdFilter - ok
14:14:01.0452 4656 [ 40C67D1A4891120874767F6E6604D6C5 ] WdiServiceHost C:\Windows\system32\wdi.dll
14:14:01.0452 4656 WdiServiceHost - ok
14:14:01.0452 4656 [ 40C67D1A4891120874767F6E6604D6C5 ] WdiSystemHost C:\Windows\system32\wdi.dll
14:14:01.0468 4656 WdiSystemHost - ok
14:14:01.0468 4656 [ 282E7D46310338FF4A6B7680440EB0DA ] WdNisDrv C:\Windows\system32\Drivers\WdNisDrv.sys
14:14:01.0468 4656 WdNisDrv - ok
14:14:01.0484 4656 WdNisSvc - ok
14:14:01.0484 4656 [ 6588A957873326361AB1CAC4E76F8394 ] WebClient C:\Windows\System32\webclnt.dll
14:14:01.0499 4656 WebClient - ok
14:14:01.0515 4656 [ 3274312F263882B51B964329FAF49734 ] Wecsvc C:\Windows\system32\wecsvc.dll
14:14:01.0515 4656 Wecsvc - ok
14:14:01.0530 4656 [ 7CDD84E0023A0C5C230B06A7965EC65E ] WEPHOSTSVC C:\Windows\system32\wephostsvc.dll
14:14:01.0530 4656 WEPHOSTSVC - ok
14:14:01.0546 4656 [ AA1315B87D9B2E39584165318A59F15D ] wercplsupport C:\Windows\System32\wercplsupport.dll
14:14:01.0546 4656 wercplsupport - ok
14:14:01.0562 4656 [ 22B4C24AB921BFF7827FFBCA1F4E1BB3 ] WerSvc C:\Windows\System32\WerSvc.dll
14:14:01.0577 4656 WerSvc - ok
14:14:01.0593 4656 [ 2E3E82D7B1076B90F4E228A8EF17B261 ] WFPLWFS C:\Windows\system32\DRIVERS\wfplwfs.sys
14:14:01.0593 4656 WFPLWFS - ok
14:14:01.0609 4656 [ E06AFE2F94BA7CFA2FE4FD2A449E60E2 ] WiaRpc C:\Windows\System32\wiarpc.dll
14:14:01.0624 4656 WiaRpc - ok
14:14:01.0624 4656 [ 867BCC69ED9C31C501465EB0E8BA9DFA ] WIMMount C:\Windows\system32\drivers\wimmount.sys
14:14:01.0624 4656 WIMMount - ok
14:14:01.0624 4656 WinDefend - ok
14:14:01.0671 4656 [ DD079EC8F44DCA3A176B345C6ADEFB66 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
14:14:01.0687 4656 WinHttpAutoProxySvc - ok
14:14:01.0702 4656 [ 9DB490F3E823C5C3C070644B96CB9D59 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
14:14:01.0702 4656 Winmgmt - ok
14:14:01.0765 4656 [ 690C3FC5C9DBD6B9AEDF8341EC720E41 ] WinRM C:\Windows\system32\WsmSvc.dll
14:14:01.0827 4656 WinRM - ok
14:14:01.0859 4656 [ AC263C2F66405589528995AA41040599 ] WinUSB C:\Windows\system32\DRIVERS\WinUSB.sys
14:14:01.0859 4656 WinUSB - ok
14:14:01.0905 4656 [ 728D3349FAB251B0265EFA55C67DCA2D ] WlanSvc C:\Windows\System32\wlansvc.dll
14:14:01.0937 4656 WlanSvc - ok
14:14:01.0984 4656 [ C2838466CCC44FAEF2C3D4C1E5971ECB ] wlidsvc C:\Windows\system32\wlidsvc.dll
14:14:02.0015 4656 wlidsvc - ok
14:14:02.0015 4656 [ 2834D9D3B4F554A39C72F00EA3F0E128 ] WmiAcpi C:\Windows\System32\drivers\wmiacpi.sys
14:14:02.0015 4656 WmiAcpi - ok
14:14:02.0030 4656 [ 7AFAC828F52D62F304A911EC32F42EEE ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
14:14:02.0030 4656 wmiApSrv - ok
14:14:02.0030 4656 WMPNetworkSvc - ok
14:14:02.0093 4656 [ E178371E493BF17EB90FE71ABA8BE643 ] workfolderssvc C:\Windows\system32\workfolderssvc.dll
14:14:02.0109 4656 workfolderssvc - ok
14:14:02.0124 4656 [ E746BCDBA2E02CF6B8D6B26FB167FBE0 ] wpcfltr C:\Windows\system32\DRIVERS\wpcfltr.sys
14:14:02.0124 4656 wpcfltr - ok
14:14:02.0124 4656 [ 4E6A0F60DA7EF050D3D26417CD4D24E9 ] WPCSvc C:\Windows\System32\wpcsvc.dll
14:14:02.0140 4656 WPCSvc - ok
14:14:02.0155 4656 [ D27491CFCE452C154CECFA155AD0EBC8 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
14:14:02.0171 4656 WPDBusEnum - ok
14:14:02.0171 4656 [ 9F2904B55F6CECCD1A8D986B5CE2609A ] WpdUpFltr C:\Windows\system32\drivers\WpdUpFltr.sys
14:14:02.0171 4656 WpdUpFltr - ok
14:14:02.0187 4656 [ AE072B0339D0A18E455DC21666CAD572 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
14:14:02.0187 4656 ws2ifsl - ok
14:14:02.0187 4656 [ 5CFA46C4ACB2FD70572017052378DAE5 ] wscsvc C:\Windows\System32\wscsvc.dll
14:14:02.0202 4656 wscsvc - ok
14:14:02.0202 4656 WSearch - ok
14:14:02.0296 4656 [ D8E3A4701376CCFD0BE542D745FA4809 ] WSService C:\Windows\System32\WSService.dll
14:14:02.0374 4656 WSService - ok
14:14:02.0405 4656 [ 72B4E9DF6456C43C42A1419B09486045 ] wsvd C:\Windows\system32\DRIVERS\wsvd.sys
