Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Windows opakuje "Congratulations, you won"

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Jakol
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 01 bře 2012 20:46
Kontaktovat uživatele:

Windows opakuje "Congratulations, you won"

#1 Příspěvek od Jakol »

Dobrý den,
v posledních dnech mám problém s PC - v různých časových intervalech se opakuje "Congratulations, you won". PC se snažím pravidelně kontrolovat MBAMem, ale ten nic nenašel.
Log

Logfile of random's system information tool 1.09 (written by random/random)
Run by Kubik at 2012-03-01 20:48:41
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 21 GB (21%) free of 100 GB
Total RAM: 3071 MB (36% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:48:43, on 1.3.2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe
C:\Program Files\Logitech\Gaming Software\LWEMon.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\program files\real\realplayer\update\realsched.exe
C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Anti-Vibrate Oscar Editor\OscarEditor.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\VMware\USB\vmware-usbarbitrator.exe
C:\WINDOWS\system32\vmnat.exe
C:\WINDOWS\system32\vmnetdhcp.exe
C:\Program Files\VMware\VMware Workstation\vmware-authd.exe
C:\Program Files\VMware\VMware Workstation\vmware-hostd.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Miranda IM\miranda32.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Program Files\TrueCrypt\TrueCrypt.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Gamez\League of Legends\RADS\system\rads_user_kernel.exe
C:\Program Files\Pando Networks\Media Booster\PMB.exe
D:\Gamez\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.54\deploy\LoLLauncher.exe
D:\Gamez\League of Legends\RADS\projects\lol_air_client\releases\0.0.0.131\deploy\LolClient.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Google Talk Plugin\googletalkplugin.exe
C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kubik\Plocha\!tmp\RSIT.exe
C:\Program Files\trend micro\Kubik.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = ftp=127.0.0.1:9050;http=127.0.0.1:8118;https=127.0.0.1:8118;socks=127.0.0.1:9050
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MI1933~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Microsoft Web Test Recorder 10.0 Helper - {DDA57003-0068-4ed2-9D32-4D1EC707D94D} - C:\Program Files\Microsoft Visual Studio 10.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [Start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe /noui
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\program files\real\realplayer\update\realsched.exe" -osboot
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [OscarEditor] "C:\Program Files\Anti-Vibrate Oscar Editor\OscarEditor.exe" Minimum
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MI1933~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\vsocklib.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\vsocklib.dll
O15 - Trusted Zone: *.sony.com
O16 - DPF: {361E6B79-4A69-4376-B0F2-3D1EBEE9D7E2} (RtspVaPgCtrl Class) - http://84.242.101.157:8200/RtspVaPgDec.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{302EAAF9-53DF-4F8D-AE01-5217D3890FD6}: NameServer = 192.168.1.1,8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\..\{870E541B-6384-4014-9B45-4EDD5DE64479}: NameServer = 192.168.1.1,8.8.8.8
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Futuremark SystemInfo Service - Futuremark Corporation - C:\Program Files\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files\VMware\VMware Workstation\vmware-authd.exe
O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\WINDOWS\system32\vmnetdhcp.exe
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files\Common Files\VMware\USB\vmware-usbarbitrator.exe
O23 - Service: VMware NAT Service - VMware, Inc. - C:\WINDOWS\system32\vmnat.exe
O23 - Service: VMware Workstation Server (VMwareHostd) - Unknown owner - C:\Program Files\VMware\VMware Workstation\vmware-hostd.exe

