Dobrý den mám takový problém hned po zapnutí pc mi vyskočí využití cpu na 100%.
log:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:20:17, on 27.4.2014
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16545)
Boot mode: Normal
Running processes:
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\Software Informer\softinfo.exe
C:\Program Files\CodeMeter\Runtime\bin\CodeMeterCC.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\Nekut Karel\Downloads\hijackthis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1:9421
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN Toolbar\Platform\6.3.2348.0\npwinext.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: @C:\Program Files\MSN Toolbar\Platform\6.3.2348.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\MSN Toolbar\Platform\6.3.2348.0\npwinext.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [mncwettgvSrv] C:\Windows\inf\mncwettgv.vbe
O4 - HKLM\..\Run: [NetFxUpdate_v1.1.4322] "C:\Windows\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe" 1 v1.1.4322 GAC + NI NID
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [Software Informer] "C:\Program Files\Software Informer\softinfo.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Startup: 4ae1eb56bfa85e86e8ae077d43c4d4da.exe
O4 - Startup: CodeMeter Control Center.lnk = C:\Program Files\CodeMeter\Runtime\bin\CodeMeterCC.exe
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Zdroje informácií - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {0067DBFC-A752-458C-AE6E-B9C7E63D4824} (Detekce zařízení) - http://www.logitech.com/devicedetector/ ... tion32.cab
O18 - Protocol: linkscanner - (no CLSID) - (no file)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Computer Backup (MyPC Backup) (BackupStack) - Unknown owner - C:\Program Files\MyPC Backup\BackupStack.exe (file missing)
O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) - WIBU-SYSTEMS AG - C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Protect Monitor (ProtectMonitor) - Unknown owner - C:\Program Files\PCDApp\StartHelp.exe
O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files\Tunngle\TnglCtrl.exe
--
End of file - 8671 bytes
100% využití cpu Vyřešeno
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: 100% využití cpu
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.
===================================================
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
===================================================
Stáhni AdwCleaner (by Xplode)
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
===================================================
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Pokud budou problémy , spusť v nouz. režimu.
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.
===================================================
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
===================================================
Stáhni AdwCleaner (by Xplode)
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
===================================================
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Pokud budou problémy , spusť v nouz. režimu.
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Re: 100% využití cpu
# AdwCleaner v3.205 - Report created 02/05/2014 at 16:58:07
# Updated 28/04/2014 by Xplode
# Operating System : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
# Username : Nekut Karel - NEKUTKAREL-PC
# Running from : C:\Users\Nekut Karel\Downloads\AdwCleaner.exe
# Option : Clean
***** [ Services ] *****
[#] Service Deleted : BackupStack
***** [ Files / Folders ] *****
Folder Deleted : C:\Program Files\Mobogenie
Folder Deleted : C:\Users\Administrator\AppData\Local\torch
Folder Deleted : C:\Users\ASPNET\AppData\Local\torch
Folder Deleted : C:\Users\Guest\AppData\Local\torch
Folder Deleted : C:\Users\Nekut Karel\AppData\Local\41
Folder Deleted : C:\Users\Nekut Karel\AppData\Local\torch
Folder Deleted : C:\Users\Nekut Karel\AppData\Roaming\EZDownloader
Folder Deleted : C:\Users\Nekut Karel\AppData\Roaming\SkypEmoticons
Folder Deleted : C:\Users\Nekut Karel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
Folder Deleted : C:\Users\UpdatusUser\AppData\Local\torch
Folder Deleted : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\wsp66ecb.default\Extensions\f6b78e05-0819-4914-a9b1-53baf8fa3cd8@5f1a7616-ab87-4cb2-b56e-1218d848ce49.com
Folder Deleted : C:\Users\Nekut Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apehpgkcgpefnlpfindggfdecmgihlaj
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkbaaeecbegaojagnaelpnphpfgaedco
Folder Deleted : C:\Users\ASPNET\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkbaaeecbegaojagnaelpnphpfgaedco
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkbaaeecbegaojagnaelpnphpfgaedco
Folder Deleted : C:\Users\UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkbaaeecbegaojagnaelpnphpfgaedco
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\Extensions\firefox@greygray.biz.xpi
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\wsp66ecb.default\Extensions\firefox@greygray.biz.xpi
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\Extensions\firefox@surftastic.net.xpi
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\wsp66ecb.default\Extensions\firefox@surftastic.net.xpi
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\wsp66ecb.default\Extensions\torntv@torntv.com.xpi
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\LiveSupport.exe_log.txt
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\regsvr32.exe_log.txt
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\wsp66ecb.default\searchplugins\WebSearch.xml
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\nhogbcndagiknbfomjgdeghehkljalhi
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ppjemjejnnojomfekgbpbbnecicblllf
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Classes\Applications\Torch.exe
Key Deleted : HKLM\SOFTWARE\Classes\driverscanner
Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Mobogenie.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5F189DF5-2D05-472B-9091-84D9848AE48B}{927d4ead}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220522292220}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566296620}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\GoforFiles
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKCU\Software\smarttweak
Key Deleted : HKCU\Software\Somoto
Key Deleted : HKLM\Software\DivX\Install\Setup\WizardLayout\ConduitToolbar
Key Deleted : HKLM\Software\GoforFiles
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
***** [ Browsers ] *****
-\\ Internet Explorer v9.0.8112.16545
-\\ Mozilla Firefox v14.0.1 (en-US)
[ File : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\prefs.js ]
[ File : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\wsp66ecb.default\prefs.js ]
Line Deleted : user_pref("browser.startup.homepage", "hxxp://websearch.searchguru.info/?pid=964&r=2013/12/14&hid=14679169653908595578&lg=EN&cc=CZ&unqvl=43");
Line Deleted : user_pref("browser.search.order.1", "WebSearch");
Line Deleted : user_pref("browser.search.defaultenginename", "WebSearch");
Line Deleted : user_pref("browser.search.selectedEngine", "WebSearch");
Line Deleted : user_pref("browser.search.defaulturl", "hxxp://websearch.searchguru.info/?pid=964&r=2013/12/14&hid=14679169653908595578&lg=EN&cc=CZ&unqvl=43&l=1&q=");
Line Deleted : user_pref("browser.search.order.1,S", "WebSearch");
Line Deleted : user_pref("browser.search.defaultenginename,S", "WebSearch");
Line Deleted : user_pref("browser.search.selectedEngine,S", "WebSearch");
Line Deleted : user_pref("keyword.URL", "hxxp://websearch.searchguru.info/?pid=964&r=2013/12/14&hid=14679169653908595578&lg=EN&cc=CZ&unqvl=43&l=1&q=");
-\\ Google Chrome v34.0.1847.131
[ File : C:\Users\Nekut Karel\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Search Provider] : hxxp://websearch.searchguru.info/?l=1&q={searchTerms}&pid=964&r=2013/12/14&hid=14679169653908595578&lg=EN&cc=CZ&unqvl=43
Deleted [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
Deleted [Extension] : apehpgkcgpefnlpfindggfdecmgihlaj
*************************
AdwCleaner[R0].txt - [14086 octets] - [24/11/2013 13:33:19]
AdwCleaner[R1].txt - [6513 octets] - [02/05/2014 16:48:26]
AdwCleaner[S0].txt - [13928 octets] - [24/11/2013 13:40:45]
AdwCleaner[S1].txt - [6487 octets] - [02/05/2014 16:58:07]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [6547 octets] ##########
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Verze: v2014.05.01.07
Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 9.0.8112.16421
Nekut Karel :: NEKUTKAREL-PC [administrátor]
2.5.2014 17:25:05
MBAM-log-2014-05-02 (17-40-46).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 337160
Uplynulý čas: 15 minut, 17 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 2
C:\Users\Nekut Karel\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\apehpgkcgpefnlpfindggfdecmgihlaj (PUP.Optional.CrossRider.A) -> Nebyla provedena žádná instrukce.
C:\Users\Nekut Karel\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_apehpgkcgpefnlpfindggfdecmgihlaj_0 (PUP.Optional.CrossRider.A) -> Nebyla provedena žádná instrukce.
Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)
(konec)
# Updated 28/04/2014 by Xplode
# Operating System : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
# Username : Nekut Karel - NEKUTKAREL-PC
# Running from : C:\Users\Nekut Karel\Downloads\AdwCleaner.exe
# Option : Clean
***** [ Services ] *****
[#] Service Deleted : BackupStack
***** [ Files / Folders ] *****
Folder Deleted : C:\Program Files\Mobogenie
Folder Deleted : C:\Users\Administrator\AppData\Local\torch
Folder Deleted : C:\Users\ASPNET\AppData\Local\torch
Folder Deleted : C:\Users\Guest\AppData\Local\torch
Folder Deleted : C:\Users\Nekut Karel\AppData\Local\41
Folder Deleted : C:\Users\Nekut Karel\AppData\Local\torch
Folder Deleted : C:\Users\Nekut Karel\AppData\Roaming\EZDownloader
Folder Deleted : C:\Users\Nekut Karel\AppData\Roaming\SkypEmoticons
Folder Deleted : C:\Users\Nekut Karel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
Folder Deleted : C:\Users\UpdatusUser\AppData\Local\torch
Folder Deleted : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\wsp66ecb.default\Extensions\f6b78e05-0819-4914-a9b1-53baf8fa3cd8@5f1a7616-ab87-4cb2-b56e-1218d848ce49.com
Folder Deleted : C:\Users\Nekut Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apehpgkcgpefnlpfindggfdecmgihlaj
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkbaaeecbegaojagnaelpnphpfgaedco
Folder Deleted : C:\Users\ASPNET\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkbaaeecbegaojagnaelpnphpfgaedco
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkbaaeecbegaojagnaelpnphpfgaedco
Folder Deleted : C:\Users\UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkbaaeecbegaojagnaelpnphpfgaedco
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\Extensions\firefox@greygray.biz.xpi
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\wsp66ecb.default\Extensions\firefox@greygray.biz.xpi
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\Extensions\firefox@surftastic.net.xpi
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\wsp66ecb.default\Extensions\firefox@surftastic.net.xpi
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\wsp66ecb.default\Extensions\torntv@torntv.com.xpi
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\LiveSupport.exe_log.txt
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\regsvr32.exe_log.txt
File Deleted : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\wsp66ecb.default\searchplugins\WebSearch.xml
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\nhogbcndagiknbfomjgdeghehkljalhi
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ppjemjejnnojomfekgbpbbnecicblllf
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Classes\Applications\Torch.exe
Key Deleted : HKLM\SOFTWARE\Classes\driverscanner
Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Mobogenie.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5F189DF5-2D05-472B-9091-84D9848AE48B}{927d4ead}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220522292220}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566296620}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\GoforFiles
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKCU\Software\smarttweak
Key Deleted : HKCU\Software\Somoto
Key Deleted : HKLM\Software\DivX\Install\Setup\WizardLayout\ConduitToolbar
Key Deleted : HKLM\Software\GoforFiles
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
***** [ Browsers ] *****
-\\ Internet Explorer v9.0.8112.16545
-\\ Mozilla Firefox v14.0.1 (en-US)
[ File : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\prefs.js ]
[ File : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\wsp66ecb.default\prefs.js ]
Line Deleted : user_pref("browser.startup.homepage", "hxxp://websearch.searchguru.info/?pid=964&r=2013/12/14&hid=14679169653908595578&lg=EN&cc=CZ&unqvl=43");
Line Deleted : user_pref("browser.search.order.1", "WebSearch");
Line Deleted : user_pref("browser.search.defaultenginename", "WebSearch");
Line Deleted : user_pref("browser.search.selectedEngine", "WebSearch");
Line Deleted : user_pref("browser.search.defaulturl", "hxxp://websearch.searchguru.info/?pid=964&r=2013/12/14&hid=14679169653908595578&lg=EN&cc=CZ&unqvl=43&l=1&q=");
Line Deleted : user_pref("browser.search.order.1,S", "WebSearch");
Line Deleted : user_pref("browser.search.defaultenginename,S", "WebSearch");
Line Deleted : user_pref("browser.search.selectedEngine,S", "WebSearch");
Line Deleted : user_pref("keyword.URL", "hxxp://websearch.searchguru.info/?pid=964&r=2013/12/14&hid=14679169653908595578&lg=EN&cc=CZ&unqvl=43&l=1&q=");
-\\ Google Chrome v34.0.1847.131
[ File : C:\Users\Nekut Karel\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Search Provider] : hxxp://websearch.searchguru.info/?l=1&q={searchTerms}&pid=964&r=2013/12/14&hid=14679169653908595578&lg=EN&cc=CZ&unqvl=43
Deleted [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
Deleted [Extension] : apehpgkcgpefnlpfindggfdecmgihlaj
*************************
AdwCleaner[R0].txt - [14086 octets] - [24/11/2013 13:33:19]
AdwCleaner[R1].txt - [6513 octets] - [02/05/2014 16:48:26]
AdwCleaner[S0].txt - [13928 octets] - [24/11/2013 13:40:45]
AdwCleaner[S1].txt - [6487 octets] - [02/05/2014 16:58:07]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [6547 octets] ##########
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Verze: v2014.05.01.07
Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 9.0.8112.16421
Nekut Karel :: NEKUTKAREL-PC [administrátor]
2.5.2014 17:25:05
MBAM-log-2014-05-02 (17-40-46).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 337160
Uplynulý čas: 15 minut, 17 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 2
C:\Users\Nekut Karel\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\apehpgkcgpefnlpfindggfdecmgihlaj (PUP.Optional.CrossRider.A) -> Nebyla provedena žádná instrukce.
C:\Users\Nekut Karel\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_apehpgkcgpefnlpfindggfdecmgihlaj_0 (PUP.Optional.CrossRider.A) -> Nebyla provedena žádná instrukce.
Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)
(konec)
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: 100% využití cpu
V HJT fixni:
O4 - HKLM\..\Run: [mncwettgvSrv] C:\Windows\inf\mncwettgv.vbe
O4 - Startup: 4ae1eb56bfa85e86e8ae077d43c4d4da.exe
====================================================
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
Klikni na „ Smazat“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
====================================================
Stáhni si Junkware Removal Tool
na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
====================================================
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
O4 - HKLM\..\Run: [mncwettgvSrv] C:\Windows\inf\mncwettgv.vbe
O4 - Startup: 4ae1eb56bfa85e86e8ae077d43c4d4da.exe
====================================================
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
Klikni na „ Smazat“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
====================================================
Stáhni si Junkware Removal Tool
na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
====================================================
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Re: 100% využití cpu
# AdwCleaner v3.205 - Report created 02/05/2014 at 21:59:29
# Updated 28/04/2014 by Xplode
# Operating System : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
# Username : Nekut Karel - NEKUTKAREL-PC
# Running from : C:\Users\Nekut Karel\Downloads\AdwCleaner (1).exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v9.0.8112.16545
-\\ Mozilla Firefox v14.0.1 (en-US)
[ File : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\prefs.js ]
[ File : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\wsp66ecb.default\prefs.js ]
-\\ Google Chrome v34.0.1847.131
[ File : C:\Users\Nekut Karel\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [14086 octets] - [24/11/2013 13:33:19]
AdwCleaner[R1].txt - [6513 octets] - [02/05/2014 16:48:26]
AdwCleaner[R2].txt - [1283 octets] - [02/05/2014 21:57:02]
AdwCleaner[S0].txt - [13928 octets] - [24/11/2013 13:40:45]
AdwCleaner[S1].txt - [6627 octets] - [02/05/2014 16:58:07]
AdwCleaner[S2].txt - [1204 octets] - [02/05/2014 21:59:29]
########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1264 octets] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows Vista (TM) Home Premium x86
Ran by Nekut Karel on pá 02.05.2014 at 22:06:25,05
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\software informer
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{F7F1DAE1-51DE-41EF-979E-F514D128DFD9}
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\Users\Nekut Karel\AppData\Roaming\getrighttogo"
Successfully deleted: [Folder] "C:\Users\Nekut Karel\AppData\Roaming\software informer"
Successfully deleted: [Folder] "C:\Users\Nekut Karel\appdata\locallow\boost_interprocess"
Successfully deleted: [Folder] "C:\Program Files\software informer"
Successfully deleted: [Folder] "C:\Users\Nekut Karel\AppData\Roaming\microsoft\windows\start menu\programs\smarttweak software"
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on pá 02.05.2014 at 22:09:53,50
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : Nekut Karel [Práva správce]
Mód : Kontrola -- Datum : 05/02/2014 22:17:10
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 7 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-3175436897-955967646-652882917-1000\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-3175436897-955967646-652882917-1000\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] IRP[IRP_MJ_CREATE] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC27EC1F8)
[Address] IRP[IRP_MJ_CLOSE] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC27EC1F8)
[Address] IRP[IRP_MJ_DEVICE_CONTROL] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC27EC1F8)
[Address] IRP[IRP_MJ_INTERNAL_DEVICE_CONTROL] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC27EC1F8)
[Address] IRP[IRP_MJ_POWER] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC27EC1F8)
[Address] IRP[IRP_MJ_SYSTEM_CONTROL] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC27EC1F8)
[Address] IRP[IRP_MJ_PNP] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC27EC1F8)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST3500320AS ATA Device +++++
--- User ---
[MBR] 12eb0d23bebc67f06c359bfbd4febcb4
[BSP] fff040ae739b45c3f139f0a85e35e386 : Windows Vista MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 476938 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_S_05022014_221710.txt >>
# Updated 28/04/2014 by Xplode
# Operating System : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
# Username : Nekut Karel - NEKUTKAREL-PC
# Running from : C:\Users\Nekut Karel\Downloads\AdwCleaner (1).exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v9.0.8112.16545
-\\ Mozilla Firefox v14.0.1 (en-US)
[ File : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\prefs.js ]
[ File : C:\Users\Nekut Karel\AppData\Roaming\Mozilla\Firefox\Profiles\wsp66ecb.default\prefs.js ]
-\\ Google Chrome v34.0.1847.131
[ File : C:\Users\Nekut Karel\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [14086 octets] - [24/11/2013 13:33:19]
AdwCleaner[R1].txt - [6513 octets] - [02/05/2014 16:48:26]
AdwCleaner[R2].txt - [1283 octets] - [02/05/2014 21:57:02]
AdwCleaner[S0].txt - [13928 octets] - [24/11/2013 13:40:45]
AdwCleaner[S1].txt - [6627 octets] - [02/05/2014 16:58:07]
AdwCleaner[S2].txt - [1204 octets] - [02/05/2014 21:59:29]
########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1264 octets] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows Vista (TM) Home Premium x86
Ran by Nekut Karel on pá 02.05.2014 at 22:06:25,05
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\software informer
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{F7F1DAE1-51DE-41EF-979E-F514D128DFD9}
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\Users\Nekut Karel\AppData\Roaming\getrighttogo"
Successfully deleted: [Folder] "C:\Users\Nekut Karel\AppData\Roaming\software informer"
Successfully deleted: [Folder] "C:\Users\Nekut Karel\appdata\locallow\boost_interprocess"
Successfully deleted: [Folder] "C:\Program Files\software informer"
Successfully deleted: [Folder] "C:\Users\Nekut Karel\AppData\Roaming\microsoft\windows\start menu\programs\smarttweak software"
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on pá 02.05.2014 at 22:09:53,50
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : Nekut Karel [Práva správce]
Mód : Kontrola -- Datum : 05/02/2014 22:17:10
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 7 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-3175436897-955967646-652882917-1000\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-3175436897-955967646-652882917-1000\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] IRP[IRP_MJ_CREATE] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC27EC1F8)
[Address] IRP[IRP_MJ_CLOSE] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC27EC1F8)
[Address] IRP[IRP_MJ_DEVICE_CONTROL] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC27EC1F8)
[Address] IRP[IRP_MJ_INTERNAL_DEVICE_CONTROL] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC27EC1F8)
[Address] IRP[IRP_MJ_POWER] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC27EC1F8)
[Address] IRP[IRP_MJ_SYSTEM_CONTROL] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC27EC1F8)
[Address] IRP[IRP_MJ_PNP] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC27EC1F8)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST3500320AS ATA Device +++++
--- User ---
[MBR] 12eb0d23bebc67f06c359bfbd4febcb4
[BSP] fff040ae739b45c3f139f0a85e35e386 : Windows Vista MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 476938 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_S_05022014_221710.txt >>
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: 100% využití cpu
CO mbam? Smazáno?
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje "Smazání- Finished "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje "Smazání- Finished "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Re: 100% využití cpu
MBAM smazáno
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : Nekut Karel [Práva správce]
Mód : Odebrat -- Datum : 05/03/2014 11:26:04
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 7 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKUS\S-1-5-21-3175436897-955967646-652882917-1000\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP PATH] HKUS\S-1-5-21-3175436897-955967646-652882917-1000\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] IRP[IRP_MJ_CREATE] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC2B291F8)
[Address] IRP[IRP_MJ_CLOSE] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC2B291F8)
[Address] IRP[IRP_MJ_DEVICE_CONTROL] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC2B291F8)
[Address] IRP[IRP_MJ_INTERNAL_DEVICE_CONTROL] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC2B291F8)
[Address] IRP[IRP_MJ_POWER] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC2B291F8)
[Address] IRP[IRP_MJ_SYSTEM_CONTROL] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC2B291F8)
[Address] IRP[IRP_MJ_PNP] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC2B291F8)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST3500320AS ATA Device +++++
--- User ---
[MBR] 12eb0d23bebc67f06c359bfbd4febcb4
[BSP] fff040ae739b45c3f139f0a85e35e386 : Windows Vista MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 476938 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_05032014_112604.txt >>
RKreport[0]_S_05022014_221710.txt;RKreport[0]_S_05032014_112521.txt
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : Nekut Karel [Práva správce]
Mód : Odebrat -- Datum : 05/03/2014 11:26:04
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 7 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKUS\S-1-5-21-3175436897-955967646-652882917-1000\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP PATH] HKUS\S-1-5-21-3175436897-955967646-652882917-1000\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Nekut Karel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] IRP[IRP_MJ_CREATE] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC2B291F8)
[Address] IRP[IRP_MJ_CLOSE] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC2B291F8)
[Address] IRP[IRP_MJ_DEVICE_CONTROL] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC2B291F8)
[Address] IRP[IRP_MJ_INTERNAL_DEVICE_CONTROL] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC2B291F8)
[Address] IRP[IRP_MJ_POWER] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC2B291F8)
[Address] IRP[IRP_MJ_SYSTEM_CONTROL] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC2B291F8)
[Address] IRP[IRP_MJ_PNP] : C:\Windows\System32\drivers\mountmgr.sys -> HOOKED (Unknown @ 0xC2B291F8)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST3500320AS ATA Device +++++
--- User ---
[MBR] 12eb0d23bebc67f06c359bfbd4febcb4
[BSP] fff040ae739b45c3f139f0a85e35e386 : Windows Vista MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 476938 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_05032014_112604.txt >>
RKreport[0]_S_05022014_221710.txt;RKreport[0]_S_05032014_112521.txt
Re: 100% využití cpu
11:28:52.0509 0x03e8 TDSS rootkit removing tool 3.0.0.34 Apr 29 2014 18:20:10
11:28:59.0044 0x03e8 ============================================================
11:28:59.0044 0x03e8 Current date / time: 2014/05/03 11:28:59.0044
11:28:59.0044 0x03e8 SystemInfo:
11:28:59.0044 0x03e8
11:28:59.0044 0x03e8 OS Version: 6.0.6002 ServicePack: 2.0
11:28:59.0044 0x03e8 Product type: Workstation
11:28:59.0044 0x03e8 ComputerName: NEKUTKAREL-PC
11:28:59.0045 0x03e8 UserName: Nekut Karel
11:28:59.0045 0x03e8 Windows directory: C:\Windows
11:28:59.0045 0x03e8 System windows directory: C:\Windows
11:28:59.0045 0x03e8 Processor architecture: Intel x86
11:28:59.0045 0x03e8 Number of processors: 2
11:28:59.0045 0x03e8 Page size: 0x1000
11:28:59.0045 0x03e8 Boot type: Normal boot
11:28:59.0045 0x03e8 ============================================================