14:14:02.0405 4656 wsvd - ok
14:14:02.0515 4656 [ 86D0BF4F792053A50D6EE43DFA5837A5 ] wuauserv C:\Windows\system32\wuaueng.dll
14:14:02.0593 4656 wuauserv - ok
14:14:02.0609 4656 [ 2FEAE33E9B2B56104596E1BA444405A9 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
14:14:02.0609 4656 WudfPf - ok
14:14:02.0624 4656 [ 19240C13F526125554B5370566F21A0A ] WUDFRd C:\Windows\System32\drivers\WUDFRd.sys
14:14:02.0624 4656 WUDFRd - ok
14:14:02.0624 4656 [ 19240C13F526125554B5370566F21A0A ] WUDFSensorLP C:\Windows\system32\DRIVERS\WUDFRd.sys
14:14:02.0640 4656 WUDFSensorLP - ok
14:14:02.0640 4656 [ BB73CBC65AABC4EA0A5C6A1474A0A743 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
14:14:02.0655 4656 wudfsvc - ok
14:14:02.0655 4656 [ 19240C13F526125554B5370566F21A0A ] WUDFWpdFs C:\Windows\system32\DRIVERS\WUDFRd.sys
14:14:02.0655 4656 WUDFWpdFs - ok
14:14:02.0671 4656 [ 19240C13F526125554B5370566F21A0A ] WUDFWpdMtp C:\Windows\system32\DRIVERS\WUDFRd.sys
14:14:02.0671 4656 WUDFWpdMtp - ok
14:14:02.0702 4656 [ 2FA9794CA36147756F3FDFD6CA29B46F ] WwanSvc C:\Windows\System32\wwansvc.dll
14:14:02.0718 4656 WwanSvc - ok
14:14:02.0749 4656 XFDriver64 - ok
14:14:02.0890 4656 [ A923222A8437E6C419AFC1A3BE32FF47 ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
14:14:02.0905 4656 ZeroConfigService - ok
14:14:02.0921 4656 ================ Scan global ===============================
14:14:02.0968 4656 [ C89780A6F58D113C28A96D85D1261DC5 ] C:\Windows\system32\basesrv.dll
14:14:02.0984 4656 [ 599F1244C60E3D6C28A8DA7FBA7A2C13 ] C:\Windows\system32\winsrv.dll
14:14:02.0999 4656 [ 9C1833ABD62876856836C5AE55C7CE86 ] C:\Windows\system32\sxssrv.dll
14:14:03.0030 4656 [ B4B610BBCB002EC478C6FD80CF915697 ] C:\Windows\system32\services.exe
14:14:03.0030 4656 [Global] - ok
14:14:03.0030 4656 ================ Scan MBR ==================================
14:14:03.0046 4656 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
14:14:26.0183 4656 \Device\Harddisk0\DR0 - ok
14:14:26.0183 4656 ================ Scan VBR ==================================
14:14:26.0183 4656 [ 0AF483039B248B8CA2848FCF740831AA ] \Device\Harddisk0\DR0\Partition1
14:14:26.0183 4656 \Device\Harddisk0\DR0\Partition1 - ok
14:14:26.0199 4656 [ ED467C4024747DE6D8E62D454317CCFA ] \Device\Harddisk0\DR0\Partition2
14:14:26.0199 4656 \Device\Harddisk0\DR0\Partition2 - ok
14:14:26.0199 4656 ============================================================
14:14:26.0199 4656 Scan finished
14:14:26.0199 4656 ============================================================
14:14:26.0214 7904 Detected object count: 0
14:14:26.0214 7904 Actual detected object count: 0
14:14:34.0949 6496 Deinitialize success
14:13:58.0004 4656 ScDeviceEnum - ok
14:13:58.0020 4656 [ ABD0237B15DBD2B4695F4B7D734A58F7 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
14:13:58.0020 4656 scfilter - ok
14:13:58.0067 4656 [ 888A30EAB651502352C18745367FD179 ] Schedule C:\Windows\system32\schedsvc.dll
14:13:58.0082 4656 Schedule - ok
14:13:58.0098 4656 [ AB285CE3431FF3D2ACE669245874C1C7 ] SCPolicySvc C:\Windows\System32\certprop.dll
14:13:58.0113 4656 SCPolicySvc - ok
14:13:58.0129 4656 [ 2F9A3380B8C0380E5608E29C7AA66899 ] sdbus C:\Windows\System32\drivers\sdbus.sys
14:13:58.0129 4656 sdbus - ok
14:13:58.0145 4656 [ 4EAF4DCF9DBD9A56952A58F56D61C005 ] sdstor C:\Windows\System32\drivers\sdstor.sys
14:13:58.0145 4656 sdstor - ok
14:13:58.0160 4656 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
14:13:58.0160 4656 secdrv - ok
14:13:58.0176 4656 [ C49009F897BA4F2F4F31043663AA1485 ] seclogon C:\Windows\system32\seclogon.dll
14:13:58.0192 4656 seclogon - ok
14:13:58.0207 4656 [ A88882E64BDC1D8E8D6E727B71CCCC53 ] SENS C:\Windows\System32\sens.dll
14:13:58.0207 4656 SENS - ok
14:13:58.0223 4656 [ E66A7C8CE7ED22DED6DF1CA479FB4790 ] SensrSvc C:\Windows\system32\sensrsvc.dll