--
End of file - 14479 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-KOLCEKUVKOMP-Kubik.job
C:\WINDOWS\tasks\AutoKMS.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-515967899-1637723038-725345543-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-515967899-1637723038-725345543-1003UA.job
C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-515967899-1637723038-725345543-1003.job
C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-515967899-1637723038-725345543-1003.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
C:\WINDOWS\tasks\WGASetup.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2011-12-15 425680]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2012-01-03 339872]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MI1933~1\Office14\URLREDIR.DLL [2010-01-16 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-10-18 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DDA57003-0068-4ed2-9D32-4D1EC707D94D}]
Microsoft Web Test Recorder 10.0 Helper - C:\Program Files\Microsoft Visual Studio 10.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll [2010-03-19 61360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-10-18 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2012-01-03 339872]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2012-01-03 339872]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2010-04-30 19523616]
"ATICustomerCare"=C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [2010-03-04 311296]
""= []
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-07-07 98304]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"Adobe Acrobat Speed Launcher"=C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [2012-01-03 36760]
"Acrobat Assistant 8.0"=C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2012-01-03 815512]
"Start WingMan Profiler"=C:\Program Files\Logitech\Gaming Software\LWEMon.exe [2010-06-14 153672]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-01-21 91520]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]
"TkBellExe"=C:\program files\real\realplayer\update\realsched.exe [2011-12-15 296056]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2012-01-03 37296]
"LogMeIn Hamachi Ui"=C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2012-02-28 1987976]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2012-01-13 460872]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"OscarEditor"=C:\Program Files\Anti-Vibrate Oscar Editor\OscarEditor.exe [2010-07-22 2636800]
"Google Update"=C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2010-07-10 136176]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0]
C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2012-01-03 815512]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Acrobat Speed Launcher]
C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [2012-01-03 36760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Acrobat Synchronizer]
C:\Program Files\Adobe\Acrobat 10.0\Acrobat\AdobeCollabSync.exe [2012-01-03 1243040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2012-01-03 37296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2009-11-15 33120]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2012-02-28 1987976]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe [2010-05-14 1479680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RivaTunerStartupDaemon]
C:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner.exe [2009-08-22 2781184]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TortoiseHgOverlayIconServer]
C:\Program Files\TortoiseHg\TortoiseHgOverlayServer.exe [2010-07-12 44448]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Vidalia]
C:\Program Files\Vidalia Bundle\Vidalia\vidalia.exe [2011-10-12 5407850]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vmware-tray]
C:\Program Files\VMware\VMware Workstation\vmware-tray.exe [2011-08-22 103536]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2011-07-08 188416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 239616]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=95
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\WPMP150\miranda32.exe"="C:\Program Files\WPMP150\miranda32.exe:*:Enabled:Miranda IM"
"C:\Program Files\Java\jre6\bin\javaw.exe"="C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\VertrigoServ\Mysql\bin\v_mysqld.exe"="C:\Program Files\VertrigoServ\Mysql\bin\v_mysqld.exe:*:Enabled:v_mysqld"
"C:\Program Files\VertrigoServ\Apache\bin\v_apache.exe"="C:\Program Files\VertrigoServ\Apache\bin\v_apache.exe:*:Enabled:Apache HTTP Server"
"C:\Program Files\Real\RealPlayer\realplay.exe"="C:\Program Files\Real\RealPlayer\realplay.exe:*:Enabled:RealPlayer"
"H:\Gamez\WoW\Launcher.exe"="H:\Gamez\WoW\Launcher.exe:*:Enabled:Launcher"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\Program Files\TortoiseHg\hgtk.exe"="C:\Program Files\TortoiseHg\hgtk.exe:*:Enabled:TortoiseHg GUI tools for Mercurial SCM"
"C:\WINDOWS\system32\ftp.exe"="C:\WINDOWS\system32\ftp.exe:*:Enabled:Program pro přenos souborů"
"H:\WoW-develop\Trinity\bin\Win32_Release\authserver.exe"="H:\WoW-develop\Trinity\bin\Win32_Release\authserver.exe:*:Enabled:authserver"
"H:\WoW-develop\Trinity\bin\Win32_Release\worldserver.exe"="H:\WoW-develop\Trinity\bin\Win32_Release\worldserver.exe:*:Enabled:worldserver"
"H:\WoW-develop-up\Trinity\bin\Win32_Release\authserver.exe"="H:\WoW-develop-up\Trinity\bin\Win32_Release\authserver.exe:*:Enabled:authserver"
"H:\WoW-develop-up\Trinity\bin\Win32_Release\worldserver.exe"="H:\WoW-develop-up\Trinity\bin\Win32_Release\worldserver.exe:*:Enabled:worldserver"
"H:\WoW-develop-up\Trinity\bin\Win32_Debug\authserver.exe"="H:\WoW-develop-up\Trinity\bin\Win32_Debug\authserver.exe:*:Enabled:authserver"
"H:\WoW-develop-up\Trinity\bin\Win32_Debug\worldserver.exe"="H:\WoW-develop-up\Trinity\bin\Win32_Debug\worldserver.exe:*:Enabled:worldserver"
"C:\Program Files\FileZilla FTP Client\filezilla.exe"="C:\Program Files\FileZilla FTP Client\filezilla.exe:*:Enabled:FileZilla FTP Client"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit"
"H:\UDK\UDK-2010-08\Binaries\Win32\UDK.exe"="H:\UDK\UDK-2010-08\Binaries\Win32\UDK.exe:*:Enabled:UDK"
"H:\UDK\UDK-2010-08\Binaries\SwarmAgent.exe"="H:\UDK\UDK-2010-08\Binaries\SwarmAgent.exe:*:Enabled:SwarmAgent"
"H:\Gamez\Battlefield Bad Company 2\BFBC2Updater.exe"="H:\Gamez\Battlefield Bad Company 2\BFBC2Updater.exe:*:Enabled:Battlefield: Bad Company™ 2"
"C:\Program Files\TeamViewer\Version4\TeamViewer.exe"="C:\Program Files\TeamViewer\Version4\TeamViewer.exe:*:Enabled:TeamViewer Remote Control Application"
"H:\UDK\UDK-2010-08\Binaries\UnrealFrontend.exe"="H:\UDK\UDK-2010-08\Binaries\UnrealFrontend.exe:*:Enabled:UnrealFrontend"
"H:\Gamez\FIFA 11\Game\fifa.exe"="H:\Gamez\FIFA 11\Game\fifa.exe:*:Enabled:FIFA 11"
"H:\Gamez\Medal of Honor Open Beta\MoHMPUpdater.exe"="H:\Gamez\Medal of Honor Open Beta\MoHMPUpdater.exe:*:Enabled:Medal of Honor™ MP Open Beta"
"H:\Gamez\Medal of Honor Open Beta\MoHMPGame.exe"="H:\Gamez\Medal of Honor Open Beta\MoHMPGame.exe:*:Enabled:Medal of Honor: Multiplayer"
"D:\Gamez\Medal of Honor\MP\mohmpgame.exe"="D:\Gamez\Medal of Honor\MP\mohmpgame.exe:*:Enabled:Medal of Honor: Multiplayer"
"C:\Program Files\TeamViewer\Version5\TeamViewer.exe"="C:\Program Files\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe"="C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"
"C:\WINDOWS\system32\dplaysvr.exe"="C:\WINDOWS\system32\dplaysvr.exe:*:Enabled:Microsoft DirectPlay Helper"
"H:\Gamez\Stronghold\Stronghold.exe"="H:\Gamez\Stronghold\Stronghold.exe:*:Enabled:Stronghold"
"C:\Program Files\mIRC\mirc.exe"="C:\Program Files\mIRC\mirc.exe:*:Enabled:mIRC"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"D:\Gamez\League of Legends\air\LolClient.exe"="D:\Gamez\League of Legends\air\LolClient.exe:*:Enabled:League of Legends Lobby"
"D:\Gamez\League of Legends\game\League of Legends.exe"="D:\Gamez\League of Legends\game\League of Legends.exe:*:Enabled:League of Legends Game Client"
"D:\Gamez\Call of Duty - Black Ops\BlackOps.exe"="D:\Gamez\Call of Duty - Black Ops\BlackOps.exe:*:Enabled:BlackOps"
"D:\Gamez\Call of Duty - Black Ops\BlackOpsMP.exe"="D:\Gamez\Call of Duty - Black Ops\BlackOpsMP.exe:*:Enabled:BlackOpsMP"
"D:\Gamez\Need for Speed Hot Pursuit\Launcher.exe"="D:\Gamez\Need for Speed Hot Pursuit\Launcher.exe:*:Enabled:Need for Speed(TM) Hot Pursuit"
"D:\Gamez\Need for Speed Hot Pursuit\NFS11.exe"="D:\Gamez\Need for Speed Hot Pursuit\NFS11.exe:*:Disabled:Need for Speed(TM) Hot Pursuit Application"
"D:\Gamez\STEAM\Steam.exe"="D:\Gamez\STEAM\Steam.exe:*:Enabled:Steam"
"D:\Gamez\Naild\Naild_x86.exe"="D:\Gamez\Naild\Naild_x86.exe:*:Enabled:Nail'd"
"D:\Gamez\STEAM\steamapps\kolcek93\insurgency\hl2.exe"="D:\Gamez\STEAM\steamapps\kolcek93\insurgency\hl2.exe:*:Enabled:hl2"
"C:\Documents and Settings\Kubik\Plocha\Projekt1.exe"="C:\Documents and Settings\Kubik\Plocha\Projekt1.exe:*:Enabled:Projekt1"
"D:\Gamez\STEAM\steamapps\common\company of heroes\RelicDownloader\RelicDownloader.exe"="D:\Gamez\STEAM\steamapps\common\company of heroes\RelicDownloader\RelicDownloader.exe:*:Enabled:Relic Patch Download Manager"
"C:\Program Files\ZyXEL\NSU\NDU.exe"="C:\Program Files\ZyXEL\NSU\NDU.exe:*:Enabled:Discover NSA devices on LAN"
"C:\Program Files\Call Graph\xulrunner\xulrunner.exe"="C:\Program Files\Call Graph\xulrunner\xulrunner.exe:*:Enabled:Call Graph Browser"
"C:\Program Files\Call Graph\CallGraph.exe"="C:\Program Files\Call Graph\CallGraph.exe:*:Enabled:Call Graph"
"D:\Gamez\Warcraft III\war3.exe"="D:\Gamez\Warcraft III\war3.exe:*:Enabled:Warcraft III"
"C:\Documents and Settings\Kubik\Plocha\Lancraft\Lancraft\lancraft.exe"="C:\Documents and Settings\Kubik\Plocha\Lancraft\Lancraft\lancraft.exe:*:Enabled:lancraft"
"D:\Gamez\Warcraft III\lancraft.exe"="D:\Gamez\Warcraft III\lancraft.exe:*:Enabled:lancraft"
"C:\Documents and Settings\Kubik\Plocha\superscan4\SuperScan4.exe"="C:\Documents and Settings\Kubik\Plocha\superscan4\SuperScan4.exe:*:Enabled:SuperScan 4 Beta 1"
"H:\Gamez\Dead Space\Dead Space.exe"="H:\Gamez\Dead Space\Dead Space.exe:*:Enabled:Dead Space ™"
"C:\Documents and Settings\All Users\Data aplikací\NexonEU\NGM\NGM.exe"="C:\Documents and Settings\All Users\Data aplikací\NexonEU\NGM\NGM.exe:*:Enabled:Nexon Game Manager"
"D:\Gamez\Combat Arms EU\CombatArms.exe"="D:\Gamez\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe"
"D:\Gamez\Combat Arms EU\Engine.exe"="D:\Gamez\Combat Arms EU\Engine.exe:*Enabled:Engine.exe"
"D:\Gamez\Combat Arms EU\NMService.exe"="D:\Gamez\Combat Arms EU\NMService.exe:*:Enabled:Nexon Messenger Core"
"D:\League of Legends\air\LolClient.exe"="D:\League of Legends\air\LolClient.exe:*:Enabled:League of Legends Lobby"
"D:\League of Legends\game\League of Legends.exe"="D:\League of Legends\game\League of Legends.exe:*:Enabled:League of Legends Game Client"
"D:\Gamez\STEAM\steamapps\common\company of heroes\help.htm"="D:\Gamez\STEAM\steamapps\common\company of heroes\help.htm:*:Enabled:Company of Heroes"
"D:\Gamez\League of Legends\lol.launcher.exe"="D:\Gamez\League of Legends\lol.launcher.exe:*:Enabled:League of Legends Launcher"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\TeamViewer\Version6\TeamViewer.exe"="C:\Program Files\TeamViewer\Version6\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe"="C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"
"C:\Program Files\Tunngle\tnglctrl.exe"="C:\Program Files\Tunngle\tnglctrl.exe:*:Enabled:Tunngle Service"
"C:\Program Files\Tunngle\tunngle.exe"="C:\Program Files\Tunngle\tunngle.exe:*:Enabled:Tunngle Client"
"C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Google Talk Plugin\googletalkplugin.exe"="C:\Documents and Settings\Kubik\Local Settings\Data aplikací\Google\Google Talk Plugin\googletalkplugin.exe:*:Enabled:Google Talk Plugin"
"C:\Program Files\VMware\VMware Workstation\vmware-authd.exe"="C:\Program Files\VMware\VMware Workstation\vmware-authd.exe:*:Enabled:VMware Authd Service"
"C:\Program Files\VMware\VMware Workstation\vmware-hostd.exe"="C:\Program Files\VMware\VMware Workstation\vmware-hostd.exe:*:Enabled:VMware Workstation Server"
"D:\Gamez\STEAM\steamapps\common\alien swarm\swarm.exe"="D:\Gamez\STEAM\steamapps\common\alien swarm\swarm.exe:*:Enabled:Alien Swarm"
"D:\Gamez\STEAM\steamapps\common\call of duty modern warfare 2\iw4sp.exe"="D:\Gamez\STEAM\steamapps\common\call of duty modern warfare 2\iw4sp.exe:*:Enabled:Call of Duty: Modern Warfare 2"
"D:\Gamez\STEAM\steamapps\common\call of duty modern warfare 2\iw4mp.exe"="D:\Gamez\STEAM\steamapps\common\call of duty modern warfare 2\iw4mp.exe:*:Enabled:Call of Duty: Modern Warfare 2 - Multiplayer"
"D:\Gamez\STEAM\steamapps\common\company of heroes\RelicCOH.exe"="D:\Gamez\STEAM\steamapps\common\company of heroes\RelicCOH.exe:*:Enabled:Company of Heroes: Tales of Valor"
"D:\Gamez\STEAM\steamapps\common\alien swarm\srcds.exe"="D:\Gamez\STEAM\steamapps\common\alien swarm\srcds.exe:*:Enabled:Alien Swarm Dedicated Server"
"C:\Program Files\Microsoft Office\Office14\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office14\ONENOTE.EXE:*:Enabled:Microsoft OneNote"
"H:\Gamez\Star Wars-The Old Republic\launcher.exe"="H:\Gamez\Star Wars-The Old Republic\launcher.exe:*:Enabled:Star Wars - The Old Republic"
"C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe"="C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher"
"H:\Gamez\Assassins Creed Revelations\ACRSP.exe"="H:\Gamez\Assassins Creed Revelations\ACRSP.exe:*:Enabled:Assassin's Creed Revelations"
"H:\Gamez\Assassins Creed Revelations\ACRMP.exe"="H:\Gamez\Assassins Creed Revelations\ACRMP.exe:*:Enabled:Assassin's Creed Revelations Multiplayer"
"H:\Gamez\Assassins Creed Revelations\AssassinsCreedRevelations.exe"="H:\Gamez\Assassins Creed Revelations\AssassinsCreedRevelations.exe:*:Enabled:Assassin's Creed Revelations Update"
"C:\Program Files\TightVNC\vncviewer.exe"="C:\Program Files\TightVNC\vncviewer.exe:*:Enabled:TightVNC Viewer"
"C:\Program Files\uTorrent-3\uTorrent.exe"="C:\Program Files\uTorrent-3\uTorrent.exe:*:Enabled:µTorrent"
"D:\Gamez\STEAM\steamapps\common\left 4 dead 2\left4dead2.exe"="D:\Gamez\STEAM\steamapps\common\left 4 dead 2\left4dead2.exe:*:Enabled:Left 4 Dead 2"
"D:\Gamez\STEAM\steamapps\common\magicka\Magicka.exe"="D:\Gamez\STEAM\steamapps\common\magicka\Magicka.exe:*:Enabled:Magicka"
"D:\Gamez\STEAM\steamapps\kolcek93\counter-strike source\hl2.exe"="D:\Gamez\STEAM\steamapps\kolcek93\counter-strike source\hl2.exe:*:Enabled:Counter-Strike: Source"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"D:\Gamez\Combat Arms EU\CombatArms.exe"="D:\Gamez\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe"
"D:\Gamez\Combat Arms EU\Engine.exe"="D:\Gamez\Combat Arms EU\Engine.exe:*Enabled:Engine.exe"
"H:\Gamez\Star Wars-The Old Republic\launcher.exe"="H:\Gamez\Star Wars-The Old Republic\launcher.exe:*:Enabled:Star Wars - The Old Republic"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"vidc.XVID"=xvidvfw.dll
"VIDC.FPS1"=frapsvid.dll
"vidc.tscc"=tsccvid.dll
"VIDC.VMnc"=vmnc.dll

======File associations======

.txt - open - notepad.exe %1

======List of files/folders created in the last 1 month======

2012-02-29 14:05:47 ----D---- C:\Program Files\LogMeIn Hamachi
2012-02-16 15:46:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2660465$
2012-02-16 15:41:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2661637$
2012-02-15 14:43:02 ----N---- C:\WINDOWS\system32\iacenc.dll
2012-02-09 15:51:03 ----D---- C:\Program Files\Creative
2012-02-09 15:51:03 ----A---- C:\WINDOWS\system32\eax.dll
2012-02-09 15:38:07 ----RA---- C:\WINDOWS\system32\MafiaSetup.exe

