Gmer sa neda na pocitaci spustit, v priebehu spustania je program nahle ukonceny. Niekolkokrat som urobil scan cez ComboFix, log nevygeneruje, resp. textovy subor ano, ale obsahuje len hlavicku cca. 4 riadky bez blizsich informacii. V zavere scanu cez CF sa objavi upozornenie: "System file is infected!! Atteppting to restore: C:/windows/System32/autochk.exe"
nasiel som log z predchadzaujceho programu TDSSKiller:
log:
19:48:23.0412 4232 TDSS rootkit removing tool 2.7.48.0 Jul 24 2012 13:16:32
19:48:23.0896 4232 ============================================================
19:48:23.0896 4232 Current date / time: 2012/08/06 19:48:23.0896
19:48:23.0896 4232 SystemInfo:
19:48:23.0897 4232
19:48:23.0897 4232 OS Version: 6.0.6002 ServicePack: 2.0
19:48:23.0897 4232 Product type: Workstation
19:48:23.0897 4232 ComputerName: KASTEN-PC
19:48:23.0897 4232 UserName: Peter
19:48:23.0897 4232 Windows directory: C:\windows
19:48:23.0897 4232 System windows directory: C:\windows
19:48:23.0897 4232 Processor architecture: Intel x86
19:48:23.0897 4232 Number of processors: 2
19:48:23.0897 4232 Page size: 0x1000
19:48:23.0897 4232 Boot type: Normal boot
19:48:23.0897 4232 ============================================================
19:48:24.0593 4232 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
19:48:24.0595 4232 ============================================================
19:48:24.0595 4232 \Device\Harddisk0\DR0:
19:48:24.0596 4232 MBR partitions:
19:48:24.0596 4232 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x2402CFC1
19:48:24.0596 4232 \Device\Harddisk0\DR0\Partition1: MBR, Type 0xC, StartLBA 0x2402D000, BlocksNum 0x200800
19:48:24.0596 4232 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x2422DAB0, BlocksNum 0x1201000
19:48:24.0596 4232 ============================================================
19:48:24.0609 4232 C: <-> \Device\Harddisk0\DR0\Partition0
19:48:24.0652 4232 D: <-> \Device\Harddisk0\DR0\Partition2
19:48:24.0670 4232 F: <-> \Device\Harddisk0\DR0\Partition1
19:48:24.0670 4232 ============================================================
19:48:24.0670 4232 Initialize success
19:48:24.0670 4232 ============================================================
19:48:27.0886 0288 ============================================================
19:48:27.0886 0288 Scan started
19:48:27.0886 0288 Mode: Manual;
19:48:27.0886 0288 ============================================================
19:48:28.0872 0288 Accelerometer (a9b917777841b76f299e2ea946e03adf) C:\windows\system32\DRIVERS\Accelerometer.sys
19:48:28.0913 0288 Accelerometer - ok
19:48:29.0071 0288 accoca (ec4a5d4e36a8e49261cd823450e0ba51) c:\Program Files\ActivIdentity\ActivClient\accoca.exe
19:48:29.0075 0288 accoca - ok
19:48:29.0139 0288 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\windows\system32\drivers\acpi.sys
19:48:29.0144 0288 ACPI - ok
19:48:29.0215 0288 ADIHdAudAddService (364a903711e84eb1386fa04106681b7a) C:\windows\system32\drivers\ADIHdAud.sys
19:48:29.0221 0288 ADIHdAudAddService - ok
19:48:29.0291 0288 adp94xx (04f0fcac69c7c71a3ac4eb97fafc8303) C:\windows\system32\drivers\adp94xx.sys
19:48:29.0301 0288 adp94xx - ok
19:48:29.0335 0288 adpahci (60505e0041f7751bdbb80f88bf45c2ce) C:\windows\system32\drivers\adpahci.sys
19:48:29.0340 0288 adpahci - ok
19:48:29.0359 0288 adpu160m (8a42779b02aec986eab64ecfc98f8bd7) C:\windows\system32\drivers\adpu160m.sys
19:48:29.0361 0288 adpu160m - ok
19:48:29.0380 0288 adpu320 (241c9e37f8ce45ef51c3de27515ca4e5) C:\windows\system32\drivers\adpu320.sys
19:48:29.0383 0288 adpu320 - ok
19:48:29.0436 0288 AEADIFilters (585f5793bb5d79c8754ee63bcbaf2b3a) C:\windows\system32\AEADISRV.EXE
19:48:29.0438 0288 AEADIFilters - ok
19:48:29.0484 0288 AeLookupSvc (9d1fda9e086ba64e3c93c9de32461bcf) C:\windows\System32\aelupsvc.dll
19:48:29.0485 0288 AeLookupSvc - ok
19:48:29.0565 0288 AFD (3911b972b55fea0478476b2e777b29fa) C:\windows\system32\drivers\afd.sys
19:48:29.0611 0288 AFD - ok
19:48:29.0652 0288 AgereModemAudio (8ed60797908fd394eee0d6949f493224) C:\Windows\system32\agrsmsvc.exe
19:48:29.0661 0288 AgereModemAudio - ok
19:48:29.0783 0288 AgereSoftModem (38325c6aa8eae011897d61ce48ec6435) C:\windows\system32\DRIVERS\AGRSM.sys
19:48:29.0808 0288 AgereSoftModem - ok
19:48:29.0846 0288 agp440 (13f9e33747e6b41a3ff305c37db0d360) C:\windows\system32\drivers\agp440.sys
19:48:29.0848 0288 agp440 - ok
19:48:29.0868 0288 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\windows\system32\drivers\djsvs.sys
19:48:29.0871 0288 aic78xx - ok
19:48:29.0910 0288 ALG (a1545b731579895d8cc44fc0481c1192) C:\windows\System32\alg.exe
19:48:29.0912 0288 ALG - ok
19:48:29.0926 0288 aliide (9eaef5fc9b8e351afa7e78a6fae91f91) C:\windows\system32\drivers\aliide.sys
19:48:29.0969 0288 aliide - ok
19:48:29.0987 0288 amdagp (c47344bc706e5f0b9dce369516661578) C:\windows\system32\drivers\amdagp.sys
19:48:30.0031 0288 amdagp - ok
19:48:30.0036 0288 amdide (9b78a39a4c173fdbc1321e0dd659b34c) C:\windows\system32\drivers\amdide.sys
19:48:30.0037 0288 amdide - ok
19:48:30.0058 0288 AmdK7 (18f29b49ad23ecee3d2a826c725c8d48) C:\windows\system32\drivers\amdk7.sys
19:48:30.0059 0288 AmdK7 - ok
19:48:30.0080 0288 AmdK8 (93ae7f7dd54ab986a6f1a1b37be7442d) C:\windows\system32\DRIVERS\amdk8.sys
19:48:30.0080 0288 AmdK8 - ok
19:48:30.0112 0288 Appinfo (c6d704c7f0434dc791aac37cac4b6e14) C:\windows\System32\appinfo.dll
19:48:30.0113 0288 Appinfo - ok
19:48:30.0162 0288 arc (5d2888182fb46632511acee92fdad522) C:\windows\system32\drivers\arc.sys
19:48:30.0163 0288 arc - ok
19:48:30.0180 0288 arcsas (5e2a321bd7c8b3624e41fdec3e244945) C:\windows\system32\drivers\arcsas.sys
19:48:30.0181 0288 arcsas - ok
19:48:30.0274 0288 ASBroker (46ba50de5add62aa4ce173eda629245a) c:\Program Files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll
19:48:30.0275 0288 ASBroker - ok
19:48:30.0298 0288 ASChannel (7bec093b781a2ac8b270ebd4695adc97) c:\Program Files\Hewlett-Packard\IAM\Bin\AsChnl.dll
19:48:30.0300 0288 ASChannel - ok
19:48:30.0491 0288 aspnet_state (40c145f12ff461a0220303bda134f598) C:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
19:48:30.0496 0288 aspnet_state - ok
19:48:30.0523 0288 AsyncMac (53b202abee6455406254444303e87be1) C:\windows\system32\DRIVERS\asyncmac.sys
19:48:30.0524 0288 AsyncMac - ok
19:48:30.0543 0288 atapi (2d9c903dc76a66813d350a562de40ed9) C:\windows\system32\drivers\atapi.sys
19:48:30.0544 0288 atapi - ok
19:48:30.0611 0288 AudioEndpointBuilder (68e2a1a0407a66cf50da0300852424ab) C:\windows\System32\Audiosrv.dll
19:48:30.0615 0288 AudioEndpointBuilder - ok
19:48:30.0622 0288 Audiosrv (68e2a1a0407a66cf50da0300852424ab) C:\windows\System32\Audiosrv.dll
19:48:30.0625 0288 Audiosrv - ok
19:48:30.0698 0288 b57nd60x (502f1c30bd50b32d00ce4dcaecc3d3c7) C:\windows\system32\DRIVERS\b57nd60x.sys
19:48:30.0730 0288 b57nd60x - ok
19:48:30.0824 0288 BCM43XX (3f5e7621cdf6867d3d8417d13a098277) C:\windows\system32\DRIVERS\bcmwl6.sys
19:48:30.0844 0288 BCM43XX - ok
19:48:30.0893 0288 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\windows\system32\drivers\Beep.sys
19:48:30.0923 0288 Beep - ok
19:48:30.0998 0288 BFE (c789af0f724fda5852fb9a7d3a432381) C:\windows\System32\bfe.dll
19:48:31.0008 0288 BFE - ok
19:48:31.0099 0288 BITS (93952506c6d67330367f7e7934b6a02f) C:\windows\system32\qmgr.dll
19:48:31.0110 0288 BITS - ok
19:48:31.0147 0288 blbdrive (d4df28447741fd3d953526e33a617397) C:\windows\system32\drivers\blbdrive.sys
19:48:31.0148 0288 blbdrive - ok
19:48:31.0201 0288 bowser (35f376253f687bde63976ccb3f2108ca) C:\windows\system32\DRIVERS\bowser.sys
19:48:31.0204 0288 bowser - ok
19:48:31.0236 0288 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\windows\system32\drivers\brfiltlo.sys
19:48:31.0240 0288 BrFiltLo - ok
19:48:31.0291 0288 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\windows\system32\drivers\brfiltup.sys
19:48:31.0292 0288 BrFiltUp - ok
19:48:31.0321 0288 Browser (a3629a0c4226f9e9c72faaeebc3ad33c) C:\windows\System32\browser.dll
19:48:31.0323 0288 Browser - ok
19:48:31.0364 0288 Brserid (b304e75cff293029eddf094246747113) C:\windows\system32\drivers\brserid.sys
19:48:31.0371 0288 Brserid - ok
19:48:31.0400 0288 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\windows\system32\drivers\brserwdm.sys
19:48:31.0401 0288 BrSerWdm - ok
19:48:31.0437 0288 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\windows\system32\drivers\brusbmdm.sys
19:48:31.0438 0288 BrUsbMdm - ok
19:48:31.0458 0288 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\windows\system32\drivers\brusbser.sys
19:48:31.0459 0288 BrUsbSer - ok
19:48:31.0503 0288 BthEnum (6d39c954799b63ba866910234cf7d726) C:\windows\system32\DRIVERS\BthEnum.sys
19:48:31.0544 0288 BthEnum - ok
19:48:31.0571 0288 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\windows\system32\drivers\bthmodem.sys
19:48:31.0572 0288 BTHMODEM - ok
19:48:31.0606 0288 BthPan (5904efa25f829bf84ea6fb045134a1d8) C:\windows\system32\DRIVERS\bthpan.sys
19:48:31.0608 0288 BthPan - ok
19:48:31.0683 0288 BTHPORT (611ff3f2f095c8d4a6d4cfd9dcc09793) C:\windows\system32\Drivers\BTHport.sys
19:48:31.0699 0288 BTHPORT - ok
19:48:31.0738 0288 BthServ (a4c8377fa4a994e07075107dbe2e3dce) C:\windows\System32\bthserv.dll
19:48:31.0741 0288 BthServ - ok
19:48:31.0753 0288 BTHUSB (d330803eab2a15caec7f011f1d4cb30e) C:\windows\system32\Drivers\BTHUSB.sys
19:48:31.0772 0288 BTHUSB - ok
19:48:31.0823 0288 btwaudio (99aeea7cefdfc6e4151a8f620d682088) C:\windows\system32\drivers\btwaudio.sys
19:48:31.0824 0288 btwaudio - ok
19:48:31.0862 0288 btwavdt (195872e48a7fb01f8bc9b800f70f4054) C:\windows\system32\drivers\btwavdt.sys
19:48:31.0863 0288 btwavdt - ok
19:48:31.0895 0288 btwrchid (0724e7d6c9b6a289eddda33fa8176e80) C:\windows\system32\DRIVERS\btwrchid.sys
19:48:31.0914 0288 btwrchid - ok
19:48:32.0134 0288 catchme - ok
19:48:32.0171 0288 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\windows\system32\DRIVERS\cdfs.sys
19:48:32.0172 0288 cdfs - ok
19:48:32.0244 0288 cdrom (6b4bffb9becd728097024276430db314) C:\windows\system32\DRIVERS\cdrom.sys
19:48:32.0245 0288 cdrom - ok
19:48:32.0297 0288 CertPropSvc (312ec3e37a0a1f2006534913e37b4423) C:\windows\System32\certprop.dll
19:48:32.0298 0288 CertPropSvc - ok
19:48:32.0330 0288 circlass (e5d4133f37219dbcfe102bc61072589d) C:\windows\system32\drivers\circlass.sys
19:48:32.0386 0288 circlass - ok
19:48:32.0436 0288 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\windows\system32\CLFS.sys
19:48:32.0446 0288 CLFS - ok
19:48:32.0557 0288 clr_optimization_v2.0.50727_32 (8ee772032e2fe80a924f3b8dd5082194) C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:48:32.0563 0288 clr_optimization_v2.0.50727_32 - ok
19:48:32.0644 0288 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:48:32.0647 0288 clr_optimization_v4.0.30319_32 - ok
19:48:32.0714 0288 CmBatt (99afc3795b58cc478fbbbcdc658fcb56) C:\windows\system32\DRIVERS\CmBatt.sys
19:48:32.0719 0288 CmBatt - ok
19:48:32.0734 0288 cmdide (0ca25e686a4928484e9fdabd168ab629) C:\windows\system32\drivers\cmdide.sys
19:48:32.0773 0288 cmdide - ok
19:48:32.0897 0288 Com4QLBEx (7795f8cebc284a426b53f541e538695f) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
19:48:32.0901 0288 Com4QLBEx - ok
19:48:32.0916 0288 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\windows\system32\DRIVERS\compbatt.sys
19:48:32.0921 0288 Compbatt - ok
19:48:32.0930 0288 COMSysApp - ok
19:48:32.0954 0288 crcdisk (741e9dff4f42d2d8477d0fc1dc0df871) C:\windows\system32\drivers\crcdisk.sys
19:48:32.0955 0288 crcdisk - ok
19:48:32.0979 0288 Crusoe (1f07becdca750766a96cda811ba86410) C:\windows\system32\drivers\crusoe.sys
19:48:32.0981 0288 Crusoe - ok
19:48:33.0056 0288 CryptSvc (75c6a297e364014840b48eccd7525e30) C:\windows\system32\cryptsvc.dll
19:48:33.0059 0288 CryptSvc - ok
19:48:33.0131 0288 DcomLaunch (3b5b4d53fec14f7476ca29a20cc31ac9) C:\windows\system32\rpcss.dll
19:48:33.0147 0288 DcomLaunch - ok
19:48:33.0186 0288 DfsC (622c41a07ca7e6dd91770f50d532cb6c) C:\windows\system32\Drivers\dfsc.sys
19:48:33.0227 0288 DfsC - ok
19:48:33.0368 0288 DFSR (2cc3dcfb533a1035b13dcab6160ab38b) C:\windows\system32\DFSR.exe
19:48:33.0404 0288 DFSR - ok
19:48:33.0545 0288 Dhcp (9028559c132146fb75eb7acf384b086a) C:\windows\System32\dhcpcsvc.dll
19:48:33.0549 0288 Dhcp - ok
19:48:33.0601 0288 disk (5d4aefc3386920236a548271f8f1af6a) C:\windows\system32\drivers\disk.sys
19:48:33.0602 0288 disk - ok
19:48:33.0679 0288 Dnscache (57d762f6f5974af0da2be88a3349baaa) C:\windows\System32\dnsrslvr.dll
19:48:33.0683 0288 Dnscache - ok
19:48:33.0701 0288 dot3svc (324fd74686b1ef5e7c19a8af49e748f6) C:\windows\System32\dot3svc.dll
19:48:33.0705 0288 dot3svc - ok
19:48:33.0743 0288 DPS (a622e888f8aa2f6b49e9bc466f0e5def) C:\windows\system32\dps.dll
19:48:33.0746 0288 DPS - ok
19:48:33.0790 0288 drmkaud (97fef831ab90bee128c9af390e243f80) C:\windows\system32\drivers\drmkaud.sys
19:48:33.0791 0288 drmkaud - ok
19:48:33.0885 0288 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\windows\System32\drivers\dxgkrnl.sys
19:48:33.0895 0288 DXGKrnl - ok
19:48:33.0926 0288 E1G60 (5425f74ac0c1dbd96a1e04f17d63f94c) C:\windows\system32\DRIVERS\E1G60I32.sys
19:48:33.0930 0288 E1G60 - ok
19:48:33.0999 0288 eamonm (73ce42907cf42bfb91bcd27fe7c7a7af) C:\windows\system32\DRIVERS\eamonm.sys
19:48:34.0005 0288 eamonm - ok
19:48:34.0042 0288 EapHost (c0b95e40d85cd807d614e264248a45b9) C:\windows\System32\eapsvc.dll
19:48:34.0044 0288 EapHost - ok
19:48:34.0087 0288 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\windows\system32\drivers\ecache.sys
19:48:34.0088 0288 Ecache - ok
19:48:34.0139 0288 ehdrv (7d300a43a7bd8769e0f901bf9e1ae367) C:\windows\system32\DRIVERS\ehdrv.sys
19:48:34.0164 0288 ehdrv - ok
19:48:34.0266 0288 EhttpSrv (d83323d7cd5d1cc46b42da9e59409890) C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
19:48:34.0269 0288 EhttpSrv - ok
19:48:34.0330 0288 ekrn (efa198f8983d064a81052851f7bb80c2) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
19:48:34.0336 0288 ekrn - ok
19:48:34.0414 0288 elxstor (23b62471681a124889978f6295b3f4c6) C:\windows\system32\drivers\elxstor.sys
19:48:34.0417 0288 elxstor - ok
19:48:34.0483 0288 EMDMgmt (4e6b23dfc917ea39306b529b773950f4) C:\windows\system32\emdmgmt.dll
19:48:34.0491 0288 EMDMgmt - ok
19:48:34.0549 0288 epfw (15bfe00f030ea20955117bb0677e9668) C:\windows\system32\DRIVERS\epfw.sys
19:48:34.0556 0288 epfw - ok
19:48:34.0570 0288 Epfwndis (52310e0e603d7da79ecca7d764937a91) C:\windows\system32\DRIVERS\Epfwndis.sys
19:48:34.0595 0288 Epfwndis - ok
19:48:34.0658 0288 epfwwfp (235250a79cf1e16a5a42407cfe3f6a4c) C:\windows\system32\DRIVERS\epfwwfp.sys
19:48:34.0663 0288 epfwwfp - ok
19:48:34.0687 0288 ErrDev (3db974f3935483555d7148663f726c61) C:\windows\system32\drivers\errdev.sys
19:48:34.0688 0288 ErrDev - ok
19:48:34.0739 0288 EventSystem (67058c46504bc12d821f38cf99b7b28f) C:\windows\system32\es.dll
19:48:34.0744 0288 EventSystem - ok
19:48:34.0803 0288 exfat (22b408651f9123527bcee54b4f6c5cae) C:\windows\system32\drivers\exfat.sys
19:48:34.0868 0288 exfat - ok
19:48:34.0895 0288 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\windows\system32\drivers\fastfat.sys
19:48:34.0928 0288 fastfat - ok
19:48:34.0999 0288 fdc (afe1e8b9782a0dd7fb46bbd88e43f89a) C:\windows\system32\DRIVERS\fdc.sys
19:48:35.0000 0288 fdc - ok
19:48:35.0070 0288 fdPHost (6629b5f0e98151f4afdd87567ea32ba3) C:\windows\system32\fdPHost.dll
19:48:35.0085 0288 fdPHost - ok
19:48:35.0110 0288 FDResPub (89ed56dce8e47af40892778a5bd31fd2) C:\windows\system32\fdrespub.dll
19:48:35.0115 0288 FDResPub - ok
19:48:35.0130 0288 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\windows\system32\drivers\fileinfo.sys
19:48:35.0205 0288 FileInfo - ok
19:48:35.0242 0288 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\windows\system32\drivers\filetrace.sys
19:48:35.0276 0288 Filetrace - ok
19:48:35.0307 0288 flpydisk (85b7cf99d532820495d68d747fda9ebd) C:\windows\system32\DRIVERS\flpydisk.sys
19:48:35.0307 0288 flpydisk - ok
19:48:35.0345 0288 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\windows\system32\drivers\fltmgr.sys
19:48:35.0348 0288 FltMgr - ok
19:48:35.0511 0288 FontCache (8ce364388c8eca59b14b539179276d44) C:\windows\system32\FntCache.dll
19:48:35.0559 0288 FontCache - ok
19:48:35.0913 0288 FontCache3.0.0.0 (c7fbdd1ed42f82bfa35167a5c9803ea3) C:\windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
19:48:35.0933 0288 FontCache3.0.0.0 - ok
19:48:35.0986 0288 Fs_Rec (b972a66758577e0bfd1de0f91aaa27b5) C:\windows\system32\drivers\Fs_Rec.sys
19:48:36.0030 0288 Fs_Rec - ok
19:48:36.0094 0288 gagp30kx (34582a6e6573d54a07ece5fe24a126b5) C:\windows\system32\drivers\gagp30kx.sys
19:48:36.0139 0288 gagp30kx - ok
19:48:36.0217 0288 gpsvc (cd5d0aeee35dfd4e986a5aa1500a6e66) C:\windows\System32\gpsvc.dll
19:48:36.0233 0288 gpsvc - ok
19:48:36.0282 0288 HBtnKey (88a78635b41ed4b261365fadeb28fe81) C:\windows\system32\DRIVERS\cpqbttn.sys
19:48:36.0286 0288 HBtnKey - ok
19:48:36.0342 0288 HdAudAddService (cb04c744be0a61b1d648faed182c3b59) C:\windows\system32\drivers\HdAudio.sys
19:48:36.0351 0288 HdAudAddService - ok
19:48:36.0414 0288 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\windows\system32\DRIVERS\HDAudBus.sys
19:48:36.0425 0288 HDAudBus - ok
19:48:36.0444 0288 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\windows\system32\drivers\hidbth.sys
19:48:36.0446 0288 HidBth - ok
19:48:36.0465 0288 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\windows\system32\drivers\hidir.sys
19:48:36.0467 0288 HidIr - ok
19:48:36.0522 0288 hidserv (84067081f3318162797385e11a8f0582) C:\windows\System32\hidserv.dll
19:48:36.0529 0288 hidserv - ok
19:48:36.0572 0288 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\windows\system32\DRIVERS\hidusb.sys
19:48:36.0611 0288 HidUsb - ok
19:48:36.0650 0288 hkmsvc (d8ad255b37da92434c26e4876db7d418) C:\windows\system32\kmsvc.dll
19:48:36.0655 0288 hkmsvc - ok
19:48:36.0766 0288 HP Health Check Service (d13e6bfd7e9189d26a42e94cb2447044) c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
19:48:36.0768 0288 HP Health Check Service - ok
19:48:36.0819 0288 HP ProtectTools Service (07a85d6c053a0999ff450bbca9825fb2) c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe
19:48:36.0820 0288 HP ProtectTools Service - ok
19:48:36.0848 0288 HpCISSs (16ee7b23a009e00d835cdb79574a91a6) C:\windows\system32\drivers\hpcisss.sys
19:48:36.0851 0288 HpCISSs - ok
19:48:36.0899 0288 hpdskflt (3520a74fca88a5aefbbe7b937bea75f7) C:\windows\system32\DRIVERS\hpdskflt.sys
19:48:36.0901 0288 hpdskflt - ok
19:48:36.0945 0288 HpFkCryptService (eb734ef9d7c4d02760f2d1342331ba41) c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
19:48:36.0949 0288 HpFkCryptService - ok
19:48:36.0997 0288 HPFSService (ef55cd76a05a0675fe930036b7773943) C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe
19:48:37.0003 0288 HPFSService - ok
19:48:37.0048 0288 HpqKbFiltr (35956140e686d53bf676cf0c778880fc) C:\windows\system32\DRIVERS\HpqKbFiltr.sys
19:48:37.0050 0288 HpqKbFiltr - ok
19:48:37.0086 0288 hpqwmiex (1665c7121a026df10c903db9bc5e9d43) C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
19:48:37.0089 0288 hpqwmiex - ok
19:48:37.0115 0288 hpsrv (3e940775a4970410f094e428ba94bbb7) C:\windows\system32\Hpservice.exe
19:48:37.0121 0288 hpsrv - ok
19:48:37.0179 0288 HTTP (0eeeca26c8d4bde2a4664db058a81937) C:\windows\system32\drivers\HTTP.sys
19:48:37.0188 0288 HTTP - ok
19:48:37.0231 0288 i2omp (c6b032d69650985468160fc9937cf5b4) C:\windows\system32\drivers\i2omp.sys
19:48:37.0232 0288 i2omp - ok
19:48:37.0274 0288 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\windows\system32\DRIVERS\i8042prt.sys
19:48:37.0276 0288 i8042prt - ok
19:48:37.0340 0288 IAANTMON (3ad7614c487c948add435662265750fb) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
19:48:37.0347 0288 IAANTMON - ok
19:48:37.0404 0288 iaStor (db0cc620b27a928d968c1a1e9cd9cb87) C:\windows\system32\drivers\iastor.sys
19:48:37.0409 0288 iaStor - ok
19:48:37.0454 0288 iaStorV (54155ea1b0df185878e0fc9ec3ac3a14) C:\windows\system32\drivers\iastorv.sys
19:48:37.0464 0288 iaStorV - ok
19:48:37.0585 0288 IDriverT (6f95324909b502e2651442c1548ab12f) C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
19:48:37.0592 0288 IDriverT - ok
19:48:37.0862 0288 idsvc (98477b08e61945f974ed9fdc4cb6bdab) C:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
19:48:37.0883 0288 idsvc - ok
19:48:38.0051 0288 igfx (d97e70e4e243c9660f91c1112e36c73b) C:\windows\system32\DRIVERS\igdkmd32.sys
19:48:38.0117 0288 igfx - ok
19:48:38.0254 0288 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\windows\system32\drivers\iirsp.sys
19:48:38.0256 0288 iirsp - ok
19:48:38.0320 0288 IKEEXT (9908d8a397b76cd8d31d0d383c5773c9) C:\windows\System32\ikeext.dll
19:48:38.0334 0288 IKEEXT - ok
19:48:38.0362 0288 intelide (83aa759f3189e6370c30de5dc5590718) C:\windows\system32\drivers\intelide.sys
19:48:38.0363 0288 intelide - ok
19:48:38.0372 0288 intelppm (224191001e78c89dfa78924c3ea595ff) C:\windows\system32\DRIVERS\intelppm.sys
19:48:38.0374 0288 intelppm - ok
19:48:38.0412 0288 IPBusEnum (9ac218c6e6105477484c6fdbe7d409a4) C:\windows\system32\ipbusenum.dll
19:48:38.0420 0288 IPBusEnum - ok
19:48:38.0439 0288 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\windows\system32\DRIVERS\ipfltdrv.sys
19:48:38.0480 0288 IpFilterDriver - ok
19:48:38.0531 0288 iphlpsvc (1998bd97f950680bb55f55a7244679c2) C:\windows\System32\iphlpsvc.dll
19:48:38.0538 0288 iphlpsvc - ok
19:48:38.0544 0288 IpInIp - ok
19:48:38.0577 0288 IPMIDRV (b25aaf203552b7b3491139d582b39ad1) C:\windows\system32\drivers\ipmidrv.sys
19:48:38.0656 0288 IPMIDRV - ok
19:48:38.0682 0288 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\windows\system32\DRIVERS\ipnat.sys
19:48:38.0685 0288 IPNAT - ok
19:48:38.0703 0288 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\windows\system32\drivers\irenum.sys
19:48:38.0723 0288 IRENUM - ok
19:48:38.0746 0288 isapnp (6c70698a3e5c4376c6ab5c7c17fb0614) C:\windows\system32\drivers\isapnp.sys
19:48:38.0747 0288 isapnp - ok
19:48:38.0798 0288 iScsiPrt (232fa340531d940aac623b121a595034) C:\windows\system32\DRIVERS\msiscsi.sys
19:48:38.0847 0288 iScsiPrt - ok
19:48:38.0862 0288 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\windows\system32\drivers\iteatapi.sys
19:48:38.0863 0288 iteatapi - ok
19:48:38.0876 0288 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\windows\system32\drivers\iteraid.sys
19:48:38.0878 0288 iteraid - ok
19:48:38.0982 0288 IviRegMgr (213822072085b5bbad9af30ab577d817) C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
19:48:38.0986 0288 IviRegMgr - ok
19:48:39.0000 0288 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\windows\system32\DRIVERS\kbdclass.sys
19:48:39.0035 0288 kbdclass - ok
19:48:39.0076 0288 kbdhid (ede59ec70e25c24581add1fbec7325f7) C:\windows\system32\DRIVERS\kbdhid.sys
19:48:39.0077 0288 kbdhid - ok
19:48:39.0110 0288 KeyIso (a3e186b4b935905b829219502557314e) C:\windows\system32\lsass.exe
19:48:39.0113 0288 KeyIso - ok
19:48:39.0173 0288 KSecDD (4a1445efa932a3baf5bdb02d7131ee20) C:\windows\system32\Drivers\ksecdd.sys
19:48:39.0194 0288 KSecDD - ok
19:48:39.0261 0288 KtmRm (8078f8f8f7a79e2e6b494523a828c585) C:\windows\system32\msdtckrm.dll
19:48:39.0270 0288 KtmRm - ok
19:48:39.0309 0288 LanmanServer (1bf5eebfd518dd7298434d8c862f825d) C:\windows\System32\srvsvc.dll
19:48:39.0315 0288 LanmanServer - ok
19:48:39.0365 0288 LanmanWorkstation (1db69705b695b987082c8baec0c6b34f) C:\windows\System32\wkssvc.dll
19:48:39.0374 0288 LanmanWorkstation - ok
19:48:39.0451 0288 LightScribeService (c215e09622118383b236dd56c2065183) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
19:48:39.0452 0288 LightScribeService - ok
19:48:39.0496 0288 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\windows\system32\DRIVERS\lltdio.sys
19:48:39.0527 0288 lltdio - ok
19:48:39.0569 0288 lltdsvc (2d5a428872f1442631d0959a34abff63) C:\windows\System32\lltdsvc.dll
19:48:39.0578 0288 lltdsvc - ok
19:48:39.0592 0288 lmhosts (35d40113e4a5b961b6ce5c5857702518) C:\windows\System32\lmhsvc.dll
19:48:39.0597 0288 lmhosts - ok
19:48:39.0620 0288 LSI_FC (c7e15e82879bf3235b559563d4185365) C:\windows\system32\drivers\lsi_fc.sys
19:48:39.0623 0288 LSI_FC - ok
19:48:39.0636 0288 LSI_SAS (ee01ebae8c9bf0fa072e0ff68718920a) C:\windows\system32\drivers\lsi_sas.sys
19:48:39.0639 0288 LSI_SAS - ok
19:48:39.0678 0288 LSI_SCSI (912a04696e9ca30146a62afa1463dd5c) C:\windows\system32\drivers\lsi_scsi.sys
19:48:39.0711 0288 LSI_SCSI - ok
19:48:39.0728 0288 luafv (8f5c7426567798e62a3b3614965d62cc) C:\windows\system32\drivers\luafv.sys
19:48:39.0729 0288 luafv - ok
19:48:39.0752 0288 megasas (0001ce609d66632fa17b84705f658879) C:\windows\system32\drivers\megasas.sys
19:48:39.0753 0288 megasas - ok
19:48:39.0786 0288 MegaSR (c252f32cd9a49dbfc25ecf26ebd51a99) C:\windows\system32\drivers\megasr.sys
19:48:39.0790 0288 MegaSR - ok
19:48:39.0819 0288 MMCSS (1076ffcffaae8385fd62dfcb25ac4708) C:\windows\system32\mmcss.dll
19:48:39.0823 0288 MMCSS - ok
19:48:39.0840 0288 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\windows\system32\drivers\modem.sys
19:48:39.0870 0288 Modem - ok
19:48:39.0886 0288 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\windows\system32\DRIVERS\monitor.sys
19:48:39.0887 0288 monitor - ok
19:48:39.0895 0288 mouclass (5bf6a1326a335c5298477754a506d263) C:\windows\system32\DRIVERS\mouclass.sys
19:48:39.0917 0288 mouclass - ok
19:48:39.0938 0288 mouhid (93b8d4869e12cfbe663915502900876f) C:\windows\system32\DRIVERS\mouhid.sys
19:48:39.0938 0288 mouhid - ok
19:48:39.0954 0288 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\windows\system32\drivers\mountmgr.sys
19:48:39.0974 0288 MountMgr - ok
19:48:40.0005 0288 mpio (511d011289755dd9f9a7579fb0b064e6) C:\windows\system32\drivers\mpio.sys
19:48:40.0007 0288 mpio - ok
19:48:40.0028 0288 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\windows\system32\drivers\mpsdrv.sys
19:48:40.0079 0288 mpsdrv - ok
19:48:40.0134 0288 MpsSvc (5de62c6e9108f14f6794060a9bdecaec) C:\windows\system32\mpssvc.dll
19:48:40.0140 0288 MpsSvc - ok
19:48:40.0161 0288 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\windows\system32\drivers\mraid35x.sys
19:48:40.0180 0288 Mraid35x - ok
19:48:40.0213 0288 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\windows\system32\drivers\mrxdav.sys
19:48:40.0214 0288 MRxDAV - ok
19:48:40.0267 0288 mrxsmb (1e94971c4b446ab2290deb71d01cf0c2) C:\windows\system32\DRIVERS\mrxsmb.sys
19:48:40.0287 0288 mrxsmb - ok
19:48:40.0336 0288 mrxsmb10 (4fccb34d793b116423209c0f8b7a3b03) C:\windows\system32\DRIVERS\mrxsmb10.sys
19:48:40.0366 0288 mrxsmb10 - ok
19:48:40.0388 0288 mrxsmb20 (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\windows\system32\DRIVERS\mrxsmb20.sys
19:48:40.0389 0288 mrxsmb20 - ok
19:48:40.0418 0288 msahci (28023e86f17001f7cd9b15a5bc9ae07d) C:\windows\system32\drivers\msahci.sys
19:48:40.0419 0288 msahci - ok
19:48:40.0434 0288 msdsm (4468b0f385a86ecddaf8d3ca662ec0e7) C:\windows\system32\drivers\msdsm.sys
19:48:40.0436 0288 msdsm - ok
19:48:40.0472 0288 MSDTC (fd7520cc3a80c5fc8c48852bb24c6ded) C:\windows\System32\msdtc.exe
19:48:40.0479 0288 MSDTC - ok
19:48:40.0511 0288 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\windows\system32\drivers\Msfs.sys
19:48:40.0535 0288 Msfs - ok
19:48:40.0562 0288 msisadrv (0f400e306f385c56317357d6dea56f62) C:\windows\system32\drivers\msisadrv.sys
19:48:40.0586 0288 msisadrv - ok
19:48:40.0618 0288 MSiSCSI (85466c0757a23d9a9aecdc0755203cb2) C:\windows\system32\iscsiexe.dll
19:48:40.0624 0288 MSiSCSI - ok
19:48:40.0630 0288 msiserver - ok
19:48:40.0665 0288 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\windows\system32\drivers\MSKSSRV.sys
19:48:40.0688 0288 MSKSSRV - ok
19:48:40.0725 0288 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\windows\system32\drivers\MSPCLOCK.sys
19:48:40.0728 0288 MSPCLOCK - ok
19:48:40.0750 0288 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\windows\system32\drivers\MSPQM.sys
19:48:40.0751 0288 MSPQM - ok
19:48:40.0789 0288 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\windows\system32\drivers\MsRPC.sys
19:48:40.0791 0288 MsRPC - ok
19:48:40.0808 0288 mssmbios (e384487cb84be41d09711c30ca79646c) C:\windows\system32\DRIVERS\mssmbios.sys
19:48:40.0839 0288 mssmbios - ok
19:48:40.0855 0288 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\windows\system32\drivers\MSTEE.sys
19:48:40.0885 0288 MSTEE - ok
19:48:40.0911 0288 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\windows\system32\Drivers\mup.sys
19:48:40.0943 0288 Mup - ok
19:48:40.0976 0288 napagent (e4eaf0c5c1b41b5c83386cf212ca9584) C:\windows\system32\qagentRT.dll
19:48:40.0984 0288 napagent - ok
19:48:41.0026 0288 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\windows\system32\DRIVERS\nwifi.sys
19:48:41.0081 0288 NativeWifiP - ok
19:48:41.0128 0288 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\windows\system32\drivers\ndis.sys
19:48:41.0178 0288 NDIS - ok
19:48:41.0204 0288 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\windows\system32\DRIVERS\ndistapi.sys
19:48:41.0209 0288 NdisTapi - ok
19:48:41.0234 0288 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\windows\system32\DRIVERS\ndisuio.sys
19:48:41.0273 0288 Ndisuio - ok
19:48:41.0316 0288 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\windows\system32\DRIVERS\ndiswan.sys
19:48:41.0319 0288 NdisWan - ok
19:48:41.0336 0288 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\windows\system32\drivers\NDProxy.sys
19:48:41.0412 0288 NDProxy - ok
19:48:41.0448 0288 Net Driver HPZ12 (949941e4de88df1faf49a4b3cffb756f) C:\Windows\system32\HPZinw12.dll
19:48:41.0451 0288 Net Driver HPZ12 - ok
19:48:41.0468 0288 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\windows\system32\DRIVERS\netbios.sys
19:48:41.0470 0288 NetBIOS - ok
19:48:41.0558 0288 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\windows\system32\DRIVERS\netbt.sys
19:48:41.0601 0288 netbt - ok
19:48:41.0645 0288 Netlogon (a3e186b4b935905b829219502557314e) C:\windows\system32\lsass.exe
19:48:41.0648 0288 Netlogon - ok
19:48:41.0700 0288 Netman (c8052711daecc48b982434c5116ca401) C:\windows\System32\netman.dll
19:48:41.0709 0288 Netman - ok
19:48:41.0741 0288 netprofm (2ef3bbe22e5a5acd1428ee387a0d0172) C:\windows\System32\netprofm.dll
19:48:41.0749 0288 netprofm - ok
19:48:41.0884 0288 NetTcpPortSharing (d6c4e4a39a36029ac0813d476fbd0248) C:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
19:48:41.0891 0288 NetTcpPortSharing - ok
19:48:41.0909 0288 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\windows\system32\drivers\nfrd960.sys
19:48:41.0911 0288 nfrd960 - ok
19:48:41.0988 0288 NitroReaderDriverReadSpool (9ccbca1fe056f67960c9420fce635691) C:\Program Files\Nitro PDF\Reader\NitroPDFReaderDriverService.exe
19:48:41.0996 0288 NitroReaderDriverReadSpool - ok
19:48:42.0038 0288 NlaSvc (2997b15415f9bbe05b5a4c1c85e0c6a2) C:\windows\System32\nlasvc.dll
19:48:42.0048 0288 NlaSvc - ok
19:48:42.0135 0288 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\windows\system32\drivers\Npfs.sys
19:48:42.0175 0288 Npfs - ok
19:48:42.0194 0288 nsi (8bb86f0c7eea2bded6fe095d0b4ca9bd) C:\windows\system32\nsisvc.dll
19:48:42.0199 0288 nsi - ok
19:48:42.0221 0288 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\windows\system32\drivers\nsiproxy.sys
19:48:42.0223 0288 nsiproxy - ok
19:48:42.0303 0288 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\windows\system32\drivers\Ntfs.sys
19:48:42.0364 0288 Ntfs - ok
19:48:42.0390 0288 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\windows\system32\drivers\ntrigdigi.sys
19:48:42.0429 0288 ntrigdigi - ok
19:48:42.0460 0288 Null (c5dbbcda07d780bda9b685df333bb41e) C:\windows\system32\drivers\Null.sys
19:48:42.0500 0288 Null - ok
19:48:42.0533 0288 nvraid (2edf9e7751554b42cbb60116de727101) C:\windows\system32\drivers\nvraid.sys
19:48:42.0534 0288 nvraid - ok
19:48:42.0541 0288 nvstor (abed0c09758d1d97db0042dbb2688177) C:\windows\system32\drivers\nvstor.sys
19:48:42.0560 0288 nvstor - ok
19:48:42.0586 0288 nv_agp (18bbdf913916b71bd54575bdb6eeac0b) C:\windows\system32\drivers\nv_agp.sys
19:48:42.0588 0288 nv_agp - ok
19:48:42.0592 0288 NwlnkFlt - ok
19:48:42.0600 0288 NwlnkFwd - ok
19:48:42.0740 0288 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
19:48:42.0746 0288 odserv - ok
19:48:42.0791 0288 ohci1394 (790e27c3db53410b40ff9ef2fd10a1d9) C:\windows\system32\DRIVERS\ohci1394.sys
19:48:42.0792 0288 ohci1394 - ok
19:48:42.0846 0288 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
19:48:42.0848 0288 ose - ok
19:48:42.0933 0288 p2pimsvc (0c8e8e61ad1eb0b250b846712c917506) C:\windows\system32\p2psvc.dll
19:48:42.0948 0288 p2pimsvc - ok
19:48:42.0958 0288 p2psvc (0c8e8e61ad1eb0b250b846712c917506) C:\windows\system32\p2psvc.dll
19:48:42.0966 0288 p2psvc - ok
19:48:43.0006 0288 Parport (8a79fdf04a73428597e2caf9d0d67850) C:\windows\system32\DRIVERS\parport.sys
19:48:43.0007 0288 Parport - ok
19:48:43.0101 0288 partmgr (b9c2b89f08670e159f7181891e449cd9) C:\windows\system32\drivers\partmgr.sys
19:48:43.0167 0288 partmgr - ok
19:48:43.0209 0288 Parvdm (6c580025c81caf3ae9e3617c22cad00e) C:\windows\system32\DRIVERS\parvdm.sys
19:48:43.0210 0288 Parvdm - ok
19:48:43.0302 0288 PcaSvc (c6276ad11f4bb49b58aa1ed88537f14a) C:\windows\System32\pcasvc.dll
19:48:43.0305 0288 PcaSvc - ok
19:48:43.0374 0288 pci (941dc1d19e7e8620f40bbc206981efdb) C:\windows\system32\drivers\pci.sys
19:48:43.0376 0288 pci - ok
19:48:43.0445 0288 pciide (fc175f5ddab666d7f4d17449a547626f) C:\windows\system32\drivers\pciide.sys
19:48:43.0445 0288 pciide - ok
19:48:43.0501 0288 pcmcia (b7c5a8769541900f6dfa6fe0c5e4d513) C:\windows\system32\DRIVERS\pcmcia.sys
19:48:43.0504 0288 pcmcia - ok
19:48:43.0619 0288 pdfcDispatcher - ok
19:48:43.0727 0288 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\windows\system32\drivers\peauth.sys
19:48:43.0751 0288 PEAUTH - ok
19:48:43.0905 0288 pla (b1689df169143f57053f795390c99db3) C:\windows\system32\pla.dll
19:48:43.0942 0288 pla - ok
19:48:44.0070 0288 PlugPlay (c5e7f8a996ec0a82d508fd9064a5569e) C:\windows\system32\umpnpmgr.dll
19:48:44.0081 0288 PlugPlay - ok
19:48:44.0145 0288 Pml Driver HPZ12 (2f4ca141a609caf5c98f6e4760ef1b9b) C:\Windows\system32\HPZipm12.dll
19:48:44.0148 0288 Pml Driver HPZ12 - ok
19:48:44.0252 0288 PNRPAutoReg (0c8e8e61ad1eb0b250b846712c917506) C:\windows\system32\p2psvc.dll
19:48:44.0264 0288 PNRPAutoReg - ok
19:48:44.0282 0288 PNRPsvc (0c8e8e61ad1eb0b250b846712c917506) C:\windows\system32\p2psvc.dll
19:48:44.0294 0288 PNRPsvc - ok
19:48:44.0345 0288 PolicyAgent (d0494460421a03cd5225cca0059aa146) C:\windows\System32\ipsecsvc.dll
19:48:44.0355 0288 PolicyAgent - ok
19:48:44.0403 0288 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\windows\system32\DRIVERS\raspptp.sys
19:48:44.0445 0288 PptpMiniport - ok
19:48:44.0463 0288 Processor (2027293619dd0f047c584cf2e7df4ffd) C:\windows\system32\drivers\processr.sys
19:48:44.0465 0288 Processor - ok
19:48:44.0514 0288 ProfSvc (0508faa222d28835310b7bfca7a77346) C:\windows\system32\profsvc.dll
19:48:44.0518 0288 ProfSvc - ok
19:48:44.0577 0288 ProtectedStorage (a3e186b4b935905b829219502557314e) C:\windows\system32\lsass.exe
19:48:44.0579 0288 ProtectedStorage - ok
19:48:44.0592 0288 PSched (99514faa8df93d34b5589187db3aa0ba) C:\windows\system32\DRIVERS\pacer.sys
19:48:44.0594 0288 PSched - ok
19:48:44.0652 0288 PxHelp20 (153d02480a0a2f45785522e814c634b6) C:\windows\system32\Drivers\PxHelp20.sys
19:48:44.0653 0288 PxHelp20 - ok
19:48:44.0720 0288 ql2300 (0a6db55afb7820c99aa1f3a1d270f4f6) C:\windows\system32\drivers\ql2300.sys
19:48:44.0728 0288 ql2300 - ok
19:48:44.0738 0288 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\windows\system32\drivers\ql40xx.sys
19:48:44.0739 0288 ql40xx - ok
19:48:44.0769 0288 QWAVE (e9ecae663f47e6cb43962d18ab18890f) C:\windows\system32\qwave.dll
19:48:44.0777 0288 QWAVE - ok
19:48:44.0793 0288 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\windows\system32\drivers\qwavedrv.sys
19:48:44.0813 0288 QWAVEdrv - ok
19:48:44.0942 0288 RasAcd (147d7f9c556d259924351feb0de606c3) C:\windows\system32\DRIVERS\rasacd.sys
19:48:44.0966 0288 RasAcd - ok
19:48:44.0991 0288 RasAuto (f6a452eb4ceadbb51c9e0ee6b3ecef0f) C:\windows\System32\rasauto.dll
19:48:44.0998 0288 RasAuto - ok
19:48:45.0025 0288 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\windows\system32\DRIVERS\rasl2tp.sys
19:48:45.0075 0288 Rasl2tp - ok
19:48:45.0121 0288 RasMan (75d47445d70ca6f9f894b032fbc64fcf) C:\windows\System32\rasmans.dll
19:48:45.0127 0288 RasMan - ok
19:48:45.0166 0288 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\windows\system32\DRIVERS\raspppoe.sys
19:48:45.0191 0288 RasPppoe - ok
19:48:45.0214 0288 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\windows\system32\DRIVERS\rassstp.sys
19:48:45.0240 0288 RasSstp - ok
19:48:45.0265 0288 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\windows\system32\DRIVERS\rdbss.sys
19:48:45.0272 0288 rdbss - ok
19:48:45.0283 0288 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\windows\system32\DRIVERS\RDPCDD.sys
19:48:45.0307 0288 RDPCDD - ok
19:48:45.0359 0288 rdpdr (fbc0bacd9c3d7f6956853f64a66e252d) C:\windows\system32\drivers\rdpdr.sys
19:48:45.0362 0288 rdpdr - ok
19:48:45.0367 0288 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\windows\system32\drivers\rdpencdd.sys
19:48:45.0392 0288 RDPENCDD - ok
19:48:45.0439 0288 RDPWD (c127ebd5afab31524662c48dfceb773a) C:\windows\system32\drivers\RDPWD.sys
19:48:45.0467 0288 RDPWD - ok
19:48:45.0523 0288 RemoteAccess (bcdd6b4804d06b1f7ebf29e53a57ece9) C:\windows\System32\mprdim.dll
19:48:45.0529 0288 RemoteAccess - ok
19:48:45.0574 0288 RemoteRegistry (9e6894ea18daff37b63e1005f83ae4ab) C:\windows\system32\regsvc.dll
19:48:45.0580 0288 RemoteRegistry - ok
19:48:45.0625 0288 RFCOMM (6482707f9f4da0ecbab43b2e0398a101) C:\windows\system32\DRIVERS\rfcomm.sys
19:48:45.0657 0288 RFCOMM - ok
19:48:46.0056 0288 RoxMediaDB10 (5c13017fc008f8492d03143634a479ce) c:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
19:48:46.0079 0288 RoxMediaDB10 - ok
19:48:46.0211 0288 RpcLocator (5123f83cbc4349d065534eeb6bbdc42b) C:\windows\system32\locator.exe
19:48:46.0219 0288 RpcLocator - ok
19:48:46.0281 0288 rpcnet (6684437f3628ef237c354f77d33426d1) C:\windows\system32\rpcnet.exe
19:48:46.0288 0288 rpcnet - ok
19:48:46.0356 0288 RpcSs (3b5b4d53fec14f7476ca29a20cc31ac9) C:\windows\system32\rpcss.dll
19:48:46.0368 0288 RpcSs - ok
19:48:46.0423 0288 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\windows\system32\DRIVERS\rspndr.sys
19:48:46.0465 0288 rspndr - ok
19:48:46.0532 0288 RsvLock (3beefe509c414f3a6e55e5c7c4024581) C:\windows\system32\drivers\RsvLock.sys
19:48:46.0537 0288 RsvLock - ok
19:48:46.0555 0288 SafeBoot (2a5eedcb22a5d6bb0231e38a38e7a7d9) C:\windows\system32\drivers\SafeBoot.sys
19:48:46.0556 0288 Suspicious file (NoAccess): C:\windows\system32\drivers\SafeBoot.sys. md5: 2a5eedcb22a5d6bb0231e38a38e7a7d9
19:48:46.0556 0288 SafeBoot ( LockedFile.Multi.Generic ) - warning
19:48:46.0557 0288 SafeBoot - detected LockedFile.Multi.Generic (1)
19:48:46.0588 0288 SamSs (a3e186b4b935905b829219502557314e) C:\windows\system32\lsass.exe
19:48:46.0592 0288 SamSs - ok
19:48:46.0605 0288 SbAlg (52dcde2d1787217e15ffdca1cbf8cce9) C:\windows\system32\drivers\SbAlg.sys
19:48:46.0607 0288 SbAlg - ok
19:48:46.0625 0288 SbFsLock (69a5af9ce49a0982e7ae7c7d62bdb2b1) C:\windows\system32\drivers\SbFsLock.sys
19:48:46.0626 0288 SbFsLock - ok
19:48:46.0649 0288 sbp2port (3ce8f073a557e172b330109436984e30) C:\windows\system32\drivers\sbp2port.sys
19:48:46.0690 0288 sbp2port - ok
19:48:46.0733 0288 SCardSvr (77b7a11a0c3d78d3386398fbbea1b632) C:\windows\System32\SCardSvr.dll
19:48:46.0739 0288 SCardSvr - ok
19:48:46.0816 0288 Schedule (1a58069db21d05eb2ab58ee5753ebe8d) C:\windows\system32\schedsvc.dll
19:48:46.0832 0288 Schedule - ok
19:48:46.0853 0288 SCPolicySvc (312ec3e37a0a1f2006534913e37b4423) C:\windows\System32\certprop.dll
19:48:46.0855 0288 SCPolicySvc - ok
19:48:46.0900 0288 SDRSVC (716313d9f6b0529d03f726d5aaf6f191) C:\windows\System32\SDRSVC.dll
19:48:46.0910 0288 SDRSVC - ok
19:48:46.0945 0288 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\windows\system32\drivers\secdrv.sys
19:48:46.0985 0288 secdrv - ok
19:48:47.0003 0288 seclogon (fd5199d4d8a521005e4b5ee7fe00fa9b) C:\windows\system32\seclogon.dll
19:48:47.0009 0288 seclogon - ok
19:48:47.0033 0288 SENS (a9bbab5759771e523f55563d6cbe140f) C:\windows\system32\sens.dll
19:48:47.0043 0288 SENS - ok
19:48:47.0061 0288 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\windows\system32\drivers\serenum.sys
19:48:47.0100 0288 Serenum - ok
19:48:47.0119 0288 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\windows\system32\drivers\serial.sys
19:48:47.0138 0288 Serial - ok
19:48:47.0154 0288 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\windows\system32\drivers\sermouse.sys
19:48:47.0172 0288 sermouse - ok
19:48:47.0215 0288 SessionEnv (d2193326f729b163125610dbf3e17d57) C:\windows\system32\sessenv.dll
19:48:47.0220 0288 SessionEnv - ok
19:48:47.0259 0288 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\windows\system32\drivers\sffdisk.sys
19:48:47.0259 0288 sffdisk - ok
19:48:47.0292 0288 sffp_mmc (e95d451f7ea3e583aec75f3b3ee42dc5) C:\windows\system32\drivers\sffp_mmc.sys
19:48:47.0294 0288 sffp_mmc - ok
19:48:47.0322 0288 sffp_sd (3d0ea348784b7ac9ea9bd9f317980979) C:\windows\system32\drivers\sffp_sd.sys
19:48:47.0323 0288 sffp_sd - ok
19:48:47.0348 0288 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\windows\system32\drivers\sfloppy.sys
19:48:47.0350 0288 sfloppy - ok
19:48:47.0398 0288 SharedAccess (e1499bd0ff76b1b2fbbf1af339d91165) C:\windows\System32\ipnathlp.dll
19:48:47.0406 0288 SharedAccess - ok
19:48:47.0447 0288 ShellHWDetection (c7230fbee14437716701c15be02c27b8) C:\windows\System32\shsvcs.dll
19:48:47.0453 0288 ShellHWDetection - ok
19:48:47.0481 0288 sisagp (1d76624a09a054f682d746b924e2dbc3) C:\windows\system32\drivers\sisagp.sys
19:48:47.0483 0288 sisagp - ok
19:48:47.0521 0288 SiSRaid2 (43cb7aa756c7db280d01da9b676cfde2) C:\windows\system32\drivers\sisraid2.sys
19:48:47.0522 0288 SiSRaid2 - ok
19:48:47.0534 0288 SiSRaid4 (a99c6c8b0baa970d8aa59ddc50b57f94) C:\windows\system32\drivers\sisraid4.sys
19:48:47.0535 0288 SiSRaid4 - ok
19:48:47.0713 0288 slsvc (862bb4cbc05d80c5b45be430e5ef872f) C:\windows\system32\SLsvc.exe
19:48:47.0762 0288 slsvc - ok
19:48:47.0870 0288 SLUINotify (6edc422215cd78aa8a9cde6b30abbd35) C:\windows\system32\SLUINotify.dll
19:48:47.0875 0288 SLUINotify - ok
19:48:47.0923 0288 Smb (7b75299a4d201d6a6533603d6914ab04) C:\windows\system32\DRIVERS\smb.sys
19:48:47.0949 0288 Smb - ok
19:48:47.0979 0288 SNMPTRAP (2a146a055b4401c16ee62d18b8e2a032) C:\windows\System32\snmptrap.exe
19:48:47.0985 0288 SNMPTRAP - ok
19:48:48.0107 0288 SNP2UVC (50660e6b082a7bf86751a003c3bb5210) C:\windows\system32\DRIVERS\snp2uvc.sys
19:48:48.0139 0288 SNP2UVC - ok
19:48:48.0257 0288 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\windows\system32\drivers\spldr.sys
19:48:48.0287 0288 spldr - ok
19:48:48.0328 0288 Spooler (8554097e5136c3bf9f69fe578a1b35f4) C:\windows\System32\spoolsv.exe
19:48:48.0334 0288 Spooler - ok
19:48:48.0380 0288 srv (41987f9fc0e61adf54f581e15029ad91) C:\windows\system32\DRIVERS\srv.sys
19:48:48.0442 0288 srv - ok
19:48:48.0488 0288 srv2 (ff33aff99564b1aa534f58868cbe41ef) C:\windows\system32\DRIVERS\srv2.sys
19:48:48.0514 0288 srv2 - ok
19:48:48.0543 0288 srvnet (7605c0e1d01a08f3ecd743f38b834a44) C:\windows\system32\DRIVERS\srvnet.sys
19:48:48.0563 0288 srvnet - ok
19:48:48.0597 0288 SSDPSRV (03d50b37234967433a5ea5ba72bc0b62) C:\windows\System32\ssdpsrv.dll
19:48:48.0602 0288 SSDPSRV - ok
19:48:48.0623 0288 SstpSvc (6f1a32e7b7b30f004d9a20afadb14944) C:\windows\system32\sstpsvc.dll
19:48:48.0628 0288 SstpSvc - ok
19:48:48.0681 0288 stisvc (5de7d67e49b88f5f07f3e53c4b92a352) C:\windows\System32\wiaservc.dll
19:48:48.0689 0288 stisvc - ok
19:48:48.0773 0288 stllssvr (1d0063597c3666404fcf97698abeb019) c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
19:48:48.0777 0288 stllssvr - ok
19:48:48.0816 0288 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\windows\system32\DRIVERS\swenum.sys
19:48:48.0820 0288 swenum - ok
19:48:48.0864 0288 swprv (f21fd248040681cca1fb6c9a03aaa93d) C:\windows\System32\swprv.dll
19:48:48.0872 0288 swprv - ok
19:48:48.0892 0288 Symc8xx (192aa3ac01df071b541094f251deed10) C:\windows\system32\drivers\symc8xx.sys
19:48:48.0893 0288 Symc8xx - ok
19:48:48.0908 0288 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\windows\system32\drivers\sym_hi.sys
19:48:48.0910 0288 Sym_hi - ok
19:48:48.0917 0288 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\windows\system32\drivers\sym_u3.sys
19:48:48.0919 0288 Sym_u3 - ok
19:48:48.0972 0288 SynTP (f5d926807bd9bc0af68f9376144de425) C:\windows\system32\DRIVERS\SynTP.sys
19:48:48.0980 0288 SynTP - ok
19:48:49.0032 0288 SysMain (9a51b04e9886aa4ee90093586b0ba88d) C:\windows\system32\sysmain.dll
19:48:49.0043 0288 SysMain - ok
19:48:49.0066 0288 TabletInputService (2dca225eae15f42c0933e998ee0231c3) C:\windows\System32\TabSvc.dll
19:48:49.0073 0288 TabletInputService - ok
19:48:49.0118 0288 TapiSrv (d7673e4b38ce21ee54c59eeeb65e2483) C:\windows\System32\tapisrv.dll
19:48:49.0125 0288 TapiSrv - ok
19:48:49.0139 0288 TBS (cb05822cd9cc6c688168e113c603dbe7) C:\windows\System32\tbssvc.dll
19:48:49.0142 0288 TBS - ok
19:48:49.0260 0288 Tcpip (27d470dabc77bc60d0a3b0e4deb6cb91) C:\windows\system32\drivers\tcpip.sys
19:48:49.0280 0288 Tcpip - ok
19:48:49.0298 0288 Tcpip6 (27d470dabc77bc60d0a3b0e4deb6cb91) C:\windows\system32\DRIVERS\tcpip.sys
19:48:49.0308 0288 Tcpip6 - ok
19:48:49.0350 0288 tcpipreg (608c345a255d82a6289c2d468eb41fd7) C:\windows\system32\drivers\tcpipreg.sys
19:48:49.0381 0288 tcpipreg - ok
19:48:49.0412 0288 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\windows\system32\drivers\tdpipe.sys
19:48:49.0443 0288 TDPIPE - ok
19:48:49.0468 0288 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\windows\system32\drivers\tdtcp.sys
19:48:49.0524 0288 TDTCP - ok
19:48:49.0575 0288 tdx (76b06eb8a01fc8624d699e7045303e54) C:\windows\system32\DRIVERS\tdx.sys
19:48:49.0607 0288 tdx - ok
19:48:49.0648 0288 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\windows\system32\DRIVERS\termdd.sys
19:48:49.0680 0288 TermDD - ok
19:48:49.0727 0288 TermService (bb95da09bef6e7a131bff3ba5032090d) C:\windows\System32\termsrv.dll
19:48:49.0740 0288 TermService - ok
19:48:49.0782 0288 Themes (c7230fbee14437716701c15be02c27b8) C:\windows\system32\shsvcs.dll
19:48:49.0788 0288 Themes - ok
19:48:49.0808 0288 THREADORDER (1076ffcffaae8385fd62dfcb25ac4708) C:\windows\system32\mmcss.dll
19:48:49.0812 0288 THREADORDER - ok
19:48:49.0850 0288 TPM (cb258c2f726f1be73c507022be33ebb3) C:\windows\system32\drivers\tpm.sys
19:48:49.0851 0288 TPM - ok
19:48:49.0884 0288 TrkWks (ec74e77d0eb004bd3a809b5f8fb8c2ce) C:\windows\System32\trkwks.dll
19:48:49.0888 0288 TrkWks - ok
19:48:49.0937 0288 TrustedInstaller (97d9d6a04e3ad9b6c626b9931db78dba) C:\windows\servicing\TrustedInstaller.exe
19:48:49.0938 0288 TrustedInstaller - ok
19:48:49.0971 0288 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\windows\system32\DRIVERS\tssecsrv.sys
19:48:50.0009 0288 tssecsrv - ok
19:48:50.0024 0288 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\windows\system32\DRIVERS\tunmp.sys
19:48:50.0055 0288 tunmp - ok
19:48:50.0085 0288 tunnel (300db877ac094feab0be7688c3454a9c) C:\windows\system32\DRIVERS\tunnel.sys
19:48:50.0141 0288 tunnel - ok
19:48:50.0170 0288 uagp35 (7d33c4db2ce363c8518d2dfcf533941f) C:\windows\system32\drivers\uagp35.sys
19:48:50.0201 0288 uagp35 - ok
19:48:50.0249 0288 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\windows\system32\DRIVERS\udfs.sys
19:48:50.0271 0288 udfs - ok
19:48:50.0304 0288 UI0Detect (ecef404f62863755951e09c802c94ad5) C:\windows\system32\UI0Detect.exe
19:48:50.0310 0288 UI0Detect - ok
19:48:50.0330 0288 uliagpkx (b0acfdc9e4af279e9116c03e014b2b27) C:\windows\system32\drivers\uliagpkx.sys
19:48:50.0349 0288 uliagpkx - ok
19:48:50.0375 0288 uliahci (9224bb254f591de4ca8d572a5f0d635c) C:\windows\system32\drivers\uliahci.sys
19:48:50.0378 0288 uliahci - ok
19:48:50.0388 0288 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\windows\system32\drivers\ulsata.sys
19:48:50.0389 0288 UlSata - ok
19:48:50.0401 0288 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\windows\system32\drivers\ulsata2.sys
19:48:50.0420 0288 ulsata2 - ok
19:48:50.0438 0288 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\windows\system32\DRIVERS\umbus.sys
19:48:50.0441 0288 umbus - ok
19:48:50.0472 0288 upnphost (68308183f4ae0be7bf8ecd07cb297999) C:\windows\System32\upnphost.dll
19:48:50.0477 0288 upnphost - ok
19:48:50.0533 0288 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\windows\system32\DRIVERS\usbccgp.sys
19:48:50.0554 0288 usbccgp - ok
19:48:50.0585 0288 usbcir (e9476e6c486e76bc4898074768fb7131) C:\windows\system32\drivers\usbcir.sys
19:48:50.0586 0288 usbcir - ok
19:48:50.0642 0288 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\windows\system32\DRIVERS\usbehci.sys
19:48:50.0661 0288 usbehci - ok
19:48:50.0705 0288 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\windows\system32\DRIVERS\usbhub.sys
19:48:50.0728 0288 usbhub - ok
19:48:50.0739 0288 usbohci (7bdb7b0e7d45ac0402d78b90789ef47c) C:\windows\system32\DRIVERS\usbohci.sys
19:48:50.0740 0288 usbohci - ok
19:48:50.0774 0288 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\windows\system32\DRIVERS\usbprint.sys
19:48:50.0794 0288 usbprint - ok
19:48:50.0839 0288 usbscan (a508c9bd8724980512136b039bba65e9) C:\windows\system32\DRIVERS\usbscan.sys
19:48:50.0858 0288 usbscan - ok
19:48:50.0900 0288 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\windows\system32\DRIVERS\USBSTOR.SYS
19:48:50.0920 0288 USBSTOR - ok
19:48:50.0941 0288 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\windows\system32\DRIVERS\usbuhci.sys
19:48:50.0960 0288 usbuhci - ok
19:48:50.0993 0288 usbvideo (e67998e8f14cb0627a769f6530bcb352) C:\windows\system32\Drivers\usbvideo.sys
19:48:50.0997 0288 usbvideo - ok
19:48:51.0032 0288 UxSms (1509e705f3ac1d474c92454a5c2dd81f) C:\windows\System32\uxsms.dll
19:48:51.0037 0288 UxSms - ok
19:48:51.0092 0288 vds (cd88d1b7776dc17a119049742ec07eb4) C:\windows\System32\vds.exe
19:48:51.0103 0288 vds - ok
19:48:51.0144 0288 vga (87b06e1f30b749a114f74622d013f8d4) C:\windows\system32\DRIVERS\vgapnp.sys
19:48:51.0163 0288 vga - ok
19:48:51.0180 0288 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\windows\System32\drivers\vga.sys
19:48:51.0216 0288 VgaSave - ok
19:48:51.0230 0288 viaagp (5d7159def58a800d5781ba3a879627bc) C:\windows\system32\drivers\viaagp.sys
19:48:51.0232 0288 viaagp - ok
19:48:51.0256 0288 ViaC7 (c4f3a691b5bad343e6249bd8c2d45dee) C:\windows\system32\drivers\viac7.sys
19:48:51.0257 0288 ViaC7 - ok
19:48:51.0268 0288 viaide (aadf5587a4063f52c2c3fed7887426fc) C:\windows\system32\drivers\viaide.sys
19:48:51.0288 0288 viaide - ok
19:48:51.0302 0288 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\windows\system32\drivers\volmgr.sys
19:48:51.0321 0288 volmgr - ok
19:48:51.0365 0288 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\windows\system32\drivers\volmgrx.sys
19:48:51.0369 0288 volmgrx - ok
19:48:51.0412 0288 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\windows\system32\drivers\volsnap.sys
19:48:51.0415 0288 volsnap - ok
19:48:51.0444 0288 vsmraid (587253e09325e6bf226b299774b728a9) C:\windows\system32\drivers\vsmraid.sys
19:48:51.0445 0288 vsmraid - ok
19:48:51.0539 0288 VSS (db3d19f850c6eb32bdcb9bc0836acddb) C:\windows\system32\vssvc.exe
19:48:51.0558 0288 VSS - ok
19:48:51.0614 0288 W32Time (96ea68b9eb310a69c25ebb0282b2b9de) C:\windows\system32\w32time.dll
19:48:51.0621 0288 W32Time - ok
19:48:51.0676 0288 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\windows\system32\drivers\wacompen.sys
19:48:51.0677 0288 WacomPen - ok
19:48:51.0705 0288 Wanarp (55201897378cca7af8b5efd874374a26) C:\windows\system32\DRIVERS\wanarp.sys
19:48:51.0751 0288 Wanarp - ok
19:48:51.0756 0288 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\windows\system32\DRIVERS\wanarp.sys
19:48:51.0758 0288 Wanarpv6 - ok
19:48:51.0813 0288 wcncsvc (a3cd60fd826381b49f03832590e069af) C:\windows\System32\wcncsvc.dll
19:48:51.0823 0288 wcncsvc - ok
19:48:51.0849 0288 WcsPlugInService (11bcb7afcdd7aadacb5746f544d3a9c7) C:\windows\System32\WcsPlugInService.dll
19:48:51.0856 0288 WcsPlugInService - ok
19:48:51.0870 0288 Wd (78fe9542363f297b18c027b2d7e7c07f) C:\windows\system32\drivers\wd.sys
19:48:51.0894 0288 Wd - ok
19:48:51.0927 0288 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\windows\system32\drivers\Wdf01000.sys
19:48:51.0934 0288 Wdf01000 - ok
19:48:51.0946 0288 WdiServiceHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\windows\system32\wdi.dll
19:48:51.0950 0288 WdiServiceHost - ok
19:48:51.0955 0288 WdiSystemHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\windows\system32\wdi.dll
19:48:51.0959 0288 WdiSystemHost - ok
19:48:51.0987 0288 WebClient (04c37d8107320312fbae09926103d5e2) C:\windows\System32\webclnt.dll
19:48:51.0995 0288 WebClient - ok
19:48:52.0033 0288 Wecsvc (ae3736e7e8892241c23e4ebbb7453b60) C:\windows\system32\wecsvc.dll
19:48:52.0050 0288 Wecsvc - ok
19:48:52.0071 0288 wercplsupport (670ff720071ed741206d69bd995ea453) C:\windows\System32\wercplsupport.dll
19:48:52.0075 0288 wercplsupport - ok
19:48:52.0110 0288 WerSvc (32b88481d3b326da6deb07b1d03481e7) C:\windows\System32\WerSvc.dll
19:48:52.0114 0288 WerSvc - ok
19:48:52.0242 0288 WinDefend (4575aa12561c5648483403541d0d7f2b) C:\Program Files\Windows Defender\mpsvc.dll
19:48:52.0247 0288 WinDefend - ok
19:48:52.0257 0288 WinHttpAutoProxySvc - ok
19:48:52.0312 0288 Winmgmt (6b2a1d0e80110e3d04e6863c6e62fd8a) C:\windows\system32\wbem\WMIsvc.dll
19:48:52.0318 0288 Winmgmt - ok
19:48:52.0405 0288 WinRM (7cfe68bdc065e55aa5e8421607037511) C:\windows\system32\WsmSvc.dll
19:48:52.0430 0288 WinRM - ok
19:48:52.0492 0288 Wlansvc (c008405e4feeb069e30da1d823910234) C:\windows\System32\wlansvc.dll
19:48:52.0504 0288 Wlansvc - ok
19:48:52.0561 0288 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\windows\system32\DRIVERS\wmiacpi.sys
19:48:52.0590 0288 WmiAcpi - ok
19:48:52.0645 0288 wmiApSrv (43be3875207dcb62a85c8c49970b66cc) C:\windows\system32\wbem\WmiApSrv.exe
19:48:52.0648 0288 wmiApSrv - ok
19:48:52.0758 0288 WMPNetworkSvc (3978704576a121a9204f8cc49a301a9b) C:\Program Files\Windows Media Player\wmpnetwk.exe
19:48:52.0774 0288 WMPNetworkSvc - ok
19:48:52.0825 0288 WPCSvc (cfc5a04558f5070cee3e3a7809f3ff52) C:\windows\System32\wpcsvc.dll
19:48:52.0831 0288 WPCSvc - ok
19:48:52.0854 0288 WPDBusEnum (801fbdb89d472b3c467eb112a0fc9246) C:\windows\system32\wpdbusenum.dll
19:48:52.0862 0288 WPDBusEnum - ok
19:48:52.0925 0288 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\windows\system32\DRIVERS\wpdusb.sys
19:48:52.0956 0288 WpdUsb - ok
19:48:53.0221 0288 WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
19:48:53.0243 0288 WPFFontCache_v0400 - ok
19:48:53.0284 0288 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\windows\system32\drivers\ws2ifsl.sys
19:48:53.0313 0288 ws2ifsl - ok
19:48:53.0358 0288 wscsvc (1ca6c40261ddc0425987980d0cd2aaab) C:\windows\system32\wscsvc.dll
19:48:53.0363 0288 wscsvc - ok
19:48:53.0368 0288 WSearch - ok
19:48:53.0504 0288 wuauserv (fc3ec24fce372c89423e015a2ac1a31e) C:\windows\system32\wuaueng.dll
19:48:53.0534 0288 wuauserv - ok
19:48:53.0649 0288 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\windows\system32\DRIVERS\WUDFRd.sys
19:48:53.0653 0288 WUDFRd - ok
19:48:53.0679 0288 wudfsvc (575a4190d989f64732119e4114045a4f) C:\windows\System32\WUDFSvc.dll
19:48:53.0683 0288 wudfsvc - ok
19:48:53.0745 0288 yukonwlh (f72d4bffa37e857d195048c498afc61b) C:\windows\system32\DRIVERS\yk60x86.sys
19:48:53.0748 0288 yukonwlh - ok
19:48:53.0784 0288 MBR (0x1B8) (5c616939100b85e558da92b899a0fc36) \Device\Harddisk0\DR0
19:48:53.0906 0288 \Device\Harddisk0\DR0 - ok
19:48:53.0910 0288 Boot (0x1200) (edd6458752ccc346059b572541002d03) \Device\Harddisk0\DR0\Partition0
19:48:53.0912 0288 \Device\Harddisk0\DR0\Partition0 - ok
19:48:53.0939 0288 Boot (0x1200) (32ebb141d3eaf50b5dbc655fe9cebf4f) \Device\Harddisk0\DR0\Partition1
19:48:53.0939 0288 \Device\Harddisk0\DR0\Partition1 - ok
19:48:53.0949 0288 Boot (0x1200) (98302ebc14a5cdc8358109aebf334cd7) \Device\Harddisk0\DR0\Partition2
19:48:53.0950 0288 \Device\Harddisk0\DR0\Partition2 - ok
19:48:53.0951 0288 ============================================================
19:48:53.0951 0288 Scan finished
19:48:53.0951 0288 ============================================================
19:48:53.0965 2500 Detected object count: 1
19:48:53.0965 2500 Actual detected object count: 1
19:49:25.0541 2500 C:\windows\system32\drivers\SafeBoot.sys - copied to quarantine
19:49:25.0603 2500 HKLM\SYSTEM\ControlSet001\services\SafeBoot - will be deleted on reboot
19:49:25.0750 2500 HKLM\SYSTEM\ControlSet002\services\SafeBoot - will be deleted on reboot
19:49:25.0808 2500 C:\windows\system32\drivers\SafeBoot.sys - will be deleted on reboot
19:49:25.0808 2500 SafeBoot ( LockedFile.Multi.Generic ) - User select action: Delete
19:49:33.0951 3816 Deinitialize success

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Nemožnosť otvoriť priečinok so súbormi - vírus
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- Rudy
- Site Admin
- Příspěvky: 119515
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Nemožnosť otvoriť priečinok so súbormi - vírus
Šmejdík tam byl a TDSSKiller ho smazal. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Nemožnosť otvoriť priečinok so súbormi - vírus
Bohuzial nenastala. Programy, ktore su spustene v systeme stale prestavaju pracovat a su ukoncene (vyskakuju okna).
- Rudy
- Site Admin
- Příspěvky: 119515
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Nemožnosť otvoriť priečinok so súbormi - vírus
Na zkoušku některý program reinstalujte. Pokud bude vykazovat stejný problém, proveďte opravu systému z instal. média.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Nemožnosť otvoriť priečinok so súbormi - vírus
Jak to tu vypadá? 

Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
- Rudy
- Site Admin
- Příspěvky: 119515
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Nemožnosť otvoriť priečinok so súbormi - vírus
Zamykám pro neaktivitu. Pokude budete chtít v tématu pokračovat, kontaktujte mne, nebo některého moderátora přes e-mail. Děkuji.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.