14:13:58.0238 4656 SensrSvc - ok
14:13:58.0254 4656 [ DB2FF24CE0BDD15FE75870AFE312BA89 ] SerCx C:\Windows\system32\drivers\SerCx.sys
14:13:58.0254 4656 SerCx - ok
14:13:58.0270 4656 [ 0044B31F93946D5D41982314381FE431 ] SerCx2 C:\Windows\system32\drivers\SerCx2.sys
14:13:58.0270 4656 SerCx2 - ok
14:13:58.0285 4656 [ 3CD600C089C1251BEEB4CD4CD5164F9E ] Serenum C:\Windows\System32\drivers\serenum.sys
14:13:58.0285 4656 Serenum - ok
14:13:58.0301 4656 [ D864381BC9C725FAB01D94C060660166 ] Serial C:\Windows\System32\drivers\serial.sys
14:13:58.0301 4656 Serial - ok
14:13:58.0317 4656 [ 0BD2B65DCE756FDE95A2E5CCCBF7705D ] sermouse C:\Windows\System32\drivers\sermouse.sys
14:13:58.0317 4656 sermouse - ok
14:13:58.0348 4656 [ F32DFA228910EAA64F0A3E2CEEFF2066 ] Service KMSELDI C:\Program Files\KMSpico\Service_KMS.exe
14:13:58.0363 4656 Service KMSELDI - ok
14:13:58.0395 4656 [ 441E6FF1F34D7A942946DB42A15FB519 ] SessionEnv C:\Windows\system32\sessenv.dll
14:13:58.0395 4656 SessionEnv - ok
14:13:58.0410 4656 [ 472B7A5AC181C050888DB454663DD764 ] sfloppy C:\Windows\System32\drivers\sfloppy.sys
14:13:58.0410 4656 sfloppy - ok
14:13:58.0442 4656 [ F4414F57DF2CECB8FC969AA43A6B0D50 ] SharedAccess C:\Windows\System32\ipnathlp.dll
14:13:58.0457 4656 SharedAccess - ok
14:13:58.0488 4656 [ 0D190D8B4B20446BE6299AC734DFADF1 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
14:13:58.0520 4656 ShellHWDetection - ok
14:13:58.0520 4656 [ 2F518D13DD6F3053837FE606F1A2EA1F ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
14:13:58.0520 4656 SiSRaid2 - ok
14:13:58.0535 4656 [ 1AC9A200A9C49C4508F04AAFFCA34A3F ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
14:13:58.0535 4656 SiSRaid4 - ok
14:13:58.0535 4656 [ 50D9949020E02B847CD48F1243FCB895 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
14:13:58.0551 4656 SkypeUpdate - ok
14:13:58.0551 4656 [ 99A76D83444026619CA36744F2A468C5 ] SmbDrvI C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys
14:13:58.0551 4656 SmbDrvI - ok
14:13:58.0567 4656 [ 587ACA15210D1B01FBF272E07A08F91A ] smphost C:\Windows\System32\smphost.dll
14:13:58.0582 4656 smphost - ok
14:13:58.0598 4656 [ 49EEB92DE930B8566EF615D600781DB4 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
14:13:58.0613 4656 SNMPTRAP - ok
14:13:58.0645 4656 [ F6EBE514D13ECE7EDC23440039CDF9AB ] spaceport C:\Windows\system32\drivers\spaceport.sys
14:13:58.0660 4656 spaceport - ok
14:13:58.0692 4656 [ F337BE11071818FC3F5DC2940B6BDE34 ] SpbCx C:\Windows\system32\drivers\SpbCx.sys
14:13:58.0692 4656 SpbCx - ok
14:13:58.0723 4656 [ FE0CB40F36D3FCDD3A1B312EF72C38D5 ] Spooler C:\Windows\System32\spoolsv.exe
14:13:58.0723 4656 Spooler - ok
14:13:58.0879 4656 [ E6DEC72A2A23FAA53EB9FEC3C7E29D66 ] sppsvc C:\Windows\system32\sppsvc.exe
14:13:58.0942 4656 sppsvc - ok
14:13:58.0942 4656 [ 2B78788A1485F9B99A578A299DF42C02 ] srv C:\Windows\system32\DRIVERS\srv.sys
14:13:58.0957 4656 srv - ok
14:13:59.0004 4656 [ C1AE59C0B0817236EC083A91C396005A ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
14:13:59.0020 4656 srv2 - ok
14:13:59.0020 4656 [ 77195C32175FC63D6054EBA5A066D727 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
14:13:59.0020 4656 srvnet - ok
14:13:59.0035 4656 [ BB9ED3EDD8E85008215A7250D325A72E ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
14:13:59.0051 4656 SSDPSRV - ok
14:13:59.0051 4656 [ 3911418AFDE10EA6823B7799E4815524 ] SstpSvc C:\Windows\system32\sstpsvc.dll
14:13:59.0067 4656 SstpSvc - ok
14:13:59.0067 4656 [ 366DEA74BBA65B362BCCFC6FC2ADFD8B ] stexstor C:\Windows\system32\drivers\stexstor.sys
14:13:59.0067 4656 stexstor - ok
14:13:59.0098 4656 [ D638904FE86A5FE542A1BA13A9D68E5C ] stisvc C:\Windows\System32\wiaservc.dll
14:13:59.0098 4656 stisvc - ok
14:13:59.0113 4656 [ 0ED2E318ABB68C1A35A8B8038BDB4C90 ] storahci C:\Windows\system32\drivers\storahci.sys