11:29:01.0398 0x03e8 KLMD registered as C:\Windows\system32\drivers\51821343.sys
11:29:01.0470 0x03e8 System UUID: {3357C6F5-D339-8A88-357E-0F49B2914819}
11:29:02.0035 0x03e8 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
11:29:02.0038 0x03e8 ============================================================
11:29:02.0038 0x03e8 \Device\Harddisk0\DR0:
11:29:02.0038 0x03e8 MBR partitions:
11:29:02.0038 0x03e8 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x3A385000
11:29:02.0038 0x03e8 ============================================================
11:29:02.0077 0x03e8 C: <-> \Device\Harddisk0\DR0\Partition1
11:29:02.0078 0x03e8 ============================================================
11:29:02.0078 0x03e8 Initialize success
11:29:02.0078 0x03e8 ============================================================
11:29:09.0878 0x05b4 ============================================================
11:29:09.0878 0x05b4 Scan started
11:29:09.0878 0x05b4 Mode: Manual;
11:29:09.0878 0x05b4 ============================================================
11:29:09.0878 0x05b4 KSN ping started
11:29:36.0098 0x05b4 KSN ping finished: true
11:29:36.0946 0x05b4 ================ Scan system memory ========================
11:29:36.0946 0x05b4 System memory - ok
11:29:36.0946 0x05b4 ================ Scan services =============================
11:29:37.0019 0x05b4 1394hub - ok
11:29:37.0085 0x05b4 [ ADC420616C501B45D26C0FD3EF1E54E4, 29FC41D40A35AC5476E2A673CE5B12684E0CFA12A1AEBEEBE5883FBA5CA68B67 ] ACDaemon C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
11:29:37.0090 0x05b4 ACDaemon - ok
11:29:37.0141 0x05b4 [ 82B296AE1892FE3DBEE00C9CF92F8AC7, 54B22BA63E1DA616B546992141B0C3117BA057283B8F60CB9BECE203661FEBF3 ] ACPI C:\Windows\system32\drivers\acpi.sys
11:29:37.0149 0x05b4 ACPI - ok
11:29:37.0173 0x05b4 [ 11A52CF7B265631DEEB24C6149309EFF, CBA25D358185FD4BE261C6C1B518AD60F5D27D5FB418098AB262B10F5A11C178 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
11:29:37.0177 0x05b4 AdobeARMservice - ok
11:29:37.0225 0x05b4 [ C8C6C0D659734FDBF63F6F421A5416BC, 11C452D77D0A8A5E430D0D0C9949797FFC03D2E3DADB8FBB9B63EDA868AFF83C ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
11:29:37.0233 0x05b4 AdobeFlashPlayerUpdateSvc - ok
11:29:37.0303 0x05b4 [ 2EDC5BBAC6C651ECE337BDE8ED97C9FB, 0342700760874683A6DF4F149DACACEF0569D40C45FC5958C67100B3C5D9BBBC ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
11:29:37.0362 0x05b4 adp94xx - ok
11:29:37.0403 0x05b4 [ B84088CA3CDCA97DA44A984C6CE1CCAD, 87009809FB101BF51483FA32318CBCD209386582880C82417BE4FFAD1B04C8C1 ] adpahci C:\Windows\system32\drivers\adpahci.sys
11:29:37.0413 0x05b4 adpahci - ok
11:29:37.0428 0x05b4 [ 7880C67BCCC27C86FD05AA2AFB5EA469, C8B06E203EEA6EAD19651F212432005ABADFF21E2AA5699E34040527394F2677 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
11:29:37.0432 0x05b4 adpu160m - ok
11:29:37.0446 0x05b4 [ 9AE713F8E30EFC2ABCCD84904333DF4D, B0C7801AC6E0811C38F0474703F34283914C8873D851F59EE232834F7C0D8087 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
11:29:37.0451 0x05b4 adpu320 - ok
11:29:37.0476 0x05b4 [ 9D1FDA9E086BA64E3C93C9DE32461BCF, 200FD0BFC811EC8993AF9FC78F58823ECC717063F438B627FBCDD6BD7790CAA8 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
11:29:37.0478 0x05b4 AeLookupSvc - ok
11:29:37.0507 0x05b4 [ 3911B972B55FEA0478476B2E777B29FA, 62545B90C7DD3F73777E62CD8264E611A4D71B6956CABFD2D820D25F41F471FD ] AFD C:\Windows\system32\drivers\afd.sys
11:29:37.0512 0x05b4 AFD - ok
11:29:37.0527 0x05b4 [ EF23439CDD587F64C2C1B8825CEAD7D8, 762665CFC202B3E16CA2338887896FDF996331A363DC709F1EC088BF927133A3 ] agp440 C:\Windows\system32\drivers\agp440.sys
11:29:37.0530 0x05b4 agp440 - ok
11:29:37.0545 0x05b4 [ AE1FDF7BF7BB6C6A70F67699D880592A, B831BF156FC49287A19FC149383D437B1034EA6F42CE9D761EB90ABD0F8D96B1 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
11:29:37.0548 0x05b4 aic78xx - ok
11:29:37.0574 0x05b4 [ A1545B731579895D8CC44FC0481C1192, 6B0EE833BA39C142D625A03586CCD8F6C9C3136C603CE5DF5BAC1AA3423E3E7F ] ALG C:\Windows\System32\alg.exe
11:29:37.0577 0x05b4 ALG - ok
11:29:37.0588 0x05b4 [ 90395B64600EBB4552E26E178C94B2E4, 73095893964DC7915983B58A567184FC51949C99341E7E0D04D70CC4C4F95E37 ] aliide C:\Windows\system32\drivers\aliide.sys
11:29:37.0590 0x05b4 aliide - ok
11:29:37.0604 0x05b4 [ 2B13E304C9DFDFA5EB582F6A149FA2C7, 196CCE13E0376526B79D9C43D4071990576C4DD210A48E9E922B438AA11C95E7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
11:29:37.0608 0x05b4 amdagp - ok
11:29:37.0618 0x05b4 [ 0577DF1D323FE75A739C787893D300EA, 079EF3CA18FB847DB7E62929071BFF007FAF390E1DBF4C59F28DAAC6B9C2DE51 ] amdide C:\Windows\system32\drivers\amdide.sys
11:29:37.0621 0x05b4 amdide - ok
11:29:37.0630 0x05b4 [ DC487885BCEF9F28EECE6FAC0E5DDFC5, 24A62F6E628AD46273BC226F7BC3453A9C7B76F81ABB9FB801EBEFADB2AB7C9B ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
11:29:37.0633 0x05b4 AmdK7 - ok
11:29:37.0645 0x05b4 [ 93AE7F7DD54AB986A6F1A1B37BE7442D, ECE0ABA2DECEED94AC678240A4B604F04022F0740F2295CBD07D25F5917E878A ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
11:29:37.0647 0x05b4 AmdK8 - ok
11:29:37.0665 0x05b4 [ AD8FA28D8ED0D0A689A0559085CE0F18, 75A35973D0CAED504147FC4A78F6EFA755E74EC4A169689F279150769196744A ] AmdLLD C:\Windows\system32\DRIVERS\AmdLLD.sys
11:29:37.0668 0x05b4 AmdLLD - ok
11:29:37.0783 0x05b4 [ FBC2B15CD49B041B8A847F5E5932F005, EE15392B187F81CAA48D5A76511FD15F606FA04F6B79E512F40C0E6A549EB72E ] appdrv01 C:\Windows\system32\Drivers\appdrv01.sys
11:29:37.0845 0x05b4 appdrv01 - ok
11:29:37.0856 0x05b4 appdrvrem01 - ok
11:29:37.0883 0x05b4 [ C6D704C7F0434DC791AAC37CAC4B6E14, 35CF7D1895F97637E0C678A39F3049B871BCA9526D379C7793ED33B87D2EAC4C ] Appinfo C:\Windows\System32\appinfo.dll
11:29:37.0885 0x05b4 Appinfo - ok
11:29:37.0906 0x05b4 [ 5F673180268BB1FDB69C99B6619FE379, C4307A861163F96648109046A6C7D53AB1C9B10D0B841DD1A7D147D22F462649 ] arc C:\Windows\system32\drivers\arc.sys
11:29:37.0910 0x05b4 arc - ok
11:29:37.0926 0x05b4 [ 957F7540B5E7F602E44648C7DE5A1C05, F03C7708A6C9D2579ECE5A7413AFA068E1067D7191EC653A78BA4FEDE76CFBD8 ] arcsas C:\Windows\system32\drivers\arcsas.sys
11:29:37.0929 0x05b4 arcsas - ok
11:29:38.0017 0x05b4 [ 9D768C43FEF254DD50B1DBF8AD5C4C0B, A50854EA5C08605133B8BB4DFDC6090357C5665314AA72E0BFA1E07D4E451F09 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
11:29:38.0021 0x05b4 aspnet_state - ok
11:29:38.0041 0x05b4 [ B9FE438B3CAD82B2014710349A2022F7, F9A3045590DAC38D7389957377BDD78E608D3078686EFD046FADDC2381ABB599 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
11:29:38.0044 0x05b4 aswFsBlk - ok
11:29:38.0102 0x05b4 [ AE5549DD21F6DE06406031EF1D51ACC3, 7E4AA6B03864C3E09DB869174BC5660F825D43FC27ABBE54E84F89650FD7679F ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
11:29:38.0105 0x05b4 aswMonFlt - ok
11:29:38.0124 0x05b4 [ D084D0A7A66619FC29776CBBB9D5FA55, 1896F3A0A0D5C7E08A1A7D08F9D17D6C535FE688AD93C1BAB2A7D911ACAE1D27 ] AswRdr C:\Windows\system32\drivers\AswRdr.sys
11:29:38.0127 0x05b4 AswRdr - ok
11:29:38.0144 0x05b4 [ FA72FA503F580C3C628DD8C7D7622E37, 434FC6A3CB120299C80D99201D5FBA48E4E8C5DDB76F7F0EF4FE95EE522AEE6C ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
11:29:38.0156 0x05b4 aswRvrt - ok
11:29:38.0195 0x05b4 [ 4D53349D848C6BADB3D4ACBE98C27676, AC9EAE6F0611F8876CA45FA499A9C4D4DD8EC5DB77F5C52E1BAFD64598F4437A ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
11:29:38.0294 0x05b4 aswSnx - ok
11:29:38.0329 0x05b4 [ 813024DFD54A41B3AFAE2B1E2796CB80, A8C5FB0510E86B0BE567A67A412530312B36FB5BB777EEEE7E17C1D8D4D9699D ] aswSP C:\Windows\system32\drivers\aswSP.sys
11:29:38.0363 0x05b4 aswSP - ok
11:29:38.0400 0x05b4 [ 5E18413310134130D7772F0668698CB7, 18CBA5356341640085575D77ABD24358ACD818603FCA2BD49475239E5B50FDD1 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
11:29:38.0403 0x05b4 aswTdi - ok
11:29:38.0432 0x05b4 [ A5F637D61719D37A5B4868C385E363C0, 36505921AF5A09175395EBAEA29C72B2A69A3A9204384A767A5BE8A721F31B10 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
11:29:38.0456 0x05b4 aswVmm - ok
11:29:38.0496 0x05b4 [ 53B202ABEE6455406254444303E87BE1, 4C91CA8DD345FEDD74A6AF2C07580717703F979B7DE2532B1D00B9F6896DDE70 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
11:29:38.0510 0x05b4 AsyncMac - ok
11:29:38.0527 0x05b4 [ 1F05B78AB91C9075565A9D8A4B880BC4, 737BE9F9376DAB0CCDFED93EA6D67F0C432367EA63CD772A453485BE769AF3BD ] atapi C:\Windows\system32\drivers\atapi.sys
11:29:38.0528 0x05b4 atapi - ok
11:29:38.0553 0x05b4 [ F0D933B42CD0594048E4D5200AE9E417, FF53E843A99948568515964C3C97107FA875BBC3F2906BADEE0B29ACE5532F0D ] atksgt C:\Windows\system32\DRIVERS\atksgt.sys
11:29:38.0562 0x05b4 atksgt - ok
11:29:38.0590 0x05b4 [ 68E2A1A0407A66CF50DA0300852424AB, 5FFDAE4E477C90A855081B5120582810471F67D3E9C343779A7AFB8D684D16F8 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
11:29:38.0601 0x05b4 AudioEndpointBuilder - ok
11:29:38.0613 0x05b4 [ 68E2A1A0407A66CF50DA0300852424AB, 5FFDAE4E477C90A855081B5120582810471F67D3E9C343779A7AFB8D684D16F8 ] Audiosrv C:\Windows\System32\Audiosrv.dll
11:29:38.0621 0x05b4 Audiosrv - ok
11:29:38.0696 0x05b4 [ 9330941C8F6DF417F6DBBE998DB6687E, 28BC051D7C74721BAF85BE2AAB97EAE44152779106C5BDA1FDA07B9C049E2FDC ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
11:29:38.0698 0x05b4 avast! Antivirus - ok
11:29:38.0728 0x05b4 [ 67E506B75BD5326A3EC7B70BD014DFB6, 3B07243970CAB4E93A858BEA6E31F56AD0157C42D624F3FEB469E68EEEF65669 ] Beep C:\Windows\system32\drivers\Beep.sys
11:29:38.0729 0x05b4 Beep - ok
11:29:38.0765 0x05b4 [ C789AF0F724FDA5852FB9A7D3A432381, 4B0F7A3A8F2D45E49630D24F2630B8014BCDB793B9C6E83FD2B2863A54F62BF5 ] BFE C:\Windows\System32\bfe.dll
11:29:38.0776 0x05b4 BFE - ok
11:29:38.0821 0x05b4 [ 93952506C6D67330367F7E7934B6A02F, 1D9A6B10B9489C1A32F730E22CC399BFF0796E3FCB3BA52BE45ED487CAC59EBD ] BITS C:\Windows\System32\qmgr.dll
11:29:38.0842 0x05b4 BITS - ok
11:29:38.0849 0x05b4 blbdrive - ok
11:29:38.0881 0x05b4 [ 35F376253F687BDE63976CCB3F2108CA, C5EF6301D7BC067050038DB75D961681D1CBE418285AD60167C1334B0B54DFE9 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
11:29:38.0904 0x05b4 bowser - ok
11:29:38.0926 0x05b4 [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
11:29:38.0928 0x05b4 BrFiltLo - ok
11:29:38.0940 0x05b4 [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
11:29:38.0941 0x05b4 BrFiltUp - ok
11:29:38.0958 0x05b4 [ A3629A0C4226F9E9C72FAAEEBC3AD33C, FB4D2738B64AADA52B95A6CF7ED4CDBFE4DD4BEBCAF1AE9CE64317F97DB38DDF ] Browser C:\Windows\System32\browser.dll
11:29:38.0963 0x05b4 Browser - ok
11:29:38.0982 0x05b4 [ B304E75CFF293029EDDF094246747113, CB6B219B186C3511A0DE3CDE7F7B8966A9E32D808A952CA8C5B42B3A3A17BFB0 ] Brserid C:\Windows\system32\drivers\brserid.sys
11:29:38.0985 0x05b4 Brserid - ok
11:29:39.0000 0x05b4 [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
11:29:39.0003 0x05b4 BrSerWdm - ok
11:29:39.0014 0x05b4 [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
11:29:39.0016 0x05b4 BrUsbMdm - ok
11:29:39.0027 0x05b4 [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
11:29:39.0029 0x05b4 BrUsbSer - ok
11:29:39.0048 0x05b4 [ AD07C1EC6665B8B35741AB91200C6B68, DCE1305A30D6713222A01C1F1D03ED0ADABE23C742CE1E82BB142531B82A3FF7 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
11:29:39.0052 0x05b4 BTHMODEM - ok
11:29:39.0171 0x05b4 catchme - ok
11:29:39.0178 0x05b4 [ 7ADD03E75BEB9E6DD102C3081D29840A, 0CA14A77CE990B5AA32C0725C22CA190ECBC73B75064DD959CABAD79B8846F1D ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
11:29:39.0181 0x05b4 cdfs - ok
11:29:39.0214 0x05b4 [ 6B4BFFB9BECD728097024276430DB314, 4451EFEAD37B05C8A3CB610B6D72E73B55D3D1E1CC1B17405598C1EDAA93C2D5 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
11:29:39.0216 0x05b4 cdrom - ok
11:29:39.0241 0x05b4 [ 312EC3E37A0A1F2006534913E37B4423, 81B8F462336791D162DAFA8092C1F437638DA3022CA24A2458B9FE183FC18C5D ] CertPropSvc C:\Windows\System32\certprop.dll
11:29:39.0244 0x05b4 CertPropSvc - ok
11:29:39.0260 0x05b4 [ DA8E0AFC7BAA226C538EF53AC2F90897, 2BBB9966671A3B8325D215DBC29FBD7D912C13ADC562A0D4521D1FF9A6F445C0 ] circlass C:\Windows\system32\drivers\circlass.sys
11:29:39.0262 0x05b4 circlass - ok
11:29:39.0286 0x05b4 [ D7659D3B5B92C31E84E53C1431F35132, 6BFE644AD9890A8CEEDCC4B97ADD564AD57202FBC5D21599469E0C4B31BB27C6 ] CLFS C:\Windows\system32\CLFS.sys
11:29:39.0295 0x05b4 CLFS - ok
11:29:39.0337 0x05b4 [ 8EE772032E2FE80A924F3B8DD5082194, B743DF91563A22CC15D9B44105804B5866A29D3DFC156DBE88DFAFEF903B94C0 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:29:39.0341 0x05b4 clr_optimization_v2.0.50727_32 - ok
11:29:39.0378 0x05b4 [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:29:39.0382 0x05b4 clr_optimization_v4.0.30319_32 - ok
11:29:39.0400 0x05b4 [ 45201046C776FFDAF3FC8A0029C581C8, 68A68CF2B76598BC8610EB5B2D3FD5BDC9D51CFC6F51FB7A0B0C92A2BE910FC6 ] cmdide C:\Windows\system32\drivers\cmdide.sys
11:29:39.0402 0x05b4 cmdide - ok
11:29:39.0546 0x05b4 [ 8FDE9C9D9FDEC3B958EDFCC222FD1199, F6CD5C0B4046DEB6862C308740FB4CD75E5407CF246984E08AD819B1DBD897D8 ] CodeMeter.exe C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
11:29:39.0706 0x05b4 CodeMeter.exe - ok
11:29:39.0725 0x05b4 [ 82B8C91D327CFECF76CB58716F7D4997, 6F06A4BC44B170BB28BF464E9BB5216D39D11CB8D442570B575A741B032EAEE6 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
11:29:39.0727 0x05b4 Compbatt - ok
11:29:39.0733 0x05b4 COMSysApp - ok
11:29:39.0755 0x05b4 [ 2A213AE086BBEC5E937553C7D9A2B22C, 1F91ACC0426E0ED1717555B282F65629EF15021375B24A63C29C89ADE916EE2A ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
11:29:39.0758 0x05b4 crcdisk - ok
11:29:39.0779 0x05b4 [ 22A7F883508176489F559EE745B5BF5D, D6341E3FBC8A46D2D1F0477FA60EC4828B585D35B14609CD02868FD04ECD14DB ] Crusoe C:\Windows\system32\drivers\crusoe.sys
11:29:39.0795 0x05b4 Crusoe - ok
11:29:39.0842 0x05b4 [ 684C130BBC6DB681BAD4920A4C944AA5, DDE434B206984808351C98500824A33E6740B4326C455066027F8D549D4C3B92 ] CryptSvc C:\Windows\system32\cryptsvc.dll
11:29:39.0847 0x05b4 CryptSvc - ok
11:29:39.0895 0x05b4 [ 3B5B4D53FEC14F7476CA29A20CC31AC9, EC02A412DA5FDE2C759A4A2C5904579E1CE7C4999CE87145812F354FC8F5E183 ] DcomLaunch C:\Windows\system32\rpcss.dll
11:29:39.0911 0x05b4 DcomLaunch - ok
11:29:39.0930 0x05b4 [ 622C41A07CA7E6DD91770F50D532CB6C, 2A9040949CB45F9970FDE930278F30D2F08E957290CB3D4DC4F2CA94F3D444D2 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
11:29:39.0934 0x05b4 DfsC - ok
11:29:40.0028 0x05b4 [ 2CC3DCFB533A1035B13DCAB6160AB38B, C88C91F662ADE248EEE3B568E70C2BC2D5075B7D9B7D3C63E83D011C5F7812B0 ] DFSR C:\Windows\system32\DFSR.exe
11:29:40.0235 0x05b4 DFSR - ok
11:29:40.0273 0x05b4 [ 9028559C132146FB75EB7ACF384B086A, 35159D86706441ED94895B4629411B4445FCB4526AFD1F7036EE647931B7A94D ] Dhcp C:\Windows\System32\dhcpcsvc.dll
11:29:40.0279 0x05b4 Dhcp - ok
11:29:40.0308 0x05b4 [ 5D4AEFC3386920236A548271F8F1AF6A, 11B74D6800EC6F7AAEFB0B6A9F2E8376C7C3B8DB677F03AC3743CB004CA96B08 ] disk C:\Windows\system32\drivers\disk.sys
11:29:40.0311 0x05b4 disk - ok
11:29:40.0337 0x05b4 [ 57D762F6F5974AF0DA2BE88A3349BAAA, D9E7DC8F9FB7837F88BBB95B52147AA80E688FB9762EEA99B8046D9C6AD48F3C ] Dnscache C:\Windows\System32\dnsrslvr.dll
11:29:40.0343 0x05b4 Dnscache - ok
11:29:40.0361 0x05b4 [ 324FD74686B1EF5E7C19A8AF49E748F6, DC6EB4304555B60DD17E04D20DFE4E279718E4041A9310DE29E678834BB22C5B ] dot3svc C:\Windows\System32\dot3svc.dll
11:29:40.0369 0x05b4 dot3svc - ok
11:29:40.0391 0x05b4 [ A622E888F8AA2F6B49E9BC466F0E5DEF, 3DED7F22A29AD2F8C927DFA0FD87FDE5ED0BDCAC7260BD9F71D8EA34328C772A ] DPS C:\Windows\system32\dps.dll
11:29:40.0398 0x05b4 DPS - ok
11:29:40.0417 0x05b4 [ 97FEF831AB90BEE128C9AF390E243F80, A7F4118603E2D5DDDB117EF7C058684EA5B37690EFAB2BEBA570EEF9C36281BE ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
11:29:40.0418 0x05b4 drmkaud - ok
11:29:40.0452 0x05b4 [ 651554E483712B708EDE864D0CA1AA73, A016C03D630A2FF7FC44B826DEA890F5AC09DD270588CEAD05F63A5A0AC79249 ] DrvAgent32 C:\Windows\system32\Drivers\DrvAgent32.sys
11:29:40.0454 0x05b4 DrvAgent32 - ok
11:29:40.0494 0x05b4 [ 687AF6BB383885FF6A64071B189A7F3E, 1C751B8DD27F63E88D0223A8434CED7589AC00EC6275938C59D1B954F0354F78 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
11:29:40.0501 0x05b4 dtsoftbus01 - ok
11:29:40.0537 0x05b4 [ 988670D8343EF9835FB3659DB71B2EFA, 5F5370FDD08C4BFF0828341952E98E95F722CB779EEC08C9DD6212C4DF3CD33B ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
11:29:40.0554 0x05b4 DXGKrnl - ok
11:29:40.0583 0x05b4 [ F88FB26547FD2CE6D0A5AF2985892C48, F02E06E16830F5D3FAF61991F5A91E54BB3461F58AFE3BFB7A9066CD302B879F ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys
11:29:40.0587 0x05b4 E1G60 - ok
11:29:40.0594 0x05b4 EagleNT - ok
11:29:40.0650 0x05b4 [ FB37BFB8D0295E3186F5BD8EFB6840C8, EB8E9DC75FA8336DFBCD6845ACBC907F5287DB49537887E36A9E4C93E968C7B8 ] EagleXNt C:\Windows\system32\drivers\EagleXNt.sys
11:29:40.0666 0x05b4 EagleXNt - ok
11:29:40.0682 0x05b4 [ C0B95E40D85CD807D614E264248A45B9, 30421DAF1722A225222268CB8BA4FE60CB76C6FD0C9157B0F53FC1368F806A4E ] EapHost C:\Windows\System32\eapsvc.dll
11:29:40.0686 0x05b4 EapHost - ok
11:29:40.0706 0x05b4 [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371, F3E9CF5D8E9124CB06F08454C5F0E510DE19A92780151FB2F8A58A0905D59B8F ] Ecache C:\Windows\system32\drivers\ecache.sys
11:29:40.0712 0x05b4 Ecache - ok
11:29:40.0750 0x05b4 [ 9BE3744D295A7701EB425332014F0797, 1A139EE9232581E466591C5EBEF41E4BF1F82D99C1959F1C68C879B240E9F46D ] ehRecvr C:\Windows\ehome\ehRecvr.exe
11:29:40.0759 0x05b4 ehRecvr - ok
11:29:40.0788 0x05b4 [ AD1870C8E5D6DD340C829E6074BF3C3F, 064D07106A1BBE80294F1913354832F2B67D22274BB4D36C81D2D83C96FE0B88 ] ehSched C:\Windows\ehome\ehsched.exe
11:29:40.0793 0x05b4 ehSched - ok
11:29:40.0800 0x05b4 [ C27C4EE8926E74AA72EFCAB24C5242C3, F1EBF78CCE9BA76AFD0478BC66B67CA44DEAF3C380369BFCE91BD8F678C8608A ] ehstart C:\Windows\ehome\ehstart.dll
11:29:40.0802 0x05b4 ehstart - ok
11:29:40.0827 0x05b4 [ E8F3F21A71720C84BCF423B80028359F, 63114E6120F634224A0E83A5047B37C7D6F26CF99FE3C01CFC0AB8B1763BB084 ] elxstor C:\Windows\system32\drivers\elxstor.sys
11:29:40.0836 0x05b4 elxstor - ok
11:29:40.0871 0x05b4 [ 4E6B23DFC917EA39306B529B773950F4, C4BA77632B4BD46C4C1797F7F57399DB506D3EB6E5A0A36C269A793DAA3445C2 ] EMDMgmt C:\Windows\system32\emdmgmt.dll
11:29:40.0888 0x05b4 EMDMgmt - ok
11:29:40.0917 0x05b4 [ 67058C46504BC12D821F38CF99B7B28F, E8D19F305F78BCA1DA8425315F2C77A377CD51E3CC54323DC2FF355120EA097D ] EventSystem C:\Windows\system32\es.dll
11:29:40.0925 0x05b4 EventSystem - ok
11:29:40.0957 0x05b4 [ 22B408651F9123527BCEE54B4F6C5CAE, 31AF9649333A9496A9224001266D1B68CE2A31B9FB182A755D127FC5492AA6B2 ] exfat C:\Windows\system32\drivers\exfat.sys
11:29:40.0960 0x05b4 exfat - ok
11:29:40.0986 0x05b4 [ 1E9B9A70D332103C52995E957DC09EF8, 7E709D545D4025A2E9F3489CF2A231040904CB53E3E4EEAC15A22468FAB2A5B3 ] fastfat C:\Windows\system32\drivers\fastfat.sys
11:29:40.0990 0x05b4 fastfat - ok
11:29:41.0004 0x05b4 [ 63BDADA84951B9C03E641800E176898A, AD3EA20CAD0E0C438422D5D39AEA9E0AAD9E1DC866A696AE503C76F5FAC4BE6E ] fdc C:\Windows\system32\DRIVERS\fdc.sys
11:29:41.0006 0x05b4 fdc - ok
11:29:41.0024 0x05b4 [ 6629B5F0E98151F4AFDD87567EA32BA3, 8CC02D5E0639CDF74B2F85DB56D6199E1858F1A58465ED1D8B25C968E986132C ] fdPHost C:\Windows\system32\fdPHost.dll
11:29:41.0029 0x05b4 fdPHost - ok
11:29:41.0053 0x05b4 [ 89ED56DCE8E47AF40892778A5BD31FD2, 924360875796C3DDDDA8097FDF53F6846B227F7413766F00AEDD981EFD691BF9 ] FDResPub C:\Windows\system32\fdrespub.dll
11:29:41.0057 0x05b4 FDResPub - ok
11:29:41.0066 0x05b4 [ A8C0139A884861E3AAE9CFE73B208A9F, 3B021D148A2989AAA46AE58E5FED8A2DCA25E9212C2FA7F922880EF5A077E49B ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
11:29:41.0069 0x05b4 FileInfo - ok
11:29:41.0080 0x05b4 [ 0AE429A696AECBC5970E3CF2C62635AE, 1ECC315C099D17835788B68F0DE00EC98DC5AEE8F329D739E0DB90A898F22244 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
11:29:41.0082 0x05b4 Filetrace - ok
11:29:41.0102 0x05b4 [ 6603957EFF5EC62D25075EA8AC27DE68, B52D112301A6BFBD60959D7D2502AB2E1EB6BB7F5DCED46899F1F006C7F1E887 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
11:29:41.0104 0x05b4 flpydisk - ok
11:29:41.0130 0x05b4 [ 01334F9EA68E6877C4EF05D3EA8ABB05, 82F8AA6AD2B5077898773D4A5814819EAF0E872FFD95894E06FEDAB6EE92CF99 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
11:29:41.0137 0x05b4 FltMgr - ok
11:29:41.0159 0x05b4 [ 93F7E288350460E4BAE8807283DD4E6E, F55A9C579E5EAB03EA2993A76CEC72A09EFAECB371BCE697C23DAE0D6ED1F783 ] FlyPCI C:\Windows\system32\drivers\FlyPCI.sys
11:29:41.0161 0x05b4 FlyPCI - ok
11:29:41.0281 0x05b4 [ 2AFA3A46986AE935DAECEBC7E66314CF, 747FAF9B7F8291B83EE44B91E5708395E749DC87BD42CC3BF2CD41209C298F4D ] FontCache C:\Windows\system32\FntCache.dll
11:29:41.0323 0x05b4 FontCache - ok
11:29:41.0381 0x05b4 [ C7FBDD1ED42F82BFA35167A5C9803EA3, 372FF71070D5ECE17342466A690737A0622E93C98DBED8172C49B0854F0012B7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
11:29:41.0385 0x05b4 FontCache3.0.0.0 - ok
11:29:41.0423 0x05b4 [ D909075FA72C090F27AA926C32CB4612, F8610C20C4DD499D5B4ACEBD7107E52E25B6449AEED58D1A203F7D654B55C4DF ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
11:29:41.0425 0x05b4 fssfltr - ok
11:29:41.0520 0x05b4 [ 4CE9DAC1518FF7E77BD213E6394B9D77, D7D0D29DF93AC7DC5F85E385EEB45306C7BD87ACA7AAC5A8D47893D120C32C03 ] fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe
11:29:41.0579 0x05b4 fsssvc - ok
11:29:41.0606 0x05b4 [ B972A66758577E0BFD1DE0F91AAA27B5, E934034F3F740A83D4E7ABCD2C581845AC2945B0BCCAACF65CC3F99A1DBDE455 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
11:29:41.0608 0x05b4 Fs_Rec - ok
11:29:41.0626 0x05b4 [ 4E1CD0A45C50A8882616CAE5BF82F3C5, 1B909AF150F7119A5685999451A85012F4A92F15F38390A281EA507E2D247BAE ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
11:29:41.0629 0x05b4 gagp30kx - ok
11:29:41.0660 0x05b4 [ FE4D369172AC1CC19C876BDB5BDC31A3, B02D58846C11D63DED9D211A271B1A01788FA162E8CD34645DBEFF136173FB92 ] gfiark C:\Windows\system32\drivers\gfiark.sys
11:29:41.0662 0x05b4 gfiark - ok
11:29:41.0699 0x05b4 [ CD5D0AEEE35DFD4E986A5AA1500A6E66, DCED5126837292593F1C1B35DF18E3B631D6C0C6D0742B77C7B7742C55A7825F ] gpsvc C:\Windows\System32\gpsvc.dll
11:29:41.0714 0x05b4 gpsvc - ok
11:29:41.0743 0x05b4 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
11:29:41.0748 0x05b4 gupdate - ok
11:29:41.0755 0x05b4 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
11:29:41.0758 0x05b4 gupdatem - ok
11:29:41.0797 0x05b4 [ 833051C6C6C42117191935F734CFBD97, 5EB5672ABC7994A4AFF855A572158B8BE4FC6E541CFD4B9BE4FF2739A9A6AFB8 ] hamachi C:\Windows\system32\drivers\hamachi.sys
11:29:41.0799 0x05b4 hamachi - ok
11:29:41.0834 0x05b4 [ CB04C744BE0A61B1D648FAED182C3B59, 61DC0FF94325DAFCCB7B3980A48727EFBF1283FCF753EC16EF04C730525994C0 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
11:29:41.0841 0x05b4 HdAudAddService - ok
11:29:41.0879 0x05b4 [ 062452B7FFD68C8C042A6261FE8DFF4A, DD9873502456D3C058C6177AC223B28C71370E624FA0814C17EA3D93201F2B56 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
11:29:41.0896 0x05b4 HDAudBus - ok
11:29:41.0928 0x05b4 [ 1338520E78D90154ED6BE8F84DE5FCEB, 8531F1C5856983EBDA4C2B70162645ECE72FFFBA9FE7A28BCEDDF2169B7ECF9D ] HidBth C:\Windows\system32\drivers\hidbth.sys
11:29:41.0930 0x05b4 HidBth - ok
11:29:41.0948 0x05b4 [ FF3160C3A2445128C5A6D9B076DA519E, DC1A70C80CD55F33B3AD5A21E86AF7C3086D8CC2DC6148C058E74A871E0BAD4A ] HidIr C:\Windows\system32\drivers\hidir.sys
11:29:41.0950 0x05b4 HidIr - ok
11:29:41.0975 0x05b4 [ 84067081F3318162797385E11A8F0582, 11E32E3800CFCA37354388243F88D0239D622891BAC5483518A2BE5D1CA19015 ] hidserv C:\Windows\System32\hidserv.dll
11:29:41.0979 0x05b4 hidserv - ok
11:29:42.0001 0x05b4 [ CCA4B519B17E23A00B826C55716809CC, 91AD0758A6185B0FBBE383BDB1B457FFB850477AFF8DE040DE9527A97D28EF62 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
11:29:42.0003 0x05b4 HidUsb - ok
11:29:42.0023 0x05b4 [ D8AD255B37DA92434C26E4876DB7D418, C901EADDD93FC90C8F29F4B6DE808F8E4F486C877FC0AA27DA4ACDE17E28899D ] hkmsvc C:\Windows\system32\kmsvc.dll
11:29:42.0029 0x05b4 hkmsvc - ok
11:29:42.0043 0x05b4 [ DF353B401001246853763C4B7AAA6F50, 05C043493BDD99DEFBB0F5C3D8C475B06C2BF5629565ACF6F3B754002519B836 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
11:29:42.0046 0x05b4 HpCISSs - ok
11:29:42.0075 0x05b4 [ F870AA3E254628EBEAFE754108D664DE, B0444E7D246AA1982094030ACB991690F6A7DD3FB07B1BB6A1BC0F3AA9718A70 ] HTTP C:\Windows\system32\drivers\HTTP.sys
11:29:42.0086 0x05b4 HTTP - ok
11:29:42.0114 0x05b4 [ 324C2152FF2C61ABAE92D09F3CCA4D63, 2D09964C8003277F7DB1FFAA0DAEF15B205F3C4100FF601950BC9E544DC0B91F ] i2omp C:\Windows\system32\drivers\i2omp.sys
11:29:42.0117 0x05b4 i2omp - ok
11:29:42.0135 0x05b4 [ 22D56C8184586B7A1F6FA60BE5F5A2BD, D96A2962848C1F59B143BFEC22EC48BD1C5A75D0EBCFD7FB965E66B85FF7D8CA ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
11:29:42.0138 0x05b4 i8042prt - ok
11:29:42.0155 0x05b4 [ C957BF4B5D80B46C5017BF0101E6C906, 6B9186335E50E7E0DBAF574A224E524EC526B57AA02F509E4A8D0F905C9CE880 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
11:29:42.0162 0x05b4 iaStorV - ok
11:29:42.0259 0x05b4 [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
11:29:42.0272 0x05b4 IDriverT - ok
11:29:42.0370 0x05b4 [ 98477B08E61945F974ED9FDC4CB6BDAB, C7E8F661F6FBF6AB493E950D2E70363496E155B1838CE7B490B981BD840B04FC ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
11:29:42.0394 0x05b4 idsvc - ok
11:29:42.0454 0x05b4 [ 2D077BF86E843F901D8DB709C95B49A5, 78FF558A881F307858F5C7C74A748B8B2562AF3CAC7EA8639945609001D790CE ] iirsp C:\Windows\system32\drivers\iirsp.sys
11:29:42.0470 0x05b4 iirsp - ok
11:29:42.0528 0x05b4 [ 4687EE0C0DD2CE5F7AAA9C2E33C1DC78, FA8EBED2778D9F7560ADC1B563954EEF98AAE651C0553F2803372B37B122AEB3 ] IKEEXT C:\Windows\System32\ikeext.dll
11:29:42.0542 0x05b4 IKEEXT - ok
11:29:42.0664 0x05b4 [ F42F2F88017A2E2B6F783ACEF6C2C149, 84AA1EFEACE3663F5E3D937C655B5B61C72C6922082F6BB7D30CEF67C267A40A ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
11:29:42.0746 0x05b4 IntcAzAudAddService - ok
11:29:42.0773 0x05b4 [ 97469037714070E45194ED318D636401, DDB5AE39BE0BD37ECB44969A5FA740E5B1169342347D0DB3E5DF0353A6708271 ] intelide C:\Windows\system32\drivers\intelide.sys
11:29:42.0775 0x05b4 intelide - ok
11:29:42.0797 0x05b4 [ CE44CC04262F28216DD4341E9E36A16F, 2B316C4124DCFEAD7838B3D8FB8DBEC3F3B1EA8EA612AABB05B1275D0B230CCD ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
11:29:42.0800 0x05b4 intelppm - ok
11:29:42.0819 0x05b4 [ 9AC218C6E6105477484C6FDBE7D409A4, FF30D09CD2A0F5BBEC309E953370F194B6F26BF4227E627B594AAA48B0F5D3C2 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
11:29:42.0824 0x05b4 IPBusEnum - ok
11:29:42.0843 0x05b4 [ 62C265C38769B864CB25B4BCF62DF6C3, CAF6BCE967104233E216464E4729B0275C3BD426D812F404AB0EE83A7F2063D8 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
11:29:42.0847 0x05b4 IpFilterDriver - ok
11:29:42.0875 0x05b4 [ 1998BD97F950680BB55F55A7244679C2, A4E8BB4C6B2AF4800BD5E0BA8725FD0927F8FB6751AEBF6DD16B59C414CCB9D8 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
11:29:42.0884 0x05b4 iphlpsvc - ok
11:29:42.0890 0x05b4 IpInIp - ok
11:29:42.0905 0x05b4 [ 40F34F8ABA2A015D780E4B09138B6C17, 22F86888C6B4F76836E863A90730D8F0DBD518305D87A399A159387E79E9D2F7 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
11:29:42.0908 0x05b4 IPMIDRV - ok
11:29:42.0927 0x05b4 [ 8793643A67B42CEC66490B2A0CF92D68, 8B1ED1314E4C6623824DD6B9C15A0F7F996F4D243BF0B305421251BE40850907 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