======List of files/folders modified in the last 1 month======

2012-03-01 20:48:43 ----D---- C:\Program Files\trend micro
2012-03-01 20:48:40 ----D---- C:\WINDOWS\system32\drivers
2012-03-01 20:41:51 ----D---- C:\WINDOWS\Prefetch
2012-03-01 20:34:09 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2012-03-01 19:00:37 ----SD---- C:\WINDOWS\Tasks
2012-03-01 19:00:30 ----D---- C:\WINDOWS\Temp
2012-03-01 19:00:16 ----D---- C:\Documents and Settings\All Users\Data aplikací\VMware
2012-03-01 17:34:33 ----D---- C:\Documents and Settings\All Users\Data aplikací\PMB Files
2012-03-01 17:01:00 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-02-29 16:51:07 ----D---- C:\Program Files\Mozilla Thunderbird
2012-02-29 14:05:57 ----SHD---- C:\WINDOWS\Installer
2012-02-29 14:05:48 ----D---- C:\WINDOWS\system32\CatRoot2
2012-02-29 14:05:47 ----AD---- C:\Program Files
2012-02-28 18:58:59 ----D---- C:\Documents and Settings\Kubik\Data aplikací\FileZilla
2012-02-27 16:04:19 ----D---- C:\WINDOWS\Microsoft.NET
2012-02-27 15:39:24 ----D---- C:\WINDOWS\system32
2012-02-27 15:39:24 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-02-27 15:39:18 ----RSD---- C:\WINDOWS\assembly
2012-02-27 15:39:14 ----D---- C:\WINDOWS\WinSxS
2012-02-25 16:34:14 ----D---- C:\WINDOWS\system32\config
2012-02-23 21:40:04 ----SD---- C:\Documents and Settings\Kubik\Data aplikací\Microsoft
2012-02-23 21:38:11 ----RSD---- C:\WINDOWS\Fonts
2012-02-23 21:38:05 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-02-23 21:37:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2012-02-16 16:17:00 ----D---- C:\WINDOWS
2012-02-16 16:14:52 ----D---- C:\Program Files\Microsoft Silverlight
2012-02-16 15:47:07 ----D---- C:\WINDOWS\Debug
2012-02-16 15:47:05 ----A---- C:\WINDOWS\system32\MRT.exe
2012-02-16 15:46:40 ----HD---- C:\WINDOWS\inf
2012-02-16 15:46:39 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-02-16 15:46:35 ----A---- C:\WINDOWS\imsins.BAK
2012-02-16 15:46:30 ----D---- C:\Program Files\Internet Explorer
2012-02-16 15:46:19 ----HD---- C:\WINDOWS\$hf_mig$
2012-02-15 18:13:34 ----D---- C:\Documents and Settings\Kubik\Data aplikací\Skype
2012-02-13 17:54:25 ----D---- C:\Documents and Settings\Kubik\Data aplikací\uTorrent
2012-02-13 17:08:12 ----D---- C:\Documents and Settings\Kubik\Data aplikací\TortoiseHg
2012-02-12 12:42:23 ----D---- C:\Documents and Settings\Kubik\Data aplikací\Vidalia
2012-02-12 12:42:23 ----D---- C:\Documents and Settings\Kubik\Data aplikací\Tor
2012-02-09 15:37:55 ----D---- C:\Documents and Settings\Kubik\Data aplikací\DAEMON Tools Lite
2012-02-04 11:09:12 ----HD---- C:\Program Files\InstallShield Installation Information

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-08-27 691696]
R0 vmci;VMware VMCI Bus Driver; C:\WINDOWS\system32\DRIVERS\vmci.sys [2011-08-08 98928]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2010-12-04 281760]
R2 hcmon;VMware hcmon; \??\C:\WINDOWS\system32\drivers\hcmon.sys []
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2010-12-04 25888]
R2 VMnetBridge;VMware Bridge Protocol; C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys [2011-08-22 33776]
R2 VMnetuserif;VMware Network Application Interface; \??\C:\WINDOWS\system32\drivers\vmnetuserif.sys []
R2 VMparport;VMware VMparport; \??\C:\WINDOWS\system32\Drivers\VMparport.sys []
R2 vmx86;VMware vmx86; \??\C:\WINDOWS\system32\Drivers\vmx86.sys []
R2 vstor2-mntapi10-shared;Vstor2 MntApi 1.0 Driver (shared); C:\WINDOWS\system32\drivers\vstor2-mntapi10-shared.sys [2011-07-08 22768]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2011-07-08 7023104]
R3 AtiHdmiService;ATI Function Driver for HDMI Service; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2008-10-31 93184]
R3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2010-02-03 26176]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2010-04-30 6032928]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2010-11-02 47360]
R3 tap0901;tap0901; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2011-06-07 26112]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle); C:\WINDOWS\system32\DRIVERS\tap0901t.sys [2009-09-16 27136]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 vmkbd;VMware kbd; \??\C:\WINDOWS\system32\drivers\VMkbd.sys []
R3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\WINDOWS\system32\DRIVERS\vmnetadapter.sys [2011-08-22 16624]
R3 WmBEnum;Logitech Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\WmBEnum.sys [2010-04-27 22856]
R3 WmFilter;Logitech Gaming HID Filter Driver; C:\WINDOWS\system32\drivers\WmFilter.sys [2010-04-27 37704]
R3 WmVirHid;Logitech Virtual Hid Device Driver; C:\WINDOWS\system32\drivers\WmVirHid.sys [2010-04-27 15048]
R3 WmXlCore;Logitech Translation Layer Driver; C:\WINDOWS\system32\drivers\WmXlCore.sys [2010-04-27 66632]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2006-11-22 250496]
R4 truecrypt;truecrypt; \??\C:\Program Files\TrueCrypt\truecrypt.sys []
S1 ATITool;ATITool Overclocking Utility; C:\WINDOWS\system32\DRIVERS\ATITool.sys [2006-11-10 24064]
S3 ai6to33m;ai6to33m; C:\WINDOWS\system32\drivers\ai6to33m.sys []
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 aqyq4j9f;aqyq4j9f; C:\WINDOWS\system32\drivers\aqyq4j9f.sys []
S3 AtiDCM;AtiDCM; \??\C:\Documents and Settings\Kubik\Local Settings\temp\atidcmxx.sys []
S3 cpuz135;cpuz135; \??\C:\WINDOWS\TEMP\cpuz135\cpuz135_x32.sys []
S3 EagleXNt;EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys []
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 MREMP50;MREMP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS []
S3 MREMP50a64;MREMP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS []
S3 MREMPR5;MREMPR5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS []
S3 MRENDIS5;MRENDIS5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS []
S3 MRESP50;MRESP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS []
S3 MRESP50a64;MRESP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS []
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-13 40320]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2010-02-26 18176]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2010-02-26 22528]
S3 npf;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2011-02-11 35088]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 RivaTuner32;RivaTuner32; \??\C:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner32.sys []
S3 teamviewervpn;TeamViewer VPN Adapter; C:\WINDOWS\system32\DRIVERS\teamviewervpn.sys [2011-03-30 25088]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2010-02-26 8192]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-13 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2010-02-26 8192]
S3 VSPerfDrv100;Performance Tools Driver 10.0; \??\C:\Program Files\Microsoft Visual Studio 10.0\Team Tools\Performance Tools\VSPerfDrv100.sys []
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 RsFx0102;RsFx0102 Driver; C:\WINDOWS\system32\DRIVERS\RsFx0102.sys [2008-07-10 242712]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2011-07-08 643072]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 1373576]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-10-03 153376]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2011-12-07 75136]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 VMAuthdService;VMware Authorization Service; C:\Program Files\VMware\VMware Workstation\vmware-authd.exe [2011-08-22 79872]
R2 VMnetDHCP;VMware DHCP Service; C:\WINDOWS\system32\vmnetdhcp.exe [2011-08-22 354416]
R2 VMUSBArbService;VMware USB Arbitration Service; C:\Program Files\Common Files\VMware\USB\vmware-usbarbitrator.exe [2011-08-21 665200]
R2 VMware NAT Service;VMware NAT Service; C:\WINDOWS\system32\vmnat.exe [2011-08-22 432752]
R2 VMwareHostd;VMware Workstation Server; C:\Program Files\VMware\VMware Workstation\vmware-hostd.exe [2011-08-22 11837440]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe [2011-01-13 129440]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-02-08 136120]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
S3 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2008-07-11 40999448]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-06-14 615936]
S3 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-07-10 98840]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; C:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2008-07-11 47128]
S4 NAUpdate;@C:\Program Files\Nero\Update\NASvc.exe,-200; C:\Program Files\Nero\Update\NASvc.exe [2010-03-25 490280]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2008-07-11 369688]
S4 SQLBrowser;SQL Server Browser; C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2008-07-10 258072]

-----------------EOF-----------------

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Windows opakuje "Congratulations, you won"

#2 Příspěvek od motji »

Dobrý večer :)
Systém je legální? :???:
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Jakol
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 01 bře 2012 20:46
Kontaktovat uživatele:

Re: Windows opakuje "Congratulations, you won"

#3 Příspěvek od Jakol »

Ne tak úplně.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Windows opakuje "Congratulations, you won"

#4 Příspěvek od motji »

V tom případě porušujete pravidla fora. Já vám dnes pomůžu, protože mě zajímá, co v pc máte, ale příště ať Vás tu nevidím :evil: :D .
Stahoval jste nějaký CRACK, KEYGEN? Odkdy to dělá?

:arrow: Stáhněte TDSSKiller http://support.kaspersky.com/downloads/ ... killer.exe
- a uložte ho na plochu.
- 2x klikněte na ikonu programu a spusťte
- dejte volbu Spustit kontrolu - pak potvrdte start sken
- pokud program najde infikovaný soubor, ukáže se Vám předvolená akce Cure, v tom případě potvrdte tlačítko Continue
- pokud bude chtít program restartovat počítač, klikněte na tlačítko Reboot Now
- pokud si restart nevyžádá, klikněte na tlačítko Report. Měl vy na Vás vyskočit log, obsah logu zkopírujte do svého topicu.
- pokud se log nezobrazí, je uložený ve Vašem kořenovém adresáři.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Jakol
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 01 bře 2012 20:46
Kontaktovat uživatele:

Re: Windows opakuje "Congratulations, you won"

#5 Příspěvek od Jakol »

PC se takto chová poslední cca 3-5 dní. Nejdřív jsem myslel, že se jedná o nějakou reklamu v prohlížeči, ale teď to vypadá, že nejspíš ne.
Žádného cracku nebo keygenu v této době si nejsem vědom.

