Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Havet

Patříte mezi Vzorné návštěvníky? Pak je tato sekce pro vás.

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Zpráva
Autor
Uživatelský avatar
JuraFilth
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 209
Registrován: 23 črc 2009 16:18
Bydliště: Havířov

Havet

#1 Příspěvek od JuraFilth »

Zdravim, preji hezky vikend :-) Mohli by jste prosim prokouknout tento log ?? tento PC ma problem s vyhledavanim..
Jakmile se vygoogluju neco a klikne na ten odkaz nezobrazi to nic ale nejaky divny odkaz : tohle je vyhledavani www.seznam.cz
http://abnow.com/?search=seznam&subid=1 ... fdd5b4a050
Děkuji


Logfile of random's system information tool 1.09 (written by random/random)
Run by janiska at 2012-03-10 18:29:32
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 364 GB (79%) free of 463 GB
Total RAM: 4063 MB (63% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:29:42, on 10.3.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal

Running processes:
C:\Users\janiska\AppData\Roaming\04D0F\lvvm.exe
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\QIP 2010\qip.exe
C:\Users\janiska\AppData\Roaming\QipGuard\QipGuard.exe
C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe
C:\Users\janiska\AppData\Roaming\Microsoft\6EC2\B69.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\janiska\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
C:\Users\janiska\AppData\Roaming\28B04\25B6E.exe
C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\janiska.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com/?l=dis&o=14672
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:61556
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: QIPBHO Class - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\janiska\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - (no file)
F3 - REG:win.ini: load=C:\Users\janiska\AppData\Roaming\04D0F\lvvm.exe
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ::1 localhost
O1 - Hosts: 69.72.252.254 www.google-analytics.com.
O1 - Hosts: 69.72.252.254 ad-emea.doubleclick.net.
O1 - Hosts: 69.72.252.254 www.statcounter.com.
O1 - Hosts: 184.95.41.155 www.google-analytics.com.
O1 - Hosts: 184.95.41.155 ad-emea.doubleclick.net.
O1 - Hosts: 184.95.41.155 www.statcounter.com.
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: QipLI - {6B5863A0-C43F-4C0A-982B-CC0E9125783F} - C:\Users\janiska\AppData\Roaming\Microsoft\Internet Explorer\qstatsrv.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\janiska\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HPCam_Menu] "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam" UpdateWithCreateOnce "Software\Hewlett-Packard\Media\Webcam"
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [B2C_AGENT] C:\ProgramData\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe
O4 - HKLM\..\Run: [KiesHelper] C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe /s
O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [Infium] "C:\Program Files (x86)\QIP 2010\qip.exe" /autorun
O4 - HKCU\..\Run: [QIP Internet Guardian] C:\Users\janiska\AppData\Roaming\QipGuard\QipGuard.exe
O4 - HKCU\..\Run: [HPADVISOR] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe view=DOCKVIEW
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\janiska\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [Regedit32] C:\Windows\system32\regedit.exe
O4 - HKCU\..\Run: [KiesPDLR] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
O4 - HKCU\..\Run: [Windows Time] rundll32.exe "C:\ProgramData\OccijzerKajd.dll",EntryPoint
O4 - HKCU\..\Run: [B69.exe] C:\Users\janiska\AppData\Roaming\Microsoft\6EC2\B69.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Dropbox.lnk = janiska\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: KvetinkaProzeny.lnk = C:\Program Files (x86)\KvetinkaProzeny\KvetinkaProzeny\KvetinkaProzeny.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do zařízení Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Odeslat do zařízení &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files (x86)\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files (x86)\ICQ6.5\ICQ.exe
O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} (WRC Class) - http://trial.trymicrosoftoffice.com/tri ... /wrc32.ocx
O17 - HKLM\System\CCS\Services\Tcpip\..\{E7D758D2-D006-4EE0-A622-B33A923B5CEB}: NameServer = 62.129.50.20,85.135.32.100
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13906 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=consrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=consrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\Hpservice.exe
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\system32\WLANExt.exe 27784416
\??\C:\Windows\system32\conhost.exe "102277058-1639532951-299104453-1925650828105377128396931250-12456205091246331460
C:\Windows\System32\spoolsv.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\SysWOW64\svchost.exe -k netsvcs
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Windows\explorer.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\mdm.exe"
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
"C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Users\janiska\AppData\Roaming\04D0F\lvvm.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe" /background
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
"C:\Program Files (x86)\QIP 2010\qip.exe" /autorun
"C:\Users\janiska\AppData\Roaming\QipGuard\QipGuard.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe" view=DOCKVIEW
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Users\janiska\AppData\Roaming\Microsoft\6EC2\B69.exe
"C:\Windows\System32\rundll32.exe" "C:\ProgramData\OccijzerKajd.dll",EntryPoint
"C:\Windows\System32\rundll32.exe" "C:\ProgramData\OccijzerKajd.dll",EntryPoint
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Users\janiska\AppData\Roaming\Dropbox\bin\Dropbox.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe" /Start
C:\Windows\system32\wbem\wmiprvse.exe
taskeng.exe {DA548D86-9695-4C46-BFFC-9081A958EE55}
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe"
C:\Users\janiska\AppData\Roaming\28B04\25B6E.exe
"C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe"
"C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
"C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe" -Embedding
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe" "<hpNotification><Toast><ID>14277</ID><Title>HP Wireless Assistant</Title><Text>Zařízení WLAN : Zapnuto
Rozhraní Bluetooth(r): Vypnuto</Text><IconPath>C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\images\wireless_on.ico</IconPath><Path>C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe</Path><Parameters>SHOWSTATUS</Parameters></Toast></hpNotification>"
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4028.74b4110.577322200 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll" Mozilla.Firefox.9.0.1 -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.jar" 4028 "\\.\pipe\gecko-crash-server-pipe.4028" plugin
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe33_ Global\UsGthrCtrlFltPipeMssGthrPipe33 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 508 512 520 65536 516
"C:\Users\janiska\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2689210381-877661392-85660980-1000Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2689210381-877661392-85660980-1000UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\HPCeeScheduleForjaniska.job

=========Mozilla firefox=========

ProfilePath - C:\Users\janiska\AppData\Roaming\Mozilla\Firefox\Profiles\0awq4xvr.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}:3.3.3.2, engine@conduit.com:3.3.3.2, {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}:3.2.5.2, {0b38152b-1b20-484d-a11f-5e04a9b0661f}:5.6.14.1, {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.2.126, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.10"
prefs.js - "keyword.URL" - "chrome://browser-region/locale/region.properties"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0]
"Description"=DivX® Player Plugin for VOD Content
"Path"=C:\Program Files (x86)\DivX\DivX Player\npDivxPlayerPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\3.0.40624.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\plugins\
npdeployJava1.dll
npDivxPlayerPlugin.dll
npdnu.dll
npdnu.xpt
npdnupdater2.dll
npdnupdater2.xpt
nppdf32.dll
nsIDivxPlayerPlugin.xpt

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\janiska\AppData\Roaming\Mozilla\Firefox\Profiles\0awq4xvr.default\extensions\
{0b38152b-1b20-484d-a11f-5e04a9b0661f}
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}

C:\Users\janiska\AppData\Roaming\Mozilla\Firefox\Profiles\0awq4xvr.default\searchplugins\
aol-web-search.xml
askcom.xml
conduit.xml
icqplugin.xml
search.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-11-27 43520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-05-23 115072]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6B5863A0-C43F-4C0A-982B-CC0E9125783F}]
QipLI Class - C:\Users\janiska\AppData\Roaming\Microsoft\Internet Explorer\qstatsrv.dll [2010-09-10 48080]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}]
QIPBHO Class - C:\Users\janiska\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll [2010-09-10 149968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2012-03-10 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-05-27 2096424]
"SmartMenu"=C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe [2009-08-25 610872]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-03-23 487424]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-08-20 2363392]
"Infium"=C:\Program Files (x86)\QIP 2010\qip.exe [2010-09-10 5809616]
"QIP Internet Guardian"=C:\Users\janiska\AppData\Roaming\QipGuard\QipGuard.exe [2010-09-10 190928]
"HPADVISOR"=C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe [2009-09-29 1685048]
"Facebook Update"=C:\Users\janiska\AppData\Local\Facebook\Update\FacebookUpdate.exe [2011-09-25 137536]
"Regedit32"=C:\Windows\system32\regedit.exe []
"KiesPDLR"=C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2011-11-02 21392]
"Windows Time"=C:\ProgramData\OccijzerKajd.dll [2012-01-19 29184]
"B69.exe"=C:\Users\janiska\AppData\Roaming\Microsoft\6EC2\B69.exe [2012-02-22 287232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre6\bin\jusched.exe [2009-11-27 171520]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-07-02 98304]
"HPCam_Menu"=c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"QlbCtrl.exe"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-08-20 322104]
"Easybits Recovery"=C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [2009-09-02 60464]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2008-12-08 54576]
"WirelessAssistant"=C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-07-23 498744]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-09-07 37296]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe []
"DivXUpdate"=C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2011-03-21 1230704]
"B2C_AGENT"=C:\ProgramData\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe [2011-09-28 404568]
"KiesHelper"=C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe [2011-11-02 928656]
"KiesTrayAgent"=C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [2011-11-02 3508624]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Microsoft Office.lnk - C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE

C:\Users\janiska\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\janiska\AppData\Roaming\Dropbox\bin\Dropbox.exe
KvetinkaProzeny.lnk - C:\Program Files (x86)\KvetinkaProzeny\KvetinkaProzeny\KvetinkaProzeny.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{E54729E8-BB3D-4270-9D49-7389EA579090}"=C:\Windows\SysWow64\EZUPBH~1.DLL [2009-11-27 52272]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableLockWorkstation"=0
"DisableTaskMgr"=0
"DisableChangePassword"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"HideFastUserSwitching"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"HideSCAHealth"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-03-10 18:29:33 ----D---- C:\Program Files\trend micro
2012-03-10 18:29:32 ----D---- C:\rsit
2012-03-10 10:34:40 ----D---- C:\Users\janiska\AppData\Roaming\OpenOffice.org
2012-03-10 10:30:22 ----A---- C:\Windows\SYSWOW64\javaws.exe
2012-03-10 10:30:22 ----A---- C:\Windows\SYSWOW64\javaw.exe
2012-03-10 10:30:22 ----A---- C:\Windows\SYSWOW64\java.exe
2012-03-10 10:30:18 ----D---- C:\Program Files (x86)\Java
2012-03-10 10:24:56 ----D---- C:\Program Files (x86)\OpenOffice.org 3
2012-03-10 02:17:14 ----ASH---- C:\Windows\system32\dds_log_ad13.cmd
2012-03-08 17:37:07 ----D---- C:\Program Files (x86)\BitLord
2012-03-08 17:25:02 ----D---- C:\Program Files (x86)\Torrent Download
2012-02-15 08:35:49 ----A---- C:\Windows\system32\shell32.dll
2012-02-15 08:35:47 ----A---- C:\Windows\SYSWOW64\shell32.dll
2012-02-15 08:35:46 ----A---- C:\Windows\system32\ntshrui.dll
2012-02-15 08:35:45 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2012-02-15 08:35:42 ----A---- C:\Windows\system32\win32k.sys
2012-02-15 08:35:41 ----A---- C:\Windows\system32\drivers\afd.sys
2012-02-15 08:35:35 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2012-02-15 08:35:35 ----A---- C:\Windows\system32\msvcrt.dll
2012-02-15 08:35:31 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-02-15 08:35:31 ----A---- C:\Windows\system32\mshtml.dll
2012-02-15 08:35:29 ----A---- C:\Windows\system32\ieframe.dll
2012-02-15 08:35:27 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-02-15 08:35:27 ----A---- C:\Windows\system32\urlmon.dll
2012-02-15 08:35:26 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-02-15 08:35:26 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-02-15 08:35:26 ----A---- C:\Windows\system32\wininet.dll
2012-02-15 08:35:25 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2012-02-15 08:35:25 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2012-02-15 08:35:25 ----A---- C:\Windows\SYSWOW64\ieui.dll
2012-02-15 08:35:25 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-02-15 08:35:25 ----A---- C:\Windows\system32\mshtmled.dll
2012-02-15 08:35:25 ----A---- C:\Windows\system32\msfeeds.dll
2012-02-15 08:35:25 ----A---- C:\Windows\system32\ieui.dll
2012-02-15 08:35:25 ----A---- C:\Windows\system32\iertutil.dll
2012-02-15 08:35:24 ----A---- C:\Windows\SYSWOW64\url.dll
2012-02-15 08:35:24 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-02-15 08:35:24 ----A---- C:\Windows\system32\url.dll
2012-02-15 08:35:24 ----A---- C:\Windows\system32\jsproxy.dll
2012-02-13 12:03:15 ----ASH---- C:\Windows\system32\dds_log_trash.cmd

======List of files/folders modified in the last 1 month======

2012-03-10 18:29:42 ----D---- C:\Windows\Prefetch
2012-03-10 18:29:33 ----RD---- C:\Program Files
2012-03-10 14:39:03 ----D---- C:\Windows\Temp
2012-03-10 14:14:33 ----D---- C:\Windows\System32
2012-03-10 14:14:33 ----D---- C:\Windows\inf
2012-03-10 14:14:33 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-03-10 12:33:06 ----D---- C:\Windows\Tasks
2012-03-10 12:33:06 ----D---- C:\Windows\system32\Tasks
2012-03-10 12:11:42 ----D---- C:\Windows\system32\config
2012-03-10 10:39:04 ----SHD---- C:\Windows\Installer
2012-03-10 10:38:47 ----RSD---- C:\Windows\assembly
2012-03-10 10:36:46 ----RSD---- C:\Windows\Fonts
2012-03-10 10:30:35 ----SHD---- C:\System Volume Information
2012-03-10 10:30:29 ----D---- C:\Program Files (x86)\Common Files
2012-03-10 10:30:22 ----D---- C:\Windows\SysWOW64
2012-03-10 10:30:19 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2012-03-10 10:30:18 ----D---- C:\Program Files (x86)
2012-03-10 10:28:43 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-03-10 10:28:28 ----HD---- C:\ProgramData
2012-03-10 10:28:28 ----A---- C:\ProgramData\HPWALog.txt
2012-03-10 10:28:18 ----D---- C:\Users\janiska\AppData\Roaming\Dropbox
2012-03-10 10:18:00 ----D---- C:\Program Files (x86)\EasyBits For Kids
2012-03-10 10:05:38 ----D---- C:\Users\janiska\AppData\Roaming\_MDLogs
2012-03-10 10:04:59 ----D---- C:\Windows
2012-03-10 10:00:25 ----D---- C:\Windows\Downloaded Program Files
2012-03-10 08:33:44 ----D---- C:\Users\janiska\AppData\Roaming\28B04
2012-03-09 20:59:26 ----D---- C:\Users\janiska\AppData\Roaming\Skype
2012-02-26 02:06:11 ----D---- C:\Windows\system32\drivers
2012-02-26 02:06:10 ----D---- C:\Windows\system32\drivers\UMDF
2012-02-22 16:01:45 ----D---- C:\Users\janiska\AppData\Roaming\04D0F
2012-02-16 18:20:46 ----D---- C:\Windows\Microsoft.NET
2012-02-15 09:33:53 ----D---- C:\Windows\winsxs
2012-02-15 09:31:58 ----D---- C:\Windows\SYSWOW64\migration
2012-02-15 09:31:58 ----D---- C:\Windows\system32\migration
2012-02-15 09:31:58 ----D---- C:\Program Files\Internet Explorer
2012-02-15 09:31:58 ----D---- C:\Program Files (x86)\Internet Explorer
2012-02-15 08:56:51 ----A---- C:\Windows\system32\MRT.exe
2012-02-15 08:35:17 ----D---- C:\Windows\system32\catroot2
2012-02-15 08:35:17 ----D---- C:\Windows\system32\catroot

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 hpdskflt;HP Filter; C:\Windows\system32\DRIVERS\hpdskflt.sys [2009-07-08 30008]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-06-04 408600]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-01-27 47632]
R3 Accelerometer;HP Accelerometer; C:\Windows\system32\DRIVERS\Accelerometer.sys [2009-07-08 41272]
R3 AtiHdmiService;ATI Service for HD Audio Codec; C:\Windows\system32\drivers\AtiHdmi.sys [2009-06-29 116752]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-02 6036480]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2009-08-25 2978296]
R3 enecir;ENE CIR Receiver; C:\Windows\system32\DRIVERS\enecir.sys [2009-06-29 70656]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2009-04-29 18432]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-07-21 140712]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-07-13 233472]
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt64.sys [2010-03-23 505344]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-05-27 320560]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2011-10-27 36328]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-28 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-07-01 98344]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2009-07-01 132648]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-04-08 35104]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-07-01 21160]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-10-27 157672]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-10-27 16872]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-10-27 177640]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-10-27 146920]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 usbbus;LGE Mobile Composite USB Device; C:\Windows\system32\DRIVERS\lgx64bus.sys []
S3 UsbDiag;LGE Mobile USB Serial Port; C:\Windows\system32\DRIVERS\lgx64diag.sys []
S3 USBModem;LGE Mobile USB Modem; C:\Windows\system32\DRIVERS\lgx64modem.sys []
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [2009-03-02 89600]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-07-02 203264]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-30 864032]
R2 ezSharedSvc;Easybits Shared Services for Windows; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-03-28 94264]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe [2009-07-08 30520]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-08-20 73728]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\mdm.exe [2001-02-23 270336]
R2 odysseyIM4;Safety Settings Service; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2009-07-06 247152]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe [2010-03-23 247808]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2011-03-28 799800]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-02 135664]
S3 GameConsoleService;GameConsoleService; C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe [2010-09-30 246520]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-02 135664]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-09-21 1255736]

-----------------EOF-----------------

Uživatelský avatar
JuraFilth
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 209
Registrován: 23 črc 2009 16:18
Bydliště: Havířov

Re: Havet

#2 Příspěvek od JuraFilth »

64b / win7 / notas / HP

Uživatelský avatar
JuraFilth
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 209
Registrován: 23 črc 2009 16:18
Bydliště: Havířov

Re: Havet

#3 Příspěvek od JuraFilth »

Jen takova otazecka :-) Mam na tu flashku vlozit i tu slozku eeepcfr ?

Uživatelský avatar
JuraFilth
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 209
Registrován: 23 črc 2009 16:18
Bydliště: Havířov

Re: Havet

#4 Příspěvek od JuraFilth »

Vubec nechapu to co mam delat na tom nakazenem PC.. prosim o vysvetleni ''polopate''

Zasunu flashku, ta se zobrazila a co dal ??

Uživatelský avatar
JuraFilth
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 209
Registrován: 23 črc 2009 16:18
Bydliště: Havířov

Re: Havet

#5 Příspěvek od JuraFilth »

Tohle chapu :-) tohle na te flashce uz mam, ale potom jakmile zasunu flashku do NAkaženého PC tak nevim co spustit ( konkretne toto )

Na nakaženém pc!

- zasuň flash do PC, zapni

nevím co zapnout :-) pokud tu flashku tak tu zasunu načte a mám tam ty soubory co jsem tam dal z NEnakaženého PC

díky za trpělivost :-)

Uživatelský avatar
JuraFilth
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 209
Registrován: 23 črc 2009 16:18
Bydliště: Havířov

Re: Havet

#6 Příspěvek od JuraFilth »

neodslo k nacteni, takze jsem hledal v tom BIOS-u a nenasel sem tam ani boot seq. ani USB bootable ani other
:oops:

Uživatelský avatar
JuraFilth
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 209
Registrován: 23 črc 2009 16:18
Bydliště: Havířov

Re: Havet

#7 Příspěvek od JuraFilth »

Z toho nakazeneho PC nejdou odesilat ani prilohy :?:

Posilam nafoceny BIOS ktery tam je : http://leteckaposta.cz/654910904

Uživatelský avatar
JuraFilth
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 209
Registrován: 23 črc 2009 16:18
Bydliště: Havířov

Re: Havet

#8 Příspěvek od JuraFilth »

zkousel jsem davat na prvni misto ten USB CD / DVD Rom drive a nefungovalo to :(

zkusme to oznacit jak je to na fotce od hora smerem dolu A B C D E F . Takze poradi by melo byt jake ?

