
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Hodně zasekaný NB, pracuje velmi pomalu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Hodně zasekaný NB, pracuje velmi pomalu
Ahoj, dostal se mi do ruk další notebook, naštěstí tentokrát na něm nebylo spouštěno nic svépomocí.
Udělal jsem RSIT:
Logfile of random's system information tool 1.09 (written by random/random)
Run by Markéta at 2012-09-21 16:34:46
Microsoft Windows 7 Home Premium
System drive C: has 116 GB (40%) free of 293 GB
Total RAM: 2937 MB (33% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:34:51, on 21.9.2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.17051)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files (x86)\Launch Manager\LManager.EXE
C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Windows\SysWOW64\notepad.exe
C:\Windows\SysWOW64\charmap.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_clipbook.exe
C:\Windows\SysWOW64\DllHost.exe
C:\Program Files\trend micro\Markéta.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5i4785v70o
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... 5i4785v70o
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = file://C:/Windows/system32/drivers/etc/proxy
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: QIPBHO Class - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\Markéta\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\Markéta\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: Inbox Toolbar - {D3D233D5-9F6D-436C-B6C7-E63F77503B30} - C:\PROGRA~2\INBOXT~1\Inbox.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: &Inbox Toolbar - {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - C:\PROGRA~2\INBOXT~1\Inbox.dll
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -osboot
O4 - HKLM\..\Run: [SweetIM] C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Google Update] "C:\Users\Markéta\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Exasaw] C:\Users\Markéta\AppData\Roaming\Exasaw.exe
O4 - HKCU\..\Run: [Vwasan] C:\Users\Markéta\AppData\Roaming\Microsoft\Vwasan.exe
O4 - HKCU\..\Run: [DMJuamo] C:\Users\Markéta\AppData\Roaming\DMJuamo\DMJuamo.exe
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10t_ActiveX.exe -update activex
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Acer VCM.lnk = ?
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{203CE000-AF31-4F7E-A844-B2C3EB47DC01}: NameServer = 91.228.45.254,91.228.46.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{203CE000-AF31-4F7E-A844-B2C3EB47DC01}: NameServer = 91.228.45.254,91.228.46.254
O17 - HKLM\System\CS2\Services\Tcpip\..\{203CE000-AF31-4F7E-A844-B2C3EB47DC01}: NameServer = 91.228.45.254,91.228.46.254
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: inbox - {37540F19-DD4C-478B-B2DF-C19281BCAF27} - C:\PROGRA~2\INBOXT~1\Inbox.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Users\Markéta\Programy\skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Updater Service - Acer - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: Web Blocker Service - Unknown owner - C:\Program Files\Webstart Studios\Web Blocker\TWBService.exe
O23 - Service: Web Blocker Service URL - Unknown owner - C:\Program Files\Webstart Studios\Web Blocker\TWBService URL.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 17623 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\PROGRA~2\AVG\AVG10\avgchsva.exe /boot
C:\PROGRA~2\AVG\AVG10\avgrsa.exe /restart /boot
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
"C:\Program Files (x86)\Acer\Registration\GregHSRW.exe"
"C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe"
C:\Windows\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe"
C:\Windows\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
"C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe"
"c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe"
"c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files\Webstart Studios\Web Blocker\TWBService.exe"
"C:\Program Files\Webstart Studios\Web Blocker\TWBService URL.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
WLIDSvcM.exe 2136
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\wbem\wmiprvse.exe
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Windows\PLFSetI.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Java\jre6\bin\jusched.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
C:\Windows\system32\igfxext.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Launch Manager\LManager.EXE"
"C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe"
"C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
"C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Users\Markéta\AppData\Roaming\DMJuamo\DMJuamo.exe
"C:\Windows\system32\notepad.exe"
"C:\Windows\system32\charmap.exe"
"C:\Program Files (x86)\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:844 CREDAT:79873
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4852 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:3296 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4008 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:1856 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4812 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4544 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:5048 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:3356 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4880 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:5164 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:5052 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:5152 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:5020 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:5072 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:1864 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:3616 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:5080 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4988 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4856 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4924 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:1788 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:3872 CREDAT:79873
"C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_clipbook.exe" -Embedding
"C:\Windows\system32\wuauclt.exe"
C:\Windows\SysWOW64\DllHost.exe /Processid:{FE2F9D0D-18A4-4845-BA41-DE6451A66D11}
"C:\Program Files\Java\jre6\bin\jucheck.exe" -auto
taskeng.exe {3F3CA4EB-08F0-4B40-A2E4-3E15EF9043EE}
"C:\Users\Markéta\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1000UA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1006Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1006UA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1007Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1007UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG10\avgssiea.dll [2011-05-05 3543392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-12-01 43520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-05-21 328248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-04-04 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2011-06-15 386264]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG10\avgssie.dll [2011-05-05 2257760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2012-09-13 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-11-10 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}]
QIPBHO Class - C:\Users\Markéta\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll [2010-10-25 149968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D3D233D5-9F6D-436C-B6C7-E63F77503B30}]
Inbox Toolbar - C:\PROGRA~2\INBOXT~1\Inbox.dll [2011-02-10 871928]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2012-09-13 157672]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-05-21 509496]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{D7E97865-918F-41E4-9CD0-25AB1C574CE8} - &Inbox Toolbar - C:\PROGRA~2\INBOXT~1\Inbox.dll [2011-02-10 871928]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-06-05 186904]
"Acer ePower Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2009-08-06 828960]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2009-07-20 503864]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-08-12 165912]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-08-12 387608]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-08-12 365592]
"PLFSetI"=C:\Windows\PLFSetI.exe [2008-07-30 200704]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-07-14 1815848]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-12-01 172032]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
"Google Update"=C:\Users\Markéta\AppData\Local\Google\Update\GoogleUpdate.exe [2011-05-31 136176]
"Exasaw"=C:\Users\Markéta\AppData\Roaming\Exasaw.exe [2011-07-25 131072]
"Vwasan"=C:\Users\Markéta\AppData\Roaming\Microsoft\Vwasan.exe [2012-09-17 148992]
"DMJuamo"=C:\Users\Markéta\AppData\Roaming\DMJuamo\DMJuamo.exe [2012-09-17 150528]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"=C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10t_ActiveX.exe [2011-07-18 240288]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2009-08-18 825864]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"HP Software Update"=C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
"AVG_TRAY"=C:\Program Files (x86)\AVG\AVG10\avgtray.exe [2011-04-18 2334560]
"TkBellExe"=C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [2011-06-15 273544]
"SweetIM"=C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe [2011-06-02 114992]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-04-04 843712]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer VCM.lnk - C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Users\Markéta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-07-28 258560]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-09-21 16:28:22 ----D---- C:\Program Files\trend micro
2012-09-21 16:28:21 ----D---- C:\rsit
2012-09-18 21:39:15 ----A---- C:\Users\Markéta\AppData\Roaming\7894.tmp
2012-09-18 21:39:11 ----A---- C:\Users\Markéta\AppData\Roaming\6800.tmp
2012-09-18 21:39:02 ----A---- C:\Users\Markéta\AppData\Roaming\42CD.exe
2012-09-18 21:34:40 ----A---- C:\Users\Markéta\AppData\Roaming\4784.tmp
2012-09-18 21:34:31 ----A---- C:\Users\Markéta\AppData\Roaming\205E.exe
2012-09-18 21:34:30 ----A---- C:\Users\Markéta\AppData\Roaming\1DE4.tmp
2012-09-18 21:30:04 ----A---- C:\Users\Markéta\AppData\Roaming\EB1.exe
2012-09-18 21:30:01 ----A---- C:\Users\Markéta\AppData\Roaming\2C5.tmp
2012-09-18 21:29:51 ----A---- C:\Users\Markéta\AppData\Roaming\DC12.tmp
2012-09-18 21:25:18 ----A---- C:\Users\Markéta\AppData\Roaming\B35C.tmp
2012-09-18 21:25:13 ----A---- C:\Users\Markéta\AppData\Roaming\9C6E.exe
2012-09-18 21:25:01 ----A---- C:\Users\Markéta\AppData\Roaming\6FA7.tmp
2012-09-18 21:20:24 ----A---- C:\Users\Markéta\AppData\Roaming\3571.exe
2012-09-18 21:20:23 ----A---- C:\Users\Markéta\AppData\Roaming\33DE.tmp
2012-09-18 21:20:13 ----A---- C:\Users\Markéta\AppData\Roaming\9D1.tmp
2012-09-18 21:15:35 ----A---- C:\Users\Markéta\AppData\Roaming\CED3.tmp
2012-09-18 21:15:33 ----A---- C:\Users\Markéta\AppData\Roaming\C253.exe
2012-09-18 21:15:22 ----A---- C:\Users\Markéta\AppData\Roaming\9B93.tmp
2012-09-18 21:11:08 ----A---- C:\Users\Markéta\AppData\Roaming\B74A.exe
2012-09-18 21:10:44 ----A---- C:\Users\Markéta\AppData\Roaming\5BC4.tmp
2012-09-18 21:10:43 ----A---- C:\Users\Markéta\AppData\Roaming\56C4.tmp
2012-09-18 21:05:58 ----A---- C:\Users\Markéta\AppData\Roaming\FBE7.exe
2012-09-18 21:05:57 ----A---- C:\Users\Markéta\AppData\Roaming\F9F4.tmp
2012-09-18 21:05:35 ----A---- C:\Users\Markéta\AppData\Roaming\A4F1.tmp
2012-09-18 21:01:07 ----A---- C:\Users\Markéta\AppData\Roaming\8CCF.exe
2012-09-18 21:01:05 ----A---- C:\Users\Markéta\AppData\Roaming\8494.tmp
2012-09-18 21:01:03 ----A---- C:\Users\Markéta\AppData\Roaming\804F.tmp
2012-09-18 20:56:17 ----A---- C:\Users\Markéta\AppData\Roaming\216D.tmp
2012-09-18 20:56:16 ----A---- C:\Users\Markéta\AppData\Roaming\1C5D.tmp
2012-09-18 20:56:13 ----A---- C:\Users\Markéta\AppData\Roaming\11B5.exe
2012-09-18 20:51:31 ----A---- C:\Users\Markéta\AppData\Roaming\C0C7.exe
2012-09-18 20:51:14 ----A---- C:\Users\Markéta\AppData\Roaming\83E4.tmp
2012-09-18 20:51:13 ----A---- C:\Users\Markéta\AppData\Roaming\7FAF.tmp
2012-09-18 20:46:55 ----A---- C:\Users\Markéta\AppData\Roaming\8BB3.exe
2012-09-18 20:46:23 ----A---- C:\Users\Markéta\AppData\Roaming\128A.tmp
2012-09-18 20:46:09 ----A---- C:\Users\Markéta\AppData\Roaming\D895.tmp
2012-09-18 20:41:54 ----A---- C:\Users\Markéta\AppData\Roaming\F128.exe
2012-09-18 20:41:35 ----A---- C:\Users\Markéta\AppData\Roaming\AD31.tmp
2012-09-18 20:41:25 ----A---- C:\Users\Markéta\AppData\Roaming\8640.tmp
2012-09-18 20:36:48 ----A---- C:\Users\Markéta\AppData\Roaming\4BCE.tmp
2012-09-18 20:36:36 ----A---- C:\Users\Markéta\AppData\Roaming\1B8A.tmp
2012-09-18 20:35:37 ----A---- C:\Users\Markéta\AppData\Roaming\349C.exe
2012-09-18 20:32:05 ----A---- C:\Users\Markéta\AppData\Roaming\FB5C.tmp
2012-09-18 20:32:04 ----A---- C:\Users\Markéta\AppData\Roaming\F6E8.tmp
2012-09-18 20:29:36 ----A---- C:\Users\Markéta\AppData\Roaming\AE1D.exe
2012-09-18 20:27:31 ----A---- C:\Users\Markéta\AppData\Roaming\CCAC.tmp
2012-09-18 20:27:29 ----A---- C:\Users\Markéta\AppData\Roaming\C4BF.tmp
2012-09-18 20:23:35 ----A---- C:\Users\Markéta\AppData\Roaming\2EC0.exe
2012-09-18 20:23:00 ----A---- C:\Users\Markéta\AppData\Roaming\A9A0.tmp
2012-09-18 20:22:59 ----A---- C:\Users\Markéta\AppData\Roaming\A4BF.tmp
2012-09-18 20:18:30 ----A---- C:\Users\Markéta\AppData\Roaming\8A2C.tmp
2012-09-18 20:18:25 ----A---- C:\Users\Markéta\AppData\Roaming\7554.tmp
2012-09-18 20:17:33 ----A---- C:\Users\Markéta\AppData\Roaming\A526.exe
2012-09-18 20:13:58 ----A---- C:\Users\Markéta\AppData\Roaming\6462.tmp
2012-09-18 20:13:56 ----A---- C:\Users\Markéta\AppData\Roaming\5D4F.tmp
2012-09-18 20:11:34 ----A---- C:\Users\Markéta\AppData\Roaming\2DB5.exe
2012-09-18 20:09:26 ----A---- C:\Users\Markéta\AppData\Roaming\3C09.tmp
2012-09-18 20:09:24 ----A---- C:\Users\Markéta\AppData\Roaming\35D0.tmp
2012-09-18 20:05:34 ----A---- C:\Users\Markéta\AppData\Roaming\AFFD.exe
2012-09-18 20:04:58 ----A---- C:\Users\Markéta\AppData\Roaming\25F7.tmp
2012-09-18 20:04:55 ----A---- C:\Users\Markéta\AppData\Roaming\1B6C.tmp
2012-09-18 16:57:02 ----A---- C:\Users\Markéta\AppData\Roaming\FA5F.exe
2012-09-18 16:54:37 ----A---- C:\Users\Markéta\AppData\Roaming\C807.tmp
2012-09-18 16:54:36 ----A---- C:\Users\Markéta\AppData\Roaming\C1CF.tmp
2012-09-18 16:51:05 ----A---- C:\Users\Markéta\AppData\Roaming\883B.exe
2012-09-18 16:50:09 ----A---- C:\Users\Markéta\AppData\Roaming\B15A.tmp
2012-09-18 16:50:07 ----A---- C:\Users\Markéta\AppData\Roaming\A816.tmp
2012-09-18 16:45:40 ----A---- C:\Users\Markéta\AppData\Roaming\95DC.tmp
2012-09-18 16:45:36 ----A---- C:\Users\Markéta\AppData\Roaming\86BE.tmp
2012-09-18 16:45:10 ----A---- C:\Users\Markéta\AppData\Roaming\1CBB.exe
2012-09-18 16:39:54 ----A---- C:\Users\Markéta\AppData\Roaming\4D56.tmp
2012-09-18 16:39:50 ----A---- C:\Users\Markéta\AppData\Roaming\401C.tmp
2012-09-18 16:37:05 ----A---- C:\Users\Markéta\AppData\Roaming\B669.exe
2012-09-18 16:30:50 ----A---- C:\Users\Markéta\AppData\Roaming\FD37.exe
2012-09-18 16:24:03 ----A---- C:\Users\Markéta\AppData\Roaming\C90D.exe
2012-09-18 16:17:54 ----A---- C:\Users\Markéta\AppData\Roaming\2464.exe
2012-09-18 16:11:56 ----A---- C:\Users\Markéta\AppData\Roaming\B137.exe
2012-09-18 16:05:53 ----A---- C:\Users\Markéta\AppData\Roaming\27CC.exe
2012-09-18 15:59:53 ----A---- C:\Users\Markéta\AppData\Roaming\A6B9.exe
2012-09-18 15:59:22 ----A---- C:\Users\Markéta\AppData\Roaming\4555.exe
2012-09-18 15:59:20 ----A---- C:\Users\Markéta\AppData\Roaming\red45.exe
2012-09-17 21:34:10 ----RSHD---- C:\Users\Markéta\AppData\Roaming\DMJuamo
2012-09-17 21:33:58 ----A---- C:\Users\Markéta\AppData\Roaming\89E2.exe
2012-09-17 19:00:32 ----A---- C:\Users\Markéta\AppData\Roaming\13F7.tmp
2012-09-17 19:00:27 ----A---- C:\Users\Markéta\AppData\Roaming\18F.tmp
2012-09-17 18:59:03 ----A---- C:\Users\Markéta\AppData\Roaming\B7A2.exe
2012-09-17 18:53:09 ----A---- C:\Users\Markéta\AppData\Roaming\4F2E.exe
2012-09-17 16:22:21 ----A---- C:\Users\Markéta\AppData\Roaming\3DEB.exe
2012-09-17 16:18:41 ----A---- C:\Users\Markéta\AppData\Roaming\E515.tmp
2012-09-17 16:18:38 ----A---- C:\Users\Markéta\AppData\Roaming\D8C5.tmp
2012-09-17 16:16:27 ----A---- C:\Users\Markéta\AppData\Roaming\D78A.exe
2012-09-17 16:14:10 ----A---- C:\Users\Markéta\AppData\Roaming\C277.tmp
2012-09-17 16:14:07 ----A---- C:\Users\Markéta\AppData\Roaming\B617.tmp
2012-09-17 16:10:31 ----A---- C:\Users\Markéta\AppData\Roaming\6AB3.exe
2012-09-17 16:09:32 ----A---- C:\Users\Markéta\AppData\Roaming\86EB.tmp
2012-09-13 21:06:52 ----A---- C:\Windows\SYSWOW64\javaws.exe
2012-09-13 21:06:32 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2012-09-13 21:06:32 ----A---- C:\Windows\SYSWOW64\javaw.exe
2012-09-13 21:06:32 ----A---- C:\Windows\SYSWOW64\java.exe
2012-09-13 21:06:17 ----D---- C:\Program Files (x86)\Java
2012-09-13 20:32:08 -------- C:\Users\Markéta\AppData\Roaming\Exasaw.exe
2012-09-12 12:35:55 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2012-09-12 12:35:55 ----A---- C:\Windows\system32\d3d10level9.dll
======List of files/folders modified in the last 1 month======
2012-09-21 16:28:22 ----RD---- C:\Program Files
2012-09-21 16:28:03 ----D---- C:\Windows\Temp
2012-09-21 16:23:46 ----D---- C:\Windows\system32\wdi
2012-09-21 16:20:35 ----D---- C:\Windows\system32\config
2012-09-21 16:20:06 ----D---- C:\Windows
2012-09-18 21:44:03 ----SHD---- C:\Windows\Installer
2012-09-18 21:43:34 ----SHD---- C:\System Volume Information
2012-09-18 21:37:51 ----SHD---- C:\Config.Msi
2012-09-18 21:37:49 ----D---- C:\Windows\SysWOW64
2012-09-18 20:09:02 ----SD---- C:\Users\Markéta\AppData\Roaming\Microsoft
2012-09-18 20:09:02 ----RD---- C:\Program Files (x86)
2012-09-18 20:09:02 ----D---- C:\Windows\SYSWOW64\drivers
2012-09-18 20:09:02 ----D---- C:\Windows\system
2012-09-18 20:05:22 ----D---- C:\Windows\Prefetch
2012-09-18 16:58:13 ----D---- C:\Windows\system32\catroot2
2012-09-18 15:58:48 ----D---- C:\Windows\system32\drivers\etc
2012-09-16 11:39:05 ----D---- C:\Windows\inf
2012-09-14 22:07:31 ----D---- C:\ProgramData\Skype
2012-09-14 22:07:31 ----D---- C:\Program Files (x86)\Common Files
2012-09-13 21:10:00 ----D---- C:\Windows\debug
2012-09-13 21:06:20 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2012-09-13 21:06:20 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2012-09-12 14:19:14 ----D---- C:\Windows\winsxs
2012-09-12 14:19:14 ----D---- C:\Windows\System32
2012-09-12 14:19:09 ----D---- C:\Windows\system32\catroot
2012-09-12 14:16:34 ----A---- C:\Windows\system32\MRT.exe
2012-08-24 22:20:53 ----D---- C:\Users\Markéta\AppData\Roaming\Adobe
2012-08-23 21:03:38 ----D---- C:\ProgramData\Adobe
2012-08-23 21:03:37 ----D---- C:\Program Files (x86)\Adobe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSEH;AVGIDSEH; C:\Windows\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 26704]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx64.sys [2011-03-16 37456]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-06-05 408600]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R1 Avgldx64;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx64.sys [2011-01-07 304720]
R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx64.sys [2011-03-01 41552]
R1 Avgtdia;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdia.sys [2011-04-05 377936]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-10-05 1542656]
R3 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys [2011-04-14 118864]
R3 AVGIDSFilter;AVGIDSFilter; C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys [2011-02-10 29264]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2009-08-11 686080]
R3 DKbFltr;Dritek Keyboard Filter Driver (64-bit); C:\Windows\SysWOW64\Drivers\DKbFltr.sys [2009-03-26 25608]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-07-28 7345632]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2009-11-13 67072]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2009-05-05 18432]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-07-14 273456]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2009-05-05 16896]
S2 regi;regi; \??\C:\Windows\system32\drivers\regi.sys []
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552448]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-07-01 98344]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2009-07-01 132648]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-07-01 21160]
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2009-07-14 19968]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 int15.sys;int15.sys; \??\C:\Windows\syswow64\OEM\Factory\int15.sys []
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-05-14 5435904]
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
S3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf.sys [2009-06-17 15208]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2009-06-24 216576]
S3 RtsUIR;Realtek IR Driver; C:\Windows\system32\DRIVERS\Rts516xIR.sys []
S3 USBCCID;Realtek Smartcard Reader Driver; C:\Windows\system32\DRIVERS\RtsUCcid.sys []
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BcmSqlStartupSvc;Služba spouštění serveru SQL Server aplikace Business Contact Manager; C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2008-01-16 30312]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-18 864032]
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2009-08-06 844320]
R2 Greg_Service;GRegService; C:\Program Files (x86)\Acer\Registration\GregHSRW.exe [2009-06-04 1150496]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-06-05 354840]
R2 IviRegMgr;IviRegMgr; C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe [2007-01-05 112152]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2009-06-18 144640]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 PSI_SVC_2;Protexis Licensing V2; C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 RS_Service;Raw Socket Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [2009-07-10 253952]
R2 SQLBrowser;SQL Server Browser; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2010-12-10 238944]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2010-12-10 153440]
R2 Updater Service;Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2009-07-04 240160]
R2 Web Blocker Service URL;Web Blocker Service URL; C:\Program Files\Webstart Studios\Web Blocker\TWBService URL.exe [2010-09-13 24064]
R2 Web Blocker Service;Web Blocker Service; C:\Program Files\Webstart Studios\Web Blocker\TWBService.exe [2010-09-13 32768]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
S2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-04-04 63928]
S2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2011-04-18 7398752]
S2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [2011-02-08 269520]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-28 135664]
S2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S2 SkypeUpdate;Skype Updater; C:\Users\Markéta\Programy\skype\Updater\Updater.exe [2012-07-13 160944]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-28 135664]
S3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); c:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2010-12-10 29293408]
S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-11-10 774144]
S3 NTIBackupSvc;NTI Backup Now 5 Backup Service; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2009-06-18 50432]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-06-13 1255736]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2010-12-10 44384]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
-----------------EOF-----------------
Ve správci úloh je vidět několik instancí IE, ručně ale nebyl spuštěn žádný. Taky se mi nelíbí C:\Users\Markéta\AppData\Roaming\****.exe a C:\Users\Markéta\AppData\Roaming\****.tmp
Prosím o pomoc s kompletní kontrolou, asi tam toho budou mraky.
AVG plánuju vyměnit za Avast Home, lze to zohlednit v nějakém kroku.
Udělal jsem RSIT:
Logfile of random's system information tool 1.09 (written by random/random)
Run by Markéta at 2012-09-21 16:34:46
Microsoft Windows 7 Home Premium
System drive C: has 116 GB (40%) free of 293 GB
Total RAM: 2937 MB (33% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:34:51, on 21.9.2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.17051)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files (x86)\Launch Manager\LManager.EXE
C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Windows\SysWOW64\notepad.exe
C:\Windows\SysWOW64\charmap.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_clipbook.exe
C:\Windows\SysWOW64\DllHost.exe
C:\Program Files\trend micro\Markéta.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5i4785v70o
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... 5i4785v70o
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = file://C:/Windows/system32/drivers/etc/proxy
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: QIPBHO Class - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\Markéta\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\Markéta\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: Inbox Toolbar - {D3D233D5-9F6D-436C-B6C7-E63F77503B30} - C:\PROGRA~2\INBOXT~1\Inbox.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: &Inbox Toolbar - {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - C:\PROGRA~2\INBOXT~1\Inbox.dll
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -osboot
O4 - HKLM\..\Run: [SweetIM] C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Google Update] "C:\Users\Markéta\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Exasaw] C:\Users\Markéta\AppData\Roaming\Exasaw.exe
O4 - HKCU\..\Run: [Vwasan] C:\Users\Markéta\AppData\Roaming\Microsoft\Vwasan.exe
O4 - HKCU\..\Run: [DMJuamo] C:\Users\Markéta\AppData\Roaming\DMJuamo\DMJuamo.exe
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10t_ActiveX.exe -update activex
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Acer VCM.lnk = ?
