Prosím o kontrolu logu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

poison
Level 2.5
Level 2.5
Příspěvky: 270
Registrován: říjen 06
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Prosím o kontrolu logu

Příspěvekod poison » 18 črc 2013 17:55

Tak jeden počítač jsem rozchodil a kleknul mi druhý, takže zase otravuju. Načte se po plochu bez ikon a nedělá nic, jde spustit jen v Nouzovém režimu.
Díky za reakce.

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:51:53, on 18.7.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16635)
Boot mode: Safe mode with network support

Running processes:
C:\Program Files (x86)\totalcmd\TOTALCMD.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\Venca\Desktop\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [NBAgent] "D:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [ICQ] "D:\Program Files (x86)ICQ7M\ICQ.exe" silent loginmode=4
O4 - HKCU\..\Run: [Google Update] "C:\Users\Venca\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
O4 - HKCU\..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
O4 - HKCU\..\Run: [com.apple.dav.bookmarks.daemon] C:\Program Files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Program Files (x86)ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Program Files (x86)ICQ7M\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {4B54A9DE-EF1C-4EBE-A328-7C28EA3B433A} (Bitdefender QuickScan Control) - http://quickscan.bitdefender.com/qsax/qsax.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9650 bytes

Reklama
Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod memphisto » 18 črc 2013 18:04

¨Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranìní historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit doèasné soubory Windows, vysypat koš atd.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po probìhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.

Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

poison
Level 2.5
Level 2.5
Příspěvky: 270
Registrován: říjen 06
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod poison » 18 črc 2013 18:23

Malwarebytes Anti-Malware (PRO) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.07.17.04

Windows 7 Service Pack 1 x64 NTFS (Nouzový režim s podporou sítě)
Internet Explorer 10.0.9200.16635
Venca :: VENCA-PC [administrátor]

Ochrana: Zakázána

18.7.2013 18:18:22
mbam-log-2013-07-18 (18-18-22).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 211783
Uplynulý čas: 2 minut, 43 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)


***** [Registry] *****

Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Hodnota Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Hodnota Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Klíe Nalezeno : HKCU\Software\YahooPartnerToolbar
Klíe Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4FC7-90CC-5EA0ABBE9EB8}
Klíe Nalezeno : HKLM\Software\ICQ\ICQToolbar
Klíe Nalezeno : HKU\S-1-5-21-3844022239-3479736166-2311671728-1000\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4FC7-90CC-5EA0ABBE9EB8}

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v10.0.9200.16635

[OK] Registry jsou eisté.

-\\ Google Chrome v28.0.1500.72

Soubor : C:\Users\Venca\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] Soubor je eistý.

*************************

AdwCleaner[R1].txt - [1583 octets] - [18/07/2013 18:22:24]

########## EOF - C:\AdwCleaner[R1].txt - [1643 octets] ##########

poison
Level 2.5
Level 2.5
Příspěvky: 270
Registrován: říjen 06
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod poison » 18 črc 2013 20:32

Mohlo by to způsobovat to, že oddíl se systémem má pouhých 2GB free? Pak bych to řešil zálohou a reinstalem W.

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod memphisto » 18 črc 2013 22:00

2 GB na systémovém disku je sakra málo... Samozřejmě to může být za problémy...

v Adw nech vše smazat a dodej log po smazání

Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.

Stáhni si Junkware Removal Tool

na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

poison
Level 2.5
Level 2.5
Příspěvky: 270
Registrován: říjen 06
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod poison » 18 črc 2013 22:39

ADW Log:
# AdwCleaner v2.305 - Log vytvooen 18/07/2013 v 22:21:51
# Aktualizováno 11/07/2013 Xplode
# Operaení systém : Windows 7 Home Premium Service Pack 1 (64 bits)
# Uživatel : Venca - VENCA-PC
# Spuštin systém : Nouzový režim s prací v síti
# Spuštino z : C:\Users\Venca\Desktop\adwcleaner.exe
# Volba [Vymazat]


***** [Služby] *****


***** [Soubory / Složky] *****

Složka Vymazáno : C:\ProgramData\ICQ\ICQToolbar
Složka Vymazáno : C:\Users\Venca\AppData\Local\OpenCandy
Složka Vymazáno : C:\Users\Venca\AppData\Roaming\OpenCandy

***** [Registry] *****

Hodnota Vymazáno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Hodnota Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Hodnota Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Klíe Vymazáno : HKCU\Software\YahooPartnerToolbar
Klíe Vymazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4FC7-90CC-5EA0ABBE9EB8}
Klíe Vymazáno : HKLM\Software\ICQ\ICQToolbar

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v10.0.9200.16635

[OK] Registry jsou eisté.

-\\ Google Chrome v28.0.1500.72

Soubor : C:\Users\Venca\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] Soubor je eistý.

*************************

AdwCleaner[R1].txt - [1708 octets] - [18/07/2013 18:22:24]
AdwCleaner[R2].txt - [1768 octets] - [18/07/2013 22:21:39]
AdwCleaner[S1].txt - [1544 octets] - [18/07/2013 22:21:51]

########## EOF - C:\AdwCleaner[S1].txt - [1604 octets] ##########


RK Log:
Uživatel : Venca [Práva správce]
Mód : Kontrola -- Datum : 07/18/2013 22:29:30
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 5 ¤¤¤
[HJ POL] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL] HKLM\[...]\Wow6432Node\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: WDC WD5001AALS-00E3A0 ATA Device +++++
--- User ---
[MBR] 366dd799f923485c68452595efbc37bb
[BSP] b2b96a6e59cd53c949b6441211303d77 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 59900 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 122882048 | Size: 416937 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: WDC WD5001AALS-00E3A0 ATA Device +++++
--- User ---
[MBR] 7a4ec4e08b9c0b7774c61db295f91382
[BSP] 000cdb9b089b6a5f1cdf8ae3e35760b8 : Windows XP MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 1907696 Mo
User = LL1 ... OK!
Error reading LL2 MBR!

Dokončeno : << RKreport[0]_S_07182013_222930.txt >>
RKreport[0]_S_07182013_222836.txt

JRT Log:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 5.1.6 (07.17.2013:4)
OS: Windows 7 Home Premium x64
Ran by Venca on čt 18.07.2013 at 22:33:21,90
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\apnstub_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\apnstub_rasmancs



~~~ Files