11:29:42.0933 0x05b4 IPNAT - ok
11:29:42.0950 0x05b4 [ 109C0DFB82C3632FBD11949B73AEEAC9, 73B01426100256B7110DF0B74483AF1B62FC209612EEC29A7BF6DC31A7FBEFB6 ] IRENUM C:\Windows\system32\drivers\irenum.sys
11:29:42.0952 0x05b4 IRENUM - ok
11:29:42.0968 0x05b4 [ 350FCA7E73CF65BCEF43FAE1E4E91293, 68403FE3F4DC40919CD26A2CC42BE4386AE6874F47DD382348FFD79080721A13 ] isapnp C:\Windows\system32\drivers\isapnp.sys
11:29:42.0971 0x05b4 isapnp - ok
11:29:42.0999 0x05b4 [ 232FA340531D940AAC623B121A595034, 90C93F04D8A0094EEBD118F10223605B8169DA5F24C466F503CED5C014BD17B1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
11:29:43.0005 0x05b4 iScsiPrt - ok
11:29:43.0020 0x05b4 [ BCED60D16156E428F8DF8CF27B0DF150, 4934E9AB8A8A548548F0C63517F2BF4DE84B05E5C9C7C2AA6C1517B8F9C340D4 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
11:29:43.0022 0x05b4 iteatapi - ok
11:29:43.0035 0x05b4 [ 06FA654504A498C30ADCA8BEC4E87E7E, 651BC35A0A3D504573BBAB40DE81929BB18C9FC0CD7944FEAE0E99CD7658EA88 ] iteraid C:\Windows\system32\drivers\iteraid.sys
11:29:43.0037 0x05b4 iteraid - ok
11:29:43.0060 0x05b4 [ 37605E0A8CF00CBBA538E753E4344C6E, B9A9FFDCE45B0830E277CF322C28ACB49372C16144B0F676B283BE5DAE9A7F30 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
11:29:43.0063 0x05b4 kbdclass - ok
11:29:43.0081 0x05b4 [ EDE59EC70E25C24581ADD1FBEC7325F7, 41B37778E9A12675FC0DF74606AAF18C652EB88513B3C4889C5C512E14587CEE ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
11:29:43.0083 0x05b4 kbdhid - ok
11:29:43.0120 0x05b4 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] KeyIso C:\Windows\system32\lsass.exe
11:29:43.0124 0x05b4 KeyIso - ok
11:29:43.0175 0x05b4 [ 4A1445EFA932A3BAF5BDB02D7131EE20, 9DD262ED72DF268FE024063788F54124E320D0775D8DC0C5CAD099CD5F655DA2 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
11:29:43.0185 0x05b4 KSecDD - ok
11:29:43.0222 0x05b4 [ 8078F8F8F7A79E2E6B494523A828C585, BB399993166853F0C01B7508649ECD7E7473238267BA8333D0441128FE656347 ] KtmRm C:\Windows\system32\msdtckrm.dll
11:29:43.0236 0x05b4 KtmRm - ok
11:29:43.0262 0x05b4 [ 1BF5EEBFD518DD7298434D8C862F825D, F41C79410345C40B346EB5EDEA397ECD29ECB9B921AC3E19F9453E52A7B9288A ] LanmanServer C:\Windows\System32\srvsvc.dll
11:29:43.0270 0x05b4 LanmanServer - ok
11:29:43.0294 0x05b4 [ 1DB69705B695B987082C8BAEC0C6B34F, D395B272F6B69D4A9FC3CDEFD812EF0DBFECF3C1B1C787C7CC1E1A1B091B8DB3 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
11:29:43.0303 0x05b4 LanmanWorkstation - ok
11:29:43.0326 0x05b4 [ F8A7212D0864EF5E9185FB95E6623F4D, 277EAA06BD3D1CB31E6CD7B9ECD3A4B7D4AB7A369DB5FFF04EC7D749DF26E3D2 ] lirsgt C:\Windows\system32\DRIVERS\lirsgt.sys
11:29:43.0327 0x05b4 lirsgt - ok
11:29:43.0340 0x05b4 [ D1C5883087A0C3F1344D9D55A44901F6, 608D67357AFDDD538D2C12C93EB0793ECA4EB3AF2BAB779E881C41F50E4AB911 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
11:29:43.0342 0x05b4 lltdio - ok
11:29:43.0371 0x05b4 [ 2D5A428872F1442631D0959A34ABFF63, E532C6ECFFB936EFF744CA57BDC6394C89E797B6B0822D04F1F3F35D9BDDD4F0 ] lltdsvc C:\Windows\System32\lltdsvc.dll
11:29:43.0379 0x05b4 lltdsvc - ok
11:29:43.0411 0x05b4 [ 35D40113E4A5B961B6CE5C5857702518, 453097AEF46ED48107395D9A1696AAC259FD6CEA8A655D38C5E246FDDAB81664 ] lmhosts C:\Windows\System32\lmhsvc.dll
11:29:43.0416 0x05b4 lmhosts - ok
11:29:43.0438 0x05b4 [ A2262FB9F28935E862B4DB46438C80D2, 792684A68726BC007ACABB584682FDF4F059AE60888FB5B47ED68A97EA0BB5E6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
11:29:43.0441 0x05b4 LSI_FC - ok
11:29:43.0466 0x05b4 [ 30D73327D390F72A62F32C103DAF1D6D, 7BB5BFB0DCF33AF9907539B52DF7BA1943C1E75A17715B58DBC702ACA6D406EA ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
11:29:43.0468 0x05b4 LSI_SAS - ok
11:29:43.0490 0x05b4 [ E1E36FEFD45849A95F1AB81DE0159FE3, DA02B23A881D156A02D3874B41E6D042F84AD558B434280A6A6AC6B619668647 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
11:29:43.0492 0x05b4 LSI_SCSI - ok
11:29:43.0518 0x05b4 [ 8F5C7426567798E62A3B3614965D62CC, 659810257D942C5F4168E1247868CDA990F2324AC9ACAA9A6211F64B7AC9EC6E ] luafv C:\Windows\system32\drivers\luafv.sys
11:29:43.0521 0x05b4 luafv - ok
11:29:43.0538 0x05b4 [ 4470E3C1E0C3378E4CAB137893C12C3A, CA8E66356F0E671D5454E561E7EAD74DE25DCF53BE452369F96ECACFA8709489 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
11:29:43.0539 0x05b4 MBAMProtector - ok
11:29:43.0599 0x05b4 [ 65085456FD9A74D7F1A999520C299ECB, EA564BC913EF1B8A4CAA9242FC70F525B68CF1F3CA462F63B0B7215B93FE8530 ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
11:29:43.0609 0x05b4 MBAMScheduler - ok
11:29:43.0664 0x05b4 [ E0D7732F2D2E24B2DB3F67B6750295B8, AA5CA86AF1ACEC900F60339016B3DC55472DB40ADB99186005A7ABE67B7D66FC ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
11:29:43.0684 0x05b4 MBAMService - ok
11:29:43.0724 0x05b4 [ AEF9BABB8A506BC4CE0451A64AADED46, D5608A703EA7E97F11ED4D029B4B820440B0C9317DB7D7DC0152253CD723DC07 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
11:29:43.0729 0x05b4 Mcx2Svc - ok
11:29:43.0753 0x05b4 [ D153B14FC6598EAE8422A2037553ADCE, D5408B07B6EBA0146A605F11106497DC3DF8EC72E0DCC44BE1366A2A58ABE478 ] megasas C:\Windows\system32\drivers\megasas.sys
11:29:43.0754 0x05b4 megasas - ok
11:29:43.0775 0x05b4 [ 1076FFCFFAAE8385FD62DFCB25AC4708, 8C5C106FCB018E019DEBA8E1A6AA170CD7A93293F27994F724EBC486238DA0AA ] MMCSS C:\Windows\system32\mmcss.dll
11:29:43.0781 0x05b4 MMCSS - ok
11:29:43.0795 0x05b4 [ E13B5EA0F51BA5B1512EC671393D09BA, 5B380D1B435D809CA201FD5ED075D42F3C6BA1A4EEDBC4040F7E3329F05A334A ] Modem C:\Windows\system32\drivers\modem.sys
11:29:43.0797 0x05b4 Modem - ok
11:29:43.0826 0x05b4 [ 0A9BB33B56E294F686ABB7C1E4E2D8A8, 1E8031D51E074FDFB53E98E26DABF313B901C028D01196BFD402EED5D0A89595 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
11:29:43.0828 0x05b4 monitor - ok
11:29:43.0840 0x05b4 [ 5BF6A1326A335C5298477754A506D263, CC7F58E5955A448F6CE28D6D8EB98C7479E11F931B5C733CFE71A29B2E95923D ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
11:29:43.0842 0x05b4 mouclass - ok
11:29:43.0851 0x05b4 [ 93B8D4869E12CFBE663915502900876F, 7464DE60FAAD8793D855F1F86C3C865B3A3EE41C19A3E926D1BE4426E67F5EC2 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
11:29:43.0852 0x05b4 mouhid - ok
11:29:43.0872 0x05b4 [ BDAFC88AA6B92F7842416EA6A48E1600, 2CA8A7BB260016D6B7953980A94C45A3C5D41F7DC7E73EEFB1C18EA144749503 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
11:29:43.0874 0x05b4 MountMgr - ok
11:29:43.0895 0x05b4 [ 583A41F26278D9E0EA548163D6139397, 1F09D2FEEE1A8D4F1D9E53596158154099FD436A408F7E72E40F50778A3838A1 ] mpio C:\Windows\system32\drivers\mpio.sys
11:29:43.0899 0x05b4 mpio - ok
11:29:43.0920 0x05b4 [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E, 62055C0DCEB69873B8961AB17DBD002F44319A44CB05EC3A61421A0C6D4736CD ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
11:29:43.0923 0x05b4 mpsdrv - ok
11:29:43.0953 0x05b4 [ 5DE62C6E9108F14F6794060A9BDECAEC, 655E6645CC4A1EDBE5F51F5F80C7B504DD956851E788A6E4E4E08CDCDCE160D9 ] MpsSvc C:\Windows\system32\mpssvc.dll
11:29:43.0968 0x05b4 MpsSvc - ok
11:29:43.0991 0x05b4 [ 4FBBB70D30FD20EC51F80061703B001E, 72907A0CA5CFF82F40C02A65CD8EFD51D7CFC33BE67DE572D1ACF4FD3B248F0A ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
11:29:43.0993 0x05b4 Mraid35x - ok
11:29:44.0014 0x05b4 [ 82CEA0395524AACFEB58BA1448E8325C, 16E37990A291C848DE35F48EA7E09AE5B258AE589EB08A3FA2C60DC1278DE182 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
11:29:44.0021 0x05b4 MRxDAV - ok
11:29:44.0050 0x05b4 [ 1E94971C4B446AB2290DEB71D01CF0C2, 4701AA1B419AEF735CB2DA34532B0F1844433272C36D79F4EB55807E39B923D1 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
11:29:44.0055 0x05b4 mrxsmb - ok
11:29:44.0071 0x05b4 [ 4FCCB34D793B116423209C0F8B7A3B03, 7A483AEB691ADBE82779F12F0BB1CCCBFFD7E92902EC1ADC99AB7D129F887143 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
11:29:44.0078 0x05b4 mrxsmb10 - ok
11:29:44.0086 0x05b4 [ C3CB1B40AD4A0124D617A1199B0B9D7C, B975A39DE6D324C6274B6E3B883F36082A958F028335CEB3A37F44481EB284B3 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
11:29:44.0090 0x05b4 mrxsmb20 - ok
11:29:44.0113 0x05b4 [ 742AED7939E734C36B7E8D6228CE26B7, 6F727144BBD42C9C5555087CA51DE8D501B5CBEFB9967866CC578733E3C5E681 ] msahci C:\Windows\system32\drivers\msahci.sys
11:29:44.0127 0x05b4 msahci - ok
11:29:44.0156 0x05b4 [ 3FC82A2AE4CC149165A94699183D3028, 8575BE62A209672A5D8C68D75BBBB4FF06220CA73A939B0793442DAD2272598C ] msdsm C:\Windows\system32\drivers\msdsm.sys
11:29:44.0159 0x05b4 msdsm - ok
11:29:44.0203 0x05b4 [ FD7520CC3A80C5FC8C48852BB24C6DED, C3F3D7A07FAB9AF38A2A00BF0DF6EEE18CA8FE26277BEC9D8ADB793F2CD5EC1F ] MSDTC C:\Windows\System32\msdtc.exe
11:29:44.0211 0x05b4 MSDTC - ok
11:29:44.0234 0x05b4 [ A9927F4A46B816C92F461ACB90CF8515, 753284F726F9B4D3E7322C75532244CA43714F00717C2019391FB36DEE0738C0 ] Msfs C:\Windows\system32\drivers\Msfs.sys
11:29:44.0236 0x05b4 Msfs - ok
11:29:44.0250 0x05b4 [ 0F400E306F385C56317357D6DEA56F62, C48FA8193787359902D20D869F5F602CD66D3C5D061A58DDB72F51EED433C4BC ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
11:29:44.0252 0x05b4 msisadrv - ok
11:29:44.0269 0x05b4 [ 85466C0757A23D9A9AECDC0755203CB2, 79141B8DF9D7470466872AF03A85C3D3976512BFDBDB8B92A22225DC8EFD70A6 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
11:29:44.0276 0x05b4 MSiSCSI - ok
11:29:44.0281 0x05b4 msiserver - ok
11:29:44.0306 0x05b4 [ D8C63D34D9C9E56C059E24EC7185CC07, D0CBFB8D57E6D908679DC0488ED659CA35B92626DEA890873E165F051A1AD2AE ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
11:29:44.0308 0x05b4 MSKSSRV - ok
11:29:44.0322 0x05b4 [ 1D373C90D62DDB641D50E55B9E78D65E, 1D4897A96EA54D6FAC7916D69B4E88CAE1397C38CC8FAE08554772808476357B ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
11:29:44.0324 0x05b4 MSPCLOCK - ok
11:29:44.0341 0x05b4 [ B572DA05BF4E098D4BBA3A4734FB505B, B7923F204CEADD0F62C2FE4B7CF8C56DAB70F88093B15C5692D0E61490CF4BAA ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
11:29:44.0343 0x05b4 MSPQM - ok
11:29:44.0355 0x05b4 [ B49456D70555DE905C311BCDA6EC6ADB, 8E40586B3A1FAE9996459E0261726C9DD6A8D5F575604868C45604613385C92F ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
11:29:44.0363 0x05b4 MsRPC - ok
11:29:44.0381 0x05b4 [ E384487CB84BE41D09711C30CA79646C, 520391DEE14D4D6C1EA99C7D31DD95D56B44D54CA3CD8E5C9855E9C0A04F026C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
11:29:44.0384 0x05b4 mssmbios - ok
11:29:44.0404 0x05b4 [ 7199C1EEC1E4993CAF96B8C0A26BD58A, DD02DF8ED7AF5BB88BD2A91F38CE4C52432CB8044BDCBC41C320CD22B10B8A3B ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
11:29:44.0406 0x05b4 MSTEE - ok
11:29:44.0423 0x05b4 [ 6A57B5733D4CB702C8EA4542E836B96C, 080FB0B01E949D24CDD6876125B3A72DA9F88845D8B9A1A425BCA99E7ACF6821 ] Mup C:\Windows\system32\Drivers\mup.sys
11:29:44.0426 0x05b4 Mup - ok
11:29:44.0452 0x05b4 [ E4EAF0C5C1B41B5C83386CF212CA9584, 5946C3DCE65A0DB164169A1775DFCA544AF4E1895ADF6916BB1653F373F8D9AF ] napagent C:\Windows\system32\qagentRT.dll
11:29:44.0462 0x05b4 napagent - ok
11:29:44.0485 0x05b4 [ 85C44FDFF9CF7E72A40DCB7EC06A4416, DC37C99C458CA69B33BFD3894187089E947F4F9C01EC2ED024FA8614989E0956 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
11:29:44.0490 0x05b4 NativeWifiP - ok
11:29:44.0520 0x05b4 [ 1357274D1883F68300AEADD15D7BBB42, EE6352CBF0D9D633816F338159CDA27F1A805C3DDC3402D8605B50D8F3CD3300 ] NDIS C:\Windows\system32\drivers\ndis.sys
11:29:44.0535 0x05b4 NDIS - ok
11:29:44.0565 0x05b4 [ 0E186E90404980569FB449BA7519AE61, DE41791D9D3074007D6DD1D3933E7A2A13E3789D0AD4F029105B58279622FC1B ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
11:29:44.0567 0x05b4 NdisTapi - ok
11:29:44.0592 0x05b4 [ D6973AA34C4D5D76C0430B181C3CD389, 7C303F3D6BFF8B82E39998135B444837091AB1F9EB8F28D013E5EF45DB237EFC ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
11:29:44.0593 0x05b4 Ndisuio - ok
11:29:44.0617 0x05b4 [ 818F648618AE34F729FDB47EC68345C3, 5FC8F9237BD7FCE3C62D5BDDD49DC104BE2BECDC2FA8CDC1DB8F1891CBAA9140 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
11:29:44.0621 0x05b4 NdisWan - ok
11:29:44.0652 0x05b4 [ 71DAB552B41936358F3B541AE5997FB3, 30A8B3E33CBF04FC047254E404C0321F9028F2640036AA8AC1EA0A5E64551684 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
11:29:44.0654 0x05b4 NDProxy - ok
11:29:44.0665 0x05b4 [ BCD093A5A6777CF626434568DC7DBA78, 2A283DD93230361204EA0897864EAF0224CB8C02E025AE2E4237B07A598B3EBD ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
11:29:44.0669 0x05b4 NetBIOS - ok
11:29:44.0686 0x05b4 [ ECD64230A59CBD93C85F1CD1CAB9F3F6, 83650D756C1F2768A2AAAFC7924F2A4316ABAEB1708F4B05803CDDD699B5AB6F ] netbt C:\Windows\system32\DRIVERS\netbt.sys
11:29:44.0691 0x05b4 netbt - ok
11:29:44.0703 0x05b4 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] Netlogon C:\Windows\system32\lsass.exe
11:29:44.0706 0x05b4 Netlogon - ok
11:29:44.0738 0x05b4 [ C8052711DAECC48B982434C5116CA401, 417DEB86D157DD3F0B4678410FE27FDD3E8FA04AB03AF398F6C02BF207070B35 ] Netman C:\Windows\System32\netman.dll
11:29:44.0748 0x05b4 Netman - ok
11:29:44.0783 0x05b4 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:29:44.0789 0x05b4 NetMsmqActivator - ok
11:29:44.0797 0x05b4 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:29:44.0802 0x05b4 NetPipeActivator - ok
11:29:44.0835 0x05b4 [ 2EF3BBE22E5A5ACD1428EE387A0D0172, 55DB91EDD0339D2434C06445F8A716A48EA90925B0FF7EBF45BB79D4B54B80BF ] netprofm C:\Windows\System32\netprofm.dll
11:29:44.0845 0x05b4 netprofm - ok
11:29:44.0855 0x05b4 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:29:44.0859 0x05b4 NetTcpActivator - ok
11:29:44.0868 0x05b4 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:29:44.0872 0x05b4 NetTcpPortSharing - ok
11:29:44.0888 0x05b4 [ 2E7FB731D4790A1BC6270ACCEFACB36E, EE9A00B694E8A3A5842CDC56C7BA1364317AC8134E046A0059661D057094B1A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
11:29:44.0889 0x05b4 nfrd960 - ok
11:29:44.0940 0x05b4 [ 2997B15415F9BBE05B5A4C1C85E0C6A2, 5455536515FE740E18E090329FDCC40288724372AD18ACDB2CB4BB9D85CF681E ] NlaSvc C:\Windows\System32\nlasvc.dll
11:29:44.0948 0x05b4 NlaSvc - ok
11:29:44.0963 0x05b4 [ D36F239D7CCE1931598E8FB90A0DBC26, DF9397411D0CE5A87E3346D4E6E25BEC537A21BCE196CC55FD999CD08FC4A637 ] Npfs C:\Windows\system32\drivers\Npfs.sys
11:29:44.0965 0x05b4 Npfs - ok
11:29:44.0970 0x05b4 npggsvc - ok
11:29:44.0985 0x05b4 [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD, 15CA178518EB3D457AA4C109D97A8490821590842AE4E9841703B5A55870C8F6 ] nsi C:\Windows\system32\nsisvc.dll
11:29:44.0990 0x05b4 nsi - ok
11:29:45.0004 0x05b4 [ 609773E344A97410CE4EBF74A8914FCF, 90B9CBD2B62854DD503DE4A910CB987D402368EB99882FE20FFB6DEACD70F2BD ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
11:29:45.0005 0x05b4 nsiproxy - ok
11:29:45.0060 0x05b4 [ 2C1121F2B87E9A6B12485DF53CD848C7, E580428F3BA7B201C6C7CFADF1F44A6ECA4F589EDB034DA14260136236195936 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
11:29:45.0143 0x05b4 Ntfs - ok
11:29:45.0170 0x05b4 [ E875C093AEC0C978A90F30C9E0DFBB72, D3A480CD7EF374EFBC1BB831B33B81534774DDDBB0FB338BEE1D444949FD8DE7 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys
11:29:45.0171 0x05b4 ntrigdigi - ok
11:29:45.0184 0x05b4 [ C5DBBCDA07D780BDA9B685DF333BB41E, 3652893DFF05469A273C3073D8D0A9D6D6BBDEC7855FEA8EAB768F95BA674108 ] Null C:\Windows\system32\drivers\Null.sys
11:29:45.0186 0x05b4 Null - ok
11:29:45.0656 0x05b4 [ 50199B0578F7A4ADD5E16A42946CF34B, D4CB42C4FC42355BE007088FBB60B2B773188AB81FB9111861C0682DBCD79EFD ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
11:29:45.0890 0x05b4 nvlddmkm - ok
11:29:45.0941 0x05b4 [ E69E946F80C1C31C53003BFBF50CBB7C, A0A4BC57822B2CBC75602A969E28DCEDE04B41CC084E1EF1532B1BCDAEAA43BB ] nvraid C:\Windows\system32\drivers\nvraid.sys
11:29:45.0944 0x05b4 nvraid - ok
11:29:45.0958 0x05b4 [ 9E0BA19A28C498A6D323D065DB76DFFC, EA9E33ED2820ED39932FAE114A9CF1D87780ED6605D0260A6F22F920B48F34E9 ] nvstor C:\Windows\system32\drivers\nvstor.sys
11:29:45.0960 0x05b4 nvstor - ok
11:29:46.0015 0x05b4 [ 4BD107E339C9955708FA35A96BB8A8A8, 540A2C12B844491F5089CAEDA0EA57DAE03471081866AE1A08C5E65E592F772B ] nvsvc C:\Windows\system32\nvvsvc.exe
11:29:46.0033 0x05b4 nvsvc - ok
11:29:46.0153 0x05b4 [ 815290E27B7B7D12AF013638819BE1B6, 83078B422954BBF9FFEF606EB1788EC78A1F69E7FF99F0588B72A07873797C98 ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
11:29:46.0254 0x05b4 nvUpdatusService - ok
11:29:46.0279 0x05b4 [ 07C186427EB8FCC3D8D7927187F260F7, 9AFDE1CB7B7232BD019804BFC691580B9CC2E51A5BC0E5584B23907D532600D8 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
11:29:46.0282 0x05b4 nv_agp - ok
11:29:46.0287 0x05b4 NwlnkFlt - ok
11:29:46.0294 0x05b4 NwlnkFwd - ok
11:29:46.0315 0x05b4 [ BE32DA025A0BE1878F0EE8D6D9386CD5, B9D6CB4626FC67D108D713467C9ED8D0E2A071D98621B5531AD9D0C172FE7B89 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
11:29:46.0317 0x05b4 ohci1394 - ok
11:29:46.0356 0x05b4 [ 7A56CF3E3F12E8AF599963B16F50FB6A, 882C82BAE96D263138D4C0D6C425458B770B7B9C8E9C1D28AC918BF6BE94A5C2 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:28:59.0044 0x03e8 ============================================================
11:28:59.0044 0x03e8 Current date / time: 2014/05/03 11:28:59.0044
11:28:59.0044 0x03e8 SystemInfo:
11:28:59.0044 0x03e8
11:28:59.0044 0x03e8 OS Version: 6.0.6002 ServicePack: 2.0
11:28:59.0044 0x03e8 Product type: Workstation
11:28:59.0044 0x03e8 ComputerName: NEKUTKAREL-PC
11:28:59.0045 0x03e8 UserName: Nekut Karel
11:28:59.0045 0x03e8 Windows directory: C:\Windows
11:28:59.0045 0x03e8 System windows directory: C:\Windows
11:28:59.0045 0x03e8 Processor architecture: Intel x86
11:28:59.0045 0x03e8 Number of processors: 2
11:28:59.0045 0x03e8 Page size: 0x1000
11:28:59.0045 0x03e8 Boot type: Normal boot
11:28:59.0045 0x03e8 ============================================================
11:29:01.0398 0x03e8 KLMD registered as C:\Windows\system32\drivers\51821343.sys
11:29:01.0470 0x03e8 System UUID: {3357C6F5-D339-8A88-357E-0F49B2914819}
11:29:02.0035 0x03e8 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
11:29:02.0038 0x03e8 ============================================================
11:29:02.0038 0x03e8 \Device\Harddisk0\DR0:
11:29:02.0038 0x03e8 MBR partitions:
11:29:02.0038 0x03e8 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x3A385000
11:29:02.0038 0x03e8 ============================================================
11:29:02.0077 0x03e8 C: <-> \Device\Harddisk0\DR0\Partition1
11:29:02.0078 0x03e8 ============================================================
11:29:02.0078 0x03e8 Initialize success
11:29:02.0078 0x03e8 ============================================================
11:29:09.0878 0x05b4 ============================================================
11:29:09.0878 0x05b4 Scan started
11:29:09.0878 0x05b4 Mode: Manual;
11:29:09.0878 0x05b4 ============================================================
11:29:09.0878 0x05b4 KSN ping started
11:29:36.0098 0x05b4 KSN ping finished: true
11:29:36.0946 0x05b4 ================ Scan system memory ========================
11:29:36.0946 0x05b4 System memory - ok
11:29:36.0946 0x05b4 ================ Scan services =============================
11:29:37.0019 0x05b4 1394hub - ok
11:29:37.0085 0x05b4 [ ADC420616C501B45D26C0FD3EF1E54E4, 29FC41D40A35AC5476E2A673CE5B12684E0CFA12A1AEBEEBE5883FBA5CA68B67 ] ACDaemon C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
11:29:37.0090 0x05b4 ACDaemon - ok
11:29:37.0141 0x05b4 [ 82B296AE1892FE3DBEE00C9CF92F8AC7, 54B22BA63E1DA616B546992141B0C3117BA057283B8F60CB9BECE203661FEBF3 ] ACPI C:\Windows\system32\drivers\acpi.sys
11:29:37.0149 0x05b4 ACPI - ok
11:29:37.0173 0x05b4 [ 11A52CF7B265631DEEB24C6149309EFF, CBA25D358185FD4BE261C6C1B518AD60F5D27D5FB418098AB262B10F5A11C178 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
11:29:37.0177 0x05b4 AdobeARMservice - ok
11:29:37.0225 0x05b4 [ C8C6C0D659734FDBF63F6F421A5416BC, 11C452D77D0A8A5E430D0D0C9949797FFC03D2E3DADB8FBB9B63EDA868AFF83C ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
11:29:37.0233 0x05b4 AdobeFlashPlayerUpdateSvc - ok
11:29:37.0303 0x05b4 [ 2EDC5BBAC6C651ECE337BDE8ED97C9FB, 0342700760874683A6DF4F149DACACEF0569D40C45FC5958C67100B3C5D9BBBC ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
11:29:37.0362 0x05b4 adp94xx - ok
11:29:37.0403 0x05b4 [ B84088CA3CDCA97DA44A984C6CE1CCAD, 87009809FB101BF51483FA32318CBCD209386582880C82417BE4FFAD1B04C8C1 ] adpahci C:\Windows\system32\drivers\adpahci.sys
11:29:37.0413 0x05b4 adpahci - ok
11:29:37.0428 0x05b4 [ 7880C67BCCC27C86FD05AA2AFB5EA469, C8B06E203EEA6EAD19651F212432005ABADFF21E2AA5699E34040527394F2677 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
11:29:37.0432 0x05b4 adpu160m - ok
11:29:37.0446 0x05b4 [ 9AE713F8E30EFC2ABCCD84904333DF4D, B0C7801AC6E0811C38F0474703F34283914C8873D851F59EE232834F7C0D8087 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
11:29:37.0451 0x05b4 adpu320 - ok
11:29:37.0476 0x05b4 [ 9D1FDA9E086BA64E3C93C9DE32461BCF, 200FD0BFC811EC8993AF9FC78F58823ECC717063F438B627FBCDD6BD7790CAA8 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
11:29:37.0478 0x05b4 AeLookupSvc - ok
11:29:37.0507 0x05b4 [ 3911B972B55FEA0478476B2E777B29FA, 62545B90C7DD3F73777E62CD8264E611A4D71B6956CABFD2D820D25F41F471FD ] AFD C:\Windows\system32\drivers\afd.sys
11:29:37.0512 0x05b4 AFD - ok
11:29:37.0527 0x05b4 [ EF23439CDD587F64C2C1B8825CEAD7D8, 762665CFC202B3E16CA2338887896FDF996331A363DC709F1EC088BF927133A3 ] agp440 C:\Windows\system32\drivers\agp440.sys
11:29:37.0530 0x05b4 agp440 - ok
11:29:37.0545 0x05b4 [ AE1FDF7BF7BB6C6A70F67699D880592A, B831BF156FC49287A19FC149383D437B1034EA6F42CE9D761EB90ABD0F8D96B1 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
11:29:37.0548 0x05b4 aic78xx - ok
11:29:37.0574 0x05b4 [ A1545B731579895D8CC44FC0481C1192, 6B0EE833BA39C142D625A03586CCD8F6C9C3136C603CE5DF5BAC1AA3423E3E7F ] ALG C:\Windows\System32\alg.exe
11:29:37.0577 0x05b4 ALG - ok
11:29:37.0588 0x05b4 [ 90395B64600EBB4552E26E178C94B2E4, 73095893964DC7915983B58A567184FC51949C99341E7E0D04D70CC4C4F95E37 ] aliide C:\Windows\system32\drivers\aliide.sys
11:29:37.0590 0x05b4 aliide - ok
11:29:37.0604 0x05b4 [ 2B13E304C9DFDFA5EB582F6A149FA2C7, 196CCE13E0376526B79D9C43D4071990576C4DD210A48E9E922B438AA11C95E7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
11:29:37.0608 0x05b4 amdagp - ok
11:29:37.0618 0x05b4 [ 0577DF1D323FE75A739C787893D300EA, 079EF3CA18FB847DB7E62929071BFF007FAF390E1DBF4C59F28DAAC6B9C2DE51 ] amdide C:\Windows\system32\drivers\amdide.sys
11:29:37.0621 0x05b4 amdide - ok
11:29:37.0630 0x05b4 [ DC487885BCEF9F28EECE6FAC0E5DDFC5, 24A62F6E628AD46273BC226F7BC3453A9C7B76F81ABB9FB801EBEFADB2AB7C9B ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
11:29:37.0633 0x05b4 AmdK7 - ok
11:29:37.0645 0x05b4 [ 93AE7F7DD54AB986A6F1A1B37BE7442D, ECE0ABA2DECEED94AC678240A4B604F04022F0740F2295CBD07D25F5917E878A ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
11:29:37.0647 0x05b4 AmdK8 - ok
11:29:37.0665 0x05b4 [ AD8FA28D8ED0D0A689A0559085CE0F18, 75A35973D0CAED504147FC4A78F6EFA755E74EC4A169689F279150769196744A ] AmdLLD C:\Windows\system32\DRIVERS\AmdLLD.sys
11:29:37.0668 0x05b4 AmdLLD - ok
11:29:37.0783 0x05b4 [ FBC2B15CD49B041B8A847F5E5932F005, EE15392B187F81CAA48D5A76511FD15F606FA04F6B79E512F40C0E6A549EB72E ] appdrv01 C:\Windows\system32\Drivers\appdrv01.sys
11:29:37.0845 0x05b4 appdrv01 - ok
11:29:37.0856 0x05b4 appdrvrem01 - ok
11:29:37.0883 0x05b4 [ C6D704C7F0434DC791AAC37CAC4B6E14, 35CF7D1895F97637E0C678A39F3049B871BCA9526D379C7793ED33B87D2EAC4C ] Appinfo C:\Windows\System32\appinfo.dll
11:29:37.0885 0x05b4 Appinfo - ok
11:29:37.0906 0x05b4 [ 5F673180268BB1FDB69C99B6619FE379, C4307A861163F96648109046A6C7D53AB1C9B10D0B841DD1A7D147D22F462649 ] arc C:\Windows\system32\drivers\arc.sys
11:29:37.0910 0x05b4 arc - ok
11:29:37.0926 0x05b4 [ 957F7540B5E7F602E44648C7DE5A1C05, F03C7708A6C9D2579ECE5A7413AFA068E1067D7191EC653A78BA4FEDE76CFBD8 ] arcsas C:\Windows\system32\drivers\arcsas.sys
11:29:37.0929 0x05b4 arcsas - ok
11:29:38.0017 0x05b4 [ 9D768C43FEF254DD50B1DBF8AD5C4C0B, A50854EA5C08605133B8BB4DFDC6090357C5665314AA72E0BFA1E07D4E451F09 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
11:29:38.0021 0x05b4 aspnet_state - ok
11:29:38.0041 0x05b4 [ B9FE438B3CAD82B2014710349A2022F7, F9A3045590DAC38D7389957377BDD78E608D3078686EFD046FADDC2381ABB599 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
11:29:38.0044 0x05b4 aswFsBlk - ok
11:29:38.0102 0x05b4 [ AE5549DD21F6DE06406031EF1D51ACC3, 7E4AA6B03864C3E09DB869174BC5660F825D43FC27ABBE54E84F89650FD7679F ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
11:29:38.0105 0x05b4 aswMonFlt - ok
11:29:38.0124 0x05b4 [ D084D0A7A66619FC29776CBBB9D5FA55, 1896F3A0A0D5C7E08A1A7D08F9D17D6C535FE688AD93C1BAB2A7D911ACAE1D27 ] AswRdr C:\Windows\system32\drivers\AswRdr.sys
11:29:38.0127 0x05b4 AswRdr - ok
11:29:38.0144 0x05b4 [ FA72FA503F580C3C628DD8C7D7622E37, 434FC6A3CB120299C80D99201D5FBA48E4E8C5DDB76F7F0EF4FE95EE522AEE6C ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
11:29:38.0156 0x05b4 aswRvrt - ok
11:29:38.0195 0x05b4 [ 4D53349D848C6BADB3D4ACBE98C27676, AC9EAE6F0611F8876CA45FA499A9C4D4DD8EC5DB77F5C52E1BAFD64598F4437A ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
11:29:38.0294 0x05b4 aswSnx - ok
11:29:38.0329 0x05b4 [ 813024DFD54A41B3AFAE2B1E2796CB80, A8C5FB0510E86B0BE567A67A412530312B36FB5BB777EEEE7E17C1D8D4D9699D ] aswSP C:\Windows\system32\drivers\aswSP.sys
11:29:38.0363 0x05b4 aswSP - ok
11:29:38.0400 0x05b4 [ 5E18413310134130D7772F0668698CB7, 18CBA5356341640085575D77ABD24358ACD818603FCA2BD49475239E5B50FDD1 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
11:29:38.0403 0x05b4 aswTdi - ok
11:29:38.0432 0x05b4 [ A5F637D61719D37A5B4868C385E363C0, 36505921AF5A09175395EBAEA29C72B2A69A3A9204384A767A5BE8A721F31B10 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
11:29:38.0456 0x05b4 aswVmm - ok
11:29:38.0496 0x05b4 [ 53B202ABEE6455406254444303E87BE1, 4C91CA8DD345FEDD74A6AF2C07580717703F979B7DE2532B1D00B9F6896DDE70 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
11:29:38.0510 0x05b4 AsyncMac - ok
11:29:38.0527 0x05b4 [ 1F05B78AB91C9075565A9D8A4B880BC4, 737BE9F9376DAB0CCDFED93EA6D67F0C432367EA63CD772A453485BE769AF3BD ] atapi C:\Windows\system32\drivers\atapi.sys
11:29:38.0528 0x05b4 atapi - ok
11:29:38.0553 0x05b4 [ F0D933B42CD0594048E4D5200AE9E417, FF53E843A99948568515964C3C97107FA875BBC3F2906BADEE0B29ACE5532F0D ] atksgt C:\Windows\system32\DRIVERS\atksgt.sys
11:29:38.0562 0x05b4 atksgt - ok
11:29:38.0590 0x05b4 [ 68E2A1A0407A66CF50DA0300852424AB, 5FFDAE4E477C90A855081B5120582810471F67D3E9C343779A7AFB8D684D16F8 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
11:29:38.0601 0x05b4 AudioEndpointBuilder - ok
11:29:38.0613 0x05b4 [ 68E2A1A0407A66CF50DA0300852424AB, 5FFDAE4E477C90A855081B5120582810471F67D3E9C343779A7AFB8D684D16F8 ] Audiosrv C:\Windows\System32\Audiosrv.dll
11:29:38.0621 0x05b4 Audiosrv - ok
11:29:38.0696 0x05b4 [ 9330941C8F6DF417F6DBBE998DB6687E, 28BC051D7C74721BAF85BE2AAB97EAE44152779106C5BDA1FDA07B9C049E2FDC ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
11:29:38.0698 0x05b4 avast! Antivirus - ok
11:29:38.0728 0x05b4 [ 67E506B75BD5326A3EC7B70BD014DFB6, 3B07243970CAB4E93A858BEA6E31F56AD0157C42D624F3FEB469E68EEEF65669 ] Beep C:\Windows\system32\drivers\Beep.sys
11:29:38.0729 0x05b4 Beep - ok
