Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

prosim o pomoc s odstranenin viru Win32/Olmarik.TDL4.trojan

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
imprezion
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 09 říj 2011 10:09

Re: prosim o pomoc s odstranenin viru Win32/Olmarik.TDL4.tro

#16 Příspěvek od imprezion »

Dobry vecer,

Tak som spustil AVPTool ale nenasiel ziadne hrozby, resp. nic nevymazal.

Log je obrovsky a ma skoro 80MB takze ho nemozem vlozit ani ako prilohu.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119509
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosim o pomoc s odstranenin viru Win32/Olmarik.TDL4.tro

#17 Příspěvek od Rudy »

OK. Zkuste ještě jednou TDSSKiller: Postupujte podle kolegova návodu
Utilitu spustte a prikazte ji, at skenuje - klik na Start Scan
Pokud utilita najde infikekci, bude ji chtit lecit (Cure), povolte leceni kliknutim na Continue
Pokud utilita najde podezrely soubor (suspicious), bude jej chtit preskocit (Skip), povolte preskoceni kliknutim na Continue
Po dokonceni skenu bude mozna nutny restart PC, povolte jej kliknutim na Reboot now
Po restartu na Vas vyskoci log, pokud se tak nestane, najdete jej primo na disku, kde mate Windows (obvykle c:\) ve tvaru TDSSKiller.nejaka cisilka _log.txt - jeho obsah sem vlozte
Pokud restart nebude vyzadovan, kliknete na Close a nasledne na Report - vytvori se log - jeho obsah sem vlozte
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

imprezion
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 09 říj 2011 10:09

Re: prosim o pomoc s odstranenin viru Win32/Olmarik.TDL4.tro

#18 Příspěvek od imprezion »

Dobry den,

postupoval som podla kolegovho navodu, ale nic sa nenaslo..

log z TDSSKiller:

11:41:07.0980 5848 TDSS rootkit removing tool 2.6.9.0 Oct 14 2011 11:33:24
11:41:08.0377 5848 ============================================================
11:41:08.0377 5848 Current date / time: 2011/10/15 11:41:08.0377
11:41:08.0377 5848 SystemInfo:
11:41:08.0377 5848
11:41:08.0377 5848 OS Version: 6.1.7600 ServicePack: 0.0
11:41:08.0377 5848 Product type: Workstation
11:41:08.0377 5848 ComputerName: ADMIN-VAIO
11:41:08.0377 5848 UserName: admin
11:41:08.0377 5848 Windows directory: C:\Windows
11:41:08.0377 5848 System windows directory: C:\Windows
11:41:08.0377 5848 Running under WOW64
11:41:08.0377 5848 Processor architecture: Intel x64
11:41:08.0377 5848 Number of processors: 2
11:41:08.0377 5848 Page size: 0x1000
11:41:08.0377 5848 Boot type: Normal boot
11:41:08.0377 5848 ============================================================
11:41:08.0983 5848 Initialize success
11:42:09.0392 2952 ============================================================
11:42:09.0392 2952 Scan started
11:42:09.0392 2952 Mode: Manual;
11:42:09.0392 2952 ============================================================
11:42:11.0360 2952 1394ohci (1b00662092f9f9568b995902f0cc40d5) C:\Windows\system32\drivers\1394ohci.sys
11:42:11.0407 2952 1394ohci - ok
11:42:11.0645 2952 ACPI (6f11e88748cdefd2f76aa215f97ddfe5) C:\Windows\system32\drivers\ACPI.sys
11:42:11.0649 2952 ACPI - ok
11:42:11.0794 2952 AcpiPmi (63b05a0420ce4bf0e4af6dcc7cada254) C:\Windows\system32\drivers\acpipmi.sys
11:42:11.0820 2952 AcpiPmi - ok
11:42:11.0913 2952 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\drivers\adp94xx.sys
11:42:11.0951 2952 adp94xx - ok
11:42:12.0067 2952 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\drivers\adpahci.sys
11:42:12.0110 2952 adpahci - ok
11:42:12.0226 2952 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\drivers\adpu320.sys
11:42:12.0230 2952 adpu320 - ok
11:42:12.0410 2952 AFD (6ef20ddf3172e97d69f596fb90602f29) C:\Windows\system32\drivers\afd.sys
11:42:12.0419 2952 AFD - ok
11:42:12.0483 2952 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
11:42:12.0508 2952 agp440 - ok
11:42:12.0642 2952 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
11:42:12.0662 2952 aliide - ok
11:42:12.0753 2952 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
11:42:12.0772 2952 amdide - ok
11:42:12.0863 2952 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\drivers\amdk8.sys
11:42:12.0882 2952 AmdK8 - ok
11:42:12.0936 2952 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\drivers\amdppm.sys
11:42:12.0974 2952 AmdPPM - ok
11:42:13.0066 2952 amdsata (7a4b413614c055935567cf88a9734d38) C:\Windows\system32\drivers\amdsata.sys
11:42:13.0086 2952 amdsata - ok
11:42:13.0145 2952 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\drivers\amdsbs.sys
11:42:13.0205 2952 amdsbs - ok
11:42:13.0285 2952 amdxata (b4ad0cacbab298671dd6f6ef7e20679d) C:\Windows\system32\drivers\amdxata.sys
11:42:13.0292 2952 amdxata - ok
11:42:13.0366 2952 ApfiltrService (2d45f2dfbc3d8f53df7ebeffa8c9bc38) C:\Windows\system32\drivers\Apfiltr.sys
11:42:13.0410 2952 ApfiltrService - ok
11:42:13.0536 2952 AppID (42fd751b27fa0e9c69bb39f39e409594) C:\Windows\system32\drivers\appid.sys
11:42:13.0578 2952 AppID - ok
11:42:13.0626 2952 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\drivers\arc.sys
11:42:13.0644 2952 arc - ok
11:42:13.0693 2952 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\drivers\arcsas.sys
11:42:13.0707 2952 arcsas - ok
11:42:13.0801 2952 ArcSoftKsUFilter (c130bc4a51b1382b2be8e44579ec4c0a) C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys
11:42:13.0804 2952 ArcSoftKsUFilter - ok
11:42:13.0847 2952 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
11:42:13.0864 2952 AsyncMac - ok
11:42:14.0007 2952 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
11:42:14.0061 2952 atapi - ok
11:42:14.0393 2952 athr (cca705cdf038d5bc243203ce4416b345) C:\Windows\system32\DRIVERS\athrx.sys
11:42:14.0478 2952 athr - ok
11:42:14.0865 2952 atikmdag (eaea2ce49de0cca80beb9134107e5dd7) C:\Windows\system32\DRIVERS\atikmdag.sys
11:42:15.0039 2952 atikmdag - ok
11:42:15.0198 2952 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\drivers\bxvbda.sys
11:42:15.0223 2952 b06bdrv - ok
11:42:15.0261 2952 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
11:42:15.0297 2952 b57nd60a - ok
11:42:15.0335 2952 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
11:42:15.0338 2952 Beep - ok
11:42:15.0392 2952 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\drivers\blbdrive.sys
11:42:15.0410 2952 blbdrive - ok
11:42:15.0444 2952 bowser (19d20159708e152267e53b66677a4995) C:\Windows\system32\DRIVERS\bowser.sys
11:42:15.0480 2952 bowser - ok
11:42:15.0520 2952 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\drivers\BrFiltLo.sys
11:42:15.0522 2952 BrFiltLo - ok
11:42:15.0543 2952 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\drivers\BrFiltUp.sys
11:42:15.0545 2952 BrFiltUp - ok
11:42:15.0581 2952 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
11:42:15.0603 2952 Brserid - ok
11:42:15.0621 2952 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
11:42:15.0639 2952 BrSerWdm - ok
11:42:15.0669 2952 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
11:42:15.0686 2952 BrUsbMdm - ok
11:42:15.0709 2952 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
11:42:15.0711 2952 BrUsbSer - ok
11:42:15.0751 2952 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\drivers\BthEnum.sys
11:42:15.0773 2952 BthEnum - ok
11:42:15.0979 2952 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
11:42:16.0016 2952 BTHMODEM - ok
11:42:16.0061 2952 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys
11:42:16.0062 2952 BthPan - ok
11:42:16.0131 2952 BTHPORT (21084ceb85280468c9aca3c805c0f8cf) C:\Windows\System32\Drivers\BTHport.sys
11:42:16.0161 2952 BTHPORT - ok
11:42:16.0201 2952 BTHUSB (8504842634dd144c075b6b0c982ccec4) C:\Windows\System32\Drivers\BTHUSB.sys
11:42:16.0220 2952 BTHUSB - ok
11:42:16.0370 2952 btwampfl (59e3510784548c6939c1b3b985c232e3) C:\Windows\system32\drivers\btwampfl.sys
11:42:16.0415 2952 btwampfl - ok
11:42:16.0454 2952 btwaudio (1872074ed0a3fb22e3f1e3197b984bfa) C:\Windows\system32\drivers\btwaudio.sys
11:42:16.0457 2952 btwaudio - ok
11:42:16.0513 2952 btwavdt (691cf076c33ab1c3a5b2fd5450300733) C:\Windows\system32\drivers\btwavdt.sys
11:42:16.0523 2952 btwavdt - ok
11:42:16.0569 2952 btwl2cap (07096d2bc22ccb6cea5a532df0be8a75) C:\Windows\system32\DRIVERS\btwl2cap.sys
11:42:16.0571 2952 btwl2cap - ok
11:42:16.0611 2952 btwrchid (c9273b20dec8ce38dbce5d29de63c907) C:\Windows\system32\DRIVERS\btwrchid.sys
11:42:16.0613 2952 btwrchid - ok
11:42:16.0681 2952 catchme - ok
11:42:16.0726 2952 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
11:42:16.0729 2952 cdfs - ok
11:42:16.0761 2952 cdrom (83d2d75e1efb81b3450c18131443f7db) C:\Windows\system32\DRIVERS\cdrom.sys
11:42:16.0784 2952 cdrom - ok
11:42:16.0838 2952 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\drivers\circlass.sys
11:42:16.0858 2952 circlass - ok
11:42:16.0932 2952 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
11:42:16.0937 2952 CLFS - ok
11:42:16.0972 2952 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\drivers\CmBatt.sys
11:42:16.0988 2952 CmBatt - ok
11:42:17.0008 2952 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
11:42:17.0032 2952 cmdide - ok
11:42:17.0079 2952 CNG (f95fd4cb7da00ba2a63ce9f6b5c053e1) C:\Windows\system32\Drivers\cng.sys
11:42:17.0103 2952 CNG - ok
11:42:17.0135 2952 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\drivers\compbatt.sys
11:42:17.0157 2952 Compbatt - ok
11:42:17.0179 2952 CompositeBus (f26b3a86f6fa87ca360b879581ab4123) C:\Windows\system32\drivers\CompositeBus.sys
11:42:17.0181 2952 CompositeBus - ok
11:42:17.0222 2952 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\drivers\crcdisk.sys
11:42:17.0225 2952 crcdisk - ok
11:42:17.0305 2952 DfsC (9c253ce7311ca60fc11c774692a13208) C:\Windows\system32\Drivers\dfsc.sys
11:42:17.0308 2952 DfsC - ok
11:42:17.0327 2952 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
11:42:17.0364 2952 discache - ok
11:42:17.0379 2952 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\drivers\disk.sys
11:42:17.0397 2952 Disk - ok
11:42:17.0470 2952 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
11:42:17.0489 2952 drmkaud - ok
11:42:17.0609 2952 dtsoftbus01 (fb9bef3401ee5ecc2603311b9c64f44a) C:\Windows\system32\DRIVERS\dtsoftbus01.sys
11:42:17.0612 2952 dtsoftbus01 - ok
11:42:17.0653 2952 DXGKrnl (ebce0b0924835f635f620d19f0529dce) C:\Windows\System32\drivers\dxgkrnl.sys
11:42:17.0666 2952 DXGKrnl - ok
11:42:17.0800 2952 eamonm (72a1aa3c6c79b928d02a6fad387b1349) C:\Windows\system32\DRIVERS\eamonm.sys
11:42:17.0806 2952 eamonm - ok
11:42:18.0000 2952 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\drivers\evbda.sys
11:42:18.0117 2952 ebdrv - ok
11:42:18.0246 2952 ehdrv (e99457900012b53b2226f146ecaf9136) C:\Windows\system32\DRIVERS\ehdrv.sys
11:42:18.0269 2952 ehdrv - ok
11:42:18.0367 2952 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\drivers\elxstor.sys
11:42:18.0376 2952 elxstor - ok
11:42:18.0437 2952 epfwwfpr (a2af094dcbe8bff7e898d327750506a0) C:\Windows\system32\DRIVERS\epfwwfpr.sys
11:42:18.0457 2952 epfwwfpr - ok
11:42:18.0488 2952 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
11:42:18.0507 2952 ErrDev - ok
11:42:18.0562 2952 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
11:42:18.0601 2952 exfat - ok
11:42:18.0622 2952 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
11:42:18.0659 2952 fastfat - ok
11:42:18.0692 2952 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\drivers\fdc.sys
11:42:18.0724 2952 fdc - ok
11:42:18.0748 2952 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
11:42:18.0769 2952 FileInfo - ok
11:42:18.0784 2952 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
11:42:18.0807 2952 Filetrace - ok
11:42:18.0840 2952 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\drivers\flpydisk.sys
11:42:18.0842 2952 flpydisk - ok
11:42:18.0868 2952 FltMgr (f7866af72abbaf84b1fa5aa195378c59) C:\Windows\system32\drivers\fltmgr.sys
11:42:18.0889 2952 FltMgr - ok
11:42:18.0914 2952 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
11:42:18.0935 2952 FsDepends - ok
11:42:18.0949 2952 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
11:42:18.0967 2952 Fs_Rec - ok
11:42:19.0095 2952 fvevol (b8b2a6e1558f8f5de5ce431c5b2c7b09) C:\Windows\system32\DRIVERS\fvevol.sys
11:42:19.0119 2952 fvevol - ok
11:42:19.0145 2952 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\drivers\gagp30kx.sys
11:42:19.0204 2952 gagp30kx - ok
11:42:19.0260 2952 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
11:42:19.0262 2952 hcw85cir - ok
11:42:19.0298 2952 HdAudAddService (6410f6f415b2a5a9037224c41da8bf12) C:\Windows\system32\drivers\HdAudio.sys
11:42:19.0307 2952 HdAudAddService - ok
11:42:19.0348 2952 HDAudBus (0a49913402747a0b67de940fb42cbdbb) C:\Windows\system32\drivers\HDAudBus.sys
11:42:19.0353 2952 HDAudBus - ok
11:42:19.0395 2952 HECIx64 (b6ac71aaa2b10848f57fc49d55a651af) C:\Windows\system32\drivers\HECIx64.sys
11:42:19.0397 2952 HECIx64 - ok
11:42:19.0431 2952 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\drivers\HidBatt.sys
11:42:19.0466 2952 HidBatt - ok