Uživatelský avatar
JuraFilth
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 209
Registrován: 23 črc 2009 16:18
Bydliště: Havířov

Re: Havet

#9 Příspěvek od JuraFilth »

Zdravim, :-) jiz se spustil ten Reatogo X Pe. Nacitalo to potom to hodilo ''obrazovku smrti'' takze chci postupovad dle tech AHCI mode / SATA mode ale nemuzu najit kde to je :-) Takze kde to naleznu ?? :cry:

Uživatelský avatar
JuraFilth
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 209
Registrován: 23 črc 2009 16:18
Bydliště: Havířov

Re: Havet

#10 Příspěvek od JuraFilth »

to co mas nascreenovane je uplne cely bios. zadne sata ani ahci nikde neni

Uživatelský avatar
JuraFilth
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 209
Registrován: 23 črc 2009 16:18
Bydliště: Havířov

Re: Havet

#11 Příspěvek od JuraFilth »

MBR

Kód: Vybrat vše

MBRScan v1.1.1

OS             : Windows 7 Service Pack 1 (64 bit)
PROCESSOR      : Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
BOOT           : Safe Boot with network
DATE           : 2012/03/13 (ISO 8601) at 18:51:56
________________________________________________________________________________

DISK           : Device\Harddisk0\DR0 __Hitachi HTS725050A9A (PC4O)
BUS_TYPE       : (0x03)  P-ATA
USE_PIO        : NO
MAX_TRANSFER   : 128 Kb
ALIGNMENT_MASK : word aligned
________________________________________________________________________________

Device\Harddisk0\DR0	465.8 Go  [Fixed] ==> HP Recovery Manager

MBR_MD5   : 0C1DD578D85FB9550DACA0765F14ECCE
MBR_SHA1  : CCB420CC86179AD854B70A9E5EA88DBF768B71E5

Device\Harddisk0\Partition1	199.0 Mo  	0x07 NTFS / HPFS __ BOOTABLE __
Device\Harddisk0\Partition2	452.2 Go  	0x07 NTFS / HPFS
Device\Harddisk0\Partition3	13.33 Go  	0x07 NTFS / HPFS
________________________________________________________________________________

############################### Additional scan ################################

DRIVER  : C:\Windows\system32\hal.dll => Invisible on the disk
ADDRESS : 0x02200000
SIZE    : 292.0 Ko

DRIVER  : C:\Windows\system32\kdcom.dll => Invisible on the disk
ADDRESS : 0x00BA5000
SIZE    : 40.0 Ko

DRIVER  : C:\Windows\system32\mcupdate_GenuineIntel.dll => Invisible on the disk
ADDRESS : 0x00C4E000
SIZE    : 316.0 Ko

DRIVER  : C:\Windows\system32\CLFS.SYS => Invisible on the disk
ADDRESS : 0x00CB1000
SIZE    : 376.0 Ko

DRIVER  : C:\Windows\system32\CI.dll => Invisible on the disk
ADDRESS : 0x00D0F000
SIZE    : 768.0 Ko

DRIVER  : C:\Windows\system32\drivers\Wdf01000.sys => Invisible on the disk
ADDRESS : 0x00ED6000
SIZE    : 656.0 Ko

DRIVER  : C:\Windows\system32\drivers\WDFLDR.SYS => Invisible on the disk
ADDRESS : 0x00F7A000
SIZE    : 60.0 Ko

DRIVER  : C:\Windows\system32\drivers\ACPI.sys => Invisible on the disk
ADDRESS : 0x00F89000
SIZE    : 348.0 Ko

DRIVER  : C:\Windows\system32\drivers\WMILIB.SYS => Invisible on the disk
ADDRESS : 0x00FE0000
SIZE    : 36.0 Ko

DRIVER  : C:\Windows\system32\drivers\msisadrv.sys => Invisible on the disk
ADDRESS : 0x00FE9000
SIZE    : 40.0 Ko

DRIVER  : C:\Windows\system32\drivers\pci.sys => Invisible on the disk
ADDRESS : 0x00E00000
SIZE    : 204.0 Ko

DRIVER  : C:\Windows\system32\drivers\vdrvroot.sys => Invisible on the disk
ADDRESS : 0x00E33000
SIZE    : 52.0 Ko

DRIVER  : C:\Windows\system32\drivers\isapnp.sys => Invisible on the disk
ADDRESS : 0x00E40000
SIZE    : 36.0 Ko

DRIVER  : C:\Windows\system32\drivers\mpio.sys => Invisible on the disk
ADDRESS : 0x00E49000
SIZE    : 168.0 Ko

DRIVER  : C:\Windows\System32\drivers\partmgr.sys => Invisible on the disk
ADDRESS : 0x00E73000
SIZE    : 84.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\compbatt.sys => Invisible on the disk
ADDRESS : 0x00E88000
SIZE    : 36.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\BATTC.SYS => Invisible on the disk
ADDRESS : 0x00E91000
SIZE    : 48.0 Ko

DRIVER  : C:\Windows\system32\drivers\volmgr.sys => Invisible on the disk
ADDRESS : 0x00E9D000
SIZE    : 84.0 Ko

DRIVER  : C:\Windows\System32\drivers\volmgrx.sys => Invisible on the disk
ADDRESS : 0x01018000
SIZE    : 368.0 Ko

DRIVER  : C:\Windows\system32\drivers\intelide.sys => Invisible on the disk
ADDRESS : 0x01074000
SIZE    : 32.0 Ko

DRIVER  : C:\Windows\system32\drivers\PCIIDEX.SYS => Invisible on the disk
ADDRESS : 0x0107C000
SIZE    : 64.0 Ko

DRIVER  : C:\Windows\system32\drivers\aliide.sys => Invisible on the disk
ADDRESS : 0x0108C000
SIZE    : 28.0 Ko

DRIVER  : C:\Windows\system32\drivers\amdide.sys => Invisible on the disk
ADDRESS : 0x01093000
SIZE    : 28.0 Ko

DRIVER  : C:\Windows\system32\drivers\cmdide.sys => Invisible on the disk
ADDRESS : 0x0109A000
SIZE    : 32.0 Ko

DRIVER  : C:\Windows\System32\drivers\mountmgr.sys => Invisible on the disk
ADDRESS : 0x010A2000
SIZE    : 104.0 Ko

DRIVER  : C:\Windows\system32\drivers\msdsm.sys => Invisible on the disk
ADDRESS : 0x010BC000
SIZE    : 152.0 Ko

DRIVER  : C:\Windows\system32\drivers\nvraid.sys => Invisible on the disk
ADDRESS : 0x010E2000
SIZE    : 160.0 Ko

DRIVER  : C:\Windows\system32\drivers\CLASSPNP.SYS => Invisible on the disk
ADDRESS : 0x0110A000
SIZE    : 192.0 Ko

DRIVER  : C:\Windows\system32\drivers\pciide.sys => Invisible on the disk
ADDRESS : 0x0113A000
SIZE    : 28.0 Ko

DRIVER  : C:\Windows\system32\drivers\viaide.sys => Invisible on the disk
ADDRESS : 0x01141000
SIZE    : 32.0 Ko

DRIVER  : C:\Windows\system32\drivers\iaStorV.sys => Invisible on the disk
ADDRESS : 0x01292000
SIZE    : 1.12 Mo

DRIVER  : C:\Windows\system32\DRIVERS\iaStor.sys => Invisible on the disk
ADDRESS : 0x014D5000
SIZE    : 1.11 Mo

DRIVER  : C:\Windows\system32\drivers\atapi.sys => Invisible on the disk
ADDRESS : 0x015F1000
SIZE    : 36.0 Ko

DRIVER  : C:\Windows\system32\drivers\ataport.SYS => Invisible on the disk
ADDRESS : 0x01400000
SIZE    : 168.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\lsi_sas.sys => Invisible on the disk
ADDRESS : 0x0142A000
SIZE    : 116.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\storport.sys => Invisible on the disk
ADDRESS : 0x01447000
SIZE    : 396.0 Ko

DRIVER  : C:\Windows\system32\drivers\msahci.sys => Invisible on the disk
ADDRESS : 0x014AA000
SIZE    : 44.0 Ko

DRIVER  : C:\Windows\system32\drivers\HpSAMD.sys => Invisible on the disk
ADDRESS : 0x014B5000
SIZE    : 92.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\adp94xx.sys => Invisible on the disk
ADDRESS : 0x01200000
SIZE    : 492.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\adpahci.sys => Invisible on the disk
ADDRESS : 0x01149000
SIZE    : 344.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\adpu320.sys => Invisible on the disk
ADDRESS : 0x013B0000
SIZE    : 188.0 Ko

DRIVER  : C:\Windows\system32\drivers\amdsata.sys => Invisible on the disk
ADDRESS : 0x013DF000
SIZE    : 120.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\amdsbs.sys => Invisible on the disk
ADDRESS : 0x0119F000
SIZE    : 284.0 Ko

DRIVER  : C:\Windows\system32\drivers\amdxata.sys => Invisible on the disk
ADDRESS : 0x0127B000
SIZE    : 44.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\arc.sys => Invisible on the disk
ADDRESS : 0x011E6000
SIZE    : 100.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\arcsas.sys => Invisible on the disk
ADDRESS : 0x00EB2000
SIZE    : 108.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\elxstor.sys => Invisible on the disk
ADDRESS : 0x01614000
SIZE    : 540.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\iirsp.sys => Invisible on the disk
ADDRESS : 0x0169B000
SIZE    : 68.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\lsi_fc.sys => Invisible on the disk
ADDRESS : 0x016AC000
SIZE    : 124.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\lsi_sas2.sys => Invisible on the disk
ADDRESS : 0x016CB000
SIZE    : 76.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\lsi_scsi.sys => Invisible on the disk
ADDRESS : 0x016DE000
SIZE    : 124.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\megasas.sys => Invisible on the disk
ADDRESS : 0x016FD000
SIZE    : 48.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\MegaSR.sys => Invisible on the disk
ADDRESS : 0x01709000
SIZE    : 656.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\nfrd960.sys => Invisible on the disk
ADDRESS : 0x017AD000
SIZE    : 64.0 Ko

DRIVER  : C:\Windows\system32\drivers\nvstor.sys => Invisible on the disk
ADDRESS : 0x017BD000
SIZE    : 172.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\ql2300.sys => Invisible on the disk
ADDRESS : 0x01842000
SIZE    : 1.64 Mo