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{203CE000-AF31-4F7E-A844-B2C3EB47DC01}: NameServer = 91.228.45.254,91.228.46.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{203CE000-AF31-4F7E-A844-B2C3EB47DC01}: NameServer = 91.228.45.254,91.228.46.254
O17 - HKLM\System\CS2\Services\Tcpip\..\{203CE000-AF31-4F7E-A844-B2C3EB47DC01}: NameServer = 91.228.45.254,91.228.46.254
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: inbox - {37540F19-DD4C-478B-B2DF-C19281BCAF27} - C:\PROGRA~2\INBOXT~1\Inbox.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Users\Markéta\Programy\skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Updater Service - Acer - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: Web Blocker Service - Unknown owner - C:\Program Files\Webstart Studios\Web Blocker\TWBService.exe
O23 - Service: Web Blocker Service URL - Unknown owner - C:\Program Files\Webstart Studios\Web Blocker\TWBService URL.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 17623 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\PROGRA~2\AVG\AVG10\avgchsva.exe /boot
C:\PROGRA~2\AVG\AVG10\avgrsa.exe /restart /boot
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
"C:\Program Files (x86)\Acer\Registration\GregHSRW.exe"
"C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe"
C:\Windows\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe"
C:\Windows\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
"C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe"
"c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe"
"c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files\Webstart Studios\Web Blocker\TWBService.exe"
"C:\Program Files\Webstart Studios\Web Blocker\TWBService URL.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
WLIDSvcM.exe 2136
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\wbem\wmiprvse.exe
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Windows\PLFSetI.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Java\jre6\bin\jusched.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
C:\Windows\system32\igfxext.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Launch Manager\LManager.EXE"
"C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe"
"C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
"C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Users\Markéta\AppData\Roaming\DMJuamo\DMJuamo.exe
"C:\Windows\system32\notepad.exe"
"C:\Windows\system32\charmap.exe"
"C:\Program Files (x86)\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:844 CREDAT:79873
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4852 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:3296 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4008 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:1856 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://113890url.displayadfeed.com/cpv. ... k.ols30.t6
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4812 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4544 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:5048 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:3356 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4880 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:5164 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:5052 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:5152 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:5020 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:5072 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:1864 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:3616 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:5080 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4988 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4856 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4924 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:1788 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:3872 CREDAT:79873
"C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_clipbook.exe" -Embedding
"C:\Windows\system32\wuauclt.exe"
C:\Windows\SysWOW64\DllHost.exe /Processid:{FE2F9D0D-18A4-4845-BA41-DE6451A66D11}
"C:\Program Files\Java\jre6\bin\jucheck.exe" -auto
taskeng.exe {3F3CA4EB-08F0-4B40-A2E4-3E15EF9043EE}
"C:\Users\Markéta\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1000UA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1006Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1006UA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1007Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1007UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG10\avgssiea.dll [2011-05-05 3543392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-12-01 43520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-05-21 328248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-04-04 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2011-06-15 386264]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG10\avgssie.dll [2011-05-05 2257760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2012-09-13 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-11-10 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}]
QIPBHO Class - C:\Users\Markéta\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll [2010-10-25 149968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D3D233D5-9F6D-436C-B6C7-E63F77503B30}]
Inbox Toolbar - C:\PROGRA~2\INBOXT~1\Inbox.dll [2011-02-10 871928]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2012-09-13 157672]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-05-21 509496]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{D7E97865-918F-41E4-9CD0-25AB1C574CE8} - &Inbox Toolbar - C:\PROGRA~2\INBOXT~1\Inbox.dll [2011-02-10 871928]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-06-05 186904]
"Acer ePower Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2009-08-06 828960]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2009-07-20 503864]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-08-12 165912]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-08-12 387608]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-08-12 365592]
"PLFSetI"=C:\Windows\PLFSetI.exe [2008-07-30 200704]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-07-14 1815848]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-12-01 172032]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
"Google Update"=C:\Users\Markéta\AppData\Local\Google\Update\GoogleUpdate.exe [2011-05-31 136176]
"Exasaw"=C:\Users\Markéta\AppData\Roaming\Exasaw.exe [2011-07-25 131072]
"Vwasan"=C:\Users\Markéta\AppData\Roaming\Microsoft\Vwasan.exe [2012-09-17 148992]
"DMJuamo"=C:\Users\Markéta\AppData\Roaming\DMJuamo\DMJuamo.exe [2012-09-17 150528]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"=C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10t_ActiveX.exe [2011-07-18 240288]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2009-08-18 825864]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"HP Software Update"=C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
"AVG_TRAY"=C:\Program Files (x86)\AVG\AVG10\avgtray.exe [2011-04-18 2334560]
"TkBellExe"=C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [2011-06-15 273544]
"SweetIM"=C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe [2011-06-02 114992]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-04-04 843712]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer VCM.lnk - C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Users\Markéta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-07-28 258560]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-09-21 16:28:22 ----D---- C:\Program Files\trend micro
2012-09-21 16:28:21 ----D---- C:\rsit
2012-09-18 21:39:15 ----A---- C:\Users\Markéta\AppData\Roaming\7894.tmp
2012-09-18 21:39:11 ----A---- C:\Users\Markéta\AppData\Roaming\6800.tmp
2012-09-18 21:39:02 ----A---- C:\Users\Markéta\AppData\Roaming\42CD.exe
2012-09-18 21:34:40 ----A---- C:\Users\Markéta\AppData\Roaming\4784.tmp
2012-09-18 21:34:31 ----A---- C:\Users\Markéta\AppData\Roaming\205E.exe
2012-09-18 21:34:30 ----A---- C:\Users\Markéta\AppData\Roaming\1DE4.tmp
2012-09-18 21:30:04 ----A---- C:\Users\Markéta\AppData\Roaming\EB1.exe
2012-09-18 21:30:01 ----A---- C:\Users\Markéta\AppData\Roaming\2C5.tmp
2012-09-18 21:29:51 ----A---- C:\Users\Markéta\AppData\Roaming\DC12.tmp
2012-09-18 21:25:18 ----A---- C:\Users\Markéta\AppData\Roaming\B35C.tmp
2012-09-18 21:25:13 ----A---- C:\Users\Markéta\AppData\Roaming\9C6E.exe
2012-09-18 21:25:01 ----A---- C:\Users\Markéta\AppData\Roaming\6FA7.tmp
2012-09-18 21:20:24 ----A---- C:\Users\Markéta\AppData\Roaming\3571.exe
2012-09-18 21:20:23 ----A---- C:\Users\Markéta\AppData\Roaming\33DE.tmp
2012-09-18 21:20:13 ----A---- C:\Users\Markéta\AppData\Roaming\9D1.tmp
2012-09-18 21:15:35 ----A---- C:\Users\Markéta\AppData\Roaming\CED3.tmp
2012-09-18 21:15:33 ----A---- C:\Users\Markéta\AppData\Roaming\C253.exe
2012-09-18 21:15:22 ----A---- C:\Users\Markéta\AppData\Roaming\9B93.tmp
2012-09-18 21:11:08 ----A---- C:\Users\Markéta\AppData\Roaming\B74A.exe
2012-09-18 21:10:44 ----A---- C:\Users\Markéta\AppData\Roaming\5BC4.tmp
2012-09-18 21:10:43 ----A---- C:\Users\Markéta\AppData\Roaming\56C4.tmp
2012-09-18 21:05:58 ----A---- C:\Users\Markéta\AppData\Roaming\FBE7.exe
2012-09-18 21:05:57 ----A---- C:\Users\Markéta\AppData\Roaming\F9F4.tmp
2012-09-18 21:05:35 ----A---- C:\Users\Markéta\AppData\Roaming\A4F1.tmp
2012-09-18 21:01:07 ----A---- C:\Users\Markéta\AppData\Roaming\8CCF.exe
2012-09-18 21:01:05 ----A---- C:\Users\Markéta\AppData\Roaming\8494.tmp
2012-09-18 21:01:03 ----A---- C:\Users\Markéta\AppData\Roaming\804F.tmp
2012-09-18 20:56:17 ----A---- C:\Users\Markéta\AppData\Roaming\216D.tmp
2012-09-18 20:56:16 ----A---- C:\Users\Markéta\AppData\Roaming\1C5D.tmp
2012-09-18 20:56:13 ----A---- C:\Users\Markéta\AppData\Roaming\11B5.exe
2012-09-18 20:51:31 ----A---- C:\Users\Markéta\AppData\Roaming\C0C7.exe
2012-09-18 20:51:14 ----A---- C:\Users\Markéta\AppData\Roaming\83E4.tmp
2012-09-18 20:51:13 ----A---- C:\Users\Markéta\AppData\Roaming\7FAF.tmp
2012-09-18 20:46:55 ----A---- C:\Users\Markéta\AppData\Roaming\8BB3.exe
2012-09-18 20:46:23 ----A---- C:\Users\Markéta\AppData\Roaming\128A.tmp
2012-09-18 20:46:09 ----A---- C:\Users\Markéta\AppData\Roaming\D895.tmp
2012-09-18 20:41:54 ----A---- C:\Users\Markéta\AppData\Roaming\F128.exe
2012-09-18 20:41:35 ----A---- C:\Users\Markéta\AppData\Roaming\AD31.tmp
2012-09-18 20:41:25 ----A---- C:\Users\Markéta\AppData\Roaming\8640.tmp
2012-09-18 20:36:48 ----A---- C:\Users\Markéta\AppData\Roaming\4BCE.tmp
2012-09-18 20:36:36 ----A---- C:\Users\Markéta\AppData\Roaming\1B8A.tmp
2012-09-18 20:35:37 ----A---- C:\Users\Markéta\AppData\Roaming\349C.exe
2012-09-18 20:32:05 ----A---- C:\Users\Markéta\AppData\Roaming\FB5C.tmp
2012-09-18 20:32:04 ----A---- C:\Users\Markéta\AppData\Roaming\F6E8.tmp
2012-09-18 20:29:36 ----A---- C:\Users\Markéta\AppData\Roaming\AE1D.exe
2012-09-18 20:27:31 ----A---- C:\Users\Markéta\AppData\Roaming\CCAC.tmp
2012-09-18 20:27:29 ----A---- C:\Users\Markéta\AppData\Roaming\C4BF.tmp
2012-09-18 20:23:35 ----A---- C:\Users\Markéta\AppData\Roaming\2EC0.exe
2012-09-18 20:23:00 ----A---- C:\Users\Markéta\AppData\Roaming\A9A0.tmp
2012-09-18 20:22:59 ----A---- C:\Users\Markéta\AppData\Roaming\A4BF.tmp
2012-09-18 20:18:30 ----A---- C:\Users\Markéta\AppData\Roaming\8A2C.tmp
2012-09-18 20:18:25 ----A---- C:\Users\Markéta\AppData\Roaming\7554.tmp
2012-09-18 20:17:33 ----A---- C:\Users\Markéta\AppData\Roaming\A526.exe
2012-09-18 20:13:58 ----A---- C:\Users\Markéta\AppData\Roaming\6462.tmp
2012-09-18 20:13:56 ----A---- C:\Users\Markéta\AppData\Roaming\5D4F.tmp
2012-09-18 20:11:34 ----A---- C:\Users\Markéta\AppData\Roaming\2DB5.exe
2012-09-18 20:09:26 ----A---- C:\Users\Markéta\AppData\Roaming\3C09.tmp
2012-09-18 20:09:24 ----A---- C:\Users\Markéta\AppData\Roaming\35D0.tmp
2012-09-18 20:05:34 ----A---- C:\Users\Markéta\AppData\Roaming\AFFD.exe
2012-09-18 20:04:58 ----A---- C:\Users\Markéta\AppData\Roaming\25F7.tmp
2012-09-18 20:04:55 ----A---- C:\Users\Markéta\AppData\Roaming\1B6C.tmp
2012-09-18 16:57:02 ----A---- C:\Users\Markéta\AppData\Roaming\FA5F.exe
2012-09-18 16:54:37 ----A---- C:\Users\Markéta\AppData\Roaming\C807.tmp
2012-09-18 16:54:36 ----A---- C:\Users\Markéta\AppData\Roaming\C1CF.tmp
2012-09-18 16:51:05 ----A---- C:\Users\Markéta\AppData\Roaming\883B.exe
2012-09-18 16:50:09 ----A---- C:\Users\Markéta\AppData\Roaming\B15A.tmp
2012-09-18 16:50:07 ----A---- C:\Users\Markéta\AppData\Roaming\A816.tmp
2012-09-18 16:45:40 ----A---- C:\Users\Markéta\AppData\Roaming\95DC.tmp
2012-09-18 16:45:36 ----A---- C:\Users\Markéta\AppData\Roaming\86BE.tmp
2012-09-18 16:45:10 ----A---- C:\Users\Markéta\AppData\Roaming\1CBB.exe
2012-09-18 16:39:54 ----A---- C:\Users\Markéta\AppData\Roaming\4D56.tmp
2012-09-18 16:39:50 ----A---- C:\Users\Markéta\AppData\Roaming\401C.tmp
2012-09-18 16:37:05 ----A---- C:\Users\Markéta\AppData\Roaming\B669.exe
2012-09-18 16:30:50 ----A---- C:\Users\Markéta\AppData\Roaming\FD37.exe
2012-09-18 16:24:03 ----A---- C:\Users\Markéta\AppData\Roaming\C90D.exe
2012-09-18 16:17:54 ----A---- C:\Users\Markéta\AppData\Roaming\2464.exe
2012-09-18 16:11:56 ----A---- C:\Users\Markéta\AppData\Roaming\B137.exe
2012-09-18 16:05:53 ----A---- C:\Users\Markéta\AppData\Roaming\27CC.exe
2012-09-18 15:59:53 ----A---- C:\Users\Markéta\AppData\Roaming\A6B9.exe
2012-09-18 15:59:22 ----A---- C:\Users\Markéta\AppData\Roaming\4555.exe
2012-09-18 15:59:20 ----A---- C:\Users\Markéta\AppData\Roaming\red45.exe
2012-09-17 21:34:10 ----RSHD---- C:\Users\Markéta\AppData\Roaming\DMJuamo
2012-09-17 21:33:58 ----A---- C:\Users\Markéta\AppData\Roaming\89E2.exe
2012-09-17 19:00:32 ----A---- C:\Users\Markéta\AppData\Roaming\13F7.tmp
2012-09-17 19:00:27 ----A---- C:\Users\Markéta\AppData\Roaming\18F.tmp
2012-09-17 18:59:03 ----A---- C:\Users\Markéta\AppData\Roaming\B7A2.exe
2012-09-17 18:53:09 ----A---- C:\Users\Markéta\AppData\Roaming\4F2E.exe
2012-09-17 16:22:21 ----A---- C:\Users\Markéta\AppData\Roaming\3DEB.exe
2012-09-17 16:18:41 ----A---- C:\Users\Markéta\AppData\Roaming\E515.tmp
2012-09-17 16:18:38 ----A---- C:\Users\Markéta\AppData\Roaming\D8C5.tmp
2012-09-17 16:16:27 ----A---- C:\Users\Markéta\AppData\Roaming\D78A.exe
2012-09-17 16:14:10 ----A---- C:\Users\Markéta\AppData\Roaming\C277.tmp
2012-09-17 16:14:07 ----A---- C:\Users\Markéta\AppData\Roaming\B617.tmp
2012-09-17 16:10:31 ----A---- C:\Users\Markéta\AppData\Roaming\6AB3.exe
2012-09-17 16:09:32 ----A---- C:\Users\Markéta\AppData\Roaming\86EB.tmp
2012-09-13 21:06:52 ----A---- C:\Windows\SYSWOW64\javaws.exe
2012-09-13 21:06:32 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2012-09-13 21:06:32 ----A---- C:\Windows\SYSWOW64\javaw.exe
2012-09-13 21:06:32 ----A---- C:\Windows\SYSWOW64\java.exe
2012-09-13 21:06:17 ----D---- C:\Program Files (x86)\Java
2012-09-13 20:32:08 -------- C:\Users\Markéta\AppData\Roaming\Exasaw.exe
2012-09-12 12:35:55 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2012-09-12 12:35:55 ----A---- C:\Windows\system32\d3d10level9.dll
======List of files/folders modified in the last 1 month======
2012-09-21 16:28:22 ----RD---- C:\Program Files
2012-09-21 16:28:03 ----D---- C:\Windows\Temp
2012-09-21 16:23:46 ----D---- C:\Windows\system32\wdi
2012-09-21 16:20:35 ----D---- C:\Windows\system32\config
2012-09-21 16:20:06 ----D---- C:\Windows
2012-09-18 21:44:03 ----SHD---- C:\Windows\Installer
2012-09-18 21:43:34 ----SHD---- C:\System Volume Information
2012-09-18 21:37:51 ----SHD---- C:\Config.Msi
2012-09-18 21:37:49 ----D---- C:\Windows\SysWOW64
2012-09-18 20:09:02 ----SD---- C:\Users\Markéta\AppData\Roaming\Microsoft
2012-09-18 20:09:02 ----RD---- C:\Program Files (x86)
2012-09-18 20:09:02 ----D---- C:\Windows\SYSWOW64\drivers
2012-09-18 20:09:02 ----D---- C:\Windows\system
2012-09-18 20:05:22 ----D---- C:\Windows\Prefetch
2012-09-18 16:58:13 ----D---- C:\Windows\system32\catroot2
2012-09-18 15:58:48 ----D---- C:\Windows\system32\drivers\etc
2012-09-16 11:39:05 ----D---- C:\Windows\inf
2012-09-14 22:07:31 ----D---- C:\ProgramData\Skype
2012-09-14 22:07:31 ----D---- C:\Program Files (x86)\Common Files
2012-09-13 21:10:00 ----D---- C:\Windows\debug
2012-09-13 21:06:20 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2012-09-13 21:06:20 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2012-09-12 14:19:14 ----D---- C:\Windows\winsxs
2012-09-12 14:19:14 ----D---- C:\Windows\System32
2012-09-12 14:19:09 ----D---- C:\Windows\system32\catroot
2012-09-12 14:16:34 ----A---- C:\Windows\system32\MRT.exe
2012-08-24 22:20:53 ----D---- C:\Users\Markéta\AppData\Roaming\Adobe
2012-08-23 21:03:38 ----D---- C:\ProgramData\Adobe
2012-08-23 21:03:37 ----D---- C:\Program Files (x86)\Adobe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSEH;AVGIDSEH; C:\Windows\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 26704]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx64.sys [2011-03-16 37456]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-06-05 408600]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R1 Avgldx64;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx64.sys [2011-01-07 304720]
R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx64.sys [2011-03-01 41552]
R1 Avgtdia;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdia.sys [2011-04-05 377936]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-10-05 1542656]
R3 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys [2011-04-14 118864]
R3 AVGIDSFilter;AVGIDSFilter; C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys [2011-02-10 29264]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2009-08-11 686080]
R3 DKbFltr;Dritek Keyboard Filter Driver (64-bit); C:\Windows\SysWOW64\Drivers\DKbFltr.sys [2009-03-26 25608]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-07-28 7345632]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2009-11-13 67072]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2009-05-05 18432]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-07-14 273456]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2009-05-05 16896]
S2 regi;regi; \??\C:\Windows\system32\drivers\regi.sys []
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552448]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-07-01 98344]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2009-07-01 132648]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-07-01 21160]
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2009-07-14 19968]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 int15.sys;int15.sys; \??\C:\Windows\syswow64\OEM\Factory\int15.sys []
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-05-14 5435904]
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
S3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf.sys [2009-06-17 15208]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2009-06-24 216576]
S3 RtsUIR;Realtek IR Driver; C:\Windows\system32\DRIVERS\Rts516xIR.sys []
S3 USBCCID;Realtek Smartcard Reader Driver; C:\Windows\system32\DRIVERS\RtsUCcid.sys []
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BcmSqlStartupSvc;Služba spouštění serveru SQL Server aplikace Business Contact Manager; C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2008-01-16 30312]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-18 864032]
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2009-08-06 844320]
R2 Greg_Service;GRegService; C:\Program Files (x86)\Acer\Registration\GregHSRW.exe [2009-06-04 1150496]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-06-05 354840]
R2 IviRegMgr;IviRegMgr; C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe [2007-01-05 112152]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2009-06-18 144640]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 PSI_SVC_2;Protexis Licensing V2; C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 RS_Service;Raw Socket Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [2009-07-10 253952]
R2 SQLBrowser;SQL Server Browser; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2010-12-10 238944]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2010-12-10 153440]
R2 Updater Service;Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2009-07-04 240160]
R2 Web Blocker Service URL;Web Blocker Service URL; C:\Program Files\Webstart Studios\Web Blocker\TWBService URL.exe [2010-09-13 24064]
R2 Web Blocker Service;Web Blocker Service; C:\Program Files\Webstart Studios\Web Blocker\TWBService.exe [2010-09-13 32768]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
S2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-04-04 63928]
S2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2011-04-18 7398752]
S2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [2011-02-08 269520]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-28 135664]
S2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S2 SkypeUpdate;Skype Updater; C:\Users\Markéta\Programy\skype\Updater\Updater.exe [2012-07-13 160944]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-28 135664]
S3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); c:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2010-12-10 29293408]
S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-11-10 774144]
S3 NTIBackupSvc;NTI Backup Now 5 Backup Service; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2009-06-18 50432]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-06-13 1255736]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2010-12-10 44384]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
-----------------EOF-----------------
Ve správci úloh je vidět několik instancí IE, ručně ale nebyl spuštěn žádný. Taky se mi nelíbí C:\Users\Markéta\AppData\Roaming\****.exe a C:\Users\Markéta\AppData\Roaming\****.tmp
Prosím o pomoc s kompletní kontrolou, asi tam toho budou mraky.
AVG plánuju vyměnit za Avast Home, lze to zohlednit v nějakém kroku.
Re: Hodně zasekaný NB, pracuje velmi pomalu
Ano, jsem v něm. NB v něm pracuje pěkně svižně. Kurzor myši se pohybuje plynule
což v normálním režimu neplatilo...

Re: Hodně zasekaný NB, pracuje velmi pomalu
Výsledek OTL (musel jsem před tím vypnout NB).
https://www.virustotal.com/file/08cc600 ... 348467815/
https://www.virustotal.com/file/08cc600 ... 348467815/
- Přílohy
-
- Extras.zip
- (148.79 KiB) Staženo 47 x
Naposledy upravil(a) kail5 dne 24 zář 2012 07:26, celkem upraveno 1 x.
Re: Hodně zasekaný NB, pracuje velmi pomalu
Druhá příloha.
- Přílohy
-
- PhysicalMBR.zip
- (580 bajtů) Staženo 44 x
Re: Hodně zasekaný NB, pracuje velmi pomalu
Zkopíroval jsem script a klikl na Opravit.
Provedl jsem nový scan dle návodu výše včetně tehdejšího skriptu.
Oba logy přikládám.
Provedl jsem nový scan dle návodu výše včetně tehdejšího skriptu.
Oba logy přikládám.
- Přílohy
-
- OTL.zip
- (131.23 KiB) Staženo 54 x
Re: Hodně zasekaný NB, pracuje velmi pomalu
Jo a vše jsem ještě pořád prováděl v safe modu, protože zatím nebylo řečeno jinak.
Re: Hodně zasekaný NB, pracuje velmi pomalu
Při pokusu o stažení ComboFixu se mi v prohlížeči vracela prázdná stránka s nápisem "This page is blocked".
Někdy dokonce proběhlo přesměrování na http://thewebblockerblocked.com/
Stáhl jsem CF na jiném PC. Log:
ComboFix 12-09-24.03 - Markéta 26.09.2012 8:08.1.2 - x64
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.2937.1428 [GMT 2:00]
Spuštěný z: c:\users\MarkÚta\Desktop\ComboFix.exe
AV: AVG Anti-Virus Free Edition 2011 *Disabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
SP: AVG Anti-Virus Free Edition 2011 *Disabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Common Files\Acer GameZone online.ico
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-08-26 do 2012-09-26 )))))))))))))))))))))))))))))))
.
.
2012-09-26 06:18 . 2012-09-26 06:18 -------- d-----w- c:\users\Pepula\AppData\Local\temp
2012-09-26 06:18 . 2012-09-26 06:18 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-09-24 19:30 . 2012-09-24 19:30 -------- d-----w- C:\_OTL
2012-09-21 19:30 . 2012-09-24 19:36 512 ----a-w- C:\PhysicalMBR.bin
2012-09-21 14:28 . 2012-09-21 14:34 -------- d-----w- c:\program files\trend micro
2012-09-21 14:28 . 2012-09-21 14:29 -------- d-----w- C:\rsit
2012-09-18 13:59 . 2012-09-21 14:22 148992 ----a-w- c:\users\Markéta\AppData\Roaming\new.bin
2012-09-14 20:07 . 2012-09-14 20:07 -------- d-----w- c:\program files (x86)\Common Files\Skype
2012-09-13 19:07 . 2012-09-13 19:07 -------- d-----w- c:\program files (x86)\Common Files\Java
2012-09-13 19:06 . 2012-09-13 19:06 95208 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2012-09-13 19:06 . 2012-09-13 19:06 -------- d-----w- c:\program files (x86)\Java
2012-09-12 10:35 . 2012-08-02 17:55 574464 ----a-w- c:\windows\system32\d3d10level9.dll
2012-09-12 10:35 . 2012-08-02 17:05 490496 ----a-w- c:\windows\SysWow64\d3d10level9.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-09-21 14:22 . 2012-09-18 13:59 148992 ----a-w- c:\users\Markéta\AppData\Roaming\new.bin
2012-09-21 14:22 . 2012-09-18 13:59 148992 ----a-w- c:\users\Markéta\AppData\Roaming\new.bin
2012-09-13 19:06 . 2012-07-18 13:25 821736 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2012-09-13 19:06 . 2010-04-18 10:36 746984 ----a-w- c:\windows\SysWow64\deployJava1.dll
2012-09-12 12:16 . 2009-12-01 19:25 64462936 ----a-w- c:\windows\system32\MRT.exe
2012-08-21 17:24 . 2009-12-01 16:30 952 --sha-w- c:\programdata\KGyGaAvL.sys
2012-07-18 17:31 . 2012-08-17 09:48 3146752 ----a-w- c:\windows\system32\win32k.sys
2012-07-06 19:58 . 2012-08-18 10:07 552448 ----a-w- c:\windows\system32\drivers\bthport.sys
2012-07-04 22:04 . 2012-08-17 09:50 73216 ----a-w- c:\windows\system32\netapi32.dll
2012-07-04 22:01 . 2012-08-17 09:50 58880 ----a-w- c:\windows\system32\browcli.dll
2012-07-04 22:01 . 2012-08-17 09:50 136704 ----a-w- c:\windows\system32\browser.dll
2012-07-04 21:23 . 2012-08-17 09:50 41472 ----a-w- c:\windows\SysWow64\browcli.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1475072]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2009-08-18 825864]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"HP Software Update"="c:\program files (x86)\HP\HP Software Update\HPWuSchd2.exe" [2007-05-08 54840]
"AVG_TRAY"="c:\program files (x86)\AVG\AVG10\avgtray.exe" [2011-04-18 2334560]
"TkBellExe"="c:\program files (x86)\Real\RealPlayer\update\realsched.exe" [2011-06-15 273544]
"SweetIM"="c:\program files (x86)\SweetIM\Messenger\SweetIM.exe" [2011-06-02 114992]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-04-04 843712]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-07-03 252848]
.
c:\users\Markéta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - c:\program files (x86)\Microsoft Office\Office12\ONENOTEM.EXE [2009-2-26 97680]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Acer VCM.lnk - c:\program files (x86)\Acer\Acer VCM\AcerVCM.exe [2009-8-22 708608]
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2009-7-18 1079584]
HP Digital Imaging Monitor.lnk - c:\program files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [2009-5-21 275768]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~2\AVG\AVG10\avgchsva.exe /sync\0c:\progra~2\AVG\AVG10\avgrsa.exe /sync /restart
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
R2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-04-04 63928]
R2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2011-04-18 7398752]
R2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\AVG10\avgwdsvc.exe [2011-02-08 269520]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 gupdate;Služba Google Update (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-28 135664]
R2 regi;regi;c:\windows\system32\drivers\regi.sys [x]
R2 SkypeUpdate;Skype Updater;c:\users\Markéta\Programy\skype\Updater\Updater.exe [2012-07-13 160944]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-28 135664]
R3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [2009-05-14 5435904]
R3 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2009-06-18 50432]
R3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf.sys [2009-06-17 15208]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [2009-06-24 216576]
R3 RtsUIR;Realtek IR Driver;c:\windows\system32\DRIVERS\Rts516xIR.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-06-13 1255736]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
S0 AVGIDSEH;AVGIDSEH;c:\windows\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 26704]
S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys [2011-03-16 37456]
S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys [2011-01-07 304720]
S1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys [2011-03-01 41552]
S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys [2011-04-04 377936]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 ePowerSvc;Acer ePower Service;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe [2009-08-06 844320]
S2 Greg_Service;GRegService;c:\program files (x86)\Acer\Registration\GregHSRW.exe [2009-06-04 1150496]
S2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2009-06-18 144640]
S2 RS_Service;Raw Socket Service;c:\program files (x86)\Acer\Acer VCM\RS_Service.exe [2009-07-10 253952]
S2 Updater Service;Updater Service;c:\program files\Acer\Acer Updater\UpdaterService.exe [2009-07-04 240160]
S2 Web Blocker Service URL;Web Blocker Service URL;c:\program files\Webstart Studios\Web Blocker\TWBService URL.exe [2010-09-13 24064]
S2 Web Blocker Service;Web Blocker Service;c:\program files\Webstart Studios\Web Blocker\TWBService.exe [2010-09-13 32768]
S3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\AVGIDSDriver.Sys [2011-04-14 118864]
S3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\DRIVERS\AVGIDSFilter.Sys [2011-02-10 29264]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys [2009-11-13 67072]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
Obsah adresáře 'Naplánované úlohy'
.
2012-09-26 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-28 08:38]
.
2012-09-26 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-28 08:38]
.
2012-09-12 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1006Core.job
- c:\users\Pepula\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-27 15:53]
.
2012-09-26 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1006UA.job
- c:\users\Pepula\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-27 15:53]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"="c:\program files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-06-05 186904]
"Acer ePower Management"="c:\program files\Acer\Acer ePower Management\ePowerTray.exe" [2009-08-06 828960]
"cAudioFilterAgent"="c:\program files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe" [2009-07-20 503864]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2009-08-12 165912]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2009-08-12 387608]
"Persistence"="c:\windows\system32\igfxpers.exe" [2009-08-12 365592]
"PLFSetI"="c:\windows\PLFSetI.exe" [2008-07-30 200704]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-01 172032]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x1
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uLocal Page = c:\windows\system32\blank.htm
uDefault_Search_URL = hxxp://search.qip.ru
mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=0405&m=extensa_5635z&r=273612091316l03g3z1h5i4785v70o
mLocal Page = c:\windows\SysWOW64\blank.htm
uSearchAssistant = hxxp://search.qip.ru/ie
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
TCP: DhcpNameServer = 192.168.43.254
TCP: Interfaces\{203CE000-AF31-4F7E-A844-B2C3EB47DC01}: NameServer = 91.228.45.254,91.228.46.254
TCP: Interfaces\{203CE000-AF31-4F7E-A844-B2C3EB47DC01}\2545D2743323: NameServer = 91.228.45.254,91.228.46.254
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
SafeBoot-mcmscsvc
SafeBoot-MCODS
Toolbar-Locked - (no file)
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
AddRemove-Adobe Flash Player Plugin - c:\windows\SysWOW64\Macromed\Flash\FlashUtil10t_Plugin.exe
AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe
AddRemove-OpenTTD - c:\users\Markéta\Documents\Ostatní\ttd\uninstall.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10t_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10t_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10t.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10t.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10t.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10t.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2012-09-26 08:22:40
ComboFix-quarantined-files.txt 2012-09-26 06:22
.