14:13:59.0113 4656 storahci - ok
14:13:59.0129 4656 [ 7A08CEE1535F5A448215634C5EA74E50 ] storflt C:\Windows\system32\DRIVERS\vmstorfl.sys
14:13:59.0129 4656 storflt - ok
14:13:59.0145 4656 [ 6B06E2D11E604BE2B1A406C4CB3B90DE ] stornvme C:\Windows\system32\drivers\stornvme.sys
14:13:59.0160 4656 stornvme - ok
14:13:59.0160 4656 [ 3118058E3D07021A55324A943C6D722B ] StorSvc C:\Windows\system32\storsvc.dll
14:13:59.0176 4656 StorSvc - ok
14:13:59.0192 4656 [ 548759755BC73DAD663250239D7E0B9F ] storvsc C:\Windows\system32\drivers\storvsc.sys
14:13:59.0192 4656 storvsc - ok
14:13:59.0207 4656 [ 03618F935379614837F915D04C45FC0E ] storvsp C:\Windows\System32\drivers\storvsp.sys
14:13:59.0207 4656 storvsp - ok
14:13:59.0238 4656 [ D8E1AE075AB3E8AD56F69C44AA978596 ] svsvc C:\Windows\system32\svsvc.dll
14:13:59.0238 4656 svsvc - ok
14:13:59.0254 4656 [ 9CFEFD62D86DABFAC12D1C5ED72BA6A4 ] SWDUMon C:\Windows\system32\DRIVERS\SWDUMon.sys
14:13:59.0254 4656 SWDUMon - ok
14:13:59.0270 4656 [ 84E0F5D41C138C5CC975137A2A98F6D3 ] swenum C:\Windows\System32\drivers\swenum.sys
14:13:59.0270 4656 swenum - ok
14:13:59.0317 4656 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
14:13:59.0332 4656 SwitchBoard - ok
14:13:59.0363 4656 [ A5DC2E63F5E5D3C0B843307374998479 ] swprv C:\Windows\System32\swprv.dll
14:13:59.0395 4656 swprv - ok
14:13:59.0410 4656 [ DEDF257245AD25EAA727CB8D3CFBE5C3 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
14:13:59.0410 4656 SynTP - ok
14:13:59.0442 4656 [ E45DA7CBBA34510C8B9473AD7D4FFD0B ] SysMain C:\Windows\system32\sysmain.dll
14:13:59.0457 4656 SysMain - ok
14:13:59.0488 4656 [ D65B1C952AEB864C2BAC7A770B17ECCE ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
14:13:59.0504 4656 SystemEventsBroker - ok
14:13:59.0504 4656 [ BA6DD39266A5E15515C8C14DA2DA3E5C ] TabletInputService C:\Windows\System32\TabSvc.dll
14:13:59.0520 4656 TabletInputService - ok
14:13:59.0535 4656 [ 3C32FF010F869BC184DF71290477384E ] tap0901 C:\Windows\system32\DRIVERS\tap0901.sys
14:13:59.0535 4656 tap0901 - ok
14:13:59.0567 4656 [ B517410F157693043DACA21B19B258A6 ] TapiSrv C:\Windows\System32\tapisrv.dll
14:13:59.0567 4656 TapiSrv - ok
14:13:59.0675 4656 [ 3D9A5AC880D7AA2305812D665D24ED23 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
14:13:59.0702 4656 Tcpip - ok
14:13:59.0827 4656 [ 3D9A5AC880D7AA2305812D665D24ED23 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
14:13:59.0843 4656 TCPIP6 - ok
14:13:59.0859 4656 [ 33A7D83EEB15431773A6E186CFAABA21 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
14:13:59.0859 4656 tcpipreg - ok
14:13:59.0874 4656 [ FFF28F9F6823EB1756C60F1649560BBF ] tdx C:\Windows\system32\DRIVERS\tdx.sys
14:13:59.0874 4656 tdx - ok
14:13:59.0874 4656 [ 232D185D2337F141311D0CF1983E1431 ] terminpt C:\Windows\System32\drivers\terminpt.sys
14:13:59.0874 4656 terminpt - ok
14:13:59.0937 4656 [ 2C77831737491F4D684D315B95C62883 ] TermService C:\Windows\System32\termsrv.dll
14:13:59.0968 4656 TermService - ok
14:13:59.0984 4656 [ 05FBE1F7C13E87AF7A414CDF288B1F62 ] Themes C:\Windows\system32\themeservice.dll
14:13:59.0999 4656 Themes - ok
14:14:00.0015 4656 [ FD788C2D96EA91469A3C1D13E80D7473 ] THREADORDER C:\Windows\system32\mmcss.dll
14:14:00.0015 4656 THREADORDER - ok
14:14:00.0030 4656 [ 347A3E49CE18402305B8119A6EC7CFEB ] TimeBroker C:\Windows\System32\TimeBrokerServer.dll
14:14:00.0046 4656 TimeBroker - ok
14:14:00.0062 4656 [ 82F909359600D3603FE852DB7F135626 ] TPM C:\Windows\system32\drivers\tpm.sys
14:14:00.0077 4656 TPM - ok
14:14:00.0093 4656 [ C97E14BB6A196B0554D6EB67D8818175 ] TrkWks C:\Windows\System32\trkwks.dll
14:14:00.0093 4656 TrkWks - ok
14:14:00.0109 4656 [ DA56FFA46030E6FEB215E3D5DAA65B11 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
14:14:00.0109 4656 TrustedInstaller - ok
14:14:00.0124 4656 [ BF8F54CA37E9C9D6582C31C5761F8C93 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