DRIVER  : C:\Windows\system32\DRIVERS\ql40xx.sys => Invisible on the disk
ADDRESS : 0x01A17000
SIZE    : 380.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\SiSRaid2.sys => Invisible on the disk
ADDRESS : 0x01A76000
SIZE    : 56.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\sisraid4.sys => Invisible on the disk
ADDRESS : 0x01A84000
SIZE    : 96.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\stexstor.sys => Invisible on the disk
ADDRESS : 0x01A9C000
SIZE    : 40.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\vsmraid.sys => Invisible on the disk
ADDRESS : 0x01AA6000
SIZE    : 168.0 Ko

DRIVER  : C:\Windows\system32\drivers\fltmgr.sys => Invisible on the disk
ADDRESS : 0x01AD0000
SIZE    : 304.0 Ko

DRIVER  : C:\Windows\system32\drivers\fileinfo.sys => Invisible on the disk
ADDRESS : 0x01B1C000
SIZE    : 80.0 Ko

DRIVER  : C:\Windows\System32\Drivers\Ntfs.sys => Invisible on the disk
ADDRESS : 0x01C5C000
SIZE    : 1.64 Mo

DRIVER  : C:\Windows\System32\Drivers\msrpc.sys => Invisible on the disk
ADDRESS : 0x01B30000
SIZE    : 376.0 Ko

DRIVER  : C:\Windows\System32\Drivers\ksecdd.sys => Invisible on the disk
ADDRESS : 0x01C00000
SIZE    : 108.0 Ko

DRIVER  : C:\Windows\System32\Drivers\cng.sys => Invisible on the disk
ADDRESS : 0x01B8E000
SIZE    : 456.0 Ko

DRIVER  : C:\Windows\System32\drivers\pcw.sys => Invisible on the disk
ADDRESS : 0x01C1B000
SIZE    : 68.0 Ko

DRIVER  : C:\Windows\System32\Drivers\Fs_Rec.sys => Invisible on the disk
ADDRESS : 0x01C2C000
SIZE    : 40.0 Ko

DRIVER  : C:\Windows\system32\drivers\ndis.sys => Invisible on the disk
ADDRESS : 0x01E33000
SIZE    : 972.0 Ko

DRIVER  : C:\Windows\system32\drivers\NETIO.SYS => Invisible on the disk
ADDRESS : 0x01F26000
SIZE    : 384.0 Ko

DRIVER  : C:\Windows\System32\Drivers\ksecpkg.sys => Invisible on the disk
ADDRESS : 0x01F86000
SIZE    : 172.0 Ko

DRIVER  : C:\Windows\System32\drivers\tcpip.sys => Invisible on the disk
ADDRESS : 0x020F6000
SIZE    : 2.02 Mo

DRIVER  : C:\Windows\System32\drivers\fwpkclnt.sys => Invisible on the disk
ADDRESS : 0x022FA000
SIZE    : 296.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\wd.sys => Invisible on the disk
ADDRESS : 0x02344000
SIZE    : 32.0 Ko

DRIVER  : C:\Windows\system32\drivers\volsnap.sys => Invisible on the disk
ADDRESS : 0x0234C000
SIZE    : 304.0 Ko

DRIVER  : C:\Windows\system32\drivers\sbp2port.sys => Invisible on the disk
ADDRESS : 0x023A0000
SIZE    : 116.0 Ko

DRIVER  : C:\Windows\System32\drivers\rdyboost.sys => Invisible on the disk
ADDRESS : 0x023BD000
SIZE    : 232.0 Ko

DRIVER  : C:\Windows\System32\Drivers\mup.sys => Invisible on the disk
ADDRESS : 0x02000000
SIZE    : 72.0 Ko

DRIVER  : C:\Windows\System32\drivers\hwpolicy.sys => Invisible on the disk
ADDRESS : 0x02012000
SIZE    : 36.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\hpdskflt.sys => Invisible on the disk
ADDRESS : 0x0201B000
SIZE    : 40.0 Ko

DRIVER  : C:\Windows\System32\DRIVERS\fvevol.sys => Invisible on the disk
ADDRESS : 0x02025000
SIZE    : 232.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\disk.sys => Invisible on the disk
ADDRESS : 0x0205F000
SIZE    : 88.0 Ko

DRIVER  : C:\Windows\System32\Drivers\Null.SYS => Invisible on the disk
ADDRESS : 0x033B7000
SIZE    : 36.0 Ko

DRIVER  : C:\Windows\System32\Drivers\Beep.SYS => Invisible on the disk
ADDRESS : 0x033C0000
SIZE    : 28.0 Ko

DRIVER  : C:\Windows\System32\drivers\vga.sys => Invisible on the disk
ADDRESS : 0x033C7000
SIZE    : 56.0 Ko

DRIVER  : C:\Windows\System32\drivers\VIDEOPRT.SYS => Invisible on the disk
ADDRESS : 0x033D5000
SIZE    : 148.0 Ko

DRIVER  : C:\Windows\System32\drivers\watchdog.sys => Invisible on the disk
ADDRESS : 0x03200000
SIZE    : 64.0 Ko

DRIVER  : C:\Windows\system32\drivers\rdpencdd.sys => Invisible on the disk
ADDRESS : 0x03210000
SIZE    : 36.0 Ko

DRIVER  : C:\Windows\System32\Drivers\Msfs.SYS => Invisible on the disk
ADDRESS : 0x03219000
SIZE    : 44.0 Ko

DRIVER  : C:\Windows\System32\Drivers\Npfs.SYS => Invisible on the disk
ADDRESS : 0x03224000
SIZE    : 68.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\tdx.sys => Invisible on the disk
ADDRESS : 0x03235000
SIZE    : 136.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\TDI.SYS => Invisible on the disk
ADDRESS : 0x03257000
SIZE    : 52.0 Ko

DRIVER  : C:\Windows\system32\drivers\afd.sys => Invisible on the disk
ADDRESS : 0x034A2000
SIZE    : 548.0 Ko

DRIVER  : C:\Windows\System32\DRIVERS\netbt.sys => Invisible on the disk
ADDRESS : 0x0352B000
SIZE    : 276.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\wfplwf.sys => Invisible on the disk
ADDRESS : 0x03570000
SIZE    : 36.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\pacer.sys => Invisible on the disk
ADDRESS : 0x03579000
SIZE    : 152.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\vwififlt.sys => Invisible on the disk
ADDRESS : 0x0359F000
SIZE    : 88.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\netbios.sys => Invisible on the disk
ADDRESS : 0x035B5000
SIZE    : 60.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\rdbss.sys => Invisible on the disk
ADDRESS : 0x03400000
SIZE    : 324.0 Ko

DRIVER  : C:\Windows\system32\drivers\nsiproxy.sys => Invisible on the disk
ADDRESS : 0x03451000
SIZE    : 48.0 Ko

DRIVER  : C:\Windows\System32\Drivers\dfsc.sys => Invisible on the disk
ADDRESS : 0x0345D000
SIZE    : 120.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\tunnel.sys => Invisible on the disk
ADDRESS : 0x0347B000
SIZE    : 152.0 Ko

DRIVER  : C:\Windows\system32\drivers\HDAudBus.sys => Invisible on the disk
ADDRESS : 0x035C4000
SIZE    : 144.0 Ko

DRIVER  : C:\Windows\system32\drivers\usbuhci.sys => Invisible on the disk
ADDRESS : 0x035E8000
SIZE    : 52.0 Ko

DRIVER  : C:\Windows\system32\drivers\USBPORT.SYS => Invisible on the disk
ADDRESS : 0x02083000
SIZE    : 344.0 Ko

DRIVER  : C:\Windows\system32\drivers\usbehci.sys => Invisible on the disk
ADDRESS : 0x03264000
SIZE    : 68.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\bcmwl664.sys => Invisible on the disk
ADDRESS : 0x03A27000
SIZE    : 2.86 Mo

DRIVER  : C:\Windows\system32\DRIVERS\vwifibus.sys => Invisible on the disk
ADDRESS : 0x03D02000
SIZE    : 52.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\Rt64win7.sys => Invisible on the disk
ADDRESS : 0x03D0F000
SIZE    : 244.0 Ko

DRIVER  : C:\Windows\system32\drivers\1394ohci.sys => Invisible on the disk
ADDRESS : 0x03D4C000
SIZE    : 248.0 Ko

DRIVER  : C:\Windows\system32\drivers\i8042prt.sys => Invisible on the disk
ADDRESS : 0x03D8A000
SIZE    : 120.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\HpqKbFiltr.sys => Invisible on the disk
ADDRESS : 0x03DA8000
SIZE    : 48.0 Ko

DRIVER  : C:\Windows\system32\drivers\kbdclass.sys => Invisible on the disk
ADDRESS : 0x03DB4000
SIZE    : 60.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\SynTP.sys => Invisible on the disk
ADDRESS : 0x03E12000
SIZE    : 332.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\USBD.SYS => Invisible on the disk
ADDRESS : 0x03E65000
SIZE    : 8.0 Ko

DRIVER  : C:\Windows\system32\drivers\mouclass.sys => Invisible on the disk
ADDRESS : 0x03E67000
SIZE    : 60.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\enecir.sys => Invisible on the disk
ADDRESS : 0x03E76000
SIZE    : 116.0 Ko

DRIVER  : C:\Windows\system32\drivers\cdrom.sys => Invisible on the disk
ADDRESS : 0x03E93000
SIZE    : 168.0 Ko

DRIVER  : C:\Windows\system32\drivers\wmiacpi.sys => Invisible on the disk
ADDRESS : 0x03EBD000
SIZE    : 36.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\Accelerometer.sys => Invisible on the disk
ADDRESS : 0x03EC6000
SIZE    : 48.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\blbdrive.sys => Invisible on the disk
ADDRESS : 0x03ED2000
SIZE    : 68.0 Ko

DRIVER  : C:\Windows\system32\drivers\CompositeBus.sys => Invisible on the disk
ADDRESS : 0x03EE3000
SIZE    : 64.0 Ko