11:42:19.0500 2952 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\drivers\hidbth.sys
11:42:19.0519 2952 HidBth - ok
11:42:19.0538 2952 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\drivers\hidir.sys
11:42:19.0574 2952 HidIr - ok
11:42:19.0642 2952 HidUsb (b3bf6b5b50006def50b66306d99fcf6f) C:\Windows\system32\DRIVERS\hidusb.sys
11:42:19.0660 2952 HidUsb - ok
11:42:19.0699 2952 HpSAMD (0886d440058f203eba0e1825e4355914) C:\Windows\system32\drivers\HpSAMD.sys
11:42:19.0717 2952 HpSAMD - ok
11:42:19.0768 2952 HTTP (cee049cac4efa7f4e1e4ad014414a5d4) C:\Windows\system32\drivers\HTTP.sys
11:42:19.0793 2952 HTTP - ok
11:42:19.0806 2952 hwpolicy (f17766a19145f111856378df337a5d79) C:\Windows\system32\drivers\hwpolicy.sys
11:42:19.0825 2952 hwpolicy - ok
11:42:19.0888 2952 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
11:42:19.0922 2952 i8042prt - ok
11:42:19.0972 2952 iaStor (abbf174cb394f5c437410a788b7e404a) C:\Windows\system32\drivers\iaStor.sys
11:42:19.0975 2952 iaStor - ok
11:42:20.0064 2952 iaStorV (d83efb6fd45df9d55e9a1afc63640d50) C:\Windows\system32\drivers\iaStorV.sys
11:42:20.0091 2952 iaStorV - ok
11:42:20.0609 2952 igfx (2a22ab054f4630d2ef4bab2853f6d5f6) C:\Windows\system32\DRIVERS\igdkmd64.sys
11:42:20.0847 2952 igfx - ok
11:42:21.0007 2952 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\drivers\iirsp.sys
11:42:21.0009 2952 iirsp - ok
11:42:21.0081 2952 Impcd (dd587a55390ed2295bce6d36ad567da9) C:\Windows\system32\drivers\Impcd.sys
11:42:21.0085 2952 Impcd - ok
11:42:21.0176 2952 IntcAzAudAddService (526e482afb586cb1cdd687869decf686) C:\Windows\system32\drivers\RTKVHD64.sys
11:42:21.0219 2952 IntcAzAudAddService - ok
11:42:21.0330 2952 IntcDAud (58cf58dee26c909bd6f977b61d246295) C:\Windows\system32\DRIVERS\IntcDAud.sys
11:42:21.0370 2952 IntcDAud - ok
11:42:21.0406 2952 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
11:42:21.0408 2952 intelide - ok
11:42:21.0445 2952 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\drivers\intelppm.sys
11:42:21.0445 2952 intelppm - ok
11:42:21.0474 2952 IpFilterDriver (722dd294df62483cecaae6e094b4d695) C:\Windows\system32\DRIVERS\ipfltdrv.sys
11:42:21.0477 2952 IpFilterDriver - ok
11:42:21.0506 2952 IPMIDRV (e2b4a4494db7cb9b89b55ca268c337c5) C:\Windows\system32\drivers\IPMIDrv.sys
11:42:21.0510 2952 IPMIDRV - ok
11:42:21.0518 2952 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
11:42:21.0541 2952 IPNAT - ok
11:42:21.0576 2952 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
11:42:21.0579 2952 IRENUM - ok
11:42:21.0606 2952 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
11:42:21.0625 2952 isapnp - ok
11:42:21.0650 2952 iScsiPrt (fa4d2557de56d45b0a346f93564be6e1) C:\Windows\system32\drivers\msiscsi.sys
11:42:21.0671 2952 iScsiPrt - ok
11:42:21.0697 2952 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys
11:42:21.0701 2952 kbdclass - ok
11:42:21.0742 2952 kbdhid (6def98f8541e1b5dceb2c822a11f7323) C:\Windows\system32\drivers\kbdhid.sys
11:42:21.0744 2952 kbdhid - ok
11:42:21.0794 2952 KSecDD (e8b6fcc9c83535c67f835d407620bd27) C:\Windows\system32\Drivers\ksecdd.sys
11:42:21.0799 2952 KSecDD - ok
11:42:21.0917 2952 KSecPkg (a8c63880ef6f4d3fec7b616b9c060215) C:\Windows\system32\Drivers\ksecpkg.sys
11:42:21.0945 2952 KSecPkg - ok
11:42:22.0181 2952 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
11:42:22.0206 2952 ksthunk - ok
11:42:22.0292 2952 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
11:42:22.0311 2952 lltdio - ok
11:42:22.0356 2952 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\drivers\lsi_fc.sys
11:42:22.0375 2952 LSI_FC - ok
11:42:22.0414 2952 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys
11:42:22.0438 2952 LSI_SAS - ok
11:42:22.0476 2952 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\drivers\lsi_sas2.sys
11:42:22.0497 2952 LSI_SAS2 - ok
11:42:22.0519 2952 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\drivers\lsi_scsi.sys
11:42:22.0539 2952 LSI_SCSI - ok
11:42:22.0587 2952 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
11:42:22.0600 2952 luafv - ok
11:42:22.0637 2952 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\drivers\megasas.sys
11:42:22.0672 2952 megasas - ok
11:42:22.0722 2952 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\drivers\MegaSR.sys
11:42:22.0747 2952 MegaSR - ok
11:42:22.0801 2952 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
11:42:22.0803 2952 Modem - ok
11:42:22.0832 2952 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
11:42:22.0833 2952 monitor - ok
11:42:22.0864 2952 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
11:42:22.0866 2952 mouclass - ok
11:42:22.0903 2952 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
11:42:22.0905 2952 mouhid - ok
11:42:22.0925 2952 mountmgr (791af66c4d0e7c90a3646066386fb571) C:\Windows\system32\drivers\mountmgr.sys
11:42:22.0944 2952 mountmgr - ok
11:42:22.0986 2952 mpio (609d1d87649ecc19796f4d76d4c15cea) C:\Windows\system32\drivers\mpio.sys
11:42:23.0006 2952 mpio - ok
11:42:23.0032 2952 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
11:42:23.0055 2952 mpsdrv - ok
11:42:23.0084 2952 MRxDAV (30524261bb51d96d6fcbac20c810183c) C:\Windows\system32\drivers\mrxdav.sys
11:42:23.0087 2952 MRxDAV - ok
11:42:23.0142 2952 mrxsmb (040d62a9d8ad28922632137acdd984f2) C:\Windows\system32\DRIVERS\mrxsmb.sys
11:42:23.0174 2952 mrxsmb - ok
11:42:23.0223 2952 mrxsmb10 (f0067552f8f9b33d7c59403ab808a3cb) C:\Windows\system32\DRIVERS\mrxsmb10.sys
11:42:23.0228 2952 mrxsmb10 - ok
11:42:23.0244 2952 mrxsmb20 (3c142d31de9f2f193218a53fe2632051) C:\Windows\system32\DRIVERS\mrxsmb20.sys
11:42:23.0264 2952 mrxsmb20 - ok
11:42:23.0298 2952 msahci (5c37497276e3b3a5488b23a326a754b7) C:\Windows\system32\drivers\msahci.sys