11:29:38.0765 0x05b4 [ C789AF0F724FDA5852FB9A7D3A432381, 4B0F7A3A8F2D45E49630D24F2630B8014BCDB793B9C6E83FD2B2863A54F62BF5 ] BFE C:\Windows\System32\bfe.dll
11:29:38.0776 0x05b4 BFE - ok
11:29:38.0821 0x05b4 [ 93952506C6D67330367F7E7934B6A02F, 1D9A6B10B9489C1A32F730E22CC399BFF0796E3FCB3BA52BE45ED487CAC59EBD ] BITS C:\Windows\System32\qmgr.dll
11:29:38.0842 0x05b4 BITS - ok
11:29:38.0849 0x05b4 blbdrive - ok
11:29:38.0881 0x05b4 [ 35F376253F687BDE63976CCB3F2108CA, C5EF6301D7BC067050038DB75D961681D1CBE418285AD60167C1334B0B54DFE9 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
11:29:38.0904 0x05b4 bowser - ok
11:29:38.0926 0x05b4 [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
11:29:38.0928 0x05b4 BrFiltLo - ok
11:29:38.0940 0x05b4 [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
11:29:38.0941 0x05b4 BrFiltUp - ok
11:29:38.0958 0x05b4 [ A3629A0C4226F9E9C72FAAEEBC3AD33C, FB4D2738B64AADA52B95A6CF7ED4CDBFE4DD4BEBCAF1AE9CE64317F97DB38DDF ] Browser C:\Windows\System32\browser.dll
11:29:38.0963 0x05b4 Browser - ok
11:29:38.0982 0x05b4 [ B304E75CFF293029EDDF094246747113, CB6B219B186C3511A0DE3CDE7F7B8966A9E32D808A952CA8C5B42B3A3A17BFB0 ] Brserid C:\Windows\system32\drivers\brserid.sys
11:29:38.0985 0x05b4 Brserid - ok
11:29:39.0000 0x05b4 [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
11:29:39.0003 0x05b4 BrSerWdm - ok
11:29:39.0014 0x05b4 [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
11:29:39.0016 0x05b4 BrUsbMdm - ok
11:29:39.0027 0x05b4 [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
11:29:39.0029 0x05b4 BrUsbSer - ok
11:29:39.0048 0x05b4 [ AD07C1EC6665B8B35741AB91200C6B68, DCE1305A30D6713222A01C1F1D03ED0ADABE23C742CE1E82BB142531B82A3FF7 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
11:29:39.0052 0x05b4 BTHMODEM - ok
11:29:39.0171 0x05b4 catchme - ok
11:29:39.0178 0x05b4 [ 7ADD03E75BEB9E6DD102C3081D29840A, 0CA14A77CE990B5AA32C0725C22CA190ECBC73B75064DD959CABAD79B8846F1D ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
11:29:39.0181 0x05b4 cdfs - ok
11:29:39.0214 0x05b4 [ 6B4BFFB9BECD728097024276430DB314, 4451EFEAD37B05C8A3CB610B6D72E73B55D3D1E1CC1B17405598C1EDAA93C2D5 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
11:29:39.0216 0x05b4 cdrom - ok
11:29:39.0241 0x05b4 [ 312EC3E37A0A1F2006534913E37B4423, 81B8F462336791D162DAFA8092C1F437638DA3022CA24A2458B9FE183FC18C5D ] CertPropSvc C:\Windows\System32\certprop.dll
11:29:39.0244 0x05b4 CertPropSvc - ok
11:29:39.0260 0x05b4 [ DA8E0AFC7BAA226C538EF53AC2F90897, 2BBB9966671A3B8325D215DBC29FBD7D912C13ADC562A0D4521D1FF9A6F445C0 ] circlass C:\Windows\system32\drivers\circlass.sys
11:29:39.0262 0x05b4 circlass - ok
11:29:39.0286 0x05b4 [ D7659D3B5B92C31E84E53C1431F35132, 6BFE644AD9890A8CEEDCC4B97ADD564AD57202FBC5D21599469E0C4B31BB27C6 ] CLFS C:\Windows\system32\CLFS.sys
11:29:39.0295 0x05b4 CLFS - ok
11:29:39.0337 0x05b4 [ 8EE772032E2FE80A924F3B8DD5082194, B743DF91563A22CC15D9B44105804B5866A29D3DFC156DBE88DFAFEF903B94C0 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:29:39.0341 0x05b4 clr_optimization_v2.0.50727_32 - ok
11:29:39.0378 0x05b4 [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:29:39.0382 0x05b4 clr_optimization_v4.0.30319_32 - ok
11:29:39.0400 0x05b4 [ 45201046C776FFDAF3FC8A0029C581C8, 68A68CF2B76598BC8610EB5B2D3FD5BDC9D51CFC6F51FB7A0B0C92A2BE910FC6 ] cmdide C:\Windows\system32\drivers\cmdide.sys
11:29:39.0402 0x05b4 cmdide - ok
11:29:39.0546 0x05b4 [ 8FDE9C9D9FDEC3B958EDFCC222FD1199, F6CD5C0B4046DEB6862C308740FB4CD75E5407CF246984E08AD819B1DBD897D8 ] CodeMeter.exe C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
11:29:39.0706 0x05b4 CodeMeter.exe - ok
11:29:39.0725 0x05b4 [ 82B8C91D327CFECF76CB58716F7D4997, 6F06A4BC44B170BB28BF464E9BB5216D39D11CB8D442570B575A741B032EAEE6 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
11:29:39.0727 0x05b4 Compbatt - ok
11:29:39.0733 0x05b4 COMSysApp - ok
11:29:39.0755 0x05b4 [ 2A213AE086BBEC5E937553C7D9A2B22C, 1F91ACC0426E0ED1717555B282F65629EF15021375B24A63C29C89ADE916EE2A ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
11:29:39.0758 0x05b4 crcdisk - ok
11:29:39.0779 0x05b4 [ 22A7F883508176489F559EE745B5BF5D, D6341E3FBC8A46D2D1F0477FA60EC4828B585D35B14609CD02868FD04ECD14DB ] Crusoe C:\Windows\system32\drivers\crusoe.sys
11:29:39.0795 0x05b4 Crusoe - ok
11:29:39.0842 0x05b4 [ 684C130BBC6DB681BAD4920A4C944AA5, DDE434B206984808351C98500824A33E6740B4326C455066027F8D549D4C3B92 ] CryptSvc C:\Windows\system32\cryptsvc.dll
11:29:39.0847 0x05b4 CryptSvc - ok
11:29:39.0895 0x05b4 [ 3B5B4D53FEC14F7476CA29A20CC31AC9, EC02A412DA5FDE2C759A4A2C5904579E1CE7C4999CE87145812F354FC8F5E183 ] DcomLaunch C:\Windows\system32\rpcss.dll
11:29:39.0911 0x05b4 DcomLaunch - ok
11:29:39.0930 0x05b4 [ 622C41A07CA7E6DD91770F50D532CB6C, 2A9040949CB45F9970FDE930278F30D2F08E957290CB3D4DC4F2CA94F3D444D2 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
11:29:39.0934 0x05b4 DfsC - ok
11:29:40.0028 0x05b4 [ 2CC3DCFB533A1035B13DCAB6160AB38B, C88C91F662ADE248EEE3B568E70C2BC2D5075B7D9B7D3C63E83D011C5F7812B0 ] DFSR C:\Windows\system32\DFSR.exe
11:29:40.0235 0x05b4 DFSR - ok
11:29:40.0273 0x05b4 [ 9028559C132146FB75EB7ACF384B086A, 35159D86706441ED94895B4629411B4445FCB4526AFD1F7036EE647931B7A94D ] Dhcp C:\Windows\System32\dhcpcsvc.dll
11:29:40.0279 0x05b4 Dhcp - ok
11:29:40.0308 0x05b4 [ 5D4AEFC3386920236A548271F8F1AF6A, 11B74D6800EC6F7AAEFB0B6A9F2E8376C7C3B8DB677F03AC3743CB004CA96B08 ] disk C:\Windows\system32\drivers\disk.sys
11:29:40.0311 0x05b4 disk - ok
11:29:40.0337 0x05b4 [ 57D762F6F5974AF0DA2BE88A3349BAAA, D9E7DC8F9FB7837F88BBB95B52147AA80E688FB9762EEA99B8046D9C6AD48F3C ] Dnscache C:\Windows\System32\dnsrslvr.dll
11:29:40.0343 0x05b4 Dnscache - ok
11:29:40.0361 0x05b4 [ 324FD74686B1EF5E7C19A8AF49E748F6, DC6EB4304555B60DD17E04D20DFE4E279718E4041A9310DE29E678834BB22C5B ] dot3svc C:\Windows\System32\dot3svc.dll
11:29:40.0369 0x05b4 dot3svc - ok
11:29:40.0391 0x05b4 [ A622E888F8AA2F6B49E9BC466F0E5DEF, 3DED7F22A29AD2F8C927DFA0FD87FDE5ED0BDCAC7260BD9F71D8EA34328C772A ] DPS C:\Windows\system32\dps.dll
11:29:40.0398 0x05b4 DPS - ok
11:29:40.0417 0x05b4 [ 97FEF831AB90BEE128C9AF390E243F80, A7F4118603E2D5DDDB117EF7C058684EA5B37690EFAB2BEBA570EEF9C36281BE ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
11:29:40.0418 0x05b4 drmkaud - ok
11:29:40.0452 0x05b4 [ 651554E483712B708EDE864D0CA1AA73, A016C03D630A2FF7FC44B826DEA890F5AC09DD270588CEAD05F63A5A0AC79249 ] DrvAgent32 C:\Windows\system32\Drivers\DrvAgent32.sys
11:29:40.0454 0x05b4 DrvAgent32 - ok
11:29:40.0494 0x05b4 [ 687AF6BB383885FF6A64071B189A7F3E, 1C751B8DD27F63E88D0223A8434CED7589AC00EC6275938C59D1B954F0354F78 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
11:29:40.0501 0x05b4 dtsoftbus01 - ok
11:29:40.0537 0x05b4 [ 988670D8343EF9835FB3659DB71B2EFA, 5F5370FDD08C4BFF0828341952E98E95F722CB779EEC08C9DD6212C4DF3CD33B ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
11:29:40.0554 0x05b4 DXGKrnl - ok
11:29:40.0583 0x05b4 [ F88FB26547FD2CE6D0A5AF2985892C48, F02E06E16830F5D3FAF61991F5A91E54BB3461F58AFE3BFB7A9066CD302B879F ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys
11:29:40.0587 0x05b4 E1G60 - ok
11:29:40.0594 0x05b4 EagleNT - ok
11:29:40.0650 0x05b4 [ FB37BFB8D0295E3186F5BD8EFB6840C8, EB8E9DC75FA8336DFBCD6845ACBC907F5287DB49537887E36A9E4C93E968C7B8 ] EagleXNt C:\Windows\system32\drivers\EagleXNt.sys
11:29:40.0666 0x05b4 EagleXNt - ok
11:29:40.0682 0x05b4 [ C0B95E40D85CD807D614E264248A45B9, 30421DAF1722A225222268CB8BA4FE60CB76C6FD0C9157B0F53FC1368F806A4E ] EapHost C:\Windows\System32\eapsvc.dll
11:29:40.0686 0x05b4 EapHost - ok
11:29:40.0706 0x05b4 [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371, F3E9CF5D8E9124CB06F08454C5F0E510DE19A92780151FB2F8A58A0905D59B8F ] Ecache C:\Windows\system32\drivers\ecache.sys
11:29:40.0712 0x05b4 Ecache - ok
11:29:40.0750 0x05b4 [ 9BE3744D295A7701EB425332014F0797, 1A139EE9232581E466591C5EBEF41E4BF1F82D99C1959F1C68C879B240E9F46D ] ehRecvr C:\Windows\ehome\ehRecvr.exe
11:29:40.0759 0x05b4 ehRecvr - ok
11:29:40.0788 0x05b4 [ AD1870C8E5D6DD340C829E6074BF3C3F, 064D07106A1BBE80294F1913354832F2B67D22274BB4D36C81D2D83C96FE0B88 ] ehSched C:\Windows\ehome\ehsched.exe
11:29:40.0793 0x05b4 ehSched - ok
11:29:40.0800 0x05b4 [ C27C4EE8926E74AA72EFCAB24C5242C3, F1EBF78CCE9BA76AFD0478BC66B67CA44DEAF3C380369BFCE91BD8F678C8608A ] ehstart C:\Windows\ehome\ehstart.dll
11:29:40.0802 0x05b4 ehstart - ok
11:29:40.0827 0x05b4 [ E8F3F21A71720C84BCF423B80028359F, 63114E6120F634224A0E83A5047B37C7D6F26CF99FE3C01CFC0AB8B1763BB084 ] elxstor C:\Windows\system32\drivers\elxstor.sys
11:29:40.0836 0x05b4 elxstor - ok
11:29:40.0871 0x05b4 [ 4E6B23DFC917EA39306B529B773950F4, C4BA77632B4BD46C4C1797F7F57399DB506D3EB6E5A0A36C269A793DAA3445C2 ] EMDMgmt C:\Windows\system32\emdmgmt.dll
11:29:40.0888 0x05b4 EMDMgmt - ok
11:29:40.0917 0x05b4 [ 67058C46504BC12D821F38CF99B7B28F, E8D19F305F78BCA1DA8425315F2C77A377CD51E3CC54323DC2FF355120EA097D ] EventSystem C:\Windows\system32\es.dll
11:29:40.0925 0x05b4 EventSystem - ok
11:29:40.0957 0x05b4 [ 22B408651F9123527BCEE54B4F6C5CAE, 31AF9649333A9496A9224001266D1B68CE2A31B9FB182A755D127FC5492AA6B2 ] exfat C:\Windows\system32\drivers\exfat.sys
11:29:40.0960 0x05b4 exfat - ok
11:29:40.0986 0x05b4 [ 1E9B9A70D332103C52995E957DC09EF8, 7E709D545D4025A2E9F3489CF2A231040904CB53E3E4EEAC15A22468FAB2A5B3 ] fastfat C:\Windows\system32\drivers\fastfat.sys
11:29:40.0990 0x05b4 fastfat - ok
11:29:41.0004 0x05b4 [ 63BDADA84951B9C03E641800E176898A, AD3EA20CAD0E0C438422D5D39AEA9E0AAD9E1DC866A696AE503C76F5FAC4BE6E ] fdc C:\Windows\system32\DRIVERS\fdc.sys
11:29:41.0006 0x05b4 fdc - ok
11:29:41.0024 0x05b4 [ 6629B5F0E98151F4AFDD87567EA32BA3, 8CC02D5E0639CDF74B2F85DB56D6199E1858F1A58465ED1D8B25C968E986132C ] fdPHost C:\Windows\system32\fdPHost.dll
11:29:41.0029 0x05b4 fdPHost - ok
11:29:41.0053 0x05b4 [ 89ED56DCE8E47AF40892778A5BD31FD2, 924360875796C3DDDDA8097FDF53F6846B227F7413766F00AEDD981EFD691BF9 ] FDResPub C:\Windows\system32\fdrespub.dll
11:29:41.0057 0x05b4 FDResPub - ok
11:29:41.0066 0x05b4 [ A8C0139A884861E3AAE9CFE73B208A9F, 3B021D148A2989AAA46AE58E5FED8A2DCA25E9212C2FA7F922880EF5A077E49B ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
11:29:41.0069 0x05b4 FileInfo - ok
11:29:41.0080 0x05b4 [ 0AE429A696AECBC5970E3CF2C62635AE, 1ECC315C099D17835788B68F0DE00EC98DC5AEE8F329D739E0DB90A898F22244 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
11:29:41.0082 0x05b4 Filetrace - ok
11:29:41.0102 0x05b4 [ 6603957EFF5EC62D25075EA8AC27DE68, B52D112301A6BFBD60959D7D2502AB2E1EB6BB7F5DCED46899F1F006C7F1E887 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
11:29:41.0104 0x05b4 flpydisk - ok
11:29:41.0130 0x05b4 [ 01334F9EA68E6877C4EF05D3EA8ABB05, 82F8AA6AD2B5077898773D4A5814819EAF0E872FFD95894E06FEDAB6EE92CF99 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
11:29:41.0137 0x05b4 FltMgr - ok
11:29:41.0159 0x05b4 [ 93F7E288350460E4BAE8807283DD4E6E, F55A9C579E5EAB03EA2993A76CEC72A09EFAECB371BCE697C23DAE0D6ED1F783 ] FlyPCI C:\Windows\system32\drivers\FlyPCI.sys
11:29:41.0161 0x05b4 FlyPCI - ok
11:29:41.0281 0x05b4 [ 2AFA3A46986AE935DAECEBC7E66314CF, 747FAF9B7F8291B83EE44B91E5708395E749DC87BD42CC3BF2CD41209C298F4D ] FontCache C:\Windows\system32\FntCache.dll
11:29:41.0323 0x05b4 FontCache - ok
11:29:41.0381 0x05b4 [ C7FBDD1ED42F82BFA35167A5C9803EA3, 372FF71070D5ECE17342466A690737A0622E93C98DBED8172C49B0854F0012B7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
11:29:41.0385 0x05b4 FontCache3.0.0.0 - ok
11:29:41.0423 0x05b4 [ D909075FA72C090F27AA926C32CB4612, F8610C20C4DD499D5B4ACEBD7107E52E25B6449AEED58D1A203F7D654B55C4DF ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
11:29:41.0425 0x05b4 fssfltr - ok
11:29:41.0520 0x05b4 [ 4CE9DAC1518FF7E77BD213E6394B9D77, D7D0D29DF93AC7DC5F85E385EEB45306C7BD87ACA7AAC5A8D47893D120C32C03 ] fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe
11:29:41.0579 0x05b4 fsssvc - ok
11:29:41.0606 0x05b4 [ B972A66758577E0BFD1DE0F91AAA27B5, E934034F3F740A83D4E7ABCD2C581845AC2945B0BCCAACF65CC3F99A1DBDE455 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
11:29:41.0608 0x05b4 Fs_Rec - ok
11:29:41.0626 0x05b4 [ 4E1CD0A45C50A8882616CAE5BF82F3C5, 1B909AF150F7119A5685999451A85012F4A92F15F38390A281EA507E2D247BAE ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
11:29:41.0629 0x05b4 gagp30kx - ok
11:29:41.0660 0x05b4 [ FE4D369172AC1CC19C876BDB5BDC31A3, B02D58846C11D63DED9D211A271B1A01788FA162E8CD34645DBEFF136173FB92 ] gfiark C:\Windows\system32\drivers\gfiark.sys
11:29:41.0662 0x05b4 gfiark - ok
11:29:41.0699 0x05b4 [ CD5D0AEEE35DFD4E986A5AA1500A6E66, DCED5126837292593F1C1B35DF18E3B631D6C0C6D0742B77C7B7742C55A7825F ] gpsvc C:\Windows\System32\gpsvc.dll
11:29:41.0714 0x05b4 gpsvc - ok
11:29:41.0743 0x05b4 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
11:29:41.0748 0x05b4 gupdate - ok
11:29:41.0755 0x05b4 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
11:29:41.0758 0x05b4 gupdatem - ok
11:29:41.0797 0x05b4 [ 833051C6C6C42117191935F734CFBD97, 5EB5672ABC7994A4AFF855A572158B8BE4FC6E541CFD4B9BE4FF2739A9A6AFB8 ] hamachi C:\Windows\system32\drivers\hamachi.sys
11:29:41.0799 0x05b4 hamachi - ok
11:29:41.0834 0x05b4 [ CB04C744BE0A61B1D648FAED182C3B59, 61DC0FF94325DAFCCB7B3980A48727EFBF1283FCF753EC16EF04C730525994C0 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
11:29:41.0841 0x05b4 HdAudAddService - ok
11:29:41.0879 0x05b4 [ 062452B7FFD68C8C042A6261FE8DFF4A, DD9873502456D3C058C6177AC223B28C71370E624FA0814C17EA3D93201F2B56 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
11:29:41.0896 0x05b4 HDAudBus - ok
11:29:41.0928 0x05b4 [ 1338520E78D90154ED6BE8F84DE5FCEB, 8531F1C5856983EBDA4C2B70162645ECE72FFFBA9FE7A28BCEDDF2169B7ECF9D ] HidBth C:\Windows\system32\drivers\hidbth.sys
11:29:41.0930 0x05b4 HidBth - ok
11:29:41.0948 0x05b4 [ FF3160C3A2445128C5A6D9B076DA519E, DC1A70C80CD55F33B3AD5A21E86AF7C3086D8CC2DC6148C058E74A871E0BAD4A ] HidIr C:\Windows\system32\drivers\hidir.sys
11:29:41.0950 0x05b4 HidIr - ok
11:29:41.0975 0x05b4 [ 84067081F3318162797385E11A8F0582, 11E32E3800CFCA37354388243F88D0239D622891BAC5483518A2BE5D1CA19015 ] hidserv C:\Windows\System32\hidserv.dll
11:29:41.0979 0x05b4 hidserv - ok
11:29:42.0001 0x05b4 [ CCA4B519B17E23A00B826C55716809CC, 91AD0758A6185B0FBBE383BDB1B457FFB850477AFF8DE040DE9527A97D28EF62 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
11:29:42.0003 0x05b4 HidUsb - ok
11:29:42.0023 0x05b4 [ D8AD255B37DA92434C26E4876DB7D418, C901EADDD93FC90C8F29F4B6DE808F8E4F486C877FC0AA27DA4ACDE17E28899D ] hkmsvc C:\Windows\system32\kmsvc.dll
11:29:42.0029 0x05b4 hkmsvc - ok
11:29:42.0043 0x05b4 [ DF353B401001246853763C4B7AAA6F50, 05C043493BDD99DEFBB0F5C3D8C475B06C2BF5629565ACF6F3B754002519B836 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
11:29:42.0046 0x05b4 HpCISSs - ok
11:29:42.0075 0x05b4 [ F870AA3E254628EBEAFE754108D664DE, B0444E7D246AA1982094030ACB991690F6A7DD3FB07B1BB6A1BC0F3AA9718A70 ] HTTP C:\Windows\system32\drivers\HTTP.sys
11:29:42.0086 0x05b4 HTTP - ok
11:29:42.0114 0x05b4 [ 324C2152FF2C61ABAE92D09F3CCA4D63, 2D09964C8003277F7DB1FFAA0DAEF15B205F3C4100FF601950BC9E544DC0B91F ] i2omp C:\Windows\system32\drivers\i2omp.sys
11:29:42.0117 0x05b4 i2omp - ok
11:29:42.0135 0x05b4 [ 22D56C8184586B7A1F6FA60BE5F5A2BD, D96A2962848C1F59B143BFEC22EC48BD1C5A75D0EBCFD7FB965E66B85FF7D8CA ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
11:29:42.0138 0x05b4 i8042prt - ok
11:29:42.0155 0x05b4 [ C957BF4B5D80B46C5017BF0101E6C906, 6B9186335E50E7E0DBAF574A224E524EC526B57AA02F509E4A8D0F905C9CE880 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
11:29:42.0162 0x05b4 iaStorV - ok
11:29:42.0259 0x05b4 [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
11:29:42.0272 0x05b4 IDriverT - ok
11:29:42.0370 0x05b4 [ 98477B08E61945F974ED9FDC4CB6BDAB, C7E8F661F6FBF6AB493E950D2E70363496E155B1838CE7B490B981BD840B04FC ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
11:29:42.0394 0x05b4 idsvc - ok
11:29:42.0454 0x05b4 [ 2D077BF86E843F901D8DB709C95B49A5, 78FF558A881F307858F5C7C74A748B8B2562AF3CAC7EA8639945609001D790CE ] iirsp C:\Windows\system32\drivers\iirsp.sys
11:29:42.0470 0x05b4 iirsp - ok
11:29:42.0528 0x05b4 [ 4687EE0C0DD2CE5F7AAA9C2E33C1DC78, FA8EBED2778D9F7560ADC1B563954EEF98AAE651C0553F2803372B37B122AEB3 ] IKEEXT C:\Windows\System32\ikeext.dll
11:29:42.0542 0x05b4 IKEEXT - ok
11:29:42.0664 0x05b4 [ F42F2F88017A2E2B6F783ACEF6C2C149, 84AA1EFEACE3663F5E3D937C655B5B61C72C6922082F6BB7D30CEF67C267A40A ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
11:29:42.0746 0x05b4 IntcAzAudAddService - ok
11:29:42.0773 0x05b4 [ 97469037714070E45194ED318D636401, DDB5AE39BE0BD37ECB44969A5FA740E5B1169342347D0DB3E5DF0353A6708271 ] intelide C:\Windows\system32\drivers\intelide.sys
11:29:42.0775 0x05b4 intelide - ok
11:29:42.0797 0x05b4 [ CE44CC04262F28216DD4341E9E36A16F, 2B316C4124DCFEAD7838B3D8FB8DBEC3F3B1EA8EA612AABB05B1275D0B230CCD ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
11:29:42.0800 0x05b4 intelppm - ok
11:29:42.0819 0x05b4 [ 9AC218C6E6105477484C6FDBE7D409A4, FF30D09CD2A0F5BBEC309E953370F194B6F26BF4227E627B594AAA48B0F5D3C2 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
11:29:42.0824 0x05b4 IPBusEnum - ok
11:29:42.0843 0x05b4 [ 62C265C38769B864CB25B4BCF62DF6C3, CAF6BCE967104233E216464E4729B0275C3BD426D812F404AB0EE83A7F2063D8 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
11:29:42.0847 0x05b4 IpFilterDriver - ok
11:29:42.0875 0x05b4 [ 1998BD97F950680BB55F55A7244679C2, A4E8BB4C6B2AF4800BD5E0BA8725FD0927F8FB6751AEBF6DD16B59C414CCB9D8 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
11:29:42.0884 0x05b4 iphlpsvc - ok
11:29:42.0890 0x05b4 IpInIp - ok
11:29:42.0905 0x05b4 [ 40F34F8ABA2A015D780E4B09138B6C17, 22F86888C6B4F76836E863A90730D8F0DBD518305D87A399A159387E79E9D2F7 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
11:29:42.0908 0x05b4 IPMIDRV - ok
11:29:42.0927 0x05b4 [ 8793643A67B42CEC66490B2A0CF92D68, 8B1ED1314E4C6623824DD6B9C15A0F7F996F4D243BF0B305421251BE40850907 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
11:29:42.0933 0x05b4 IPNAT - ok
11:29:42.0950 0x05b4 [ 109C0DFB82C3632FBD11949B73AEEAC9, 73B01426100256B7110DF0B74483AF1B62FC209612EEC29A7BF6DC31A7FBEFB6 ] IRENUM C:\Windows\system32\drivers\irenum.sys
11:29:42.0952 0x05b4 IRENUM - ok
11:29:42.0968 0x05b4 [ 350FCA7E73CF65BCEF43FAE1E4E91293, 68403FE3F4DC40919CD26A2CC42BE4386AE6874F47DD382348FFD79080721A13 ] isapnp C:\Windows\system32\drivers\isapnp.sys
11:29:42.0971 0x05b4 isapnp - ok
11:29:42.0999 0x05b4 [ 232FA340531D940AAC623B121A595034, 90C93F04D8A0094EEBD118F10223605B8169DA5F24C466F503CED5C014BD17B1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
11:29:43.0005 0x05b4 iScsiPrt - ok
11:29:43.0020 0x05b4 [ BCED60D16156E428F8DF8CF27B0DF150, 4934E9AB8A8A548548F0C63517F2BF4DE84B05E5C9C7C2AA6C1517B8F9C340D4 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
11:29:43.0022 0x05b4 iteatapi - ok
11:29:43.0035 0x05b4 [ 06FA654504A498C30ADCA8BEC4E87E7E, 651BC35A0A3D504573BBAB40DE81929BB18C9FC0CD7944FEAE0E99CD7658EA88 ] iteraid C:\Windows\system32\drivers\iteraid.sys
11:29:43.0037 0x05b4 iteraid - ok
11:29:43.0060 0x05b4 [ 37605E0A8CF00CBBA538E753E4344C6E, B9A9FFDCE45B0830E277CF322C28ACB49372C16144B0F676B283BE5DAE9A7F30 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
11:29:43.0063 0x05b4 kbdclass - ok
11:29:43.0081 0x05b4 [ EDE59EC70E25C24581ADD1FBEC7325F7, 41B37778E9A12675FC0DF74606AAF18C652EB88513B3C4889C5C512E14587CEE ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
11:29:43.0083 0x05b4 kbdhid - ok
11:29:43.0120 0x05b4 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] KeyIso C:\Windows\system32\lsass.exe
11:29:43.0124 0x05b4 KeyIso - ok
11:29:43.0175 0x05b4 [ 4A1445EFA932A3BAF5BDB02D7131EE20, 9DD262ED72DF268FE024063788F54124E320D0775D8DC0C5CAD099CD5F655DA2 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
11:29:43.0185 0x05b4 KSecDD - ok
11:29:43.0222 0x05b4 [ 8078F8F8F7A79E2E6B494523A828C585, BB399993166853F0C01B7508649ECD7E7473238267BA8333D0441128FE656347 ] KtmRm C:\Windows\system32\msdtckrm.dll
11:29:43.0236 0x05b4 KtmRm - ok
11:29:43.0262 0x05b4 [ 1BF5EEBFD518DD7298434D8C862F825D, F41C79410345C40B346EB5EDEA397ECD29ECB9B921AC3E19F9453E52A7B9288A ] LanmanServer C:\Windows\System32\srvsvc.dll
11:29:43.0270 0x05b4 LanmanServer - ok
11:29:43.0294 0x05b4 [ 1DB69705B695B987082C8BAEC0C6B34F, D395B272F6B69D4A9FC3CDEFD812EF0DBFECF3C1B1C787C7CC1E1A1B091B8DB3 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
11:29:43.0303 0x05b4 LanmanWorkstation - ok
11:29:43.0326 0x05b4 [ F8A7212D0864EF5E9185FB95E6623F4D, 277EAA06BD3D1CB31E6CD7B9ECD3A4B7D4AB7A369DB5FFF04EC7D749DF26E3D2 ] lirsgt C:\Windows\system32\DRIVERS\lirsgt.sys
11:29:43.0327 0x05b4 lirsgt - ok
11:29:43.0340 0x05b4 [ D1C5883087A0C3F1344D9D55A44901F6, 608D67357AFDDD538D2C12C93EB0793ECA4EB3AF2BAB779E881C41F50E4AB911 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
11:29:43.0342 0x05b4 lltdio - ok
11:29:43.0371 0x05b4 [ 2D5A428872F1442631D0959A34ABFF63, E532C6ECFFB936EFF744CA57BDC6394C89E797B6B0822D04F1F3F35D9BDDD4F0 ] lltdsvc C:\Windows\System32\lltdsvc.dll
11:29:43.0379 0x05b4 lltdsvc - ok
11:29:43.0411 0x05b4 [ 35D40113E4A5B961B6CE5C5857702518, 453097AEF46ED48107395D9A1696AAC259FD6CEA8A655D38C5E246FDDAB81664 ] lmhosts C:\Windows\System32\lmhsvc.dll
11:29:43.0416 0x05b4 lmhosts - ok
11:29:43.0438 0x05b4 [ A2262FB9F28935E862B4DB46438C80D2, 792684A68726BC007ACABB584682FDF4F059AE60888FB5B47ED68A97EA0BB5E6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
11:29:43.0441 0x05b4 LSI_FC - ok
11:29:43.0466 0x05b4 [ 30D73327D390F72A62F32C103DAF1D6D, 7BB5BFB0DCF33AF9907539B52DF7BA1943C1E75A17715B58DBC702ACA6D406EA ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
11:29:43.0468 0x05b4 LSI_SAS - ok
11:29:43.0490 0x05b4 [ E1E36FEFD45849A95F1AB81DE0159FE3, DA02B23A881D156A02D3874B41E6D042F84AD558B434280A6A6AC6B619668647 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
11:29:43.0492 0x05b4 LSI_SCSI - ok
11:29:43.0518 0x05b4 [ 8F5C7426567798E62A3B3614965D62CC, 659810257D942C5F4168E1247868CDA990F2324AC9ACAA9A6211F64B7AC9EC6E ] luafv C:\Windows\system32\drivers\luafv.sys
11:29:43.0521 0x05b4 luafv - ok
11:29:43.0538 0x05b4 [ 4470E3C1E0C3378E4CAB137893C12C3A, CA8E66356F0E671D5454E561E7EAD74DE25DCF53BE452369F96ECACFA8709489 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
11:29:43.0539 0x05b4 MBAMProtector - ok
11:29:43.0599 0x05b4 [ 65085456FD9A74D7F1A999520C299ECB, EA564BC913EF1B8A4CAA9242FC70F525B68CF1F3CA462F63B0B7215B93FE8530 ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
11:29:43.0609 0x05b4 MBAMScheduler - ok
11:29:43.0664 0x05b4 [ E0D7732F2D2E24B2DB3F67B6750295B8, AA5CA86AF1ACEC900F60339016B3DC55472DB40ADB99186005A7ABE67B7D66FC ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
11:29:43.0684 0x05b4 MBAMService - ok
11:29:43.0724 0x05b4 [ AEF9BABB8A506BC4CE0451A64AADED46, D5608A703EA7E97F11ED4D029B4B820440B0C9317DB7D7DC0152253CD723DC07 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
11:29:43.0729 0x05b4 Mcx2Svc - ok
11:29:43.0753 0x05b4 [ D153B14FC6598EAE8422A2037553ADCE, D5408B07B6EBA0146A605F11106497DC3DF8EC72E0DCC44BE1366A2A58ABE478 ] megasas C:\Windows\system32\drivers\megasas.sys
11:29:43.0754 0x05b4 megasas - ok
11:29:43.0775 0x05b4 [ 1076FFCFFAAE8385FD62DFCB25AC4708, 8C5C106FCB018E019DEBA8E1A6AA170CD7A93293F27994F724EBC486238DA0AA ] MMCSS C:\Windows\system32\mmcss.dll
11:29:43.0781 0x05b4 MMCSS - ok
11:29:43.0795 0x05b4 [ E13B5EA0F51BA5B1512EC671393D09BA, 5B380D1B435D809CA201FD5ED075D42F3C6BA1A4EEDBC4040F7E3329F05A334A ] Modem C:\Windows\system32\drivers\modem.sys
11:29:43.0797 0x05b4 Modem - ok
11:29:43.0826 0x05b4 [ 0A9BB33B56E294F686ABB7C1E4E2D8A8, 1E8031D51E074FDFB53E98E26DABF313B901C028D01196BFD402EED5D0A89595 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
11:29:43.0828 0x05b4 monitor - ok
11:29:43.0840 0x05b4 [ 5BF6A1326A335C5298477754A506D263, CC7F58E5955A448F6CE28D6D8EB98C7479E11F931B5C733CFE71A29B2E95923D ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
11:29:43.0842 0x05b4 mouclass - ok
11:29:43.0851 0x05b4 [ 93B8D4869E12CFBE663915502900876F, 7464DE60FAAD8793D855F1F86C3C865B3A3EE41C19A3E926D1BE4426E67F5EC2 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
11:29:43.0852 0x05b4 mouhid - ok
11:29:43.0872 0x05b4 [ BDAFC88AA6B92F7842416EA6A48E1600, 2CA8A7BB260016D6B7953980A94C45A3C5D41F7DC7E73EEFB1C18EA144749503 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
11:29:43.0874 0x05b4 MountMgr - ok
11:29:43.0895 0x05b4 [ 583A41F26278D9E0EA548163D6139397, 1F09D2FEEE1A8D4F1D9E53596158154099FD436A408F7E72E40F50778A3838A1 ] mpio C:\Windows\system32\drivers\mpio.sys
11:29:43.0899 0x05b4 mpio - ok
11:29:43.0920 0x05b4 [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E, 62055C0DCEB69873B8961AB17DBD002F44319A44CB05EC3A61421A0C6D4736CD ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
11:29:43.0923 0x05b4 mpsdrv - ok
11:29:43.0953 0x05b4 [ 5DE62C6E9108F14F6794060A9BDECAEC, 655E6645CC4A1EDBE5F51F5F80C7B504DD956851E788A6E4E4E08CDCDCE160D9 ] MpsSvc C:\Windows\system32\mpssvc.dll
11:29:43.0968 0x05b4 MpsSvc - ok
11:29:43.0991 0x05b4 [ 4FBBB70D30FD20EC51F80061703B001E, 72907A0CA5CFF82F40C02A65CD8EFD51D7CFC33BE67DE572D1ACF4FD3B248F0A ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
11:29:43.0993 0x05b4 Mraid35x - ok
11:29:44.0014 0x05b4 [ 82CEA0395524AACFEB58BA1448E8325C, 16E37990A291C848DE35F48EA7E09AE5B258AE589EB08A3FA2C60DC1278DE182 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
11:29:44.0021 0x05b4 MRxDAV - ok
11:29:44.0050 0x05b4 [ 1E94971C4B446AB2290DEB71D01CF0C2, 4701AA1B419AEF735CB2DA34532B0F1844433272C36D79F4EB55807E39B923D1 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
11:29:44.0055 0x05b4 mrxsmb - ok
11:29:44.0071 0x05b4 [ 4FCCB34D793B116423209C0F8B7A3B03, 7A483AEB691ADBE82779F12F0BB1CCCBFFD7E92902EC1ADC99AB7D129F887143 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
11:29:44.0078 0x05b4 mrxsmb10 - ok
11:29:44.0086 0x05b4 [ C3CB1B40AD4A0124D617A1199B0B9D7C, B975A39DE6D324C6274B6E3B883F36082A958F028335CEB3A37F44481EB284B3 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
11:29:44.0090 0x05b4 mrxsmb20 - ok
11:29:44.0113 0x05b4 [ 742AED7939E734C36B7E8D6228CE26B7, 6F727144BBD42C9C5555087CA51DE8D501B5CBEFB9967866CC578733E3C5E681 ] msahci C:\Windows\system32\drivers\msahci.sys
11:29:44.0127 0x05b4 msahci - ok
11:29:44.0156 0x05b4 [ 3FC82A2AE4CC149165A94699183D3028, 8575BE62A209672A5D8C68D75BBBB4FF06220CA73A939B0793442DAD2272598C ] msdsm C:\Windows\system32\drivers\msdsm.sys
11:29:44.0159 0x05b4 msdsm - ok
11:29:44.0203 0x05b4 [ FD7520CC3A80C5FC8C48852BB24C6DED, C3F3D7A07FAB9AF38A2A00BF0DF6EEE18CA8FE26277BEC9D8ADB793F2CD5EC1F ] MSDTC C:\Windows\System32\msdtc.exe
11:29:44.0211 0x05b4 MSDTC - ok
11:29:44.0234 0x05b4 [ A9927F4A46B816C92F461ACB90CF8515, 753284F726F9B4D3E7322C75532244CA43714F00717C2019391FB36DEE0738C0 ] Msfs C:\Windows\system32\drivers\Msfs.sys
11:29:44.0236 0x05b4 Msfs - ok
11:29:44.0250 0x05b4 [ 0F400E306F385C56317357D6DEA56F62, C48FA8193787359902D20D869F5F602CD66D3C5D061A58DDB72F51EED433C4BC ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
11:29:44.0252 0x05b4 msisadrv - ok
11:29:44.0269 0x05b4 [ 85466C0757A23D9A9AECDC0755203CB2, 79141B8DF9D7470466872AF03A85C3D3976512BFDBDB8B92A22225DC8EFD70A6 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
11:29:44.0276 0x05b4 MSiSCSI - ok
11:29:44.0281 0x05b4 msiserver - ok
11:29:44.0306 0x05b4 [ D8C63D34D9C9E56C059E24EC7185CC07, D0CBFB8D57E6D908679DC0488ED659CA35B92626DEA890873E165F051A1AD2AE ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