22:04:37.0828 2756 TDSS rootkit removing tool 2.7.17.0 Feb 29 2012 14:02:24
22:04:37.0921 2756 ============================================================
22:04:37.0921 2756 Current date / time: 2012/03/01 22:04:37.0921
22:04:37.0921 2756 SystemInfo:
22:04:37.0921 2756
22:04:37.0921 2756 OS Version: 5.1.2600 ServicePack: 3.0
22:04:37.0921 2756 Product type: Workstation
22:04:37.0921 2756 ComputerName: KOLCEKUVKOMP
22:04:37.0921 2756 UserName: Kubik
22:04:37.0921 2756 Windows directory: C:\WINDOWS
22:04:37.0921 2756 System windows directory: C:\WINDOWS
22:04:37.0921 2756 Processor architecture: Intel x86
22:04:37.0921 2756 Number of processors: 2
22:04:37.0921 2756 Page size: 0x1000
22:04:37.0921 2756 Boot type: Normal boot
22:04:37.0921 2756 ============================================================
22:04:38.0906 2756 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0CADE00 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
22:04:38.0906 2756 Drive \Device\Harddisk1\DR1 - Size: 0xAEA8BD5E00 (698.64 Gb), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
22:04:38.0906 2756 Drive \Device\Harddisk2\DR5 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
22:04:39.0375 2756 \Device\Harddisk0\DR0:
22:04:39.0375 2756 MBR used
22:04:39.0375 2756 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F00, BlocksNum 0x74701AC1
22:04:39.0375 2756 \Device\Harddisk1\DR1:
22:04:39.0375 2756 MBR used
22:04:39.0375 2756 \Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0xC34F28D
22:04:39.0390 2756 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0xC34F30B, BlocksNum 0x4B1F2135
22:04:39.0390 2756 \Device\Harddisk2\DR5:
22:04:39.0390 2756 MBR used
22:04:39.0390 2756 \Device\Harddisk2\DR5\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3A380D41
22:04:39.0437 2756 Initialize success
22:04:39.0437 2756 ============================================================
22:04:52.0859 4168 ============================================================
22:04:52.0859 4168 Scan started
22:04:52.0859 4168 Mode: Manual;
22:04:52.0859 4168 ============================================================
22:04:53.0031 4168 Abiosdsk - ok
22:04:53.0031 4168 abp480n5 - ok
22:04:53.0062 4168 ACPI (4fe34f1f3126b61fcc6b2043aa8112c9) C:\WINDOWS\system32\DRIVERS\ACPI.sys
22:04:53.0062 4168 ACPI - ok
22:04:53.0109 4168 ACPIEC (afdff022a01f0b11c776f0860c3b282f) C:\WINDOWS\system32\drivers\ACPIEC.sys
22:04:53.0109 4168 ACPIEC - ok
22:04:53.0109 4168 adpu160m - ok
22:04:53.0140 4168 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
22:04:53.0140 4168 aec - ok
22:04:53.0171 4168 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
22:04:53.0171 4168 AFD - ok
22:04:53.0171 4168 Aha154x - ok
22:04:53.0187 4168 aic78u2 - ok
22:04:53.0187 4168 aic78xx - ok
22:04:53.0203 4168 AliIde - ok
22:04:53.0265 4168 Ambfilt (267fc636801edc5ab28e14036349e3be) C:\WINDOWS\system32\drivers\Ambfilt.sys
22:04:53.0265 4168 Ambfilt - ok
22:04:53.0281 4168 amsint - ok
22:04:53.0296 4168 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
22:04:53.0296 4168 Arp1394 - ok
22:04:53.0312 4168 asc - ok
22:04:53.0312 4168 asc3350p - ok
22:04:53.0328 4168 asc3550 - ok
22:04:53.0343 4168 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
22:04:53.0343 4168 AsyncMac - ok
22:04:53.0343 4168 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
22:04:53.0359 4168 atapi - ok
22:04:53.0359 4168 Atdisk - ok
22:04:53.0515 4168 ati2mtag (011388ddc5b83ef4a0b2b829735c646f) C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
22:04:53.0546 4168 ati2mtag - ok
22:04:53.0640 4168 AtiDCM - ok
22:04:53.0671 4168 AtiHdmiService (d9bc8892b9440a2551b8148c57aa039e) C:\WINDOWS\system32\drivers\AtiHdmi.sys
22:04:53.0671 4168 AtiHdmiService - ok
22:04:53.0703 4168 ATITool (0e4bb35c5305099ac82053ac992e3e0e) C:\WINDOWS\system32\DRIVERS\ATITool.sys
22:04:53.0703 4168 ATITool - ok
22:04:53.0734 4168 atksgt (f0d933b42cd0594048e4d5200ae9e417) C:\WINDOWS\system32\DRIVERS\atksgt.sys
22:04:53.0734 4168 atksgt - ok
22:04:53.0750 4168 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
22:04:53.0750 4168 Atmarpc - ok
22:04:53.0781 4168 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
22:04:53.0781 4168 audstub - ok
22:04:53.0796 4168 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
22:04:53.0796 4168 Beep - ok
22:04:53.0812 4168 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
22:04:53.0812 4168 cbidf2k - ok
22:04:53.0828 4168 cd20xrnt - ok
22:04:53.0843 4168 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
22:04:53.0843 4168 Cdaudio - ok
22:04:53.0859 4168 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
22:04:53.0859 4168 Cdfs - ok
22:04:53.0875 4168 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
22:04:53.0875 4168 Cdrom - ok
22:04:53.0875 4168 Changer - ok
22:04:53.0890 4168 CmdIde - ok
22:04:53.0906 4168 Cpqarray - ok
22:04:53.0921 4168 cpuz135 - ok
22:04:53.0921 4168 dac2w2k - ok
22:04:53.0937 4168 dac960nt - ok
22:04:53.0953 4168 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
22:04:53.0953 4168 Disk - ok
22:04:53.0968 4168 dmboot (db5fd2bf5b07dc54bfcb3664ff05bd7c) C:\WINDOWS\system32\drivers\dmboot.sys
22:04:53.0984 4168 dmboot - ok
22:04:54.0000 4168 dmio (fff1720af51171f32f1ead5cf71f2810) C:\WINDOWS\system32\drivers\dmio.sys
22:04:54.0000 4168 dmio - ok
22:04:54.0000 4168 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
22:04:54.0000 4168 dmload - ok
22:04:54.0015 4168 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
22:04:54.0015 4168 DMusic - ok
22:04:54.0031 4168 dpti2o - ok
22:04:54.0046 4168 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
22:04:54.0046 4168 drmkaud - ok
22:04:54.0046 4168 EagleXNt - ok
22:04:54.0062 4168 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
22:04:54.0062 4168 Fastfat - ok
22:04:54.0078 4168 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
22:04:54.0078 4168 Fdc - ok
22:04:54.0078 4168 Fips (ac366695a0796560aa37215ad5762aaf) C:\WINDOWS\system32\drivers\Fips.sys
22:04:54.0078 4168 Fips - ok
22:04:54.0093 4168 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
22:04:54.0109 4168 Flpydisk - ok
22:04:54.0125 4168 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
22:04:54.0125 4168 FltMgr - ok
22:04:54.0125 4168 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
22:04:54.0140 4168 Fs_Rec - ok
22:04:54.0140 4168 Ftdisk (4e664d8541db4a66b73a24257e322e1f) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
22:04:54.0140 4168 Ftdisk - ok
22:04:54.0156 4168 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
22:04:54.0156 4168 Gpc - ok
22:04:54.0171 4168 hamachi (833051c6c6c42117191935f734cfbd97) C:\WINDOWS\system32\DRIVERS\hamachi.sys
22:04:54.0171 4168 hamachi - ok
22:04:54.0187 4168 hcmon (d2a04f50b18b85fe236143399123ec0d) C:\WINDOWS\system32\drivers\hcmon.sys
22:04:54.0187 4168 hcmon - ok
22:04:54.0203 4168 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
22:04:54.0203 4168 HDAudBus - ok
22:04:54.0218 4168 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
22:04:54.0218 4168 hidusb - ok
22:04:54.0234 4168 hpn - ok
22:04:54.0265 4168 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
22:04:54.0265 4168 HTTP - ok
22:04:54.0281 4168 i2omgmt - ok
22:04:54.0281 4168 i2omp - ok
22:04:54.0296 4168 i8042prt (c528e27945367191e7bae364930b6932) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
22:04:54.0296 4168 i8042prt - ok
22:04:54.0296 4168 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
22:04:54.0296 4168 Imapi - ok
22:04:54.0312 4168 ini910u - ok
22:04:54.0437 4168 IntcAzAudAddService (7a9299f48d6f2e802e5b0e0dc508842a) C:\WINDOWS\system32\drivers\RtkHDAud.sys
22:04:54.0468 4168 IntcAzAudAddService - ok
22:04:54.0484 4168 IntelIde - ok
22:04:54.0515 4168 intelppm (27b290d632af2cf3cf40bfddb7370985) C:\WINDOWS\system32\DRIVERS\intelppm.sys
22:04:54.0515 4168 intelppm - ok
22:04:54.0531 4168 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
22:04:54.0531 4168 Ip6Fw - ok
22:04:54.0546 4168 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
22:04:54.0546 4168 IpFilterDriver - ok
22:04:54.0562 4168 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
22:04:54.0562 4168 IpInIp - ok
22:04:54.0578 4168 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
22:04:54.0578 4168 IpNat - ok
22:04:54.0609 4168 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
22:04:54.0609 4168 IPSec - ok
22:04:54.0625 4168 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
22:04:54.0625 4168 IRENUM - ok
22:04:54.0625 4168 isapnp (cc9f8a2d60aed1a51a3ac34c59b987ae) C:\WINDOWS\system32\DRIVERS\isapnp.sys
22:04:54.0625 4168 isapnp - ok
22:04:54.0640 4168 Kbdclass (1b6162fe7f66b1a71a4b70f941c4aa9b) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
22:04:54.0640 4168 Kbdclass - ok
22:04:54.0656 4168 kbdhid (86c8f23616c6c6e5b2776901c17b945b) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
22:04:54.0656 4168 kbdhid - ok
22:04:54.0671 4168 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
22:04:54.0671 4168 kmixer - ok
22:04:54.0687 4168 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
22:04:54.0687 4168 KSecDD - ok
22:04:54.0703 4168 lbrtfdc - ok
22:04:54.0718 4168 lirsgt (f8a7212d0864ef5e9185fb95e6623f4d) C:\WINDOWS\system32\DRIVERS\lirsgt.sys
22:04:54.0718 4168 lirsgt - ok
22:04:54.0750 4168 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
22:04:54.0750 4168 mnmdd - ok
22:04:54.0781 4168 Modem (44032b0c6d9954d3fd26438330b99ee7) C:\WINDOWS\system32\drivers\Modem.sys
22:04:54.0781 4168 Modem - ok
22:04:54.0828 4168 Monfilt (c7d9f9717916b34c1b00dd4834af485c) C:\WINDOWS\system32\drivers\Monfilt.sys