Před spuštěním: Volných bajtů: 122 565 320 704
Po spuštění: Volných bajtů: 122 587 746 304
.
- - End Of File - - 00AD1B0E62751AF8529C09007CCBB4C8
Instance IE se již nespouštějí. Adresa http://www.bleepingcomputer.com/ se stále hlásí jako blokovaná. NTB ale pracuje svižně, skoro bych řekl, že už je vše v pořádku, kdyby tam nebyl ten blok adresy. Soubor hosts je prázdný.
Někdy dokonce proběhlo přesměrování na http://thewebblockerblocked.com/
Stáhl jsem CF na jiném PC. Log:
ComboFix 12-09-24.03 - Markéta 26.09.2012 8:08.1.2 - x64
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.2937.1428 [GMT 2:00]
Spuštěný z: c:\users\MarkÚta\Desktop\ComboFix.exe
AV: AVG Anti-Virus Free Edition 2011 *Disabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
SP: AVG Anti-Virus Free Edition 2011 *Disabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Common Files\Acer GameZone online.ico
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-08-26 do 2012-09-26 )))))))))))))))))))))))))))))))
.
.
2012-09-26 06:18 . 2012-09-26 06:18 -------- d-----w- c:\users\Pepula\AppData\Local\temp
2012-09-26 06:18 . 2012-09-26 06:18 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-09-24 19:30 . 2012-09-24 19:30 -------- d-----w- C:\_OTL
2012-09-21 19:30 . 2012-09-24 19:36 512 ----a-w- C:\PhysicalMBR.bin
2012-09-21 14:28 . 2012-09-21 14:34 -------- d-----w- c:\program files\trend micro
2012-09-21 14:28 . 2012-09-21 14:29 -------- d-----w- C:\rsit
2012-09-18 13:59 . 2012-09-21 14:22 148992 ----a-w- c:\users\Markéta\AppData\Roaming\new.bin
2012-09-14 20:07 . 2012-09-14 20:07 -------- d-----w- c:\program files (x86)\Common Files\Skype
2012-09-13 19:07 . 2012-09-13 19:07 -------- d-----w- c:\program files (x86)\Common Files\Java
2012-09-13 19:06 . 2012-09-13 19:06 95208 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2012-09-13 19:06 . 2012-09-13 19:06 -------- d-----w- c:\program files (x86)\Java
2012-09-12 10:35 . 2012-08-02 17:55 574464 ----a-w- c:\windows\system32\d3d10level9.dll
2012-09-12 10:35 . 2012-08-02 17:05 490496 ----a-w- c:\windows\SysWow64\d3d10level9.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-09-21 14:22 . 2012-09-18 13:59 148992 ----a-w- c:\users\Markéta\AppData\Roaming\new.bin
2012-09-21 14:22 . 2012-09-18 13:59 148992 ----a-w- c:\users\Markéta\AppData\Roaming\new.bin
2012-09-13 19:06 . 2012-07-18 13:25 821736 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2012-09-13 19:06 . 2010-04-18 10:36 746984 ----a-w- c:\windows\SysWow64\deployJava1.dll
2012-09-12 12:16 . 2009-12-01 19:25 64462936 ----a-w- c:\windows\system32\MRT.exe
2012-08-21 17:24 . 2009-12-01 16:30 952 --sha-w- c:\programdata\KGyGaAvL.sys
2012-07-18 17:31 . 2012-08-17 09:48 3146752 ----a-w- c:\windows\system32\win32k.sys
2012-07-06 19:58 . 2012-08-18 10:07 552448 ----a-w- c:\windows\system32\drivers\bthport.sys
2012-07-04 22:04 . 2012-08-17 09:50 73216 ----a-w- c:\windows\system32\netapi32.dll
2012-07-04 22:01 . 2012-08-17 09:50 58880 ----a-w- c:\windows\system32\browcli.dll
2012-07-04 22:01 . 2012-08-17 09:50 136704 ----a-w- c:\windows\system32\browser.dll
2012-07-04 21:23 . 2012-08-17 09:50 41472 ----a-w- c:\windows\SysWow64\browcli.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1475072]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2009-08-18 825864]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"HP Software Update"="c:\program files (x86)\HP\HP Software Update\HPWuSchd2.exe" [2007-05-08 54840]
"AVG_TRAY"="c:\program files (x86)\AVG\AVG10\avgtray.exe" [2011-04-18 2334560]
"TkBellExe"="c:\program files (x86)\Real\RealPlayer\update\realsched.exe" [2011-06-15 273544]
"SweetIM"="c:\program files (x86)\SweetIM\Messenger\SweetIM.exe" [2011-06-02 114992]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-04-04 843712]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-07-03 252848]
.
c:\users\Markéta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - c:\program files (x86)\Microsoft Office\Office12\ONENOTEM.EXE [2009-2-26 97680]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Acer VCM.lnk - c:\program files (x86)\Acer\Acer VCM\AcerVCM.exe [2009-8-22 708608]
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2009-7-18 1079584]
HP Digital Imaging Monitor.lnk - c:\program files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [2009-5-21 275768]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~2\AVG\AVG10\avgchsva.exe /sync\0c:\progra~2\AVG\AVG10\avgrsa.exe /sync /restart
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
R2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-04-04 63928]
R2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2011-04-18 7398752]
R2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\AVG10\avgwdsvc.exe [2011-02-08 269520]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 gupdate;Služba Google Update (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-28 135664]
R2 regi;regi;c:\windows\system32\drivers\regi.sys [x]
R2 SkypeUpdate;Skype Updater;c:\users\Markéta\Programy\skype\Updater\Updater.exe [2012-07-13 160944]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-28 135664]
R3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [2009-05-14 5435904]
R3 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2009-06-18 50432]
R3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf.sys [2009-06-17 15208]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [2009-06-24 216576]
R3 RtsUIR;Realtek IR Driver;c:\windows\system32\DRIVERS\Rts516xIR.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-06-13 1255736]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
S0 AVGIDSEH;AVGIDSEH;c:\windows\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 26704]
S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys [2011-03-16 37456]
S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys [2011-01-07 304720]
S1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys [2011-03-01 41552]
S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys [2011-04-04 377936]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 ePowerSvc;Acer ePower Service;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe [2009-08-06 844320]
S2 Greg_Service;GRegService;c:\program files (x86)\Acer\Registration\GregHSRW.exe [2009-06-04 1150496]
S2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2009-06-18 144640]
S2 RS_Service;Raw Socket Service;c:\program files (x86)\Acer\Acer VCM\RS_Service.exe [2009-07-10 253952]
S2 Updater Service;Updater Service;c:\program files\Acer\Acer Updater\UpdaterService.exe [2009-07-04 240160]
S2 Web Blocker Service URL;Web Blocker Service URL;c:\program files\Webstart Studios\Web Blocker\TWBService URL.exe [2010-09-13 24064]
S2 Web Blocker Service;Web Blocker Service;c:\program files\Webstart Studios\Web Blocker\TWBService.exe [2010-09-13 32768]
S3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\AVGIDSDriver.Sys [2011-04-14 118864]
S3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\DRIVERS\AVGIDSFilter.Sys [2011-02-10 29264]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys [2009-11-13 67072]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
Obsah adresáře 'Naplánované úlohy'
.
2012-09-26 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-28 08:38]
.
2012-09-26 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-28 08:38]
.
2012-09-12 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1006Core.job
- c:\users\Pepula\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-27 15:53]
.
2012-09-26 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1021640080-3302432209-3833254115-1006UA.job
- c:\users\Pepula\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-27 15:53]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"="c:\program files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-06-05 186904]
"Acer ePower Management"="c:\program files\Acer\Acer ePower Management\ePowerTray.exe" [2009-08-06 828960]
"cAudioFilterAgent"="c:\program files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe" [2009-07-20 503864]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2009-08-12 165912]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2009-08-12 387608]
"Persistence"="c:\windows\system32\igfxpers.exe" [2009-08-12 365592]
"PLFSetI"="c:\windows\PLFSetI.exe" [2008-07-30 200704]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-01 172032]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x1
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uLocal Page = c:\windows\system32\blank.htm
uDefault_Search_URL = hxxp://search.qip.ru
mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=0405&m=extensa_5635z&r=273612091316l03g3z1h5i4785v70o
mLocal Page = c:\windows\SysWOW64\blank.htm
uSearchAssistant = hxxp://search.qip.ru/ie
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
TCP: DhcpNameServer = 192.168.43.254
TCP: Interfaces\{203CE000-AF31-4F7E-A844-B2C3EB47DC01}: NameServer = 91.228.45.254,91.228.46.254
TCP: Interfaces\{203CE000-AF31-4F7E-A844-B2C3EB47DC01}\2545D2743323: NameServer = 91.228.45.254,91.228.46.254
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
SafeBoot-mcmscsvc
SafeBoot-MCODS
Toolbar-Locked - (no file)
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
AddRemove-Adobe Flash Player Plugin - c:\windows\SysWOW64\Macromed\Flash\FlashUtil10t_Plugin.exe
AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe
AddRemove-OpenTTD - c:\users\Markéta\Documents\Ostatní\ttd\uninstall.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10t_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10t_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10t.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10t.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10t.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10t.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2012-09-26 08:22:40
ComboFix-quarantined-files.txt 2012-09-26 06:22
.
Před spuštěním: Volných bajtů: 122 565 320 704
Po spuštění: Volných bajtů: 122 587 746 304
.
- - End Of File - - 00AD1B0E62751AF8529C09007CCBB4C8
Instance IE se již nespouštějí. Adresa http://www.bleepingcomputer.com/ se stále hlásí jako blokovaná. NTB ale pracuje svižně, skoro bych řekl, že už je vše v pořádku, kdyby tam nebyl ten blok adresy. Soubor hosts je prázdný.
Re: Hodně zasekaný NB, pracuje velmi pomalu
Když si ale bleepingcomputers.com pingnu nebo si nechám vypsat trace route, tak vždy končí na správné IP.
Re: Hodně zasekaný NB, pracuje velmi pomalu
Ve volné chvíli jsem chtěl odinstalovat AVG 2011, ale hlásilo to chybu a odinstalace nebyla možná. Použil jsem AVG Remover 2011 a tím to šlo.
Když jsem ale chtěl nainstalovat Avast 7 (Win 7, 64 bit), instalace skončila chybou. Myslel jsem, že by to mělo souvislost s tím, že předchozí AVG se neodinstalovalo zcela (někde jsem o takové možné souvislosti četl), chtěl jsem tedy znovu nainstalovat AVG a použít pak klasický uninstall, ale ani AVG nešlo naistalovat (instalace končila vnitřní chybou).
Takže NTB je teď bez AV.
Když jsem ale chtěl nainstalovat Avast 7 (Win 7, 64 bit), instalace skončila chybou. Myslel jsem, že by to mělo souvislost s tím, že předchozí AVG se neodinstalovalo zcela (někde jsem o takové možné souvislosti četl), chtěl jsem tedy znovu nainstalovat AVG a použít pak klasický uninstall, ale ani AVG nešlo naistalovat (instalace končila vnitřní chybou).
Takže NTB je teď bez AV.
Re: Hodně zasekaný NB, pracuje velmi pomalu
21:03:36.0190 2804 TDSS rootkit removing tool 2.8.10.0 Sep 17 2012 19:23:24
21:03:36.0203 2804 ============================================================
21:03:36.0203 2804 Current date / time: 2012/09/26 21:03:36.0203
21:03:36.0203 2804 SystemInfo:
21:03:36.0203 2804
21:03:36.0203 2804 OS Version: 6.1.7600 ServicePack: 0.0
21:03:36.0203 2804 Product type: Workstation
21:03:36.0204 2804 ComputerName: MARKETA-NTB
21:03:36.0204 2804 UserName: Markéta
21:03:36.0204 2804 Windows directory: C:\Windows
21:03:36.0204 2804 System windows directory: C:\Windows
21:03:36.0204 2804 Running under WOW64
21:03:36.0204 2804 Processor architecture: Intel x64
21:03:36.0204 2804 Number of processors: 2
21:03:36.0204 2804 Page size: 0x1000
21:03:36.0204 2804 Boot type: Normal boot
21:03:36.0204 2804 ============================================================
21:03:36.0642 2804 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
21:03:36.0650 2804 ============================================================
21:03:36.0650 2804 \Device\Harddisk0\DR0:
21:03:36.0651 2804 MBR partitions:
21:03:36.0651 2804 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1800800, BlocksNum 0x32000
21:03:36.0651 2804 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1832800, BlocksNum 0x23BFB800
21:03:36.0651 2804 ============================================================
21:03:36.0672 2804 C: <-> \Device\Harddisk0\DR0\Partition2
21:03:36.0672 2804 ============================================================
21:03:36.0672 2804 Initialize success
21:03:36.0672 2804 ============================================================
21:04:09.0434 2284 ============================================================
21:04:09.0434 2284 Scan started
21:04:09.0434 2284 Mode: Manual; SigCheck; TDLFS;
21:04:09.0434 2284 ============================================================
21:04:09.0635 2284 ================ Scan system memory ========================
21:04:09.0635 2284 System memory - ok
21:04:09.0635 2284 ================ Scan services =============================
21:04:09.0814 2284 [ 1B00662092F9F9568B995902F0CC40D5 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
21:04:09.0947 2284 1394ohci - ok
21:04:09.0986 2284 [ 6F11E88748CDEFD2F76AA215F97DDFE5 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys
21:04:10.0007 2284 ACPI - ok
21:04:10.0035 2284 [ 63B05A0420CE4BF0E4AF6DCC7CADA254 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys
21:04:10.0110 2284 AcpiPmi - ok
21:04:10.0224 2284 [ 62B7936F9036DD6ED36E6A7EFA805DC0 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
21:04:10.0243 2284 AdobeARMservice - ok
21:04:10.0308 2284 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
21:04:10.0344 2284 adp94xx - ok
21:04:10.0397 2284 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
21:04:10.0431 2284 adpahci - ok
21:04:10.0466 2284 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
21:04:10.0494 2284 adpu320 - ok
21:04:10.0549 2284 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
21:04:10.0728 2284 AeLookupSvc - ok
21:04:10.0809 2284 [ DB9D6C6B2CD95A9CA414D045B627422E ] AFD C:\Windows\system32\drivers\afd.sys
21:04:10.0889 2284 AFD - ok
21:04:10.0927 2284 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\DRIVERS\agp440.sys
21:04:10.0953 2284 agp440 - ok
21:04:10.0982 2284 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
21:04:11.0045 2284 ALG - ok
21:04:11.0071 2284 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\DRIVERS\aliide.sys
21:04:11.0093 2284 aliide - ok
21:04:11.0101 2284 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\DRIVERS\amdide.sys
21:04:11.0123 2284 amdide - ok
21:04:11.0140 2284 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
21:04:11.0195 2284 AmdK8 - ok
21:04:11.0204 2284 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
21:04:11.0273 2284 AmdPPM - ok
21:04:11.0313 2284 [ EC7EBAB00A4D8448BAB68D1E49B4BEB9 ] amdsata C:\Windows\system32\drivers\amdsata.sys
21:04:11.0337 2284 amdsata - ok
21:04:11.0375 2284 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
21:04:11.0402 2284 amdsbs - ok
21:04:11.0430 2284 [ DB27766102C7BF7E95140A2AA81D042E ] amdxata C:\Windows\system32\drivers\amdxata.sys
21:04:11.0452 2284 amdxata - ok
21:04:11.0470 2284 [ 42FD751B27FA0E9C69BB39F39E409594 ] AppID C:\Windows\system32\drivers\appid.sys
21:04:11.0585 2284 AppID - ok
21:04:11.0629 2284 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
21:04:11.0708 2284 AppIDSvc - ok
21:04:11.0738 2284 [ D065BE66822847B7F127D1F90158376E ] Appinfo C:\Windows\System32\appinfo.dll
21:04:11.0795 2284 Appinfo - ok
21:04:11.0879 2284 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
21:04:11.0903 2284 arc - ok
21:04:11.0915 2284 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
21:04:11.0930 2284 arcsas - ok
21:04:11.0962 2284 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
21:04:12.0023 2284 AsyncMac - ok
21:04:12.0053 2284 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\DRIVERS\atapi.sys
21:04:12.0066 2284 atapi - ok
21:04:12.0140 2284 [ 0ACC06FCF46F64ED4F11E57EE461C1F4 ] athr C:\Windows\system32\DRIVERS\athrx.sys
21:04:12.0257 2284 athr - ok
21:04:12.0314 2284 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
21:04:12.0419 2284 AudioEndpointBuilder - ok
21:04:12.0436 2284 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioSrv C:\Windows\System32\Audiosrv.dll
21:04:12.0490 2284 AudioSrv - ok
21:04:12.0531 2284 [ B20B5FA5CA050E9926E4D1DB81501B32 ] AxInstSV C:\Windows\System32\AxInstSV.dll
21:04:12.0634 2284 AxInstSV - ok
21:04:12.0679 2284 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
21:04:12.0762 2284 b06bdrv - ok
21:04:12.0799 2284 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
21:04:12.0842 2284 b57nd60a - ok
21:04:12.0926 2284 [ 6163664C7E9CD110AF70180C126C3FDC ] BcmSqlStartupSvc C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
21:04:12.0946 2284 BcmSqlStartupSvc - ok
21:04:12.0995 2284 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
21:04:13.0062 2284 BDESVC - ok
21:04:13.0097 2284 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
21:04:13.0185 2284 Beep - ok
21:04:13.0236 2284 [ 4992C609A6315671463E30F6512BC022 ] BFE C:\Windows\System32\bfe.dll
21:04:13.0340 2284 BFE - ok
21:04:13.0391 2284 [ 7F0C323FE3DA28AA4AA1BDA3F575707F ] BITS C:\Windows\system32\qmgr.dll
21:04:13.0527 2284 BITS - ok
21:04:13.0576 2284 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
21:04:13.0618 2284 blbdrive - ok
21:04:13.0675 2284 [ 19D20159708E152267E53B66677A4995 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
21:04:13.0740 2284 bowser - ok
21:04:13.0768 2284 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
21:04:13.0806 2284 BrFiltLo - ok
21:04:13.0814 2284 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
21:04:13.0841 2284 BrFiltUp - ok
21:04:13.0888 2284 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
21:04:13.0972 2284 BridgeMP - ok
21:04:14.0014 2284 [ 6B054C67AAA87843504E8E3C09102009 ] Browser C:\Windows\System32\browser.dll
21:04:14.0056 2284 Browser - ok
21:04:14.0083 2284 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
21:04:14.0153 2284 Brserid - ok
21:04:14.0161 2284 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
21:04:14.0203 2284 BrSerWdm - ok
21:04:14.0210 2284 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
21:04:14.0249 2284 BrUsbMdm - ok
21:04:14.0257 2284 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
21:04:14.0277 2284 BrUsbSer - ok
21:04:14.0343 2284 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys
21:04:14.0396 2284 BthEnum - ok
21:04:14.0416 2284 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
21:04:14.0445 2284 BTHMODEM - ok
21:04:14.0479 2284 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
21:04:14.0524 2284 BthPan - ok
21:04:14.0585 2284 [ D59773C7FDD3D795D6FE402EEEA8D71E ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
21:04:14.0644 2284 BTHPORT - ok
21:04:14.0693 2284 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
21:04:14.0773 2284 bthserv - ok
21:04:14.0791 2284 [ 8504842634DD144C075B6B0C982CCEC4 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
21:04:14.0806 2284 BTHUSB - ok
21:04:14.0847 2284 [ 6BCFDC2B5B7F66D484486D4BD4B39A6B ] btwaudio C:\Windows\system32\drivers\btwaudio.sys
21:04:14.0874 2284 btwaudio - ok
21:04:14.0907 2284 [ 82DC8B7C626E526681C1BEBED2BC3FF9 ] btwavdt C:\Windows\system32\drivers\btwavdt.sys
21:04:14.0933 2284 btwavdt - ok
21:04:15.0012 2284 [ 9B3BD0ECD82CC08409C55A36D8F56B93 ] btwdins C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
21:04:15.0085 2284 btwdins - ok
21:04:15.0111 2284 [ 6149301DC3F81D6F9667A3FBAC410975 ] btwl2cap C:\Windows\system32\DRIVERS\btwl2cap.sys
21:04:15.0125 2284 btwl2cap - ok
21:04:15.0147 2284 [ 28E105AD3B79F440BF94780F507BF66A ] btwrchid C:\Windows\system32\DRIVERS\btwrchid.sys
21:04:15.0169 2284 btwrchid - ok
21:04:15.0195 2284 catchme - ok
21:04:15.0234 2284 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
21:04:15.0310 2284 cdfs - ok
21:04:15.0355 2284 [ 83D2D75E1EFB81B3450C18131443F7DB ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
21:04:15.0397 2284 cdrom - ok
21:04:15.0435 2284 [ 312E2F82AF11E79906898AC3E3D58A1F ] CertPropSvc C:\Windows\System32\certprop.dll
21:04:15.0521 2284 CertPropSvc - ok
21:04:15.0554 2284 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
21:04:15.0597 2284 circlass - ok
21:04:15.0632 2284 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
21:04:15.0663 2284 CLFS - ok
21:04:15.0737 2284 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:04:15.0757 2284 clr_optimization_v2.0.50727_32 - ok
21:04:15.0800 2284 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
21:04:15.0820 2284 clr_optimization_v2.0.50727_64 - ok
21:04:15.0913 2284 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
21:04:15.0933 2284 clr_optimization_v4.0.30319_32 - ok
21:04:15.0964 2284 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
21:04:15.0984 2284 clr_optimization_v4.0.30319_64 - ok
21:04:16.0021 2284 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
21:04:16.0061 2284 CmBatt - ok
21:04:16.0080 2284 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys
21:04:16.0103 2284 cmdide - ok
21:04:16.0165 2284 [ CA7720B73446FDDEC5C69519C1174C98 ] CNG C:\Windows\system32\Drivers\cng.sys
21:04:16.0217 2284 CNG - ok
21:04:16.0255 2284 [ 20F3F8674D7DEE5D90A352B775D5D5BA ] CnxtHdAudService C:\Windows\system32\drivers\CHDRT64.sys
21:04:16.0309 2284 CnxtHdAudService - ok
21:04:16.0346 2284 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
21:04:16.0366 2284 Compbatt - ok
21:04:16.0393 2284 [ F26B3A86F6FA87CA360B879581AB4123 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
21:04:16.0434 2284 CompositeBus - ok
21:04:16.0448 2284 COMSysApp - ok
21:04:16.0464 2284 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
21:04:16.0487 2284 crcdisk - ok
21:04:16.0538 2284 [ F02786B66375292E58C8777082D4396D ] CryptSvc C:\Windows\system32\cryptsvc.dll
21:04:16.0597 2284 CryptSvc - ok
21:04:16.0648 2284 [ 7266972E86890E2B30C0C322E906B027 ] DcomLaunch C:\Windows\system32\rpcss.dll
21:04:16.0745 2284 DcomLaunch - ok
21:04:16.0781 2284 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
21:04:16.0869 2284 defragsvc - ok
21:04:16.0929 2284 [ 3F1DC527070ACB87E40AFE46EF6DA749 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
21:04:16.0994 2284 DfsC - ok
21:04:17.0030 2284 [ CE3B9562D997F69B330D181A8875960F ] Dhcp C:\Windows\system32\dhcpcore.dll
21:04:17.0124 2284 Dhcp - ok
21:04:17.0151 2284 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
21:04:17.0235 2284 discache - ok
21:04:17.0279 2284 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
21:04:17.0303 2284 Disk - ok
21:04:17.0397 2284 [ D5BCB77BE83CF99F508943945D46343D ] DKbFltr C:\Windows\syswow64\Drivers\DKbFltr.sys
21:04:17.0421 2284 DKbFltr - ok
21:04:17.0475 2284 [ 85CF424C74A1D5EC33533E1DBFF9920A ] Dnscache C:\Windows\System32\dnsrslvr.dll
21:04:17.0522 2284 Dnscache - ok
21:04:17.0557 2284 [ 14452ACDB09B70964C8C21BF80A13ACB ] dot3svc C:\Windows\System32\dot3svc.dll
21:04:17.0646 2284 dot3svc - ok
21:04:17.0702 2284 [ B42ED0320C6E41102FDE0005154849BB ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys
21:04:17.0734 2284 Dot4 - ok
21:04:17.0756 2284 [ 85135AD27E79B689335C08167D917CDE ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys
21:04:17.0805 2284 Dot4Print - ok
21:04:17.0824 2284 [ FD05A02B0370BC3000F402E543CA5814 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
21:04:17.0868 2284 dot4usb - ok
21:04:17.0892 2284 [ 8C2BA6BEA949EE6E68385F5692BAFB94 ] DPS C:\Windows\system32\dps.dll
21:04:17.0985 2284 DPS - ok
21:04:18.0020 2284 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
21:04:18.0048 2284 drmkaud - ok
21:04:18.0114 2284 [ 1633B9ABF52784A1331476397A48CBEF ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
21:04:18.0158 2284 DXGKrnl - ok
21:04:18.0195 2284 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
21:04:18.0278 2284 EapHost - ok
21:04:18.0370 2284 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
21:04:18.0517 2284 ebdrv - ok
21:04:18.0552 2284 [ 156F6159457D0AA7E59B62681B56EB90 ] EFS C:\Windows\System32\lsass.exe
21:04:18.0617 2284 EFS - ok
21:04:18.0696 2284 [ 47C071994C3F649F23D9CD075AC9304A ] ehRecvr C:\Windows\ehome\ehRecvr.exe
21:04:18.0775 2284 ehRecvr - ok
21:04:18.0797 2284 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
21:04:18.0831 2284 ehSched - ok
21:04:18.0879 2284 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
21:04:18.0926 2284 elxstor - ok
21:04:19.0001 2284 [ 7C35C6865957289D9EFE6CC73F4AB2E1 ] ePowerSvc C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
21:04:19.0081 2284 ePowerSvc - ok
21:04:19.0089 2284 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys
21:04:19.0130 2284 ErrDev - ok