11:29:44.0308 0x05b4 MSKSSRV - ok
11:29:44.0322 0x05b4 [ 1D373C90D62DDB641D50E55B9E78D65E, 1D4897A96EA54D6FAC7916D69B4E88CAE1397C38CC8FAE08554772808476357B ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
11:29:44.0324 0x05b4 MSPCLOCK - ok
11:29:44.0341 0x05b4 [ B572DA05BF4E098D4BBA3A4734FB505B, B7923F204CEADD0F62C2FE4B7CF8C56DAB70F88093B15C5692D0E61490CF4BAA ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
11:29:44.0343 0x05b4 MSPQM - ok
11:29:44.0355 0x05b4 [ B49456D70555DE905C311BCDA6EC6ADB, 8E40586B3A1FAE9996459E0261726C9DD6A8D5F575604868C45604613385C92F ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
11:29:44.0363 0x05b4 MsRPC - ok
11:29:44.0381 0x05b4 [ E384487CB84BE41D09711C30CA79646C, 520391DEE14D4D6C1EA99C7D31DD95D56B44D54CA3CD8E5C9855E9C0A04F026C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
11:29:44.0384 0x05b4 mssmbios - ok
11:29:44.0404 0x05b4 [ 7199C1EEC1E4993CAF96B8C0A26BD58A, DD02DF8ED7AF5BB88BD2A91F38CE4C52432CB8044BDCBC41C320CD22B10B8A3B ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
11:29:44.0406 0x05b4 MSTEE - ok
11:29:44.0423 0x05b4 [ 6A57B5733D4CB702C8EA4542E836B96C, 080FB0B01E949D24CDD6876125B3A72DA9F88845D8B9A1A425BCA99E7ACF6821 ] Mup C:\Windows\system32\Drivers\mup.sys
11:29:44.0426 0x05b4 Mup - ok
11:29:44.0452 0x05b4 [ E4EAF0C5C1B41B5C83386CF212CA9584, 5946C3DCE65A0DB164169A1775DFCA544AF4E1895ADF6916BB1653F373F8D9AF ] napagent C:\Windows\system32\qagentRT.dll
11:29:44.0462 0x05b4 napagent - ok
11:29:44.0485 0x05b4 [ 85C44FDFF9CF7E72A40DCB7EC06A4416, DC37C99C458CA69B33BFD3894187089E947F4F9C01EC2ED024FA8614989E0956 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
11:29:44.0490 0x05b4 NativeWifiP - ok
11:29:44.0520 0x05b4 [ 1357274D1883F68300AEADD15D7BBB42, EE6352CBF0D9D633816F338159CDA27F1A805C3DDC3402D8605B50D8F3CD3300 ] NDIS C:\Windows\system32\drivers\ndis.sys
11:29:44.0535 0x05b4 NDIS - ok
11:29:44.0565 0x05b4 [ 0E186E90404980569FB449BA7519AE61, DE41791D9D3074007D6DD1D3933E7A2A13E3789D0AD4F029105B58279622FC1B ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
11:29:44.0567 0x05b4 NdisTapi - ok
11:29:44.0592 0x05b4 [ D6973AA34C4D5D76C0430B181C3CD389, 7C303F3D6BFF8B82E39998135B444837091AB1F9EB8F28D013E5EF45DB237EFC ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
11:29:44.0593 0x05b4 Ndisuio - ok
11:29:44.0617 0x05b4 [ 818F648618AE34F729FDB47EC68345C3, 5FC8F9237BD7FCE3C62D5BDDD49DC104BE2BECDC2FA8CDC1DB8F1891CBAA9140 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
11:29:44.0621 0x05b4 NdisWan - ok
11:29:44.0652 0x05b4 [ 71DAB552B41936358F3B541AE5997FB3, 30A8B3E33CBF04FC047254E404C0321F9028F2640036AA8AC1EA0A5E64551684 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
11:29:44.0654 0x05b4 NDProxy - ok
11:29:44.0665 0x05b4 [ BCD093A5A6777CF626434568DC7DBA78, 2A283DD93230361204EA0897864EAF0224CB8C02E025AE2E4237B07A598B3EBD ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
11:29:44.0669 0x05b4 NetBIOS - ok
11:29:44.0686 0x05b4 [ ECD64230A59CBD93C85F1CD1CAB9F3F6, 83650D756C1F2768A2AAAFC7924F2A4316ABAEB1708F4B05803CDDD699B5AB6F ] netbt C:\Windows\system32\DRIVERS\netbt.sys
11:29:44.0691 0x05b4 netbt - ok
11:29:44.0703 0x05b4 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] Netlogon C:\Windows\system32\lsass.exe
11:29:44.0706 0x05b4 Netlogon - ok
11:29:44.0738 0x05b4 [ C8052711DAECC48B982434C5116CA401, 417DEB86D157DD3F0B4678410FE27FDD3E8FA04AB03AF398F6C02BF207070B35 ] Netman C:\Windows\System32\netman.dll
11:29:44.0748 0x05b4 Netman - ok
11:29:44.0783 0x05b4 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:29:44.0789 0x05b4 NetMsmqActivator - ok
11:29:44.0797 0x05b4 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:29:44.0802 0x05b4 NetPipeActivator - ok
11:29:44.0835 0x05b4 [ 2EF3BBE22E5A5ACD1428EE387A0D0172, 55DB91EDD0339D2434C06445F8A716A48EA90925B0FF7EBF45BB79D4B54B80BF ] netprofm C:\Windows\System32\netprofm.dll
11:29:44.0845 0x05b4 netprofm - ok
11:29:44.0855 0x05b4 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:29:44.0859 0x05b4 NetTcpActivator - ok
11:29:44.0868 0x05b4 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:29:44.0872 0x05b4 NetTcpPortSharing - ok
11:29:44.0888 0x05b4 [ 2E7FB731D4790A1BC6270ACCEFACB36E, EE9A00B694E8A3A5842CDC56C7BA1364317AC8134E046A0059661D057094B1A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
11:29:44.0889 0x05b4 nfrd960 - ok
11:29:44.0940 0x05b4 [ 2997B15415F9BBE05B5A4C1C85E0C6A2, 5455536515FE740E18E090329FDCC40288724372AD18ACDB2CB4BB9D85CF681E ] NlaSvc C:\Windows\System32\nlasvc.dll
11:29:44.0948 0x05b4 NlaSvc - ok
11:29:44.0963 0x05b4 [ D36F239D7CCE1931598E8FB90A0DBC26, DF9397411D0CE5A87E3346D4E6E25BEC537A21BCE196CC55FD999CD08FC4A637 ] Npfs C:\Windows\system32\drivers\Npfs.sys
11:29:44.0965 0x05b4 Npfs - ok
11:29:44.0970 0x05b4 npggsvc - ok
11:29:44.0985 0x05b4 [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD, 15CA178518EB3D457AA4C109D97A8490821590842AE4E9841703B5A55870C8F6 ] nsi C:\Windows\system32\nsisvc.dll
11:29:44.0990 0x05b4 nsi - ok
11:29:45.0004 0x05b4 [ 609773E344A97410CE4EBF74A8914FCF, 90B9CBD2B62854DD503DE4A910CB987D402368EB99882FE20FFB6DEACD70F2BD ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
11:29:45.0005 0x05b4 nsiproxy - ok
11:29:45.0060 0x05b4 [ 2C1121F2B87E9A6B12485DF53CD848C7, E580428F3BA7B201C6C7CFADF1F44A6ECA4F589EDB034DA14260136236195936 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
11:29:45.0143 0x05b4 Ntfs - ok
11:29:45.0170 0x05b4 [ E875C093AEC0C978A90F30C9E0DFBB72, D3A480CD7EF374EFBC1BB831B33B81534774DDDBB0FB338BEE1D444949FD8DE7 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys
11:29:45.0171 0x05b4 ntrigdigi - ok
11:29:45.0184 0x05b4 [ C5DBBCDA07D780BDA9B685DF333BB41E, 3652893DFF05469A273C3073D8D0A9D6D6BBDEC7855FEA8EAB768F95BA674108 ] Null C:\Windows\system32\drivers\Null.sys
11:29:45.0186 0x05b4 Null - ok
11:29:45.0656 0x05b4 [ 50199B0578F7A4ADD5E16A42946CF34B, D4CB42C4FC42355BE007088FBB60B2B773188AB81FB9111861C0682DBCD79EFD ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
11:29:45.0890 0x05b4 nvlddmkm - ok
11:29:45.0941 0x05b4 [ E69E946F80C1C31C53003BFBF50CBB7C, A0A4BC57822B2CBC75602A969E28DCEDE04B41CC084E1EF1532B1BCDAEAA43BB ] nvraid C:\Windows\system32\drivers\nvraid.sys
11:29:45.0944 0x05b4 nvraid - ok
11:29:45.0958 0x05b4 [ 9E0BA19A28C498A6D323D065DB76DFFC, EA9E33ED2820ED39932FAE114A9CF1D87780ED6605D0260A6F22F920B48F34E9 ] nvstor C:\Windows\system32\drivers\nvstor.sys
11:29:45.0960 0x05b4 nvstor - ok
11:29:46.0015 0x05b4 [ 4BD107E339C9955708FA35A96BB8A8A8, 540A2C12B844491F5089CAEDA0EA57DAE03471081866AE1A08C5E65E592F772B ] nvsvc C:\Windows\system32\nvvsvc.exe
11:29:46.0033 0x05b4 nvsvc - ok
11:29:46.0153 0x05b4 [ 815290E27B7B7D12AF013638819BE1B6, 83078B422954BBF9FFEF606EB1788EC78A1F69E7FF99F0588B72A07873797C98 ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
11:29:46.0254 0x05b4 nvUpdatusService - ok
11:29:46.0279 0x05b4 [ 07C186427EB8FCC3D8D7927187F260F7, 9AFDE1CB7B7232BD019804BFC691580B9CC2E51A5BC0E5584B23907D532600D8 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
11:29:46.0282 0x05b4 nv_agp - ok
11:29:46.0287 0x05b4 NwlnkFlt - ok
11:29:46.0294 0x05b4 NwlnkFwd - ok
11:29:46.0315 0x05b4 [ BE32DA025A0BE1878F0EE8D6D9386CD5, B9D6CB4626FC67D108D713467C9ED8D0E2A071D98621B5531AD9D0C172FE7B89 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
11:29:46.0317 0x05b4 ohci1394 - ok
11:29:46.0356 0x05b4 [ 7A56CF3E3F12E8AF599963B16F50FB6A, 882C82BAE96D263138D4C0D6C425458B770B7B9C8E9C1D28AC918BF6BE94A5C2 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
Re: 100% využití cpu
11:29:46.0359 0x05b4 ose - ok
11:29:46.0409 0x05b4 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] p2pimsvc C:\Windows\system32\p2psvc.dll
11:29:46.0428 0x05b4 p2pimsvc - ok
11:29:46.0450 0x05b4 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] p2psvc C:\Windows\system32\p2psvc.dll
11:29:46.0469 0x05b4 p2psvc - ok
11:29:46.0522 0x05b4 [ 8A79FDF04A73428597E2CAF9D0D67850, DB438FDE5510AB2F350ED1AC4CF0E99D3CC665FE46533A438A8FDA4DAF950F93 ] Parport C:\Windows\system32\DRIVERS\parport.sys
11:29:46.0525 0x05b4 Parport - ok
11:29:46.0547 0x05b4 [ B9C2B89F08670E159F7181891E449CD9, BD48CE95CF4B75D1FD5FD379B2A8727BC000F2B6748B77636C6BDB0B37B0344A ] partmgr C:\Windows\system32\drivers\partmgr.sys
11:29:46.0549 0x05b4 partmgr - ok
11:29:46.0556 0x05b4 [ 6C580025C81CAF3AE9E3617C22CAD00E, 64F9061196462085E5DCD3ACB97A0D8FC67CA9A96DDD6E2103AFFF1593AE236A ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
11:29:46.0557 0x05b4 Parvdm - ok
11:29:46.0581 0x05b4 [ C6276AD11F4BB49B58AA1ED88537F14A, 409E956AF994640DF8D062E5E41F87A6EE7EEE0335C191B582722A49322357CE ] PcaSvc C:\Windows\System32\pcasvc.dll
11:29:46.0586 0x05b4 PcaSvc - ok
11:29:46.0611 0x05b4 [ 941DC1D19E7E8620F40BBC206981EFDB, 156142A8B587131D2D47074CBFD0A31F69B3C27A8C74C8C4F29DFE7B53BBA802 ] pci C:\Windows\system32\drivers\pci.sys
11:29:46.0616 0x05b4 pci - ok
11:29:46.0633 0x05b4 [ 1636D43F10416AEB483BC6001097B26C, 36E61A993693A46538FE0F726D67BB28886F61D53384AD600D1282296A27662E ] pciide C:\Windows\system32\drivers\pciide.sys
11:29:46.0634 0x05b4 pciide - ok
11:29:46.0653 0x05b4 [ E6F3FB1B86AA519E7698AD05E58B04E5, 2C4B45DDD3B980C9DAA6F039CAEFCD6E84A4D5BB43AFBA73C0C42B5556C1303C ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
11:29:46.0658 0x05b4 pcmcia - ok
11:29:46.0708 0x05b4 [ 6349F6ED9C623B44B52EA3C63C831A92, 9EAA3ABD396870123107D6E1B758F56FDA378BD28B28DB8415AA470D24294F92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
11:29:46.0734 0x05b4 PEAUTH - ok
11:29:46.0812 0x05b4 [ B1689DF169143F57053F795390C99DB3, 887B8C76B34CABC68067C0F27CC4EEF02457A53634C96FE5B0FE9B99453BDBEF ] pla C:\Windows\system32\pla.dll
11:29:46.0849 0x05b4 pla - ok
11:29:46.0884 0x05b4 [ C5E7F8A996EC0A82D508FD9064A5569E, 416A93816CDF12DD42DEA796D37E6E2000D3172AAAB20D3EAD3B715DACD4B61F ] PlugPlay C:\Windows\system32\umpnpmgr.dll
11:29:46.0894 0x05b4 PlugPlay - ok
11:29:46.0971 0x05b4 [ 831883B107684301F48ACE752C963984, EAF383C4ACC17DBB060BB8398225222175E028E1E332E2CE0548C97DAED3620E ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
11:29:46.0978 0x05b4 PnkBstrA - ok
11:29:47.0001 0x05b4 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
11:29:47.0019 0x05b4 PNRPAutoReg - ok
11:29:47.0044 0x05b4 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] PNRPsvc C:\Windows\system32\p2psvc.dll
11:29:47.0063 0x05b4 PNRPsvc - ok
11:29:47.0095 0x05b4 [ D0494460421A03CD5225CCA0059AA146, FC30E90522C63F2A66D89381705712D2CDF07B2E029DF40C2DEBB2353E763E90 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
11:29:47.0108 0x05b4 PolicyAgent - ok
11:29:47.0132 0x05b4 [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1, 6E4B188A4BFDBBCA51347BCCE2873F2D0F858398851B9B5129CB9F36A02E4354 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
11:29:47.0134 0x05b4 PptpMiniport - ok
11:29:47.0164 0x05b4 [ 0E3CEF5D28B40CF273281D620C50700A, 8ADA99B4563AE2129B95136295EE92A94102B035EBBC83D4C8587ECE8B0DEE60 ] Processor C:\Windows\system32\drivers\processr.sys
11:29:47.0165 0x05b4 Processor - ok
11:29:47.0209 0x05b4 [ 0508FAA222D28835310B7BFCA7A77346, 3AE2340C6E365F137CC00D9560069501DD2724756EA9EBF7A6CDFFC91B43709C ] ProfSvc C:\Windows\system32\profsvc.dll
11:29:47.0217 0x05b4 ProfSvc - ok
11:29:47.0232 0x05b4 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] ProtectedStorage C:\Windows\system32\lsass.exe
11:29:47.0234 0x05b4 ProtectedStorage - ok
11:29:47.0318 0x05b4 [ 749857607EBE96595ECA10336EE6DFAD, 49B32F7461039641E60A32395EADC7870390B31049FE481F4AF9B2C2E962A2E7 ] ProtectMonitor C:\Program Files\PCDApp\StartHelp.exe
11:29:47.0323 0x05b4 ProtectMonitor - ok
11:29:47.0343 0x05b4 [ 99514FAA8DF93D34B5589187DB3AA0BA, 4DDE5EC0C721B22E1D7D55ED3514B60EA07435C232A3A931BB49C7F486B52C18 ] PSched C:\Windows\system32\DRIVERS\pacer.sys
11:29:47.0345 0x05b4 PSched - ok
11:29:47.0387 0x05b4 [ CCDAC889326317792480C0A67156A1EC, 3D3B561B6D4E12DE442C98993C929765F002AF5CFB5A00EFACE6ABE957F7E8AF ] ql2300 C:\Windows\system32\drivers\ql2300.sys
11:29:47.0411 0x05b4 ql2300 - ok
11:29:47.0450 0x05b4 [ 81A7E5C076E59995D54BC1ED3A16E60B, A2988F065F93C41B3B389BFF3BB3FD69F768C2AF249C2356F315CC92E5C9E128 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
11:29:47.0455 0x05b4 ql40xx - ok
11:29:47.0482 0x05b4 [ E9ECAE663F47E6CB43962D18AB18890F, F1A05320CAED9E745AA36A6DA9B64C48AAEDE888B42B249840CEB31448F7F432 ] QWAVE C:\Windows\system32\qwave.dll
11:29:47.0491 0x05b4 QWAVE - ok
11:29:47.0619 0x05b4 [ 9F5E0E1926014D17486901C88ECA2DB7, 67CDFB99AB546DCEEF20507EAC07DD52FFB51BFDFE9416ABEDDC1201B60D720E ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
11:29:47.0623 0x05b4 QWAVEdrv - ok
11:29:47.0836 0x05b4 [ E642B131FB74CAF4BB8A014F31113142, 18A81B27FB2DA556AC51DBA8956203A6E821D75B2B09F11049250E732318F573 ] R300 C:\Windows\system32\DRIVERS\atikmdag.sys
11:29:47.0891 0x05b4 R300 - ok
11:29:47.0906 0x05b4 [ 147D7F9C556D259924351FEB0DE606C3, E41EBA5F3098C6CF2BE4C0060A5F4BF161C3677D983B7A0D70ACC12FC3CFEFD7 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
11:29:47.0909 0x05b4 RasAcd - ok
11:29:47.0924 0x05b4 [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F, 6A410ABCCD2211EFF511CDBF22E4152B57D2996336EBE711DFF71904AF232DB2 ] RasAuto C:\Windows\System32\rasauto.dll
11:29:47.0930 0x05b4 RasAuto - ok
11:29:47.0947 0x05b4 [ A214ADBAF4CB47DD2728859EF31F26B0, A24F37F55E2C018B1B4FA2C568A01AAAAEA1220833ED24A93378386174A70A32 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
11:29:47.0951 0x05b4 Rasl2tp - ok
11:29:47.0977 0x05b4 [ 75D47445D70CA6F9F894B032FBC64FCF, 9112EA5D25F867136858524C7965ACCEDC02675D1E2985B950598D89CCF25E14 ] RasMan C:\Windows\System32\rasmans.dll
11:29:47.0986 0x05b4 RasMan - ok
11:29:48.0001 0x05b4 [ 509A98DD18AF4375E1FC40BC175F1DEF, CC7C278CA298CE102D871E34C176E73F903D6687D1E8B5AFAB8772C7DE1A60B1 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
11:29:48.0004 0x05b4 RasPppoe - ok
11:29:48.0012 0x05b4 [ 2005F4A1E05FA09389AC85840F0A9E4D, D8A664073FDE82F9AB324347024CDB7043635C84EB11C24C59AB384C52F0FD94 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
11:29:48.0015 0x05b4 RasSstp - ok
11:29:48.0036 0x05b4 [ B14C9D5B9ADD2F84F70570BBBFAA7935, 3D533767A50554B86C769DF4D8841B3EA680B3807E85EA3533BDA9B649548269 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
11:29:48.0046 0x05b4 rdbss - ok
11:29:48.0058 0x05b4 [ 89E59BE9A564262A3FB6C4F4F1CD9899, 6F948FB0E73495CA60B7B19E758268495EC8A084C475EC59AD7940AA619570BB ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
11:29:48.0060 0x05b4 RDPCDD - ok
11:29:48.0082 0x05b4 [ E8BD98D46F2ED77132BA927FCCB47D8B, 5187CF8F00AD67EDDF27DF675F3210C0D72E552578A89C58DF6953B1D5BEBCB8 ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
11:29:48.0090 0x05b4 rdpdr - ok
11:29:48.0096 0x05b4 [ 9D91FE5286F748862ECFFA05F8A0710C, 33F37F1B207151A5564BF051BBF16F35D8C5A0F426CCA078A51F125BF09E487B ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
11:29:48.0098 0x05b4 RDPENCDD - ok
11:29:48.0139 0x05b4 [ C127EBD5AFAB31524662C48DFCEB773A, 40A6B88FEAFF02D1B5C0CA32F290CF3D9B48B85D248C7532F30CC5C09BAA4D89 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
11:29:48.0145 0x05b4 RDPWD - ok
11:29:48.0203 0x05b4 [ 96EFEC24346A8EB1157E80523079ADDC, 7F8FC284029856C754E400B6C954369FFE27763C81D8F4AF4E58BFDD44CBC24A ] RealNetworks Downloader Resolver Service C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
11:29:48.0206 0x05b4 RealNetworks Downloader Resolver Service - ok
11:29:48.0229 0x05b4 [ BCDD6B4804D06B1F7EBF29E53A57ECE9, 8A961CCD0A0265E03D9952C733B593B02B5CF64E308D6B420276D2D6B20F86FC ] RemoteAccess C:\Windows\System32\mprdim.dll
11:29:48.0235 0x05b4 RemoteAccess - ok
11:29:48.0254 0x05b4 [ 9E6894EA18DAFF37B63E1005F83AE4AB, 5D6DF994D297C875D547C7B111A571AA90D582DAECADE18A53F65AD988819E67 ] RemoteRegistry C:\Windows\system32\regsvc.dll
11:29:48.0262 0x05b4 RemoteRegistry - ok
11:29:48.0291 0x05b4 [ 5123F83CBC4349D065534EEB6BBDC42B, 92A3F38EA924D83D601BB93E3750F9DBC2DD963FB7ACF2A0E776297E21815225 ] RpcLocator C:\Windows\system32\locator.exe
11:29:48.0295 0x05b4 RpcLocator - ok
11:29:48.0323 0x05b4 [ 3B5B4D53FEC14F7476CA29A20CC31AC9, EC02A412DA5FDE2C759A4A2C5904579E1CE7C4999CE87145812F354FC8F5E183 ] RpcSs C:\Windows\system32\rpcss.dll
11:29:48.0340 0x05b4 RpcSs - ok
11:29:48.0359 0x05b4 [ 9C508F4074A39E8B4B31D27198146FAD, 84913471E5A6C297B1EDABE45EF3FE7D2C4410EF04370F615109FD9E2690FFDB ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
11:29:48.0362 0x05b4 rspndr - ok
11:29:48.0390 0x05b4 [ 2D19A7469EA19993D0C12E627F4530BC, B59F0D4ACAA60ED95093FA561D4C5D87F26C9F6C646858772743038D97B2D6AB ] RTL8169 C:\Windows\system32\DRIVERS\Rtlh86.sys
11:29:48.0397 0x05b4 RTL8169 - ok
11:29:48.0425 0x05b4 [ 1C768E8D6D89175FE0563C65E6747D53, 3066BCE2E5ABCFDE4C2F2F71A336B33042587BCDC4773FC00DD873837F63E145 ] SaiK1713 C:\Windows\system32\DRIVERS\SaiK1713.sys
11:29:48.0430 0x05b4 SaiK1713 - ok
11:29:48.0446 0x05b4 [ 054A8A51C88A2FDD336399442BC4F0AA, 35B14739BEC8F65F869522DB07C7199FC0224E3638DF6C2AD2BB6DAEDD5AD1AE ] SaiMini C:\Windows\system32\DRIVERS\SaiMini.sys
11:29:48.0449 0x05b4 SaiMini - ok
11:29:48.0469 0x05b4 [ 6B6C34C52C087B0618BDA4730D47FE26, B34E3A1F3F1C456C25A83CBAA6B44A1567DA6C6627FB1018715FAC8A220F6DEE ] SaiNtBus C:\Windows\system32\drivers\SaiBus.sys
11:29:48.0472 0x05b4 SaiNtBus - ok
11:29:48.0499 0x05b4 [ 2C64A424F990C7841A287A6B5D3E2C27, 191042488C8095DCD34B75C4915041B76A1789000A3A66E9601E552EDAB99023 ] SaiU1713 C:\Windows\system32\DRIVERS\SaiU1713.sys
11:29:48.0502 0x05b4 SaiU1713 - ok
11:29:48.0518 0x05b4 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] SamSs C:\Windows\system32\lsass.exe
11:29:48.0521 0x05b4 SamSs - ok
11:29:48.0539 0x05b4 [ 3CE8F073A557E172B330109436984E30, CEC281C6076FAA1E34372CF419C6308E73811316606B8D0D9055B7D8952BDC88 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
11:29:48.0545 0x05b4 sbp2port - ok
11:29:48.0550 0x05b4 SBRE - ok
11:29:48.0577 0x05b4 [ 77B7A11A0C3D78D3386398FBBEA1B632, A3D290AB793BDC2F84C7B963300DFCE81CFE082A0FFF7489E8E5B14714892C00 ] SCardSvr C:\Windows\System32\SCardSvr.dll
11:29:48.0585 0x05b4 SCardSvr - ok
11:29:48.0623 0x05b4 [ 1A58069DB21D05EB2AB58EE5753EBE8D, EED8111EB613F4C93D1638C74FDB0A6DC6694E1B108DCD0D794B5B5F9B8C6EE4 ] Schedule C:\Windows\system32\schedsvc.dll
11:29:48.0641 0x05b4 Schedule - ok
11:29:48.0651 0x05b4 [ 312EC3E37A0A1F2006534913E37B4423, 81B8F462336791D162DAFA8092C1F437638DA3022CA24A2458B9FE183FC18C5D ] SCPolicySvc C:\Windows\System32\certprop.dll
11:29:48.0653 0x05b4 SCPolicySvc - ok
11:29:48.0672 0x05b4 [ 716313D9F6B0529D03F726D5AAF6F191, 44FE994A11631C1D99C73026340BACE39973C65A1281D87A61B481C9B5FAB251 ] SDRSVC C:\Windows\System32\SDRSVC.dll
11:29:48.0681 0x05b4 SDRSVC - ok
11:29:48.0734 0x05b4 [ 331E7BDE228914574FC9AE6CD520DAFA, 15C6364E73328E86E431DA0960DEE794F96A6E83FF82C9CA181E70127E395311 ] SeaPort C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
11:29:48.0742 0x05b4 SeaPort - ok
11:29:48.0748 0x05b4 SearchIndexer - ok
11:29:48.0764 0x05b4 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\Windows\system32\drivers\secdrv.sys
11:29:48.0767 0x05b4 secdrv - ok
11:29:48.0778 0x05b4 [ FD5199D4D8A521005E4B5EE7FE00FA9B, 0FB7A1D300C72B1ADC423CC57343C17853E5F8ACFE3EA2C42FAC2FF72E502FBE ] seclogon C:\Windows\system32\seclogon.dll
11:29:48.0784 0x05b4 seclogon - ok
11:29:48.0801 0x05b4 [ A9BBAB5759771E523F55563D6CBE140F, 415BF6F6A1E4C5F98DABF9C2EEAF8CA49730693046E5F94C7655683717EDAD75 ] SENS C:\Windows\system32\sens.dll
11:29:48.0807 0x05b4 SENS - ok
11:29:48.0820 0x05b4 [ CE9EC966638EF0B10B864DDEDF62A099, 2DEC5A8C947D87C12B342F15B8A552A0D49B979A2AC32D2C97FC7A3A76C34524 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
11:29:48.0823 0x05b4 Serenum - ok
11:29:48.0837 0x05b4 [ 6D663022DB3E7058907784AE14B69898, 54263888C64A7F010D3B5E399369B0F3FF3AF0A0DE8ADB502B98277533E4D45F ] Serial C:\Windows\system32\DRIVERS\serial.sys
11:29:48.0840 0x05b4 Serial - ok
11:29:48.0863 0x05b4 [ 8AF3D28A879BF75DB53A0EE7A4289624, C870BEBB969DCD9170E64584D1CD329A193D9FC812A45EF3574891110CA68B45 ] sermouse C:\Windows\system32\drivers\sermouse.sys
11:29:48.0865 0x05b4 sermouse - ok
11:29:48.0897 0x05b4 [ D2193326F729B163125610DBF3E17D57, 82C894E24E2C139C884246A693AD37BBF0A4E9375B7F7A288EF1DB22F89434B9 ] SessionEnv C:\Windows\system32\sessenv.dll
11:29:48.0904 0x05b4 SessionEnv - ok
11:29:48.0929 0x05b4 [ 103B79418DA647736EE95645F305F68A, E4D356FD8C62B616D3584FE84905995A1CEE452288E3A456CC358FF41FEAB1B7 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
11:29:48.0931 0x05b4 sffdisk - ok
11:29:48.0952 0x05b4 [ 8FD08A310645FE872EEEC6E08C6BF3EE, 702A148C9DE172E7B5E331F057487255E0729FD42F949BB0FF2D5A01775933CF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
11:29:48.0954 0x05b4 sffp_mmc - ok
11:29:48.0976 0x05b4 [ 9CFA05FCFCB7124E69CFC812B72F9614, E9CFCE695E4D1AF146781CFAA295878536E573F06AEA65438878DE29EC9959AD ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
11:29:48.0978 0x05b4 sffp_sd - ok
11:29:48.0993 0x05b4 [ 46ED8E91793B2E6F848015445A0AC188, 34A97304F23EA153422848F6F1CAF8ADF0944EA781E12F027B6DEAF751A04B5D ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
11:29:49.0009 0x05b4 sfloppy - ok
11:29:49.0047 0x05b4 [ E1499BD0FF76B1B2FBBF1AF339D91165, 9A8F0403467E75880D3070C4D862489A75134383BAF8E7C45F8C5E7DFB0605A5 ] SharedAccess C:\Windows\System32\ipnathlp.dll
11:29:49.0058 0x05b4 SharedAccess - ok
11:29:49.0088 0x05b4 [ C7230FBEE14437716701C15BE02C27B8, 8221DE73D77CF71C2857D78829E807D015D9CB8BDEE4BAFD6950BF0C718CC774 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
11:29:49.0099 0x05b4 ShellHWDetection - ok
11:29:49.0115 0x05b4 [ D2A595D6EEBEEAF4334F8E50EFBC9931, 851B8205C657BF806C4D815DC75356E99B4246016B6E1C1F51BAF8AD1E6D5299 ] sisagp C:\Windows\system32\drivers\sisagp.sys
11:29:49.0118 0x05b4 sisagp - ok
11:29:49.0131 0x05b4 [ CEDD6F4E7D84E9F98B34B3FE988373AA, E102977E6FAC30B5ABEEC0B412A9F2A10C5C42F4D9C3AD69296BF9E1E88B6141 ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
11:29:49.0134 0x05b4 SiSRaid2 - ok
11:29:49.0148 0x05b4 [ DF843C528C4F69D12CE41CE462E973A7, A2BEC74FCB8D8B6B9D8DD4746C013DFDF1DD662AEFE9B88CA495E5B83B4A76F9 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
11:29:49.0152 0x05b4 SiSRaid4 - ok
11:29:49.0337 0x05b4 [ 9F712B26EE3B0242DE997A42FD302E2C, 12663EB108F158282A965EE70980627C2F2332BA7944D7DE03B78E18BEB87D26 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
11:29:49.0460 0x05b4 Skype C2C Service - ok
11:29:49.0552 0x05b4 [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
11:29:49.0558 0x05b4 SkypeUpdate - ok
11:29:49.0693 0x05b4 [ 862BB4CBC05D80C5B45BE430E5EF872F, F4961B22C93E472C8C862421AA231CDDA9E40D3958741A1D666357F22CC3143D ] slsvc C:\Windows\system32\SLsvc.exe
11:29:49.0810 0x05b4 slsvc - ok
11:29:49.0833 0x05b4 [ 6EDC422215CD78AA8A9CDE6B30ABBD35, D8342BC3152859F4F7512E85ABEC61147DBCAB515458644728874E42F639D6CA ] SLUINotify C:\Windows\system32\SLUINotify.dll
11:29:49.0839 0x05b4 SLUINotify - ok
11:29:49.0856 0x05b4 [ 46B40982AF166BF89C3F51FB13E60D6D, C95C4EEF37D270BFB59B8A706AF76EE5859E14030C7F042C9D8C1101A672DB8E ] SmartDefragDriver C:\Windows\system32\Drivers\SmartDefragDriver.sys
11:29:49.0858 0x05b4 SmartDefragDriver - ok
11:29:49.0869 0x05b4 [ 7B75299A4D201D6A6533603D6914AB04, 172BE3951F06B1991EF70B71EB91786D1EFC4E381C22BCA3A5F622CD59F3227E ] Smb C:\Windows\system32\DRIVERS\smb.sys
11:29:49.0873 0x05b4 Smb - ok
11:29:49.0894 0x05b4 [ 2A146A055B4401C16EE62D18B8E2A032, D0930FFA53951C92F56E1ECB41374F4C0AA01ECBF99F474513A21EAD579CFE47 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
11:29:49.0899 0x05b4 SNMPTRAP - ok
11:29:49.0922 0x05b4 [ 7AEBDEEF071FE28B0EEF2CDD69102BFF, E03BEE733F4C2A5F39946D4955679A290E22758DFCE4222EE69ABF64FC54EDF7 ] spldr C:\Windows\system32\drivers\spldr.sys
11:29:49.0925 0x05b4 spldr - ok
11:29:49.0947 0x05b4 [ 8554097E5136C3BF9F69FE578A1B35F4, 2578545CFD647FB18F217B33C8CB4F0184A35F548659494056E455020CC15FB0 ] Spooler C:\Windows\System32\spoolsv.exe
11:29:49.0967 0x05b4 Spooler - ok
11:29:50.0058 0x05b4 [ 68103A2B441BBF3908EBB587F0704D6C, 0EE921D3D3D88AD0380923429E82B58078F53D7A9D53458AA33FEDF376EF1212 ] sptd C:\Windows\System32\Drivers\sptd.sys
11:29:50.0096 0x05b4 sptd - ok
11:29:50.0137 0x05b4 [ 41987F9FC0E61ADF54F581E15029AD91, A46E718648C2DD3B43FC3798932C966315893A59442A0686CE46C605B9E4641E ] srv C:\Windows\system32\DRIVERS\srv.sys
11:29:50.0158 0x05b4 srv - ok
11:29:50.0234 0x05b4 [ FF33AFF99564B1AA534F58868CBE41EF, EFBB005DA19E5B320009CBF93E686D8BFA6A50A23B5A5001C7C84C7D85EF7D49 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
11:29:50.0240 0x05b4 srv2 - ok
11:29:50.0278 0x05b4 [ 7605C0E1D01A08F3ECD743F38B834A44, 83A77E31004BCF83443F30EFC290E04BB1A2F332E8DFD614AB6E25B527C92299 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
11:29:50.0283 0x05b4 srvnet - ok
11:29:50.0299 0x05b4 [ 03D50B37234967433A5EA5BA72BC0B62, 7B61D6A4BF5D446A9473D058BC207FB6DA7C2FEFB8083F3B66CAC8907DBD8327 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
11:29:50.0307 0x05b4 SSDPSRV - ok
11:29:50.0319 0x05b4 [ 6F1A32E7B7B30F004D9A20AFADB14944, AA9D874A14CA4779E76701D2B02F4CCA92CD5917435FB4CACA149FCB2D1D4C4C ] SstpSvc C:\Windows\system32\sstpsvc.dll
11:29:50.0326 0x05b4 SstpSvc - ok
11:29:50.0383 0x05b4 [ DB0768632C680B7C0D3AA92D80416893, BEC3CF4F1CB150AC7C4647DD7C0D5D62B10824308E44467CD77CA3427A46FB20 ] Steam Client Service C:\Program Files\Common Files\Steam\SteamService.exe
11:29:50.0399 0x05b4 Steam Client Service - ok
11:29:50.0442 0x05b4 [ 5DE7D67E49B88F5F07F3E53C4B92A352, 6930A598C35646646ED0E91633797EFE139AE6CDD0012335BD1340754A22F997 ] stisvc C:\Windows\System32\wiaservc.dll
11:29:50.0457 0x05b4 stisvc - ok
11:29:50.0476 0x05b4 [ 7BA58ECF0C0A9A69D44B3DCA62BECF56, 23CC47FA2D6E183D69DB0D3D3F3081A830D94A58FBC0A9A295B3A56C51E9486A ] swenum C:\Windows\system32\DRIVERS\swenum.sys
11:29:50.0480 0x05b4 swenum - ok
11:29:50.0500 0x05b4 [ F21FD248040681CCA1FB6C9A03AAA93D, 32FE765841A183A1F2C1ACACBBF8CDB11E7D4D4396F9C9F6CFF1B51C9B620ED3 ] swprv C:\Windows\System32\swprv.dll
11:29:50.0511 0x05b4 swprv - ok
11:29:50.0540 0x05b4 [ 192AA3AC01DF071B541094F251DEED10, 5C6EB56D1C39F3717EB754A1B37C8A618BA4F2107F64048E985D71FA04D1AD05 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
11:29:50.0543 0x05b4 Symc8xx - ok
11:29:50.0559 0x05b4 [ 8C8EB8C76736EBAF3B13B633B2E64125, A6C4845DDED81CCF4947612A4D6E42035136025BCD80812D2FF396927CAADEC5 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
11:29:50.0564 0x05b4 Sym_hi - ok
11:29:50.0585 0x05b4 [ 8072AF52B5FD103BBBA387A1E49F62CB, D336A7D008D145619E79043EBF5D0D455086BA1FEF89612BC2EA11CC363D82B0 ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
11:29:50.0588 0x05b4 Sym_u3 - ok
11:29:50.0626 0x05b4 [ 9A51B04E9886AA4EE90093586B0BA88D, 1666C29FBFA34174B506678C920636519051D03456A6DDCCD6FF708CAE5D9962 ] SysMain C:\Windows\system32\sysmain.dll
11:29:50.0642 0x05b4 SysMain - ok
11:29:50.0671 0x05b4 [ 2DCA225EAE15F42C0933E998EE0231C3, 67C7913E41854DFA3043426B7D59AA1FBBB9DE01A6E6904E40A696A7C61A5F98 ] TabletInputService C:\Windows\System32\TabSvc.dll
11:29:50.0677 0x05b4 TabletInputService - ok
11:29:50.0701 0x05b4 [ B7AEE68D2E867CBF69B649B18FCEDBBB, 82814EEDBD2908DC2D6A2162C647FB323F95EA7D9EA49265DB44CA72468753A0 ] tap0901t C:\Windows\system32\DRIVERS\tap0901t.sys
11:29:50.0704 0x05b4 tap0901t - ok
11:29:50.0729 0x05b4 [ D7673E4B38CE21EE54C59EEEB65E2483, 330D0AD13F5008D8569CE8E5EA0BBD69F54F59FEB54FD903FA18D2849CEC6AF0 ] TapiSrv C:\Windows\System32\tapisrv.dll