22:04:54.0828 4168 Monfilt - ok
22:04:54.0843 4168 Mouclass (4cb582831dbde63ce43b45d771218374) C:\WINDOWS\system32\DRIVERS\mouclass.sys
22:04:54.0843 4168 Mouclass - ok
22:04:54.0859 4168 mouhid (bb269eba740737ab749b214d568b6812) C:\WINDOWS\system32\DRIVERS\mouhid.sys
22:04:54.0859 4168 mouhid - ok
22:04:54.0859 4168 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
22:04:54.0859 4168 MountMgr - ok
22:04:54.0875 4168 mraid35x - ok
22:04:54.0906 4168 MREMP50 - ok
22:04:54.0937 4168 MREMP50a64 - ok
22:04:54.0937 4168 MREMPR5 - ok
22:04:54.0937 4168 MRENDIS5 - ok
22:04:54.0937 4168 MRESP50 - ok
22:04:54.0953 4168 MRESP50a64 - ok
22:04:54.0953 4168 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
22:04:54.0953 4168 MRxDAV - ok
22:04:54.0984 4168 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
22:04:54.0984 4168 MRxSmb - ok
22:04:55.0000 4168 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
22:04:55.0000 4168 Msfs - ok
22:04:55.0015 4168 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
22:04:55.0015 4168 MSKSSRV - ok
22:04:55.0015 4168 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
22:04:55.0015 4168 MSPCLOCK - ok
22:04:55.0031 4168 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
22:04:55.0031 4168 MSPQM - ok
22:04:55.0062 4168 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
22:04:55.0062 4168 mssmbios - ok
22:04:55.0078 4168 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
22:04:55.0078 4168 Mup - ok
22:04:55.0109 4168 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
22:04:55.0109 4168 NDIS - ok
22:04:55.0125 4168 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
22:04:55.0125 4168 NdisTapi - ok
22:04:55.0140 4168 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
22:04:55.0140 4168 Ndisuio - ok
22:04:55.0156 4168 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
22:04:55.0156 4168 NdisWan - ok
22:04:55.0171 4168 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
22:04:55.0171 4168 NDProxy - ok
22:04:55.0187 4168 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
22:04:55.0187 4168 NetBIOS - ok
22:04:55.0203 4168 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
22:04:55.0203 4168 NetBT - ok
22:04:55.0218 4168 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
22:04:55.0218 4168 NIC1394 - ok
22:04:55.0234 4168 nm (1e421a6bcf2203cc61b821ada9de878b) C:\WINDOWS\system32\DRIVERS\NMnt.sys
22:04:55.0234 4168 nm - ok
22:04:55.0265 4168 nmwcd (c3963d85b721a7f80d8a55f4e2867a3a) C:\WINDOWS\system32\drivers\ccdcmb.sys
22:04:55.0265 4168 nmwcd - ok
22:04:55.0281 4168 nmwcdc (3859c69a77793180548802dac9f34a38) C:\WINDOWS\system32\drivers\ccdcmbo.sys
22:04:55.0281 4168 nmwcdc - ok
22:04:55.0312 4168 npf (b48dc6abcd3aeff8618350ccbdc6b09a) C:\WINDOWS\system32\drivers\npf.sys
22:04:55.0312 4168 npf - ok
22:04:55.0312 4168 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
22:04:55.0312 4168 Npfs - ok
22:04:55.0328 4168 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
22:04:55.0343 4168 Ntfs - ok
22:04:55.0359 4168 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
22:04:55.0359 4168 Null - ok
22:04:55.0375 4168 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
22:04:55.0375 4168 NwlnkFlt - ok
22:04:55.0375 4168 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
22:04:55.0390 4168 NwlnkFwd - ok
22:04:55.0390 4168 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
22:04:55.0390 4168 ohci1394 - ok
22:04:55.0406 4168 Parport (46f8db73b4a53e543f8e371dc7c75bae) C:\WINDOWS\system32\DRIVERS\parport.sys
22:04:55.0406 4168 Parport - ok
22:04:55.0421 4168 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
22:04:55.0421 4168 PartMgr - ok
22:04:55.0437 4168 ParVdm (1fae19d0457176318bba4a8795656ebc) C:\WINDOWS\system32\drivers\ParVdm.sys
22:04:55.0437 4168 ParVdm - ok
22:04:55.0453 4168 pccsmcfd (fd2041e9ba03db7764b2248f02475079) C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys
22:04:55.0453 4168 pccsmcfd - ok
22:04:55.0453 4168 PCI (6ce351d149cb4befc702951e471e1730) C:\WINDOWS\system32\DRIVERS\pci.sys
22:04:55.0453 4168 PCI - ok
22:04:55.0468 4168 PCIDump - ok
22:04:55.0484 4168 PCIIde (2da4ec85e0ea7a45c6b2a05820492d5a) C:\WINDOWS\system32\DRIVERS\pciide.sys
22:04:55.0484 4168 PCIIde - ok
22:04:55.0500 4168 Pcmcia (4fc31e6c19a5ce5198b1abff94cae758) C:\WINDOWS\system32\drivers\Pcmcia.sys
22:04:55.0500 4168 Pcmcia - ok
22:04:55.0531 4168 pcouffin (5b6c11de7e839c05248ced8825470fef) C:\WINDOWS\system32\Drivers\pcouffin.sys
22:04:55.0531 4168 pcouffin - ok
22:04:55.0546 4168 PDCOMP - ok
22:04:55.0546 4168 PDFRAME - ok
22:04:55.0562 4168 PDRELI - ok
22:04:55.0562 4168 PDRFRAME - ok
22:04:55.0578 4168 perc2 - ok
22:04:55.0578 4168 perc2hib - ok
22:04:55.0609 4168 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
22:04:55.0609 4168 PptpMiniport - ok
22:04:55.0625 4168 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
22:04:55.0625 4168 PSched - ok
22:04:55.0640 4168 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
22:04:55.0640 4168 Ptilink - ok
22:04:55.0640 4168 ql1080 - ok
22:04:55.0656 4168 Ql10wnt - ok
22:04:55.0656 4168 ql12160 - ok
22:04:55.0671 4168 ql1240 - ok
22:04:55.0671 4168 ql1280 - ok
22:04:55.0687 4168 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
22:04:55.0687 4168 RasAcd - ok
22:04:55.0687 4168 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
22:04:55.0687 4168 Rasl2tp - ok
22:04:55.0703 4168 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
22:04:55.0703 4168 RasPppoe - ok
22:04:55.0718 4168 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
22:04:55.0718 4168 Raspti - ok
22:04:55.0718 4168 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
22:04:55.0718 4168 Rdbss - ok
22:04:55.0734 4168 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
22:04:55.0734 4168 RDPCDD - ok
22:04:55.0734 4168 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
22:04:55.0750 4168 rdpdr - ok
22:04:55.0765 4168 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
22:04:55.0765 4168 RDPWD - ok
22:04:55.0781 4168 redbook (611bfd220305be3a85ae876ea47d4aa5) C:\WINDOWS\system32\DRIVERS\redbook.sys
22:04:55.0781 4168 redbook - ok
22:04:55.0859 4168 RivaTuner32 (c0c8909be3ecc9df8089112bf9be954e) C:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner32.sys
22:04:55.0859 4168 RivaTuner32 - ok
22:04:55.0890 4168 RsFx0102 (fedd2710b75be3ecf078adace790c423) C:\WINDOWS\system32\DRIVERS\RsFx0102.sys
22:04:55.0906 4168 RsFx0102 - ok
22:04:55.0921 4168 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
22:04:55.0921 4168 Secdrv - ok
22:04:55.0937 4168 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
22:04:55.0937 4168 serenum - ok
22:04:55.0953 4168 Serial (b842729337c9b921615c40d3c1a1af96) C:\WINDOWS\system32\DRIVERS\serial.sys
22:04:55.0953 4168 Serial - ok
22:04:55.0984 4168 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
22:04:55.0984 4168 Sfloppy - ok
22:04:55.0984 4168 Simbad - ok
22:04:56.0000 4168 Sparrow - ok
22:04:56.0015 4168 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
22:04:56.0015 4168 splitter - ok
22:04:56.0046 4168 sptd (cdddec541bc3c96f91ecb48759673505) C:\WINDOWS\system32\Drivers\sptd.sys
22:04:56.0046 4168 Suspicious file (NoAccess): C:\WINDOWS\system32\Drivers\sptd.sys. md5: cdddec541bc3c96f91ecb48759673505
22:04:56.0046 4168 sptd ( LockedFile.Multi.Generic ) - warning
22:04:56.0046 4168 sptd - detected LockedFile.Multi.Generic (1)
22:04:56.0062 4168 sr (94610c8653635e4459316a0050d55ce7) C:\WINDOWS\system32\DRIVERS\sr.sys
22:04:56.0062 4168 sr - ok
22:04:56.0093 4168 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
22:04:56.0093 4168 Srv - ok
22:04:56.0109 4168 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
22:04:56.0109 4168 swenum - ok
22:04:56.0125 4168 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
22:04:56.0125 4168 swmidi - ok
22:04:56.0140 4168 symc810 - ok
22:04:56.0140 4168 symc8xx - ok
22:04:56.0156 4168 sym_hi - ok
22:04:56.0156 4168 sym_u3 - ok
22:04:56.0171 4168 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
22:04:56.0171 4168 sysaudio - ok
22:04:56.0187 4168 tap0901 (2d6bf6c02111f9cf9faf8acfb933dd78) C:\WINDOWS\system32\DRIVERS\tap0901.sys
22:04:56.0187 4168 tap0901 - ok
22:04:56.0218 4168 tap0901t (b7aee68d2e867cbf69b649b18fcedbbb) C:\WINDOWS\system32\DRIVERS\tap0901t.sys
22:04:56.0218 4168 tap0901t - ok
22:04:56.0250 4168 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
22:04:56.0265 4168 Tcpip - ok
22:04:56.0281 4168 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
22:04:56.0281 4168 TDPIPE - ok
22:04:56.0281 4168 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
22:04:56.0281 4168 TDTCP - ok
22:04:56.0312 4168 teamviewervpn (9101fffcfccd1a30e870a5b8a9091b10) C:\WINDOWS\system32\DRIVERS\teamviewervpn.sys
22:04:56.0312 4168 teamviewervpn - ok
22:04:56.0328 4168 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
22:04:56.0328 4168 TermDD - ok
22:04:56.0343 4168 TosIde - ok
22:04:56.0390 4168 truecrypt (be45dad1c73a3216edc8c485916f6594) C:\Program Files\TrueCrypt\truecrypt.sys
22:04:56.0390 4168 truecrypt - ok
22:04:56.0421 4168 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
22:04:56.0421 4168 Udfs - ok
22:04:56.0421 4168 ultra - ok
22:04:56.0453 4168 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
22:04:56.0453 4168 Update - ok
22:04:56.0484 4168 upperdev (0ccadc7391021376edbb8aa649d04e68) C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys
22:04:56.0484 4168 upperdev - ok
22:04:56.0515 4168 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
22:04:56.0515 4168 usbccgp - ok
22:04:56.0515 4168 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