DRIVER  : C:\Windows\system32\drivers\mssmbios.sys => Invisible on the disk
ADDRESS : 0x03EF3000
SIZE    : 44.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\AgileVpn.sys => Invisible on the disk
ADDRESS : 0x03EFE000
SIZE    : 88.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\rasl2tp.sys => Invisible on the disk
ADDRESS : 0x03F14000
SIZE    : 144.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\ndistapi.sys => Invisible on the disk
ADDRESS : 0x03F38000
SIZE    : 48.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\ndiswan.sys => Invisible on the disk
ADDRESS : 0x03F44000
SIZE    : 188.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\raspppoe.sys => Invisible on the disk
ADDRESS : 0x03F73000
SIZE    : 108.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\raspptp.sys => Invisible on the disk
ADDRESS : 0x03F8E000
SIZE    : 132.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\rassstp.sys => Invisible on the disk
ADDRESS : 0x03FAF000
SIZE    : 104.0 Ko

DRIVER  : C:\Windows\system32\drivers\termdd.sys => Invisible on the disk
ADDRESS : 0x03FC9000
SIZE    : 80.0 Ko

DRIVER  : C:\Windows\system32\drivers\swenum.sys => Invisible on the disk
ADDRESS : 0x03FDD000
SIZE    : 8.0 Ko

DRIVER  : C:\Windows\system32\drivers\ks.sys => Invisible on the disk
ADDRESS : 0x01FB1000
SIZE    : 268.0 Ko

DRIVER  : C:\Windows\system32\drivers\umbus.sys => Invisible on the disk
ADDRESS : 0x03E00000
SIZE    : 72.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\usbhub.sys => Invisible on the disk
ADDRESS : 0x0421B000
SIZE    : 360.0 Ko

DRIVER  : C:\Windows\System32\Drivers\NDProxy.SYS => Invisible on the disk
ADDRESS : 0x04275000
SIZE    : 84.0 Ko

DRIVER  : C:\Windows\System32\win32k.sys => Invisible on the disk
ADDRESS : 0x000A0000
SIZE    : 3.08 Mo

DRIVER  : C:\Windows\System32\drivers\Dxapi.sys => Invisible on the disk
ADDRESS : 0x0428A000
SIZE    : 48.0 Ko

DRIVER  : C:\Windows\System32\Drivers\crashdmp.sys => Invisible on the disk
ADDRESS : 0x04296000
SIZE    : 56.0 Ko

DRIVER  : C:\Windows\System32\drivers\dxg.sys => Invisible on the disk
ADDRESS : 0x00400000
SIZE    : 120.0 Ko

DRIVER  : C:\Windows\System32\TSDDD.dll => Invisible on the disk
ADDRESS : 0x007C0000
SIZE    : 40.0 Ko

DRIVER  : C:\Windows\System32\framebuf.dll => Invisible on the disk
ADDRESS : 0x00880000
SIZE    : 36.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\usbccgp.sys => Invisible on the disk
ADDRESS : 0x043D3000
SIZE    : 116.0 Ko

DRIVER  : C:\Windows\system32\drivers\WudfPf.sys => Invisible on the disk
ADDRESS : 0x03FDF000
SIZE    : 132.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\nwifi.sys => Invisible on the disk
ADDRESS : 0x03275000
SIZE    : 332.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\ndisuio.sys => Invisible on the disk
ADDRESS : 0x04200000
SIZE    : 76.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\bowser.sys => Invisible on the disk
ADDRESS : 0x03DC3000
SIZE    : 120.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\mrxsmb.sys => Invisible on the disk
ADDRESS : 0x032C8000
SIZE    : 180.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\mrxsmb10.sys => Invisible on the disk
ADDRESS : 0x032F5000
SIZE    : 312.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\mrxsmb20.sys => Invisible on the disk
ADDRESS : 0x03A00000
SIZE    : 144.0 Ko

DRIVER  : C:\Windows\system32\DRIVERS\vwifimp.sys => Invisible on the disk
ADDRESS : 0x043F0000
SIZE    : 40.0 Ko

DRIVER  : C:\Windows\System32\Drivers\fastfat.SYS => Invisible on the disk
ADDRESS : 0x03343000
SIZE    : 216.0 Ko

DRIVER  : C:\Windows\System32\smss.exe => Invisible on the disk
ADDRESS : 0x479F0000
SIZE    : 128.0 Ko

Device\Harddisk0\DR0 => XP MBR Code found in sector 1
Device\Harddisk0\DR0 => HP Recovery Manager found in sector 2
SystemStartOptions :  NOEXECUTE=OPTIN  SAFEBOOT:NETWORK  SOS  BOOTLOG  NOGUIBOOT  BOOTLOGO

________________________________________________________________________________

_______MBR   \Device\Harddisk0\DR0  

0x00000000   33 C0 8E D0 BC 00 7C FB 8E C0 8E D8 8B F4 BF 00   3À.м.|û.À.Ø.ô¿.
0x00000010   06 B9 00 02 FC F3 A4 EA 60 06 00 00 00 00 00 00   .¹..üó¤ê`.......
0x00000020   52 65 63 6F 76 65 72 79 4D 67 72 20 00 D8 8D 38   RecoveryMgr .Ø.8
0x00000030   00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00   ................
0x00000040   00 00 00 00 00 00 00 00 00 00 00 00 00 00 0D 0A   ................
0x00000050   00 00 00 00 57 00 00 00 FF FF FF FF FF FF FF FF   ....W...........
0x00000060   86 4C BD BE 30 06 AC B4 0E 33 DB CD 10 0A C0 75   .L½¾0.¬´.3ÛÍ..Àu
0x00000070   F5 E3 0B FE 06 13 06 53 53 E8 6D 00 EB 36 B8 12   õã.þ...SSèm.ë6¸.
0x00000080   5F 66 BA 51 50 48 5F CD 15 80 E3 01 74 20 EB 24   _fºQPH_Í..ã.t ë$
0x00000090   8B 16 6C 04 FA 66 A1 1C 06 BF 54 06 B1 03 F2 66   ..l.úf¡..¿T.±.òf
0x000000A0   AF FB 74 0A A1 3D 00 00 C2 83 F8 24 76 E6 B0 01   ¯ût.¡=..Â.ø$væ°.
0x000000B0   84 C0 75 1C BB C6 7D 66 8B 37 66 8B 3E 2C 06 66   .Àu.»Æ}f.7f.>,.f
0x000000C0   3B F7 74 07 80 C3 10 73 EE EB 05 BB 28 06 EB 10   ;÷t..Ã.sîë.»(.ë.
0x000000D0   BB C2 7D 80 7F FC 00 78 07 80 C3 10 73 F5 EB FE   »Â}..ü.x..Ã.sõëþ
0x000000E0   66 FF 77 04 E8 02 00 FF E4 C8 10 00 00 B4 08 B2   f.w.è...äÈ...´.²
0x000000F0   80 CD 13 8A C1 24 3F FE C6 8A D8 F6 E6 C0 E9 06   .Í..Á$?þÆ.ØöæÀé.
0x00000100   86 CD 41 91 F7 E1 39 56 06 8B 56 06 8B 46 04 73   .ÍA.÷á9V..V..F.s
0x00000110   1C F7 F1 91 92 F6 F3 86 CD C0 E1 06 02 CC 41 8A   .÷ñ..öó.ÍÀá..ÌA.
0x00000120   F0 B8 01 02 BB 00 7C 86 26 13 06 EB 14 83 C4 10   ð¸..».|.&..ë..Ä.
0x00000130   0E 0E 52 50 0E 68 00 7C 6A 01 6A 10 8B F4 B8 00   ..RP.h.|j.j..ô¸.
0x00000140   42 B2 80 CD 13 C9 C2 04 00 1E 50 53 0E 1F BB 1B   B².Í.ÉÂ...PS..».
0x00000150   06 A0 17 04 24 0F 88 47 04 E4 60 3C E0 74 1A 3C   ....$..G.ä`<àt.<
0x00000160   1D 74 10 3C 2A 74 0C 3C 36 74 08 3C 38 74 04 84   .t.<*t.<6t.<8t..
0x00000170   C0 79 06 66 83 27 00 EB 06 FE 07 02 1F 88 07 5B   Ày.f.'.ë.þ.....[
0x00000180   58 1F EA 00 00 00 00 00 00 00 00 00 00 00 00 00   X.ê.............
0x00000190   00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00   ................
0x000001A0   00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00   ................
0x000001B0   00 00 00 00 00 00 00 00 D4 24 F5 4C 00 00 80 20   ........Ô$õL... 
0x000001C0   21 00 07 7E 25 19 00 08 00 00 00 38 06 00 00 7E   !..~%......8...~
0x000001D0   26 19 07 FE FF FF 00 40 06 00 00 98 87 38 00 FE   &..þ...@.....8.þ
0x000001E0   FF FF 07 FE FF FF 00 D8 8D 38 00 80 AA 01 00 00   ...þ...Ø.8..ª...
0x000001F0   00 00 00 00 00 00 00 00 00 00 00 00 00 00 55 AA   ..............Uª