11:29:50.0740 0x05b4 TapiSrv - ok
11:29:50.0758 0x05b4 [ CB05822CD9CC6C688168E113C603DBE7, 9DB8945BDC702BB13E9DE477F2D3CCA4CE0E9E8CE9B54CE1A25375F2A2C93F0E ] TBS C:\Windows\System32\tbssvc.dll
11:29:50.0765 0x05b4 TBS - ok
11:29:50.0809 0x05b4 [ D18D53974FD715D50FC76F9FFE1C830D, 50424BD5950D8FC7724A6E48AE5A39D6E727FAF326C31657C69F1DE13C1450E3 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
11:29:50.0835 0x05b4 Tcpip - ok
11:29:50.0876 0x05b4 [ D18D53974FD715D50FC76F9FFE1C830D, 50424BD5950D8FC7724A6E48AE5A39D6E727FAF326C31657C69F1DE13C1450E3 ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
11:29:50.0896 0x05b4 Tcpip6 - ok
11:29:50.0922 0x05b4 [ 608C345A255D82A6289C2D468EB41FD7, 74ECFDD45DC3EB3AFAEF9C42B546241AA1D6ACB2F6591A76DDB8BB1768545889 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
11:29:50.0926 0x05b4 tcpipreg - ok
11:29:50.0946 0x05b4 [ 5DCF5E267BE67A1AE926F2DF77FBCC56, E00C0A03AEE579B51B39930A72F39F4EFFE7CDA37187B0AE90F4E001AD15473B ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
11:29:50.0948 0x05b4 TDPIPE - ok
11:29:50.0964 0x05b4 [ 389C63E32B3CEFED425B61ED92D3F021, E4718E290678F00995E754AE66F1027D227BFAB9E1A1D2AC8E4EAD27DC50CB17 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
11:29:50.0967 0x05b4 TDTCP - ok
11:29:50.0988 0x05b4 [ 76B06EB8A01FC8624D699E7045303E54, EC30F244B48A35622ED3EE91792F6A1517C5A50770FAB3945E7A945EB7AF28A8 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
11:29:50.0993 0x05b4 tdx - ok
11:29:51.0010 0x05b4 [ 3CAD38910468EAB9A6479E2F01DB43C7, 9D18C71EDF39743A0A592BC0873909D2B75B5B177B2672A865D1EEC0BFD2F61C ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
11:29:51.0014 0x05b4 TermDD - ok
11:29:51.0041 0x05b4 [ BB95DA09BEF6E7A131BFF3BA5032090D, BAF6997F8D944F85F0553957677866C7F22E72AA434BA45FFFB6CC41041070DC ] TermService C:\Windows\System32\termsrv.dll
11:29:51.0055 0x05b4 TermService - ok
11:29:51.0088 0x05b4 [ C7230FBEE14437716701C15BE02C27B8, 8221DE73D77CF71C2857D78829E807D015D9CB8BDEE4BAFD6950BF0C718CC774 ] Themes C:\Windows\system32\shsvcs.dll
11:29:51.0098 0x05b4 Themes - ok
11:29:51.0113 0x05b4 [ 1076FFCFFAAE8385FD62DFCB25AC4708, 8C5C106FCB018E019DEBA8E1A6AA170CD7A93293F27994F724EBC486238DA0AA ] THREADORDER C:\Windows\system32\mmcss.dll
11:29:51.0119 0x05b4 THREADORDER - ok
11:29:51.0138 0x05b4 [ EC74E77D0EB004BD3A809B5F8FB8C2CE, 1E4BBC58D0E35D79C764CF1BA73602C5E29A5A2393D40332801D533E445C6667 ] TrkWks C:\Windows\System32\trkwks.dll
11:29:51.0143 0x05b4 TrkWks - ok
11:29:51.0169 0x05b4 [ 97D9D6A04E3AD9B6C626B9931DB78DBA, 8E42133ED5EE5EEC414A8B11C1035385C6141E445EA9677F947D20768F25A877 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
11:29:51.0172 0x05b4 TrustedInstaller - ok
11:29:51.0203 0x05b4 [ F4EAA7ECBCB25DE901C9B7F2CDCDA0B3, 1CBB5106A32362ABDEE73BF170E205FE64DDBF826C5F6DFFCCD229F220B9C85E ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
11:29:51.0206 0x05b4 tssecsrv - ok
11:29:51.0238 0x05b4 [ CAECC0120AC49E3D2F758B9169872D38, 80DB15ADF5F4FF78D0C7D5081B6C0E8F1E5125872B60D23C19DA8E62C9DAC9A8 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
11:29:51.0247 0x05b4 tunmp - ok
11:29:51.0263 0x05b4 [ 300DB877AC094FEAB0BE7688C3454A9C, 3B36AA191FBE25B1A61150EAA2BDF8BA286DC4C052F6E98B0ED8202135553D8C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
11:29:51.0266 0x05b4 tunnel - ok
11:29:51.0337 0x05b4 [ C9FBAC084AB1D7005C950BC8DDA6BE7C, C082A42348EB8954B09D6DBD32DE22260E6096F407108F67A5A32B816098BCC9 ] TunngleService C:\Program Files\Tunngle\TnglCtrl.exe
11:29:51.0358 0x05b4 TunngleService - ok
11:29:51.0392 0x05b4 [ C3ADE15414120033A36C0F293D4A4121, 74A002C4B5EBD94E33EDEACB6639AF44ED72A8DDE3083C6DE71C1EE937EF1A9C ] uagp35 C:\Windows\system32\drivers\uagp35.sys
11:29:51.0396 0x05b4 uagp35 - ok
11:29:51.0426 0x05b4 [ D9728AF68C4C7693CB100B8441CBDEC6, A2CEE1EE4EF17106349F4E6967F504354801934179FBB3F10B9A4E3C30BC28CE ] udfs C:\Windows\system32\DRIVERS\udfs.sys
11:29:51.0433 0x05b4 udfs - ok
11:29:51.0447 0x05b4 [ ECEF404F62863755951E09C802C94AD5, 5D92062B3E371F196774EBFE840C78501E55A244DB2A49703C7AC0141C7DABF1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
11:29:51.0453 0x05b4 UI0Detect - ok
11:29:51.0484 0x05b4 [ 332D341D92B933600D41953B08360DFB, 213A5C84ABB0D627C05B355084A26A5081645D4EC398FF19EF6BBCB690B10055 ] UleadBurningHelper C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
11:29:51.0488 0x05b4 UleadBurningHelper - ok
11:29:51.0508 0x05b4 [ 75E6890EBFCE0841D3291B02E7A8BDB0, FDF9CDCCCCC0AA2A52623C5A67AC5F5224557EE4C8F6487CB13CAEB012575E2A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
11:29:51.0511 0x05b4 uliagpkx - ok
11:29:51.0531 0x05b4 [ 3CD4EA35A6221B85DCC25DAA46313F8D, 100A7E12B8EA395F70A00874328E87B930CE88FF442F3576FE88B105A22E04C5 ] uliahci C:\Windows\system32\drivers\uliahci.sys
11:29:51.0539 0x05b4 uliahci - ok
11:29:51.0558 0x05b4 [ 8514D0E5CD0534467C5FC61BE94A569F, A6EFB967044F88335469DB3351587E31CEC659BB6A7D8ED45C68329232C31BB9 ] UlSata C:\Windows\system32\drivers\ulsata.sys
11:29:51.0563 0x05b4 UlSata - ok
11:29:51.0603 0x05b4 [ 38C3C6E62B157A6BC46594FADA45C62B, 44F87DC955CB4E35E0EB4C8B4E931472B33D97FE000C22370A06AD5EDCEFD0BA ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
11:29:51.0608 0x05b4 ulsata2 - ok
11:29:51.0637 0x05b4 [ 32CFF9F809AE9AED85464492BF3E32D2, 91AAA47AEF17F373276B01AC8FA823592A0C854541A7A9A3B78F2350DB964EBC ] umbus C:\Windows\system32\DRIVERS\umbus.sys
11:29:51.0641 0x05b4 umbus - ok
11:29:51.0668 0x05b4 [ 68308183F4AE0BE7BF8ECD07CB297999, 4444233CA3C42BEE50ED47553D4AE5A7C12D8F288D2FA4B2DAE1D9B9FEC1A72D ] upnphost C:\Windows\System32\upnphost.dll
11:29:51.0679 0x05b4 upnphost - ok
11:29:51.0716 0x05b4 [ 1114579556DB85E9FAF9590DBC64CD62, 10479A3C12BBBB9B5759082358FE11AC20BAEFA6B4977C8AE6E60AA17BE6C7FA ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
11:29:51.0720 0x05b4 usbaudio - ok
11:29:51.0763 0x05b4 [ AAB0B5F72D2D726FBFDC895A2902DE1D, 7824AF6E2ADEA23F208526F3A62AD1BACDBBDB23E58EB5806890B0761529C50F ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
11:29:51.0769 0x05b4 usbccgp - ok
11:29:51.0805 0x05b4 [ E9476E6C486E76BC4898074768FB7131, D14B8F69A511DC1F990A9C123C18689AFE59659BA8130D248D8D03E9BD2143B6 ] usbcir C:\Windows\system32\drivers\usbcir.sys
11:29:51.0809 0x05b4 usbcir - ok
11:29:51.0844 0x05b4 [ 153E8515CB86F8BB5D1A8B478EBF4BB2, 0F1F79BA7C32ACAAE69184A56E67D6E18E2E2F07E0BE23F266401431169DAE14 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
11:29:51.0846 0x05b4 usbehci - ok
11:29:51.0893 0x05b4 [ 2AE6BCEBD85D31317E433733DAF25888, 7B2C0E8703D0275A620160E479166EB7AA31B0F146507603535CEBF0BA4684A4 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
11:29:51.0899 0x05b4 usbhub - ok
11:29:51.0926 0x05b4 [ D457EBD0C3A8B3A3A144355B5EE91CBC, 6AD52BDBB1607A48F0B02E663B97C3A00E3345B1B12C259608A5AE728C1C06B2 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
11:29:51.0928 0x05b4 usbohci - ok
11:29:52.0005 0x05b4 [ D136F47607777CA35C1BBE157F16D0FB, 16F12B183FA2B8963446BC1B3252DCBFE030B522236021CF761ED14E6E2DD4BF ] USBPNPA C:\Windows\system32\drivers\CM108.sys
11:29:52.0053 0x05b4 USBPNPA - ok
11:29:52.0082 0x05b4 [ E75C4B5269091D15A2E7DC0B6D35F2F5, B0A4141B69B66276890836DE98EB8BC790D35CE59FA503060593E8CC12AA106B ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
11:29:52.0085 0x05b4 usbprint - ok
11:29:52.0106 0x05b4 [ 1D714B8497CD68307806D5D3F60A5169, 1914D92ECE39995168E3C8F5A7694B7A94954DB299410A2781D1321C8E60C3D9 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
11:29:52.0109 0x05b4 usbscan - ok
11:29:52.0144 0x05b4 [ BE3DA31C191BC222D9AD503C5224F2AD, 201FB0FDBF423342202686DC0D8A3221B7798AE04C04A649D3441C257C733CE8 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
11:29:52.0148 0x05b4 USBSTOR - ok
11:29:52.0165 0x05b4 [ 325DBBACB8A36AF9988CCF40EAC228CC, 22FE5658A12296634FBE9D8565485BEE8CB200C47182F70DC9D2B0442E10C4AA ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
11:29:52.0168 0x05b4 usbuhci - ok
11:29:52.0207 0x05b4 [ 73FF24E21B690625A58109637DDA0DF7, 62B1F9CD82678E2110D4BB5CC86EE8A7AB0757681443916620B6AAA1EF0DECEB ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
11:29:52.0212 0x05b4 usbvideo - ok
11:29:52.0238 0x05b4 [ 1509E705F3AC1D474C92454A5C2DD81F, 7F525921A3513224F8B093A16E19B4235B300349A14B0B86EE11B7473BA53337 ] UxSms C:\Windows\System32\uxsms.dll
11:29:52.0243 0x05b4 UxSms - ok
11:29:52.0268 0x05b4 [ CD88D1B7776DC17A119049742EC07EB4, 6B68B9EDB8C6BCB2644F1F004D5743E928509D12107D996F390A24A72E0AA528 ] vds C:\Windows\System32\vds.exe
11:29:52.0284 0x05b4 vds - ok
11:29:52.0316 0x05b4 [ 7D92BE0028ECDEDEC74617009084B5EF, D0749CE6FA3415BA4364299F8D6D53F133E8D2F44C6F1057996243415A540A53 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
11:29:52.0318 0x05b4 vga - ok
11:29:52.0337 0x05b4 [ 2E93AC0A1D8C79D019DB6C51F036636C, 8B6F3B4EE90691A22788915AD0F99D8EE617750430A34E7CEB9AB4FB4E581755 ] VgaSave C:\Windows\System32\drivers\vga.sys
11:29:52.0339 0x05b4 VgaSave - ok
11:29:52.0357 0x05b4 [ 045D9961E591CF0674A920B6BA3BA5CB, EBF498A0424CEA0F7ECBAAE144A8669CE6B5DD67115DE22CEC5A46AED26CD90B ] viaagp C:\Windows\system32\drivers\viaagp.sys
11:29:52.0360 0x05b4 viaagp - ok
11:29:52.0383 0x05b4 [ 56A4DE5F02F2E88182B0981119B4DD98, 36FC94BCFD41907838DBCB02E6EA24065FDED4224239CD19E90D14433BE9108B ] ViaC7 C:\Windows\system32\drivers\viac7.sys
11:29:52.0385 0x05b4 ViaC7 - ok
11:29:52.0399 0x05b4 [ FD2E3175FCADA350C7AB4521DCA187EC, 1C914B184478611A27E0141F90EBC34FC63DFB2A83441DD36DFA43D945FB1C52 ] viaide C:\Windows\system32\drivers\viaide.sys
11:29:52.0401 0x05b4 viaide - ok
11:29:52.0431 0x05b4 [ 69503668AC66C77C6CD7AF86FBDF8C43, 2CE407674A58313737073F02B9A617460BBA84B36C3A16D98AE5ED45279F5006 ] volmgr C:\Windows\system32\drivers\volmgr.sys
11:29:52.0435 0x05b4 volmgr - ok
11:29:52.0463 0x05b4 [ 23E41B834759917BFD6B9A0D625D0C28, 9F60992805262F936E8DA33610FDF60A191ECAFC08BBF657C8F9A21833C8EFC5 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
11:29:52.0472 0x05b4 volmgrx - ok
11:29:52.0493 0x05b4 [ 786DB5771F05EF300390399F626BF30A, 4A07BE5AEDBA4C15C2F9A91250F0488A0B0305C67BB7A037508D5CBF86D4E1B7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
11:29:52.0501 0x05b4 volsnap - ok
11:29:52.0522 0x05b4 [ D984439746D42B30FC65A4C3546C6829, B134A9890638C2B4964A9C30812A2828A3E0CC641690CBF22D9FCE65EE3C2385 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
11:29:52.0527 0x05b4 vsmraid - ok
11:29:52.0587 0x05b4 [ DB3D19F850C6EB32BDCB9BC0836ACDDB, D81FF1CDA87A2FE83EFD5B3FE01EFF940952F8BAEE70BEA3B2F6EF30E2121704 ] VSS C:\Windows\system32\vssvc.exe
11:29:52.0629 0x05b4 VSS - ok
11:29:52.0680 0x05b4 [ 96EA68B9EB310A69C25EBB0282B2B9DE, C76D3427F8A2953CB4D96BBA1523679CBE1BBF7FA821A35D2FBEB3E67AC6A10B ] W32Time C:\Windows\system32\w32time.dll
11:29:52.0692 0x05b4 W32Time - ok
11:29:52.0734 0x05b4 [ 48DFEE8F1AF7C8235D4E626F0C4FE031, A41D05BC0DA3C476C32E0A4DAF015DF7BADF28A03CE236D5596885FF1772F148 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
11:29:52.0737 0x05b4 WacomPen - ok
11:29:52.0763 0x05b4 [ 55201897378CCA7AF8B5EFD874374A26, 350ADDCEFAA33E301027CFEA8DDE703F6FBD6E53624598CB2E7B671B9E48F7CC ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
11:29:52.0766 0x05b4 Wanarp - ok
11:29:52.0772 0x05b4 [ 55201897378CCA7AF8B5EFD874374A26, 350ADDCEFAA33E301027CFEA8DDE703F6FBD6E53624598CB2E7B671B9E48F7CC ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
11:29:52.0774 0x05b4 Wanarpv6 - ok
11:29:52.0833 0x05b4 [ A3CD60FD826381B49F03832590E069AF, 213C5DB5E5D828264286FD7548527566D6160CCA780BC6853B7B28CECF329674 ] wcncsvc C:\Windows\System32\wcncsvc.dll
11:29:52.0847 0x05b4 wcncsvc - ok
11:29:52.0868 0x05b4 [ 11BCB7AFCDD7AADACB5746F544D3A9C7, 0370E20FD12ED713F94E5CD76F068F7A7A5E7F42416DD2A8A41249020DA7DA31 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
11:29:52.0874 0x05b4 WcsPlugInService - ok
11:29:52.0926 0x05b4 [ AFC5AD65B991C1E205CF25CFDBF7A6F4, 544173AE85A11B99B9221DB30B6803DAEB3EB7FCA57FE62F0D13EF70B9C69A89 ] Wd C:\Windows\system32\drivers\wd.sys
11:29:52.0929 0x05b4 Wd - ok
11:29:53.0089 0x05b4 [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
11:29:53.0121 0x05b4 Wdf01000 - ok
11:29:53.0152 0x05b4 [ ABFC76B48BB6C96E3338D8943C5D93B5, B5B22D445724D58641A53276063A4AA2A98F07B93865C86E94661EB31BD63511 ] WdiServiceHost C:\Windows\system32\wdi.dll
11:29:53.0159 0x05b4 WdiServiceHost - ok
11:29:53.0167 0x05b4 [ ABFC76B48BB6C96E3338D8943C5D93B5, B5B22D445724D58641A53276063A4AA2A98F07B93865C86E94661EB31BD63511 ] WdiSystemHost C:\Windows\system32\wdi.dll
11:29:53.0174 0x05b4 WdiSystemHost - ok
11:29:53.0206 0x05b4 [ 04C37D8107320312FBAE09926103D5E2, 1C6726A9871CBACB240AFA93E57781515F01758D43693DDA395EA683D97234F0 ] WebClient C:\Windows\System32\webclnt.dll
11:29:53.0215 0x05b4 WebClient - ok
11:29:53.0242 0x05b4 [ AE3736E7E8892241C23E4EBBB7453B60, 0F998116CC07CD719CB237EAE53BB16B2EDD6973828B9C1055EB981AEA0453D1 ] Wecsvc C:\Windows\system32\wecsvc.dll
11:29:53.0251 0x05b4 Wecsvc - ok
11:29:53.0267 0x05b4 [ 670FF720071ED741206D69BD995EA453, 4B96F5E3545F69AE9EBC75DC4AB27B87306D656EE526AE39E7EC7E2B6F83F7FD ] wercplsupport C:\Windows\System32\wercplsupport.dll
11:29:53.0274 0x05b4 wercplsupport - ok
11:29:53.0287 0x05b4 [ 32B88481D3B326DA6DEB07B1D03481E7, 821FBAF147E525ED15EB9391B16A96C6D5464841258B11F277EFB57A3BD50E37 ] WerSvc C:\Windows\System32\WerSvc.dll
11:29:53.0295 0x05b4 WerSvc - ok
11:29:53.0312 0x05b4 [ 0E507042CCEFC40B8BB5DDE75A7BD0C7, 39CFCD7FC386347D9A1242890807FB00ABED9E1AC90CE7D7A023F4468E609A9B ] wfcxacap C:\Windows\system32\DRIVERS\wfcxacap.sys
11:29:53.0314 0x05b4 wfcxacap - ok
11:29:53.0327 0x05b4 [ B8ACB6B48F928FF5E58B1A2DC3FA628C, 9B10820996000D4F261F4457B1B3206C843D0780E9F204DFFA95067A07C0ECEE ] wfcxatun C:\Windows\system32\drivers\wfcxatun.sys
11:29:53.0331 0x05b4 wfcxatun - ok
11:29:53.0341 0x05b4 [ E32EEEAC4ED0249474A2C9B71F1D5A73, E9D43BBC6876892DFC1A40C0630B5C0B9878275A802F61E064A0B904DF2BEC88 ] wfcxdtun C:\Windows\system32\drivers\wfcxdtun.sys
11:29:53.0343 0x05b4 wfcxdtun - ok
11:29:53.0358 0x05b4 [ FC4F80B8C23DBF4D23A9A4DED38CF430, A7D246BCB199ED8EB0DBC6FADE575CCD9FD254C27DBDE226885BDEFF5608B0F2 ] wfcxtcap C:\Windows\system32\drivers\wfcxtcap.sys
11:29:53.0361 0x05b4 wfcxtcap - ok
11:29:53.0395 0x05b4 [ E9905845ABC7B3521F642F9C8D08A03E, 38123C147FB4AE4A7AA587B458CD066F0E7BE7DF3D10DEAAFED14C00E45B3746 ] WFCXVCAP C:\Windows\system32\drivers\wfcxvcap.sys
11:29:53.0401 0x05b4 WFCXVCAP - ok
11:29:53.0408 0x05b4 [ 0AED0D6F83ADE999FA6A8E485830E4C5, 8DD23B1A2165BDAAF5AAC692447D00C63ECBEB287B4928A524F64FB6C9DF0E39 ] wfcxxbar C:\Windows\system32\drivers\wfcxxbar.sys
11:29:53.0410 0x05b4 wfcxxbar - ok
11:29:53.0452 0x05b4 [ 4575AA12561C5648483403541D0D7F2B, 2DBB7904285F16E879E1662C4CC4DFAA420D5EB24DDFC4BAC0B7616F5F44649A ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
11:29:53.0461 0x05b4 WinDefend - ok
11:29:53.0470 0x05b4 WinHttpAutoProxySvc - ok
11:29:53.0519 0x05b4 [ 6B2A1D0E80110E3D04E6863C6E62FD8A, EE8BC7C378993EFE90273764C83119EBF331768CD7B24DE949233C74A51306C2 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
11:29:53.0526 0x05b4 Winmgmt - ok
11:29:53.0532 0x05b4 WinRing0_1_2_0 - ok
11:29:53.0611 0x05b4 [ 7CFE68BDC065E55AA5E8421607037511, C2CE76D52AD4E31FC4216E94457DC16ABF65A5F3E883F0BD97AD387FB7574533 ] WinRM C:\Windows\system32\WsmSvc.dll
11:29:53.0643 0x05b4 WinRM - ok
11:29:53.0716 0x05b4 [ C008405E4FEEB069E30DA1D823910234, C392A7B5FEACB7D11A3A231C1AD65D533984E6E7429ECD3BFBF90A27E8DEB157 ] Wlansvc C:\Windows\System32\wlansvc.dll
11:29:53.0733 0x05b4 Wlansvc - ok
11:29:53.0841 0x05b4 [ 6067ACEF367E79914AF628FA1E9B5330, 491A705267B48C103E00B26BBD21FA8829DB03A88343CBC27264CEE5DE8C8DEF ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
11:29:53.0871 0x05b4 wlcrasvc - ok
11:29:53.0953 0x05b4 [ 0A70F4022EC2E14C159EFC4F69AA2477, FF248136576F9803762C54DE5439D3411B52DCBC95B93176A5DAB857967D9AC4 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
11:29:54.0061 0x05b4 wlidsvc - ok
11:29:54.0099 0x05b4 [ 5D410936831F7FB58EFF941EAC3F6D3D, 5A1E769F75562802CC0EAA44215501925EA4C260AD7A975CEE4AB8DCA2BB82C9 ] WmBEnum C:\Windows\system32\drivers\WmBEnum.sys
11:29:54.0110 0x05b4 WmBEnum - ok
11:29:54.0137 0x05b4 [ 7A13CFDE92956CA61A0927D766C5AD4F, 96B337903B7E59A7D60FE4A27064A993EF244D3D736016FFC13465C8F44068F8 ] WmFilter C:\Windows\system32\drivers\WmFilter.sys
11:29:54.0140 0x05b4 WmFilter - ok
11:29:54.0166 0x05b4 [ 701A9F884A294327E9141D73746EE279, C8A46B8C32F9EAC7848D385473F6B5C4B6DA719A941A75AD5F081757FC07A09D ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
11:29:54.0168 0x05b4 WmiAcpi - ok
11:29:54.0203 0x05b4 [ 43BE3875207DCB62A85C8C49970B66CC, 27169F2E8A30807794407DA8F80611E4287F940AAE2A1F00F547901872FB9703 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
11:29:54.0208 0x05b4 wmiApSrv - ok
11:29:54.0319 0x05b4 [ 3978704576A121A9204F8CC49A301A9B, 936CC13B90A183613BDA4081556C96D48CA415B5F65D61E18CB5F2E51EEBE59F ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
11:29:54.0339 0x05b4 WMPNetworkSvc - ok
11:29:54.0369 0x05b4 [ 6F04646BC690F8BBFC344BE32A60796D, DE2B4BE88CE38D6297F58BE2C643A3838C0470E2E3AB6289755E39B5E59061D7 ] WmVirHid C:\Windows\system32\drivers\WmVirHid.sys
11:29:54.0379 0x05b4 WmVirHid - ok
11:29:54.0391 0x05b4 [ 1D6CA43D562333F4DFB40BCEF2453F3A, BEEC5587ACE8ABF1DB0B9B68E43B29082AA2F4A6415CEC8536086944D506A704 ] WmXlCore C:\Windows\system32\drivers\WmXlCore.sys
11:29:54.0395 0x05b4 WmXlCore - ok
11:29:54.0415 0x05b4 [ CFC5A04558F5070CEE3E3A7809F3FF52, 45899E04000E21C4E009BE8B6149F199A5B2E0512C657A525770BF9DBFED7D2B ] WPCSvc C:\Windows\System32\wpcsvc.dll
11:29:54.0424 0x05b4 WPCSvc - ok
11:29:54.0442 0x05b4 [ 801FBDB89D472B3C467EB112A0FC9246, C24053FA12732089384D3AF06C676FF201D282FC5AD56A42B6EE8BAED4379CB2 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
11:29:54.0449 0x05b4 WPDBusEnum - ok
11:29:54.0474 0x05b4 [ DE9D36F91A4DF3D911626643DEBF11EA, 8029ECE76E29276BFB6ED3387AC560A9A779AAF683A4416E96334FAF7BDBADA0 ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys
11:29:54.0477 0x05b4 WpdUsb - ok
11:29:54.0583 0x05b4 [ F8D3544ACBCE9110362119F7C10D848E, 31C49201A931751A36286874AC0B929D886F490D7CE48CCC9283850A56AD9FD9 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
11:29:54.0606 0x05b4 WPFFontCache_v0400 - ok
11:29:54.0628 0x05b4 [ E3A3CB253C0EC2494D4A61F5E43A389C, 10BA8B102E31B961819E524FCA5FA817B588EC77FB26B4E176D0A5CFF11EDF79 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
11:29:54.0629 0x05b4 ws2ifsl - ok
11:29:54.0646 0x05b4 [ 1CA6C40261DDC0425987980D0CD2AAAB, 727C1E3A170316641F832A8D197EDA6D6EE1206E4ED7B741E5A4017B7F2F7B88 ] wscsvc C:\Windows\system32\wscsvc.dll
11:29:54.0654 0x05b4 wscsvc - ok
11:29:54.0659 0x05b4 WSearch - ok
11:29:54.0742 0x05b4 [ FC3EC24FCE372C89423E015A2AC1A31E, 8D028182CF83667D3E4D148979972D208FA6D9B8540EE47A0A7831B770ECD257 ] wuauserv C:\Windows\system32\wuaueng.dll
11:29:54.0789 0x05b4 wuauserv - ok
11:29:54.0830 0x05b4 [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
11:29:54.0834 0x05b4 WudfPf - ok
11:29:54.0849 0x05b4 [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
11:29:54.0856 0x05b4 WUDFRd - ok
11:29:54.0884 0x05b4 [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc C:\Windows\System32\WUDFSvc.dll
11:29:54.0892 0x05b4 wudfsvc - ok
11:29:54.0929 0x05b4 [ 9EEA6D029FEF5F3016D089B1A603837D, 0DB78D89A64B0C6C98E4E4454692EB7A51B0B3B1FA54CECB74D5B55AE7BEF4C9 ] xnacc C:\Windows\system32\DRIVERS\xnacc.sys
11:29:54.0944 0x05b4 xnacc - ok
11:29:54.0962 0x05b4 [ F5E5F944E63A9B5F6E76C2EBB2AC462F, 9F952279D406B04AF217520D042DCA2E2C8B9DD01E8DC877C87AA75644FFF48E ] xusb21 C:\Windows\system32\DRIVERS\xusb21.sys
11:29:54.0966 0x05b4 xusb21 - ok
11:29:54.0977 0x05b4 ================ Scan global ===============================
11:29:55.0029 0x05b4 [ F31EEBC1A1C81FD04005489CC3DCDFE7, 098C35ACFCCE1686C5A6DB6057001CBF8B06A863A0802CB2E9D793F4795F8CEE ] C:\Windows\system32\basesrv.dll
11:29:55.0070 0x05b4 [ A508314231C49AEE86987CEA3EAECAD1, D29BCFA967C23C7264592576D62D95FA8C687E8662D19DCCC73653A9EFB6340D ] C:\Windows\system32\winsrv.dll
11:29:55.0095 0x05b4 [ A508314231C49AEE86987CEA3EAECAD1, D29BCFA967C23C7264592576D62D95FA8C687E8662D19DCCC73653A9EFB6340D ] C:\Windows\system32\winsrv.dll
11:29:55.0156 0x05b4 [ D4E6D91C1349B7BFB3599A6ADA56851B, 8748091BF27F05D28D45688E04DD9229A4B2E159209A64F457703F66A8CECE4D ] C:\Windows\system32\services.exe
11:29:55.0169 0x05b4 [ Global ] - ok
11:29:55.0169 0x05b4 ================ Scan MBR ==================================
11:29:55.0183 0x05b4 [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
11:29:56.0202 0x05b4 \Device\Harddisk0\DR0 - ok
11:29:56.0202 0x05b4 ================ Scan VBR ==================================
11:29:56.0215 0x05b4 [ C1D416F583734A79C936A206534B7EB9 ] \Device\Harddisk0\DR0\Partition1
11:29:56.0239 0x05b4 \Device\Harddisk0\DR0\Partition1 - ok
11:29:56.0240 0x05b4 Waiting for KSN requests completion. In queue: 269
11:29:57.0240 0x05b4 Waiting for KSN requests completion. In queue: 269
11:29:58.0240 0x05b4 Waiting for KSN requests completion. In queue: 269
11:29:59.0240 0x05b4 Waiting for KSN requests completion. In queue: 269
11:30:00.0321 0x05b4 AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 8.0.1497.376 ), 0x40000 ( disabled : updated )
11:30:00.0391 0x05b4 Win FW state via NFP2: disabled
11:30:04.0153 0x05b4 ============================================================
11:30:04.0153 0x05b4 Scan finished
11:30:04.0153 0x05b4 ============================================================
11:30:04.0165 0x0c38 Detected object count: 0
11:30:04.0165 0x0c38 Actual detected object count: 0
11:30:42.0543 0x0cbc Deinitialize success
11:29:46.0409 0x05b4 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] p2pimsvc C:\Windows\system32\p2psvc.dll
11:29:46.0428 0x05b4 p2pimsvc - ok
11:29:46.0450 0x05b4 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] p2psvc C:\Windows\system32\p2psvc.dll
11:29:46.0469 0x05b4 p2psvc - ok
11:29:46.0522 0x05b4 [ 8A79FDF04A73428597E2CAF9D0D67850, DB438FDE5510AB2F350ED1AC4CF0E99D3CC665FE46533A438A8FDA4DAF950F93 ] Parport C:\Windows\system32\DRIVERS\parport.sys
11:29:46.0525 0x05b4 Parport - ok
11:29:46.0547 0x05b4 [ B9C2B89F08670E159F7181891E449CD9, BD48CE95CF4B75D1FD5FD379B2A8727BC000F2B6748B77636C6BDB0B37B0344A ] partmgr C:\Windows\system32\drivers\partmgr.sys
11:29:46.0549 0x05b4 partmgr - ok
11:29:46.0556 0x05b4 [ 6C580025C81CAF3AE9E3617C22CAD00E, 64F9061196462085E5DCD3ACB97A0D8FC67CA9A96DDD6E2103AFFF1593AE236A ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
11:29:46.0557 0x05b4 Parvdm - ok
11:29:46.0581 0x05b4 [ C6276AD11F4BB49B58AA1ED88537F14A, 409E956AF994640DF8D062E5E41F87A6EE7EEE0335C191B582722A49322357CE ] PcaSvc C:\Windows\System32\pcasvc.dll
11:29:46.0586 0x05b4 PcaSvc - ok
11:29:46.0611 0x05b4 [ 941DC1D19E7E8620F40BBC206981EFDB, 156142A8B587131D2D47074CBFD0A31F69B3C27A8C74C8C4F29DFE7B53BBA802 ] pci C:\Windows\system32\drivers\pci.sys
11:29:46.0616 0x05b4 pci - ok
11:29:46.0633 0x05b4 [ 1636D43F10416AEB483BC6001097B26C, 36E61A993693A46538FE0F726D67BB28886F61D53384AD600D1282296A27662E ] pciide C:\Windows\system32\drivers\pciide.sys
11:29:46.0634 0x05b4 pciide - ok
11:29:46.0653 0x05b4 [ E6F3FB1B86AA519E7698AD05E58B04E5, 2C4B45DDD3B980C9DAA6F039CAEFCD6E84A4D5BB43AFBA73C0C42B5556C1303C ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
11:29:46.0658 0x05b4 pcmcia - ok
11:29:46.0708 0x05b4 [ 6349F6ED9C623B44B52EA3C63C831A92, 9EAA3ABD396870123107D6E1B758F56FDA378BD28B28DB8415AA470D24294F92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
11:29:46.0734 0x05b4 PEAUTH - ok
11:29:46.0812 0x05b4 [ B1689DF169143F57053F795390C99DB3, 887B8C76B34CABC68067C0F27CC4EEF02457A53634C96FE5B0FE9B99453BDBEF ] pla C:\Windows\system32\pla.dll
11:29:46.0849 0x05b4 pla - ok
11:29:46.0884 0x05b4 [ C5E7F8A996EC0A82D508FD9064A5569E, 416A93816CDF12DD42DEA796D37E6E2000D3172AAAB20D3EAD3B715DACD4B61F ] PlugPlay C:\Windows\system32\umpnpmgr.dll
11:29:46.0894 0x05b4 PlugPlay - ok
11:29:46.0971 0x05b4 [ 831883B107684301F48ACE752C963984, EAF383C4ACC17DBB060BB8398225222175E028E1E332E2CE0548C97DAED3620E ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
11:29:46.0978 0x05b4 PnkBstrA - ok
11:29:47.0001 0x05b4 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
11:29:47.0019 0x05b4 PNRPAutoReg - ok
11:29:47.0044 0x05b4 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] PNRPsvc C:\Windows\system32\p2psvc.dll
11:29:47.0063 0x05b4 PNRPsvc - ok
11:29:47.0095 0x05b4 [ D0494460421A03CD5225CCA0059AA146, FC30E90522C63F2A66D89381705712D2CDF07B2E029DF40C2DEBB2353E763E90 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
11:29:47.0108 0x05b4 PolicyAgent - ok
11:29:47.0132 0x05b4 [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1, 6E4B188A4BFDBBCA51347BCCE2873F2D0F858398851B9B5129CB9F36A02E4354 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
11:29:47.0134 0x05b4 PptpMiniport - ok
11:29:47.0164 0x05b4 [ 0E3CEF5D28B40CF273281D620C50700A, 8ADA99B4563AE2129B95136295EE92A94102B035EBBC83D4C8587ECE8B0DEE60 ] Processor C:\Windows\system32\drivers\processr.sys
11:29:47.0165 0x05b4 Processor - ok
11:29:47.0209 0x05b4 [ 0508FAA222D28835310B7BFCA7A77346, 3AE2340C6E365F137CC00D9560069501DD2724756EA9EBF7A6CDFFC91B43709C ] ProfSvc C:\Windows\system32\profsvc.dll
11:29:47.0217 0x05b4 ProfSvc - ok
11:29:47.0232 0x05b4 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] ProtectedStorage C:\Windows\system32\lsass.exe
11:29:47.0234 0x05b4 ProtectedStorage - ok
11:29:47.0318 0x05b4 [ 749857607EBE96595ECA10336EE6DFAD, 49B32F7461039641E60A32395EADC7870390B31049FE481F4AF9B2C2E962A2E7 ] ProtectMonitor C:\Program Files\PCDApp\StartHelp.exe
11:29:47.0323 0x05b4 ProtectMonitor - ok
11:29:47.0343 0x05b4 [ 99514FAA8DF93D34B5589187DB3AA0BA, 4DDE5EC0C721B22E1D7D55ED3514B60EA07435C232A3A931BB49C7F486B52C18 ] PSched C:\Windows\system32\DRIVERS\pacer.sys
11:29:47.0345 0x05b4 PSched - ok
11:29:47.0387 0x05b4 [ CCDAC889326317792480C0A67156A1EC, 3D3B561B6D4E12DE442C98993C929765F002AF5CFB5A00EFACE6ABE957F7E8AF ] ql2300 C:\Windows\system32\drivers\ql2300.sys
11:29:47.0411 0x05b4 ql2300 - ok
11:29:47.0450 0x05b4 [ 81A7E5C076E59995D54BC1ED3A16E60B, A2988F065F93C41B3B389BFF3BB3FD69F768C2AF249C2356F315CC92E5C9E128 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
11:29:47.0455 0x05b4 ql40xx - ok
11:29:47.0482 0x05b4 [ E9ECAE663F47E6CB43962D18AB18890F, F1A05320CAED9E745AA36A6DA9B64C48AAEDE888B42B249840CEB31448F7F432 ] QWAVE C:\Windows\system32\qwave.dll
11:29:47.0491 0x05b4 QWAVE - ok
11:29:47.0619 0x05b4 [ 9F5E0E1926014D17486901C88ECA2DB7, 67CDFB99AB546DCEEF20507EAC07DD52FFB51BFDFE9416ABEDDC1201B60D720E ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
11:29:47.0623 0x05b4 QWAVEdrv - ok
11:29:47.0836 0x05b4 [ E642B131FB74CAF4BB8A014F31113142, 18A81B27FB2DA556AC51DBA8956203A6E821D75B2B09F11049250E732318F573 ] R300 C:\Windows\system32\DRIVERS\atikmdag.sys
11:29:47.0891 0x05b4 R300 - ok
11:29:47.0906 0x05b4 [ 147D7F9C556D259924351FEB0DE606C3, E41EBA5F3098C6CF2BE4C0060A5F4BF161C3677D983B7A0D70ACC12FC3CFEFD7 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
11:29:47.0909 0x05b4 RasAcd - ok
11:29:47.0924 0x05b4 [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F, 6A410ABCCD2211EFF511CDBF22E4152B57D2996336EBE711DFF71904AF232DB2 ] RasAuto C:\Windows\System32\rasauto.dll
11:29:47.0930 0x05b4 RasAuto - ok