22:04:56.0515 4168 usbehci - ok
22:04:56.0562 4168 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
22:04:56.0562 4168 usbhub - ok
22:04:56.0593 4168 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
22:04:56.0593 4168 usbprint - ok
22:04:56.0625 4168 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
22:04:56.0625 4168 usbscan - ok
22:04:56.0640 4168 usbser (1c888b000c2f9492f4b15b5b6b84873e) C:\WINDOWS\system32\drivers\usbser.sys
22:04:56.0640 4168 usbser - ok
22:04:56.0656 4168 UsbserFilt (68b4f83cccf70a2ff32ee142c234332a) C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys
22:04:56.0656 4168 UsbserFilt - ok
22:04:56.0671 4168 usbstor (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
22:04:56.0671 4168 usbstor - ok
22:04:56.0687 4168 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
22:04:56.0687 4168 usbuhci - ok
22:04:56.0703 4168 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
22:04:56.0703 4168 VgaSave - ok
22:04:56.0703 4168 ViaIde - ok
22:04:56.0734 4168 vmci (15759158f7531853616b2b43af962fcb) C:\WINDOWS\system32\DRIVERS\vmci.sys
22:04:56.0734 4168 vmci - ok
22:04:56.0734 4168 vmkbd (a9e4854540b6ac08b223acc421f8723c) C:\WINDOWS\system32\drivers\VMkbd.sys
22:04:56.0734 4168 vmkbd - ok
22:04:56.0750 4168 VMnetAdapter (1afa4af55cbea579a4bbe4f90967f720) C:\WINDOWS\system32\DRIVERS\vmnetadapter.sys
22:04:56.0750 4168 VMnetAdapter - ok
22:04:56.0781 4168 VMnetBridge (de48c78e25d2094bfb311555727203cf) C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys
22:04:56.0781 4168 VMnetBridge - ok
22:04:56.0781 4168 VMnetuserif (ebf3595c309bb22189c38667841a30b8) C:\WINDOWS\system32\drivers\vmnetuserif.sys
22:04:56.0796 4168 VMnetuserif - ok
22:04:56.0828 4168 VMparport (05bdedb7e427bd094bf7f6aebf118f83) C:\WINDOWS\system32\Drivers\VMparport.sys
22:04:56.0828 4168 VMparport - ok
22:04:56.0859 4168 vmx86 (60ae466e6db8c9f66d7040b299f7cab2) C:\WINDOWS\system32\Drivers\vmx86.sys
22:04:56.0859 4168 vmx86 - ok
22:04:56.0875 4168 VolSnap (28a4b296b47782173c346e376cb374d1) C:\WINDOWS\system32\drivers\VolSnap.sys
22:04:56.0875 4168 VolSnap - ok
22:04:56.0984 4168 VSPerfDrv100 (5a2ddc5411a092bedb1a07755e087784) C:\Program Files\Microsoft Visual Studio 10.0\Team Tools\Performance Tools\VSPerfDrv100.sys
22:04:56.0984 4168 VSPerfDrv100 - ok
22:04:57.0015 4168 vstor2-mntapi10-shared (f849eb84b1e5208ab4eb01e1712e4a90) C:\WINDOWS\system32\drivers\vstor2-mntapi10-shared.sys
22:04:57.0031 4168 vstor2-mntapi10-shared - ok
22:04:57.0046 4168 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
22:04:57.0046 4168 Wanarp - ok
22:04:57.0062 4168 Wdf01000 (d918617b46457b9ac28027722e30f647) C:\WINDOWS\system32\Drivers\wdf01000.sys
22:04:57.0078 4168 Wdf01000 - ok
22:04:57.0078 4168 WDICA - ok
22:04:57.0093 4168 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
22:04:57.0093 4168 wdmaud - ok
22:04:57.0125 4168 WmBEnum (5d410936831f7fb58eff941eac3f6d3d) C:\WINDOWS\system32\drivers\WmBEnum.sys
22:04:57.0125 4168 WmBEnum - ok
22:04:57.0140 4168 WmFilter (7a13cfde92956ca61a0927d766c5ad4f) C:\WINDOWS\system32\drivers\WmFilter.sys
22:04:57.0140 4168 WmFilter - ok
22:04:57.0171 4168 WmVirHid (6f04646bc690f8bbfc344be32a60796d) C:\WINDOWS\system32\drivers\WmVirHid.sys
22:04:57.0171 4168 WmVirHid - ok
22:04:57.0187 4168 WmXlCore (1d6ca43d562333f4dfb40bcef2453f3a) C:\WINDOWS\system32\drivers\WmXlCore.sys
22:04:57.0187 4168 WmXlCore - ok
22:04:57.0203 4168 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
22:04:57.0203 4168 WS2IFSL - ok
22:04:57.0234 4168 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
22:04:57.0234 4168 WudfPf - ok
22:04:57.0250 4168 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
22:04:57.0250 4168 WudfRd - ok
22:04:57.0281 4168 yukonwxp (a5d4eae27e68625296d685a786897491) C:\WINDOWS\system32\DRIVERS\yk51x86.sys
22:04:57.0281 4168 yukonwxp - ok
22:04:57.0296 4168 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR0
22:04:57.0312 4168 \Device\Harddisk0\DR0 - ok
22:04:57.0312 4168 MBR (0x1B8) (413fc2a0c716421b3158746d63736515) \Device\Harddisk1\DR1
22:04:57.0484 4168 \Device\Harddisk1\DR1 - ok
22:04:57.0515 4168 MBR (0x1B8) (988d3c46cbd13ec7f482b833c55264c8) \Device\Harddisk2\DR5
22:04:57.0515 4168 \Device\Harddisk2\DR5 - ok
22:04:57.0515 4168 Boot (0x1200) (d67ca026dbe012e03ba821a90137e3d5) \Device\Harddisk0\DR0\Partition0
22:04:57.0515 4168 \Device\Harddisk0\DR0\Partition0 - ok
22:04:57.0515 4168 Boot (0x1200) (c28f7f63ae35e5c4cbdba3a2c2e77def) \Device\Harddisk1\DR1\Partition0
22:04:57.0515 4168 \Device\Harddisk1\DR1\Partition0 - ok
22:04:57.0531 4168 Boot (0x1200) (30828e20c0ae48162ccaaff640f1ab13) \Device\Harddisk1\DR1\Partition1
22:04:57.0531 4168 \Device\Harddisk1\DR1\Partition1 - ok
22:04:57.0546 4168 Boot (0x1200) (b78e5c146ce20817a11186419301d333) \Device\Harddisk2\DR5\Partition0
22:04:57.0546 4168 \Device\Harddisk2\DR5\Partition0 - ok
22:04:57.0546 4168 ============================================================
22:04:57.0546 4168 Scan finished
22:04:57.0546 4168 ============================================================
22:04:57.0546 5940 Detected object count: 1
22:04:57.0546 5940 Actual detected object count: 1
22:05:10.0343 5940 sptd ( LockedFile.Multi.Generic ) - skipped by user
22:05:10.0343 5940 sptd ( LockedFile.Multi.Generic ) - User select action: Skip
22:05:46.0140 1104 ============================================================
22:05:46.0140 1104 Scan started
22:05:46.0140 1104 Mode: Manual;
22:05:46.0140 1104 ============================================================
22:05:47.0109 1104 Abiosdsk - ok
22:05:47.0125 1104 abp480n5 - ok
22:05:47.0156 1104 ACPI (4fe34f1f3126b61fcc6b2043aa8112c9) C:\WINDOWS\system32\DRIVERS\ACPI.sys
22:05:47.0156 1104 ACPI - ok
22:05:47.0187 1104 ACPIEC (afdff022a01f0b11c776f0860c3b282f) C:\WINDOWS\system32\drivers\ACPIEC.sys
22:05:47.0187 1104 ACPIEC - ok
22:05:47.0187 1104 adpu160m - ok
22:05:47.0218 1104 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
22:05:47.0218 1104 aec - ok
22:05:47.0234 1104 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
22:05:47.0234 1104 AFD - ok
22:05:47.0250 1104 Aha154x - ok
22:05:47.0250 1104 aic78u2 - ok
22:05:47.0265 1104 aic78xx - ok
22:05:47.0265 1104 AliIde - ok
22:05:47.0328 1104 Ambfilt (267fc636801edc5ab28e14036349e3be) C:\WINDOWS\system32\drivers\Ambfilt.sys
22:05:47.0328 1104 Ambfilt - ok
22:05:47.0343 1104 amsint - ok
22:05:47.0359 1104 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
22:05:47.0359 1104 Arp1394 - ok
22:05:47.0375 1104 asc - ok
22:05:47.0375 1104 asc3350p - ok
22:05:47.0375 1104 asc3550 - ok
22:05:47.0421 1104 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
22:05:47.0421 1104 AsyncMac - ok
22:05:47.0421 1104 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
22:05:47.0437 1104 atapi - ok
22:05:47.0437 1104 Atdisk - ok
22:05:47.0593 1104 ati2mtag (011388ddc5b83ef4a0b2b829735c646f) C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
22:05:47.0625 1104 ati2mtag - ok
22:05:47.0718 1104 AtiDCM - ok
22:05:47.0750 1104 AtiHdmiService (d9bc8892b9440a2551b8148c57aa039e) C:\WINDOWS\system32\drivers\AtiHdmi.sys
22:05:47.0750 1104 AtiHdmiService - ok
22:05:47.0781 1104 ATITool (0e4bb35c5305099ac82053ac992e3e0e) C:\WINDOWS\system32\DRIVERS\ATITool.sys
22:05:47.0781 1104 ATITool - ok
22:05:47.0812 1104 atksgt (f0d933b42cd0594048e4d5200ae9e417) C:\WINDOWS\system32\DRIVERS\atksgt.sys
22:05:47.0812 1104 atksgt - ok
22:05:47.0828 1104 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
22:05:47.0828 1104 Atmarpc - ok
22:05:47.0859 1104 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
22:05:47.0859 1104 audstub - ok
22:05:47.0875 1104 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
22:05:47.0875 1104 Beep - ok
22:05:47.0890 1104 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
22:05:47.0890 1104 cbidf2k - ok
22:05:47.0906 1104 cd20xrnt - ok
22:05:47.0937 1104 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
22:05:47.0937 1104 Cdaudio - ok
22:05:47.0953 1104 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
22:05:47.0953 1104 Cdfs - ok
22:05:47.0968 1104 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
22:05:47.0968 1104 Cdrom - ok
22:05:47.0984 1104 Changer - ok
22:05:48.0000 1104 CmdIde - ok
22:05:48.0000 1104 Cpqarray - ok
22:05:48.0015 1104 cpuz135 - ok
22:05:48.0031 1104 dac2w2k - ok
22:05:48.0031 1104 dac960nt - ok
22:05:48.0062 1104 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
22:05:48.0062 1104 Disk - ok
22:05:48.0093 1104 dmboot (db5fd2bf5b07dc54bfcb3664ff05bd7c) C:\WINDOWS\system32\drivers\dmboot.sys
22:05:48.0093 1104 dmboot - ok
22:05:48.0109 1104 dmio (fff1720af51171f32f1ead5cf71f2810) C:\WINDOWS\system32\drivers\dmio.sys
22:05:48.0125 1104 dmio - ok
22:05:48.0125 1104 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
22:05:48.0125 1104 dmload - ok
22:05:48.0156 1104 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
22:05:48.0156 1104 DMusic - ok
22:05:48.0156 1104 dpti2o - ok
22:05:48.0171 1104 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
22:05:48.0171 1104 drmkaud - ok
22:05:48.0171 1104 EagleXNt - ok
22:05:48.0203 1104 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
22:05:48.0203 1104 Fastfat - ok
22:05:48.0203 1104 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
22:05:48.0203 1104 Fdc - ok
22:05:48.0218 1104 Fips (ac366695a0796560aa37215ad5762aaf) C:\WINDOWS\system32\drivers\Fips.sys
22:05:48.0218 1104 Fips - ok
22:05:48.0234 1104 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
22:05:48.0234 1104 Flpydisk - ok
22:05:48.0265 1104 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