14:14:00.0124 4656 TsUsbFlt - ok
14:14:00.0140 4656 [ E0088068DCE2EE82897027DDB8E05254 ] TsUsbGD C:\Windows\System32\drivers\TsUsbGD.sys
14:14:00.0140 4656 TsUsbGD - ok
14:14:00.0155 4656 [ C8E0E78B5D284C2FF59BDFFDAF997242 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
14:14:00.0155 4656 tunnel - ok
14:14:00.0155 4656 [ F6EEAD052943B5A3104C1405BB856C54 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
14:14:00.0155 4656 uagp35 - ok
14:14:00.0171 4656 [ FE6067B1FD4E63650C667B33D080565B ] UASPStor C:\Windows\System32\drivers\uaspstor.sys
14:14:00.0171 4656 UASPStor - ok
14:14:00.0187 4656 [ 5D1B430EA11064C56E7C8F84B90DEB6A ] UCX01000 C:\Windows\System32\drivers\ucx01000.sys
14:14:00.0202 4656 UCX01000 - ok
14:14:00.0218 4656 [ 1EC649F112896FAE33250F0B97AC5D0B ] udfs C:\Windows\system32\DRIVERS\udfs.sys
14:14:00.0218 4656 udfs - ok
14:14:00.0234 4656 [ 9578691F297E1B1F519970FE6D47CB21 ] UEFI C:\Windows\System32\drivers\UEFI.sys
14:14:00.0234 4656 UEFI - ok
14:14:00.0249 4656 [ 320878AFECDBBD61BBE98624A6CAAC08 ] UI0Detect C:\Windows\system32\UI0Detect.exe
14:14:00.0265 4656 UI0Detect - ok
14:14:00.0280 4656 [ 5EAB5117DDB24FC4D39E6FFFCF1837B9 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
14:14:00.0280 4656 uliagpkx - ok
14:14:00.0296 4656 [ DA34C39A18E60E7C3FA0630566408034 ] umbus C:\Windows\System32\drivers\umbus.sys
14:14:00.0296 4656 umbus - ok
14:14:00.0312 4656 [ AE8294875E5446E359B1E8035D40C05E ] UmPass C:\Windows\System32\drivers\umpass.sys
14:14:00.0312 4656 UmPass - ok
14:14:00.0327 4656 [ E3DDF7D43E05784FAA5E042605EEE528 ] UmRdpService C:\Windows\System32\umrdp.dll
14:14:00.0343 4656 UmRdpService - ok
14:14:00.0374 4656 [ 4A2FFDAC45F317E17DF642C7160EB633 ] upnphost C:\Windows\System32\upnphost.dll
14:14:00.0390 4656 upnphost - ok
14:14:00.0421 4656 [ 433ECDE01A52691FA7ACA51C10C09B70 ] usbccgp C:\Windows\System32\drivers\usbccgp.sys
14:14:00.0421 4656 usbccgp - ok
14:14:00.0437 4656 [ B3D6457D841A0CAEF4C52D88621715F2 ] usbcir C:\Windows\System32\drivers\usbcir.sys
14:14:00.0452 4656 usbcir - ok
14:14:00.0468 4656 [ 5477D6E27C7D266EF8C152B9A25ADE5E ] usbehci C:\Windows\System32\drivers\usbehci.sys
14:14:00.0468 4656 usbehci - ok
14:14:00.0499 4656 [ DF56C2C04EFA328D7A66B69007130266 ] usbhub C:\Windows\System32\drivers\usbhub.sys
14:14:00.0499 4656 usbhub - ok
14:14:00.0530 4656 [ C0E33820326199CE3CFD3B9F27F81D99 ] USBHUB3 C:\Windows\System32\drivers\UsbHub3.sys
14:14:00.0546 4656 USBHUB3 - ok
14:14:00.0562 4656 [ 3019097FB6C985EF24C058090FF3BDBD ] usbohci C:\Windows\System32\drivers\usbohci.sys
14:14:00.0562 4656 usbohci - ok
14:14:00.0562 4656 [ 4D655E3B684BE9B0F7FFD8A2935C348C ] usbprint C:\Windows\System32\drivers\usbprint.sys
14:14:00.0577 4656 usbprint - ok
14:14:00.0577 4656 [ F04D164C4168701A4E7835607722E5F1 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
14:14:00.0577 4656 usbscan - ok
14:14:00.0609 4656 [ 4628B415A84EA9D4D396A56F1D0CB6C6 ] USBSTOR C:\Windows\System32\drivers\USBSTOR.SYS
14:14:00.0609 4656 USBSTOR - ok
14:14:00.0624 4656 [ BA4FA655E0FC577DB7436FC963932CE4 ] usbuhci C:\Windows\System32\drivers\usbuhci.sys
14:14:00.0624 4656 usbuhci - ok
14:14:00.0640 4656 [ 18F744E8CCEB2670040EBAF7AD77B8C6 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
14:14:00.0655 4656 usbvideo - ok
14:14:00.0687 4656 [ 3B44CB989757428208CCFCC028C13110 ] USBXHCI C:\Windows\System32\drivers\USBXHCI.SYS
14:14:00.0702 4656 USBXHCI - ok
14:14:00.0702 4656 [ F6F209DDB94959BA104FC8FC87C53759 ] VaultSvc C:\Windows\system32\lsass.exe
14:14:00.0718 4656 VaultSvc - ok
14:14:00.0718 4656 [ FEB26E3B8345A7E8D62F945C4AE86562 ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
14:14:00.0734 4656 vdrvroot - ok
14:14:00.0765 4656 [ CFBAD6B48EDFAA0828A52646B7C4C08D ] vds C:\Windows\System32\vds.exe
14:14:00.0796 4656 vds - ok