TDS


18:52:23.0780 1164 TDSS rootkit removing tool 2.7.20.0 Mar 9 2012 17:10:43
18:52:24.0139 1164 ============================================================
18:52:24.0139 1164 Current date / time: 2012/03/13 18:52:24.0139
18:52:24.0139 1164 SystemInfo:
18:52:24.0139 1164
18:52:24.0139 1164 OS Version: 6.1.7601 ServicePack: 1.0
18:52:24.0139 1164 Product type: Workstation
18:52:24.0139 1164 ComputerName: JANISKA-PC
18:52:24.0139 1164 UserName: janiska
18:52:24.0139 1164 Windows directory: C:\Windows
18:52:24.0139 1164 System windows directory: C:\Windows
18:52:24.0139 1164 Running under WOW64
18:52:24.0139 1164 Processor architecture: Intel x64
18:52:24.0139 1164 Number of processors: 2
18:52:24.0139 1164 Page size: 0x1000
18:52:24.0139 1164 Boot type: Safe boot with network
18:52:24.0139 1164 ============================================================
18:52:24.0856 1164 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
18:52:24.0872 1164 \Device\Harddisk0\DR0:
18:52:24.0872 1164 MBR used
18:52:24.0872 1164 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x63800
18:52:24.0872 1164 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x64000, BlocksNum 0x38879800
18:52:24.0872 1164 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x388DD800, BlocksNum 0x1AA8000
18:52:24.0919 1164 Initialize success
18:52:24.0919 1164 ============================================================
18:52:42.0921 1780 ============================================================
18:52:42.0921 1780 Scan started
18:52:42.0921 1780 Mode: Manual; SigCheck; TDLFS;
18:52:42.0921 1780 ============================================================
18:52:43.0904 1780 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
18:52:44.0138 1780 1394ohci - ok
18:52:44.0216 1780 Accelerometer (1cffe9c06e66a57dae1452e449a58240) C:\Windows\system32\DRIVERS\Accelerometer.sys
18:52:44.0388 1780 Accelerometer - ok
18:52:44.0466 1780 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
18:52:44.0481 1780 ACPI - ok
18:52:44.0528 1780 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
18:52:44.0606 1780 AcpiPmi - ok
18:52:44.0653 1780 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
18:52:44.0669 1780 adp94xx - ok
18:52:44.0747 1780 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
18:52:44.0762 1780 adpahci - ok
18:52:44.0778 1780 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
18:52:44.0793 1780 adpu320 - ok
18:52:44.0840 1780 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
18:52:44.0918 1780 AFD - ok
18:52:44.0996 1780 AgereSoftModem (98022774d9930ecbb292e70db7601df6) C:\Windows\system32\DRIVERS\agrsm64.sys
18:52:45.0043 1780 AgereSoftModem - ok
18:52:45.0074 1780 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
18:52:45.0090 1780 agp440 - ok
18:52:45.0168 1780 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
18:52:45.0183 1780 aliide - ok
18:52:45.0199 1780 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
18:52:45.0215 1780 amdide - ok
18:52:45.0246 1780 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
18:52:45.0293 1780 AmdK8 - ok
18:52:45.0308 1780 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
18:52:45.0339 1780 AmdPPM - ok
18:52:45.0433 1780 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
18:52:45.0449 1780 amdsata - ok
18:52:45.0480 1780 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
18:52:45.0480 1780 amdsbs - ok
18:52:45.0511 1780 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
18:52:45.0527 1780 amdxata - ok
18:52:45.0558 1780 androidusb (4de0d5d747a73797c95a97dcce5018b5) C:\Windows\system32\Drivers\ssadadb.sys
18:52:45.0558 1780 androidusb - ok
18:52:45.0605 1780 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
18:52:45.0729 1780 AppID - ok
18:52:45.0807 1780 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
18:52:45.0807 1780 arc - ok
18:52:45.0823 1780 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
18:52:45.0839 1780 arcsas - ok
18:52:45.0870 1780 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
18:52:45.0979 1780 AsyncMac - ok
18:52:46.0057 1780 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
18:52:46.0073 1780 atapi - ok
18:52:46.0104 1780 AtiHdmiService (04a5815df7e8b037df674d3ccacc0c31) C:\Windows\system32\drivers\AtiHdmi.sys
18:52:46.0119 1780 AtiHdmiService - ok
18:52:46.0229 1780 atikmdag (c5758bf1dfd762a5b17041ff061b7750) C:\Windows\system32\DRIVERS\atikmdag.sys
18:52:46.0385 1780 atikmdag - ok
18:52:46.0494 1780 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
18:52:46.0541 1780 b06bdrv - ok
18:52:46.0587 1780 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
18:52:46.0619 1780 b57nd60a - ok
18:52:46.0759 1780 BCM43XX (0e14a0071fe26a570bcaff5401014717) C:\Windows\system32\DRIVERS\bcmwl664.sys
18:52:46.0821 1780 BCM43XX - ok
18:52:46.0853 1780 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
18:52:46.0899 1780 Beep - ok
18:52:46.0977 1780 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
18:52:47.0009 1780 blbdrive - ok
18:52:47.0040 1780 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
18:52:47.0071 1780 bowser - ok
18:52:47.0133 1780 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
18:52:47.0180 1780 BrFiltLo - ok
18:52:47.0227 1780 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
18:52:47.0243 1780 BrFiltUp - ok
18:52:47.0274 1780 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
18:52:47.0305 1780 Brserid - ok
18:52:47.0336 1780 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
18:52:47.0352 1780 BrSerWdm - ok
18:52:47.0383 1780 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
18:52:47.0399 1780 BrUsbMdm - ok
18:52:47.0461 1780 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
18:52:47.0492 1780 BrUsbSer - ok
18:52:47.0539 1780 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\drivers\BthEnum.sys
18:52:47.0601 1780 BthEnum - ok
18:52:47.0617 1780 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
18:52:47.0648 1780 BTHMODEM - ok
18:52:47.0664 1780 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys
18:52:47.0695 1780 BthPan - ok
18:52:47.0773 1780 BTHPORT (64c198198501f7560ee41d8d1efa7952) C:\Windows\System32\Drivers\BTHport.sys
18:52:47.0804 1780 BTHPORT - ok
18:52:47.0851 1780 BTHUSB (f188b7394d81010767b6df3178519a37) C:\Windows\System32\Drivers\BTHUSB.sys
18:52:47.0882 1780 BTHUSB - ok
18:52:47.0913 1780 btwaudio (6bcfdc2b5b7f66d484486d4bd4b39a6b) C:\Windows\system32\drivers\btwaudio.sys
18:52:47.0929 1780 btwaudio - ok
18:52:47.0991 1780 btwavdt (82dc8b7c626e526681c1bebed2bc3ff9) C:\Windows\system32\drivers\btwavdt.sys
18:52:47.0991 1780 btwavdt - ok
18:52:48.0038 1780 btwl2cap (6149301dc3f81d6f9667a3fbac410975) C:\Windows\system32\DRIVERS\btwl2cap.sys
18:52:48.0038 1780 btwl2cap - ok
18:52:48.0054 1780 btwrchid (28e105ad3b79f440bf94780f507bf66a) C:\Windows\system32\DRIVERS\btwrchid.sys
18:52:48.0069 1780 btwrchid - ok
18:52:48.0085 1780 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
18:52:48.0132 1780 cdfs - ok
18:52:48.0179 1780 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\drivers\cdrom.sys
18:52:48.0210 1780 cdrom - ok
18:52:48.0288 1780 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
18:52:48.0319 1780 circlass - ok
18:52:48.0366 1780 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
18:52:48.0381 1780 CLFS - ok
18:52:48.0428 1780 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
18:52:48.0444 1780 CmBatt - ok
18:52:48.0475 1780 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
18:52:48.0491 1780 cmdide - ok
18:52:48.0569 1780 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
18:52:48.0600 1780 CNG - ok
18:52:48.0725 1780 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
18:52:48.0725 1780 Compbatt - ok
18:52:48.0771 1780 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
18:52:48.0803 1780 CompositeBus - ok
18:52:48.0849 1780 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
18:52:48.0849 1780 crcdisk - ok
18:52:48.0912 1780 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
18:52:48.0959 1780 DfsC - ok
18:52:49.0037 1780 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
18:52:49.0068 1780 discache - ok
18:52:49.0115 1780 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
18:52:49.0115 1780 Disk - ok
18:52:49.0161 1780 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
18:52:49.0193 1780 drmkaud - ok
18:52:49.0239 1780 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
18:52:49.0271 1780 DXGKrnl - ok
18:52:49.0395 1780 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
18:52:49.0473 1780 ebdrv - ok
18:52:49.0551 1780 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
18:52:49.0583 1780 elxstor - ok
18:52:49.0614 1780 enecir (524c79054636d2e5751169005006460b) C:\Windows\system32\DRIVERS\enecir.sys
18:52:49.0645 1780 enecir - ok
18:52:49.0676 1780 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
18:52:49.0707 1780 ErrDev - ok
18:52:49.0801 1780 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
18:52:49.0848 1780 exfat - ok
18:52:49.0863 1780 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
18:52:49.0926 1780 fastfat - ok
18:52:49.0957 1780 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
18:52:50.0004 1780 fdc - ok
18:52:50.0082 1780 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
18:52:50.0097 1780 FileInfo - ok
18:52:50.0113 1780 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
18:52:50.0175 1780 Filetrace - ok
18:52:50.0191 1780 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
18:52:50.0207 1780 flpydisk - ok
18:52:50.0253 1780 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
18:52:50.0253 1780 FltMgr - ok
18:52:50.0285 1780 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
18:52:50.0300 1780 FsDepends - ok
18:52:50.0316 1780 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
18:52:50.0331 1780 Fs_Rec - ok
18:52:50.0378 1780 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
18:52:50.0394 1780 fvevol - ok
18:52:50.0456 1780 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
18:52:50.0472 1780 gagp30kx - ok
18:52:50.0534 1780 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
18:52:50.0565 1780 hcw85cir - ok
18:52:50.0597 1780 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
18:52:50.0628 1780 HdAudAddService - ok
18:52:50.0643 1780 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
18:52:50.0659 1780 HDAudBus - ok
18:52:50.0721 1780 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
18:52:50.0737 1780 HidBatt - ok
18:52:50.0753 1780 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
18:52:50.0799 1780 HidBth - ok
18:52:50.0815 1780 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
18:52:50.0846 1780 HidIr - ok
18:52:50.0877 1780 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
18:52:50.0893 1780 HidUsb - ok
18:52:51.0002 1780 hpdskflt (05712fddbd45a5864eb326faabc6a4e3) C:\Windows\system32\DRIVERS\hpdskflt.sys
18:52:51.0002 1780 hpdskflt - ok
18:52:51.0033 1780 HpqKbFiltr (9af482d058be59cc28bce52e7c4b747c) C:\Windows\system32\DRIVERS\HpqKbFiltr.sys
18:52:51.0065 1780 HpqKbFiltr - ok
18:52:51.0127 1780 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
18:52:51.0127 1780 HpSAMD - ok
18:52:51.0189 1780 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
18:52:51.0236 1780 HTTP - ok
18:52:51.0314 1780 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
18:52:51.0330 1780 hwpolicy - ok
18:52:51.0392 1780 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
18:52:51.0408 1780 i8042prt - ok
18:52:51.0423 1780 iaStor (1d004cb1da6323b1f55caef7f94b61d9) C:\Windows\system32\DRIVERS\iaStor.sys
18:52:51.0439 1780 iaStor - ok
18:52:51.0470 1780 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
18:52:51.0486 1780 iaStorV - ok
18:52:51.0595 1780 igfx (a87261ef1546325b559374f5689cf5bc) C:\Windows\system32\DRIVERS\igdkmd64.sys
18:52:51.0720 1780 igfx - ok
18:52:51.0798 1780 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
18:52:51.0813 1780 iirsp - ok
18:52:51.0860 1780 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
18:52:51.0876 1780 intelide - ok
18:52:51.0907 1780 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
18:52:51.0923 1780 intelppm - ok
18:52:51.0969 1780 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:52:52.0016 1780 IpFilterDriver - ok
18:52:52.0079 1780 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
18:52:52.0094 1780 IPMIDRV - ok
18:52:52.0141 1780 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
18:52:52.0172 1780 IPNAT - ok
18:52:52.0203 1780 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
18:52:52.0266 1780 IRENUM - ok
18:52:52.0328 1780 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
18:52:52.0344 1780 isapnp - ok
18:52:52.0359 1780 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
18:52:52.0375 1780 iScsiPrt - ok
18:52:52.0406 1780 JMCR (f8844b00c10e386c704c610e95a9847d) C:\Windows\system32\DRIVERS\jmcr.sys
18:52:52.0422 1780 JMCR - ok
18:52:52.0437 1780 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys
18:52:52.0453 1780 kbdclass - ok
18:52:52.0469 1780 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys
18:52:52.0500 1780 kbdhid - ok
18:52:52.0531 1780 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
18:52:52.0547 1780 KSecDD - ok
18:52:52.0609 1780 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
18:52:52.0625 1780 KSecPkg - ok
18:52:52.0656 1780 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
18:52:52.0703 1780 ksthunk - ok
18:52:52.0765 1780 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
18:52:52.0812 1780 lltdio - ok
18:52:52.0859 1780 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
18:52:52.0874 1780 LSI_FC - ok
18:52:52.0921 1780 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
18:52:52.0937 1780 LSI_SAS - ok
18:52:52.0952 1780 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
18:52:52.0968 1780 LSI_SAS2 - ok
18:52:52.0999 1780 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
18:52:53.0015 1780 LSI_SCSI - ok
18:52:53.0046 1780 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
18:52:53.0093 1780 luafv - ok
18:52:53.0124 1780 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
18:52:53.0139 1780 megasas - ok
18:52:53.0217 1780 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
18:52:53.0233 1780 MegaSR - ok
18:52:53.0249 1780 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
18:52:53.0295 1780 Modem - ok
18:52:53.0311 1780 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
18:52:53.0342 1780 monitor - ok
18:52:53.0373 1780 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\drivers\mouclass.sys
18:52:53.0389 1780 mouclass - ok
18:52:53.0405 1780 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
18:52:53.0436 1780 mouhid - ok
18:52:53.0514 1780 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
18:52:53.0514 1780 mountmgr - ok
18:52:53.0561 1780 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
18:52:53.0561 1780 mpio - ok
18:52:53.0592 1780 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
18:52:53.0639 1780 mpsdrv - ok
18:52:53.0670 1780 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
18:52:53.0748 1780 MRxDAV - ok
18:52:53.0826 1780 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
18:52:53.0857 1780 mrxsmb - ok
18:52:53.0904 1780 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:52:53.0919 1780 mrxsmb10 - ok
18:52:53.0935 1780 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:52:53.0951 1780 mrxsmb20 - ok
18:52:53.0982 1780 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
18:52:53.0982 1780 msahci - ok
18:52:54.0029 1780 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
18:52:54.0029 1780 msdsm - ok
18:52:54.0122 1780 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
18:52:54.0153 1780 Msfs - ok