22:05:48.0265 1104 FltMgr - ok
22:05:48.0265 1104 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
22:05:48.0265 1104 Fs_Rec - ok
22:05:48.0296 1104 Ftdisk (4e664d8541db4a66b73a24257e322e1f) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
22:05:48.0296 1104 Ftdisk - ok
22:05:48.0296 1104 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
22:05:48.0312 1104 Gpc - ok
22:05:48.0343 1104 hamachi (833051c6c6c42117191935f734cfbd97) C:\WINDOWS\system32\DRIVERS\hamachi.sys
22:05:48.0343 1104 hamachi - ok
22:05:48.0375 1104 hcmon (d2a04f50b18b85fe236143399123ec0d) C:\WINDOWS\system32\drivers\hcmon.sys
22:05:48.0375 1104 hcmon - ok
22:05:48.0390 1104 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
22:05:48.0390 1104 HDAudBus - ok
22:05:48.0406 1104 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
22:05:48.0406 1104 hidusb - ok
22:05:48.0421 1104 hpn - ok
22:05:48.0453 1104 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
22:05:48.0453 1104 HTTP - ok
22:05:48.0453 1104 i2omgmt - ok
22:05:48.0468 1104 i2omp - ok
22:05:48.0484 1104 i8042prt (c528e27945367191e7bae364930b6932) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
22:05:48.0484 1104 i8042prt - ok
22:05:48.0484 1104 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
22:05:48.0484 1104 Imapi - ok
22:05:48.0500 1104 ini910u - ok
22:05:48.0625 1104 IntcAzAudAddService (7a9299f48d6f2e802e5b0e0dc508842a) C:\WINDOWS\system32\drivers\RtkHDAud.sys
22:05:48.0656 1104 IntcAzAudAddService - ok
22:05:48.0671 1104 IntelIde - ok
22:05:48.0703 1104 intelppm (27b290d632af2cf3cf40bfddb7370985) C:\WINDOWS\system32\DRIVERS\intelppm.sys
22:05:48.0703 1104 intelppm - ok
22:05:48.0703 1104 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
22:05:48.0703 1104 Ip6Fw - ok
22:05:48.0718 1104 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
22:05:48.0734 1104 IpFilterDriver - ok
22:05:48.0734 1104 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
22:05:48.0734 1104 IpInIp - ok
22:05:48.0765 1104 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
22:05:48.0765 1104 IpNat - ok
22:05:48.0765 1104 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
22:05:48.0765 1104 IPSec - ok
22:05:48.0781 1104 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
22:05:48.0781 1104 IRENUM - ok
22:05:48.0796 1104 isapnp (cc9f8a2d60aed1a51a3ac34c59b987ae) C:\WINDOWS\system32\DRIVERS\isapnp.sys
22:05:48.0796 1104 isapnp - ok
22:05:48.0796 1104 Kbdclass (1b6162fe7f66b1a71a4b70f941c4aa9b) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
22:05:48.0796 1104 Kbdclass - ok
22:05:48.0812 1104 kbdhid (86c8f23616c6c6e5b2776901c17b945b) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
22:05:48.0812 1104 kbdhid - ok
22:05:48.0843 1104 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
22:05:48.0843 1104 kmixer - ok
22:05:48.0843 1104 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
22:05:48.0843 1104 KSecDD - ok
22:05:48.0859 1104 lbrtfdc - ok
22:05:48.0890 1104 lirsgt (f8a7212d0864ef5e9185fb95e6623f4d) C:\WINDOWS\system32\DRIVERS\lirsgt.sys
22:05:48.0890 1104 lirsgt - ok
22:05:48.0921 1104 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
22:05:48.0921 1104 mnmdd - ok
22:05:48.0937 1104 Modem (44032b0c6d9954d3fd26438330b99ee7) C:\WINDOWS\system32\drivers\Modem.sys
22:05:48.0937 1104 Modem - ok
22:05:48.0984 1104 Monfilt (c7d9f9717916b34c1b00dd4834af485c) C:\WINDOWS\system32\drivers\Monfilt.sys
22:05:49.0000 1104 Monfilt - ok
22:05:49.0000 1104 Mouclass (4cb582831dbde63ce43b45d771218374) C:\WINDOWS\system32\DRIVERS\mouclass.sys
22:05:49.0000 1104 Mouclass - ok
22:05:49.0015 1104 mouhid (bb269eba740737ab749b214d568b6812) C:\WINDOWS\system32\DRIVERS\mouhid.sys
22:05:49.0015 1104 mouhid - ok
22:05:49.0031 1104 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
22:05:49.0031 1104 MountMgr - ok
22:05:49.0031 1104 mraid35x - ok
22:05:49.0062 1104 MREMP50 - ok
22:05:49.0062 1104 MREMP50a64 - ok
22:05:49.0078 1104 MREMPR5 - ok
22:05:49.0078 1104 MRENDIS5 - ok
22:05:49.0078 1104 MRESP50 - ok
22:05:49.0078 1104 MRESP50a64 - ok
22:05:49.0093 1104 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
22:05:49.0093 1104 MRxDAV - ok
22:05:49.0125 1104 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
22:05:49.0125 1104 MRxSmb - ok
22:05:49.0140 1104 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
22:05:49.0140 1104 Msfs - ok
22:05:49.0140 1104 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
22:05:49.0140 1104 MSKSSRV - ok
22:05:49.0156 1104 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
22:05:49.0156 1104 MSPCLOCK - ok
22:05:49.0453 1104 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
22:05:49.0453 1104 MSPQM - ok
22:05:49.0468 1104 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
22:05:49.0468 1104 mssmbios - ok
22:05:49.0484 1104 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
22:05:49.0484 1104 Mup - ok
22:05:49.0515 1104 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
22:05:49.0515 1104 NDIS - ok
22:05:49.0531 1104 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
22:05:49.0531 1104 NdisTapi - ok
22:05:49.0546 1104 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
22:05:49.0546 1104 Ndisuio - ok
22:05:49.0546 1104 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
22:05:49.0546 1104 NdisWan - ok
22:05:49.0593 1104 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
22:05:49.0593 1104 NDProxy - ok
22:05:49.0593 1104 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
22:05:49.0593 1104 NetBIOS - ok
22:05:49.0625 1104 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
22:05:49.0625 1104 NetBT - ok
22:05:49.0640 1104 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
22:05:49.0640 1104 NIC1394 - ok
22:05:49.0656 1104 nm (1e421a6bcf2203cc61b821ada9de878b) C:\WINDOWS\system32\DRIVERS\NMnt.sys
22:05:49.0656 1104 nm - ok
22:05:49.0687 1104 nmwcd (c3963d85b721a7f80d8a55f4e2867a3a) C:\WINDOWS\system32\drivers\ccdcmb.sys
22:05:49.0687 1104 nmwcd - ok
22:05:49.0703 1104 nmwcdc (3859c69a77793180548802dac9f34a38) C:\WINDOWS\system32\drivers\ccdcmbo.sys
22:05:49.0703 1104 nmwcdc - ok
22:05:49.0718 1104 npf (b48dc6abcd3aeff8618350ccbdc6b09a) C:\WINDOWS\system32\drivers\npf.sys
22:05:49.0718 1104 npf - ok
22:05:49.0734 1104 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
22:05:49.0734 1104 Npfs - ok
22:05:49.0750 1104 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
22:05:49.0750 1104 Ntfs - ok
22:05:49.0781 1104 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
22:05:49.0781 1104 Null - ok
22:05:49.0812 1104 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
22:05:49.0812 1104 NwlnkFlt - ok
22:05:49.0812 1104 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
22:05:49.0812 1104 NwlnkFwd - ok
22:05:49.0828 1104 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
22:05:49.0828 1104 ohci1394 - ok
22:05:49.0843 1104 Parport (46f8db73b4a53e543f8e371dc7c75bae) C:\WINDOWS\system32\DRIVERS\parport.sys
22:05:49.0843 1104 Parport - ok
22:05:49.0859 1104 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
22:05:49.0859 1104 PartMgr - ok
22:05:49.0859 1104 ParVdm (1fae19d0457176318bba4a8795656ebc) C:\WINDOWS\system32\drivers\ParVdm.sys
22:05:49.0875 1104 ParVdm - ok
22:05:49.0890 1104 pccsmcfd (fd2041e9ba03db7764b2248f02475079) C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys
22:05:49.0890 1104 pccsmcfd - ok
22:05:49.0890 1104 PCI (6ce351d149cb4befc702951e471e1730) C:\WINDOWS\system32\DRIVERS\pci.sys
22:05:49.0890 1104 PCI - ok
22:05:49.0906 1104 PCIDump - ok
22:05:49.0921 1104 PCIIde (2da4ec85e0ea7a45c6b2a05820492d5a) C:\WINDOWS\system32\DRIVERS\pciide.sys
22:05:49.0921 1104 PCIIde - ok
22:05:49.0937 1104 Pcmcia (4fc31e6c19a5ce5198b1abff94cae758) C:\WINDOWS\system32\drivers\Pcmcia.sys
22:05:49.0937 1104 Pcmcia - ok
22:05:49.0968 1104 pcouffin (5b6c11de7e839c05248ced8825470fef) C:\WINDOWS\system32\Drivers\pcouffin.sys
22:05:49.0968 1104 pcouffin - ok
22:05:49.0984 1104 PDCOMP - ok
22:05:49.0984 1104 PDFRAME - ok
22:05:50.0000 1104 PDRELI - ok
22:05:50.0000 1104 PDRFRAME - ok
22:05:50.0015 1104 perc2 - ok
22:05:50.0015 1104 perc2hib - ok
22:05:50.0046 1104 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
22:05:50.0046 1104 PptpMiniport - ok
22:05:50.0046 1104 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
22:05:50.0046 1104 PSched - ok
22:05:50.0078 1104 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
22:05:50.0078 1104 Ptilink - ok
22:05:50.0093 1104 ql1080 - ok
22:05:50.0093 1104 Ql10wnt - ok
22:05:50.0109 1104 ql12160 - ok
22:05:50.0109 1104 ql1240 - ok
22:05:50.0109 1104 ql1280 - ok
22:05:50.0125 1104 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
22:05:50.0125 1104 RasAcd - ok
22:05:50.0140 1104 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
22:05:50.0140 1104 Rasl2tp - ok
22:05:50.0156 1104 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
22:05:50.0156 1104 RasPppoe - ok
22:05:50.0156 1104 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
22:05:50.0156 1104 Raspti - ok
22:05:50.0171 1104 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
22:05:50.0171 1104 Rdbss - ok
22:05:50.0171 1104 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
22:05:50.0171 1104 RDPCDD - ok
22:05:50.0187 1104 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
22:05:50.0187 1104 rdpdr - ok
22:05:50.0218 1104 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
22:05:50.0218 1104 RDPWD - ok
22:05:50.0218 1104 redbook (611bfd220305be3a85ae876ea47d4aa5) C:\WINDOWS\system32\DRIVERS\redbook.sys
22:05:50.0218 1104 redbook - ok
22:05:50.0296 1104 RivaTuner32 (c0c8909be3ecc9df8089112bf9be954e) C:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner32.sys