11:42:23.0315 2952 msahci - ok
11:42:23.0339 2952 msdsm (8d27b597229aed79430fb9db3bcbfbd0) C:\Windows\system32\drivers\msdsm.sys
11:42:23.0367 2952 msdsm - ok
11:42:23.0405 2952 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
11:42:23.0407 2952 Msfs - ok
11:42:23.0422 2952 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
11:42:23.0423 2952 mshidkmdf - ok
11:42:23.0457 2952 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
11:42:23.0475 2952 msisadrv - ok
11:42:23.0516 2952 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
11:42:23.0517 2952 MSKSSRV - ok
11:42:23.0535 2952 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
11:42:23.0536 2952 MSPCLOCK - ok
11:42:23.0558 2952 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
11:42:23.0574 2952 MSPQM - ok
11:42:23.0609 2952 MsRPC (89cb141aa8616d8c6a4610fa26c60964) C:\Windows\system32\drivers\MsRPC.sys
11:42:23.0615 2952 MsRPC - ok
11:42:23.0655 2952 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
11:42:23.0656 2952 mssmbios - ok
11:42:23.0676 2952 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
11:42:23.0678 2952 MSTEE - ok
11:42:23.0709 2952 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\drivers\MTConfig.sys
11:42:23.0711 2952 MTConfig - ok
11:42:23.0739 2952 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
11:42:23.0759 2952 Mup - ok
11:42:23.0888 2952 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
11:42:23.0952 2952 NativeWifiP - ok
11:42:24.0258 2952 NDIS (cad515dbd07d082bb317d9928ce8962c) C:\Windows\system32\drivers\ndis.sys
11:42:24.0298 2952 NDIS - ok
11:42:24.0328 2952 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
11:42:24.0348 2952 NdisCap - ok
11:42:24.0406 2952 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
11:42:24.0408 2952 NdisTapi - ok
11:42:24.0432 2952 Ndisuio (f105ba1e22bf1f2ee8f005d4305e4bec) C:\Windows\system32\DRIVERS\ndisuio.sys
11:42:24.0436 2952 Ndisuio - ok
11:42:24.0458 2952 NdisWan (557dfab9ca1fcb036ac77564c010dad3) C:\Windows\system32\DRIVERS\ndiswan.sys
11:42:24.0477 2952 NdisWan - ok
11:42:24.0498 2952 NDProxy (659b74fb74b86228d6338d643cd3e3cf) C:\Windows\system32\drivers\NDProxy.sys
11:42:24.0516 2952 NDProxy - ok
11:42:24.0572 2952 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
11:42:24.0591 2952 NetBIOS - ok
11:42:24.0620 2952 NetBT (9162b273a44ab9dce5b44362731d062a) C:\Windows\system32\DRIVERS\netbt.sys
11:42:24.0626 2952 NetBT - ok
11:42:24.0908 2952 NETw5s64 (18555f48844c2861d9dce8f2b7223ae5) C:\Windows\system32\DRIVERS\NETw5s64.sys
11:42:25.0095 2952 NETw5s64 - ok
11:42:25.0192 2952 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\drivers\nfrd960.sys
11:42:25.0228 2952 nfrd960 - ok
11:42:25.0281 2952 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
11:42:25.0300 2952 Npfs - ok
11:42:25.0318 2952 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
11:42:25.0320 2952 nsiproxy - ok
11:42:25.0467 2952 Ntfs (356698a13c4630d5b31c37378d469196) C:\Windows\system32\drivers\Ntfs.sys
11:42:25.0525 2952 Ntfs - ok
11:42:25.0548 2952 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
11:42:25.0568 2952 Null - ok
11:42:25.0594 2952 nvraid (3e38712941e9bb4ddbee00affe3fed3d) C:\Windows\system32\drivers\nvraid.sys
11:42:25.0598 2952 nvraid - ok
11:42:25.0614 2952 nvstor (477dc4d6deb99be37084c9ac6d013da1) C:\Windows\system32\drivers\nvstor.sys
11:42:25.0637 2952 nvstor - ok
11:42:25.0661 2952 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
11:42:25.0690 2952 nv_agp - ok
11:42:25.0723 2952 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
11:42:25.0743 2952 ohci1394 - ok
11:42:25.0802 2952 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\drivers\parport.sys
11:42:25.0823 2952 Parport - ok
11:42:25.0853 2952 partmgr (7daa117143316c4a1537e074a5a9eaf0) C:\Windows\system32\drivers\partmgr.sys
11:42:25.0871 2952 partmgr - ok
11:42:25.0921 2952 pccsmcfd (81b5e63131090879ad6ef9f32109b88d) C:\Windows\system32\DRIVERS\pccsmcfdx64.sys
11:42:25.0940 2952 pccsmcfd - ok
11:42:25.0968 2952 pci (f36f6504009f2fb0dfd1b17a116ad74b) C:\Windows\system32\drivers\pci.sys
11:42:25.0989 2952 pci - ok
11:42:26.0012 2952 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
11:42:26.0029 2952 pciide - ok
11:42:26.0059 2952 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\drivers\pcmcia.sys
11:42:26.0082 2952 pcmcia - ok
11:42:26.0117 2952 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
11:42:26.0137 2952 pcw - ok
11:42:26.0173 2952 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
11:42:26.0202 2952 PEAUTH - ok
11:42:26.0287 2952 PptpMiniport (27cc19e81ba5e3403c48302127bda717) C:\Windows\system32\DRIVERS\raspptp.sys
11:42:26.0306 2952 PptpMiniport - ok
11:42:26.0336 2952 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\drivers\processr.sys
11:42:26.0354 2952 Processor - ok
11:42:26.0416 2952 Psched (ee992183bd8eaefd9973f352e587a299) C:\Windows\system32\DRIVERS\pacer.sys
11:42:26.0418 2952 Psched - ok
11:42:26.0471 2952 PxHlpa64 (fbf4db6d53585437e41a113300002a2b) C:\Windows\system32\Drivers\PxHlpa64.sys
11:42:26.0507 2952 PxHlpa64 - ok
11:42:26.0700 2952 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\drivers\ql2300.sys
11:42:26.0719 2952 ql2300 - ok
11:42:26.0744 2952 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\drivers\ql40xx.sys
11:42:26.0747 2952 ql40xx - ok
11:42:26.0787 2952 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
11:42:26.0805 2952 QWAVEdrv - ok
11:42:26.0829 2952 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
11:42:26.0848 2952 RasAcd - ok
11:42:26.0892 2952 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