18:52:54.0169 1780 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
18:52:54.0231 1780 mshidkmdf - ok
18:52:54.0247 1780 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
18:52:54.0263 1780 msisadrv - ok
18:52:54.0294 1780 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
18:52:54.0325 1780 MSKSSRV - ok
18:52:54.0341 1780 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
18:52:54.0387 1780 MSPCLOCK - ok
18:52:54.0419 1780 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
18:52:54.0465 1780 MSPQM - ok
18:52:54.0559 1780 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
18:52:54.0575 1780 MsRPC - ok
18:52:54.0606 1780 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
18:52:54.0621 1780 mssmbios - ok
18:52:54.0653 1780 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
18:52:54.0699 1780 MSTEE - ok
18:52:54.0715 1780 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
18:52:54.0746 1780 MTConfig - ok
18:52:54.0777 1780 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
18:52:54.0777 1780 Mup - ok
18:52:54.0871 1780 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
18:52:54.0902 1780 NativeWifiP - ok
18:52:54.0949 1780 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
18:52:54.0965 1780 NDIS - ok
18:52:54.0980 1780 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
18:52:55.0027 1780 NdisCap - ok
18:52:55.0105 1780 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
18:52:55.0152 1780 NdisTapi - ok
18:52:55.0199 1780 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
18:52:55.0245 1780 Ndisuio - ok
18:52:55.0277 1780 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
18:52:55.0323 1780 NdisWan - ok
18:52:55.0370 1780 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
18:52:55.0417 1780 NDProxy - ok
18:52:55.0479 1780 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
18:52:55.0526 1780 NetBIOS - ok
18:52:55.0557 1780 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
18:52:55.0604 1780 NetBT - ok
18:52:55.0729 1780 netw5v64 (64428dfdaf6e88366cb51f45a79c5f69) C:\Windows\system32\DRIVERS\netw5v64.sys
18:52:55.0854 1780 netw5v64 - ok
18:52:55.0932 1780 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
18:52:55.0932 1780 nfrd960 - ok
18:52:55.0994 1780 npf (c31fa031335eff434b2d94278e74bcce) C:\Windows\system32\drivers\npf.sys
18:52:56.0010 1780 npf - ok
18:52:56.0025 1780 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
18:52:56.0072 1780 Npfs - ok
18:52:56.0103 1780 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
18:52:56.0150 1780 nsiproxy - ok
18:52:56.0275 1780 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
18:52:56.0306 1780 Ntfs - ok
18:52:56.0337 1780 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
18:52:56.0384 1780 Null - ok
18:52:56.0478 1780 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
18:52:56.0493 1780 nvraid - ok
18:52:56.0540 1780 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
18:52:56.0540 1780 nvstor - ok
18:52:56.0587 1780 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
18:52:56.0603 1780 nv_agp - ok
18:52:56.0665 1780 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
18:52:56.0681 1780 ohci1394 - ok
18:52:56.0727 1780 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
18:52:56.0743 1780 Parport - ok
18:52:56.0774 1780 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys
18:52:56.0774 1780 partmgr - ok
18:52:56.0868 1780 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
18:52:56.0868 1780 pci - ok
18:52:56.0883 1780 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
18:52:56.0899 1780 pciide - ok
18:52:56.0930 1780 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
18:52:56.0946 1780 pcmcia - ok
18:52:56.0977 1780 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
18:52:56.0977 1780 pcw - ok
18:52:57.0008 1780 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
18:52:57.0055 1780 PEAUTH - ok
18:52:57.0180 1780 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
18:52:57.0227 1780 PptpMiniport - ok
18:52:57.0242 1780 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
18:52:57.0273 1780 Processor - ok
18:52:57.0305 1780 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
18:52:57.0336 1780 Psched - ok
18:52:57.0383 1780 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
18:52:57.0429 1780 ql2300 - ok
18:52:57.0492 1780 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
18:52:57.0507 1780 ql40xx - ok
18:52:57.0523 1780 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
18:52:57.0554 1780 QWAVEdrv - ok
18:52:57.0585 1780 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
18:52:57.0632 1780 RasAcd - ok
18:52:57.0663 1780 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
18:52:57.0695 1780 RasAgileVpn - ok
18:52:57.0726 1780 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
18:52:57.0773 1780 Rasl2tp - ok
18:52:57.0851 1780 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
18:52:57.0897 1780 RasPppoe - ok
18:52:57.0913 1780 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
18:52:57.0960 1780 RasSstp - ok
18:52:57.0975 1780 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
18:52:58.0007 1780 rdbss - ok
18:52:58.0038 1780 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
18:52:58.0053 1780 rdpbus - ok
18:52:58.0085 1780 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
18:52:58.0131 1780 RDPCDD - ok
18:52:58.0147 1780 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
18:52:58.0194 1780 RDPENCDD - ok
18:52:58.0256 1780 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
18:52:58.0303 1780 RDPREFMP - ok
18:52:58.0334 1780 RDPWD (15b66c206b5cb095bab980553f38ed23) C:\Windows\system32\drivers\RDPWD.sys
18:52:58.0365 1780 RDPWD - ok
18:52:58.0412 1780 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
18:52:58.0428 1780 rdyboost - ok
18:52:58.0475 1780 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys
18:52:58.0506 1780 RFCOMM - ok
18:52:58.0537 1780 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
18:52:58.0584 1780 rspndr - ok
18:52:58.0662 1780 RTL8167 (91296f0b2653281b2f11e0fce56aa427) C:\Windows\system32\DRIVERS\Rt64win7.sys
18:52:58.0677 1780 RTL8167 - ok
18:52:58.0724 1780 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
18:52:58.0724 1780 sbp2port - ok
18:52:58.0771 1780 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
18:52:58.0818 1780 scfilter - ok
18:52:58.0865 1780 sdbus (111e0ebc0ad79cb0fa014b907b231cf0) C:\Windows\system32\drivers\sdbus.sys
18:52:58.0896 1780 sdbus - ok
18:52:58.0974 1780 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
18:52:59.0021 1780 secdrv - ok
18:52:59.0052 1780 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
18:52:59.0067 1780 Serenum - ok
18:52:59.0099 1780 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
18:52:59.0099 1780 Serial - ok
18:52:59.0145 1780 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
18:52:59.0161 1780 sermouse - ok
18:52:59.0208 1780 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
18:52:59.0255 1780 sffdisk - ok
18:52:59.0301 1780 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
18:52:59.0333 1780 sffp_mmc - ok
18:52:59.0348 1780 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
18:52:59.0364 1780 sffp_sd - ok
18:52:59.0395 1780 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
18:52:59.0411 1780 sfloppy - ok
18:52:59.0442 1780 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
18:52:59.0457 1780 SiSRaid2 - ok
18:52:59.0473 1780 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
18:52:59.0489 1780 SiSRaid4 - ok
18:52:59.0520 1780 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
18:52:59.0567 1780 Smb - ok
18:52:59.0629 1780 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
18:52:59.0645 1780 spldr - ok
18:52:59.0691 1780 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
18:52:59.0723 1780 srv - ok
18:52:59.0769 1780 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
18:52:59.0801 1780 srv2 - ok
18:52:59.0894 1780 SrvHsfHDA (0c4540311e11664b245a263e1154cef8) C:\Windows\system32\DRIVERS\VSTAZL6.SYS
18:52:59.0910 1780 SrvHsfHDA - ok
18:52:59.0957 1780 SrvHsfV92 (02071d207a9858fbe3a48cbfd59c4a04) C:\Windows\system32\DRIVERS\VSTDPV6.SYS
18:53:00.0003 1780 SrvHsfV92 - ok
18:53:00.0081 1780 SrvHsfWinac (18e40c245dbfaf36fd0134a7ef2df396) C:\Windows\system32\DRIVERS\VSTCNXT6.SYS
18:53:00.0113 1780 SrvHsfWinac - ok
18:53:00.0144 1780 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
18:53:00.0159 1780 srvnet - ok
18:53:00.0206 1780 ssadbus (8f8324ed1de63ffc7b1a02cd2d963c72) C:\Windows\system32\DRIVERS\ssadbus.sys
18:53:00.0206 1780 ssadbus - ok
18:53:00.0300 1780 ssadmdfl (58221efcb74167b73667f0024c661ce0) C:\Windows\system32\DRIVERS\ssadmdfl.sys
18:53:00.0300 1780 ssadmdfl - ok
18:53:00.0331 1780 ssadmdm (4da7c71bfac5ad71255b7e4cab980163) C:\Windows\system32\DRIVERS\ssadmdm.sys
18:53:00.0347 1780 ssadmdm - ok
18:53:00.0393 1780 ssadserd (d33d1bd3ec0e766211a234f56a12726d) C:\Windows\system32\DRIVERS\ssadserd.sys
18:53:00.0393 1780 ssadserd - ok
18:53:00.0456 1780 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
18:53:00.0471 1780 stexstor - ok
18:53:00.0565 1780 STHDA (dffbc024dfc7bb05b2129e05cbc7a201) C:\Windows\system32\DRIVERS\stwrt64.sys
18:53:00.0612 1780 STHDA - ok
18:53:00.0659 1780 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
18:53:00.0659 1780 swenum - ok
18:53:00.0690 1780 SynTP (3a706a967295e16511e40842b1a2761d) C:\Windows\system32\DRIVERS\SynTP.sys
18:53:00.0705 1780 SynTP - ok
18:53:00.0815 1780 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys
18:53:00.0861 1780 Tcpip - ok
18:53:00.0893 1780 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys
18:53:00.0939 1780 TCPIP6 - ok
18:53:00.0971 1780 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
18:53:01.0017 1780 tcpipreg - ok
18:53:01.0049 1780 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
18:53:01.0111 1780 TDPIPE - ok
18:53:01.0158 1780 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys
18:53:01.0220 1780 TDTCP - ok
18:53:01.0236 1780 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
18:53:01.0283 1780 tdx - ok
18:53:01.0314 1780 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
18:53:01.0329 1780 TermDD - ok
18:53:01.0361 1780 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
18:53:01.0407 1780 tssecsrv - ok
18:53:01.0501 1780 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
18:53:01.0548 1780 TsUsbFlt - ok
18:53:01.0548 1780 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
18:53:01.0563 1780 TsUsbFlt - ok
18:53:01.0657 1780 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
18:53:01.0688 1780 tunnel - ok
18:53:01.0719 1780 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
18:53:01.0735 1780 uagp35 - ok
18:53:01.0766 1780 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
18:53:01.0829 1780 udfs - ok
18:53:01.0860 1780 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
18:53:01.0875 1780 uliagpkx - ok
18:53:01.0907 1780 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys
18:53:01.0922 1780 umbus - ok
18:53:01.0953 1780 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
18:53:01.0969 1780 UmPass - ok
18:53:02.0016 1780 usbbus - ok
18:53:02.0047 1780 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
18:53:02.0063 1780 usbccgp - ok
18:53:02.0109 1780 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
18:53:02.0125 1780 usbcir - ok
18:53:02.0141 1780 UsbDiag - ok
18:53:02.0156 1780 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys
18:53:02.0187 1780 usbehci - ok
18:53:02.0203 1780 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
18:53:02.0234 1780 usbhub - ok
18:53:02.0234 1780 USBModem - ok
18:53:02.0265 1780 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
18:53:02.0297 1780 usbohci - ok
18:53:02.0359 1780 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
18:53:02.0375 1780 usbprint - ok
18:53:02.0421 1780 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS
18:53:02.0453 1780 USBSTOR - ok
18:53:02.0484 1780 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys
18:53:02.0499 1780 usbuhci - ok
18:53:02.0531 1780 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\System32\Drivers\usbvideo.sys
18:53:02.0546 1780 usbvideo - ok
18:53:02.0577 1780 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
18:53:02.0593 1780 vdrvroot - ok
18:53:02.0655 1780 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
18:53:02.0671 1780 vga - ok
18:53:02.0702 1780 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
18:53:02.0749 1780 VgaSave - ok
18:53:02.0780 1780 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
18:53:02.0796 1780 vhdmp - ok
18:53:02.0827 1780 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
18:53:02.0827 1780 viaide - ok
18:53:02.0858 1780 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
18:53:02.0858 1780 volmgr - ok
18:53:02.0889 1780 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
18:53:02.0905 1780 volmgrx - ok
18:53:02.0936 1780 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
18:53:02.0952 1780 volsnap - ok
18:53:02.0967 1780 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
18:53:02.0983 1780 vsmraid - ok
18:53:03.0061 1780 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys
18:53:03.0077 1780 vwifibus - ok
18:53:03.0108 1780 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
18:53:03.0123 1780 vwififlt - ok
18:53:03.0155 1780 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys
18:53:03.0170 1780 vwifimp - ok
18:53:03.0186 1780 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
18:53:03.0201 1780 WacomPen - ok
18:53:03.0248 1780 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
18:53:03.0279 1780 WANARP - ok
18:53:03.0279 1780 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
18:53:03.0311 1780 Wanarpv6 - ok
18:53:03.0357 1780 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
18:53:03.0373 1780 Wd - ok
18:53:03.0451 1780 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
18:53:03.0467 1780 Wdf01000 - ok
18:53:03.0498 1780 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
18:53:03.0545 1780 WfpLwf - ok
18:53:03.0560 1780 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
18:53:03.0560 1780 WIMMount - ok
18:53:03.0654 1780 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
18:53:03.0669 1780 WinUsb - ok
18:53:03.0747 1780 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
18:53:03.0763 1780 WmiAcpi - ok
18:53:03.0810 1780 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
18:53:03.0841 1780 ws2ifsl - ok
18:53:03.0888 1780 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
18:53:03.0935 1780 WudfPf - ok
18:53:03.0966 1780 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
18:53:04.0028 1780 WUDFRd - ok
18:53:04.0106 1780 yukonw7 (b3eeacf62445e24fbb2cd4b0fb4db026) C:\Windows\system32\DRIVERS\yk62x64.sys
18:53:04.0137 1780 yukonw7 - ok
18:53:04.0169 1780 MBR (0x1B8) (e87728ad7419f76214421416d3b2d3a8) \Device\Harddisk0\DR0
18:53:04.0215 1780 \Device\Harddisk0\DR0 - ok
18:53:04.0231 1780 Boot (0x1200) (104169501f38e165ce27abf73181ef29) \Device\Harddisk0\DR0\Partition0
18:53:04.0231 1780 \Device\Harddisk0\DR0\Partition0 - ok
18:53:04.0262 1780 Boot (0x1200) (a3a42496dc3deb83493e97d5d80a26bf) \Device\Harddisk0\DR0\Partition1
18:53:04.0262 1780 \Device\Harddisk0\DR0\Partition1 - ok
18:53:04.0278 1780 Boot (0x1200) (d1319e6d4d73b931fd2de597f9da79e1) \Device\Harddisk0\DR0\Partition2
18:53:04.0278 1780 \Device\Harddisk0\DR0\Partition2 - ok
18:53:04.0278 1780 ============================================================
18:53:04.0278 1780 Scan finished
18:53:04.0278 1780 ============================================================
18:53:04.0293 1784 Detected object count: 0
18:53:04.0293 1784 Actual detected object count: 0
18:54:23.0822 0964 Deinitialize success

Uživatelský avatar
JuraFilth
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 209
Registrován: 23 črc 2009 16:18
Bydliště: Havířov

Re: Havet

#12 Příspěvek od JuraFilth »

combofix nefunguje, stahl jsem to prejmenovany tak jak to melo byt spustil jsem to zacal najizdet ale uplne nejak jinak nez na tom obrazku na strance zmizlo to a nic se nedelo
Naposledy upravil(a) JuraFilth dne 13 bře 2012 18:44, celkem upraveno 1 x.

Uživatelský avatar
JuraFilth
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 209
Registrován: 23 črc 2009 16:18
Bydliště: Havířov

Re: Havet

#13 Příspěvek od JuraFilth »

combofix nefunguje, stahl jsem to prejmenovany tak jak to melo byt spustil jsem to zacal najizdet ale uplne nejak jinak nez na tom obrazku na strance zmizlo to a nic se nedelo ( a delal jsem to v tom nouzovem rezimu )

Uživatelský avatar
JuraFilth
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 209
Registrován: 23 črc 2009 16:18
Bydliště: Havířov

Re: Havet

#14 Příspěvek od JuraFilth »

ehm tak jsem sel do nouzoveho rezimu bez site tak jsem spustil combofix nacital a pak hodil ''obrazovku smrti''

¨co treba zkusit obnoveni systemu asi 2 mesice zpatky (pokud to jde )? :-D dela to pry uz tak 2 mesice

Uživatelský avatar
JuraFilth
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 209
Registrován: 23 črc 2009 16:18
Bydliště: Havířov

Re: Havet

#15 Příspěvek od JuraFilth »

Mno něco umim

Zamčeno