14:14:00.0796 4656 [ A026EDEAA5EECAE0B08E2748B616D4BD ] VerifierExt C:\Windows\system32\drivers\VerifierExt.sys
14:14:00.0812 4656 VerifierExt - ok
14:14:00.0827 4656 [ 041D3EF364E624DBB2703A64A5AADF89 ] vhdmp C:\Windows\System32\drivers\vhdmp.sys
14:14:00.0827 4656 vhdmp - ok
14:14:00.0843 4656 [ 06D38968028E9AB19DE9B618C7B6D199 ] viaide C:\Windows\system32\drivers\viaide.sys
14:14:00.0843 4656 viaide - ok
14:14:00.0859 4656 [ 3CE922E34DB12D9F3C0EA856BC09687C ] Vid C:\Windows\System32\drivers\Vid.sys
14:14:00.0859 4656 Vid - ok
14:14:00.0859 4656 [ C6305BDFC4F7CE51F72BB072C03D4ACE ] vmbus C:\Windows\system32\drivers\vmbus.sys
14:14:00.0859 4656 vmbus - ok
14:14:00.0874 4656 [ DA40BEA0A863CE768C940CA9723BF81F ] VMBusHID C:\Windows\System32\drivers\VMBusHID.sys
14:14:00.0874 4656 VMBusHID - ok
14:14:00.0874 4656 [ 68F8C26DEA2D42E8DEC0778943433C80 ] vmbusr C:\Windows\System32\drivers\vmbusr.sys
14:14:00.0874 4656 vmbusr - ok
14:14:00.0905 4656 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicguestinterface C:\Windows\System32\ICSvc.dll
14:14:00.0905 4656 vmicguestinterface - ok
14:14:00.0921 4656 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicheartbeat C:\Windows\System32\ICSvc.dll
14:14:00.0937 4656 vmicheartbeat - ok
14:14:00.0937 4656 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmickvpexchange C:\Windows\System32\ICSvc.dll
14:14:00.0952 4656 vmickvpexchange - ok
14:14:00.0952 4656 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicrdv C:\Windows\System32\ICSvc.dll
14:14:00.0968 4656 vmicrdv - ok
14:14:00.0968 4656 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicshutdown C:\Windows\System32\ICSvc.dll
14:14:00.0984 4656 vmicshutdown - ok
14:14:00.0999 4656 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmictimesync C:\Windows\System32\ICSvc.dll
14:14:00.0999 4656 vmictimesync - ok
14:14:01.0015 4656 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicvss C:\Windows\System32\ICSvc.dll
14:14:01.0015 4656 vmicvss - ok
14:14:01.0030 4656 [ C20954256B779768313CBC0E5E4033FB ] vncserver C:\Program Files\RealVNC\VNC Server\vncservice.exe
14:14:01.0030 4656 vncserver - ok
14:14:01.0046 4656 [ 55D7D963DE85162F1C49721E502F9744 ] volmgr C:\Windows\system32\drivers\volmgr.sys
14:14:01.0046 4656 volmgr - ok
14:14:01.0062 4656 [ CCB9E901F7254BF96D28EB1B0E5329B7 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
14:14:01.0062 4656 volmgrx - ok
14:14:01.0077 4656 [ 9F9CE33B50611A1C61A46B8911E0B30B ] volsnap C:\Windows\system32\drivers\volsnap.sys
14:14:01.0077 4656 volsnap - ok
14:14:01.0093 4656 [ 01355C98B5C3ED1EC446743CDA848FCE ] vpci C:\Windows\System32\drivers\vpci.sys
14:14:01.0093 4656 vpci - ok
14:14:01.0093 4656 [ ADBE96C33D1A5BB1BBAF90B4BC84F523 ] vpcivsp C:\Windows\System32\drivers\vpcivsp.sys
14:14:01.0093 4656 vpcivsp - ok
14:14:01.0109 4656 [ 4539F45F9F4C9757A86A56C949421E07 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
14:14:01.0109 4656 vsmraid - ok
14:14:01.0140 4656 [ D51D7EF1EA5ED2BB01E9D07E6E0533BC ] VSS C:\Windows\system32\vssvc.exe
14:14:01.0155 4656 VSS - ok
14:14:01.0171 4656 [ 0849B7260F26FE05EA56DED0672E2F4B ] VSTXRAID C:\Windows\system32\drivers\vstxraid.sys
14:14:01.0187 4656 VSTXRAID - ok
14:14:01.0187 4656 [ BE970C369E43B509C1EDA2B8FA7CECB0 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
14:14:01.0187 4656 vwifibus - ok
14:14:01.0202 4656 [ 6B26AD573CCDD5209DF4397438B76354 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
14:14:01.0202 4656 vwififlt - ok
14:14:01.0202 4656 [ 0B48E0DFB44EE475F4FD8A8EE599AF30 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
14:14:01.0202 4656 vwifimp - ok
14:14:01.0218 4656 [ 7599E582CA3A6AAA95A18FFE1172D339 ] W32Time C:\Windows\system32\w32time.dll
14:14:01.0234 4656 W32Time - ok
14:14:01.0234 4656 [ 0910AB9ED404C1434E2D0376C2AD5D8B ] WacomPen C:\Windows\System32\drivers\wacompen.sys
14:14:01.0234 4656 WacomPen - ok