~~~ Folders

Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{01FA5CD2-C106-4F5B-BF8D-C1764C37C16B}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{02280FEA-B9A5-480D-930E-702F9D5BBADF}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{05E57FD0-5341-4251-9E85-730D33417CD1}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{0AB3F659-2ED0-440C-94CC-B974AE7A4929}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{173C67E9-811C-4D6A-9B58-BFD19AADA5E1}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{17D45F3B-B07F-405E-89E7-06DE73A35A6D}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{1C5B638C-E980-44BF-8DCB-E91738FA46A9}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{1C92A78A-1E86-4082-8B11-E7F748E7103A}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{1D6A8328-225E-402A-92BB-9C43ED808BCB}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{1D906444-53F7-4D67-805C-9545F9A72DC1}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{1FDD2705-5197-48F7-891B-B269E9C78536}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{22045B0C-2A96-4426-A5A1-AF7180438B54}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{2254276C-FAD1-4DA3-AAC1-E697BD68859C}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{2524A6D0-2BA3-4D82-BE02-8532F1DC6A9A}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{2673B68C-A2FC-436E-BBC1-5D57B453F5EF}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{26F50A95-5932-4C3D-A2FF-84CB924B0119}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{29DDC221-0BA9-41CC-8993-9CD928B447AD}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{2BD4E9BF-E91B-4B25-BC53-5A72B6880143}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{38504C73-A7E3-4934-8E37-DCC49149A2D5}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{3A0058A0-1E37-4102-BD7E-2A5C9C78575A}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{3BAE9462-CF28-4D9E-9F76-5A85EE4F8F6C}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{3D6D22AA-6867-42C9-9B14-9696B51A9132}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{597D9517-E857-4605-85C3-47579D506FB2}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{5A78CC5B-9BC3-4385-8303-7041C42E90AB}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{5A859C14-9A6A-4F92-918A-345E03FCF147}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{6096A607-D05C-40C3-A8A6-944164A464C7}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{6290FEE1-E196-437F-B5E9-72DDC46DB40B}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{6ADF3D6F-D3CC-463F-A602-2F86C9F5EB39}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{6D806608-C07C-4B19-8903-2E01E3A5CC9C}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{6E1CA989-DEBB-4ABF-BFFF-81318823EAEC}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{6E23B8CE-E681-4177-AEDE-738CF8394A9A}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{6F5F302D-F574-4BAA-B6DB-4B7E8F2162B5}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{710FD818-2E9B-41D9-8827-6A0B81C58ADA}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{71238854-4BF4-412A-B2DC-18BA41D9D8E0}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{733ED696-7A2E-48B9-84B6-18DF50D9C6C3}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{757DD6AD-7AA4-4981-A894-1411220BE98B}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{75E1781D-F672-4DD0-A16D-DB42CF9F262A}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{7616A257-FA1C-47CF-AEC6-110123860B38}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{7B56E438-3FDE-4395-BFA2-A374BFCEEC88}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{7C0D7C29-12A6-4F2E-B977-A1199F8EAA81}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{7F0F4AFD-6D4B-49EE-BABD-7F3E9F04FA70}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{8026AA42-709E-42FA-A7CE-FBAB0C8AB038}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{833BF9B2-5C60-4272-B04A-C6201F2219C7}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{846DE8FA-6FC0-47AA-BF7E-FF6E636E5CCD}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{87143277-0564-49D1-AF73-C9939D61DCED}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{8D0497F4-30B8-49E1-A2DB-151D6D8412B5}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{97DCA35F-7E87-49AD-86D3-03DCC11683FF}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{A51B79E7-2DEA-4302-B4F9-0BBE949DEB81}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{A955E3BB-5A32-474B-8621-6C140BA52DBF}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{AA850D29-10F5-4C95-AA25-D913C754891F}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{AC7747F1-E624-45F1-BA79-A5D93C485F3A}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{B3707D92-C9D6-4B27-84FE-FAB4A85B4550}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{B4A979D0-3DE2-48FA-B120-1544938746A5}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{BC8024EB-E188-4157-9FCF-9F6B4EB97B1C}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{BF8EDC64-B5F0-4EDA-91D0-DC844F8E90BD}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{C60B5A81-F62D-432F-B5C9-426925480FEB}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{CBFA5D2C-7180-417F-84ED-AE258DA7B10A}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{D3F2300F-B8CA-4334-A44A-ED2BE07D2700}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{DAE221DE-0B27-44B0-8D74-B4AE4E187DE9}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{E4F4D513-2FFC-4ACB-A1D8-99E40BC3E958}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{EEF81822-3166-4116-81C3-3D5DFBA8187D}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{F0A66D85-2B44-4368-A915-8435EFE12CAF}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{F4C4F54A-F440-4594-8603-69B9C4D6A52E}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{F4CAC4BA-987B-4551-9D3E-4F9D8E8C74D3}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{F7A65D1C-D573-4E9B-907E-724B5E185CDD}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{FB33C5C8-A7D7-4F5F-B14F-3978009FE369}
Successfully deleted: [Empty Folder] C:\Users\Venca\appdata\local\{FD092B73-F0C9-4FF5-9322-681B099D7F79}



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on čt 18.07.2013 at 22:34:37,92
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod memphisto » 19 črc 2013 08:52

Zavři všechny programy a prohlížeče.
Odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller (Pro Windows Vista nebo WIN7 klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status box zobrazuje "Scan" "
- Klikni na "Delete"
- Počkej, dokud status box zobrazuje "Smazání - Finished"
- Klikni na "Zprávy", zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [1].txt na ploše.
- Zavři RogueKiller


Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

poison
Level 2.5
Level 2.5
Příspěvky: 270
Registrován: říjen 06
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod poison » 19 črc 2013 14:10

RogueKiller V8.6.3 _x64_ [Jul 17 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Venca [Práva správce]
Mód : Kontrola -- Datum : 07/19/2013 14:00:22
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 6 ¤¤¤
[HJ POL] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL] HKLM\[...]\Wow6432Node\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: WDC WD5001AALS-00E3A0 ATA Device +++++
--- User ---
[MBR] 366dd799f923485c68452595efbc37bb
[BSP] b2b96a6e59cd53c949b6441211303d77 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 59900 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 122882048 | Size: 416937 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_07192013_140022.txt >>

RogueKiller V8.6.3 _x64_ [Jul 17 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Venca [Práva správce]
Mód : Odebrat -- Datum : 07/19/2013 14:01:10
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 6 ¤¤¤
[HJ POL] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL] HKLM\[...]\Wow6432Node\[...]\System : DisableRegistryTools (0) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: WDC WD5001AALS-00E3A0 ATA Device +++++
--- User ---
[MBR] 366dd799f923485c68452595efbc37bb
[BSP] b2b96a6e59cd53c949b6441211303d77 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 59900 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 122882048 | Size: 416937 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_07192013_140110.txt >>
RKreport[0]_S_07192013_140022.txt

poison
Level 2.5
Level 2.5
Příspěvky: 270
Registrován: říjen 06
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod poison » 19 črc 2013 14:11