22:05:50.0312 1104 RivaTuner32 - ok
22:05:50.0343 1104 RsFx0102 (fedd2710b75be3ecf078adace790c423) C:\WINDOWS\system32\DRIVERS\RsFx0102.sys
22:05:50.0343 1104 RsFx0102 - ok
22:05:50.0375 1104 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
22:05:50.0375 1104 Secdrv - ok
22:05:50.0390 1104 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
22:05:50.0390 1104 serenum - ok
22:05:50.0406 1104 Serial (b842729337c9b921615c40d3c1a1af96) C:\WINDOWS\system32\DRIVERS\serial.sys
22:05:50.0406 1104 Serial - ok
22:05:50.0421 1104 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
22:05:50.0421 1104 Sfloppy - ok
22:05:50.0453 1104 Simbad - ok
22:05:50.0453 1104 Sparrow - ok
22:05:50.0468 1104 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
22:05:50.0468 1104 splitter - ok
22:05:50.0500 1104 sptd (cdddec541bc3c96f91ecb48759673505) C:\WINDOWS\system32\Drivers\sptd.sys
22:05:50.0500 1104 Suspicious file (NoAccess): C:\WINDOWS\system32\Drivers\sptd.sys. md5: cdddec541bc3c96f91ecb48759673505
22:05:50.0500 1104 sptd ( LockedFile.Multi.Generic ) - warning
22:05:50.0500 1104 sptd - detected LockedFile.Multi.Generic (1)
22:05:50.0515 1104 sr (94610c8653635e4459316a0050d55ce7) C:\WINDOWS\system32\DRIVERS\sr.sys
22:05:50.0515 1104 sr - ok
22:05:50.0546 1104 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
22:05:50.0546 1104 Srv - ok
22:05:50.0546 1104 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
22:05:50.0546 1104 swenum - ok
22:05:50.0578 1104 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
22:05:50.0578 1104 swmidi - ok
22:05:50.0578 1104 symc810 - ok
22:05:50.0593 1104 symc8xx - ok
22:05:50.0593 1104 sym_hi - ok
22:05:50.0609 1104 sym_u3 - ok
22:05:50.0625 1104 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
22:05:50.0625 1104 sysaudio - ok
22:05:50.0656 1104 tap0901 (2d6bf6c02111f9cf9faf8acfb933dd78) C:\WINDOWS\system32\DRIVERS\tap0901.sys
22:05:50.0656 1104 tap0901 - ok
22:05:50.0671 1104 tap0901t (b7aee68d2e867cbf69b649b18fcedbbb) C:\WINDOWS\system32\DRIVERS\tap0901t.sys
22:05:50.0671 1104 tap0901t - ok
22:05:50.0718 1104 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
22:05:50.0718 1104 Tcpip - ok
22:05:50.0734 1104 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
22:05:50.0734 1104 TDPIPE - ok
22:05:50.0750 1104 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
22:05:50.0750 1104 TDTCP - ok
22:05:50.0765 1104 teamviewervpn (9101fffcfccd1a30e870a5b8a9091b10) C:\WINDOWS\system32\DRIVERS\teamviewervpn.sys
22:05:50.0765 1104 teamviewervpn - ok
22:05:50.0781 1104 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
22:05:50.0781 1104 TermDD - ok
22:05:50.0796 1104 TosIde - ok
22:05:50.0843 1104 truecrypt (be45dad1c73a3216edc8c485916f6594) C:\Program Files\TrueCrypt\truecrypt.sys
22:05:50.0843 1104 truecrypt - ok
22:05:50.0859 1104 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
22:05:50.0859 1104 Udfs - ok
22:05:50.0875 1104 ultra - ok
22:05:50.0890 1104 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
22:05:50.0890 1104 Update - ok
22:05:50.0921 1104 upperdev (0ccadc7391021376edbb8aa649d04e68) C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys
22:05:50.0921 1104 upperdev - ok
22:05:50.0953 1104 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
22:05:50.0953 1104 usbccgp - ok
22:05:50.0953 1104 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
22:05:50.0953 1104 usbehci - ok
22:05:50.0968 1104 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
22:05:50.0968 1104 usbhub - ok
22:05:50.0984 1104 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
22:05:50.0984 1104 usbprint - ok
22:05:51.0015 1104 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
22:05:51.0015 1104 usbscan - ok
22:05:51.0031 1104 usbser (1c888b000c2f9492f4b15b5b6b84873e) C:\WINDOWS\system32\drivers\usbser.sys
22:05:51.0031 1104 usbser - ok
22:05:51.0046 1104 UsbserFilt (68b4f83cccf70a2ff32ee142c234332a) C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys
22:05:51.0046 1104 UsbserFilt - ok
22:05:51.0062 1104 usbstor (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
22:05:51.0062 1104 usbstor - ok
22:05:51.0078 1104 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
22:05:51.0078 1104 usbuhci - ok
22:05:51.0078 1104 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
22:05:51.0078 1104 VgaSave - ok
22:05:51.0093 1104 ViaIde - ok
22:05:51.0125 1104 vmci (15759158f7531853616b2b43af962fcb) C:\WINDOWS\system32\DRIVERS\vmci.sys
22:05:51.0125 1104 vmci - ok
22:05:51.0140 1104 vmkbd (a9e4854540b6ac08b223acc421f8723c) C:\WINDOWS\system32\drivers\VMkbd.sys
22:05:51.0140 1104 vmkbd - ok
22:05:51.0140 1104 VMnetAdapter (1afa4af55cbea579a4bbe4f90967f720) C:\WINDOWS\system32\DRIVERS\vmnetadapter.sys
22:05:51.0140 1104 VMnetAdapter - ok
22:05:51.0156 1104 VMnetBridge (de48c78e25d2094bfb311555727203cf) C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys
22:05:51.0156 1104 VMnetBridge - ok
22:05:51.0171 1104 VMnetuserif (ebf3595c309bb22189c38667841a30b8) C:\WINDOWS\system32\drivers\vmnetuserif.sys
22:05:51.0171 1104 VMnetuserif - ok
22:05:51.0203 1104 VMparport (05bdedb7e427bd094bf7f6aebf118f83) C:\WINDOWS\system32\Drivers\VMparport.sys
22:05:51.0203 1104 VMparport - ok
22:05:51.0234 1104 vmx86 (60ae466e6db8c9f66d7040b299f7cab2) C:\WINDOWS\system32\Drivers\vmx86.sys
22:05:51.0234 1104 vmx86 - ok
22:05:51.0250 1104 VolSnap (28a4b296b47782173c346e376cb374d1) C:\WINDOWS\system32\drivers\VolSnap.sys
22:05:51.0250 1104 VolSnap - ok
22:05:51.0375 1104 VSPerfDrv100 (5a2ddc5411a092bedb1a07755e087784) C:\Program Files\Microsoft Visual Studio 10.0\Team Tools\Performance Tools\VSPerfDrv100.sys
22:05:51.0375 1104 VSPerfDrv100 - ok
22:05:51.0421 1104 vstor2-mntapi10-shared (f849eb84b1e5208ab4eb01e1712e4a90) C:\WINDOWS\system32\drivers\vstor2-mntapi10-shared.sys
22:05:51.0421 1104 vstor2-mntapi10-shared - ok
22:05:51.0437 1104 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
22:05:51.0437 1104 Wanarp - ok
22:05:51.0484 1104 Wdf01000 (d918617b46457b9ac28027722e30f647) C:\WINDOWS\system32\Drivers\wdf01000.sys
22:05:51.0484 1104 Wdf01000 - ok
22:05:51.0500 1104 WDICA - ok
22:05:51.0531 1104 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
22:05:51.0531 1104 wdmaud - ok
22:05:51.0593 1104 WmBEnum (5d410936831f7fb58eff941eac3f6d3d) C:\WINDOWS\system32\drivers\WmBEnum.sys
22:05:51.0593 1104 WmBEnum - ok
22:05:51.0640 1104 WmFilter (7a13cfde92956ca61a0927d766c5ad4f) C:\WINDOWS\system32\drivers\WmFilter.sys
22:05:51.0640 1104 WmFilter - ok
22:05:51.0687 1104 WmVirHid (6f04646bc690f8bbfc344be32a60796d) C:\WINDOWS\system32\drivers\WmVirHid.sys
22:05:51.0687 1104 WmVirHid - ok
22:05:51.0687 1104 WmXlCore (1d6ca43d562333f4dfb40bcef2453f3a) C:\WINDOWS\system32\drivers\WmXlCore.sys
22:05:51.0687 1104 WmXlCore - ok
22:05:51.0718 1104 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
22:05:51.0718 1104 WS2IFSL - ok
22:05:51.0750 1104 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
22:05:51.0750 1104 WudfPf - ok
22:05:51.0765 1104 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
22:05:51.0765 1104 WudfRd - ok
22:05:51.0796 1104 yukonwxp (a5d4eae27e68625296d685a786897491) C:\WINDOWS\system32\DRIVERS\yk51x86.sys
22:05:51.0796 1104 yukonwxp - ok
22:05:51.0843 1104 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR0
22:05:51.0843 1104 \Device\Harddisk0\DR0 - ok
22:05:51.0859 1104 MBR (0x1B8) (413fc2a0c716421b3158746d63736515) \Device\Harddisk1\DR1
22:05:52.0062 1104 \Device\Harddisk1\DR1 - ok
22:05:52.0093 1104 MBR (0x1B8) (988d3c46cbd13ec7f482b833c55264c8) \Device\Harddisk2\DR5
22:05:52.0093 1104 \Device\Harddisk2\DR5 - ok
22:05:52.0093 1104 Boot (0x1200) (d67ca026dbe012e03ba821a90137e3d5) \Device\Harddisk0\DR0\Partition0
22:05:52.0093 1104 \Device\Harddisk0\DR0\Partition0 - ok
22:05:52.0093 1104 Boot (0x1200) (c28f7f63ae35e5c4cbdba3a2c2e77def) \Device\Harddisk1\DR1\Partition0
22:05:52.0093 1104 \Device\Harddisk1\DR1\Partition0 - ok
22:05:52.0109 1104 Boot (0x1200) (30828e20c0ae48162ccaaff640f1ab13) \Device\Harddisk1\DR1\Partition1
22:05:52.0109 1104 \Device\Harddisk1\DR1\Partition1 - ok
22:05:52.0125 1104 Boot (0x1200) (b78e5c146ce20817a11186419301d333) \Device\Harddisk2\DR5\Partition0
22:05:52.0125 1104 \Device\Harddisk2\DR5\Partition0 - ok
22:05:52.0125 1104 ============================================================
22:05:52.0125 1104 Scan finished
22:05:52.0125 1104 ============================================================
22:05:52.0125 1540 Detected object count: 1
22:05:52.0125 1540 Actual detected object count: 1
22:06:33.0625 1540 sptd ( LockedFile.Multi.Generic ) - skipped by user
22:06:33.0625 1540 sptd ( LockedFile.Multi.Generic ) - User select action: Skip
22:06:45.0046 5384 Deinitialize success


Na konci na mě akorát vyskočilo
Obrázek

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Windows opakuje "Congratulations, you won"

#6 Příspěvek od motji »

Ten driver je ok. Objevuje se to jen když máte otevřený prohlížeč? Vy jste spouštěl combofix?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Jakol
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 01 bře 2012 20:46
Kontaktovat uživatele:

Re: Windows opakuje "Congratulations, you won"

#7 Příspěvek od Jakol »

Prohlížeč mám otevřený pořád a někdy to dělá a někdy ne.
Combofix jsem používal už před dlouhou dobou.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Windows opakuje "Congratulations, you won"

#8 Příspěvek od motji »

:arrow: Spusťte combofix podle tohoto návodu
http://www.bleepingcomputer.com/combofi ... t-combofix
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Odpovědět