11:29:47.0947 0x05b4 [ A214ADBAF4CB47DD2728859EF31F26B0, A24F37F55E2C018B1B4FA2C568A01AAAAEA1220833ED24A93378386174A70A32 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
11:29:47.0951 0x05b4 Rasl2tp - ok
11:29:47.0977 0x05b4 [ 75D47445D70CA6F9F894B032FBC64FCF, 9112EA5D25F867136858524C7965ACCEDC02675D1E2985B950598D89CCF25E14 ] RasMan C:\Windows\System32\rasmans.dll
11:29:47.0986 0x05b4 RasMan - ok
11:29:48.0001 0x05b4 [ 509A98DD18AF4375E1FC40BC175F1DEF, CC7C278CA298CE102D871E34C176E73F903D6687D1E8B5AFAB8772C7DE1A60B1 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
11:29:48.0004 0x05b4 RasPppoe - ok
11:29:48.0012 0x05b4 [ 2005F4A1E05FA09389AC85840F0A9E4D, D8A664073FDE82F9AB324347024CDB7043635C84EB11C24C59AB384C52F0FD94 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
11:29:48.0015 0x05b4 RasSstp - ok
11:29:48.0036 0x05b4 [ B14C9D5B9ADD2F84F70570BBBFAA7935, 3D533767A50554B86C769DF4D8841B3EA680B3807E85EA3533BDA9B649548269 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
11:29:48.0046 0x05b4 rdbss - ok
11:29:48.0058 0x05b4 [ 89E59BE9A564262A3FB6C4F4F1CD9899, 6F948FB0E73495CA60B7B19E758268495EC8A084C475EC59AD7940AA619570BB ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
11:29:48.0060 0x05b4 RDPCDD - ok
11:29:48.0082 0x05b4 [ E8BD98D46F2ED77132BA927FCCB47D8B, 5187CF8F00AD67EDDF27DF675F3210C0D72E552578A89C58DF6953B1D5BEBCB8 ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
11:29:48.0090 0x05b4 rdpdr - ok
11:29:48.0096 0x05b4 [ 9D91FE5286F748862ECFFA05F8A0710C, 33F37F1B207151A5564BF051BBF16F35D8C5A0F426CCA078A51F125BF09E487B ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
11:29:48.0098 0x05b4 RDPENCDD - ok
11:29:48.0139 0x05b4 [ C127EBD5AFAB31524662C48DFCEB773A, 40A6B88FEAFF02D1B5C0CA32F290CF3D9B48B85D248C7532F30CC5C09BAA4D89 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
11:29:48.0145 0x05b4 RDPWD - ok
11:29:48.0203 0x05b4 [ 96EFEC24346A8EB1157E80523079ADDC, 7F8FC284029856C754E400B6C954369FFE27763C81D8F4AF4E58BFDD44CBC24A ] RealNetworks Downloader Resolver Service C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
11:29:48.0206 0x05b4 RealNetworks Downloader Resolver Service - ok
11:29:48.0229 0x05b4 [ BCDD6B4804D06B1F7EBF29E53A57ECE9, 8A961CCD0A0265E03D9952C733B593B02B5CF64E308D6B420276D2D6B20F86FC ] RemoteAccess C:\Windows\System32\mprdim.dll
11:29:48.0235 0x05b4 RemoteAccess - ok
11:29:48.0254 0x05b4 [ 9E6894EA18DAFF37B63E1005F83AE4AB, 5D6DF994D297C875D547C7B111A571AA90D582DAECADE18A53F65AD988819E67 ] RemoteRegistry C:\Windows\system32\regsvc.dll
11:29:48.0262 0x05b4 RemoteRegistry - ok
11:29:48.0291 0x05b4 [ 5123F83CBC4349D065534EEB6BBDC42B, 92A3F38EA924D83D601BB93E3750F9DBC2DD963FB7ACF2A0E776297E21815225 ] RpcLocator C:\Windows\system32\locator.exe
11:29:48.0295 0x05b4 RpcLocator - ok
11:29:48.0323 0x05b4 [ 3B5B4D53FEC14F7476CA29A20CC31AC9, EC02A412DA5FDE2C759A4A2C5904579E1CE7C4999CE87145812F354FC8F5E183 ] RpcSs C:\Windows\system32\rpcss.dll
11:29:48.0340 0x05b4 RpcSs - ok
11:29:48.0359 0x05b4 [ 9C508F4074A39E8B4B31D27198146FAD, 84913471E5A6C297B1EDABE45EF3FE7D2C4410EF04370F615109FD9E2690FFDB ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
11:29:48.0362 0x05b4 rspndr - ok
11:29:48.0390 0x05b4 [ 2D19A7469EA19993D0C12E627F4530BC, B59F0D4ACAA60ED95093FA561D4C5D87F26C9F6C646858772743038D97B2D6AB ] RTL8169 C:\Windows\system32\DRIVERS\Rtlh86.sys
11:29:48.0397 0x05b4 RTL8169 - ok
11:29:48.0425 0x05b4 [ 1C768E8D6D89175FE0563C65E6747D53, 3066BCE2E5ABCFDE4C2F2F71A336B33042587BCDC4773FC00DD873837F63E145 ] SaiK1713 C:\Windows\system32\DRIVERS\SaiK1713.sys
11:29:48.0430 0x05b4 SaiK1713 - ok
11:29:48.0446 0x05b4 [ 054A8A51C88A2FDD336399442BC4F0AA, 35B14739BEC8F65F869522DB07C7199FC0224E3638DF6C2AD2BB6DAEDD5AD1AE ] SaiMini C:\Windows\system32\DRIVERS\SaiMini.sys
11:29:48.0449 0x05b4 SaiMini - ok
11:29:48.0469 0x05b4 [ 6B6C34C52C087B0618BDA4730D47FE26, B34E3A1F3F1C456C25A83CBAA6B44A1567DA6C6627FB1018715FAC8A220F6DEE ] SaiNtBus C:\Windows\system32\drivers\SaiBus.sys
11:29:48.0472 0x05b4 SaiNtBus - ok
11:29:48.0499 0x05b4 [ 2C64A424F990C7841A287A6B5D3E2C27, 191042488C8095DCD34B75C4915041B76A1789000A3A66E9601E552EDAB99023 ] SaiU1713 C:\Windows\system32\DRIVERS\SaiU1713.sys
11:29:48.0502 0x05b4 SaiU1713 - ok
11:29:48.0518 0x05b4 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] SamSs C:\Windows\system32\lsass.exe
11:29:48.0521 0x05b4 SamSs - ok
11:29:48.0539 0x05b4 [ 3CE8F073A557E172B330109436984E30, CEC281C6076FAA1E34372CF419C6308E73811316606B8D0D9055B7D8952BDC88 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
11:29:48.0545 0x05b4 sbp2port - ok
11:29:48.0550 0x05b4 SBRE - ok
11:29:48.0577 0x05b4 [ 77B7A11A0C3D78D3386398FBBEA1B632, A3D290AB793BDC2F84C7B963300DFCE81CFE082A0FFF7489E8E5B14714892C00 ] SCardSvr C:\Windows\System32\SCardSvr.dll
11:29:48.0585 0x05b4 SCardSvr - ok
11:29:48.0623 0x05b4 [ 1A58069DB21D05EB2AB58EE5753EBE8D, EED8111EB613F4C93D1638C74FDB0A6DC6694E1B108DCD0D794B5B5F9B8C6EE4 ] Schedule C:\Windows\system32\schedsvc.dll
11:29:48.0641 0x05b4 Schedule - ok
11:29:48.0651 0x05b4 [ 312EC3E37A0A1F2006534913E37B4423, 81B8F462336791D162DAFA8092C1F437638DA3022CA24A2458B9FE183FC18C5D ] SCPolicySvc C:\Windows\System32\certprop.dll
11:29:48.0653 0x05b4 SCPolicySvc - ok
11:29:48.0672 0x05b4 [ 716313D9F6B0529D03F726D5AAF6F191, 44FE994A11631C1D99C73026340BACE39973C65A1281D87A61B481C9B5FAB251 ] SDRSVC C:\Windows\System32\SDRSVC.dll
11:29:48.0681 0x05b4 SDRSVC - ok
11:29:48.0734 0x05b4 [ 331E7BDE228914574FC9AE6CD520DAFA, 15C6364E73328E86E431DA0960DEE794F96A6E83FF82C9CA181E70127E395311 ] SeaPort C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
11:29:48.0742 0x05b4 SeaPort - ok
11:29:48.0748 0x05b4 SearchIndexer - ok
11:29:48.0764 0x05b4 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\Windows\system32\drivers\secdrv.sys
11:29:48.0767 0x05b4 secdrv - ok
11:29:48.0778 0x05b4 [ FD5199D4D8A521005E4B5EE7FE00FA9B, 0FB7A1D300C72B1ADC423CC57343C17853E5F8ACFE3EA2C42FAC2FF72E502FBE ] seclogon C:\Windows\system32\seclogon.dll
11:29:48.0784 0x05b4 seclogon - ok
11:29:48.0801 0x05b4 [ A9BBAB5759771E523F55563D6CBE140F, 415BF6F6A1E4C5F98DABF9C2EEAF8CA49730693046E5F94C7655683717EDAD75 ] SENS C:\Windows\system32\sens.dll
11:29:48.0807 0x05b4 SENS - ok
11:29:48.0820 0x05b4 [ CE9EC966638EF0B10B864DDEDF62A099, 2DEC5A8C947D87C12B342F15B8A552A0D49B979A2AC32D2C97FC7A3A76C34524 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
11:29:48.0823 0x05b4 Serenum - ok
11:29:48.0837 0x05b4 [ 6D663022DB3E7058907784AE14B69898, 54263888C64A7F010D3B5E399369B0F3FF3AF0A0DE8ADB502B98277533E4D45F ] Serial C:\Windows\system32\DRIVERS\serial.sys
11:29:48.0840 0x05b4 Serial - ok
11:29:48.0863 0x05b4 [ 8AF3D28A879BF75DB53A0EE7A4289624, C870BEBB969DCD9170E64584D1CD329A193D9FC812A45EF3574891110CA68B45 ] sermouse C:\Windows\system32\drivers\sermouse.sys
11:29:48.0865 0x05b4 sermouse - ok
11:29:48.0897 0x05b4 [ D2193326F729B163125610DBF3E17D57, 82C894E24E2C139C884246A693AD37BBF0A4E9375B7F7A288EF1DB22F89434B9 ] SessionEnv C:\Windows\system32\sessenv.dll
11:29:48.0904 0x05b4 SessionEnv - ok
11:29:48.0929 0x05b4 [ 103B79418DA647736EE95645F305F68A, E4D356FD8C62B616D3584FE84905995A1CEE452288E3A456CC358FF41FEAB1B7 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
11:29:48.0931 0x05b4 sffdisk - ok
11:29:48.0952 0x05b4 [ 8FD08A310645FE872EEEC6E08C6BF3EE, 702A148C9DE172E7B5E331F057487255E0729FD42F949BB0FF2D5A01775933CF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
11:29:48.0954 0x05b4 sffp_mmc - ok
11:29:48.0976 0x05b4 [ 9CFA05FCFCB7124E69CFC812B72F9614, E9CFCE695E4D1AF146781CFAA295878536E573F06AEA65438878DE29EC9959AD ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
11:29:48.0978 0x05b4 sffp_sd - ok
11:29:48.0993 0x05b4 [ 46ED8E91793B2E6F848015445A0AC188, 34A97304F23EA153422848F6F1CAF8ADF0944EA781E12F027B6DEAF751A04B5D ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
11:29:49.0009 0x05b4 sfloppy - ok
11:29:49.0047 0x05b4 [ E1499BD0FF76B1B2FBBF1AF339D91165, 9A8F0403467E75880D3070C4D862489A75134383BAF8E7C45F8C5E7DFB0605A5 ] SharedAccess C:\Windows\System32\ipnathlp.dll
11:29:49.0058 0x05b4 SharedAccess - ok
11:29:49.0088 0x05b4 [ C7230FBEE14437716701C15BE02C27B8, 8221DE73D77CF71C2857D78829E807D015D9CB8BDEE4BAFD6950BF0C718CC774 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
11:29:49.0099 0x05b4 ShellHWDetection - ok
11:29:49.0115 0x05b4 [ D2A595D6EEBEEAF4334F8E50EFBC9931, 851B8205C657BF806C4D815DC75356E99B4246016B6E1C1F51BAF8AD1E6D5299 ] sisagp C:\Windows\system32\drivers\sisagp.sys
11:29:49.0118 0x05b4 sisagp - ok
11:29:49.0131 0x05b4 [ CEDD6F4E7D84E9F98B34B3FE988373AA, E102977E6FAC30B5ABEEC0B412A9F2A10C5C42F4D9C3AD69296BF9E1E88B6141 ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
11:29:49.0134 0x05b4 SiSRaid2 - ok
11:29:49.0148 0x05b4 [ DF843C528C4F69D12CE41CE462E973A7, A2BEC74FCB8D8B6B9D8DD4746C013DFDF1DD662AEFE9B88CA495E5B83B4A76F9 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
11:29:49.0152 0x05b4 SiSRaid4 - ok
11:29:49.0337 0x05b4 [ 9F712B26EE3B0242DE997A42FD302E2C, 12663EB108F158282A965EE70980627C2F2332BA7944D7DE03B78E18BEB87D26 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
11:29:49.0460 0x05b4 Skype C2C Service - ok
11:29:49.0552 0x05b4 [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
11:29:49.0558 0x05b4 SkypeUpdate - ok
11:29:49.0693 0x05b4 [ 862BB4CBC05D80C5B45BE430E5EF872F, F4961B22C93E472C8C862421AA231CDDA9E40D3958741A1D666357F22CC3143D ] slsvc C:\Windows\system32\SLsvc.exe
11:29:49.0810 0x05b4 slsvc - ok
11:29:49.0833 0x05b4 [ 6EDC422215CD78AA8A9CDE6B30ABBD35, D8342BC3152859F4F7512E85ABEC61147DBCAB515458644728874E42F639D6CA ] SLUINotify C:\Windows\system32\SLUINotify.dll
11:29:49.0839 0x05b4 SLUINotify - ok
11:29:49.0856 0x05b4 [ 46B40982AF166BF89C3F51FB13E60D6D, C95C4EEF37D270BFB59B8A706AF76EE5859E14030C7F042C9D8C1101A672DB8E ] SmartDefragDriver C:\Windows\system32\Drivers\SmartDefragDriver.sys
11:29:49.0858 0x05b4 SmartDefragDriver - ok
11:29:49.0869 0x05b4 [ 7B75299A4D201D6A6533603D6914AB04, 172BE3951F06B1991EF70B71EB91786D1EFC4E381C22BCA3A5F622CD59F3227E ] Smb C:\Windows\system32\DRIVERS\smb.sys
11:29:49.0873 0x05b4 Smb - ok
11:29:49.0894 0x05b4 [ 2A146A055B4401C16EE62D18B8E2A032, D0930FFA53951C92F56E1ECB41374F4C0AA01ECBF99F474513A21EAD579CFE47 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
11:29:49.0899 0x05b4 SNMPTRAP - ok
11:29:49.0922 0x05b4 [ 7AEBDEEF071FE28B0EEF2CDD69102BFF, E03BEE733F4C2A5F39946D4955679A290E22758DFCE4222EE69ABF64FC54EDF7 ] spldr C:\Windows\system32\drivers\spldr.sys
11:29:49.0925 0x05b4 spldr - ok
11:29:49.0947 0x05b4 [ 8554097E5136C3BF9F69FE578A1B35F4, 2578545CFD647FB18F217B33C8CB4F0184A35F548659494056E455020CC15FB0 ] Spooler C:\Windows\System32\spoolsv.exe
11:29:49.0967 0x05b4 Spooler - ok
11:29:50.0058 0x05b4 [ 68103A2B441BBF3908EBB587F0704D6C, 0EE921D3D3D88AD0380923429E82B58078F53D7A9D53458AA33FEDF376EF1212 ] sptd C:\Windows\System32\Drivers\sptd.sys
11:29:50.0096 0x05b4 sptd - ok
11:29:50.0137 0x05b4 [ 41987F9FC0E61ADF54F581E15029AD91, A46E718648C2DD3B43FC3798932C966315893A59442A0686CE46C605B9E4641E ] srv C:\Windows\system32\DRIVERS\srv.sys
11:29:50.0158 0x05b4 srv - ok
11:29:50.0234 0x05b4 [ FF33AFF99564B1AA534F58868CBE41EF, EFBB005DA19E5B320009CBF93E686D8BFA6A50A23B5A5001C7C84C7D85EF7D49 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
11:29:50.0240 0x05b4 srv2 - ok
11:29:50.0278 0x05b4 [ 7605C0E1D01A08F3ECD743F38B834A44, 83A77E31004BCF83443F30EFC290E04BB1A2F332E8DFD614AB6E25B527C92299 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
11:29:50.0283 0x05b4 srvnet - ok
11:29:50.0299 0x05b4 [ 03D50B37234967433A5EA5BA72BC0B62, 7B61D6A4BF5D446A9473D058BC207FB6DA7C2FEFB8083F3B66CAC8907DBD8327 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
11:29:50.0307 0x05b4 SSDPSRV - ok
11:29:50.0319 0x05b4 [ 6F1A32E7B7B30F004D9A20AFADB14944, AA9D874A14CA4779E76701D2B02F4CCA92CD5917435FB4CACA149FCB2D1D4C4C ] SstpSvc C:\Windows\system32\sstpsvc.dll
11:29:50.0326 0x05b4 SstpSvc - ok
11:29:50.0383 0x05b4 [ DB0768632C680B7C0D3AA92D80416893, BEC3CF4F1CB150AC7C4647DD7C0D5D62B10824308E44467CD77CA3427A46FB20 ] Steam Client Service C:\Program Files\Common Files\Steam\SteamService.exe
11:29:50.0399 0x05b4 Steam Client Service - ok
11:29:50.0442 0x05b4 [ 5DE7D67E49B88F5F07F3E53C4B92A352, 6930A598C35646646ED0E91633797EFE139AE6CDD0012335BD1340754A22F997 ] stisvc C:\Windows\System32\wiaservc.dll
11:29:50.0457 0x05b4 stisvc - ok
11:29:50.0476 0x05b4 [ 7BA58ECF0C0A9A69D44B3DCA62BECF56, 23CC47FA2D6E183D69DB0D3D3F3081A830D94A58FBC0A9A295B3A56C51E9486A ] swenum C:\Windows\system32\DRIVERS\swenum.sys
11:29:50.0480 0x05b4 swenum - ok
11:29:50.0500 0x05b4 [ F21FD248040681CCA1FB6C9A03AAA93D, 32FE765841A183A1F2C1ACACBBF8CDB11E7D4D4396F9C9F6CFF1B51C9B620ED3 ] swprv C:\Windows\System32\swprv.dll
11:29:50.0511 0x05b4 swprv - ok
11:29:50.0540 0x05b4 [ 192AA3AC01DF071B541094F251DEED10, 5C6EB56D1C39F3717EB754A1B37C8A618BA4F2107F64048E985D71FA04D1AD05 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
11:29:50.0543 0x05b4 Symc8xx - ok
11:29:50.0559 0x05b4 [ 8C8EB8C76736EBAF3B13B633B2E64125, A6C4845DDED81CCF4947612A4D6E42035136025BCD80812D2FF396927CAADEC5 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
11:29:50.0564 0x05b4 Sym_hi - ok
11:29:50.0585 0x05b4 [ 8072AF52B5FD103BBBA387A1E49F62CB, D336A7D008D145619E79043EBF5D0D455086BA1FEF89612BC2EA11CC363D82B0 ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
11:29:50.0588 0x05b4 Sym_u3 - ok
11:29:50.0626 0x05b4 [ 9A51B04E9886AA4EE90093586B0BA88D, 1666C29FBFA34174B506678C920636519051D03456A6DDCCD6FF708CAE5D9962 ] SysMain C:\Windows\system32\sysmain.dll
11:29:50.0642 0x05b4 SysMain - ok
11:29:50.0671 0x05b4 [ 2DCA225EAE15F42C0933E998EE0231C3, 67C7913E41854DFA3043426B7D59AA1FBBB9DE01A6E6904E40A696A7C61A5F98 ] TabletInputService C:\Windows\System32\TabSvc.dll
11:29:50.0677 0x05b4 TabletInputService - ok
11:29:50.0701 0x05b4 [ B7AEE68D2E867CBF69B649B18FCEDBBB, 82814EEDBD2908DC2D6A2162C647FB323F95EA7D9EA49265DB44CA72468753A0 ] tap0901t C:\Windows\system32\DRIVERS\tap0901t.sys
11:29:50.0704 0x05b4 tap0901t - ok
11:29:50.0729 0x05b4 [ D7673E4B38CE21EE54C59EEEB65E2483, 330D0AD13F5008D8569CE8E5EA0BBD69F54F59FEB54FD903FA18D2849CEC6AF0 ] TapiSrv C:\Windows\System32\tapisrv.dll
11:29:50.0740 0x05b4 TapiSrv - ok
11:29:50.0758 0x05b4 [ CB05822CD9CC6C688168E113C603DBE7, 9DB8945BDC702BB13E9DE477F2D3CCA4CE0E9E8CE9B54CE1A25375F2A2C93F0E ] TBS C:\Windows\System32\tbssvc.dll
11:29:50.0765 0x05b4 TBS - ok
11:29:50.0809 0x05b4 [ D18D53974FD715D50FC76F9FFE1C830D, 50424BD5950D8FC7724A6E48AE5A39D6E727FAF326C31657C69F1DE13C1450E3 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
11:29:50.0835 0x05b4 Tcpip - ok
11:29:50.0876 0x05b4 [ D18D53974FD715D50FC76F9FFE1C830D, 50424BD5950D8FC7724A6E48AE5A39D6E727FAF326C31657C69F1DE13C1450E3 ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
11:29:50.0896 0x05b4 Tcpip6 - ok
11:29:50.0922 0x05b4 [ 608C345A255D82A6289C2D468EB41FD7, 74ECFDD45DC3EB3AFAEF9C42B546241AA1D6ACB2F6591A76DDB8BB1768545889 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
11:29:50.0926 0x05b4 tcpipreg - ok
11:29:50.0946 0x05b4 [ 5DCF5E267BE67A1AE926F2DF77FBCC56, E00C0A03AEE579B51B39930A72F39F4EFFE7CDA37187B0AE90F4E001AD15473B ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
11:29:50.0948 0x05b4 TDPIPE - ok
11:29:50.0964 0x05b4 [ 389C63E32B3CEFED425B61ED92D3F021, E4718E290678F00995E754AE66F1027D227BFAB9E1A1D2AC8E4EAD27DC50CB17 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
11:29:50.0967 0x05b4 TDTCP - ok
11:29:50.0988 0x05b4 [ 76B06EB8A01FC8624D699E7045303E54, EC30F244B48A35622ED3EE91792F6A1517C5A50770FAB3945E7A945EB7AF28A8 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
11:29:50.0993 0x05b4 tdx - ok
11:29:51.0010 0x05b4 [ 3CAD38910468EAB9A6479E2F01DB43C7, 9D18C71EDF39743A0A592BC0873909D2B75B5B177B2672A865D1EEC0BFD2F61C ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
11:29:51.0014 0x05b4 TermDD - ok
11:29:51.0041 0x05b4 [ BB95DA09BEF6E7A131BFF3BA5032090D, BAF6997F8D944F85F0553957677866C7F22E72AA434BA45FFFB6CC41041070DC ] TermService C:\Windows\System32\termsrv.dll
11:29:51.0055 0x05b4 TermService - ok
11:29:51.0088 0x05b4 [ C7230FBEE14437716701C15BE02C27B8, 8221DE73D77CF71C2857D78829E807D015D9CB8BDEE4BAFD6950BF0C718CC774 ] Themes C:\Windows\system32\shsvcs.dll
11:29:51.0098 0x05b4 Themes - ok
11:29:51.0113 0x05b4 [ 1076FFCFFAAE8385FD62DFCB25AC4708, 8C5C106FCB018E019DEBA8E1A6AA170CD7A93293F27994F724EBC486238DA0AA ] THREADORDER C:\Windows\system32\mmcss.dll
11:29:51.0119 0x05b4 THREADORDER - ok
11:29:51.0138 0x05b4 [ EC74E77D0EB004BD3A809B5F8FB8C2CE, 1E4BBC58D0E35D79C764CF1BA73602C5E29A5A2393D40332801D533E445C6667 ] TrkWks C:\Windows\System32\trkwks.dll
11:29:51.0143 0x05b4 TrkWks - ok
11:29:51.0169 0x05b4 [ 97D9D6A04E3AD9B6C626B9931DB78DBA, 8E42133ED5EE5EEC414A8B11C1035385C6141E445EA9677F947D20768F25A877 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
11:29:51.0172 0x05b4 TrustedInstaller - ok
11:29:51.0203 0x05b4 [ F4EAA7ECBCB25DE901C9B7F2CDCDA0B3, 1CBB5106A32362ABDEE73BF170E205FE64DDBF826C5F6DFFCCD229F220B9C85E ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
11:29:51.0206 0x05b4 tssecsrv - ok
11:29:51.0238 0x05b4 [ CAECC0120AC49E3D2F758B9169872D38, 80DB15ADF5F4FF78D0C7D5081B6C0E8F1E5125872B60D23C19DA8E62C9DAC9A8 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
11:29:51.0247 0x05b4 tunmp - ok
11:29:51.0263 0x05b4 [ 300DB877AC094FEAB0BE7688C3454A9C, 3B36AA191FBE25B1A61150EAA2BDF8BA286DC4C052F6E98B0ED8202135553D8C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
11:29:51.0266 0x05b4 tunnel - ok
11:29:51.0337 0x05b4 [ C9FBAC084AB1D7005C950BC8DDA6BE7C, C082A42348EB8954B09D6DBD32DE22260E6096F407108F67A5A32B816098BCC9 ] TunngleService C:\Program Files\Tunngle\TnglCtrl.exe
11:29:51.0358 0x05b4 TunngleService - ok
11:29:51.0392 0x05b4 [ C3ADE15414120033A36C0F293D4A4121, 74A002C4B5EBD94E33EDEACB6639AF44ED72A8DDE3083C6DE71C1EE937EF1A9C ] uagp35 C:\Windows\system32\drivers\uagp35.sys
11:29:51.0396 0x05b4 uagp35 - ok
11:29:51.0426 0x05b4 [ D9728AF68C4C7693CB100B8441CBDEC6, A2CEE1EE4EF17106349F4E6967F504354801934179FBB3F10B9A4E3C30BC28CE ] udfs C:\Windows\system32\DRIVERS\udfs.sys
11:29:51.0433 0x05b4 udfs - ok
11:29:51.0447 0x05b4 [ ECEF404F62863755951E09C802C94AD5, 5D92062B3E371F196774EBFE840C78501E55A244DB2A49703C7AC0141C7DABF1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
11:29:51.0453 0x05b4 UI0Detect - ok
11:29:51.0484 0x05b4 [ 332D341D92B933600D41953B08360DFB, 213A5C84ABB0D627C05B355084A26A5081645D4EC398FF19EF6BBCB690B10055 ] UleadBurningHelper C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
11:29:51.0488 0x05b4 UleadBurningHelper - ok
11:29:51.0508 0x05b4 [ 75E6890EBFCE0841D3291B02E7A8BDB0, FDF9CDCCCCC0AA2A52623C5A67AC5F5224557EE4C8F6487CB13CAEB012575E2A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
11:29:51.0511 0x05b4 uliagpkx - ok
11:29:51.0531 0x05b4 [ 3CD4EA35A6221B85DCC25DAA46313F8D, 100A7E12B8EA395F70A00874328E87B930CE88FF442F3576FE88B105A22E04C5 ] uliahci C:\Windows\system32\drivers\uliahci.sys
11:29:51.0539 0x05b4 uliahci - ok
11:29:51.0558 0x05b4 [ 8514D0E5CD0534467C5FC61BE94A569F, A6EFB967044F88335469DB3351587E31CEC659BB6A7D8ED45C68329232C31BB9 ] UlSata C:\Windows\system32\drivers\ulsata.sys
11:29:51.0563 0x05b4 UlSata - ok
11:29:51.0603 0x05b4 [ 38C3C6E62B157A6BC46594FADA45C62B, 44F87DC955CB4E35E0EB4C8B4E931472B33D97FE000C22370A06AD5EDCEFD0BA ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
11:29:51.0608 0x05b4 ulsata2 - ok
11:29:51.0637 0x05b4 [ 32CFF9F809AE9AED85464492BF3E32D2, 91AAA47AEF17F373276B01AC8FA823592A0C854541A7A9A3B78F2350DB964EBC ] umbus C:\Windows\system32\DRIVERS\umbus.sys
11:29:51.0641 0x05b4 umbus - ok
11:29:51.0668 0x05b4 [ 68308183F4AE0BE7BF8ECD07CB297999, 4444233CA3C42BEE50ED47553D4AE5A7C12D8F288D2FA4B2DAE1D9B9FEC1A72D ] upnphost C:\Windows\System32\upnphost.dll
11:29:51.0679 0x05b4 upnphost - ok
11:29:51.0716 0x05b4 [ 1114579556DB85E9FAF9590DBC64CD62, 10479A3C12BBBB9B5759082358FE11AC20BAEFA6B4977C8AE6E60AA17BE6C7FA ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
11:29:51.0720 0x05b4 usbaudio - ok
11:29:51.0763 0x05b4 [ AAB0B5F72D2D726FBFDC895A2902DE1D, 7824AF6E2ADEA23F208526F3A62AD1BACDBBDB23E58EB5806890B0761529C50F ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
11:29:51.0769 0x05b4 usbccgp - ok
11:29:51.0805 0x05b4 [ E9476E6C486E76BC4898074768FB7131, D14B8F69A511DC1F990A9C123C18689AFE59659BA8130D248D8D03E9BD2143B6 ] usbcir C:\Windows\system32\drivers\usbcir.sys
11:29:51.0809 0x05b4 usbcir - ok
11:29:51.0844 0x05b4 [ 153E8515CB86F8BB5D1A8B478EBF4BB2, 0F1F79BA7C32ACAAE69184A56E67D6E18E2E2F07E0BE23F266401431169DAE14 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
11:29:51.0846 0x05b4 usbehci - ok
11:29:51.0893 0x05b4 [ 2AE6BCEBD85D31317E433733DAF25888, 7B2C0E8703D0275A620160E479166EB7AA31B0F146507603535CEBF0BA4684A4 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
11:29:51.0899 0x05b4 usbhub - ok
11:29:51.0926 0x05b4 [ D457EBD0C3A8B3A3A144355B5EE91CBC, 6AD52BDBB1607A48F0B02E663B97C3A00E3345B1B12C259608A5AE728C1C06B2 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
11:29:51.0928 0x05b4 usbohci - ok
11:29:52.0005 0x05b4 [ D136F47607777CA35C1BBE157F16D0FB, 16F12B183FA2B8963446BC1B3252DCBFE030B522236021CF761ED14E6E2DD4BF ] USBPNPA C:\Windows\system32\drivers\CM108.sys
11:29:52.0053 0x05b4 USBPNPA - ok
11:29:52.0082 0x05b4 [ E75C4B5269091D15A2E7DC0B6D35F2F5, B0A4141B69B66276890836DE98EB8BC790D35CE59FA503060593E8CC12AA106B ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
11:29:52.0085 0x05b4 usbprint - ok
11:29:52.0106 0x05b4 [ 1D714B8497CD68307806D5D3F60A5169, 1914D92ECE39995168E3C8F5A7694B7A94954DB299410A2781D1321C8E60C3D9 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
11:29:52.0109 0x05b4 usbscan - ok
11:29:52.0144 0x05b4 [ BE3DA31C191BC222D9AD503C5224F2AD, 201FB0FDBF423342202686DC0D8A3221B7798AE04C04A649D3441C257C733CE8 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
11:29:52.0148 0x05b4 USBSTOR - ok
11:29:52.0165 0x05b4 [ 325DBBACB8A36AF9988CCF40EAC228CC, 22FE5658A12296634FBE9D8565485BEE8CB200C47182F70DC9D2B0442E10C4AA ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
11:29:52.0168 0x05b4 usbuhci - ok
11:29:52.0207 0x05b4 [ 73FF24E21B690625A58109637DDA0DF7, 62B1F9CD82678E2110D4BB5CC86EE8A7AB0757681443916620B6AAA1EF0DECEB ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
11:29:52.0212 0x05b4 usbvideo - ok
11:29:52.0238 0x05b4 [ 1509E705F3AC1D474C92454A5C2DD81F, 7F525921A3513224F8B093A16E19B4235B300349A14B0B86EE11B7473BA53337 ] UxSms C:\Windows\System32\uxsms.dll
11:29:52.0243 0x05b4 UxSms - ok
11:29:52.0268 0x05b4 [ CD88D1B7776DC17A119049742EC07EB4, 6B68B9EDB8C6BCB2644F1F004D5743E928509D12107D996F390A24A72E0AA528 ] vds C:\Windows\System32\vds.exe
11:29:52.0284 0x05b4 vds - ok
11:29:52.0316 0x05b4 [ 7D92BE0028ECDEDEC74617009084B5EF, D0749CE6FA3415BA4364299F8D6D53F133E8D2F44C6F1057996243415A540A53 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
11:29:52.0318 0x05b4 vga - ok
11:29:52.0337 0x05b4 [ 2E93AC0A1D8C79D019DB6C51F036636C, 8B6F3B4EE90691A22788915AD0F99D8EE617750430A34E7CEB9AB4FB4E581755 ] VgaSave C:\Windows\System32\drivers\vga.sys
11:29:52.0339 0x05b4 VgaSave - ok
11:29:52.0357 0x05b4 [ 045D9961E591CF0674A920B6BA3BA5CB, EBF498A0424CEA0F7ECBAAE144A8669CE6B5DD67115DE22CEC5A46AED26CD90B ] viaagp C:\Windows\system32\drivers\viaagp.sys
11:29:52.0360 0x05b4 viaagp - ok
11:29:52.0383 0x05b4 [ 56A4DE5F02F2E88182B0981119B4DD98, 36FC94BCFD41907838DBCB02E6EA24065FDED4224239CD19E90D14433BE9108B ] ViaC7 C:\Windows\system32\drivers\viac7.sys
11:29:52.0385 0x05b4 ViaC7 - ok
11:29:52.0399 0x05b4 [ FD2E3175FCADA350C7AB4521DCA187EC, 1C914B184478611A27E0141F90EBC34FC63DFB2A83441DD36DFA43D945FB1C52 ] viaide C:\Windows\system32\drivers\viaide.sys
11:29:52.0401 0x05b4 viaide - ok
11:29:52.0431 0x05b4 [ 69503668AC66C77C6CD7AF86FBDF8C43, 2CE407674A58313737073F02B9A617460BBA84B36C3A16D98AE5ED45279F5006 ] volmgr C:\Windows\system32\drivers\volmgr.sys
11:29:52.0435 0x05b4 volmgr - ok
11:29:52.0463 0x05b4 [ 23E41B834759917BFD6B9A0D625D0C28, 9F60992805262F936E8DA33610FDF60A191ECAFC08BBF657C8F9A21833C8EFC5 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
11:29:52.0472 0x05b4 volmgrx - ok
11:29:52.0493 0x05b4 [ 786DB5771F05EF300390399F626BF30A, 4A07BE5AEDBA4C15C2F9A91250F0488A0B0305C67BB7A037508D5CBF86D4E1B7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
11:29:52.0501 0x05b4 volsnap - ok
11:29:52.0522 0x05b4 [ D984439746D42B30FC65A4C3546C6829, B134A9890638C2B4964A9C30812A2828A3E0CC641690CBF22D9FCE65EE3C2385 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
11:29:52.0527 0x05b4 vsmraid - ok
11:29:52.0587 0x05b4 [ DB3D19F850C6EB32BDCB9BC0836ACDDB, D81FF1CDA87A2FE83EFD5B3FE01EFF940952F8BAEE70BEA3B2F6EF30E2121704 ] VSS C:\Windows\system32\vssvc.exe
11:29:52.0629 0x05b4 VSS - ok
11:29:52.0680 0x05b4 [ 96EA68B9EB310A69C25EBB0282B2B9DE, C76D3427F8A2953CB4D96BBA1523679CBE1BBF7FA821A35D2FBEB3E67AC6A10B ] W32Time C:\Windows\system32\w32time.dll
11:29:52.0692 0x05b4 W32Time - ok
11:29:52.0734 0x05b4 [ 48DFEE8F1AF7C8235D4E626F0C4FE031, A41D05BC0DA3C476C32E0A4DAF015DF7BADF28A03CE236D5596885FF1772F148 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
11:29:52.0737 0x05b4 WacomPen - ok
11:29:52.0763 0x05b4 [ 55201897378CCA7AF8B5EFD874374A26, 350ADDCEFAA33E301027CFEA8DDE703F6FBD6E53624598CB2E7B671B9E48F7CC ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
11:29:52.0766 0x05b4 Wanarp - ok
11:29:52.0772 0x05b4 [ 55201897378CCA7AF8B5EFD874374A26, 350ADDCEFAA33E301027CFEA8DDE703F6FBD6E53624598CB2E7B671B9E48F7CC ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
11:29:52.0774 0x05b4 Wanarpv6 - ok
11:29:52.0833 0x05b4 [ A3CD60FD826381B49F03832590E069AF, 213C5DB5E5D828264286FD7548527566D6160CCA780BC6853B7B28CECF329674 ] wcncsvc C:\Windows\System32\wcncsvc.dll
11:29:52.0847 0x05b4 wcncsvc - ok
11:29:52.0868 0x05b4 [ 11BCB7AFCDD7AADACB5746F544D3A9C7, 0370E20FD12ED713F94E5CD76F068F7A7A5E7F42416DD2A8A41249020DA7DA31 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
11:29:52.0874 0x05b4 WcsPlugInService - ok
11:29:52.0926 0x05b4 [ AFC5AD65B991C1E205CF25CFDBF7A6F4, 544173AE85A11B99B9221DB30B6803DAEB3EB7FCA57FE62F0D13EF70B9C69A89 ] Wd C:\Windows\system32\drivers\wd.sys
11:29:52.0929 0x05b4 Wd - ok
11:29:53.0089 0x05b4 [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
11:29:53.0121 0x05b4 Wdf01000 - ok
11:29:53.0152 0x05b4 [ ABFC76B48BB6C96E3338D8943C5D93B5, B5B22D445724D58641A53276063A4AA2A98F07B93865C86E94661EB31BD63511 ] WdiServiceHost C:\Windows\system32\wdi.dll
11:29:53.0159 0x05b4 WdiServiceHost - ok
11:29:53.0167 0x05b4 [ ABFC76B48BB6C96E3338D8943C5D93B5, B5B22D445724D58641A53276063A4AA2A98F07B93865C86E94661EB31BD63511 ] WdiSystemHost C:\Windows\system32\wdi.dll
11:29:53.0174 0x05b4 WdiSystemHost - ok
11:29:53.0206 0x05b4 [ 04C37D8107320312FBAE09926103D5E2, 1C6726A9871CBACB240AFA93E57781515F01758D43693DDA395EA683D97234F0 ] WebClient C:\Windows\System32\webclnt.dll
11:29:53.0215 0x05b4 WebClient - ok
11:29:53.0242 0x05b4 [ AE3736E7E8892241C23E4EBBB7453B60, 0F998116CC07CD719CB237EAE53BB16B2EDD6973828B9C1055EB981AEA0453D1 ] Wecsvc C:\Windows\system32\wecsvc.dll
11:29:53.0251 0x05b4 Wecsvc - ok
11:29:53.0267 0x05b4 [ 670FF720071ED741206D69BD995EA453, 4B96F5E3545F69AE9EBC75DC4AB27B87306D656EE526AE39E7EC7E2B6F83F7FD ] wercplsupport C:\Windows\System32\wercplsupport.dll
11:29:53.0274 0x05b4 wercplsupport - ok
11:29:53.0287 0x05b4 [ 32B88481D3B326DA6DEB07B1D03481E7, 821FBAF147E525ED15EB9391B16A96C6D5464841258B11F277EFB57A3BD50E37 ] WerSvc C:\Windows\System32\WerSvc.dll