11:42:26.0894 2952 RasAgileVpn - ok
11:42:26.0918 2952 Rasl2tp (87a6e852a22991580d6d39adc4790463) C:\Windows\system32\DRIVERS\rasl2tp.sys
11:42:26.0936 2952 Rasl2tp - ok
11:42:26.0959 2952 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
11:42:26.0963 2952 RasPppoe - ok
11:42:26.0982 2952 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
11:42:27.0000 2952 RasSstp - ok
11:42:27.0025 2952 rdbss (3bac8142102c15d59a87757c1d41dce5) C:\Windows\system32\DRIVERS\rdbss.sys
11:42:27.0032 2952 rdbss - ok
11:42:27.0063 2952 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\drivers\rdpbus.sys
11:42:27.0096 2952 rdpbus - ok
11:42:27.0134 2952 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
11:42:27.0136 2952 RDPCDD - ok
11:42:27.0157 2952 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
11:42:27.0158 2952 RDPENCDD - ok
11:42:27.0182 2952 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
11:42:27.0198 2952 RDPREFMP - ok
11:42:27.0225 2952 RDPWD (8a3e6bea1c53ea6177fe2b6eba2c80d7) C:\Windows\system32\drivers\RDPWD.sys
11:42:27.0248 2952 RDPWD - ok
11:42:27.0312 2952 rdyboost (e5dc9ba9e439d6dbdd79f8caacb5bf01) C:\Windows\system32\drivers\rdyboost.sys
11:42:27.0319 2952 rdyboost - ok
11:42:27.0371 2952 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys
11:42:27.0392 2952 RFCOMM - ok
11:42:27.0433 2952 rimspci (fa6abc06b629da29634d31f1fe0347bd) C:\Windows\system32\drivers\rimssne64.sys
11:42:27.0454 2952 rimspci - ok
11:42:27.0596 2952 risdsnpe (8f8539a7f5c117d4407b2985995671f2) C:\Windows\system32\drivers\risdsne64.sys
11:42:27.0627 2952 risdsnpe - ok
11:42:27.0681 2952 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
11:42:27.0699 2952 rspndr - ok
11:42:27.0778 2952 RTHDMIAzAudService (d6d381b76056c668679723938f06f16c) C:\Windows\system32\drivers\RtHDMIVX.sys
11:42:27.0802 2952 RTHDMIAzAudService - ok
11:42:27.0854 2952 sbp2port (e3bbb89983daf5622c1d50cf49f28227) C:\Windows\system32\drivers\sbp2port.sys
11:42:27.0872 2952 sbp2port - ok
11:42:27.0907 2952 scfilter (c94da20c7e3ba1dca269bc8460d98387) C:\Windows\system32\DRIVERS\scfilter.sys
11:42:27.0927 2952 scfilter - ok
11:42:27.0986 2952 sdbus (2c8d162efaf73abd36d8bcbb6340cae7) C:\Windows\system32\DRIVERS\sdbus.sys
11:42:27.0989 2952 sdbus - ok
11:42:28.0008 2952 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
11:42:28.0027 2952 secdrv - ok
11:42:28.0083 2952 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\drivers\serenum.sys
11:42:28.0100 2952 Serenum - ok
11:42:28.0149 2952 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\drivers\serial.sys
11:42:28.0217 2952 Serial - ok
11:42:28.0250 2952 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\drivers\sermouse.sys
11:42:28.0268 2952 sermouse - ok
11:42:28.0318 2952 SFEP (286d3889e6ab5589646ff8a63cb928ae) C:\Windows\system32\drivers\SFEP.sys
11:42:28.0337 2952 SFEP - ok
11:42:28.0367 2952 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
11:42:28.0384 2952 sffdisk - ok
11:42:28.0405 2952 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
11:42:28.0422 2952 sffp_mmc - ok
11:42:28.0442 2952 sffp_sd (178298f767fe638c9fedcbdef58bb5e4) C:\Windows\system32\drivers\sffp_sd.sys
11:42:28.0444 2952 sffp_sd - ok
11:42:28.0490 2952 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\drivers\sfloppy.sys
11:42:28.0524 2952 sfloppy - ok
11:42:28.0566 2952 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\drivers\SiSRaid2.sys
11:42:28.0603 2952 SiSRaid2 - ok
11:42:28.0625 2952 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\drivers\sisraid4.sys
11:42:28.0644 2952 SiSRaid4 - ok
11:42:28.0699 2952 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
11:42:28.0704 2952 Smb - ok
11:42:28.0741 2952 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
11:42:28.0760 2952 spldr - ok
11:42:28.0803 2952 srv (2408c0366d96bcdf63e8f1c78e4a29c5) C:\Windows\system32\DRIVERS\srv.sys
11:42:28.0817 2952 srv - ok
11:42:28.0840 2952 srv2 (76548f7b818881b47d8d1ae1be9c11f8) C:\Windows\system32\DRIVERS\srv2.sys
11:42:28.0863 2952 srv2 - ok
11:42:28.0882 2952 srvnet (0af6e19d39c70844c5caa8fb0183c36e) C:\Windows\system32\DRIVERS\srvnet.sys
11:42:28.0886 2952 srvnet - ok
11:42:28.0923 2952 sscdbus (f4f1e1ff6986fe8914525af751ea3eac) C:\Windows\system32\DRIVERS\sscdbus.sys
11:42:28.0927 2952 sscdbus - ok
11:42:28.0959 2952 sscdmdfl (5447690d2cfe1bde1be3a5a5a3e2f796) C:\Windows\system32\DRIVERS\sscdmdfl.sys
11:42:28.0963 2952 sscdmdfl - ok
11:42:28.0989 2952 sscdmdm (bfda292053aeb76a0c1d63b2279d5138) C:\Windows\system32\DRIVERS\sscdmdm.sys
11:42:29.0001 2952 sscdmdm - ok
11:42:29.0053 2952 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\drivers\stexstor.sys
11:42:29.0056 2952 stexstor - ok
11:42:29.0086 2952 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
11:42:29.0105 2952 swenum - ok
11:42:29.0239 2952 Tcpip (b9d87c7707f058ac652a398cd28de14b) C:\Windows\system32\drivers\tcpip.sys
11:42:29.0267 2952 Tcpip - ok
11:42:29.0306 2952 TCPIP6 (b9d87c7707f058ac652a398cd28de14b) C:\Windows\system32\DRIVERS\tcpip.sys
11:42:29.0318 2952 TCPIP6 - ok
11:42:29.0353 2952 tcpipreg (76d078af6f587b162d50210f761eb9ed) C:\Windows\system32\drivers\tcpipreg.sys
11:42:29.0355 2952 tcpipreg - ok
11:42:29.0376 2952 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
11:42:29.0393 2952 TDPIPE - ok
11:42:29.0401 2952 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys
11:42:29.0415 2952 TDTCP - ok
11:42:29.0449 2952 tdx (079125c4b17b01fcaeebce0bcb290c0f) C:\Windows\system32\DRIVERS\tdx.sys
11:42:29.0512 2952 tdx - ok
11:42:29.0529 2952 TermDD (c448651339196c0e869a355171875522) C:\Windows\system32\drivers\termdd.sys
11:42:29.0531 2952 TermDD - ok