14:14:01.0265 4656 [ 92BF4B3EBD6F163B94B7A20C65E7B698 ] wbengine C:\Windows\system32\wbengine.exe
14:14:01.0280 4656 wbengine - ok
14:14:01.0312 4656 [ 58F28103889817C93E5B5AFABC87E709 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
14:14:01.0327 4656 WbioSrvc - ok
14:14:01.0343 4656 [ 772365894F14652D376B2E5030179DC9 ] Wcmsvc C:\Windows\System32\wcmsvc.dll
14:14:01.0359 4656 Wcmsvc - ok
14:14:01.0359 4656 [ D2726823DF7E19F213F4805A9D6D145F ] wcncsvc C:\Windows\System32\wcncsvc.dll
14:14:01.0374 4656 wcncsvc - ok
14:14:01.0390 4656 [ 846C02A8B48CBD921A3D6AB521AA0DC4 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
14:14:01.0390 4656 WcsPlugInService - ok
14:14:01.0390 4656 [ 694B28DE12AD47031FFB4B052662131A ] WdBoot C:\Windows\system32\drivers\WdBoot.sys
14:14:01.0390 4656 WdBoot - ok
14:14:01.0421 4656 [ CB6C63FF8342B467E2EF76E98D5B934D ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
14:14:01.0421 4656 Wdf01000 - ok
14:14:01.0437 4656 [ 0B99529A3BECC3528D865DDECB62503B ] WdFilter C:\Windows\system32\drivers\WdFilter.sys
14:14:01.0437 4656 WdFilter - ok
14:14:01.0452 4656 [ 40C67D1A4891120874767F6E6604D6C5 ] WdiServiceHost C:\Windows\system32\wdi.dll
14:14:01.0452 4656 WdiServiceHost - ok
14:14:01.0452 4656 [ 40C67D1A4891120874767F6E6604D6C5 ] WdiSystemHost C:\Windows\system32\wdi.dll
14:14:01.0468 4656 WdiSystemHost - ok
14:14:01.0468 4656 [ 282E7D46310338FF4A6B7680440EB0DA ] WdNisDrv C:\Windows\system32\Drivers\WdNisDrv.sys
14:14:01.0468 4656 WdNisDrv - ok
14:14:01.0484 4656 WdNisSvc - ok
14:14:01.0484 4656 [ 6588A957873326361AB1CAC4E76F8394 ] WebClient C:\Windows\System32\webclnt.dll
14:14:01.0499 4656 WebClient - ok
14:14:01.0515 4656 [ 3274312F263882B51B964329FAF49734 ] Wecsvc C:\Windows\system32\wecsvc.dll
14:14:01.0515 4656 Wecsvc - ok
14:14:01.0530 4656 [ 7CDD84E0023A0C5C230B06A7965EC65E ] WEPHOSTSVC C:\Windows\system32\wephostsvc.dll
14:14:01.0530 4656 WEPHOSTSVC - ok
14:14:01.0546 4656 [ AA1315B87D9B2E39584165318A59F15D ] wercplsupport C:\Windows\System32\wercplsupport.dll
14:14:01.0546 4656 wercplsupport - ok
14:14:01.0562 4656 [ 22B4C24AB921BFF7827FFBCA1F4E1BB3 ] WerSvc C:\Windows\System32\WerSvc.dll
14:14:01.0577 4656 WerSvc - ok
14:14:01.0593 4656 [ 2E3E82D7B1076B90F4E228A8EF17B261 ] WFPLWFS C:\Windows\system32\DRIVERS\wfplwfs.sys
14:14:01.0593 4656 WFPLWFS - ok
14:14:01.0609 4656 [ E06AFE2F94BA7CFA2FE4FD2A449E60E2 ] WiaRpc C:\Windows\System32\wiarpc.dll
14:14:01.0624 4656 WiaRpc - ok
14:14:01.0624 4656 [ 867BCC69ED9C31C501465EB0E8BA9DFA ] WIMMount C:\Windows\system32\drivers\wimmount.sys
14:14:01.0624 4656 WIMMount - ok
14:14:01.0624 4656 WinDefend - ok
14:14:01.0671 4656 [ DD079EC8F44DCA3A176B345C6ADEFB66 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
14:14:01.0687 4656 WinHttpAutoProxySvc - ok
14:14:01.0702 4656 [ 9DB490F3E823C5C3C070644B96CB9D59 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
14:14:01.0702 4656 Winmgmt - ok
14:14:01.0765 4656 [ 690C3FC5C9DBD6B9AEDF8341EC720E41 ] WinRM C:\Windows\system32\WsmSvc.dll
14:14:01.0827 4656 WinRM - ok
14:14:01.0859 4656 [ AC263C2F66405589528995AA41040599 ] WinUSB C:\Windows\system32\DRIVERS\WinUSB.sys
14:14:01.0859 4656 WinUSB - ok
14:14:01.0905 4656 [ 728D3349FAB251B0265EFA55C67DCA2D ] WlanSvc C:\Windows\System32\wlansvc.dll
14:14:01.0937 4656 WlanSvc - ok
14:14:01.0984 4656 [ C2838466CCC44FAEF2C3D4C1E5971ECB ] wlidsvc C:\Windows\system32\wlidsvc.dll
14:14:02.0015 4656 wlidsvc - ok
14:14:02.0015 4656 [ 2834D9D3B4F554A39C72F00EA3F0E128 ] WmiAcpi C:\Windows\System32\drivers\wmiacpi.sys
14:14:02.0015 4656 WmiAcpi - ok
14:14:02.0030 4656 [ 7AFAC828F52D62F304A911EC32F42EEE ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
14:14:02.0030 4656 wmiApSrv - ok
14:14:02.0030 4656 WMPNetworkSvc - ok
14:14:02.0093 4656 [ E178371E493BF17EB90FE71ABA8BE643 ] workfolderssvc C:\Windows\system32\workfolderssvc.dll
14:14:02.0109 4656 workfolderssvc - ok
14:14:02.0124 4656 [ E746BCDBA2E02CF6B8D6B26FB167FBE0 ] wpcfltr C:\Windows\system32\DRIVERS\wpcfltr.sys
14:14:02.0124 4656 wpcfltr - ok
14:14:02.0124 4656 [ 4E6A0F60DA7EF050D3D26417CD4D24E9 ] WPCSvc C:\Windows\System32\wpcsvc.dll
14:14:02.0140 4656 WPCSvc - ok
14:14:02.0155 4656 [ D27491CFCE452C154CECFA155AD0EBC8 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
14:14:02.0171 4656 WPDBusEnum - ok
14:14:02.0171 4656 [ 9F2904B55F6CECCD1A8D986B5CE2609A ] WpdUpFltr C:\Windows\system32\drivers\WpdUpFltr.sys
14:14:02.0171 4656 WpdUpFltr - ok
14:14:02.0187 4656 [ AE072B0339D0A18E455DC21666CAD572 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
14:14:02.0187 4656 ws2ifsl - ok
14:14:02.0187 4656 [ 5CFA46C4ACB2FD70572017052378DAE5 ] wscsvc C:\Windows\System32\wscsvc.dll
14:14:02.0202 4656 wscsvc - ok
14:14:02.0202 4656 WSearch - ok
14:14:02.0296 4656 [ D8E3A4701376CCFD0BE542D745FA4809 ] WSService C:\Windows\System32\WSService.dll
14:14:02.0374 4656 WSService - ok
14:14:02.0405 4656 [ 72B4E9DF6456C43C42A1419B09486045 ] wsvd C:\Windows\system32\DRIVERS\wsvd.sys
14:14:02.0405 4656 wsvd - ok
14:14:02.0515 4656 [ 86D0BF4F792053A50D6EE43DFA5837A5 ] wuauserv C:\Windows\system32\wuaueng.dll
14:14:02.0593 4656 wuauserv - ok
14:14:02.0609 4656 [ 2FEAE33E9B2B56104596E1BA444405A9 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
14:14:02.0609 4656 WudfPf - ok
14:14:02.0624 4656 [ 19240C13F526125554B5370566F21A0A ] WUDFRd C:\Windows\System32\drivers\WUDFRd.sys
14:14:02.0624 4656 WUDFRd - ok
14:14:02.0624 4656 [ 19240C13F526125554B5370566F21A0A ] WUDFSensorLP C:\Windows\system32\DRIVERS\WUDFRd.sys
14:14:02.0640 4656 WUDFSensorLP - ok
14:14:02.0640 4656 [ BB73CBC65AABC4EA0A5C6A1474A0A743 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
14:14:02.0655 4656 wudfsvc - ok
14:14:02.0655 4656 [ 19240C13F526125554B5370566F21A0A ] WUDFWpdFs C:\Windows\system32\DRIVERS\WUDFRd.sys
14:14:02.0655 4656 WUDFWpdFs - ok
14:14:02.0671 4656 [ 19240C13F526125554B5370566F21A0A ] WUDFWpdMtp C:\Windows\system32\DRIVERS\WUDFRd.sys
14:14:02.0671 4656 WUDFWpdMtp - ok
14:14:02.0702 4656 [ 2FA9794CA36147756F3FDFD6CA29B46F ] WwanSvc C:\Windows\System32\wwansvc.dll
14:14:02.0718 4656 WwanSvc - ok
14:14:02.0749 4656 XFDriver64 - ok
14:14:02.0890 4656 [ A923222A8437E6C419AFC1A3BE32FF47 ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
14:14:02.0905 4656 ZeroConfigService - ok
14:14:02.0921 4656 ================ Scan global ===============================
14:14:02.0968 4656 [ C89780A6F58D113C28A96D85D1261DC5 ] C:\Windows\system32\basesrv.dll
14:14:02.0984 4656 [ 599F1244C60E3D6C28A8DA7FBA7A2C13 ] C:\Windows\system32\winsrv.dll
14:14:02.0999 4656 [ 9C1833ABD62876856836C5AE55C7CE86 ] C:\Windows\system32\sxssrv.dll
14:14:03.0030 4656 [ B4B610BBCB002EC478C6FD80CF915697 ] C:\Windows\system32\services.exe
14:14:03.0030 4656 [Global] - ok
14:14:03.0030 4656 ================ Scan MBR ==================================
14:14:03.0046 4656 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
14:14:26.0183 4656 \Device\Harddisk0\DR0 - ok
14:14:26.0183 4656 ================ Scan VBR ==================================
14:14:26.0183 4656 [ 0AF483039B248B8CA2848FCF740831AA ] \Device\Harddisk0\DR0\Partition1
14:14:26.0183 4656 \Device\Harddisk0\DR0\Partition1 - ok
14:14:26.0199 4656 [ ED467C4024747DE6D8E62D454317CCFA ] \Device\Harddisk0\DR0\Partition2
14:14:26.0199 4656 \Device\Harddisk0\DR0\Partition2 - ok
14:14:26.0199 4656 ============================================================
14:14:26.0199 4656 Scan finished
14:14:26.0199 4656 ============================================================
14:14:26.0214 7904 Detected object count: 0
14:14:26.0214 7904 Actual detected object count: 0
14:14:34.0949 6496 Deinitialize success
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 126 hostů