11:29:53.0295 0x05b4 WerSvc - ok
11:29:53.0312 0x05b4 [ 0E507042CCEFC40B8BB5DDE75A7BD0C7, 39CFCD7FC386347D9A1242890807FB00ABED9E1AC90CE7D7A023F4468E609A9B ] wfcxacap C:\Windows\system32\DRIVERS\wfcxacap.sys
11:29:53.0314 0x05b4 wfcxacap - ok
11:29:53.0327 0x05b4 [ B8ACB6B48F928FF5E58B1A2DC3FA628C, 9B10820996000D4F261F4457B1B3206C843D0780E9F204DFFA95067A07C0ECEE ] wfcxatun C:\Windows\system32\drivers\wfcxatun.sys
11:29:53.0331 0x05b4 wfcxatun - ok
11:29:53.0341 0x05b4 [ E32EEEAC4ED0249474A2C9B71F1D5A73, E9D43BBC6876892DFC1A40C0630B5C0B9878275A802F61E064A0B904DF2BEC88 ] wfcxdtun C:\Windows\system32\drivers\wfcxdtun.sys
11:29:53.0343 0x05b4 wfcxdtun - ok
11:29:53.0358 0x05b4 [ FC4F80B8C23DBF4D23A9A4DED38CF430, A7D246BCB199ED8EB0DBC6FADE575CCD9FD254C27DBDE226885BDEFF5608B0F2 ] wfcxtcap C:\Windows\system32\drivers\wfcxtcap.sys
11:29:53.0361 0x05b4 wfcxtcap - ok
11:29:53.0395 0x05b4 [ E9905845ABC7B3521F642F9C8D08A03E, 38123C147FB4AE4A7AA587B458CD066F0E7BE7DF3D10DEAAFED14C00E45B3746 ] WFCXVCAP C:\Windows\system32\drivers\wfcxvcap.sys
11:29:53.0401 0x05b4 WFCXVCAP - ok
11:29:53.0408 0x05b4 [ 0AED0D6F83ADE999FA6A8E485830E4C5, 8DD23B1A2165BDAAF5AAC692447D00C63ECBEB287B4928A524F64FB6C9DF0E39 ] wfcxxbar C:\Windows\system32\drivers\wfcxxbar.sys
11:29:53.0410 0x05b4 wfcxxbar - ok
11:29:53.0452 0x05b4 [ 4575AA12561C5648483403541D0D7F2B, 2DBB7904285F16E879E1662C4CC4DFAA420D5EB24DDFC4BAC0B7616F5F44649A ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
11:29:53.0461 0x05b4 WinDefend - ok
11:29:53.0470 0x05b4 WinHttpAutoProxySvc - ok
11:29:53.0519 0x05b4 [ 6B2A1D0E80110E3D04E6863C6E62FD8A, EE8BC7C378993EFE90273764C83119EBF331768CD7B24DE949233C74A51306C2 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
11:29:53.0526 0x05b4 Winmgmt - ok
11:29:53.0532 0x05b4 WinRing0_1_2_0 - ok
11:29:53.0611 0x05b4 [ 7CFE68BDC065E55AA5E8421607037511, C2CE76D52AD4E31FC4216E94457DC16ABF65A5F3E883F0BD97AD387FB7574533 ] WinRM C:\Windows\system32\WsmSvc.dll
11:29:53.0643 0x05b4 WinRM - ok
11:29:53.0716 0x05b4 [ C008405E4FEEB069E30DA1D823910234, C392A7B5FEACB7D11A3A231C1AD65D533984E6E7429ECD3BFBF90A27E8DEB157 ] Wlansvc C:\Windows\System32\wlansvc.dll
11:29:53.0733 0x05b4 Wlansvc - ok
11:29:53.0841 0x05b4 [ 6067ACEF367E79914AF628FA1E9B5330, 491A705267B48C103E00B26BBD21FA8829DB03A88343CBC27264CEE5DE8C8DEF ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
11:29:53.0871 0x05b4 wlcrasvc - ok
11:29:53.0953 0x05b4 [ 0A70F4022EC2E14C159EFC4F69AA2477, FF248136576F9803762C54DE5439D3411B52DCBC95B93176A5DAB857967D9AC4 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
11:29:54.0061 0x05b4 wlidsvc - ok
11:29:54.0099 0x05b4 [ 5D410936831F7FB58EFF941EAC3F6D3D, 5A1E769F75562802CC0EAA44215501925EA4C260AD7A975CEE4AB8DCA2BB82C9 ] WmBEnum C:\Windows\system32\drivers\WmBEnum.sys
11:29:54.0110 0x05b4 WmBEnum - ok
11:29:54.0137 0x05b4 [ 7A13CFDE92956CA61A0927D766C5AD4F, 96B337903B7E59A7D60FE4A27064A993EF244D3D736016FFC13465C8F44068F8 ] WmFilter C:\Windows\system32\drivers\WmFilter.sys
11:29:54.0140 0x05b4 WmFilter - ok
11:29:54.0166 0x05b4 [ 701A9F884A294327E9141D73746EE279, C8A46B8C32F9EAC7848D385473F6B5C4B6DA719A941A75AD5F081757FC07A09D ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
11:29:54.0168 0x05b4 WmiAcpi - ok
11:29:54.0203 0x05b4 [ 43BE3875207DCB62A85C8C49970B66CC, 27169F2E8A30807794407DA8F80611E4287F940AAE2A1F00F547901872FB9703 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
11:29:54.0208 0x05b4 wmiApSrv - ok
11:29:54.0319 0x05b4 [ 3978704576A121A9204F8CC49A301A9B, 936CC13B90A183613BDA4081556C96D48CA415B5F65D61E18CB5F2E51EEBE59F ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
11:29:54.0339 0x05b4 WMPNetworkSvc - ok
11:29:54.0369 0x05b4 [ 6F04646BC690F8BBFC344BE32A60796D, DE2B4BE88CE38D6297F58BE2C643A3838C0470E2E3AB6289755E39B5E59061D7 ] WmVirHid C:\Windows\system32\drivers\WmVirHid.sys
11:29:54.0379 0x05b4 WmVirHid - ok
11:29:54.0391 0x05b4 [ 1D6CA43D562333F4DFB40BCEF2453F3A, BEEC5587ACE8ABF1DB0B9B68E43B29082AA2F4A6415CEC8536086944D506A704 ] WmXlCore C:\Windows\system32\drivers\WmXlCore.sys
11:29:54.0395 0x05b4 WmXlCore - ok
11:29:54.0415 0x05b4 [ CFC5A04558F5070CEE3E3A7809F3FF52, 45899E04000E21C4E009BE8B6149F199A5B2E0512C657A525770BF9DBFED7D2B ] WPCSvc C:\Windows\System32\wpcsvc.dll
11:29:54.0424 0x05b4 WPCSvc - ok
11:29:54.0442 0x05b4 [ 801FBDB89D472B3C467EB112A0FC9246, C24053FA12732089384D3AF06C676FF201D282FC5AD56A42B6EE8BAED4379CB2 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
11:29:54.0449 0x05b4 WPDBusEnum - ok
11:29:54.0474 0x05b4 [ DE9D36F91A4DF3D911626643DEBF11EA, 8029ECE76E29276BFB6ED3387AC560A9A779AAF683A4416E96334FAF7BDBADA0 ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys
11:29:54.0477 0x05b4 WpdUsb - ok
11:29:54.0583 0x05b4 [ F8D3544ACBCE9110362119F7C10D848E, 31C49201A931751A36286874AC0B929D886F490D7CE48CCC9283850A56AD9FD9 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
11:29:54.0606 0x05b4 WPFFontCache_v0400 - ok
11:29:54.0628 0x05b4 [ E3A3CB253C0EC2494D4A61F5E43A389C, 10BA8B102E31B961819E524FCA5FA817B588EC77FB26B4E176D0A5CFF11EDF79 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
11:29:54.0629 0x05b4 ws2ifsl - ok
11:29:54.0646 0x05b4 [ 1CA6C40261DDC0425987980D0CD2AAAB, 727C1E3A170316641F832A8D197EDA6D6EE1206E4ED7B741E5A4017B7F2F7B88 ] wscsvc C:\Windows\system32\wscsvc.dll
11:29:54.0654 0x05b4 wscsvc - ok
11:29:54.0659 0x05b4 WSearch - ok
11:29:54.0742 0x05b4 [ FC3EC24FCE372C89423E015A2AC1A31E, 8D028182CF83667D3E4D148979972D208FA6D9B8540EE47A0A7831B770ECD257 ] wuauserv C:\Windows\system32\wuaueng.dll
11:29:54.0789 0x05b4 wuauserv - ok
11:29:54.0830 0x05b4 [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
11:29:54.0834 0x05b4 WudfPf - ok
11:29:54.0849 0x05b4 [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
11:29:54.0856 0x05b4 WUDFRd - ok
11:29:54.0884 0x05b4 [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc C:\Windows\System32\WUDFSvc.dll
11:29:54.0892 0x05b4 wudfsvc - ok
11:29:54.0929 0x05b4 [ 9EEA6D029FEF5F3016D089B1A603837D, 0DB78D89A64B0C6C98E4E4454692EB7A51B0B3B1FA54CECB74D5B55AE7BEF4C9 ] xnacc C:\Windows\system32\DRIVERS\xnacc.sys
11:29:54.0944 0x05b4 xnacc - ok
11:29:54.0962 0x05b4 [ F5E5F944E63A9B5F6E76C2EBB2AC462F, 9F952279D406B04AF217520D042DCA2E2C8B9DD01E8DC877C87AA75644FFF48E ] xusb21 C:\Windows\system32\DRIVERS\xusb21.sys
11:29:54.0966 0x05b4 xusb21 - ok
11:29:54.0977 0x05b4 ================ Scan global ===============================
11:29:55.0029 0x05b4 [ F31EEBC1A1C81FD04005489CC3DCDFE7, 098C35ACFCCE1686C5A6DB6057001CBF8B06A863A0802CB2E9D793F4795F8CEE ] C:\Windows\system32\basesrv.dll
11:29:55.0070 0x05b4 [ A508314231C49AEE86987CEA3EAECAD1, D29BCFA967C23C7264592576D62D95FA8C687E8662D19DCCC73653A9EFB6340D ] C:\Windows\system32\winsrv.dll
11:29:55.0095 0x05b4 [ A508314231C49AEE86987CEA3EAECAD1, D29BCFA967C23C7264592576D62D95FA8C687E8662D19DCCC73653A9EFB6340D ] C:\Windows\system32\winsrv.dll
11:29:55.0156 0x05b4 [ D4E6D91C1349B7BFB3599A6ADA56851B, 8748091BF27F05D28D45688E04DD9229A4B2E159209A64F457703F66A8CECE4D ] C:\Windows\system32\services.exe
11:29:55.0169 0x05b4 [ Global ] - ok
11:29:55.0169 0x05b4 ================ Scan MBR ==================================
11:29:55.0183 0x05b4 [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
11:29:56.0202 0x05b4 \Device\Harddisk0\DR0 - ok
11:29:56.0202 0x05b4 ================ Scan VBR ==================================
11:29:56.0215 0x05b4 [ C1D416F583734A79C936A206534B7EB9 ] \Device\Harddisk0\DR0\Partition1
11:29:56.0239 0x05b4 \Device\Harddisk0\DR0\Partition1 - ok
11:29:56.0240 0x05b4 Waiting for KSN requests completion. In queue: 269
11:29:57.0240 0x05b4 Waiting for KSN requests completion. In queue: 269
11:29:58.0240 0x05b4 Waiting for KSN requests completion. In queue: 269
11:29:59.0240 0x05b4 Waiting for KSN requests completion. In queue: 269
11:30:00.0321 0x05b4 AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 8.0.1497.376 ), 0x40000 ( disabled : updated )
11:30:00.0391 0x05b4 Win FW state via NFP2: disabled
11:30:04.0153 0x05b4 ============================================================
11:30:04.0153 0x05b4 Scan finished
11:30:04.0153 0x05b4 ============================================================
11:30:04.0165 0x0c38 Detected object count: 0
11:30:04.0165 0x0c38 Actual detected object count: 0
11:30:42.0543 0x0cbc Deinitialize success
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: 100% využití cpu
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.
Pokud budou problémy , spusť v nouz. režimu.
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.
Pokud budou problémy , spusť v nouz. režimu.
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Re: 100% využití cpu
ComboFix 14-04-30.01 - Nekut Karel 03.05.2014 22:06:38.6.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.3326.2516 [GMT 2:00]
Spuštěný z: c:\users\Nekut Karel\Downloads\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-04-03 do 2014-05-03 )))))))))))))))))))))))))))))))
.
.
2014-05-03 20:16 . 2014-05-03 20:16 -------- d-----w- c:\users\Nekut Karel\AppData\Local\temp
2014-05-03 20:16 . 2014-05-03 20:16 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2014-05-03 20:16 . 2014-05-03 20:16 -------- d-----w- c:\users\Public\AppData\Local\temp
2014-05-03 20:16 . 2014-05-03 20:16 -------- d-----w- c:\users\Nekut\AppData\Local\temp
2014-05-03 20:16 . 2014-05-03 20:16 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-05-03 19:16 . 2014-05-03 19:16 -------- d-----w- C:\GOG Games
2014-05-02 21:25 . 2014-04-29 10:07 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2014-05-02 14:50 . 2010-08-30 06:34 536576 ----a-w- c:\windows\system32\sqlite3.dll
2014-05-02 14:20 . 2014-04-17 03:32 8050496 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{FCA4121C-A2C0-435A-AEC1-F1BDAC3A5A08}\mpengine.dll
2014-04-26 18:13 . 2014-04-26 18:13 -------- d-----w- c:\users\Nekut Karel\AppData\Roaming\Godlike
2014-04-26 18:12 . 2014-04-26 18:12 -------- d-----w- c:\program files\WinTools Software
2014-04-26 07:52 . 2014-04-26 07:52 -------- d-----w- c:\users\Nekut Karel\AppData\Roaming\DarkSoulsII
2014-04-20 20:48 . 2014-04-20 20:48 -------- d-----w- c:\program files\GOG.com
2014-04-13 17:00 . 2014-04-13 17:00 -------- d-----w- c:\program files\PCDApp
2014-04-13 08:15 . 2014-04-13 08:15 -------- d-----w- c:\users\Nekut Karel\AppData\Local\Blizzard Entertainment
2014-04-13 08:15 . 2014-04-13 17:10 -------- d-----w- c:\users\Nekut Karel\AppData\Local\Battle.net
2014-04-13 08:15 . 2014-04-13 09:11 -------- d-----w- c:\users\Nekut Karel\AppData\Roaming\Battle.net
2014-04-13 08:14 . 2014-04-13 08:15 -------- d-----w- c:\program files\Common Files\Blizzard Entertainment
2014-04-12 12:46 . 2014-04-12 12:45 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2014-04-12 12:45 . 2014-04-28 18:53 22328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2014-04-12 12:45 . 2014-04-28 18:53 103736 ----a-w- c:\windows\system32\PnkBstrB.exe
2014-04-10 18:26 . 2014-04-10 18:26 -------- d-----w- c:\users\Nekut Karel\AppData\Local\Skype
2014-04-08 18:27 . 2014-04-08 18:47 -------- d-----w- c:\program files\NASCAR '14
2014-04-07 17:14 . 2014-04-07 17:14 -------- d-----w- c:\users\Nekut Karel\AppData\Roaming\Milestone
2014-04-07 17:02 . 2014-04-07 17:14 -------- d-----w- c:\program files\WRC 4 FIA World Rally Championship
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-03-31 07:35 . 2010-08-12 09:56 231584 ------w- c:\windows\system32\MpSigStub.exe
2014-03-21 19:02 . 2014-03-21 19:02 724888 ----a-r- c:\users\Nekut Karel\AppData\Roaming\Microsoft\Installer\{31D472DE-C95E-4899-8AB5-42EFB500CFFA}\IconTmpl6.A961A077_4BD0_4C98_86BC_EE4A98CE550D.exe
2014-03-21 19:02 . 2014-03-21 19:02 212480 ----a-r- c:\users\Nekut Karel\AppData\Roaming\Microsoft\Installer\{31D472DE-C95E-4899-8AB5-42EFB500CFFA}\IconTmpl2.108DF49C_3AB4_4A7D_B6FD_8B6286B317FA.exe
2014-03-21 19:02 . 2014-03-21 19:02 2078096 ----a-r- c:\users\Nekut Karel\AppData\Roaming\Microsoft\Installer\{31D472DE-C95E-4899-8AB5-42EFB500CFFA}\IconTmpl4.A961A077_4BD0_4C98_86BC_EE4A98CE550D.exe
2014-02-13 12:46 . 2014-02-13 12:46 354656 ----a-w- c:\windows\system32\DivXControlPanelApplet.cpl
2014-02-08 08:35 . 2014-02-08 08:35 316888 ----a-w- c:\windows\system32\appdrvrem01.exe
2014-02-08 08:35 . 2014-02-08 08:35 2627760 ----a-w- c:\windows\system32\drivers\appdrv01.sys
2014-02-07 10:38 . 2014-03-13 16:53 2050560 ----a-w- c:\windows\system32\win32k.sys
2014-02-05 19:15 . 2013-12-11 17:15 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-02-05 19:15 . 2013-11-18 21:06 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-02-03 10:37 . 2014-03-13 16:53 505344 ----a-w- c:\windows\system32\qedit.dll
2013-02-08 14:34 . 2013-11-09 16:14 84 ----a-w- c:\program files\update-DragonAge.bat
2010-08-03 09:11 819200 --sha-w- c:\windows\System32\xvidcore.dll
2010-08-03 09:11 180224 --sha-w- c:\windows\System32\xvidvfw.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-08-30 07:47 121968 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-18 202240]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-08-30 4858968]
"DivXMediaServer"="c:\program files\DivX\DivX Media Server\DivXMediaServer.exe" [2014-02-14 450560]
"mncwettgvSrv"="c:\windows\inf\mncwettgv.vbe" [2014-01-13 1338]
"NetFxUpdate_v1.1.4322"="c:\windows\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe" [2004-08-10 106496]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2014-01-10 1861968]
"seznam-listicka-distribuce"="c:\program files\Seznam.cz\distribution\szninstall.exe" [2013-05-16 1062472]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-11-29 421888]
.
c:\users\Nekut Karel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
CodeMeter Control Center.lnk - c:\program files\CodeMeter\Runtime\bin\CodeMeterCC.exe [2011-1-19 6871952]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer3"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ \0
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKLM\~\startupfolder\C:^Users^Nekut Karel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MyPC Backup.lnk]
backupExtension=.Startup
backup=c:\windows\pss\MyPC Backup.lnk.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\amd_dc_opt]
2008-07-22 12:53 77824 ----a-w- c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2012-11-06 10:46 3673728 ----a-w- c:\program files\DAEMON Tools Lite\DTLite.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EADM]
2014-03-22 15:22 3588952 ----a-w- c:\program files\Origin\Origin.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe]
2008-01-18 21:33 125952 ----a-w- c:\windows\ehome\ehtray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nvtmru]
2013-11-14 11:56 1028384 ----a-w- c:\program files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
2010-04-30 15:24 9210400 ----a-w- c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
2009-04-10 21:28 1233920 ----a-w- c:\program files\Windows Sidebar\sidebar.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2014-02-10 15:46 20922016 ----a-r- c:\program files\Skype\Phone\Skype.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Start WingMan Profiler]
2010-06-14 23:10 153672 ----a-w- c:\program files\Logitech\Gaming Software\LWEMon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2013-03-12 05:32 253816 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
2013-09-27 22:23 295512 ----a-w- c:\program files\Real\RealPlayer\Update\realsched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFast Schedule]
2009-03-11 16:22 2912256 ----a-w- c:\program files\WinFast\WFDTV\WFWIZ.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFastDTV]
2009-10-02 13:17 90112 ----a-w- c:\program files\WinFast\WFDTV\DTVSchdl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG]
2008-01-18 21:33 202240 ----a-w- c:\program files\Windows Media Player\wmpnscfg.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-disabled]
"Microsoft Default Manager"="c:\program files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-3175436897-955967646-652882917-1001]
"EnableNotificationsRef"=dword:00000001
.
R3 1394hub;1394 Enabled Hub;c:\windows\System32\svchost.exe [2008-01-18 21504]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
SearchIndexer
SearchIndexer
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-05-01 10:03 1078088 ----a-w- c:\program files\Google\Chrome\Application\34.0.1847.131\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-05-03 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-18 19:15]
.
2014-05-03 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-11-09 07:41]
.
2014-05-03 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-11-09 07:41]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/?clid=13415
mStart Page = hxxp://www.google.com
uInternet Settings,ProxyOverride = 127.0.0.1:9421
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
IE: Search the Web
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKCU-Run-fsm - (no file)
AddRemove-GOGPACKSIRYOUAREBEINGHUNTED_is1 - c:\gog games\Sir
AddRemove-Software Informer_is1 - c:\program files\Software Informer\unins000.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2014-05-03 22:16
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\system\ControlSet006\Services\npggsvc]
"ImagePath"="c:\windows\system32\GameMon.des -service"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-3175436897-955967646-652882917-1000\*"!~**]
@Allowed: (Read) (RestrictedCode)
.
Celkový čas: 2014-05-03 22:19:21
ComboFix-quarantined-files.txt 2014-05-03 20:19
ComboFix2.txt 2013-11-29 16:14
ComboFix3.txt 2013-11-28 17:43
ComboFix4.txt 2013-07-28 13:43
.
Před spuštěním: Volných bajtů: 24 653 008 896
Po spuštění: Volných bajtů: 24 600 166 400
.
- - End Of File - - 425C45529D6D2CF69AC8C79B5B8E9870
5C616939100B85E558DA92B899A0FC36
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.3326.2516 [GMT 2:00]
Spuštěný z: c:\users\Nekut Karel\Downloads\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-04-03 do 2014-05-03 )))))))))))))))))))))))))))))))
.
.
2014-05-03 20:16 . 2014-05-03 20:16 -------- d-----w- c:\users\Nekut Karel\AppData\Local\temp
2014-05-03 20:16 . 2014-05-03 20:16 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2014-05-03 20:16 . 2014-05-03 20:16 -------- d-----w- c:\users\Public\AppData\Local\temp
2014-05-03 20:16 . 2014-05-03 20:16 -------- d-----w- c:\users\Nekut\AppData\Local\temp
2014-05-03 20:16 . 2014-05-03 20:16 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-05-03 19:16 . 2014-05-03 19:16 -------- d-----w- C:\GOG Games
2014-05-02 21:25 . 2014-04-29 10:07 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2014-05-02 14:50 . 2010-08-30 06:34 536576 ----a-w- c:\windows\system32\sqlite3.dll
2014-05-02 14:20 . 2014-04-17 03:32 8050496 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{FCA4121C-A2C0-435A-AEC1-F1BDAC3A5A08}\mpengine.dll
2014-04-26 18:13 . 2014-04-26 18:13 -------- d-----w- c:\users\Nekut Karel\AppData\Roaming\Godlike
2014-04-26 18:12 . 2014-04-26 18:12 -------- d-----w- c:\program files\WinTools Software
2014-04-26 07:52 . 2014-04-26 07:52 -------- d-----w- c:\users\Nekut Karel\AppData\Roaming\DarkSoulsII
2014-04-20 20:48 . 2014-04-20 20:48 -------- d-----w- c:\program files\GOG.com
2014-04-13 17:00 . 2014-04-13 17:00 -------- d-----w- c:\program files\PCDApp
2014-04-13 08:15 . 2014-04-13 08:15 -------- d-----w- c:\users\Nekut Karel\AppData\Local\Blizzard Entertainment
2014-04-13 08:15 . 2014-04-13 17:10 -------- d-----w- c:\users\Nekut Karel\AppData\Local\Battle.net
2014-04-13 08:15 . 2014-04-13 09:11 -------- d-----w- c:\users\Nekut Karel\AppData\Roaming\Battle.net
2014-04-13 08:14 . 2014-04-13 08:15 -------- d-----w- c:\program files\Common Files\Blizzard Entertainment
2014-04-12 12:46 . 2014-04-12 12:45 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2014-04-12 12:45 . 2014-04-28 18:53 22328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2014-04-12 12:45 . 2014-04-28 18:53 103736 ----a-w- c:\windows\system32\PnkBstrB.exe
2014-04-10 18:26 . 2014-04-10 18:26 -------- d-----w- c:\users\Nekut Karel\AppData\Local\Skype
2014-04-08 18:27 . 2014-04-08 18:47 -------- d-----w- c:\program files\NASCAR '14
2014-04-07 17:14 . 2014-04-07 17:14 -------- d-----w- c:\users\Nekut Karel\AppData\Roaming\Milestone
2014-04-07 17:02 . 2014-04-07 17:14 -------- d-----w- c:\program files\WRC 4 FIA World Rally Championship
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-03-31 07:35 . 2010-08-12 09:56 231584 ------w- c:\windows\system32\MpSigStub.exe
2014-03-21 19:02 . 2014-03-21 19:02 724888 ----a-r- c:\users\Nekut Karel\AppData\Roaming\Microsoft\Installer\{31D472DE-C95E-4899-8AB5-42EFB500CFFA}\IconTmpl6.A961A077_4BD0_4C98_86BC_EE4A98CE550D.exe
2014-03-21 19:02 . 2014-03-21 19:02 212480 ----a-r- c:\users\Nekut Karel\AppData\Roaming\Microsoft\Installer\{31D472DE-C95E-4899-8AB5-42EFB500CFFA}\IconTmpl2.108DF49C_3AB4_4A7D_B6FD_8B6286B317FA.exe
2014-03-21 19:02 . 2014-03-21 19:02 2078096 ----a-r- c:\users\Nekut Karel\AppData\Roaming\Microsoft\Installer\{31D472DE-C95E-4899-8AB5-42EFB500CFFA}\IconTmpl4.A961A077_4BD0_4C98_86BC_EE4A98CE550D.exe
2014-02-13 12:46 . 2014-02-13 12:46 354656 ----a-w- c:\windows\system32\DivXControlPanelApplet.cpl
2014-02-08 08:35 . 2014-02-08 08:35 316888 ----a-w- c:\windows\system32\appdrvrem01.exe
2014-02-08 08:35 . 2014-02-08 08:35 2627760 ----a-w- c:\windows\system32\drivers\appdrv01.sys
2014-02-07 10:38 . 2014-03-13 16:53 2050560 ----a-w- c:\windows\system32\win32k.sys
2014-02-05 19:15 . 2013-12-11 17:15 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-02-05 19:15 . 2013-11-18 21:06 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-02-03 10:37 . 2014-03-13 16:53 505344 ----a-w- c:\windows\system32\qedit.dll
2013-02-08 14:34 . 2013-11-09 16:14 84 ----a-w- c:\program files\update-DragonAge.bat
2010-08-03 09:11 819200 --sha-w- c:\windows\System32\xvidcore.dll
2010-08-03 09:11 180224 --sha-w- c:\windows\System32\xvidvfw.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-08-30 07:47 121968 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-18 202240]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-08-30 4858968]
"DivXMediaServer"="c:\program files\DivX\DivX Media Server\DivXMediaServer.exe" [2014-02-14 450560]
"mncwettgvSrv"="c:\windows\inf\mncwettgv.vbe" [2014-01-13 1338]
"NetFxUpdate_v1.1.4322"="c:\windows\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe" [2004-08-10 106496]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2014-01-10 1861968]
"seznam-listicka-distribuce"="c:\program files\Seznam.cz\distribution\szninstall.exe" [2013-05-16 1062472]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-11-29 421888]
.
c:\users\Nekut Karel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
CodeMeter Control Center.lnk - c:\program files\CodeMeter\Runtime\bin\CodeMeterCC.exe [2011-1-19 6871952]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer3"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ \0
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKLM\~\startupfolder\C:^Users^Nekut Karel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MyPC Backup.lnk]
backupExtension=.Startup
backup=c:\windows\pss\MyPC Backup.lnk.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\amd_dc_opt]
2008-07-22 12:53 77824 ----a-w- c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2012-11-06 10:46 3673728 ----a-w- c:\program files\DAEMON Tools Lite\DTLite.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EADM]
2014-03-22 15:22 3588952 ----a-w- c:\program files\Origin\Origin.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe]
2008-01-18 21:33 125952 ----a-w- c:\windows\ehome\ehtray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nvtmru]
2013-11-14 11:56 1028384 ----a-w- c:\program files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
2010-04-30 15:24 9210400 ----a-w- c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
2009-04-10 21:28 1233920 ----a-w- c:\program files\Windows Sidebar\sidebar.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2014-02-10 15:46 20922016 ----a-r- c:\program files\Skype\Phone\Skype.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Start WingMan Profiler]
2010-06-14 23:10 153672 ----a-w- c:\program files\Logitech\Gaming Software\LWEMon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2013-03-12 05:32 253816 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
2013-09-27 22:23 295512 ----a-w- c:\program files\Real\RealPlayer\Update\realsched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFast Schedule]
2009-03-11 16:22 2912256 ----a-w- c:\program files\WinFast\WFDTV\WFWIZ.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFastDTV]
2009-10-02 13:17 90112 ----a-w- c:\program files\WinFast\WFDTV\DTVSchdl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG]
2008-01-18 21:33 202240 ----a-w- c:\program files\Windows Media Player\wmpnscfg.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-disabled]
"Microsoft Default Manager"="c:\program files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-3175436897-955967646-652882917-1001]
"EnableNotificationsRef"=dword:00000001
.
R3 1394hub;1394 Enabled Hub;c:\windows\System32\svchost.exe [2008-01-18 21504]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
SearchIndexer
SearchIndexer
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-05-01 10:03 1078088 ----a-w- c:\program files\Google\Chrome\Application\34.0.1847.131\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-05-03 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-18 19:15]
.
2014-05-03 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-11-09 07:41]
.
2014-05-03 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-11-09 07:41]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/?clid=13415
mStart Page = hxxp://www.google.com
uInternet Settings,ProxyOverride = 127.0.0.1:9421
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
IE: Search the Web
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKCU-Run-fsm - (no file)
AddRemove-GOGPACKSIRYOUAREBEINGHUNTED_is1 - c:\gog games\Sir
AddRemove-Software Informer_is1 - c:\program files\Software Informer\unins000.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2014-05-03 22:16
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\system\ControlSet006\Services\npggsvc]
"ImagePath"="c:\windows\system32\GameMon.des -service"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-3175436897-955967646-652882917-1000\*"!~**]
@Allowed: (Read) (RestrictedCode)
.
Celkový čas: 2014-05-03 22:19:21
ComboFix-quarantined-files.txt 2014-05-03 20:19
ComboFix2.txt 2013-11-29 16:14
ComboFix3.txt 2013-11-28 17:43
ComboFix4.txt 2013-07-28 13:43
.
Před spuštěním: Volných bajtů: 24 653 008 896
Po spuštění: Volných bajtů: 24 600 166 400
.
- - End Of File - - 425C45529D6D2CF69AC8C79B5B8E9870
5C616939100B85E558DA92B899A0FC36
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: 100% využití cpu
Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Kód: Vybrat vše
ClearJavaCache::
KillAll::
File::
c:\windows\inf\mncwettgv.vbe
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
Folder::
c:\program files\Google\Update
Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"mncwettgvSrv"=-
RegLock::
[HKEY_USERS\S-1-5-21-3175436897-955967646-652882917-1000\ *"!~ *
*]
@Allowed: (Read) (RestrictedCode)
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 101 hostů