11:42:29.0575 2952 TFsExDisk (48d9d00c2e0e72c3d4f52772c80355f6) C:\Windows\System32\Drivers\TFsExDisk.sys
11:42:29.0595 2952 TFsExDisk - ok
11:42:29.0645 2952 tssecsrv (61b96c26131e37b24e93327a0bd1fb95) C:\Windows\system32\DRIVERS\tssecsrv.sys
11:42:29.0647 2952 tssecsrv - ok
11:42:29.0684 2952 tunnel (3836171a2cdf3af8ef10856db9835a70) C:\Windows\system32\DRIVERS\tunnel.sys
11:42:29.0711 2952 tunnel - ok
11:42:29.0745 2952 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\drivers\uagp35.sys
11:42:29.0765 2952 uagp35 - ok
11:42:29.0797 2952 udfs (0e5e962b5649d544be54e8c90761ea2b) C:\Windows\system32\DRIVERS\udfs.sys
11:42:29.0803 2952 udfs - ok
11:42:29.0827 2952 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
11:42:29.0846 2952 uliagpkx - ok
11:42:29.0883 2952 umbus (eab6c35e62b1b0db0d1b48b671d3a117) C:\Windows\system32\DRIVERS\umbus.sys
11:42:29.0901 2952 umbus - ok
11:42:29.0930 2952 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\drivers\umpass.sys
11:42:29.0948 2952 UmPass - ok
11:42:29.0993 2952 usbccgp (b26afb54a534d634523c4fb66765b026) C:\Windows\system32\DRIVERS\usbccgp.sys
11:42:30.0011 2952 usbccgp - ok
11:42:30.0063 2952 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
11:42:30.0066 2952 usbcir - ok
11:42:30.0084 2952 usbehci (2ea4aff7be7eb4632e3aa8595b0803b5) C:\Windows\system32\drivers\usbehci.sys
11:42:30.0086 2952 usbehci - ok
11:42:30.0130 2952 usbhub (4c9042b8df86c1e8e6240c218b99b39b) C:\Windows\system32\drivers\usbhub.sys
11:42:30.0151 2952 usbhub - ok
11:42:30.0167 2952 usbohci (58e546bbaf87664fc57e0f6081e4f609) C:\Windows\system32\drivers\usbohci.sys
11:42:30.0185 2952 usbohci - ok
11:42:30.0241 2952 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
11:42:30.0260 2952 usbprint - ok
11:42:30.0287 2952 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys
11:42:30.0289 2952 usbscan - ok
11:42:30.0319 2952 USBSTOR (080d3820da6c046be82fc8b45a893e83) C:\Windows\system32\DRIVERS\USBSTOR.SYS
11:42:30.0338 2952 USBSTOR - ok
11:42:30.0356 2952 usbuhci (81fb2216d3a60d1284455d511797db3d) C:\Windows\system32\drivers\usbuhci.sys
11:42:30.0358 2952 usbuhci - ok
11:42:30.0429 2952 usbvideo (d501e12614b00a3252073101d6a1a74b) C:\Windows\system32\Drivers\usbvideo.sys
11:42:30.0446 2952 usbvideo - ok
11:42:30.0514 2952 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
11:42:30.0550 2952 vdrvroot - ok
11:42:30.0583 2952 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
11:42:30.0585 2952 vga - ok
11:42:30.0609 2952 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
11:42:30.0628 2952 VgaSave - ok
11:42:30.0669 2952 vhdmp (c82e748660f62a242b2dfac1442f22a4) C:\Windows\system32\drivers\vhdmp.sys
11:42:30.0700 2952 vhdmp - ok
11:42:30.0729 2952 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
11:42:30.0747 2952 viaide - ok
11:42:30.0764 2952 volmgr (2b1a3dae2b4e70dbba822b7a03fbd4a3) C:\Windows\system32\drivers\volmgr.sys
11:42:30.0798 2952 volmgr - ok
11:42:30.0839 2952 volmgrx (99b0cbb569ca79acaed8c91461d765fb) C:\Windows\system32\drivers\volmgrx.sys
11:42:30.0843 2952 volmgrx - ok
11:42:30.0858 2952 volsnap (58f82eed8ca24b461441f9c3e4f0bf5c) C:\Windows\system32\drivers\volsnap.sys
11:42:30.0913 2952 volsnap - ok
11:42:30.0946 2952 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\drivers\vsmraid.sys
11:42:30.0967 2952 vsmraid - ok
11:42:31.0026 2952 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys
11:42:31.0045 2952 vwifibus - ok
11:42:31.0085 2952 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
11:42:31.0087 2952 vwififlt - ok
11:42:31.0119 2952 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\drivers\wacompen.sys
11:42:31.0121 2952 WacomPen - ok
11:42:31.0175 2952 WANARP (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys
11:42:31.0198 2952 WANARP - ok
11:42:31.0207 2952 Wanarpv6 (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys
11:42:31.0208 2952 Wanarpv6 - ok
11:42:31.0278 2952 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\drivers\wd.sys
11:42:31.0282 2952 Wd - ok
11:42:31.0310 2952 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
11:42:31.0321 2952 Wdf01000 - ok
11:42:31.0367 2952 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
11:42:31.0385 2952 WfpLwf - ok
11:42:31.0405 2952 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
11:42:31.0424 2952 WIMMount - ok
11:42:31.0464 2952 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
11:42:31.0484 2952 WmiAcpi - ok
11:42:31.0520 2952 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
11:42:31.0537 2952 ws2ifsl - ok
11:42:31.0574 2952 WudfPf (7cadc74271dd6461c452c271b30bd378) C:\Windows\system32\drivers\WudfPf.sys
11:42:31.0602 2952 WudfPf - ok
11:42:31.0791 2952 WUDFRd (3b197af0fff08aa66b6b2241ca538d64) C:\Windows\system32\DRIVERS\WUDFRd.sys
11:42:31.0946 2952 WUDFRd - ok
11:42:32.0135 2952 yukonw7 (5250193ef8e173aa7491250f00eb367f) C:\Windows\system32\DRIVERS\yk62x64.sys
11:42:32.0167 2952 yukonw7 - ok
11:42:32.0221 2952 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
11:42:32.0260 2952 \Device\Harddisk0\DR0 - ok
11:42:32.0263 2952 Boot (0x1200) (602bb3187603a97b2d85cdbf3e99b5db) \Device\Harddisk0\DR0\Partition0
11:42:32.0264 2952 \Device\Harddisk0\DR0\Partition0 - ok
11:42:32.0281 2952 Boot (0x1200) (494a0d741fecf5d56ab66b0955369bb2) \Device\Harddisk0\DR0\Partition1
11:42:32.0282 2952 \Device\Harddisk0\DR0\Partition1 - ok
11:42:32.0282 2952 ============================================================
11:42:32.0282 2952 Scan finished
11:42:32.0282 2952 ============================================================
11:42:32.0329 5024 Detected object count: 0
11:42:32.0329 5024 Actual detected object count: 0