21:04:19.0180 2284 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
21:04:19.0276 2284 EventSystem - ok
21:04:19.0308 2284 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
21:04:19.0386 2284 exfat - ok
21:04:19.0414 2284 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
21:04:19.0467 2284 fastfat - ok
21:04:19.0513 2284 [ D607B2F1BEE3992AA6C2C92C0A2F0855 ] Fax C:\Windows\system32\fxssvc.exe
21:04:19.0590 2284 Fax - ok
21:04:19.0603 2284 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
21:04:19.0622 2284 fdc - ok
21:04:19.0640 2284 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
21:04:19.0713 2284 fdPHost - ok
21:04:19.0737 2284 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
21:04:19.0776 2284 FDResPub - ok
21:04:19.0797 2284 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
21:04:19.0811 2284 FileInfo - ok
21:04:19.0825 2284 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
21:04:19.0863 2284 Filetrace - ok
21:04:19.0868 2284 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
21:04:19.0883 2284 flpydisk - ok
21:04:19.0916 2284 [ F7866AF72ABBAF84B1FA5AA195378C59 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
21:04:19.0934 2284 FltMgr - ok
21:04:20.0001 2284 [ CB5E4B9C319E3C6BB363EB7E58A4A051 ] FontCache C:\Windows\system32\FntCache.dll
21:04:20.0097 2284 FontCache - ok
21:04:20.0149 2284 [ 8D89E3131C27FDD6932189CB785E1B7A ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
21:04:20.0167 2284 FontCache3.0.0.0 - ok
21:04:20.0213 2284 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
21:04:20.0236 2284 FsDepends - ok
21:04:20.0279 2284 [ 6C06701BF1DB05405804D7EB610991CE ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
21:04:20.0298 2284 fssfltr - ok
21:04:20.0425 2284 [ 4CE9DAC1518FF7E77BD213E6394B9D77 ] fsssvc C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
21:04:20.0518 2284 fsssvc - ok
21:04:20.0565 2284 [ D3E3F93D67821A2DB2B3D9FAC2DC2064 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
21:04:20.0585 2284 Fs_Rec - ok
21:04:20.0635 2284 [ AE87BA80D0EC3B57126ED2CDC15B24ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
21:04:20.0659 2284 fvevol - ok
21:04:20.0697 2284 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
21:04:20.0715 2284 gagp30kx - ok
21:04:20.0760 2284 [ FE5AB4525BC2EC68B9119A6E5D40128B ] gpsvc C:\Windows\System32\gpsvc.dll
21:04:20.0824 2284 gpsvc - ok
21:04:20.0923 2284 [ 816FD5A6F3C2F3D600900096632FC60E ] Greg_Service C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
21:04:21.0008 2284 Greg_Service - ok
21:04:21.0105 2284 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
21:04:21.0124 2284 gupdate - ok
21:04:21.0183 2284 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
21:04:21.0201 2284 gupdatem - ok
21:04:21.0231 2284 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
21:04:21.0285 2284 hcw85cir - ok
21:04:21.0314 2284 [ 6410F6F415B2A5A9037224C41DA8BF12 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
21:04:21.0365 2284 HdAudAddService - ok
21:04:21.0405 2284 [ 0A49913402747A0B67DE940FB42CBDBB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
21:04:21.0453 2284 HDAudBus - ok
21:04:21.0461 2284 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
21:04:21.0495 2284 HidBatt - ok
21:04:21.0505 2284 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
21:04:21.0539 2284 HidBth - ok
21:04:21.0545 2284 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
21:04:21.0568 2284 HidIr - ok
21:04:21.0595 2284 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
21:04:21.0667 2284 hidserv - ok
21:04:21.0697 2284 [ B3BF6B5B50006DEF50B66306D99FCF6F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
21:04:21.0729 2284 HidUsb - ok
21:04:21.0783 2284 [ EFA58EDE58DD74388FFD04CB32681518 ] hkmsvc C:\Windows\system32\kmsvc.dll
21:04:21.0849 2284 hkmsvc - ok
21:04:21.0868 2284 [ 046B2673767CA626E2CFB7FDF735E9E8 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
21:04:21.0926 2284 HomeGroupListener - ok
21:04:21.0963 2284 [ 06A7422224D9865A5613710A089987DF ] HomeGroupProvider C:\Windows\system32\provsvc.dll
21:04:22.0011 2284 HomeGroupProvider - ok
21:04:22.0113 2284 [ 0A3C6AA4A9FC38C20BA4EAC2C3351C05 ] hpqcxs08 C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
21:04:22.0146 2284 hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning
21:04:22.0146 2284 hpqcxs08 - detected UnsignedFile.Multi.Generic (1)
21:04:22.0166 2284 [ F3F72A2A86C22610BCA5439FA789DD52 ] hpqddsvc C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
21:04:22.0186 2284 hpqddsvc ( UnsignedFile.Multi.Generic ) - warning
21:04:22.0186 2284 hpqddsvc - detected UnsignedFile.Multi.Generic (1)
21:04:22.0224 2284 [ 0886D440058F203EBA0E1825E4355914 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys
21:04:22.0251 2284 HpSAMD - ok
21:04:22.0297 2284 [ CEE049CAC4EFA7F4E1E4AD014414A5D4 ] HTTP C:\Windows\system32\drivers\HTTP.sys
21:04:22.0373 2284 HTTP - ok
21:04:22.0397 2284 [ F17766A19145F111856378DF337A5D79 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
21:04:22.0411 2284 hwpolicy - ok
21:04:22.0433 2284 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
21:04:22.0449 2284 i8042prt - ok
21:04:22.0518 2284 [ 7548066DF68A8A1A56B043359F915F37 ] IAANTMON C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
21:04:22.0549 2284 IAANTMON - ok
21:04:22.0588 2284 [ 1D004CB1DA6323B1F55CAEF7F94B61D9 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
21:04:22.0612 2284 iaStor - ok
21:04:22.0657 2284 [ B75E45C564E944A2657167D197AB29DA ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
21:04:22.0691 2284 iaStorV - ok
21:04:22.0748 2284 [ 2F2BE70D3E02B6FA877921AB9516D43C ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
21:04:22.0811 2284 idsvc - ok
21:04:23.0054 2284 [ DFEAF0A1D98D397035012C8E28D1520F ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
21:04:23.0330 2284 igfx - ok
21:04:23.0387 2284 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
21:04:23.0409 2284 iirsp - ok
21:04:23.0467 2284 [ C5B4683680DF085B57BC53E5EF34861F ] IKEEXT C:\Windows\System32\ikeext.dll
21:04:23.0591 2284 IKEEXT - ok
21:04:23.0681 2284 [ 8C7FA71CB1EBCD3EDE8958D27B1BF0B4 ] int15.sys C:\Windows\System32\OEM\Factory\int15.sys
21:04:23.0704 2284 int15.sys - ok
21:04:23.0728 2284 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\DRIVERS\intelide.sys
21:04:23.0749 2284 intelide - ok
21:04:23.0774 2284 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
21:04:23.0811 2284 intelppm - ok
21:04:23.0842 2284 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
21:04:23.0920 2284 IPBusEnum - ok
21:04:23.0957 2284 [ 722DD294DF62483CECAAE6E094B4D695 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
21:04:24.0016 2284 IpFilterDriver - ok
21:04:24.0046 2284 [ F8E058D17363EC580E4B7232778B6CB5 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
21:04:24.0142 2284 iphlpsvc - ok
21:04:24.0150 2284 [ E2B4A4494DB7CB9B89B55CA268C337C5 ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys
21:04:24.0168 2284 IPMIDRV - ok
21:04:24.0194 2284 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
21:04:24.0255 2284 IPNAT - ok
21:04:24.0282 2284 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
21:04:24.0301 2284 IRENUM - ok
21:04:24.0307 2284 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys
21:04:24.0321 2284 isapnp - ok
21:04:24.0348 2284 [ FA4D2557DE56D45B0A346F93564BE6E1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
21:04:24.0366 2284 iScsiPrt - ok
21:04:24.0414 2284 [ 213822072085B5BBAD9AF30AB577D817 ] IviRegMgr C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
21:04:24.0426 2284 IviRegMgr - ok
21:04:24.0446 2284 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
21:04:24.0458 2284 kbdclass - ok
21:04:24.0467 2284 [ 6DEF98F8541E1B5DCEB2C822A11F7323 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
21:04:24.0500 2284 kbdhid - ok
21:04:24.0522 2284 [ 156F6159457D0AA7E59B62681B56EB90 ] KeyIso C:\Windows\system32\lsass.exe
21:04:24.0536 2284 KeyIso - ok
21:04:24.0579 2284 [ 4F4B5FDE429416877DE7143044582EB5 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
21:04:24.0602 2284 KSecDD - ok
21:04:24.0644 2284 [ 6F40465A44ECDC1731BEFAFEC5BDD03C ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
21:04:24.0669 2284 KSecPkg - ok
21:04:24.0686 2284 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
21:04:24.0762 2284 ksthunk - ok
21:04:24.0799 2284 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
21:04:24.0884 2284 KtmRm - ok
21:04:24.0917 2284 [ 9C46A5421DE9D116C47155317CABB522 ] L1C C:\Windows\system32\DRIVERS\L1C62x64.sys
21:04:24.0965 2284 L1C - ok
21:04:25.0000 2284 [ 81F1D04D4D0E433099365127375FD501 ] LanmanServer C:\Windows\System32\srvsvc.dll
21:04:25.0062 2284 LanmanServer - ok
21:04:25.0090 2284 [ 27026EAC8818E8A6C00A1CAD2F11D29A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
21:04:25.0179 2284 LanmanWorkstation - ok
21:04:25.0236 2284 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
21:04:25.0306 2284 lltdio - ok
21:04:25.0347 2284 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
21:04:25.0417 2284 lltdsvc - ok
21:04:25.0469 2284 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
21:04:25.0524 2284 lmhosts - ok
21:04:25.0553 2284 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
21:04:25.0568 2284 LSI_FC - ok
21:04:25.0575 2284 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
21:04:25.0590 2284 LSI_SAS - ok
21:04:25.0597 2284 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
21:04:25.0612 2284 LSI_SAS2 - ok
21:04:25.0629 2284 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
21:04:25.0644 2284 LSI_SCSI - ok
21:04:25.0676 2284 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
21:04:25.0729 2284 luafv - ok
21:04:25.0750 2284 [ F84C8F1000BC11E3B7B23CBD3BAFF111 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
21:04:25.0779 2284 Mcx2Svc - ok
21:04:25.0785 2284 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
21:04:25.0798 2284 megasas - ok
21:04:25.0821 2284 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
21:04:25.0840 2284 MegaSR - ok
21:04:25.0913 2284 [ 7C4C76B39D5525C4A465E0BE32528E19 ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
21:04:25.0932 2284 Microsoft Office Groove Audit Service - ok
21:04:25.0967 2284 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
21:04:26.0051 2284 MMCSS - ok
21:04:26.0069 2284 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
21:04:26.0129 2284 Modem - ok
21:04:26.0158 2284 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
21:04:26.0182 2284 monitor - ok
21:04:26.0212 2284 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
21:04:26.0233 2284 mouclass - ok
21:04:26.0269 2284 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
21:04:26.0311 2284 mouhid - ok
21:04:26.0336 2284 [ 791AF66C4D0E7C90A3646066386FB571 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
21:04:26.0359 2284 mountmgr - ok
21:04:26.0378 2284 [ 609D1D87649ECC19796F4D76D4C15CEA ] mpio C:\Windows\system32\DRIVERS\mpio.sys
21:04:26.0404 2284 mpio - ok
21:04:26.0450 2284 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
21:04:26.0507 2284 mpsdrv - ok
21:04:26.0544 2284 [ AECAB449567D1846DAD63ECE49E893E3 ] MpsSvc C:\Windows\system32\mpssvc.dll
21:04:26.0630 2284 MpsSvc - ok
21:04:26.0639 2284 [ 30524261BB51D96D6FCBAC20C810183C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
21:04:26.0667 2284 MRxDAV - ok
21:04:26.0689 2284 [ B7F3D2C40BDF8FFB73EBFB19C77734E2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
21:04:26.0723 2284 mrxsmb - ok
21:04:26.0744 2284 [ 86C6F88B5168CE21CF8D69D0B3FF5D19 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
21:04:26.0763 2284 mrxsmb10 - ok
21:04:26.0783 2284 [ B081069251C8E9F42CB8769D07148F9C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
21:04:26.0817 2284 mrxsmb20 - ok
21:04:26.0848 2284 [ 5C37497276E3B3A5488B23A326A754B7 ] msahci C:\Windows\system32\DRIVERS\msahci.sys
21:04:26.0861 2284 msahci - ok
21:04:26.0868 2284 [ 8D27B597229AED79430FB9DB3BCBFBD0 ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys
21:04:26.0884 2284 msdsm - ok
21:04:26.0904 2284 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
21:04:26.0940 2284 MSDTC - ok
21:04:26.0977 2284 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
21:04:27.0031 2284 Msfs - ok
21:04:27.0050 2284 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
21:04:27.0130 2284 mshidkmdf - ok
21:04:27.0154 2284 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\DRIVERS\msisadrv.sys
21:04:27.0166 2284 msisadrv - ok
21:04:27.0206 2284 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
21:04:27.0261 2284 MSiSCSI - ok
21:04:27.0267 2284 msiserver - ok
21:04:27.0301 2284 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
21:04:27.0352 2284 MSKSSRV - ok
21:04:27.0373 2284 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
21:04:27.0422 2284 MSPCLOCK - ok
21:04:27.0444 2284 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
21:04:27.0494 2284 MSPQM - ok
21:04:27.0527 2284 [ 89CB141AA8616D8C6A4610FA26C60964 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
21:04:27.0547 2284 MsRPC - ok
21:04:27.0560 2284 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
21:04:27.0573 2284 mssmbios - ok
21:04:27.0645 2284 MSSQL$MSSMLBIZ - ok
21:04:27.0716 2284 [ 1D89EB4E2A99CABD4E81225F4F4C4B25 ] MSSQLServerADHelper c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqladhlp90.exe
21:04:27.0733 2284 MSSQLServerADHelper - ok
21:04:27.0750 2284 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
21:04:27.0803 2284 MSTEE - ok
21:04:27.0818 2284 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
21:04:27.0850 2284 MTConfig - ok
21:04:27.0884 2284 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
21:04:27.0897 2284 Mup - ok
21:04:27.0941 2284 [ 4987E079A4530FA737A128BE54B63B12 ] napagent C:\Windows\system32\qagentRT.dll
21:04:28.0026 2284 napagent - ok
21:04:28.0086 2284 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
21:04:28.0143 2284 NativeWifiP - ok
21:04:28.0236 2284 [ 87A00FAEDD703D8D2BDCB29CE5EEEA6B ] NBService C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
21:04:28.0289 2284 NBService ( UnsignedFile.Multi.Generic ) - warning
21:04:28.0290 2284 NBService - detected UnsignedFile.Multi.Generic (1)
21:04:28.0341 2284 [ CAD515DBD07D082BB317D9928CE8962C ] NDIS C:\Windows\system32\drivers\ndis.sys
21:04:28.0413 2284 NDIS - ok
21:04:28.0438 2284 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
21:04:28.0495 2284 NdisCap - ok
21:04:28.0558 2284 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
21:04:28.0617 2284 NdisTapi - ok
21:04:28.0653 2284 [ F105BA1E22BF1F2EE8F005D4305E4BEC ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
21:04:28.0723 2284 Ndisuio - ok
21:04:28.0751 2284 [ 557DFAB9CA1FCB036AC77564C010DAD3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
21:04:28.0792 2284 NdisWan - ok
21:04:28.0802 2284 [ 659B74FB74B86228D6338D643CD3E3CF ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
21:04:28.0841 2284 NDProxy - ok
21:04:28.0924 2284 [ 2334DC48997BA203B794DF3EE70521DB ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
21:04:28.0949 2284 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
21:04:28.0949 2284 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
21:04:28.0970 2284 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
21:04:29.0053 2284 NetBIOS - ok
21:04:29.0076 2284 [ 9162B273A44AB9DCE5B44362731D062A ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
21:04:29.0121 2284 NetBT - ok
21:04:29.0136 2284 [ 156F6159457D0AA7E59B62681B56EB90 ] Netlogon C:\Windows\system32\lsass.exe
21:04:29.0150 2284 Netlogon - ok
21:04:29.0200 2284 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
21:04:29.0279 2284 Netman - ok
21:04:29.0309 2284 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
21:04:29.0397 2284 netprofm - ok
21:04:29.0440 2284 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:04:29.0460 2284 NetTcpPortSharing - ok
21:04:29.0634 2284 [ 705283C02177809CA9FA7CC58A4F1E77 ] netw5v64 C:\Windows\system32\DRIVERS\netw5v64.sys
21:04:29.0872 2284 netw5v64 - ok
21:04:29.0913 2284 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
21:04:29.0926 2284 nfrd960 - ok
21:04:29.0959 2284 [ D9A0CE66046D6EFA0C61BAA885CBA0A8 ] NlaSvc C:\Windows\System32\nlasvc.dll
21:04:30.0007 2284 NlaSvc - ok
21:04:30.0025 2284 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
21:04:30.0080 2284 Npfs - ok
21:04:30.0105 2284 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
21:04:30.0157 2284 nsi - ok
21:04:30.0181 2284 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
21:04:30.0221 2284 nsiproxy - ok
21:04:30.0303 2284 [ 378E0E0DFEA67D98AE6EA53ADBBD76BC ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
21:04:30.0400 2284 Ntfs - ok
21:04:30.0459 2284 [ FD324CCE1D4D5BB5AF65F8E55B462C7E ] NTIBackupSvc C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
21:04:30.0485 2284 NTIBackupSvc - ok
21:04:30.0509 2284 [ 64DDD0DEE976302F4BD93E5EFCC2F013 ] NTIDrvr C:\Windows\system32\drivers\NTIDrvr.sys
21:04:30.0526 2284 NTIDrvr - ok
21:04:30.0553 2284 [ 3F6268A2EC33CD38CF75C880AF8DED42 ] NTISchedulerSvc C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
21:04:30.0571 2284 NTISchedulerSvc - ok
21:04:30.0600 2284 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
21:04:30.0660 2284 Null - ok
21:04:30.0704 2284 [ A4D9C9A608A97F59307C2F2600EDC6A4 ] nvraid C:\Windows\system32\drivers\nvraid.sys
21:04:30.0729 2284 nvraid - ok
21:04:30.0755 2284 [ 6C1D5F70E7A6A3FD1C90D840EDC048B9 ] nvstor C:\Windows\system32\drivers\nvstor.sys
21:04:30.0782 2284 nvstor - ok
21:04:30.0810 2284 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\DRIVERS\nv_agp.sys
21:04:30.0826 2284 nv_agp - ok
21:04:30.0891 2284 [ 1F0E05DFF4F5A833168E49BE1256F002 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
21:04:30.0931 2284 odserv - ok
21:04:30.0945 2284 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
21:04:30.0974 2284 ohci1394 - ok
21:04:31.0021 2284 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
21:04:31.0034 2284 ose - ok
21:04:31.0065 2284 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
21:04:31.0131 2284 p2pimsvc - ok
21:04:31.0170 2284 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
21:04:31.0214 2284 p2psvc - ok
21:04:31.0235 2284 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
21:04:31.0262 2284 Parport - ok
21:04:31.0312 2284 [ 90061B1ACFE8CCAA5345750FFE08D8B8 ] partmgr C:\Windows\system32\drivers\partmgr.sys
21:04:31.0335 2284 partmgr - ok
21:04:31.0345 2284 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
21:04:31.0392 2284 PcaSvc - ok
21:04:31.0425 2284 [ F36F6504009F2FB0DFD1B17A116AD74B ] pci C:\Windows\system32\DRIVERS\pci.sys
21:04:31.0452 2284 pci - ok
21:04:31.0465 2284 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\DRIVERS\pciide.sys
21:04:31.0487 2284 pciide - ok
21:04:31.0507 2284 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
21:04:31.0535 2284 pcmcia - ok
21:04:31.0548 2284 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
21:04:31.0561 2284 pcw - ok
21:04:31.0584 2284 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
21:04:31.0642 2284 PEAUTH - ok
21:04:31.0732 2284 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
21:04:31.0772 2284 PerfHost - ok
21:04:31.0856 2284 [ 557E9A86F65F0DE18C9B6751DFE9D3F1 ] pla C:\Windows\system32\pla.dll
21:04:31.0985 2284 pla - ok
21:04:32.0026 2284 [ 98B1721B8718164293B9701B98C52D77 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
21:04:32.0064 2284 PlugPlay - ok
21:04:32.0141 2284 [ AC78DF349F0E4CFB8B667C0CFFF83CCE ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
21:04:32.0164 2284 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
21:04:32.0164 2284 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
21:04:32.0198 2284 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
21:04:32.0222 2284 PNRPAutoReg - ok
21:04:32.0248 2284 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
21:04:32.0282 2284 PNRPsvc - ok
21:04:32.0311 2284 [ 166EB40D1F5B47E615DE3D0FFFE5F243 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
21:04:32.0359 2284 PolicyAgent - ok
21:04:32.0386 2284 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
21:04:32.0452 2284 Power - ok
21:04:32.0492 2284 [ 27CC19E81BA5E3403C48302127BDA717 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
21:04:32.0569 2284 PptpMiniport - ok
21:04:32.0594 2284 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
21:04:32.0637 2284 Processor - ok
21:04:32.0694 2284 [ 97293447431311C06703368AD0F6C4BE ] ProfSvc C:\Windows\system32\profsvc.dll
21:04:32.0758 2284 ProfSvc - ok
21:04:32.0773 2284 [ 156F6159457D0AA7E59B62681B56EB90 ] ProtectedStorage C:\Windows\system32\lsass.exe
21:04:32.0795 2284 ProtectedStorage - ok
21:04:32.0825 2284 [ EE992183BD8EAEFD9973F352E587A299 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
21:04:32.0876 2284 Psched - ok
21:04:32.0899 2284 [ 6328CFF4C812702412549B34CD08503D ] PSI C:\Windows\system32\DRIVERS\psi_mf.sys
21:04:32.0914 2284 PSI ( UnsignedFile.Multi.Generic ) - warning
21:04:32.0914 2284 PSI - detected UnsignedFile.Multi.Generic (1)
21:04:32.0954 2284 [ A6A7AD767BF5141665F5C675F671B3E1 ] PSI_SVC_2 C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
21:04:32.0974 2284 PSI_SVC_2 - ok
21:04:33.0037 2284 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
21:04:33.0126 2284 ql2300 - ok
21:04:33.0134 2284 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
21:04:33.0153 2284 ql40xx - ok
21:04:33.0190 2284 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
21:04:33.0225 2284 QWAVE - ok
21:04:33.0262 2284 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
21:04:33.0303 2284 QWAVEdrv - ok
21:04:33.0310 2284 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
21:04:33.0362 2284 RasAcd - ok
21:04:33.0421 2284 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
21:04:33.0472 2284 RasAgileVpn - ok
21:04:33.0489 2284 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
21:04:33.0547 2284 RasAuto - ok
21:04:33.0570 2284 [ 87A6E852A22991580D6D39ADC4790463 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
21:04:33.0630 2284 Rasl2tp - ok
21:04:33.0653 2284 [ 47394ED3D16D053F5906EFE5AB51CC83 ] RasMan C:\Windows\System32\rasmans.dll
21:04:33.0716 2284 RasMan - ok
21:04:33.0737 2284 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
21:04:33.0790 2284 RasPppoe - ok
21:04:33.0819 2284 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
21:04:33.0871 2284 RasSstp - ok
21:04:33.0909 2284 [ 3BAC8142102C15D59A87757C1D41DCE5 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
21:04:33.0998 2284 rdbss - ok
21:04:34.0020 2284 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
21:04:34.0037 2284 rdpbus - ok
21:04:34.0053 2284 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
21:04:34.0091 2284 RDPCDD - ok
21:04:34.0134 2284 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
21:04:34.0208 2284 RDPENCDD - ok
21:04:34.0232 2284 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
21:04:34.0308 2284 RDPREFMP - ok
21:04:34.0347 2284 [ 447DE7E3DEA39D422C1504F245B668B1 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
21:04:34.0402 2284 RDPWD - ok
21:04:34.0428 2284 [ 634B9A2181D98F15941236886164EC8B ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
21:04:34.0455 2284 rdyboost - ok
21:04:34.0480 2284 regi - ok
21:04:34.0534 2284 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
21:04:34.0586 2284 RemoteAccess - ok
21:04:34.0614 2284 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
21:04:34.0699 2284 RemoteRegistry - ok
21:04:34.0747 2284 [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
21:04:34.0796 2284 RFCOMM - ok
21:04:34.0821 2284 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
21:04:34.0901 2284 RpcEptMapper - ok
21:04:34.0936 2284 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
21:04:34.0970 2284 RpcLocator - ok
21:04:35.0005 2284 [ 7266972E86890E2B30C0C322E906B027 ] RpcSs C:\Windows\System32\rpcss.dll
21:04:35.0065 2284 RpcSs - ok
21:04:35.0102 2284 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
21:04:35.0163 2284 rspndr - ok
21:04:35.0252 2284 [ A5DF2F732A6C95554E548FCB6932BD31 ] RSUSBSTOR C:\Windows\system32\Drivers\RtsUStor.sys
21:04:35.0303 2284 RSUSBSTOR - ok
21:04:35.0371 2284 [ B5A4B7D779CF4070DF408DE18BD33B02 ] RS_Service C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
21:04:35.0399 2284 RS_Service ( UnsignedFile.Multi.Generic ) - warning
21:04:35.0399 2284 RS_Service - detected UnsignedFile.Multi.Generic (1)
21:04:35.0414 2284 RtsUIR - ok
21:04:35.0430 2284 [ 156F6159457D0AA7E59B62681B56EB90 ] SamSs C:\Windows\system32\lsass.exe
21:04:35.0452 2284 SamSs - ok
21:04:35.0483 2284 [ E3BBB89983DAF5622C1D50CF49F28227 ] sbp2port C:\Windows\system32\DRIVERS\sbp2port.sys
21:04:35.0507 2284 sbp2port - ok
21:04:35.0551 2284 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
21:04:35.0632 2284 SCardSvr - ok
21:04:35.0650 2284 [ C94DA20C7E3BA1DCA269BC8460D98387 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
21:04:35.0719 2284 scfilter - ok
21:04:35.0783 2284 [ 624D0F5FF99428BB90A5B8A4123E918E ] Schedule C:\Windows\system32\schedsvc.dll
21:04:35.0857 2284 Schedule - ok
21:04:35.0882 2284 [ 312E2F82AF11E79906898AC3E3D58A1F ] SCPolicySvc C:\Windows\System32\certprop.dll
21:04:35.0933 2284 SCPolicySvc - ok
21:04:35.0958 2284 [ 765A27C3279CE11D14CB9E4F5869FCA5 ] SDRSVC C:\Windows\System32\SDRSVC.dll
21:04:36.0006 2284 SDRSVC - ok
21:04:36.0048 2284 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
21:04:36.0128 2284 secdrv - ok
21:04:36.0152 2284 [ 463B386EBC70F98DA5DFF85F7E654346 ] seclogon C:\Windows\system32\seclogon.dll
21:04:36.0207 2284 seclogon - ok
21:04:36.0228 2284 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll
21:04:36.0310 2284 SENS - ok
21:04:36.0343 2284 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
21:04:36.0393 2284 SensrSvc - ok
21:04:36.0411 2284 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
21:04:36.0434 2284 Serenum - ok
21:04:36.0456 2284 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
21:04:36.0499 2284 Serial - ok
21:04:36.0509 2284 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
21:04:36.0535 2284 sermouse - ok
21:04:36.0569 2284 [ C3BC61CE47FF6F4E88AB8A3B429A36AF ] SessionEnv C:\Windows\system32\sessenv.dll
21:04:36.0626 2284 SessionEnv - ok
21:04:36.0632 2284 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
21:04:36.0661 2284 sffdisk - ok
21:04:36.0667 2284 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\DRIVERS\sffp_mmc.sys
21:04:36.0686 2284 sffp_mmc - ok
21:04:36.0693 2284 [ 5588B8C6193EB1522490C122EB94DFFA ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
21:04:36.0710 2284 sffp_sd - ok
21:04:36.0716 2284 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
21:04:36.0730 2284 sfloppy - ok
21:04:36.0796 2284 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
21:04:36.0877 2284 SharedAccess - ok
21:04:36.0902 2284 [ 0298AC45D0EFFFB2DB4BAA7DD186E7BF ] ShellHWDetection C:\Windows\System32\shsvcs.dll
21:04:36.0959 2284 ShellHWDetection - ok
21:04:36.0980 2284 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
21:04:37.0002 2284 SiSRaid2 - ok
21:04:37.0044 2284 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
21:04:37.0067 2284 SiSRaid4 - ok
21:04:37.0175 2284 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Users\Markéta\Programy\skype\Updater\Updater.exe
21:04:37.0196 2284 SkypeUpdate - ok
21:04:37.0213 2284 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
21:04:37.0312 2284 Smb - ok
21:04:37.0374 2284 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
21:04:37.0419 2284 SNMPTRAP - ok
21:04:37.0446 2284 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
21:04:37.0466 2284 spldr - ok
21:04:37.0523 2284 [ 567977DC43CC13C4C35ED7084C0B84D5 ] Spooler C:\Windows\System32\spoolsv.exe
21:04:37.0598 2284 Spooler - ok
21:04:37.0708 2284 [ 913D843498553A1BC8F8DBAD6358E49F ] sppsvc C:\Windows\system32\sppsvc.exe
21:04:37.0855 2284 sppsvc - ok
21:04:37.0893 2284 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
21:04:37.0957 2284 sppuinotify - ok
21:04:37.0982 2284 [ 86EBD8B1F23E743AAD21F4D5B4D40985 ] SQLBrowser c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
21:04:38.0005 2284 SQLBrowser - ok
21:04:38.0080 2284 [ 3C432A96363097870995E2A3C8B66ABD ] SQLWriter c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
21:04:38.0100 2284 SQLWriter - ok
21:04:38.0157 2284 [ 2408C0366D96BCDF63E8F1C78E4A29C5 ] srv C:\Windows\system32\DRIVERS\srv.sys
21:04:38.0232 2284 srv - ok
21:04:38.0262 2284 [ 76548F7B818881B47D8D1AE1BE9C11F8 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
21:04:38.0303 2284 srv2 - ok
21:04:38.0347 2284 [ 0AF6E19D39C70844C5CAA8FB0183C36E ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
21:04:38.0390 2284 srvnet - ok
21:04:38.0438 2284 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
21:04:38.0527 2284 SSDPSRV - ok
21:04:38.0567 2284 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
21:04:38.0607 2284 SstpSvc - ok
21:04:38.0642 2284 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
21:04:38.0663 2284 stexstor - ok
21:04:38.0706 2284 [ 52D0E33B681BD0F33FDC08812FEE4F7D ] stisvc C:\Windows\System32\wiaservc.dll
21:04:38.0760 2284 stisvc - ok
21:04:38.0780 2284 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
21:04:38.0792 2284 swenum - ok
21:04:38.0821 2284 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
21:04:38.0879 2284 swprv - ok
21:04:38.0916 2284 [ 929C9FA0B18AD2EBC8340591C4BF00FF ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
21:04:38.0933 2284 SynTP - ok
21:04:38.0990 2284 [ 3C1284516A62078FB68F768DE4F1A7BE ] SysMain C:\Windows\system32\sysmain.dll
21:04:39.0083 2284 SysMain - ok
21:04:39.0099 2284 [ 238935C3CF2854886DC7CBB2A0E2CC66 ] TabletInputService C:\Windows\System32\TabSvc.dll
21:04:39.0119 2284 TabletInputService - ok
21:04:39.0141 2284 [ 884264AC597B690C5707C89723BB8E7B ] TapiSrv C:\Windows\System32\tapisrv.dll
21:04:39.0201 2284 TapiSrv - ok
21:04:39.0225 2284 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
21:04:39.0275 2284 TBS - ok
21:04:39.0374 2284 [ 624C5B3AA4C99B3184BB922D9ECE3FF0 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
21:04:39.0424 2284 Tcpip - ok
21:04:39.0496 2284 [ 624C5B3AA4C99B3184BB922D9ECE3FF0 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
21:04:39.0546 2284 TCPIP6 - ok
21:04:39.0571 2284 [ 76D078AF6F587B162D50210F761EB9ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
21:04:39.0609 2284 tcpipreg - ok
21:04:39.0638 2284 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
21:04:39.0692 2284 TDPIPE - ok
21:04:39.0739 2284 [ 7518F7BCFD4B308ABC9192BACAF6C970 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
21:04:39.0790 2284 TDTCP - ok
21:04:39.0811 2284 [ 079125C4B17B01FCAEEBCE0BCB290C0F ] tdx C:\Windows\system32\DRIVERS\tdx.sys
21:04:39.0883 2284 tdx - ok
21:04:39.0908 2284 [ C448651339196C0E869A355171875522 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
21:04:39.0921 2284 TermDD - ok
21:04:39.0970 2284 [ 0F05EC2887BFE197AD82A13287D2F404 ] TermService C:\Windows\System32\termsrv.dll
21:04:40.0069 2284 TermService - ok
21:04:40.0087 2284 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
21:04:40.0123 2284 Themes - ok
21:04:40.0165 2284 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
21:04:40.0218 2284 THREADORDER - ok
21:04:40.0231 2284 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
21:04:40.0285 2284 TrkWks - ok
21:04:40.0338 2284 [ 840F7FB849F5887A49BA18C13B2DA920 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
21:04:40.0362 2284 TrustedInstaller - ok
21:04:40.0378 2284 [ 61B96C26131E37B24E93327A0BD1FB95 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
21:04:40.0447 2284 tssecsrv - ok
21:04:40.0498 2284 [ 3836171A2CDF3AF8EF10856DB9835A70 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
21:04:40.0552 2284 tunnel - ok
21:04:40.0573 2284 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
21:04:40.0587 2284 uagp35 - ok
21:04:40.0605 2284 [ 2E22C1FD397A5A9FFEF55E9D1FC96C00 ] UBHelper C:\Windows\system32\drivers\UBHelper.sys
21:04:40.0619 2284 UBHelper - ok
21:04:40.0641 2284 [ D47BAEAD86C65D4F4069D7CE0A4EDCEB ] udfs C:\Windows\system32\DRIVERS\udfs.sys
21:04:40.0695 2284 udfs - ok
21:04:40.0728 2284 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
21:04:40.0761 2284 UI0Detect - ok
21:04:40.0796 2284 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\DRIVERS\uliagpkx.sys
21:04:40.0810 2284 uliagpkx - ok
21:04:40.0834 2284 [ EAB6C35E62B1B0DB0D1B48B671D3A117 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
21:04:40.0864 2284 umbus - ok
21:04:40.0872 2284 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
21:04:40.0887 2284 UmPass - ok
21:04:40.0963 2284 [ 70DDE3A86DBEB1D6C3C30AD687B1877A ] Updater Service C:\Program Files\Acer\Acer Updater\UpdaterService.exe
21:04:40.0990 2284 Updater Service - ok
21:04:41.0014 2284 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
21:04:41.0090 2284 upnphost - ok
21:04:41.0131 2284 [ 7B6A127C93EE590E4D79A5F2A76FE46F ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
21:04:41.0182 2284 usbccgp - ok
21:04:41.0195 2284 USBCCID - ok
21:04:41.0228 2284 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys
21:04:41.0267 2284 usbcir - ok
21:04:41.0302 2284 [ 92969BA5AC44E229C55A332864F79677 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
21:04:41.0325 2284 usbehci - ok
21:04:41.0389 2284 [ E7DF1CFD28CA86B35EF5ADD0735CEEF3 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
21:04:41.0432 2284 usbhub - ok
21:04:41.0474 2284 [ F1BB1E55F1E7A65C5839CCC7B36D773E ] usbohci C:\Windows\system32\drivers\usbohci.sys
21:04:41.0512 2284 usbohci - ok
21:04:41.0550 2284 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
21:04:41.0578 2284 usbprint - ok
21:04:41.0613 2284 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
21:04:41.0640 2284 usbscan - ok
21:04:41.0675 2284 [ F39983647BC1F3E6100778DDFE9DCE29 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
21:04:41.0730 2284 USBSTOR - ok
21:04:41.0774 2284 [ BC3070350A491D84B518D7CCA9ABD36F ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
21:04:41.0795 2284 usbuhci - ok
21:04:41.0852 2284 [ 7CB8C573C6E4A2714402CC0A36EAB4FE ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
21:04:41.0889 2284 usbvideo - ok
21:04:41.0933 2284 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
21:04:42.0007 2284 UxSms - ok
21:04:42.0022 2284 [ 156F6159457D0AA7E59B62681B56EB90 ] VaultSvc C:\Windows\system32\lsass.exe
21:04:42.0038 2284 VaultSvc - ok
21:04:42.0073 2284 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\DRIVERS\vdrvroot.sys
21:04:42.0086 2284 vdrvroot - ok
21:04:42.0128 2284 [ 44D73E0BBC1D3C8981304BA15135C2F2 ] vds C:\Windows\System32\vds.exe
21:04:42.0176 2284 vds - ok
21:04:42.0197 2284 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
21:04:42.0215 2284 vga - ok
21:04:42.0244 2284 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
21:04:42.0282 2284 VgaSave - ok
21:04:42.0292 2284 [ C82E748660F62A242B2DFAC1442F22A4 ] vhdmp C:\Windows\system32\DRIVERS\vhdmp.sys
21:04:42.0310 2284 vhdmp - ok
21:04:42.0316 2284 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\DRIVERS\viaide.sys
21:04:42.0331 2284 viaide - ok
21:04:42.0346 2284 [ 2B1A3DAE2B4E70DBBA822B7A03FBD4A3 ] volmgr C:\Windows\system32\DRIVERS\volmgr.sys
21:04:42.0361 2284 volmgr - ok
21:04:42.0383 2284 [ 99B0CBB569CA79ACAED8C91461D765FB ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
21:04:42.0404 2284 volmgrx - ok
21:04:42.0426 2284 [ 58F82EED8CA24B461441F9C3E4F0BF5C ] volsnap C:\Windows\system32\DRIVERS\volsnap.sys
21:04:42.0445 2284 volsnap - ok
21:04:42.0479 2284 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
21:04:42.0496 2284 vsmraid - ok
21:04:42.0568 2284 [ 787898BF9FB6D7BD87A36E2D95C899BA ] VSS C:\Windows\system32\vssvc.exe
21:04:42.0681 2284 VSS - ok
21:04:42.0698 2284 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
21:04:42.0725 2284 vwifibus - ok
21:04:42.0759 2284 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
21:04:42.0789 2284 vwififlt - ok
21:04:42.0808 2284 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
21:04:42.0867 2284 W32Time - ok
21:04:42.0903 2284 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
21:04:42.0944 2284 WacomPen - ok
21:04:42.0979 2284 [ 47CA49400643EFFD3F1C9A27E1D69324 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
21:04:43.0042 2284 WANARP - ok
21:04:43.0061 2284 [ 47CA49400643EFFD3F1C9A27E1D69324 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
21:04:43.0100 2284 Wanarpv6 - ok
21:04:43.0211 2284 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
21:04:43.0295 2284 WatAdminSvc - ok
21:04:43.0356 2284 [ 5AB1BB85BD8B5089CC5D64200DEDAE68 ] wbengine C:\Windows\system32\wbengine.exe
21:04:43.0459 2284 wbengine - ok
21:04:43.0491 2284 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
21:04:43.0527 2284 WbioSrvc - ok
21:04:43.0561 2284 [ DD1BAE8EBFC653824D29CCF8C9054D68 ] wcncsvc C:\Windows\System32\wcncsvc.dll
21:04:43.0598 2284 wcncsvc - ok
21:04:43.0640 2284 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
21:04:43.0671 2284 WcsPlugInService - ok
21:04:43.0696 2284 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
21:04:43.0719 2284 Wd - ok
21:04:43.0751 2284 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
21:04:43.0800 2284 Wdf01000 - ok
21:04:43.0831 2284 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
21:04:43.0870 2284 WdiServiceHost - ok
21:04:43.0875 2284 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
21:04:43.0896 2284 WdiSystemHost - ok
21:04:44.0017 2284 [ D2B8BF2B7FF08744F4021330045E3B24 ] Web Blocker Service C:\Program Files\Webstart Studios\Web Blocker\TWBService.exe
21:04:44.0038 2284 Web Blocker Service ( UnsignedFile.Multi.Generic ) - warning
21:04:44.0038 2284 Web Blocker Service - detected UnsignedFile.Multi.Generic (1)
21:04:44.0073 2284 [ C120ECD4A82464150766816480925021 ] Web Blocker Service URL C:\Program Files\Webstart Studios\Web Blocker\TWBService URL.exe
21:04:44.0078 2284 Web Blocker Service URL ( UnsignedFile.Multi.Generic ) - warning
21:04:44.0078 2284 Web Blocker Service URL - detected UnsignedFile.Multi.Generic (1)
21:04:44.0127 2284 [ 733006127F235BE7C35354EBEE7B9A7B ] WebClient C:\Windows\System32\webclnt.dll
21:04:44.0180 2284 WebClient - ok
21:04:44.0199 2284 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
21:04:44.0286 2284 Wecsvc - ok
21:04:44.0322 2284 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
21:04:44.0382 2284 wercplsupport - ok
21:04:44.0412 2284 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
21:04:44.0490 2284 WerSvc - ok
21:04:44.0519 2284 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
21:04:44.0565 2284 WfpLwf - ok
21:04:44.0586 2284 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
21:04:44.0600 2284 WIMMount - ok
21:04:44.0618 2284 WinDefend - ok
21:04:44.0627 2284 WinHttpAutoProxySvc - ok
21:04:44.0714 2284 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
21:04:44.0788 2284 Winmgmt - ok
21:04:44.0862 2284 [ 41FBB751936B387F9179E7F03A74FE29 ] WinRM C:\Windows\system32\WsmSvc.dll
21:04:44.0975 2284 WinRM - ok
21:04:45.0032 2284 [ 817EAFF5D38674EDD7713B9DFB8E9791 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
21:04:45.0058 2284 WinUsb - ok
21:04:45.0121 2284 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
21:04:45.0197 2284 Wlansvc - ok
21:04:45.0265 2284 [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
21:04:45.0282 2284 wlcrasvc - ok
21:04:45.0428 2284 [ 7E47C328FC4768CB8BEAFBCFAFA70362 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
21:04:45.0554 2284 wlidsvc - ok
21:04:45.0584 2284 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
21:04:45.0598 2284 WmiAcpi - ok
21:04:45.0645 2284 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
21:04:45.0671 2284 wmiApSrv - ok
21:04:45.0690 2284 WMPNetworkSvc - ok
21:04:45.0714 2284 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
21:04:45.0735 2284 WPCSvc - ok
21:04:45.0751 2284 [ 2E57DDF2880A7E52E76F41C7E96D327B ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
21:04:45.0796 2284 WPDBusEnum - ok
21:04:45.0815 2284 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
21:04:45.0880 2284 ws2ifsl - ok
21:04:45.0929 2284 [ 8F9F3969933C02DA96EB0F84576DB43E ] wscsvc C:\Windows\system32\wscsvc.dll
21:04:45.0969 2284 wscsvc - ok
21:04:45.0975 2284 WSearch - ok
21:04:46.0083 2284 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
21:04:46.0201 2284 wuauserv - ok
21:04:46.0223 2284 [ 7CADC74271DD6461C452C271B30BD378 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
21:04:46.0282 2284 WudfPf - ok
21:04:46.0316 2284 [ 3B197AF0FFF08AA66B6B2241CA538D64 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
21:04:46.0357 2284 WUDFRd - ok
21:04:46.0393 2284 [ B551D6637AA0E132C18AC6E504F7B79B ] wudfsvc C:\Windows\System32\WUDFSvc.dll
21:04:46.0448 2284 wudfsvc - ok
21:04:46.0491 2284 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
21:04:46.0541 2284 WwanSvc - ok
21:04:46.0587 2284 ================ Scan global ===============================
21:04:46.0615 2284 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
21:04:46.0662 2284 [ 0CB6EBF4B461A6043353C570BD72A1E1 ] C:\Windows\system32\winsrv.dll
21:04:46.0684 2284 [ 0CB6EBF4B461A6043353C570BD72A1E1 ] C:\Windows\system32\winsrv.dll
21:04:46.0713 2284 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
21:04:46.0751 2284 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
21:04:46.0759 2284 [Global] - ok
21:04:46.0765 2284 ================ Scan MBR ==================================
21:04:46.0800 2284 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
21:04:47.0258 2284 \Device\Harddisk0\DR0 - ok
21:04:47.0261 2284 ================ Scan VBR ==================================
21:04:47.0265 2284 [ 09D7939EC1E361A6221F32D85195F197 ] \Device\Harddisk0\DR0\Partition1
21:04:47.0268 2284 \Device\Harddisk0\DR0\Partition1 - ok
21:04:47.0304 2284 [ 4B379AA68552D3B24BB8391624E4B6C8 ] \Device\Harddisk0\DR0\Partition2
21:04:47.0308 2284 \Device\Harddisk0\DR0\Partition2 - ok
21:04:47.0308 2284 ============================================================
21:04:47.0309 2284 Scan finished
21:04:47.0309 2284 ============================================================
21:04:47.0331 4348 Detected object count: 9
21:04:47.0331 4348 Actual detected object count: 9
21:05:17.0433 4348 hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0433 4348 hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0434 4348 hpqddsvc ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0434 4348 hpqddsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0437 4348 NBService ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0438 4348 NBService ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0442 4348 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0442 4348 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0444 4348 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0444 4348 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0448 4348 PSI ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0448 4348 PSI ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0451 4348 RS_Service ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0451 4348 RS_Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0454 4348 Web Blocker Service ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0454 4348 Web Blocker Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0458 4348 Web Blocker Service URL ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0458 4348 Web Blocker Service URL ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:27.0241 0860 Deinitialize success
21:03:36.0203 2804 ============================================================
21:03:36.0203 2804 Current date / time: 2012/09/26 21:03:36.0203
21:03:36.0203 2804 SystemInfo:
21:03:36.0203 2804
21:03:36.0203 2804 OS Version: 6.1.7600 ServicePack: 0.0
21:03:36.0203 2804 Product type: Workstation
21:03:36.0204 2804 ComputerName: MARKETA-NTB
21:03:36.0204 2804 UserName: Markéta
21:03:36.0204 2804 Windows directory: C:\Windows
21:03:36.0204 2804 System windows directory: C:\Windows
21:03:36.0204 2804 Running under WOW64
21:03:36.0204 2804 Processor architecture: Intel x64
21:03:36.0204 2804 Number of processors: 2
21:03:36.0204 2804 Page size: 0x1000
21:03:36.0204 2804 Boot type: Normal boot
21:03:36.0204 2804 ============================================================
21:03:36.0642 2804 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
21:03:36.0650 2804 ============================================================
21:03:36.0650 2804 \Device\Harddisk0\DR0:
21:03:36.0651 2804 MBR partitions:
21:03:36.0651 2804 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1800800, BlocksNum 0x32000
21:03:36.0651 2804 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1832800, BlocksNum 0x23BFB800
21:03:36.0651 2804 ============================================================
21:03:36.0672 2804 C: <-> \Device\Harddisk0\DR0\Partition2
21:03:36.0672 2804 ============================================================
21:03:36.0672 2804 Initialize success
21:03:36.0672 2804 ============================================================
21:04:09.0434 2284 ============================================================
21:04:09.0434 2284 Scan started
21:04:09.0434 2284 Mode: Manual; SigCheck; TDLFS;
21:04:09.0434 2284 ============================================================
21:04:09.0635 2284 ================ Scan system memory ========================
21:04:09.0635 2284 System memory - ok
21:04:09.0635 2284 ================ Scan services =============================
21:04:09.0814 2284 [ 1B00662092F9F9568B995902F0CC40D5 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
21:04:09.0947 2284 1394ohci - ok
21:04:09.0986 2284 [ 6F11E88748CDEFD2F76AA215F97DDFE5 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys
21:04:10.0007 2284 ACPI - ok
21:04:10.0035 2284 [ 63B05A0420CE4BF0E4AF6DCC7CADA254 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys
21:04:10.0110 2284 AcpiPmi - ok
21:04:10.0224 2284 [ 62B7936F9036DD6ED36E6A7EFA805DC0 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
21:04:10.0243 2284 AdobeARMservice - ok
21:04:10.0308 2284 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
21:04:10.0344 2284 adp94xx - ok
21:04:10.0397 2284 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
21:04:10.0431 2284 adpahci - ok
21:04:10.0466 2284 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
21:04:10.0494 2284 adpu320 - ok
21:04:10.0549 2284 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
21:04:10.0728 2284 AeLookupSvc - ok
21:04:10.0809 2284 [ DB9D6C6B2CD95A9CA414D045B627422E ] AFD C:\Windows\system32\drivers\afd.sys
21:04:10.0889 2284 AFD - ok
21:04:10.0927 2284 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\DRIVERS\agp440.sys
21:04:10.0953 2284 agp440 - ok
21:04:10.0982 2284 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
21:04:11.0045 2284 ALG - ok
21:04:11.0071 2284 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\DRIVERS\aliide.sys
21:04:11.0093 2284 aliide - ok
21:04:11.0101 2284 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\DRIVERS\amdide.sys
21:04:11.0123 2284 amdide - ok
21:04:11.0140 2284 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
21:04:11.0195 2284 AmdK8 - ok
21:04:11.0204 2284 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
21:04:11.0273 2284 AmdPPM - ok
21:04:11.0313 2284 [ EC7EBAB00A4D8448BAB68D1E49B4BEB9 ] amdsata C:\Windows\system32\drivers\amdsata.sys
21:04:11.0337 2284 amdsata - ok
21:04:11.0375 2284 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
21:04:11.0402 2284 amdsbs - ok
21:04:11.0430 2284 [ DB27766102C7BF7E95140A2AA81D042E ] amdxata C:\Windows\system32\drivers\amdxata.sys
21:04:11.0452 2284 amdxata - ok
21:04:11.0470 2284 [ 42FD751B27FA0E9C69BB39F39E409594 ] AppID C:\Windows\system32\drivers\appid.sys
21:04:11.0585 2284 AppID - ok
21:04:11.0629 2284 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
21:04:11.0708 2284 AppIDSvc - ok
21:04:11.0738 2284 [ D065BE66822847B7F127D1F90158376E ] Appinfo C:\Windows\System32\appinfo.dll
21:04:11.0795 2284 Appinfo - ok
21:04:11.0879 2284 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
21:04:11.0903 2284 arc - ok
21:04:11.0915 2284 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
21:04:11.0930 2284 arcsas - ok
21:04:11.0962 2284 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
21:04:12.0023 2284 AsyncMac - ok
21:04:12.0053 2284 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\DRIVERS\atapi.sys
21:04:12.0066 2284 atapi - ok
21:04:12.0140 2284 [ 0ACC06FCF46F64ED4F11E57EE461C1F4 ] athr C:\Windows\system32\DRIVERS\athrx.sys
21:04:12.0257 2284 athr - ok
21:04:12.0314 2284 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
21:04:12.0419 2284 AudioEndpointBuilder - ok
21:04:12.0436 2284 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioSrv C:\Windows\System32\Audiosrv.dll
21:04:12.0490 2284 AudioSrv - ok
21:04:12.0531 2284 [ B20B5FA5CA050E9926E4D1DB81501B32 ] AxInstSV C:\Windows\System32\AxInstSV.dll
21:04:12.0634 2284 AxInstSV - ok
21:04:12.0679 2284 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
21:04:12.0762 2284 b06bdrv - ok
21:04:12.0799 2284 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
21:04:12.0842 2284 b57nd60a - ok
21:04:12.0926 2284 [ 6163664C7E9CD110AF70180C126C3FDC ] BcmSqlStartupSvc C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
21:04:12.0946 2284 BcmSqlStartupSvc - ok
21:04:12.0995 2284 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
21:04:13.0062 2284 BDESVC - ok
21:04:13.0097 2284 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
21:04:13.0185 2284 Beep - ok
21:04:13.0236 2284 [ 4992C609A6315671463E30F6512BC022 ] BFE C:\Windows\System32\bfe.dll
21:04:13.0340 2284 BFE - ok
21:04:13.0391 2284 [ 7F0C323FE3DA28AA4AA1BDA3F575707F ] BITS C:\Windows\system32\qmgr.dll
21:04:13.0527 2284 BITS - ok
21:04:13.0576 2284 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
21:04:13.0618 2284 blbdrive - ok
21:04:13.0675 2284 [ 19D20159708E152267E53B66677A4995 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
21:04:13.0740 2284 bowser - ok
21:04:13.0768 2284 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
21:04:13.0806 2284 BrFiltLo - ok
21:04:13.0814 2284 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
21:04:13.0841 2284 BrFiltUp - ok
21:04:13.0888 2284 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
21:04:13.0972 2284 BridgeMP - ok
21:04:14.0014 2284 [ 6B054C67AAA87843504E8E3C09102009 ] Browser C:\Windows\System32\browser.dll
21:04:14.0056 2284 Browser - ok
21:04:14.0083 2284 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
21:04:14.0153 2284 Brserid - ok
21:04:14.0161 2284 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
21:04:14.0203 2284 BrSerWdm - ok
21:04:14.0210 2284 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
21:04:14.0249 2284 BrUsbMdm - ok
21:04:14.0257 2284 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
21:04:14.0277 2284 BrUsbSer - ok
21:04:14.0343 2284 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys
21:04:14.0396 2284 BthEnum - ok
21:04:14.0416 2284 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
21:04:14.0445 2284 BTHMODEM - ok
21:04:14.0479 2284 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
21:04:14.0524 2284 BthPan - ok
21:04:14.0585 2284 [ D59773C7FDD3D795D6FE402EEEA8D71E ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
21:04:14.0644 2284 BTHPORT - ok
21:04:14.0693 2284 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
21:04:14.0773 2284 bthserv - ok
21:04:14.0791 2284 [ 8504842634DD144C075B6B0C982CCEC4 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
21:04:14.0806 2284 BTHUSB - ok
21:04:14.0847 2284 [ 6BCFDC2B5B7F66D484486D4BD4B39A6B ] btwaudio C:\Windows\system32\drivers\btwaudio.sys
21:04:14.0874 2284 btwaudio - ok
21:04:14.0907 2284 [ 82DC8B7C626E526681C1BEBED2BC3FF9 ] btwavdt C:\Windows\system32\drivers\btwavdt.sys
21:04:14.0933 2284 btwavdt - ok
21:04:15.0012 2284 [ 9B3BD0ECD82CC08409C55A36D8F56B93 ] btwdins C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
21:04:15.0085 2284 btwdins - ok
21:04:15.0111 2284 [ 6149301DC3F81D6F9667A3FBAC410975 ] btwl2cap C:\Windows\system32\DRIVERS\btwl2cap.sys
21:04:15.0125 2284 btwl2cap - ok
21:04:15.0147 2284 [ 28E105AD3B79F440BF94780F507BF66A ] btwrchid C:\Windows\system32\DRIVERS\btwrchid.sys
21:04:15.0169 2284 btwrchid - ok
21:04:15.0195 2284 catchme - ok
21:04:15.0234 2284 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
21:04:15.0310 2284 cdfs - ok
21:04:15.0355 2284 [ 83D2D75E1EFB81B3450C18131443F7DB ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
21:04:15.0397 2284 cdrom - ok
21:04:15.0435 2284 [ 312E2F82AF11E79906898AC3E3D58A1F ] CertPropSvc C:\Windows\System32\certprop.dll
21:04:15.0521 2284 CertPropSvc - ok
21:04:15.0554 2284 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
21:04:15.0597 2284 circlass - ok
21:04:15.0632 2284 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
21:04:15.0663 2284 CLFS - ok
21:04:15.0737 2284 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:04:15.0757 2284 clr_optimization_v2.0.50727_32 - ok
21:04:15.0800 2284 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
21:04:15.0820 2284 clr_optimization_v2.0.50727_64 - ok
21:04:15.0913 2284 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
21:04:15.0933 2284 clr_optimization_v4.0.30319_32 - ok
21:04:15.0964 2284 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
21:04:15.0984 2284 clr_optimization_v4.0.30319_64 - ok
21:04:16.0021 2284 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
21:04:16.0061 2284 CmBatt - ok
21:04:16.0080 2284 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys
21:04:16.0103 2284 cmdide - ok
21:04:16.0165 2284 [ CA7720B73446FDDEC5C69519C1174C98 ] CNG C:\Windows\system32\Drivers\cng.sys
21:04:16.0217 2284 CNG - ok
21:04:16.0255 2284 [ 20F3F8674D7DEE5D90A352B775D5D5BA ] CnxtHdAudService C:\Windows\system32\drivers\CHDRT64.sys
21:04:16.0309 2284 CnxtHdAudService - ok
21:04:16.0346 2284 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
21:04:16.0366 2284 Compbatt - ok
21:04:16.0393 2284 [ F26B3A86F6FA87CA360B879581AB4123 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
21:04:16.0434 2284 CompositeBus - ok
21:04:16.0448 2284 COMSysApp - ok
21:04:16.0464 2284 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
21:04:16.0487 2284 crcdisk - ok
21:04:16.0538 2284 [ F02786B66375292E58C8777082D4396D ] CryptSvc C:\Windows\system32\cryptsvc.dll
21:04:16.0597 2284 CryptSvc - ok
21:04:16.0648 2284 [ 7266972E86890E2B30C0C322E906B027 ] DcomLaunch C:\Windows\system32\rpcss.dll
21:04:16.0745 2284 DcomLaunch - ok
21:04:16.0781 2284 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
21:04:16.0869 2284 defragsvc - ok
21:04:16.0929 2284 [ 3F1DC527070ACB87E40AFE46EF6DA749 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
21:04:16.0994 2284 DfsC - ok
21:04:17.0030 2284 [ CE3B9562D997F69B330D181A8875960F ] Dhcp C:\Windows\system32\dhcpcore.dll
21:04:17.0124 2284 Dhcp - ok
21:04:17.0151 2284 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
21:04:17.0235 2284 discache - ok
21:04:17.0279 2284 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
21:04:17.0303 2284 Disk - ok
21:04:17.0397 2284 [ D5BCB77BE83CF99F508943945D46343D ] DKbFltr C:\Windows\syswow64\Drivers\DKbFltr.sys
21:04:17.0421 2284 DKbFltr - ok
21:04:17.0475 2284 [ 85CF424C74A1D5EC33533E1DBFF9920A ] Dnscache C:\Windows\System32\dnsrslvr.dll
21:04:17.0522 2284 Dnscache - ok
21:04:17.0557 2284 [ 14452ACDB09B70964C8C21BF80A13ACB ] dot3svc C:\Windows\System32\dot3svc.dll
21:04:17.0646 2284 dot3svc - ok
21:04:17.0702 2284 [ B42ED0320C6E41102FDE0005154849BB ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys
21:04:17.0734 2284 Dot4 - ok
21:04:17.0756 2284 [ 85135AD27E79B689335C08167D917CDE ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys
21:04:17.0805 2284 Dot4Print - ok
21:04:17.0824 2284 [ FD05A02B0370BC3000F402E543CA5814 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
21:04:17.0868 2284 dot4usb - ok
21:04:17.0892 2284 [ 8C2BA6BEA949EE6E68385F5692BAFB94 ] DPS C:\Windows\system32\dps.dll
21:04:17.0985 2284 DPS - ok
21:04:18.0020 2284 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
21:04:18.0048 2284 drmkaud - ok
21:04:18.0114 2284 [ 1633B9ABF52784A1331476397A48CBEF ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
21:04:18.0158 2284 DXGKrnl - ok
21:04:18.0195 2284 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
21:04:18.0278 2284 EapHost - ok
21:04:18.0370 2284 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
21:04:18.0517 2284 ebdrv - ok
21:04:18.0552 2284 [ 156F6159457D0AA7E59B62681B56EB90 ] EFS C:\Windows\System32\lsass.exe
21:04:18.0617 2284 EFS - ok
21:04:18.0696 2284 [ 47C071994C3F649F23D9CD075AC9304A ] ehRecvr C:\Windows\ehome\ehRecvr.exe
21:04:18.0775 2284 ehRecvr - ok
21:04:18.0797 2284 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
21:04:18.0831 2284 ehSched - ok
21:04:18.0879 2284 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
21:04:18.0926 2284 elxstor - ok
21:04:19.0001 2284 [ 7C35C6865957289D9EFE6CC73F4AB2E1 ] ePowerSvc C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
21:04:19.0081 2284 ePowerSvc - ok
21:04:19.0089 2284 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys
21:04:19.0130 2284 ErrDev - ok
21:04:19.0180 2284 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
21:04:19.0276 2284 EventSystem - ok
21:04:19.0308 2284 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
21:04:19.0386 2284 exfat - ok
21:04:19.0414 2284 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
21:04:19.0467 2284 fastfat - ok
21:04:19.0513 2284 [ D607B2F1BEE3992AA6C2C92C0A2F0855 ] Fax C:\Windows\system32\fxssvc.exe
21:04:19.0590 2284 Fax - ok
21:04:19.0603 2284 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
21:04:19.0622 2284 fdc - ok
21:04:19.0640 2284 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
21:04:19.0713 2284 fdPHost - ok
21:04:19.0737 2284 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
21:04:19.0776 2284 FDResPub - ok
21:04:19.0797 2284 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
21:04:19.0811 2284 FileInfo - ok
21:04:19.0825 2284 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
21:04:19.0863 2284 Filetrace - ok
21:04:19.0868 2284 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
21:04:19.0883 2284 flpydisk - ok
21:04:19.0916 2284 [ F7866AF72ABBAF84B1FA5AA195378C59 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
21:04:19.0934 2284 FltMgr - ok
21:04:20.0001 2284 [ CB5E4B9C319E3C6BB363EB7E58A4A051 ] FontCache C:\Windows\system32\FntCache.dll
21:04:20.0097 2284 FontCache - ok
21:04:20.0149 2284 [ 8D89E3131C27FDD6932189CB785E1B7A ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
21:04:20.0167 2284 FontCache3.0.0.0 - ok
21:04:20.0213 2284 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
21:04:20.0236 2284 FsDepends - ok
21:04:20.0279 2284 [ 6C06701BF1DB05405804D7EB610991CE ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
21:04:20.0298 2284 fssfltr - ok
21:04:20.0425 2284 [ 4CE9DAC1518FF7E77BD213E6394B9D77 ] fsssvc C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
21:04:20.0518 2284 fsssvc - ok
21:04:20.0565 2284 [ D3E3F93D67821A2DB2B3D9FAC2DC2064 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
21:04:20.0585 2284 Fs_Rec - ok
21:04:20.0635 2284 [ AE87BA80D0EC3B57126ED2CDC15B24ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
21:04:20.0659 2284 fvevol - ok
21:04:20.0697 2284 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
21:04:20.0715 2284 gagp30kx - ok
21:04:20.0760 2284 [ FE5AB4525BC2EC68B9119A6E5D40128B ] gpsvc C:\Windows\System32\gpsvc.dll
21:04:20.0824 2284 gpsvc - ok
21:04:20.0923 2284 [ 816FD5A6F3C2F3D600900096632FC60E ] Greg_Service C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
21:04:21.0008 2284 Greg_Service - ok
21:04:21.0105 2284 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
21:04:21.0124 2284 gupdate - ok
21:04:21.0183 2284 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
21:04:21.0201 2284 gupdatem - ok
21:04:21.0231 2284 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
21:04:21.0285 2284 hcw85cir - ok
21:04:21.0314 2284 [ 6410F6F415B2A5A9037224C41DA8BF12 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
21:04:21.0365 2284 HdAudAddService - ok
21:04:21.0405 2284 [ 0A49913402747A0B67DE940FB42CBDBB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
21:04:21.0453 2284 HDAudBus - ok
21:04:21.0461 2284 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
21:04:21.0495 2284 HidBatt - ok
21:04:21.0505 2284 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
21:04:21.0539 2284 HidBth - ok
21:04:21.0545 2284 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
21:04:21.0568 2284 HidIr - ok
21:04:21.0595 2284 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
21:04:21.0667 2284 hidserv - ok
21:04:21.0697 2284 [ B3BF6B5B50006DEF50B66306D99FCF6F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
21:04:21.0729 2284 HidUsb - ok
21:04:21.0783 2284 [ EFA58EDE58DD74388FFD04CB32681518 ] hkmsvc C:\Windows\system32\kmsvc.dll
21:04:21.0849 2284 hkmsvc - ok
21:04:21.0868 2284 [ 046B2673767CA626E2CFB7FDF735E9E8 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
21:04:21.0926 2284 HomeGroupListener - ok
21:04:21.0963 2284 [ 06A7422224D9865A5613710A089987DF ] HomeGroupProvider C:\Windows\system32\provsvc.dll
21:04:22.0011 2284 HomeGroupProvider - ok
21:04:22.0113 2284 [ 0A3C6AA4A9FC38C20BA4EAC2C3351C05 ] hpqcxs08 C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
21:04:22.0146 2284 hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning
21:04:22.0146 2284 hpqcxs08 - detected UnsignedFile.Multi.Generic (1)
21:04:22.0166 2284 [ F3F72A2A86C22610BCA5439FA789DD52 ] hpqddsvc C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
21:04:22.0186 2284 hpqddsvc ( UnsignedFile.Multi.Generic ) - warning
21:04:22.0186 2284 hpqddsvc - detected UnsignedFile.Multi.Generic (1)
21:04:22.0224 2284 [ 0886D440058F203EBA0E1825E4355914 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys
21:04:22.0251 2284 HpSAMD - ok
21:04:22.0297 2284 [ CEE049CAC4EFA7F4E1E4AD014414A5D4 ] HTTP C:\Windows\system32\drivers\HTTP.sys
21:04:22.0373 2284 HTTP - ok
21:04:22.0397 2284 [ F17766A19145F111856378DF337A5D79 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
21:04:22.0411 2284 hwpolicy - ok
21:04:22.0433 2284 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
21:04:22.0449 2284 i8042prt - ok
21:04:22.0518 2284 [ 7548066DF68A8A1A56B043359F915F37 ] IAANTMON C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
21:04:22.0549 2284 IAANTMON - ok
21:04:22.0588 2284 [ 1D004CB1DA6323B1F55CAEF7F94B61D9 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
21:04:22.0612 2284 iaStor - ok
21:04:22.0657 2284 [ B75E45C564E944A2657167D197AB29DA ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
21:04:22.0691 2284 iaStorV - ok
21:04:22.0748 2284 [ 2F2BE70D3E02B6FA877921AB9516D43C ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
21:04:22.0811 2284 idsvc - ok
21:04:23.0054 2284 [ DFEAF0A1D98D397035012C8E28D1520F ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
21:04:23.0330 2284 igfx - ok
21:04:23.0387 2284 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
21:04:23.0409 2284 iirsp - ok
21:04:23.0467 2284 [ C5B4683680DF085B57BC53E5EF34861F ] IKEEXT C:\Windows\System32\ikeext.dll
21:04:23.0591 2284 IKEEXT - ok
21:04:23.0681 2284 [ 8C7FA71CB1EBCD3EDE8958D27B1BF0B4 ] int15.sys C:\Windows\System32\OEM\Factory\int15.sys
21:04:23.0704 2284 int15.sys - ok
21:04:23.0728 2284 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\DRIVERS\intelide.sys
21:04:23.0749 2284 intelide - ok
21:04:23.0774 2284 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
21:04:23.0811 2284 intelppm - ok
21:04:23.0842 2284 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
21:04:23.0920 2284 IPBusEnum - ok
21:04:23.0957 2284 [ 722DD294DF62483CECAAE6E094B4D695 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
21:04:24.0016 2284 IpFilterDriver - ok
21:04:24.0046 2284 [ F8E058D17363EC580E4B7232778B6CB5 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
21:04:24.0142 2284 iphlpsvc - ok
21:04:24.0150 2284 [ E2B4A4494DB7CB9B89B55CA268C337C5 ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys
21:04:24.0168 2284 IPMIDRV - ok
21:04:24.0194 2284 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
21:04:24.0255 2284 IPNAT - ok
21:04:24.0282 2284 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
21:04:24.0301 2284 IRENUM - ok
21:04:24.0307 2284 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys
21:04:24.0321 2284 isapnp - ok
21:04:24.0348 2284 [ FA4D2557DE56D45B0A346F93564BE6E1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
21:04:24.0366 2284 iScsiPrt - ok
21:04:24.0414 2284 [ 213822072085B5BBAD9AF30AB577D817 ] IviRegMgr C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
21:04:24.0426 2284 IviRegMgr - ok
21:04:24.0446 2284 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
21:04:24.0458 2284 kbdclass - ok
21:04:24.0467 2284 [ 6DEF98F8541E1B5DCEB2C822A11F7323 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
21:04:24.0500 2284 kbdhid - ok
21:04:24.0522 2284 [ 156F6159457D0AA7E59B62681B56EB90 ] KeyIso C:\Windows\system32\lsass.exe
21:04:24.0536 2284 KeyIso - ok
21:04:24.0579 2284 [ 4F4B5FDE429416877DE7143044582EB5 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
21:04:24.0602 2284 KSecDD - ok
21:04:24.0644 2284 [ 6F40465A44ECDC1731BEFAFEC5BDD03C ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
21:04:24.0669 2284 KSecPkg - ok
21:04:24.0686 2284 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
21:04:24.0762 2284 ksthunk - ok
21:04:24.0799 2284 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
21:04:24.0884 2284 KtmRm - ok
21:04:24.0917 2284 [ 9C46A5421DE9D116C47155317CABB522 ] L1C C:\Windows\system32\DRIVERS\L1C62x64.sys
21:04:24.0965 2284 L1C - ok
21:04:25.0000 2284 [ 81F1D04D4D0E433099365127375FD501 ] LanmanServer C:\Windows\System32\srvsvc.dll
21:04:25.0062 2284 LanmanServer - ok
21:04:25.0090 2284 [ 27026EAC8818E8A6C00A1CAD2F11D29A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
21:04:25.0179 2284 LanmanWorkstation - ok
21:04:25.0236 2284 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
21:04:25.0306 2284 lltdio - ok
21:04:25.0347 2284 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
21:04:25.0417 2284 lltdsvc - ok
21:04:25.0469 2284 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
21:04:25.0524 2284 lmhosts - ok
21:04:25.0553 2284 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
21:04:25.0568 2284 LSI_FC - ok
21:04:25.0575 2284 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
21:04:25.0590 2284 LSI_SAS - ok
21:04:25.0597 2284 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
21:04:25.0612 2284 LSI_SAS2 - ok
21:04:25.0629 2284 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
21:04:25.0644 2284 LSI_SCSI - ok
21:04:25.0676 2284 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
21:04:25.0729 2284 luafv - ok
21:04:25.0750 2284 [ F84C8F1000BC11E3B7B23CBD3BAFF111 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
21:04:25.0779 2284 Mcx2Svc - ok
21:04:25.0785 2284 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
21:04:25.0798 2284 megasas - ok
21:04:25.0821 2284 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
21:04:25.0840 2284 MegaSR - ok
21:04:25.0913 2284 [ 7C4C76B39D5525C4A465E0BE32528E19 ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
21:04:25.0932 2284 Microsoft Office Groove Audit Service - ok
21:04:25.0967 2284 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
21:04:26.0051 2284 MMCSS - ok
21:04:26.0069 2284 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
21:04:26.0129 2284 Modem - ok
21:04:26.0158 2284 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
21:04:26.0182 2284 monitor - ok
21:04:26.0212 2284 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
21:04:26.0233 2284 mouclass - ok
21:04:26.0269 2284 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
21:04:26.0311 2284 mouhid - ok
21:04:26.0336 2284 [ 791AF66C4D0E7C90A3646066386FB571 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
21:04:26.0359 2284 mountmgr - ok
21:04:26.0378 2284 [ 609D1D87649ECC19796F4D76D4C15CEA ] mpio C:\Windows\system32\DRIVERS\mpio.sys
21:04:26.0404 2284 mpio - ok
21:04:26.0450 2284 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
21:04:26.0507 2284 mpsdrv - ok
21:04:26.0544 2284 [ AECAB449567D1846DAD63ECE49E893E3 ] MpsSvc C:\Windows\system32\mpssvc.dll
21:04:26.0630 2284 MpsSvc - ok
21:04:26.0639 2284 [ 30524261BB51D96D6FCBAC20C810183C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
21:04:26.0667 2284 MRxDAV - ok
21:04:26.0689 2284 [ B7F3D2C40BDF8FFB73EBFB19C77734E2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
21:04:26.0723 2284 mrxsmb - ok
21:04:26.0744 2284 [ 86C6F88B5168CE21CF8D69D0B3FF5D19 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
21:04:26.0763 2284 mrxsmb10 - ok
21:04:26.0783 2284 [ B081069251C8E9F42CB8769D07148F9C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
21:04:26.0817 2284 mrxsmb20 - ok
21:04:26.0848 2284 [ 5C37497276E3B3A5488B23A326A754B7 ] msahci C:\Windows\system32\DRIVERS\msahci.sys
21:04:26.0861 2284 msahci - ok
21:04:26.0868 2284 [ 8D27B597229AED79430FB9DB3BCBFBD0 ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys
21:04:26.0884 2284 msdsm - ok
21:04:26.0904 2284 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
21:04:26.0940 2284 MSDTC - ok
21:04:26.0977 2284 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
21:04:27.0031 2284 Msfs - ok
21:04:27.0050 2284 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
21:04:27.0130 2284 mshidkmdf - ok
21:04:27.0154 2284 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\DRIVERS\msisadrv.sys
21:04:27.0166 2284 msisadrv - ok
21:04:27.0206 2284 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
21:04:27.0261 2284 MSiSCSI - ok
21:04:27.0267 2284 msiserver - ok
21:04:27.0301 2284 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
21:04:27.0352 2284 MSKSSRV - ok
21:04:27.0373 2284 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
21:04:27.0422 2284 MSPCLOCK - ok
21:04:27.0444 2284 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
21:04:27.0494 2284 MSPQM - ok
21:04:27.0527 2284 [ 89CB141AA8616D8C6A4610FA26C60964 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
21:04:27.0547 2284 MsRPC - ok
21:04:27.0560 2284 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
21:04:27.0573 2284 mssmbios - ok
21:04:27.0645 2284 MSSQL$MSSMLBIZ - ok
21:04:27.0716 2284 [ 1D89EB4E2A99CABD4E81225F4F4C4B25 ] MSSQLServerADHelper c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqladhlp90.exe
21:04:27.0733 2284 MSSQLServerADHelper - ok
21:04:27.0750 2284 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
21:04:27.0803 2284 MSTEE - ok
21:04:27.0818 2284 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
21:04:27.0850 2284 MTConfig - ok
21:04:27.0884 2284 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
21:04:27.0897 2284 Mup - ok
21:04:27.0941 2284 [ 4987E079A4530FA737A128BE54B63B12 ] napagent C:\Windows\system32\qagentRT.dll
21:04:28.0026 2284 napagent - ok
21:04:28.0086 2284 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
21:04:28.0143 2284 NativeWifiP - ok
21:04:28.0236 2284 [ 87A00FAEDD703D8D2BDCB29CE5EEEA6B ] NBService C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
21:04:28.0289 2284 NBService ( UnsignedFile.Multi.Generic ) - warning
21:04:28.0290 2284 NBService - detected UnsignedFile.Multi.Generic (1)
21:04:28.0341 2284 [ CAD515DBD07D082BB317D9928CE8962C ] NDIS C:\Windows\system32\drivers\ndis.sys
21:04:28.0413 2284 NDIS - ok
21:04:28.0438 2284 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
21:04:28.0495 2284 NdisCap - ok
21:04:28.0558 2284 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
21:04:28.0617 2284 NdisTapi - ok
21:04:28.0653 2284 [ F105BA1E22BF1F2EE8F005D4305E4BEC ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
21:04:28.0723 2284 Ndisuio - ok
21:04:28.0751 2284 [ 557DFAB9CA1FCB036AC77564C010DAD3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
21:04:28.0792 2284 NdisWan - ok
21:04:28.0802 2284 [ 659B74FB74B86228D6338D643CD3E3CF ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
21:04:28.0841 2284 NDProxy - ok
21:04:28.0924 2284 [ 2334DC48997BA203B794DF3EE70521DB ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
21:04:28.0949 2284 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
21:04:28.0949 2284 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
21:04:28.0970 2284 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
21:04:29.0053 2284 NetBIOS - ok
21:04:29.0076 2284 [ 9162B273A44AB9DCE5B44362731D062A ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
21:04:29.0121 2284 NetBT - ok
21:04:29.0136 2284 [ 156F6159457D0AA7E59B62681B56EB90 ] Netlogon C:\Windows\system32\lsass.exe
21:04:29.0150 2284 Netlogon - ok
21:04:29.0200 2284 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
21:04:29.0279 2284 Netman - ok
21:04:29.0309 2284 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
21:04:29.0397 2284 netprofm - ok
21:04:29.0440 2284 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:04:29.0460 2284 NetTcpPortSharing - ok
21:04:29.0634 2284 [ 705283C02177809CA9FA7CC58A4F1E77 ] netw5v64 C:\Windows\system32\DRIVERS\netw5v64.sys
21:04:29.0872 2284 netw5v64 - ok
21:04:29.0913 2284 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
21:04:29.0926 2284 nfrd960 - ok
21:04:29.0959 2284 [ D9A0CE66046D6EFA0C61BAA885CBA0A8 ] NlaSvc C:\Windows\System32\nlasvc.dll
21:04:30.0007 2284 NlaSvc - ok
21:04:30.0025 2284 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
21:04:30.0080 2284 Npfs - ok
21:04:30.0105 2284 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
21:04:30.0157 2284 nsi - ok
21:04:30.0181 2284 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
21:04:30.0221 2284 nsiproxy - ok
21:04:30.0303 2284 [ 378E0E0DFEA67D98AE6EA53ADBBD76BC ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
21:04:30.0400 2284 Ntfs - ok
21:04:30.0459 2284 [ FD324CCE1D4D5BB5AF65F8E55B462C7E ] NTIBackupSvc C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
21:04:30.0485 2284 NTIBackupSvc - ok
21:04:30.0509 2284 [ 64DDD0DEE976302F4BD93E5EFCC2F013 ] NTIDrvr C:\Windows\system32\drivers\NTIDrvr.sys
21:04:30.0526 2284 NTIDrvr - ok
21:04:30.0553 2284 [ 3F6268A2EC33CD38CF75C880AF8DED42 ] NTISchedulerSvc C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
21:04:30.0571 2284 NTISchedulerSvc - ok
21:04:30.0600 2284 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
21:04:30.0660 2284 Null - ok
21:04:30.0704 2284 [ A4D9C9A608A97F59307C2F2600EDC6A4 ] nvraid C:\Windows\system32\drivers\nvraid.sys
21:04:30.0729 2284 nvraid - ok
21:04:30.0755 2284 [ 6C1D5F70E7A6A3FD1C90D840EDC048B9 ] nvstor C:\Windows\system32\drivers\nvstor.sys
21:04:30.0782 2284 nvstor - ok
21:04:30.0810 2284 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\DRIVERS\nv_agp.sys
21:04:30.0826 2284 nv_agp - ok
21:04:30.0891 2284 [ 1F0E05DFF4F5A833168E49BE1256F002 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
21:04:30.0931 2284 odserv - ok
21:04:30.0945 2284 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
21:04:30.0974 2284 ohci1394 - ok
21:04:31.0021 2284 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
21:04:31.0034 2284 ose - ok
21:04:31.0065 2284 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
21:04:31.0131 2284 p2pimsvc - ok
21:04:31.0170 2284 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
21:04:31.0214 2284 p2psvc - ok
21:04:31.0235 2284 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
21:04:31.0262 2284 Parport - ok
21:04:31.0312 2284 [ 90061B1ACFE8CCAA5345750FFE08D8B8 ] partmgr C:\Windows\system32\drivers\partmgr.sys
21:04:31.0335 2284 partmgr - ok
21:04:31.0345 2284 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
21:04:31.0392 2284 PcaSvc - ok
21:04:31.0425 2284 [ F36F6504009F2FB0DFD1B17A116AD74B ] pci C:\Windows\system32\DRIVERS\pci.sys
21:04:31.0452 2284 pci - ok
21:04:31.0465 2284 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\DRIVERS\pciide.sys
21:04:31.0487 2284 pciide - ok
21:04:31.0507 2284 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
21:04:31.0535 2284 pcmcia - ok
21:04:31.0548 2284 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
21:04:31.0561 2284 pcw - ok
21:04:31.0584 2284 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
21:04:31.0642 2284 PEAUTH - ok
21:04:31.0732 2284 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
21:04:31.0772 2284 PerfHost - ok
21:04:31.0856 2284 [ 557E9A86F65F0DE18C9B6751DFE9D3F1 ] pla C:\Windows\system32\pla.dll
21:04:31.0985 2284 pla - ok
21:04:32.0026 2284 [ 98B1721B8718164293B9701B98C52D77 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
21:04:32.0064 2284 PlugPlay - ok
21:04:32.0141 2284 [ AC78DF349F0E4CFB8B667C0CFFF83CCE ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
21:04:32.0164 2284 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
21:04:32.0164 2284 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
21:04:32.0198 2284 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
21:04:32.0222 2284 PNRPAutoReg - ok
21:04:32.0248 2284 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
21:04:32.0282 2284 PNRPsvc - ok
21:04:32.0311 2284 [ 166EB40D1F5B47E615DE3D0FFFE5F243 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
21:04:32.0359 2284 PolicyAgent - ok
21:04:32.0386 2284 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
21:04:32.0452 2284 Power - ok
21:04:32.0492 2284 [ 27CC19E81BA5E3403C48302127BDA717 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
21:04:32.0569 2284 PptpMiniport - ok
21:04:32.0594 2284 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
21:04:32.0637 2284 Processor - ok
21:04:32.0694 2284 [ 97293447431311C06703368AD0F6C4BE ] ProfSvc C:\Windows\system32\profsvc.dll
21:04:32.0758 2284 ProfSvc - ok
21:04:32.0773 2284 [ 156F6159457D0AA7E59B62681B56EB90 ] ProtectedStorage C:\Windows\system32\lsass.exe
21:04:32.0795 2284 ProtectedStorage - ok
21:04:32.0825 2284 [ EE992183BD8EAEFD9973F352E587A299 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
21:04:32.0876 2284 Psched - ok
21:04:32.0899 2284 [ 6328CFF4C812702412549B34CD08503D ] PSI C:\Windows\system32\DRIVERS\psi_mf.sys
21:04:32.0914 2284 PSI ( UnsignedFile.Multi.Generic ) - warning
21:04:32.0914 2284 PSI - detected UnsignedFile.Multi.Generic (1)
21:04:32.0954 2284 [ A6A7AD767BF5141665F5C675F671B3E1 ] PSI_SVC_2 C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
21:04:32.0974 2284 PSI_SVC_2 - ok
21:04:33.0037 2284 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
21:04:33.0126 2284 ql2300 - ok
21:04:33.0134 2284 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
21:04:33.0153 2284 ql40xx - ok
21:04:33.0190 2284 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
21:04:33.0225 2284 QWAVE - ok
21:04:33.0262 2284 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
21:04:33.0303 2284 QWAVEdrv - ok
21:04:33.0310 2284 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
21:04:33.0362 2284 RasAcd - ok
21:04:33.0421 2284 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
21:04:33.0472 2284 RasAgileVpn - ok
21:04:33.0489 2284 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
21:04:33.0547 2284 RasAuto - ok
21:04:33.0570 2284 [ 87A6E852A22991580D6D39ADC4790463 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
21:04:33.0630 2284 Rasl2tp - ok
21:04:33.0653 2284 [ 47394ED3D16D053F5906EFE5AB51CC83 ] RasMan C:\Windows\System32\rasmans.dll
21:04:33.0716 2284 RasMan - ok
21:04:33.0737 2284 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
21:04:33.0790 2284 RasPppoe - ok
21:04:33.0819 2284 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
21:04:33.0871 2284 RasSstp - ok
21:04:33.0909 2284 [ 3BAC8142102C15D59A87757C1D41DCE5 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
21:04:33.0998 2284 rdbss - ok
21:04:34.0020 2284 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
21:04:34.0037 2284 rdpbus - ok
21:04:34.0053 2284 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
21:04:34.0091 2284 RDPCDD - ok
21:04:34.0134 2284 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
21:04:34.0208 2284 RDPENCDD - ok
21:04:34.0232 2284 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
21:04:34.0308 2284 RDPREFMP - ok
21:04:34.0347 2284 [ 447DE7E3DEA39D422C1504F245B668B1 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
21:04:34.0402 2284 RDPWD - ok
21:04:34.0428 2284 [ 634B9A2181D98F15941236886164EC8B ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
21:04:34.0455 2284 rdyboost - ok
21:04:34.0480 2284 regi - ok
21:04:34.0534 2284 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
21:04:34.0586 2284 RemoteAccess - ok
21:04:34.0614 2284 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
21:04:34.0699 2284 RemoteRegistry - ok
21:04:34.0747 2284 [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
21:04:34.0796 2284 RFCOMM - ok
21:04:34.0821 2284 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
21:04:34.0901 2284 RpcEptMapper - ok
21:04:34.0936 2284 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
21:04:34.0970 2284 RpcLocator - ok
21:04:35.0005 2284 [ 7266972E86890E2B30C0C322E906B027 ] RpcSs C:\Windows\System32\rpcss.dll
21:04:35.0065 2284 RpcSs - ok
21:04:35.0102 2284 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
21:04:35.0163 2284 rspndr - ok
21:04:35.0252 2284 [ A5DF2F732A6C95554E548FCB6932BD31 ] RSUSBSTOR C:\Windows\system32\Drivers\RtsUStor.sys
21:04:35.0303 2284 RSUSBSTOR - ok
21:04:35.0371 2284 [ B5A4B7D779CF4070DF408DE18BD33B02 ] RS_Service C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
21:04:35.0399 2284 RS_Service ( UnsignedFile.Multi.Generic ) - warning
21:04:35.0399 2284 RS_Service - detected UnsignedFile.Multi.Generic (1)
21:04:35.0414 2284 RtsUIR - ok
21:04:35.0430 2284 [ 156F6159457D0AA7E59B62681B56EB90 ] SamSs C:\Windows\system32\lsass.exe
21:04:35.0452 2284 SamSs - ok
21:04:35.0483 2284 [ E3BBB89983DAF5622C1D50CF49F28227 ] sbp2port C:\Windows\system32\DRIVERS\sbp2port.sys
21:04:35.0507 2284 sbp2port - ok
21:04:35.0551 2284 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
21:04:35.0632 2284 SCardSvr - ok
21:04:35.0650 2284 [ C94DA20C7E3BA1DCA269BC8460D98387 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
21:04:35.0719 2284 scfilter - ok
21:04:35.0783 2284 [ 624D0F5FF99428BB90A5B8A4123E918E ] Schedule C:\Windows\system32\schedsvc.dll
21:04:35.0857 2284 Schedule - ok
21:04:35.0882 2284 [ 312E2F82AF11E79906898AC3E3D58A1F ] SCPolicySvc C:\Windows\System32\certprop.dll
21:04:35.0933 2284 SCPolicySvc - ok
21:04:35.0958 2284 [ 765A27C3279CE11D14CB9E4F5869FCA5 ] SDRSVC C:\Windows\System32\SDRSVC.dll
21:04:36.0006 2284 SDRSVC - ok
21:04:36.0048 2284 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
21:04:36.0128 2284 secdrv - ok
21:04:36.0152 2284 [ 463B386EBC70F98DA5DFF85F7E654346 ] seclogon C:\Windows\system32\seclogon.dll
21:04:36.0207 2284 seclogon - ok
21:04:36.0228 2284 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll
21:04:36.0310 2284 SENS - ok
21:04:36.0343 2284 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
21:04:36.0393 2284 SensrSvc - ok
21:04:36.0411 2284 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
21:04:36.0434 2284 Serenum - ok
21:04:36.0456 2284 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
21:04:36.0499 2284 Serial - ok
21:04:36.0509 2284 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
21:04:36.0535 2284 sermouse - ok
21:04:36.0569 2284 [ C3BC61CE47FF6F4E88AB8A3B429A36AF ] SessionEnv C:\Windows\system32\sessenv.dll
21:04:36.0626 2284 SessionEnv - ok
21:04:36.0632 2284 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
21:04:36.0661 2284 sffdisk - ok
21:04:36.0667 2284 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\DRIVERS\sffp_mmc.sys
21:04:36.0686 2284 sffp_mmc - ok
21:04:36.0693 2284 [ 5588B8C6193EB1522490C122EB94DFFA ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
21:04:36.0710 2284 sffp_sd - ok
21:04:36.0716 2284 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
21:04:36.0730 2284 sfloppy - ok
21:04:36.0796 2284 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
21:04:36.0877 2284 SharedAccess - ok
21:04:36.0902 2284 [ 0298AC45D0EFFFB2DB4BAA7DD186E7BF ] ShellHWDetection C:\Windows\System32\shsvcs.dll
21:04:36.0959 2284 ShellHWDetection - ok
21:04:36.0980 2284 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
21:04:37.0002 2284 SiSRaid2 - ok
21:04:37.0044 2284 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
21:04:37.0067 2284 SiSRaid4 - ok
21:04:37.0175 2284 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Users\Markéta\Programy\skype\Updater\Updater.exe
21:04:37.0196 2284 SkypeUpdate - ok
21:04:37.0213 2284 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
21:04:37.0312 2284 Smb - ok
21:04:37.0374 2284 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
21:04:37.0419 2284 SNMPTRAP - ok
21:04:37.0446 2284 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
21:04:37.0466 2284 spldr - ok
21:04:37.0523 2284 [ 567977DC43CC13C4C35ED7084C0B84D5 ] Spooler C:\Windows\System32\spoolsv.exe
21:04:37.0598 2284 Spooler - ok
21:04:37.0708 2284 [ 913D843498553A1BC8F8DBAD6358E49F ] sppsvc C:\Windows\system32\sppsvc.exe
21:04:37.0855 2284 sppsvc - ok
21:04:37.0893 2284 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
21:04:37.0957 2284 sppuinotify - ok
21:04:37.0982 2284 [ 86EBD8B1F23E743AAD21F4D5B4D40985 ] SQLBrowser c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
21:04:38.0005 2284 SQLBrowser - ok
21:04:38.0080 2284 [ 3C432A96363097870995E2A3C8B66ABD ] SQLWriter c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
21:04:38.0100 2284 SQLWriter - ok
21:04:38.0157 2284 [ 2408C0366D96BCDF63E8F1C78E4A29C5 ] srv C:\Windows\system32\DRIVERS\srv.sys
21:04:38.0232 2284 srv - ok
21:04:38.0262 2284 [ 76548F7B818881B47D8D1AE1BE9C11F8 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
21:04:38.0303 2284 srv2 - ok
21:04:38.0347 2284 [ 0AF6E19D39C70844C5CAA8FB0183C36E ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
21:04:38.0390 2284 srvnet - ok
21:04:38.0438 2284 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
21:04:38.0527 2284 SSDPSRV - ok
21:04:38.0567 2284 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
21:04:38.0607 2284 SstpSvc - ok
21:04:38.0642 2284 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
21:04:38.0663 2284 stexstor - ok
21:04:38.0706 2284 [ 52D0E33B681BD0F33FDC08812FEE4F7D ] stisvc C:\Windows\System32\wiaservc.dll
21:04:38.0760 2284 stisvc - ok
21:04:38.0780 2284 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
21:04:38.0792 2284 swenum - ok
21:04:38.0821 2284 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
21:04:38.0879 2284 swprv - ok
21:04:38.0916 2284 [ 929C9FA0B18AD2EBC8340591C4BF00FF ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
21:04:38.0933 2284 SynTP - ok
21:04:38.0990 2284 [ 3C1284516A62078FB68F768DE4F1A7BE ] SysMain C:\Windows\system32\sysmain.dll
21:04:39.0083 2284 SysMain - ok
21:04:39.0099 2284 [ 238935C3CF2854886DC7CBB2A0E2CC66 ] TabletInputService C:\Windows\System32\TabSvc.dll
21:04:39.0119 2284 TabletInputService - ok
21:04:39.0141 2284 [ 884264AC597B690C5707C89723BB8E7B ] TapiSrv C:\Windows\System32\tapisrv.dll
21:04:39.0201 2284 TapiSrv - ok
21:04:39.0225 2284 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
21:04:39.0275 2284 TBS - ok
21:04:39.0374 2284 [ 624C5B3AA4C99B3184BB922D9ECE3FF0 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
21:04:39.0424 2284 Tcpip - ok
21:04:39.0496 2284 [ 624C5B3AA4C99B3184BB922D9ECE3FF0 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
21:04:39.0546 2284 TCPIP6 - ok
21:04:39.0571 2284 [ 76D078AF6F587B162D50210F761EB9ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
21:04:39.0609 2284 tcpipreg - ok
21:04:39.0638 2284 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
21:04:39.0692 2284 TDPIPE - ok
21:04:39.0739 2284 [ 7518F7BCFD4B308ABC9192BACAF6C970 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
21:04:39.0790 2284 TDTCP - ok
21:04:39.0811 2284 [ 079125C4B17B01FCAEEBCE0BCB290C0F ] tdx C:\Windows\system32\DRIVERS\tdx.sys
21:04:39.0883 2284 tdx - ok
21:04:39.0908 2284 [ C448651339196C0E869A355171875522 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
21:04:39.0921 2284 TermDD - ok
21:04:39.0970 2284 [ 0F05EC2887BFE197AD82A13287D2F404 ] TermService C:\Windows\System32\termsrv.dll
21:04:40.0069 2284 TermService - ok
21:04:40.0087 2284 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
21:04:40.0123 2284 Themes - ok
21:04:40.0165 2284 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
21:04:40.0218 2284 THREADORDER - ok
21:04:40.0231 2284 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
21:04:40.0285 2284 TrkWks - ok
21:04:40.0338 2284 [ 840F7FB849F5887A49BA18C13B2DA920 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
21:04:40.0362 2284 TrustedInstaller - ok
21:04:40.0378 2284 [ 61B96C26131E37B24E93327A0BD1FB95 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
21:04:40.0447 2284 tssecsrv - ok
21:04:40.0498 2284 [ 3836171A2CDF3AF8EF10856DB9835A70 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
21:04:40.0552 2284 tunnel - ok
21:04:40.0573 2284 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
21:04:40.0587 2284 uagp35 - ok
21:04:40.0605 2284 [ 2E22C1FD397A5A9FFEF55E9D1FC96C00 ] UBHelper C:\Windows\system32\drivers\UBHelper.sys
21:04:40.0619 2284 UBHelper - ok
21:04:40.0641 2284 [ D47BAEAD86C65D4F4069D7CE0A4EDCEB ] udfs C:\Windows\system32\DRIVERS\udfs.sys
21:04:40.0695 2284 udfs - ok
21:04:40.0728 2284 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
21:04:40.0761 2284 UI0Detect - ok
21:04:40.0796 2284 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\DRIVERS\uliagpkx.sys
21:04:40.0810 2284 uliagpkx - ok
21:04:40.0834 2284 [ EAB6C35E62B1B0DB0D1B48B671D3A117 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
21:04:40.0864 2284 umbus - ok
21:04:40.0872 2284 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
21:04:40.0887 2284 UmPass - ok
21:04:40.0963 2284 [ 70DDE3A86DBEB1D6C3C30AD687B1877A ] Updater Service C:\Program Files\Acer\Acer Updater\UpdaterService.exe
21:04:40.0990 2284 Updater Service - ok
21:04:41.0014 2284 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
21:04:41.0090 2284 upnphost - ok
21:04:41.0131 2284 [ 7B6A127C93EE590E4D79A5F2A76FE46F ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
21:04:41.0182 2284 usbccgp - ok
21:04:41.0195 2284 USBCCID - ok
21:04:41.0228 2284 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys
21:04:41.0267 2284 usbcir - ok
21:04:41.0302 2284 [ 92969BA5AC44E229C55A332864F79677 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
21:04:41.0325 2284 usbehci - ok
21:04:41.0389 2284 [ E7DF1CFD28CA86B35EF5ADD0735CEEF3 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
21:04:41.0432 2284 usbhub - ok
21:04:41.0474 2284 [ F1BB1E55F1E7A65C5839CCC7B36D773E ] usbohci C:\Windows\system32\drivers\usbohci.sys
21:04:41.0512 2284 usbohci - ok
21:04:41.0550 2284 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
21:04:41.0578 2284 usbprint - ok
21:04:41.0613 2284 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
21:04:41.0640 2284 usbscan - ok
21:04:41.0675 2284 [ F39983647BC1F3E6100778DDFE9DCE29 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
21:04:41.0730 2284 USBSTOR - ok
21:04:41.0774 2284 [ BC3070350A491D84B518D7CCA9ABD36F ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
21:04:41.0795 2284 usbuhci - ok
21:04:41.0852 2284 [ 7CB8C573C6E4A2714402CC0A36EAB4FE ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
21:04:41.0889 2284 usbvideo - ok
21:04:41.0933 2284 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
21:04:42.0007 2284 UxSms - ok
21:04:42.0022 2284 [ 156F6159457D0AA7E59B62681B56EB90 ] VaultSvc C:\Windows\system32\lsass.exe
21:04:42.0038 2284 VaultSvc - ok
21:04:42.0073 2284 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\DRIVERS\vdrvroot.sys
21:04:42.0086 2284 vdrvroot - ok
21:04:42.0128 2284 [ 44D73E0BBC1D3C8981304BA15135C2F2 ] vds C:\Windows\System32\vds.exe
21:04:42.0176 2284 vds - ok
21:04:42.0197 2284 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
21:04:42.0215 2284 vga - ok
21:04:42.0244 2284 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
21:04:42.0282 2284 VgaSave - ok
21:04:42.0292 2284 [ C82E748660F62A242B2DFAC1442F22A4 ] vhdmp C:\Windows\system32\DRIVERS\vhdmp.sys
21:04:42.0310 2284 vhdmp - ok
21:04:42.0316 2284 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\DRIVERS\viaide.sys
21:04:42.0331 2284 viaide - ok
21:04:42.0346 2284 [ 2B1A3DAE2B4E70DBBA822B7A03FBD4A3 ] volmgr C:\Windows\system32\DRIVERS\volmgr.sys
21:04:42.0361 2284 volmgr - ok
21:04:42.0383 2284 [ 99B0CBB569CA79ACAED8C91461D765FB ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
21:04:42.0404 2284 volmgrx - ok
21:04:42.0426 2284 [ 58F82EED8CA24B461441F9C3E4F0BF5C ] volsnap C:\Windows\system32\DRIVERS\volsnap.sys
21:04:42.0445 2284 volsnap - ok
21:04:42.0479 2284 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
21:04:42.0496 2284 vsmraid - ok
21:04:42.0568 2284 [ 787898BF9FB6D7BD87A36E2D95C899BA ] VSS C:\Windows\system32\vssvc.exe
21:04:42.0681 2284 VSS - ok
21:04:42.0698 2284 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
21:04:42.0725 2284 vwifibus - ok
21:04:42.0759 2284 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
21:04:42.0789 2284 vwififlt - ok
21:04:42.0808 2284 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
21:04:42.0867 2284 W32Time - ok
21:04:42.0903 2284 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
21:04:42.0944 2284 WacomPen - ok
21:04:42.0979 2284 [ 47CA49400643EFFD3F1C9A27E1D69324 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
21:04:43.0042 2284 WANARP - ok
21:04:43.0061 2284 [ 47CA49400643EFFD3F1C9A27E1D69324 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
21:04:43.0100 2284 Wanarpv6 - ok
21:04:43.0211 2284 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
21:04:43.0295 2284 WatAdminSvc - ok
21:04:43.0356 2284 [ 5AB1BB85BD8B5089CC5D64200DEDAE68 ] wbengine C:\Windows\system32\wbengine.exe
21:04:43.0459 2284 wbengine - ok
21:04:43.0491 2284 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
21:04:43.0527 2284 WbioSrvc - ok
21:04:43.0561 2284 [ DD1BAE8EBFC653824D29CCF8C9054D68 ] wcncsvc C:\Windows\System32\wcncsvc.dll
21:04:43.0598 2284 wcncsvc - ok
21:04:43.0640 2284 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
21:04:43.0671 2284 WcsPlugInService - ok
21:04:43.0696 2284 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
21:04:43.0719 2284 Wd - ok
21:04:43.0751 2284 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
21:04:43.0800 2284 Wdf01000 - ok
21:04:43.0831 2284 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
21:04:43.0870 2284 WdiServiceHost - ok
21:04:43.0875 2284 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
21:04:43.0896 2284 WdiSystemHost - ok
21:04:44.0017 2284 [ D2B8BF2B7FF08744F4021330045E3B24 ] Web Blocker Service C:\Program Files\Webstart Studios\Web Blocker\TWBService.exe
21:04:44.0038 2284 Web Blocker Service ( UnsignedFile.Multi.Generic ) - warning
21:04:44.0038 2284 Web Blocker Service - detected UnsignedFile.Multi.Generic (1)
21:04:44.0073 2284 [ C120ECD4A82464150766816480925021 ] Web Blocker Service URL C:\Program Files\Webstart Studios\Web Blocker\TWBService URL.exe
21:04:44.0078 2284 Web Blocker Service URL ( UnsignedFile.Multi.Generic ) - warning
21:04:44.0078 2284 Web Blocker Service URL - detected UnsignedFile.Multi.Generic (1)
21:04:44.0127 2284 [ 733006127F235BE7C35354EBEE7B9A7B ] WebClient C:\Windows\System32\webclnt.dll
21:04:44.0180 2284 WebClient - ok
21:04:44.0199 2284 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
21:04:44.0286 2284 Wecsvc - ok
21:04:44.0322 2284 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
21:04:44.0382 2284 wercplsupport - ok
21:04:44.0412 2284 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
21:04:44.0490 2284 WerSvc - ok
21:04:44.0519 2284 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
21:04:44.0565 2284 WfpLwf - ok
21:04:44.0586 2284 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
21:04:44.0600 2284 WIMMount - ok
21:04:44.0618 2284 WinDefend - ok
21:04:44.0627 2284 WinHttpAutoProxySvc - ok
21:04:44.0714 2284 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
21:04:44.0788 2284 Winmgmt - ok
21:04:44.0862 2284 [ 41FBB751936B387F9179E7F03A74FE29 ] WinRM C:\Windows\system32\WsmSvc.dll
21:04:44.0975 2284 WinRM - ok
21:04:45.0032 2284 [ 817EAFF5D38674EDD7713B9DFB8E9791 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
21:04:45.0058 2284 WinUsb - ok
21:04:45.0121 2284 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
21:04:45.0197 2284 Wlansvc - ok
21:04:45.0265 2284 [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
21:04:45.0282 2284 wlcrasvc - ok
21:04:45.0428 2284 [ 7E47C328FC4768CB8BEAFBCFAFA70362 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
21:04:45.0554 2284 wlidsvc - ok
21:04:45.0584 2284 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
21:04:45.0598 2284 WmiAcpi - ok
21:04:45.0645 2284 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
21:04:45.0671 2284 wmiApSrv - ok
21:04:45.0690 2284 WMPNetworkSvc - ok
21:04:45.0714 2284 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
21:04:45.0735 2284 WPCSvc - ok
21:04:45.0751 2284 [ 2E57DDF2880A7E52E76F41C7E96D327B ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
21:04:45.0796 2284 WPDBusEnum - ok
21:04:45.0815 2284 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
21:04:45.0880 2284 ws2ifsl - ok
21:04:45.0929 2284 [ 8F9F3969933C02DA96EB0F84576DB43E ] wscsvc C:\Windows\system32\wscsvc.dll
21:04:45.0969 2284 wscsvc - ok
21:04:45.0975 2284 WSearch - ok
21:04:46.0083 2284 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
21:04:46.0201 2284 wuauserv - ok
21:04:46.0223 2284 [ 7CADC74271DD6461C452C271B30BD378 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
21:04:46.0282 2284 WudfPf - ok
21:04:46.0316 2284 [ 3B197AF0FFF08AA66B6B2241CA538D64 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
21:04:46.0357 2284 WUDFRd - ok
21:04:46.0393 2284 [ B551D6637AA0E132C18AC6E504F7B79B ] wudfsvc C:\Windows\System32\WUDFSvc.dll
21:04:46.0448 2284 wudfsvc - ok
21:04:46.0491 2284 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
21:04:46.0541 2284 WwanSvc - ok
21:04:46.0587 2284 ================ Scan global ===============================
21:04:46.0615 2284 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
21:04:46.0662 2284 [ 0CB6EBF4B461A6043353C570BD72A1E1 ] C:\Windows\system32\winsrv.dll
21:04:46.0684 2284 [ 0CB6EBF4B461A6043353C570BD72A1E1 ] C:\Windows\system32\winsrv.dll
21:04:46.0713 2284 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
21:04:46.0751 2284 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
21:04:46.0759 2284 [Global] - ok
21:04:46.0765 2284 ================ Scan MBR ==================================
21:04:46.0800 2284 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
21:04:47.0258 2284 \Device\Harddisk0\DR0 - ok
21:04:47.0261 2284 ================ Scan VBR ==================================
21:04:47.0265 2284 [ 09D7939EC1E361A6221F32D85195F197 ] \Device\Harddisk0\DR0\Partition1
21:04:47.0268 2284 \Device\Harddisk0\DR0\Partition1 - ok
21:04:47.0304 2284 [ 4B379AA68552D3B24BB8391624E4B6C8 ] \Device\Harddisk0\DR0\Partition2
21:04:47.0308 2284 \Device\Harddisk0\DR0\Partition2 - ok
21:04:47.0308 2284 ============================================================
21:04:47.0309 2284 Scan finished
21:04:47.0309 2284 ============================================================
21:04:47.0331 4348 Detected object count: 9
21:04:47.0331 4348 Actual detected object count: 9
21:05:17.0433 4348 hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0433 4348 hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0434 4348 hpqddsvc ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0434 4348 hpqddsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0437 4348 NBService ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0438 4348 NBService ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0442 4348 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0442 4348 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0444 4348 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0444 4348 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0448 4348 PSI ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0448 4348 PSI ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0451 4348 RS_Service ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0451 4348 RS_Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0454 4348 Web Blocker Service ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0454 4348 Web Blocker Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:17.0458 4348 Web Blocker Service URL ( UnsignedFile.Multi.Generic ) - skipped by user
21:05:17.0458 4348 Web Blocker Service URL ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:05:27.0241 0860 Deinitialize success
Re: Hodně zasekaný NB, pracuje velmi pomalu
Kód: Vybrat vše
MBRScan v1.1.1
OS : Windows 7 (64 bit)
PROCESSOR : Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
BOOT : Normal Boot
DATE : 2012/09/26 (ISO 8601) at 21:06:29
________________________________________________________________________________
DISK : Device\Harddisk0\DR0 __WDC WD32 00BEVT-22ZCT (11.0)
BUS_TYPE : (0x03) P-ATA
USE_PIO : NO
MAX_TRANSFER : 128 Kb
ALIGNMENT_MASK : word aligned
________________________________________________________________________________
Device\Harddisk0\DR0 298.1 Go [Fixed] ==> 7 MBR Code
MBR_MD5 : 69A092C925E4B0D87BEDF071DDDE42EA
MBR_SHA1 : 3CFAC9E3902AA2CE5B980273772FB1BD12B87677
Device\Harddisk0\Partition1 12.00 Go 0x27 RE Hidden partition
Device\Harddisk0\Partition2 100.0 Mo 0x07 NTFS / HPFS __ BOOTABLE __
Device\Harddisk0\Partition3 286.0 Go 0x07 NTFS / HPFS
________________________________________________________________________________
############################### Additional scan ################################
DRIVER : C:\Windows\system32\hal.dll => Invisible on the disk
ADDRESS : 0x033DF000
SIZE : 292.0 Ko
DRIVER : C:\Windows\system32\kdcom.dll => Invisible on the disk
ADDRESS : 0x00B9A000
SIZE : 40.0 Ko
DRIVER : C:\Windows\system32\mcupdate_GenuineIntel.dll => Invisible on the disk
ADDRESS : 0x00CC3000
SIZE : 272.0 Ko
DRIVER : C:\Windows\system32\CLFS.SYS => Invisible on the disk
ADDRESS : 0x00D1B000
SIZE : 376.0 Ko
DRIVER : C:\Windows\system32\CI.dll => Invisible on the disk
ADDRESS : 0x00C00000
SIZE : 768.0 Ko
DRIVER : C:\Windows\system32\drivers\Wdf01000.sys => Invisible on the disk
ADDRESS : 0x00EE6000
SIZE : 656.0 Ko
DRIVER : C:\Windows\system32\drivers\WDFLDR.SYS => Invisible on the disk
ADDRESS : 0x00F8A000
SIZE : 60.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\ACPI.sys => Invisible on the disk
ADDRESS : 0x00F99000
SIZE : 348.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\WMILIB.SYS => Invisible on the disk
ADDRESS : 0x00FF0000
SIZE : 36.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\msisadrv.sys => Invisible on the disk
ADDRESS : 0x00E00000
SIZE : 40.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\pci.sys => Invisible on the disk
ADDRESS : 0x00E0A000
SIZE : 204.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\vdrvroot.sys => Invisible on the disk
ADDRESS : 0x00E3D000
SIZE : 52.0 Ko
DRIVER : C:\Windows\System32\drivers\partmgr.sys => Invisible on the disk
ADDRESS : 0x00E4A000
SIZE : 84.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\compbatt.sys => Invisible on the disk
ADDRESS : 0x00E5F000
SIZE : 36.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\BATTC.SYS => Invisible on the disk
ADDRESS : 0x00E68000
SIZE : 48.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\volmgr.sys => Invisible on the disk
ADDRESS : 0x00E74000
SIZE : 84.0 Ko
DRIVER : C:\Windows\System32\drivers\volmgrx.sys => Invisible on the disk
ADDRESS : 0x00E89000
SIZE : 368.0 Ko
DRIVER : C:\Windows\System32\drivers\mountmgr.sys => Invisible on the disk
ADDRESS : 0x00D79000
SIZE : 104.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\iaStor.sys => Invisible on the disk
ADDRESS : 0x01054000
SIZE : 1.11 Mo
DRIVER : C:\Windows\system32\DRIVERS\atapi.sys => Invisible on the disk
ADDRESS : 0x01170000
SIZE : 36.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\ataport.SYS => Invisible on the disk
ADDRESS : 0x01179000
SIZE : 168.0 Ko
DRIVER : C:\Windows\system32\drivers\amdxata.sys => Invisible on the disk
ADDRESS : 0x011A3000
SIZE : 44.0 Ko
DRIVER : C:\Windows\system32\drivers\fltmgr.sys => Invisible on the disk
ADDRESS : 0x011AE000
SIZE : 304.0 Ko
DRIVER : C:\Windows\system32\drivers\fileinfo.sys => Invisible on the disk
ADDRESS : 0x01000000
SIZE : 80.0 Ko
DRIVER : C:\Windows\System32\Drivers\Ntfs.sys => Invisible on the disk
ADDRESS : 0x01255000
SIZE : 1.63 Mo
DRIVER : C:\Windows\System32\Drivers\msrpc.sys => Invisible on the disk
ADDRESS : 0x00D93000
SIZE : 376.0 Ko
DRIVER : C:\Windows\System32\Drivers\ksecdd.sys => Invisible on the disk
ADDRESS : 0x01200000
SIZE : 104.0 Ko
DRIVER : C:\Windows\System32\Drivers\cng.sys => Invisible on the disk
ADDRESS : 0x014D3000
SIZE : 456.0 Ko
DRIVER : C:\Windows\System32\drivers\pcw.sys => Invisible on the disk
ADDRESS : 0x01545000
SIZE : 68.0 Ko
DRIVER : C:\Windows\System32\Drivers\Fs_Rec.sys => Invisible on the disk
ADDRESS : 0x01556000
SIZE : 40.0 Ko
DRIVER : C:\Windows\system32\drivers\ndis.sys => Invisible on the disk
ADDRESS : 0x016A7000
SIZE : 968.0 Ko
DRIVER : C:\Windows\system32\drivers\NETIO.SYS => Invisible on the disk
ADDRESS : 0x01799000
SIZE : 384.0 Ko
DRIVER : C:\Windows\System32\Drivers\ksecpkg.sys => Invisible on the disk
ADDRESS : 0x01600000
SIZE : 172.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\volsnap.sys => Invisible on the disk
ADDRESS : 0x0162B000
SIZE : 304.0 Ko
DRIVER : C:\Windows\System32\Drivers\spldr.sys => Invisible on the disk
ADDRESS : 0x01677000
SIZE : 32.0 Ko
DRIVER : C:\Windows\System32\drivers\rdyboost.sys => Invisible on the disk
ADDRESS : 0x01560000
SIZE : 232.0 Ko
DRIVER : C:\Windows\System32\Drivers\mup.sys => Invisible on the disk
ADDRESS : 0x0167F000
SIZE : 72.0 Ko
DRIVER : C:\Windows\System32\drivers\hwpolicy.sys => Invisible on the disk
ADDRESS : 0x01691000
SIZE : 36.0 Ko
DRIVER : C:\Windows\System32\DRIVERS\fvevol.sys => Invisible on the disk
ADDRESS : 0x0159A000
SIZE : 232.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\disk.sys => Invisible on the disk
ADDRESS : 0x015D4000
SIZE : 88.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\CLASSPNP.SYS => Invisible on the disk
ADDRESS : 0x01400000
SIZE : 192.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\cdrom.sys => Invisible on the disk
ADDRESS : 0x039A8000
SIZE : 168.0 Ko
DRIVER : C:\Windows\System32\Drivers\Null.SYS => Invisible on the disk
ADDRESS : 0x039D2000
SIZE : 36.0 Ko
DRIVER : C:\Windows\System32\Drivers\Beep.SYS => Invisible on the disk
ADDRESS : 0x039DB000
SIZE : 28.0 Ko
DRIVER : C:\Windows\System32\drivers\vga.sys => Invisible on the disk
ADDRESS : 0x039E2000
SIZE : 56.0 Ko
DRIVER : C:\Windows\System32\drivers\VIDEOPRT.SYS => Invisible on the disk
ADDRESS : 0x03800000
SIZE : 148.0 Ko
DRIVER : C:\Windows\System32\drivers\watchdog.sys => Invisible on the disk
ADDRESS : 0x03825000
SIZE : 64.0 Ko
DRIVER : C:\Windows\System32\DRIVERS\RDPCDD.sys => Invisible on the disk
ADDRESS : 0x03835000
SIZE : 36.0 Ko
DRIVER : C:\Windows\system32\drivers\rdpencdd.sys => Invisible on the disk
ADDRESS : 0x0383E000
SIZE : 36.0 Ko
DRIVER : C:\Windows\system32\drivers\rdprefmp.sys => Invisible on the disk
ADDRESS : 0x03847000
SIZE : 36.0 Ko
DRIVER : C:\Windows\System32\Drivers\Msfs.SYS => Invisible on the disk
ADDRESS : 0x03850000
SIZE : 44.0 Ko
DRIVER : C:\Windows\System32\Drivers\Npfs.SYS => Invisible on the disk
ADDRESS : 0x0385B000
SIZE : 68.0 Ko
DRIVER : C:\Windows\System32\drivers\tcpip.sys => Invisible on the disk
ADDRESS : 0x02A01000
SIZE : 1.99 Mo
DRIVER : C:\Windows\System32\drivers\fwpkclnt.sys => Invisible on the disk
ADDRESS : 0x0143E000
SIZE : 296.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\tdx.sys => Invisible on the disk
ADDRESS : 0x01488000
SIZE : 120.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\TDI.SYS => Invisible on the disk
ADDRESS : 0x0386C000
SIZE : 52.0 Ko
DRIVER : C:\Windows\System32\DRIVERS\netbt.sys => Invisible on the disk
ADDRESS : 0x03CF4000
SIZE : 276.0 Ko
DRIVER : C:\Windows\system32\drivers\afd.sys => Invisible on the disk
ADDRESS : 0x03D39000
SIZE : 548.0 Ko
DRIVER : C:\Windows\system32\drivers\ws2ifsl.sys => Invisible on the disk
ADDRESS : 0x03DC2000
SIZE : 44.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\wfplwf.sys => Invisible on the disk
ADDRESS : 0x03DCD000
SIZE : 36.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\pacer.sys => Invisible on the disk
ADDRESS : 0x03DD6000
SIZE : 152.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\vwififlt.sys => Invisible on the disk
ADDRESS : 0x03C00000
SIZE : 88.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\netbios.sys => Invisible on the disk
ADDRESS : 0x03C16000
SIZE : 60.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\wanarp.sys => Invisible on the disk
ADDRESS : 0x03C25000
SIZE : 108.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\termdd.sys => Invisible on the disk
ADDRESS : 0x03C40000
SIZE : 80.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\rdbss.sys => Invisible on the disk
ADDRESS : 0x03C54000
SIZE : 324.0 Ko
DRIVER : C:\Windows\system32\drivers\nsiproxy.sys => Invisible on the disk
ADDRESS : 0x03CA5000
SIZE : 48.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\mssmbios.sys => Invisible on the disk
ADDRESS : 0x03CB1000
SIZE : 44.0 Ko
DRIVER : C:\Windows\System32\drivers\discache.sys => Invisible on the disk
ADDRESS : 0x03CBC000
SIZE : 60.0 Ko
DRIVER : C:\Windows\System32\Drivers\dfsc.sys => Invisible on the disk
ADDRESS : 0x03CCB000
SIZE : 120.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\blbdrive.sys => Invisible on the disk
ADDRESS : 0x014A6000
SIZE : 68.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\tunnel.sys => Invisible on the disk
ADDRESS : 0x0121A000
SIZE : 152.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\CmBatt.sys => Invisible on the disk
ADDRESS : 0x03CE9000
SIZE : 20.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\wmiacpi.sys => Invisible on the disk
ADDRESS : 0x039F0000
SIZE : 36.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\igdkmd64.sys => Invisible on the disk
ADDRESS : 0x04681000
SIZE : 7.01 Mo
DRIVER : C:\Windows\System32\drivers\dxgkrnl.sys => Invisible on the disk
ADDRESS : 0x03A8A000
SIZE : 976.0 Ko
DRIVER : C:\Windows\System32\drivers\dxgmms1.sys => Invisible on the disk
ADDRESS : 0x03B7E000
SIZE : 280.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\usbuhci.sys => Invisible on the disk
ADDRESS : 0x03BC4000
SIZE : 52.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\USBPORT.SYS => Invisible on the disk
ADDRESS : 0x03A00000
SIZE : 344.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\usbehci.sys => Invisible on the disk
ADDRESS : 0x03A56000
SIZE : 68.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\HDAudBus.sys => Invisible on the disk
ADDRESS : 0x03BD1000
SIZE : 144.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\athrx.sys => Invisible on the disk
ADDRESS : 0x04013000
SIZE : 1.49 Mo
DRIVER : C:\Windows\system32\DRIVERS\vwifibus.sys => Invisible on the disk
ADDRESS : 0x04190000
SIZE : 52.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\L1C62x64.sys => Invisible on the disk
ADDRESS : 0x0419D000
SIZE : 84.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\i8042prt.sys => Invisible on the disk
ADDRESS : 0x041B2000
SIZE : 120.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\kbdclass.sys => Invisible on the disk
ADDRESS : 0x041DC000
SIZE : 60.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\SynTP.sys => Invisible on the disk
ADDRESS : 0x04D83000
SIZE : 292.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\USBD.SYS => Invisible on the disk
ADDRESS : 0x041EB000
SIZE : 8.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\mouclass.sys => Invisible on the disk
ADDRESS : 0x041ED000
SIZE : 60.0 Ko
DRIVER : C:\Windows\system32\drivers\UBHelper.sys => Invisible on the disk
ADDRESS : 0x04000000
SIZE : 32.0 Ko
DRIVER : C:\Windows\system32\drivers\NTIDrvr.sys => Invisible on the disk
ADDRESS : 0x04008000
SIZE : 32.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\intelppm.sys => Invisible on the disk
ADDRESS : 0x03A67000
SIZE : 88.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\CompositeBus.sys => Invisible on the disk
ADDRESS : 0x04DCC000
SIZE : 64.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\AgileVpn.sys => Invisible on the disk
ADDRESS : 0x04DDC000
SIZE : 88.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\rasl2tp.sys => Invisible on the disk
ADDRESS : 0x04600000
SIZE : 144.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\ndistapi.sys => Invisible on the disk
ADDRESS : 0x03A7D000
SIZE : 48.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\ndiswan.sys => Invisible on the disk
ADDRESS : 0x04624000
SIZE : 188.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\raspppoe.sys => Invisible on the disk
ADDRESS : 0x04653000
SIZE : 108.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\raspptp.sys => Invisible on the disk
ADDRESS : 0x01014000
SIZE : 132.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\rassstp.sys => Invisible on the disk
ADDRESS : 0x014B7000
SIZE : 104.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\swenum.sys => Invisible on the disk
ADDRESS : 0x04010000
SIZE : 8.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\ks.sys => Invisible on the disk
ADDRESS : 0x042D0000
SIZE : 268.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\umbus.sys => Invisible on the disk
ADDRESS : 0x04313000
SIZE : 72.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\usbhub.sys => Invisible on the disk
ADDRESS : 0x04325000
SIZE : 360.0 Ko
DRIVER : C:\Windows\System32\Drivers\NDProxy.SYS => Invisible on the disk
ADDRESS : 0x0437F000
SIZE : 84.0 Ko
DRIVER : C:\Windows\system32\drivers\CHDRT64.sys => Invisible on the disk
ADDRESS : 0x04200000
SIZE : 688.0 Ko
DRIVER : C:\Windows\system32\drivers\portcls.sys => Invisible on the disk
ADDRESS : 0x04394000
SIZE : 244.0 Ko
DRIVER : C:\Windows\system32\drivers\drmk.sys => Invisible on the disk
ADDRESS : 0x043D1000
SIZE : 136.0 Ko
DRIVER : C:\Windows\system32\drivers\ksthunk.sys => Invisible on the disk
ADDRESS : 0x043F3000
SIZE : 24.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\usbccgp.sys => Invisible on the disk
ADDRESS : 0x042AC000
SIZE : 116.0 Ko
DRIVER : C:\Windows\System32\Drivers\usbvideo.sys => Invisible on the disk
ADDRESS : 0x03879000
SIZE : 184.0 Ko
DRIVER : C:\Windows\System32\win32k.sys => Invisible on the disk
ADDRESS : 0x000A0000
SIZE : 3.08 Mo
DRIVER : C:\Windows\System32\drivers\Dxapi.sys => Invisible on the disk
ADDRESS : 0x0466E000
SIZE : 48.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\cdfs.sys => Invisible on the disk
ADDRESS : 0x038A7000
SIZE : 116.0 Ko
DRIVER : C:\Windows\System32\Drivers\crashdmp.sys => Invisible on the disk
ADDRESS : 0x04DF2000
SIZE : 56.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\monitor.sys => Invisible on the disk
ADDRESS : 0x01E13000
SIZE : 56.0 Ko
DRIVER : C:\Windows\System32\TSDDD.dll => Invisible on the disk
ADDRESS : 0x00490000
SIZE : 40.0 Ko
DRIVER : C:\Windows\System32\cdd.dll => Invisible on the disk
ADDRESS : 0x007A0000
SIZE : 156.0 Ko
DRIVER : C:\Windows\system32\drivers\luafv.sys => Invisible on the disk
ADDRESS : 0x01E21000
SIZE : 140.0 Ko
DRIVER : C:\Windows\system32\drivers\WudfPf.sys => Invisible on the disk
ADDRESS : 0x01E44000
SIZE : 132.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\lltdio.sys => Invisible on the disk
ADDRESS : 0x01E65000
SIZE : 84.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\nwifi.sys => Invisible on the disk
ADDRESS : 0x01E7A000
SIZE : 332.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\ndisuio.sys => Invisible on the disk
ADDRESS : 0x038C4000
SIZE : 76.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\rspndr.sys => Invisible on the disk
ADDRESS : 0x038D7000
SIZE : 96.0 Ko
DRIVER : C:\Windows\system32\drivers\HTTP.sys => Invisible on the disk
ADDRESS : 0x026F0000
SIZE : 800.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\bowser.sys => Invisible on the disk
ADDRESS : 0x027B8000
SIZE : 120.0 Ko
DRIVER : C:\Windows\System32\drivers\mpsdrv.sys => Invisible on the disk
ADDRESS : 0x027D6000
SIZE : 96.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\mrxsmb.sys => Invisible on the disk
ADDRESS : 0x02600000
SIZE : 180.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\mrxsmb10.sys => Invisible on the disk
ADDRESS : 0x0262D000
SIZE : 312.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\mrxsmb20.sys => Invisible on the disk
ADDRESS : 0x0267B000
SIZE : 140.0 Ko
DRIVER : C:\Windows\system32\drivers\peauth.sys => Invisible on the disk
ADDRESS : 0x038EF000
SIZE : 664.0 Ko
DRIVER : C:\Windows\System32\Drivers\secdrv.SYS => Invisible on the disk
ADDRESS : 0x0269E000
SIZE : 44.0 Ko
DRIVER : C:\Windows\System32\DRIVERS\srvnet.sys => Invisible on the disk
ADDRESS : 0x026A9000
SIZE : 180.0 Ko
DRIVER : C:\Windows\System32\drivers\tcpipreg.sys => Invisible on the disk
ADDRESS : 0x026D6000
SIZE : 72.0 Ko
DRIVER : C:\Windows\System32\DRIVERS\srv2.sys => Invisible on the disk
ADDRESS : 0x04EE1000
SIZE : 412.0 Ko
DRIVER : C:\Windows\System32\DRIVERS\srv.sys => Invisible on the disk
ADDRESS : 0x04F48000
SIZE : 596.0 Ko
DRIVER : C:\Windows\System32\smss.exe => Invisible on the disk
ADDRESS : 0x47EF0000
SIZE : 128.0 Ko
SystemStartOptions : NOEXECUTE=OPTIN
________________________________________________________________________________
_______MBR \Device\Harddisk0\DR0
0x00000000 33 C0 8E D0 BC 00 7C 8E C0 8E D8 BE 00 7C BF 00 3À.м.|.À.ؾ.|¿.
0x00000010 06 B9 00 02 FC F3 A4 50 68 1C 06 CB FB B9 04 00 .¹..üó¤Ph..Ëû¹..
0x00000020 BD BE 07 80 7E 00 00 7C 0B 0F 85 0E 01 83 C5 10 ½¾..~..|......Å.
0x00000030 E2 F1 CD 18 88 56 00 55 C6 46 11 05 C6 46 10 00 âñÍ..V.UÆF..ÆF..
0x00000040 B4 41 BB AA 55 CD 13 5D 72 0F 81 FB 55 AA 75 09 ´A»ªUÍ.]r..ûUªu.
0x00000050 F7 C1 01 00 74 03 FE 46 10 66 60 80 7E 10 00 74 ÷Á..t.þF.f`.~..t
0x00000060 26 66 68 00 00 00 00 66 FF 76 08 68 00 00 68 00 &fh....f.v.h..h.
0x00000070 7C 68 01 00 68 10 00 B4 42 8A 56 00 8B F4 CD 13 |h..h..´B.V..ôÍ.
0x00000080 9F 83 C4 10 9E EB 14 B8 01 02 BB 00 7C 8A 56 00 ..Ä..ë.¸..».|.V.
0x00000090 8A 76 01 8A 4E 02 8A 6E 03 CD 13 66 61 73 1C FE .v..N..n.Í.fas.þ
0x000000A0 4E 11 75 0C 80 7E 00 80 0F 84 8A 00 B2 80 EB 84 N.u..~......².ë.
0x000000B0 55 32 E4 8A 56 00 CD 13 5D EB 9E 81 3E FE 7D 55 U2ä.V.Í.]ë..>þ}U
0x000000C0 AA 75 6E FF 76 00 E8 8D 00 75 17 FA B0 D1 E6 64 ªun.v.è..u.ú°Ñæd
0x000000D0 E8 83 00 B0 DF E6 60 E8 7C 00 B0 FF E6 64 E8 75 è..°ßæ`è|.°.ædèu
0x000000E0 00 FB B8 00 BB CD 1A 66 23 C0 75 3B 66 81 FB 54 .û¸.»Í.f#Àu;f.ûT
0x000000F0 43 50 41 75 32 81 F9 02 01 72 2C 66 68 07 BB 00 CPAu2.ù..r,fh.».
0x00000100 00 66 68 00 02 00 00 66 68 08 00 00 00 66 53 66 .fh....fh....fSf
0x00000110 53 66 55 66 68 00 00 00 00 66 68 00 7C 00 00 66 SfUfh....fh.|..f
0x00000120 61 68 00 00 07 CD 1A 5A 32 F6 EA 00 7C 00 00 CD ah...Í.Z2öê.|..Í
0x00000130 18 A0 B7 07 EB 08 A0 B6 07 EB 03 A0 B5 07 32 E4 ..·.ë..¶.ë..µ.2ä
0x00000140 05 00 07 8B F0 AC 3C 00 74 09 BB 07 00 B4 0E CD ....ð¬<.t.»..´.Í
0x00000150 10 EB F2 F4 EB FD 2B C9 E4 64 EB 00 24 02 E0 F8 .ëòôëý+Éädë.$.àø
0x00000160 24 02 C3 49 6E 76 61 6C 69 64 20 70 61 72 74 69 $.ÃInvalid parti
0x00000170 74 69 6F 6E 20 74 61 62 6C 65 00 45 72 72 6F 72 tion table.Error
0x00000180 20 6C 6F 61 64 69 6E 67 20 6F 70 65 72 61 74 69 loading operati
0x00000190 6E 67 20 73 79 73 74 65 6D 00 4D 69 73 73 69 6E ng system.Missin
0x000001A0 67 20 6F 70 65 72 61 74 69 6E 67 20 73 79 73 74 g operating syst
0x000001B0 65 6D 00 00 00 63 7B 9A 06 DD 8F 31 00 00 00 20 em...c{..Ý.1...
0x000001C0 21 00 27 FE FF FF 00 08 00 00 00 00 80 01 80 FE !.'þ...........þ
0x000001D0 FF FF 07 FE FF FF 00 08 80 01 00 20 03 00 00 FE ...þ....... ...þ
0x000001E0 FF FF 07 FE FF FF 00 28 83 01 00 B8 BF 23 00 00 ...þ...(...¸¿#..
0x000001F0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 55 AA ..............Uª
__________________________16_BIT_ASM_CODE
0x0000 33c0 XOR AX, AX
0x0002 8ed0 MOV SS, AX
0x0004 bc 007c MOV SP, 0x7c00
0x0007 8ec0 MOV ES, AX
0x0009 8ed8 MOV DS, AX
0x000B be 007c MOV SI, 0x7c00
0x000E bf 0006 MOV DI, 0x600
0x0011 b9 0002 MOV CX, 0x200
0x0014 fc CLD
0x0015 f3 a4 REP MOVSB
0x0017 50 PUSH AX
0x0018 68 1c06 PUSH 0x61c
0x001B cb RETF
0x001C fb STI
0x001D b9 0400 MOV CX, 0x4
0x0020 bd be07 MOV BP, 0x7be
0x0023 807e 00 00 CMP BYTE [BP+0x0], 0x0
0x0027 7c 0b JL 0x34
0x0029 0f85 0e01 JNZ 0x13b
0x002D 83c5 10 ADD BP, 0x10
0x0030 e2 f1 LOOP 0x23
0x0032 cd 18 INT 0x18
0x0034 8856 00 MOV [BP+0x0], DL
0x0037 55 PUSH BP
0x0038 c646 11 05 MOV BYTE [BP+0x11], 0x5
0x003C c646 10 00 MOV BYTE [BP+0x10], 0x0
0x0040 b4 41 MOV AH, 0x41
0x0042 bb aa55 MOV BX, 0x55aa
0x0045 cd 13 INT 0x13
0x0047 5d POP BP
0x0048 72 0f JB 0x59
0x004A 81fb 55aa CMP BX, 0xaa55
0x004E 75 09 JNZ 0x59
0x0050 f7c1 0100 TEST CX, 0x1
0x0054 74 03 JZ 0x59
0x0056 fe46 10 INC BYTE [BP+0x10]
0x0059 66 60 PUSHAD
0x005B 807e 10 00 CMP BYTE [BP+0x10], 0x0
0x005F 74 26 JZ 0x87
0x0061 66 68 00000000 PUSH 0x0
0x0067 66 ff76 08 PUSH DWORD [BP+0x8]
0x006B 68 0000 PUSH 0x0
0x006E 68 007c PUSH 0x7c00
0x0071 68 0100 PUSH 0x1
0x0074 68 1000 PUSH 0x10
0x0077 b4 42 MOV AH, 0x42
0x0079 8a56 00 MOV DL, [BP+0x0]
0x007C 8bf4 MOV SI, SP
0x007E cd 13 INT 0x13
0x0080 9f LAHF
0x0081 83c4 10 ADD SP, 0x10
0x0084 9e SAHF
0x0085 eb 14 JMP 0x9b
0x0087 b8 0102 MOV AX, 0x201
0x008A bb 007c MOV BX, 0x7c00
0x008D 8a56 00 MOV DL, [BP+0x0]
0x0090 8a76 01 MOV DH, [BP+0x1]
0x0093 8a4e 02 MOV CL, [BP+0x2]
0x0096 8a6e 03 MOV CH, [BP+0x3]
0x0099 cd 13 INT 0x13
0x009B 66 61 POPAD
0x009D 73 1c JAE 0xbb
0x009F fe4e 11 DEC BYTE [BP+0x11]
0x00A2 75 0c JNZ 0xb0
0x00A4 807e 00 80 CMP BYTE [BP+0x0], 0x80
0x00A8 0f84 8a00 JZ 0x136
0x00AC b2 80 MOV DL, 0x80
0x00AE eb 84 JMP 0x34
0x00B0 55 PUSH BP
0x00B1 32e4 XOR AH, AH
0x00B3 8a56 00 MOV DL, [BP+0x0]
0x00B6 cd 13 INT 0x13
0x00B8 5d POP BP
0x00B9 eb 9e JMP 0x59
0x00BB 813e fe7d 55aa CMP WORD [0x7dfe], 0xaa55
0x00C1 75 6e JNZ 0x131
0x00C3 ff76 00 PUSH WORD [BP+0x0]
0x00C6 e8 8d00 CALL 0x156
0x00C9 75 17 JNZ 0xe2
0x00CB fa CLI
0x00CC b0 d1 MOV AL, 0xd1
0x00CE e6 64 OUT 0x64, AL
0x00D0 e8 8300 CALL 0x156
0x00D3 b0 df MOV AL, 0xdf
0x00D5 e6 60 OUT 0x60, AL
0x00D7 e8 7c00 CALL 0x156
0x00DA b0 ff MOV AL, 0xff
0x00DC e6 64 OUT 0x64, AL
0x00DE e8 7500 CALL 0x156
0x00E1 fb STI
0x00E2 b8 00bb MOV AX, 0xbb00
0x00E5 cd 1a INT 0x1a
0x00E7 66 23c0 AND EAX, EAX
0x00EA 75 3b JNZ 0x127
0x00EC 66 81fb 54435041CMP EBX, 0x41504354
0x00F3 75 32 JNZ 0x127
0x00F5 81f9 0201 CMP CX, 0x102
0x00F9 72 2c JB 0x127
0x00FB 66 68 07bb0000 PUSH 0xbb07
0x0101 66 68 00020000 PUSH 0x200
0x0107 66 68 08000000 PUSH 0x8
0x010D 66 53 PUSH EBX
0x010F 66 53 PUSH EBX
0x0111 66 55 PUSH EBP
0x0113 66 68 00000000 PUSH 0x0
0x0119 66 68 007c0000 PUSH 0x7c00
0x011F 66 61 POPAD
0x0121 68 0000 PUSH 0x0
0x0124 07 POP ES
0x0125 cd 1a INT 0x1a
0x0127 5a POP DX
0x0128 32f6 XOR DH, DH
0x012A ea 007c 0000 JMP FAR 0x0:0x7c00
0x012F cd 18 INT 0x18
0x0131 a0 b707 MOV AL, [0x7b7]
0x0134 eb 08 JMP 0x13e
0x0136 a0 b607 MOV AL, [0x7b6]
0x0139 eb 03 JMP 0x13e
0x013B a0 b507 MOV AL, [0x7b5]
0x013E 32e4 XOR AH, AH
0x0140 05 0007 ADD AX, 0x700
0x0143 8bf0 MOV SI, AX
0x0145 ac LODSB
0x0146 3c 00 CMP AL, 0x0
0x0148 74 09 JZ 0x153
0x014A bb 0700 MOV BX, 0x7
0x014D b4 0e MOV AH, 0xe
0x014F cd 10 INT 0x10
0x0151 eb f2 JMP 0x145
0x0153 f4 HLT
0x0154 eb fd JMP 0x153
0x0156 2bc9 SUB CX, CX
0x0158 e4 64 IN AL, 0x64
0x015A eb 00 JMP 0x15c
0x015C 24 02 AND AL, 0x2
0x015E e0 f8 LOOPNZ 0x158
0x0160 24 02 AND AL, 0x2
0x0162 c3 RET
0x0163 49 DEC CX
0x0164 6e OUTSB
0x0165 76 61 JBE 0x1c8
0x0167 6c INSB
0x0168 6964 20 7061 IMUL SP, [SI+0x20], 0x6170
0x016D 72 74 JB 0x1e3
0x016F 6974 69 6f6e IMUL SI, [SI+0x69], 0x6e6f
0x0174 2074 61 AND [SI+0x61], DH
0x0177 626c 65 BOUND BP, [SI+0x65]
0x017A 0045 72 ADD [DI+0x72], AL
0x017D 72 6f JB 0x1ee
0x017F 72 20 JB 0x1a1
0x0181 6c INSB
0x0182 6f OUTSW
0x0183 61 POPA
0x0184 64 696e 67 206f IMUL BP, FS:[BP+0x67], 0x6f20
0x018A 70 65 JO 0x1f1
0x018C 72 61 JB 0x1ef
0x018E 74 69 JZ 0x1f9
0x0190 6e OUTSB
0x0191 67 2073 79 AND [EBX+0x79], DH
0x0195 73 74 JAE 0x20b
0x0197 65 6d INS WORD GS:[DI], DX
0x0199 004d 69 ADD [DI+0x69], CL
0x019C 73 73 JAE 0x211
0x019E 696e 67 206f IMUL BP, [BP+0x67], 0x6f20
0x01A3 70 65 JO 0x20a
0x01A5 72 61 JB 0x208
0x01A7 74 69 JZ 0x212
0x01A9 6e OUTSB
0x01AA 67 2073 79 AND [EBX+0x79], DH
0x01AE 73 74 JAE 0x224
0x01B0 65 6d INS WORD GS:[DI], DX
0x01B2 0000 ADD [BX+SI], AL
0x01B4 0063 7b ADD [BP+DI+0x7b], AH
0x01B7 9a 06dd 8f31 CALL FAR 0x318f:0xdd06
0x01BC 0000 ADD [BX+SI], AL
0x01BE 0020 ADD [BX+SI], AH
0x01C0 2100 AND [BX+SI], AX
0x01C2 27 DAA
0x01C3 fe DB 0xfe
0x01C4 ff DB 0xff
0x01C5 ff00 INC WORD [BX+SI]
0x01C7 0800 OR [BX+SI], AL
0x01C9 0000 ADD [BX+SI], AL
0x01CB 0080 0180 ADD [BX+SI-0x7fff], AL
0x01CF fe DB 0xfe
0x01D0 ff DB 0xff
0x01D1 ff07 INC WORD [BX]
0x01D3 fe DB 0xfe
0x01D4 ff DB 0xff
0x01D5 ff00 INC WORD [BX+SI]
0x01D7 0880 0100 OR [BX+SI+0x1], AL
0x01DB 2003 AND [BP+DI], AL
0x01DD 0000 ADD [BX+SI], AL
0x01DF fe DB 0xfe
0x01E0 ff DB 0xff
0x01E1 ff07 INC WORD [BX]
0x01E3 fe DB 0xfe
0x01E4 ff DB 0xff
0x01E5 ff00 INC WORD [BX+SI]
0x01E7 2883 0100 SUB [BP+DI+0x1], AL
0x01EB b8 bf23 MOV AX, 0x23bf
0x01EE 0000 ADD [BX+SI], AL
0x01F0 0000 ADD [BX+SI], AL
0x01F2 0000 ADD [BX+SI], AL
0x01F4 0000 ADD [BX+SI], AL
0x01F6 0000 ADD [BX+SI], AL
0x01F8 0000 ADD [BX+SI], AL
0x01FA 0000 ADD [BX+SI], AL
0x01FC 0000 ADD [BX+SI], AL
0x01FE 55 PUSH BP
0x01FF aa STOSB
Re: Hodně zasekaný NB, pracuje velmi pomalu
Hledal jsem ho na webu, ale nemá žádnou home-freeware variantu 