14:03:24.0789 5040 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
14:03:26.0801 5040 ============================================================
14:03:26.0801 5040 Current date / time: 2013/07/19 14:03:26.0801
14:03:26.0801 5040 SystemInfo:
14:03:26.0801 5040
14:03:26.0801 5040 OS Version: 6.1.7601 ServicePack: 1.0
14:03:26.0801 5040 Product type: Workstation
14:03:26.0801 5040 ComputerName: VENCA-PC
14:03:26.0801 5040 UserName: Venca
14:03:26.0801 5040 Windows directory: C:\Windows
14:03:26.0801 5040 System windows directory: C:\Windows
14:03:26.0801 5040 Running under WOW64
14:03:26.0801 5040 Processor architecture: Intel x64
14:03:26.0801 5040 Number of processors: 4
14:03:26.0801 5040 Page size: 0x1000
14:03:26.0801 5040 Boot type: Normal boot
14:03:26.0801 5040 ============================================================
14:03:27.0956 5040 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
14:03:27.0956 5040 ============================================================
14:03:27.0956 5040 \Device\Harddisk0\DR0:
14:03:27.0956 5040 MBR partitions:
14:03:27.0956 5040 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
14:03:27.0956 5040 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x74FE000
14:03:27.0956 5040 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x7530800, BlocksNum 0x32E54800
14:03:27.0956 5040 ============================================================
14:03:27.0956 5040 C: <-> \Device\Harddisk0\DR0\Partition2
14:03:27.0987 5040 D: <-> \Device\Harddisk0\DR0\Partition3
14:03:27.0987 5040 ============================================================
14:03:27.0987 5040 Initialize success
14:03:27.0987 5040 ============================================================
14:03:31.0138 1728 ============================================================
14:03:31.0138 1728 Scan started
14:03:31.0138 1728 Mode: Manual;
14:03:31.0138 1728 ============================================================
14:03:32.0059 1728 ================ Scan system memory ========================
14:03:32.0059 1728 System memory - ok
14:03:32.0059 1728 ================ Scan services =============================
14:03:32.0183 1728 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
14:03:32.0183 1728 1394ohci - ok
14:03:32.0246 1728 [ 056FAAFF049CA7237194065423307189 ] acedrv05 C:\Windows\system32\drivers\acedrv05.sys
14:03:32.0246 1728 acedrv05 - ok
14:03:32.0277 1728 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
14:03:32.0277 1728 ACPI - ok
14:03:32.0308 1728 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
14:03:32.0308 1728 AcpiPmi - ok
14:03:32.0417 1728 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
14:03:32.0417 1728 AdobeARMservice - ok
14:03:32.0527 1728 [ 476BB014F3F68C0C15EDDD5B444DA8FF ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
14:03:32.0527 1728 AdobeFlashPlayerUpdateSvc - ok
14:03:32.0558 1728 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
14:03:32.0558 1728 adp94xx - ok
14:03:32.0573 1728 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
14:03:32.0573 1728 adpahci - ok
14:03:32.0589 1728 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
14:03:32.0589 1728 adpu320 - ok
14:03:32.0636 1728 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
14:03:32.0636 1728 AeLookupSvc - ok
14:03:32.0667 1728 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
14:03:32.0667 1728 AFD - ok
14:03:32.0683 1728 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
14:03:32.0683 1728 agp440 - ok
14:03:32.0698 1728 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
14:03:32.0698 1728 ALG - ok
14:03:32.0714 1728 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
14:03:32.0729 1728 aliide - ok
14:03:32.0776 1728 [ DE13EC0A1073AA3AD2B4372FFDAC4226 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
14:03:32.0776 1728 AMD External Events Utility - ok
14:03:32.0792 1728 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
14:03:32.0792 1728 amdide - ok
14:03:32.0807 1728 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
14:03:32.0807 1728 AmdK8 - ok
14:03:32.0979 1728 [ 534D5E4E987C6711F0DF6C1858F403D5 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
14:03:33.0010 1728 amdkmdag - ok
14:03:33.0041 1728 [ 3870A202C58DCA64F7F1015075FA15E4 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
14:03:33.0041 1728 amdkmdap - ok
14:03:33.0057 1728 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
14:03:33.0057 1728 AmdPPM - ok
14:03:33.0088 1728 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
14:03:33.0088 1728 amdsata - ok
14:03:33.0088 1728 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
14:03:33.0104 1728 amdsbs - ok
14:03:33.0119 1728 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
14:03:33.0135 1728 amdxata - ok
14:03:33.0166 1728 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
14:03:33.0166 1728 AppID - ok
14:03:33.0182 1728 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
14:03:33.0182 1728 AppIDSvc - ok
14:03:33.0213 1728 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
14:03:33.0213 1728 Appinfo - ok
14:03:33.0229 1728 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
14:03:33.0229 1728 arc - ok
14:03:33.0244 1728 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
14:03:33.0244 1728 arcsas - ok
14:03:33.0307 1728 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
14:03:33.0338 1728 aspnet_state - ok
14:03:33.0369 1728 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
14:03:33.0369 1728 AsyncMac - ok
14:03:33.0385 1728 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
14:03:33.0385 1728 atapi - ok
14:03:33.0431 1728 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
14:03:33.0431 1728 AudioEndpointBuilder - ok
14:03:33.0463 1728 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
14:03:33.0463 1728 AudioSrv - ok
14:03:33.0494 1728 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
14:03:33.0494 1728 AxInstSV - ok
14:03:33.0509 1728 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
14:03:33.0525 1728 b06bdrv - ok
14:03:33.0525 1728 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
14:03:33.0525 1728 b57nd60a - ok
14:03:33.0556 1728 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
14:03:33.0556 1728 BDESVC - ok
14:03:33.0572 1728 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
14:03:33.0572 1728 Beep - ok
14:03:33.0619 1728 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
14:03:33.0634 1728 BFE - ok
14:03:33.0665 1728 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\system32\qmgr.dll
14:03:33.0681 1728 BITS - ok
14:03:33.0697 1728 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
14:03:33.0697 1728 blbdrive - ok
14:03:33.0728 1728 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
14:03:33.0728 1728 bowser - ok
14:03:33.0743 1728 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
14:03:33.0743 1728 BrFiltLo - ok
14:03:33.0759 1728 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
14:03:33.0759 1728 BrFiltUp - ok
14:03:33.0790 1728 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
14:03:33.0790 1728 BridgeMP - ok
14:03:33.0837 1728 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
14:03:33.0837 1728 Browser - ok
14:03:33.0853 1728 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
14:03:33.0868 1728 Brserid - ok
14:03:33.0868 1728 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
14:03:33.0868 1728 BrSerWdm - ok
14:03:33.0884 1728 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
14:03:33.0884 1728 BrUsbMdm - ok
14:03:33.0899 1728 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
14:03:33.0899 1728 BrUsbSer - ok
14:03:33.0915 1728 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
14:03:33.0915 1728 BTHMODEM - ok
14:03:33.0931 1728 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
14:03:33.0931 1728 bthserv - ok
14:03:33.0962 1728 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
14:03:33.0962 1728 cdfs - ok
14:03:33.0993 1728 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
14:03:33.0993 1728 cdrom - ok
14:03:34.0024 1728 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
14:03:34.0024 1728 CertPropSvc - ok
14:03:34.0040 1728 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
14:03:34.0040 1728 circlass - ok
14:03:34.0055 1728 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
14:03:34.0055 1728 CLFS - ok
14:03:34.0087 1728 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:03:34.0087 1728 clr_optimization_v2.0.50727_32 - ok
14:03:34.0133 1728 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
14:03:34.0133 1728 clr_optimization_v2.0.50727_64 - ok
14:03:34.0180 1728 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:03:34.0243 1728 clr_optimization_v4.0.30319_32 - ok
14:03:34.0258 1728 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
14:03:34.0305 1728 clr_optimization_v4.0.30319_64 - ok
14:03:34.0321 1728 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
14:03:34.0321 1728 CmBatt - ok
14:03:34.0336 1728 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
14:03:34.0336 1728 cmdide - ok
14:03:34.0367 1728 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
14:03:34.0367 1728 CNG - ok
14:03:34.0367 1728 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
14:03:34.0367 1728 Compbatt - ok
14:03:34.0383 1728 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
14:03:34.0383 1728 CompositeBus - ok
14:03:34.0383 1728 COMSysApp - ok
14:03:34.0399 1728 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
14:03:34.0399 1728 crcdisk - ok
14:03:34.0430 1728 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
14:03:34.0430 1728 CryptSvc - ok
14:03:34.0477 1728 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
14:03:34.0477 1728 DcomLaunch - ok
14:03:34.0492 1728 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
14:03:34.0492 1728 defragsvc - ok
14:03:34.0523 1728 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
14:03:34.0523 1728 DfsC - ok
14:03:34.0570 1728 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
14:03:34.0570 1728 Dhcp - ok
14:03:34.0586 1728 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
14:03:34.0586 1728 discache - ok
14:03:34.0617 1728 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
14:03:34.0617 1728 Disk - ok
14:03:34.0648 1728 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
14:03:34.0648 1728 Dnscache - ok
14:03:34.0679 1728 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
14:03:34.0679 1728 dot3svc - ok
14:03:34.0711 1728 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
14:03:34.0711 1728 DPS - ok
14:03:34.0742 1728 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
14:03:34.0742 1728 drmkaud - ok
14:03:34.0773 1728 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
14:03:34.0773 1728 DXGKrnl - ok
14:03:34.0804 1728 [ 324FCD2DD8A4229DDEF3CC954FF12FA5 ] e1kexpress C:\Windows\system32\DRIVERS\e1k62x64.sys
14:03:34.0804 1728 e1kexpress - ok
14:03:34.0851 1728 [ 4337B4BF0F65B12A67D15CE868125B8F ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys
14:03:34.0851 1728 eamonm - ok
14:03:34.0867 1728 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
14:03:34.0867 1728 EapHost - ok
14:03:34.0945 1728 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
14:03:34.0960 1728 ebdrv - ok
14:03:34.0976 1728 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
14:03:34.0976 1728 EFS - ok
14:03:35.0007 1728 [ EAD87F4C50ACFC045C56E035C7BF01F9 ] ehdrv C:\Windows\system32\DRIVERS\ehdrv.sys
14:03:35.0007 1728 ehdrv - ok
14:03:35.0069 1728 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
14:03:35.0069 1728 ehRecvr - ok
14:03:35.0101 1728 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
14:03:35.0101 1728 ehSched - ok
14:03:35.0257 1728 [ C937841931F906DB88A5EAE472491B84 ] ekrn C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
14:03:35.0257 1728 ekrn - ok
14:03:35.0303 1728 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
14:03:35.0303 1728 elxstor - ok
14:03:35.0319 1728 [ 41A98830691AB0319357AEA95394F46A ] epfwwfpr C:\Windows\system32\DRIVERS\epfwwfpr.sys
14:03:35.0319 1728 epfwwfpr - ok
14:03:35.0366 1728 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
14:03:35.0366 1728 ErrDev - ok
14:03:35.0413 1728 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
14:03:35.0413 1728 EventSystem - ok
14:03:35.0444 1728 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
14:03:35.0444 1728 exfat - ok
14:03:35.0459 1728 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
14:03:35.0459 1728 fastfat - ok
14:03:35.0506 1728 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
14:03:35.0506 1728 Fax - ok
14:03:35.0522 1728 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
14:03:35.0522 1728 fdc - ok
14:03:35.0553 1728 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
14:03:35.0553 1728 fdPHost - ok
14:03:35.0553 1728 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
14:03:35.0569 1728 FDResPub - ok
14:03:35.0569 1728 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
14:03:35.0569 1728 FileInfo - ok
14:03:35.0584 1728 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
14:03:35.0584 1728 Filetrace - ok
14:03:35.0600 1728 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
14:03:35.0600 1728 flpydisk - ok
14:03:35.0631 1728 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
14:03:35.0631 1728 FltMgr - ok
14:03:35.0662 1728 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
14:03:35.0678 1728 FontCache - ok
14:03:35.0725 1728 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
14:03:35.0725 1728 FontCache3.0.0.0 - ok
14:03:35.0740 1728 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
14:03:35.0740 1728 FsDepends - ok
14:03:35.0771 1728 [ 6C06701BF1DB05405804D7EB610991CE ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
14:03:35.0771 1728 fssfltr - ok
14:03:35.0865 1728 [ 40CDFAD174B3D5E80F95DDA003C0B97F ] fsssvc C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
14:03:35.0865 1728 fsssvc - ok
14:03:35.0896 1728 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
14:03:35.0896 1728 Fs_Rec - ok
14:03:35.0927 1728 [ F16370F37CCA72ED2C21C230333C2C11 ] FTDIBUS C:\Windows\system32\drivers\ftdibus.sys
14:03:35.0927 1728 FTDIBUS - ok
14:03:35.0959 1728 [ 196C9BDDBEF9B6D0973F398BEF5B2EEE ] FTSER2K C:\Windows\system32\drivers\ftser2k.sys
14:03:35.0959 1728 FTSER2K - ok
14:03:35.0974 1728 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
14:03:35.0974 1728 fvevol - ok
14:03:35.0990 1728 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
14:03:35.0990 1728 gagp30kx - ok
14:03:36.0037 1728 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
14:03:36.0052 1728 gpsvc - ok
14:03:36.0193 1728 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:03:36.0193 1728 gupdate - ok
14:03:36.0239 1728 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:03:36.0239 1728 gupdatem - ok
14:03:36.0302 1728 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
14:03:36.0302 1728 hcw85cir - ok
14:03:36.0380 1728 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:03:36.0380 1728 HdAudAddService - ok
14:03:36.0395 1728 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
14:03:36.0395 1728 HDAudBus - ok
14:03:36.0442 1728 [ B6AC71AAA2B10848F57FC49D55A651AF ] HECIx64 C:\Windows\system32\DRIVERS\HECIx64.sys
14:03:36.0442 1728 HECIx64 - ok
14:03:36.0458 1728 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
14:03:36.0458 1728 HidBatt - ok
14:03:36.0473 1728 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
14:03:36.0473 1728 HidBth - ok
14:03:36.0489 1728 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
14:03:36.0489 1728 HidIr - ok
14:03:36.0505 1728 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
14:03:36.0505 1728 hidserv - ok
14:03:36.0520 1728 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
14:03:36.0520 1728 HidUsb - ok
14:03:36.0551 1728 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
14:03:36.0551 1728 hkmsvc - ok
14:03:36.0583 1728 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:03:36.0598 1728 HomeGroupListener - ok
14:03:36.0629 1728 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:03:36.0629 1728 HomeGroupProvider - ok
14:03:36.0645 1728 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
14:03:36.0645 1728 HpSAMD - ok
14:03:36.0692 1728 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
14:03:36.0692 1728 HTTP - ok
14:03:36.0723 1728 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
14:03:36.0723 1728 hwpolicy - ok
14:03:36.0754 1728 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
14:03:36.0754 1728 i8042prt - ok
14:03:36.0785 1728 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
14:03:36.0785 1728 iaStorV - ok
14:03:36.0817 1728 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
14:03:36.0832 1728 idsvc - ok
14:03:37.0004 1728 [ 4128D51B770BB68FE44EAF3AD1DBAB25 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
14:03:37.0051 1728 igfx - ok
14:03:37.0066 1728 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
14:03:37.0066 1728 iirsp - ok
14:03:37.0097 1728 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
14:03:37.0113 1728 IKEEXT - ok
14:03:37.0207 1728 [ C2F868881D48A568B525255F084EF063 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
14:03:37.0222 1728 IntcAzAudAddService - ok
14:03:37.0253 1728 [ AE594CC17C33AC146739494615E14851 ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys
14:03:37.0269 1728 IntcDAud - ok
14:03:37.0300 1728 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\DRIVERS\intelide.sys
14:03:37.0300 1728 intelide - ok
14:03:37.0316 1728 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
14:03:37.0316 1728 intelppm - ok
14:03:37.0331 1728 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
14:03:37.0331 1728 IPBusEnum - ok
14:03:37.0378 1728 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:03:37.0378 1728 IpFilterDriver - ok
14:03:37.0409 1728 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
14:03:37.0425 1728 iphlpsvc - ok
14:03:37.0441 1728 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
14:03:37.0441 1728 IPMIDRV - ok
14:03:37.0456 1728 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
14:03:37.0456 1728 IPNAT - ok
14:03:37.0472 1728 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
14:03:37.0472 1728 IRENUM - ok
14:03:37.0503 1728 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
14:03:37.0503 1728 isapnp - ok
14:03:37.0519 1728 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
14:03:37.0519 1728 iScsiPrt - ok
14:03:37.0565 1728 [ D596D915CF091DA1F8CE4BD38BB5D509 ] iusb3hcs C:\Windows\system32\DRIVERS\iusb3hcs.sys
14:03:37.0565 1728 iusb3hcs - ok
14:03:37.0565 1728 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
14:03:37.0581 1728 kbdclass - ok
14:03:37.0597 1728 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
14:03:37.0597 1728 kbdhid - ok
14:03:37.0612 1728 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
14:03:37.0612 1728 KeyIso - ok
14:03:37.0628 1728 KMService - ok
14:03:37.0659 1728 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
14:03:37.0659 1728 KSecDD - ok
14:03:37.0690 1728 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
14:03:37.0690 1728 KSecPkg - ok
14:03:37.0706 1728 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
14:03:37.0706 1728 ksthunk - ok
14:03:37.0737 1728 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
14:03:37.0737 1728 KtmRm - ok
14:03:37.0768 1728 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\System32\srvsvc.dll
14:03:37.0768 1728 LanmanServer - ok
14:03:37.0799 1728 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:03:37.0799 1728 LanmanWorkstation - ok
14:03:37.0862 1728 [ 83D8BE94E1CBCBE2EA8372DB1A95A159 ] LightScribeService C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
14:03:37.0862 1728 LightScribeService - ok
14:03:37.0877 1728 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
14:03:37.0877 1728 lltdio - ok
14:03:37.0909 1728 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
14:03:37.0924 1728 lltdsvc - ok
14:03:37.0940 1728 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
14:03:37.0940 1728 lmhosts - ok
14:03:38.0018 1728 [ 1D82A01A368255FE78C65CF66B5B8281 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
14:03:38.0018 1728 LMS - ok
14:03:38.0033 1728 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
14:03:38.0033 1728 LSI_FC - ok
14:03:38.0049 1728 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
14:03:38.0049 1728 LSI_SAS - ok
14:03:38.0065 1728 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
14:03:38.0065 1728 LSI_SAS2 - ok
14:03:38.0080 1728 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
14:03:38.0080 1728 LSI_SCSI - ok
14:03:38.0111 1728 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
14:03:38.0111 1728 luafv - ok
14:03:38.0158 1728 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
14:03:38.0158 1728 MBAMProtector - ok
14:03:38.0236 1728 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
14:03:38.0236 1728 MBAMScheduler - ok
14:03:38.0267 1728 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
14:03:38.0283 1728 MBAMService - ok
14:03:38.0299 1728 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
14:03:38.0314 1728 Mcx2Svc - ok
14:03:38.0314 1728 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
14:03:38.0314 1728 megasas - ok
14:03:38.0330 1728 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
14:03:38.0330 1728 MegaSR - ok
14:03:38.0392 1728 [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
14:03:38.0392 1728 Microsoft Office Groove Audit Service - ok
14:03:38.0408 1728 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
14:03:38.0423 1728 MMCSS - ok
14:03:38.0423 1728 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
14:03:38.0423 1728 Modem - ok
14:03:38.0455 1728 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
14:03:38.0455 1728 monitor - ok
14:03:38.0486 1728 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
14:03:38.0486 1728 mouclass - ok
14:03:38.0517 1728 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
14:03:38.0517 1728 mouhid - ok
14:03:38.0564 1728 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
14:03:38.0564 1728 mountmgr - ok
14:03:38.0595 1728 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
14:03:38.0595 1728 mpio - ok
14:03:38.0611 1728 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
14:03:38.0611 1728 mpsdrv - ok
14:03:38.0642 1728 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
14:03:38.0657 1728 MpsSvc - ok
14:03:38.0689 1728 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
14:03:38.0689 1728 MRxDAV - ok
14:03:38.0720 1728 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
14:03:38.0720 1728 mrxsmb - ok
14:03:38.0751 1728 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:03:38.0767 1728 mrxsmb10 - ok
14:03:38.0767 1728 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:03:38.0767 1728 mrxsmb20 - ok
14:03:38.0782 1728 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
14:03:38.0782 1728 msahci - ok
14:03:38.0798 1728 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
14:03:38.0798 1728 msdsm - ok
14:03:38.0813 1728 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
14:03:38.0813 1728 MSDTC - ok
14:03:38.0845 1728 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
14:03:38.0845 1728 Msfs - ok
14:03:38.0845 1728 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
14:03:38.0845 1728 mshidkmdf - ok
14:03:38.0876 1728 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
14:03:38.0876 1728 msisadrv - ok
14:03:38.0891 1728 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
14:03:38.0907 1728 MSiSCSI - ok
14:03:38.0907 1728 msiserver - ok
14:03:38.0923 1728 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
14:03:38.0923 1728 MSKSSRV - ok
14:03:38.0954 1728 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
14:03:38.0954 1728 MSPCLOCK - ok
14:03:38.0969 1728 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
14:03:38.0969 1728 MSPQM - ok
14:03:39.0016 1728 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
14:03:39.0016 1728 MsRPC - ok
14:03:39.0032 1728 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
14:03:39.0032 1728 mssmbios - ok
14:03:39.0047 1728 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
14:03:39.0047 1728 MSTEE - ok
14:03:39.0063 1728 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
14:03:39.0063 1728 MTConfig - ok
14:03:39.0079 1728 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
14:03:39.0079 1728 Mup - ok
14:03:39.0110 1728 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
14:03:39.0110 1728 napagent - ok
14:03:39.0125 1728 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
14:03:39.0141 1728 NativeWifiP - ok
14:03:39.0219 1728 [ E4534BCCDD1EA7A7A256BB9D6688A5FC ] NAUpdate C:\Program Files (x86)\Nero\Update\NASvc.exe
14:03:39.0235 1728 NAUpdate - ok
14:03:39.0250 1728 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
14:03:39.0266 1728 NDIS - ok
14:03:39.0281 1728 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
14:03:39.0281 1728 NdisCap - ok
14:03:39.0281 1728 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
14:03:39.0281 1728 NdisTapi - ok
14:03:39.0313 1728 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
14:03:39.0313 1728 Ndisuio - ok
14:03:39.0344 1728 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
14:03:39.0344 1728 NdisWan - ok
14:03:39.0359 1728 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
14:03:39.0359 1728 NDProxy - ok
14:03:39.0391 1728 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
14:03:39.0391 1728 NetBIOS - ok
14:03:39.0422 1728 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
14:03:39.0422 1728 NetBT - ok
14:03:39.0437 1728 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
14:03:39.0437 1728 Netlogon - ok
14:03:39.0453 1728 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
14:03:39.0469 1728 Netman - ok
14:03:39.0500 1728 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:03:39.0547 1728 NetMsmqActivator - ok
14:03:39.0547 1728 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:03:39.0547 1728 NetPipeActivator - ok
14:03:39.0578 1728 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
14:03:39.0578 1728 netprofm - ok
14:03:39.0578 1728 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:03:39.0593 1728 NetTcpActivator - ok
14:03:39.0593 1728 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:03:39.0593 1728 NetTcpPortSharing - ok
14:03:39.0609 1728 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
14:03:39.0609 1728 nfrd960 - ok
14:03:39.0656 1728 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
14:03:39.0656 1728 NlaSvc - ok
14:03:39.0671 1728 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
14:03:39.0671 1728 Npfs - ok
14:03:39.0687 1728 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
14:03:39.0687 1728 nsi - ok
14:03:39.0703 1728 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
14:03:39.0703 1728 nsiproxy - ok
14:03:39.0749 1728 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
14:03:39.0765 1728 Ntfs - ok
14:03:39.0765 1728 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
14:03:39.0765 1728 Null - ok
14:03:39.0812 1728 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
14:03:39.0812 1728 nvraid - ok
14:03:39.0843 1728 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
14:03:39.0843 1728 nvstor - ok
14:03:39.0874 1728 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
14:03:39.0874 1728 nv_agp - ok
14:03:39.0952 1728 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
14:03:39.0983 1728 odserv - ok
14:03:39.0999 1728 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
14:03:39.0999 1728 ohci1394 - ok
14:03:40.0046 1728 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:03:40.0046 1728 ose - ok
14:03:40.0093 1728 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
14:03:40.0093 1728 p2pimsvc - ok
14:03:40.0108 1728 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
14:03:40.0124 1728 p2psvc - ok
14:03:40.0139 1728 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
14:03:40.0139 1728 Parport - ok
14:03:40.0171 1728 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
14:03:40.0171 1728 partmgr - ok
14:03:40.0171 1728 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
14:03:40.0186 1728 PcaSvc - ok
14:03:40.0202 1728 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
14:03:40.0217 1728 pci - ok
14:03:40.0217 1728 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
14:03:40.0233 1728 pciide - ok
14:03:40.0249 1728 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
14:03:40.0249 1728 pcmcia - ok
14:03:40.0264 1728 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
14:03:40.0264 1728 pcw - ok
14:03:40.0280 1728 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
14:03:40.0280 1728 PEAUTH - ok
14:03:40.0358 1728 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
14:03:40.0358 1728 PerfHost - ok
14:03:40.0405 1728 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
14:03:40.0436 1728 pla - ok
14:03:40.0483 1728 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
14:03:40.0483 1728 PlugPlay - ok
14:03:40.0514 1728 [ BDEA03A01DD58FF120C9D757A28DAA8B ] pmkbdfltr C:\Windows\system32\DRIVERS\pmkbdfltr.sys
14:03:40.0529 1728 pmkbdfltr - ok
14:03:40.0561 1728 [ 796E8605A1EDD382BD1AE6147109D814 ] pmserenum C:\Windows\system32\DRIVERS\pmserenum.sys
14:03:40.0561 1728 pmserenum - ok
14:03:40.0576 1728 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
14:03:40.0576 1728 PNRPAutoReg - ok
14:03:40.0592 1728 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
14:03:40.0607 1728 PNRPsvc - ok
14:03:40.0623 1728 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
14:03:40.0623 1728 PolicyAgent - ok
14:03:40.0654 1728 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
14:03:40.0654 1728 Power - ok
14:03:40.0701 1728 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
14:03:40.0701 1728 PptpMiniport - ok
14:03:40.0717 1728 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
14:03:40.0717 1728 Processor - ok
14:03:40.0748 1728 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
14:03:40.0748 1728 ProfSvc - ok
14:03:40.0763 1728 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
14:03:40.0763 1728 ProtectedStorage - ok
14:03:40.0810 1728 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
14:03:40.0810 1728 Psched - ok
14:03:40.0841 1728 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
14:03:40.0857 1728 ql2300 - ok
14:03:40.0873 1728 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
14:03:40.0873 1728 ql40xx - ok
14:03:40.0873 1728 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
14:03:40.0888 1728 QWAVE - ok
14:03:40.0888 1728 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
14:03:40.0888 1728 QWAVEdrv - ok
14:03:40.0904 1728 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
14:03:40.0904 1728 RasAcd - ok
14:03:40.0935 1728 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
14:03:40.0951 1728 RasAgileVpn - ok
14:03:40.0951 1728 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
14:03:40.0951 1728 RasAuto - ok
14:03:40.0997 1728 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
14:03:40.0997 1728 Rasl2tp - ok
14:03:41.0044 1728 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
14:03:41.0044 1728 RasMan - ok
14:03:41.0044 1728 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
14:03:41.0044 1728 RasPppoe - ok
14:03:41.0075 1728 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
14:03:41.0075 1728 RasSstp - ok
14:03:41.0091 1728 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
14:03:41.0091 1728 rdbss - ok
14:03:41.0107 1728 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
14:03:41.0107 1728 rdpbus - ok
14:03:41.0107 1728 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
14:03:41.0122 1728 RDPCDD - ok
14:03:41.0138 1728 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
14:03:41.0138 1728 RDPENCDD - ok
14:03:41.0138 1728 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
14:03:41.0138 1728 RDPREFMP - ok
14:03:41.0169 1728 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
14:03:41.0169 1728 RDPWD - ok
14:03:41.0216 1728 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
14:03:41.0216 1728 rdyboost - ok
14:03:41.0231 1728 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
14:03:41.0231 1728 RemoteAccess - ok
14:03:41.0247 1728 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
14:03:41.0247 1728 RemoteRegistry - ok
14:03:41.0263 1728 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
14:03:41.0263 1728 RpcEptMapper - ok
14:03:41.0294 1728 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
14:03:41.0294 1728 RpcLocator - ok
14:03:41.0325 1728 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\System32\rpcss.dll
14:03:41.0341 1728 RpcSs - ok
14:03:41.0341 1728 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
14:03:41.0341 1728 rspndr - ok
14:03:41.0403 1728 [ B3F36B4B3F192EA87DDC119F3A0B3E45 ] RTL8192su C:\Windows\system32\DRIVERS\RTL8192su.sys
14:03:41.0419 1728 RTL8192su - ok
14:03:41.0434 1728 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
14:03:41.0434 1728 SamSs - ok
14:03:41.0481 1728 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
14:03:41.0481 1728 sbp2port - ok
14:03:41.0543 1728 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
14:03:41.0543 1728 SCardSvr - ok
14:03:41.0590 1728 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
14:03:41.0590 1728 scfilter - ok
14:03:41.0621 1728 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
14:03:41.0653 1728 Schedule - ok
14:03:41.0684 1728 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
14:03:41.0684 1728 SCPolicySvc - ok
14:03:41.0731 1728 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
14:03:41.0731 1728 SDRSVC - ok
14:03:41.0746 1728 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
14:03:41.0746 1728 secdrv - ok
14:03:41.0777 1728 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
14:03:41.0777 1728 seclogon - ok
14:03:41.0793 1728 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll
14:03:41.0793 1728 SENS - ok
14:03:41.0809 1728 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
14:03:41.0809 1728 SensrSvc - ok
14:03:41.0809 1728 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
14:03:41.0824 1728 Serenum - ok
14:03:41.0840 1728 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
14:03:41.0840 1728 Serial - ok
14:03:41.0855 1728 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
14:03:41.0855 1728 sermouse - ok
14:03:41.0887 1728 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
14:03:41.0887 1728 SessionEnv - ok
14:03:41.0918 1728 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
14:03:41.0918 1728 sffdisk - ok
14:03:41.0933 1728 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
14:03:41.0933 1728 sffp_mmc - ok
14:03:41.0949 1728 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
14:03:41.0949 1728 sffp_sd - ok
14:03:41.0965 1728 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
14:03:41.0965 1728 sfloppy - ok
14:03:41.0980 1728 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
14:03:41.0980 1728 SharedAccess - ok
14:03:41.0996 1728 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
14:03:42.0011 1728 ShellHWDetection - ok
14:03:42.0027 1728 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
14:03:42.0027 1728 SiSRaid2 - ok
14:03:42.0043 1728 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
14:03:42.0043 1728 SiSRaid4 - ok
14:03:42.0058 1728 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
14:03:42.0058 1728 Smb - ok
14:03:42.0105 1728 [ 20C99358D42DB9585A21BF3BC27FC9BC ] SmbDrv C:\Windows\system32\DRIVERS\Smb_driver.sys
14:03:42.0121 1728 SmbDrv - ok
14:03:42.0152 1728 [ 4A2972573225A2DE4DEC0AD68529DF0F ] SmbDrvI C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys
14:03:42.0152 1728 SmbDrvI - ok
14:03:42.0167 1728 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
14:03:42.0167 1728 SNMPTRAP - ok
14:03:42.0167 1728 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
14:03:42.0167 1728 spldr - ok
14:03:42.0199 1728 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
14:03:42.0199 1728 Spooler - ok
14:03:42.0292 1728 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
14:03:42.0308 1728 sppsvc - ok
14:03:42.0323 1728 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
14:03:42.0323 1728 sppuinotify - ok
14:03:42.0386 1728 [ 602884696850C86434530790B110E8EB ] sptd C:\Windows\system32\Drivers\sptd.sys
14:03:42.0386 1728 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: 602884696850C86434530790B110E8EB
14:03:42.0386 1728 sptd ( LockedFile.Multi.Generic ) - warning
14:03:42.0386 1728 sptd - detected LockedFile.Multi.Generic (1)
14:03:42.0417 1728 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
14:03:42.0417 1728 srv - ok
14:03:42.0448 1728 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
14:03:42.0448 1728 srv2 - ok
14:03:42.0495 1728 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
14:03:42.0495 1728 srvnet - ok
14:03:42.0526 1728 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
14:03:42.0526 1728 SSDPSRV - ok
14:03:42.0526 1728 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
14:03:42.0526 1728 SstpSvc - ok
14:03:42.0557 1728 Steam Client Service - ok
14:03:42.0573 1728 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
14:03:42.0573 1728 stexstor - ok
14:03:42.0635 1728 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
14:03:42.0635 1728 stisvc - ok
14:03:42.0651 1728 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
14:03:42.0651 1728 swenum - ok
14:03:42.0682 1728 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
14:03:42.0682 1728 swprv - ok
14:03:42.0713 1728 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
14:03:42.0745 1728 SysMain - ok
14:03:42.0776 1728 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
14:03:42.0776 1728 TabletInputService - ok
14:03:42.0807 1728 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
14:03:42.0823 1728 TapiSrv - ok
14:03:42.0823 1728 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
14:03:42.0823 1728 TBS - ok
14:03:42.0901 1728 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] Tcpip C:\Windows\system32\drivers\tcpip.sys
14:03:42.0916 1728 Tcpip - ok
14:03:42.0947 1728 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
14:03:42.0963 1728 TCPIP6 - ok
14:03:42.0994 1728 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
14:03:43.0010 1728 tcpipreg - ok
14:03:43.0025 1728 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
14:03:43.0025 1728 TDPIPE - ok
14:03:43.0057 1728 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
14:03:43.0057 1728 TDTCP - ok
14:03:43.0088 1728 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
14:03:43.0088 1728 tdx - ok
14:03:43.0103 1728 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
14:03:43.0103 1728 TermDD - ok
14:03:43.0135 1728 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
14:03:43.0150 1728 TermService - ok
14:03:43.0166 1728 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
14:03:43.0166 1728 Themes - ok
14:03:43.0166 1728 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
14:03:43.0181 1728 THREADORDER - ok
14:03:43.0181 1728 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
14:03:43.0181 1728 TrkWks - ok
14:03:43.0228 1728 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
14:03:43.0228 1728 TrustedInstaller - ok
14:03:43.0259 1728 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
14:03:43.0259 1728 tssecsrv - ok
14:03:43.0275 1728 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
14:03:43.0275 1728 TsUsbFlt - ok
14:03:43.0306 1728 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
14:03:43.0306 1728 tunnel - ok
14:03:43.0322 1728 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
14:03:43.0322 1728 uagp35 - ok
14:03:43.0353 1728 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
14:03:43.0353 1728 udfs - ok
14:03:43.0384 1728 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
14:03:43.0384 1728 UI0Detect - ok
14:03:43.0400 1728 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
14:03:43.0400 1728 uliagpkx - ok
14:03:43.0431 1728 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\drivers\umbus.sys
14:03:43.0431 1728 umbus - ok
14:03:43.0447 1728 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
14:03:43.0447 1728 UmPass - ok
14:03:43.0571 1728 [ C6142B8CB72558D91CEA8E38F1B7D905 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
14:03:43.0587 1728 UNS - ok
14:03:43.0603 1728 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
14:03:43.0618 1728 upnphost - ok
14:03:43.0649 1728 [ C9E9D59C0099A9FF51697E9306A44240 ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys
14:03:43.0649 1728 USBAAPL64 - ok
14:03:43.0681 1728 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\drivers\usbccgp.sys
14:03:43.0681 1728 usbccgp - ok
14:03:43.0712 1728 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
14:03:43.0712 1728 usbcir - ok
14:03:43.0727 1728 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\drivers\usbehci.sys
14:03:43.0727 1728 usbehci - ok
14:03:43.0759 1728 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
14:03:43.0759 1728 usbhub - ok
14:03:43.0790 1728 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\drivers\usbohci.sys
14:03:43.0790 1728 usbohci - ok
14:03:43.0821 1728 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
14:03:43.0821 1728 usbprint - ok
14:03:43.0852 1728 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
14:03:43.0852 1728 USBSTOR - ok
14:03:43.0868 1728 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
14:03:43.0868 1728 usbuhci - ok
14:03:43.0883 1728 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
14:03:43.0883 1728 UxSms - ok
14:03:43.0899 1728 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
14:03:43.0899 1728 VaultSvc - ok
14:03:43.0899 1728 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
14:03:43.0899 1728 vdrvroot - ok
14:03:43.0961 1728 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
14:03:43.0977 1728 vds - ok
14:03:43.0977 1728 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
14:03:43.0977 1728 vga - ok
14:03:43.0993 1728 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
14:03:43.0993 1728 VgaSave - ok
14:03:44.0008 1728 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
14:03:44.0008 1728 vhdmp - ok
14:03:44.0039 1728 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
14:03:44.0039 1728 viaide - ok
14:03:44.0055 1728 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
14:03:44.0055 1728 volmgr - ok
14:03:44.0102 1728 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
14:03:44.0102 1728 volmgrx - ok
14:03:44.0117 1728 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
14:03:44.0117 1728 volsnap - ok
14:03:44.0133 1728 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
14:03:44.0133 1728 vsmraid - ok
14:03:44.0164 1728 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
14:03:44.0195 1728 VSS - ok
14:03:44.0211 1728 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
14:03:44.0211 1728 vwifibus - ok
14:03:44.0242 1728 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
14:03:44.0242 1728 vwififlt - ok
14:03:44.0242 1728 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
14:03:44.0258 1728 W32Time - ok
14:03:44.0273 1728 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
14:03:44.0273 1728 WacomPen - ok
14:03:44.0289 1728 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
14:03:44.0305 1728 WANARP - ok
14:03:44.0320 1728 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
14:03:44.0320 1728 Wanarpv6 - ok
14:03:44.0367 1728 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
14:03:44.0383 1728 WatAdminSvc - ok
14:03:44.0429 1728 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
14:03:44.0476 1728 wbengine - ok
14:03:44.0492 1728 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
14:03:44.0492 1728 WbioSrvc - ok
14:03:44.0523 1728 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
14:03:44.0523 1728 wcncsvc - ok
14:03:44.0539 1728 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
14:03:44.0539 1728 WcsPlugInService - ok

poison
Level 2.5
Level 2.5
Příspěvky: 270
Registrován: říjen 06
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod poison » 19 črc 2013 14:12

14:03:44.0554 1728 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
14:03:44.0554 1728 Wd - ok
14:03:44.0601 1728 [ A3D04EBF5227886029B4532F20D026F7 ] WDC_SAM C:\Windows\system32\DRIVERS\wdcsam64.sys
14:03:44.0601 1728 WDC_SAM - ok
14:03:44.0632 1728 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
14:03:44.0648 1728 Wdf01000 - ok
14:03:44.0648 1728 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
14:03:44.0648 1728 WdiServiceHost - ok
14:03:44.0648 1728 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
14:03:44.0663 1728 WdiSystemHost - ok
14:03:44.0695 1728 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
14:03:44.0695 1728 WebClient - ok
14:03:44.0710 1728 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
14:03:44.0710 1728 Wecsvc - ok
14:03:44.0726 1728 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
14:03:44.0726 1728 wercplsupport - ok
14:03:44.0757 1728 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
14:03:44.0757 1728 WerSvc - ok
14:03:44.0757 1728 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
14:03:44.0773 1728 WfpLwf - ok
14:03:44.0788 1728 [ 2C3E71FF4F6E859AE3833BA206B00614 ] whfltr2k C:\Windows\system32\DRIVERS\whfltr2k.sys
14:03:44.0788 1728 whfltr2k - ok
14:03:44.0804 1728 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
14:03:44.0804 1728 WIMMount - ok
14:03:44.0819 1728 WinDefend - ok
14:03:44.0882 1728 [ 62A3E830ACC39EAD6CBB69095001F7B0 ] WinDriver6 C:\Windows\system32\drivers\windrvr6.sys
14:03:44.0882 1728 WinDriver6 - ok
14:03:44.0882 1728 WinHttpAutoProxySvc - ok
14:03:44.0944 1728 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
14:03:44.0944 1728 Winmgmt - ok
14:03:45.0007 1728 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
14:03:45.0038 1728 WinRM - ok
14:03:45.0100 1728 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
14:03:45.0100 1728 WinUsb - ok
14:03:45.0131 1728 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
14:03:45.0163 1728 Wlansvc - ok
14:03:45.0225 1728 [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
14:03:45.0225 1728 wlcrasvc - ok
14:03:45.0319 1728 [ 2BACD71123F42CEA603F4E205E1AE337 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
14:03:45.0319 1728 wlidsvc - ok
14:03:45.0350 1728 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
14:03:45.0365 1728 WmiAcpi - ok
14:03:45.0381 1728 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
14:03:45.0381 1728 wmiApSrv - ok
14:03:45.0397 1728 WMPNetworkSvc - ok
14:03:45.0412 1728 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
14:03:45.0412 1728 WPCSvc - ok
14:03:45.0428 1728 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
14:03:45.0428 1728 WPDBusEnum - ok
14:03:45.0443 1728 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
14:03:45.0443 1728 ws2ifsl - ok
14:03:45.0443 1728 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\system32\wscsvc.dll
14:03:45.0459 1728 wscsvc - ok
14:03:45.0459 1728 WSearch - ok
14:03:45.0521 1728 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
14:03:45.0553 1728 wuauserv - ok
14:03:45.0584 1728 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
14:03:45.0584 1728 WudfPf - ok
14:03:45.0599 1728 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
14:03:45.0599 1728 WUDFRd - ok
14:03:45.0646 1728 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
14:03:45.0646 1728 wudfsvc - ok
14:03:45.0662 1728 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll
14:03:45.0677 1728 WwanSvc - ok
14:03:45.0693 1728 ================ Scan global ===============================
14:03:45.0709 1728 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
14:03:45.0740 1728 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
14:03:45.0755 1728 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
14:03:45.0771 1728 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
14:03:45.0802 1728 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
14:03:45.0802 1728 [Global] - ok
14:03:45.0802 1728 ================ Scan MBR ==================================
14:03:45.0818 1728 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
14:03:45.0989 1728 \Device\Harddisk0\DR0 - ok
14:03:45.0989 1728 ================ Scan VBR ==================================
14:03:45.0989 1728 [ 57DFA95FC52AF8BDCB8BF6221C76B38B ] \Device\Harddisk0\DR0\Partition1
14:03:45.0989 1728 \Device\Harddisk0\DR0\Partition1 - ok
14:03:45.0989 1728 [ 7C8CD0B871044C9F2C7C95A9D024A50C ] \Device\Harddisk0\DR0\Partition2
14:03:45.0989 1728 \Device\Harddisk0\DR0\Partition2 - ok
14:03:46.0005 1728 [ 470B4ACF28EFB2D6FFE9E02E3D691D90 ] \Device\Harddisk0\DR0\Partition3
14:03:46.0005 1728 \Device\Harddisk0\DR0\Partition3 - ok
14:03:46.0005 1728 ============================================================
14:03:46.0005 1728 Scan finished
14:03:46.0005 1728 ============================================================
14:03:46.0021 3848 Detected object count: 1
14:03:46.0021 3848 Actual detected object count: 1
14:03:55.0100 3848 sptd ( LockedFile.Multi.Generic ) - skipped by user
14:03:55.0115 3848 sptd ( LockedFile.Multi.Generic ) - User select action: Skip
14:04:10.0481 4856 Deinitialize success

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod memphisto » 19 črc 2013 17:54

Jak je na tom PC? Dej nový HJT na dočištění.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

poison
Level 2.5
Level 2.5
Příspěvky: 270
Registrován: říjen 06
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod poison » 21 črc 2013 16:45

PC běhá v pořádku.

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:44:12, on 21.7.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16635)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
D:\Program Files (x86)ICQ7M\ICQ.exe
C:\Users\Venca\AppData\Local\Google\Update\1.3.21.153\GoogleCrashHandler.exe
C:\Windows\sysWow64\SearchProtocolHost.exe
C:\Users\Venca\Desktop\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [NBAgent] "D:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [ICQ] "D:\Program Files (x86)ICQ7M\ICQ.exe" silent loginmode=4
O4 - HKCU\..\Run: [Google Update] "C:\Users\Venca\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
O4 - HKCU\..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
O4 - HKCU\..\Run: [com.apple.dav.bookmarks.daemon] C:\Program Files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Program Files (x86)ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Program Files (x86)ICQ7M\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {4B54A9DE-EF1C-4EBE-A328-7C28EA3B433A} (Bitdefender QuickScan Control) - http://quickscan.bitdefender.com/qsax/qsax.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9747 bytes


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 75 hostů