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119509
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosim o pomoc s odstranenin viru Win32/Olmarik.TDL4.tro

#19 Příspěvek od Rudy »

Pokud nic nenašel, nemělo by tam nic být.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

imprezion
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 09 říj 2011 10:09

Re: prosim o pomoc s odstranenin viru Win32/Olmarik.TDL4.tro

#20 Příspěvek od imprezion »

Dobry vecer,
Tiez si myslim ze by to uz mohlo byt OK, ale ten NOD32 mi tam stale vypisuje hlasku ze Win32/Olmarik.TDL4.trojan sa nachadza v operacnej pamati a nelze ho lecit.
Skusil som uz preinstalovat NOD32 ale objavuje sa to tam znovu.
Netusim v com by mohol byt problem ale ta hlaska tam stale je.

V kazdom pripade Vam dakujem za pomoc a keby Vas napadlo nejake riesenie tak vam budem urcite vdacny.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119509
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosim o pomoc s odstranenin viru Win32/Olmarik.TDL4.tro

#21 Příspěvek od Rudy »

Dejte ještě oba logy z GMERu: http://www.viry.cz/forum/viewtopic.php?f=29&t=62878 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

imprezion
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 09 říj 2011 10:09

Re: prosim o pomoc s odstranenin viru Win32/Olmarik.TDL4.tro

#22 Příspěvek od imprezion »

Dobry vecer,

Tak som skusil vygenerovat logy z GMERu.
Spustal som ako spravca.
Prvy sken mi nevygeneroval ziadny log.
Log z druheho skenu:

GMER 1.0.15.15641 - http://www.gmer.net
Rootkit scan 2011-10-22 19:48:19
Windows 6.1.7600
Running: gmer.exe


---- Registry - GMER 1.0.15 ----

Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\c0cb38fa1c14
Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\c0cb38fa1c14@001fe2f00dec 0x36 0x13 0xF7 0x91 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\c0cb38fa1c14@001fcd9ebef9 0xAD 0xE5 0x27 0x8C ...
Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\f07bcbe7788c
Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\c0cb38fa1c14 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\c0cb38fa1c14@001fe2f00dec 0x36 0x13 0xF7 0x91 ...
Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\c0cb38fa1c14@001fcd9ebef9 0xAD 0xE5 0x27 0x8C ...
Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\f07bcbe7788c (not active ControlSet)

---- EOF - GMER 1.0.15 ----

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119509
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosim o pomoc s odstranenin viru Win32/Olmarik.TDL4.tro

#23 Příspěvek od Rudy »

Log je OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

imprezion
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 09 říj 2011 10:09

Re: prosim o pomoc s odstranenin viru Win32/Olmarik.TDL4.tro

#24 Příspěvek od imprezion »

Dobry vecer,

Olmarika tam stale mam.
Pomoze mi preinstalovanie Windowsu?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119509
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosim o pomoc s odstranenin viru Win32/Olmarik.TDL4.tro

#25 Příspěvek od Rudy »

Takže znovu od začátku. Dejte log z RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět