Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

nejde mi mail ani google

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
jaroy
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 15 črc 2012 12:07

nejde mi mail ani google

#1 Příspěvek od jaroy »

google mi píše že muj pc má nějak moc velkou aktivitu tak mi nejde ani mail nic , a furt mi to píše at si zapnu cookies i když je mam.. jak chrome tak firefox.

Logfile of random's system information tool 1.09 (written by random/random)
Run by jaroy at 2012-11-30 23:52:58
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 714 GB (75%) free of 954 GB
Total RAM: 4094 MB (55% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:53:19, on 30.11.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Steam\Steam.exe
C:\Users\jaroy\AppData\Local\Akamai\netsession_win.exe
C:\Users\jaroy\AppData\Local\Akamai\netsession_win.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\jaroy.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT3220468
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: uTorrentControl_v2 - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [ESL Wire] "C:\Program Files\EslWire\wire.exe" --tray
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\jaroy\AppData\Local\Akamai\netsession_win.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESL Wire Helper Service (EslWireHelper) - Unknown owner - C:\Program Files\EslWire\service\WireHelperSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 7656 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\EslWire\service\WireHelperSvc.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Users\jaroy\AppData\Local\Akamai\netsession_win.exe"
"C:/Users/jaroy/AppData/Local/Akamai/netsession_win.exe" --client
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
"C:\Windows\SysWOW64\svchost.exe" -k LocalServiceDns
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1144.1.789197579\584000579" --gpu-vendor-id=0x1002 --gpu-device-id=0x6738 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=8.982.0.0 --ignored=" --type=renderer " /prefetch:12
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="1144.3.40874865\853930146" --lang=cs --ignored=" --type=renderer " /prefetch:13
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi-broker --channel="1144.10.1418690866\646716834" --lang=cs /prefetch:14
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\jaroy\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\jaroy\AppData\Roaming\Mozilla\Firefox\Profiles\asz17fjw.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.5.502.110 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_110.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4]
"Description"=ESN Sonar browser plugin
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=1.138.0]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\1.138.0\npesnlaunch.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.7.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.7.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.124\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.124\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Webzen.com/NPBrowserExt]
"Description"=WEBZEN Browser Extension Interface
"Path"=C:\Program Files (x86)\WEBZEN\BrowserExtension\NPWZCmnCtrl.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.5.502.110 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_5_502_110.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7473b6bd-4691-4744-a82b-7854eb3d70b6}]
uTorrentControl_v2 Toolbar - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll [2011-05-09 176936]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2012-10-10 449512]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2012-10-10 157672]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7473b6bd-4691-4744-a82b-7854eb3d70b6} - uTorrentControl_v2 Toolbar - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll [2011-05-09 176936]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-05-18 12489360]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2012-10-12 1353080]
"ESL Wire"=C:\Program Files\EslWire\wire.exe [2012-10-10 4104192]
"Akamai NetSession Interface"=C:\Users\jaroy\AppData\Local\Akamai\netsession_win.exe [2012-10-09 4441920]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-08-06 642216]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"VirtualCloneDrive"=C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2011-03-07 89456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.XFR1"=xfcodec64.dll
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-11-30 23:52:58 ----D---- C:\rsit
2012-11-30 23:52:58 ----D---- C:\Program Files\trend micro
2012-11-27 16:36:45 ----D---- C:\Program Files (x86)\Sapphire TRIXX
2012-11-27 15:58:57 ----D---- C:\Program Files (x86)\ATITool
2012-11-22 17:28:21 ----D---- C:\ProgramData\Mozilla
2012-11-22 17:28:21 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2012-11-22 17:28:20 ----D---- C:\Program Files (x86)\Mozilla Firefox
2012-11-19 02:19:31 ----D---- C:\Program Files (x86)\Guild Wars 2
2012-11-18 20:17:20 ----D---- C:\Program Files\CCleaner
2012-11-14 16:15:33 ----D---- C:\ProgramData\boost_interprocess
2012-11-14 16:13:03 ----D---- C:\ProgramData\Boss Media
2012-11-14 16:12:18 ----D---- C:\Program Files (x86)\bet-at-home.com Poker
2012-11-13 17:31:31 ----D---- C:\Windows\SYSWOW64\spool
2012-11-13 17:31:31 ----D---- C:\Program Files (x86)\Sony
2012-11-13 16:54:40 ----D---- C:\Windows\system32\appmgmt
2012-11-13 16:36:36 ----D---- C:\Users\jaroy\AppData\Roaming\Publish Providers
2012-11-13 16:25:36 ----SHD---- C:\Windows\SYSWOW64\%APPDATA%
2012-11-13 16:25:30 ----D---- C:\Users\jaroy\AppData\Roaming\Sony
2012-11-13 16:24:06 ----D---- C:\ProgramData\Sony
2012-11-13 16:04:25 ----D---- C:\Fraps
2012-11-08 16:37:25 ----D---- C:\Program Files (x86)\Elaborate Bytes
2012-11-06 01:58:26 ----D---- C:\ProgramData\Adobe
2012-11-05 23:29:46 ----A---- C:\Windows\iun6002.exe
2012-11-05 20:51:34 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2012-11-05 20:51:34 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2012-11-05 20:51:34 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2012-11-05 20:51:34 ----A---- C:\Windows\system32\XAudio2_7.dll
2012-11-05 20:51:34 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2012-11-05 20:51:34 ----A---- C:\Windows\system32\xactengine3_7.dll
2012-11-05 20:51:32 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2012-11-05 20:51:31 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2012-11-05 20:51:31 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2012-11-05 20:51:31 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2012-11-05 20:51:31 ----A---- C:\Windows\system32\d3dx11_43.dll
2012-11-05 20:51:31 ----A---- C:\Windows\system32\d3dx10_43.dll
2012-11-05 20:51:31 ----A---- C:\Windows\system32\d3dcsx_43.dll
2012-11-05 20:51:29 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2012-11-05 20:51:29 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2012-11-05 20:51:29 ----A---- C:\Windows\system32\XAudio2_6.dll
2012-11-05 20:51:29 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2012-11-05 20:51:29 ----A---- C:\Windows\system32\D3DX9_43.dll
2012-11-05 20:51:28 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2012-11-05 20:51:28 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2012-11-05 20:51:28 ----A---- C:\Windows\system32\xactengine3_6.dll
2012-11-05 20:51:28 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2012-11-05 20:51:26 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2012-11-05 20:51:26 ----A---- C:\Windows\system32\XAudio2_5.dll
2012-11-05 20:51:24 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2012-11-05 20:51:24 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2012-11-05 20:51:24 ----A---- C:\Windows\system32\xactengine3_5.dll
2012-11-05 20:51:24 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2012-11-05 20:51:22 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2012-11-05 20:51:22 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2012-11-05 20:51:22 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2012-11-05 20:51:22 ----A---- C:\Windows\system32\d3dx11_42.dll
2012-11-05 20:51:22 ----A---- C:\Windows\system32\d3dx10_42.dll
2012-11-05 20:51:22 ----A---- C:\Windows\system32\d3dcsx_42.dll
2012-11-05 20:51:21 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2012-11-05 20:51:21 ----A---- C:\Windows\system32\D3DX9_42.dll
2012-11-05 20:51:20 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2012-11-05 20:51:20 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2012-11-05 20:51:20 ----A---- C:\Windows\system32\d3dx10_41.dll
2012-11-05 20:51:20 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2012-11-05 20:51:16 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2012-11-05 20:51:16 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2012-11-05 20:51:16 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2012-11-05 20:51:16 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2012-11-05 20:51:16 ----A---- C:\Windows\system32\XAudio2_4.dll
2012-11-05 20:51:16 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2012-11-05 20:51:16 ----A---- C:\Windows\system32\xactengine3_4.dll
2012-11-05 20:51:16 ----A---- C:\Windows\system32\D3DX9_41.dll
2012-11-05 20:51:15 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2012-11-05 20:51:15 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2012-11-05 20:51:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2012-11-05 20:51:15 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2012-11-05 20:51:15 ----A---- C:\Windows\system32\d3dx10_40.dll
2012-11-05 20:51:15 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2012-11-05 20:51:14 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2012-11-05 20:51:14 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2012-11-05 20:51:14 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2012-11-05 20:51:14 ----A---- C:\Windows\system32\XAudio2_3.dll
2012-11-05 20:51:14 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2012-11-05 20:51:14 ----A---- C:\Windows\system32\D3DX9_40.dll
2012-11-05 20:51:13 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2012-11-05 20:51:13 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2012-11-05 20:51:13 ----A---- C:\Windows\system32\xactengine3_3.dll
2012-11-05 20:51:13 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2012-11-05 20:51:12 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2012-11-05 20:51:12 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2012-11-05 20:51:12 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2012-11-05 20:51:12 ----A---- C:\Windows\system32\XAudio2_2.dll
2012-11-05 20:51:12 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2012-11-05 20:51:12 ----A---- C:\Windows\system32\xactengine3_2.dll
2012-11-05 20:51:11 ----A---- C:\Windows\system32\d3dx10_39.dll
2012-11-05 20:51:11 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2012-11-05 20:51:10 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2012-11-05 20:51:10 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2012-11-05 20:51:10 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2012-11-05 20:51:10 ----A---- C:\Windows\system32\XAudio2_1.dll
2012-11-05 20:51:10 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2012-11-05 20:51:10 ----A---- C:\Windows\system32\xactengine3_1.dll
2012-11-05 20:51:10 ----A---- C:\Windows\system32\D3DX9_39.dll
2012-11-05 20:51:09 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2012-11-05 20:51:09 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2012-11-05 20:51:09 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2012-11-05 20:51:09 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2012-11-05 20:51:09 ----A---- C:\Windows\system32\d3dx10_38.dll
2012-11-05 20:51:09 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2012-11-05 20:51:08 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2012-11-05 20:51:08 ----A---- C:\Windows\system32\D3DX9_38.dll
2012-11-05 20:51:07 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2012-11-05 20:51:07 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2012-11-05 20:51:07 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2012-11-05 20:51:07 ----A---- C:\Windows\system32\XAudio2_0.dll
2012-11-05 20:51:07 ----A---- C:\Windows\system32\xactengine3_0.dll
2012-11-05 20:51:07 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2012-11-05 20:51:05 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2012-11-05 20:51:05 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2012-11-05 20:51:05 ----A---- C:\Windows\system32\d3dx10_37.dll
2012-11-05 20:51:05 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2012-11-05 20:51:03 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2012-11-05 20:51:03 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2012-11-05 20:51:03 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2012-11-05 20:51:03 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2012-11-05 20:51:03 ----A---- C:\Windows\system32\xactengine2_10.dll
2012-11-05 20:51:03 ----A---- C:\Windows\system32\D3DX9_37.dll
2012-11-05 20:51:03 ----A---- C:\Windows\system32\d3dx10_36.dll
2012-11-05 20:51:03 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2012-11-05 20:51:01 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2012-11-05 20:51:01 ----A---- C:\Windows\system32\d3dx9_36.dll
2012-11-05 20:50:59 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2012-11-05 20:50:59 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2012-11-03 15:38:32 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2012-11-03 15:38:32 ----A---- C:\Windows\system32\xactengine2_9.dll
2012-11-03 15:38:31 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2012-11-03 15:38:31 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2012-11-03 15:38:31 ----A---- C:\Windows\system32\d3dx10_35.dll
2012-11-03 15:38:31 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2012-11-03 15:38:29 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2012-11-03 15:38:29 ----A---- C:\Windows\system32\d3dx9_35.dll
2012-11-03 15:38:28 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2012-11-03 15:38:28 ----A---- C:\Windows\system32\xactengine2_8.dll
2012-11-03 15:38:25 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2012-11-03 15:38:25 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2012-11-03 15:38:25 ----A---- C:\Windows\system32\d3dx10_34.dll
2012-11-03 15:38:25 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2012-11-03 15:38:24 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2012-11-03 15:38:24 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2012-11-03 15:38:24 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2012-11-03 15:38:24 ----A---- C:\Windows\system32\xinput1_3.dll
2012-11-03 15:38:24 ----A---- C:\Windows\system32\xactengine2_7.dll
2012-11-03 15:38:24 ----A---- C:\Windows\system32\d3dx9_34.dll
2012-11-03 15:38:23 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2012-11-03 15:38:23 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2012-11-03 15:38:23 ----A---- C:\Windows\system32\d3dx10_33.dll
2012-11-03 15:38:23 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2012-11-03 15:38:22 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2012-11-03 15:38:22 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2012-11-03 15:38:22 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2012-11-03 15:38:22 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2012-11-03 15:38:22 ----A---- C:\Windows\system32\xactengine2_6.dll
2012-11-03 15:38:22 ----A---- C:\Windows\system32\xactengine2_5.dll
2012-11-03 15:38:22 ----A---- C:\Windows\system32\d3dx9_33.dll
2012-11-03 15:38:22 ----A---- C:\Windows\system32\d3dx10.dll
2012-11-03 15:38:20 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2012-11-03 15:38:20 ----A---- C:\Windows\system32\d3dx9_32.dll
2012-11-03 15:38:19 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2012-11-03 15:38:19 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2012-11-03 15:38:19 ----A---- C:\Windows\system32\xactengine2_4.dll
2012-11-03 15:38:19 ----A---- C:\Windows\system32\x3daudio1_1.dll
2012-11-03 15:38:17 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2012-11-03 15:38:17 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2012-11-03 15:38:17 ----A---- C:\Windows\system32\xinput1_2.dll
2012-11-03 15:38:17 ----A---- C:\Windows\system32\xactengine2_3.dll
2012-11-03 15:38:17 ----A---- C:\Windows\system32\d3dx9_31.dll
2012-11-03 15:38:16 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2012-11-03 15:38:16 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2012-11-03 15:38:16 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2012-11-03 15:38:16 ----A---- C:\Windows\system32\xinput1_1.dll
2012-11-03 15:38:16 ----A---- C:\Windows\system32\xactengine2_2.dll
2012-11-03 15:38:16 ----A---- C:\Windows\system32\xactengine2_1.dll
2012-11-03 15:38:10 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2012-11-03 15:38:10 ----A---- C:\Windows\system32\d3dx9_30.dll
2012-11-03 15:38:09 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2012-11-03 15:38:09 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2012-11-03 15:38:09 ----A---- C:\Windows\system32\xactengine2_0.dll
2012-11-03 15:38:09 ----A---- C:\Windows\system32\x3daudio1_0.dll
2012-11-03 15:38:08 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2012-11-03 15:38:08 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2012-11-03 15:38:08 ----A---- C:\Windows\system32\d3dx9_29.dll
2012-11-03 15:38:08 ----A---- C:\Windows\system32\d3dx9_28.dll
2012-11-03 15:38:04 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2012-11-03 15:38:04 ----A---- C:\Windows\system32\d3dx9_27.dll
2012-11-03 15:37:59 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2012-11-03 15:37:59 ----A---- C:\Windows\system32\d3dx9_26.dll
2012-11-03 15:37:54 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2012-11-03 15:37:54 ----A---- C:\Windows\system32\d3dx9_25.dll
2012-11-03 15:37:53 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2012-11-03 15:37:53 ----A---- C:\Windows\system32\d3dx9_24.dll
2012-11-02 21:11:19 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2012-11-02 21:11:19 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2012-11-02 21:11:18 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2012-11-02 21:11:16 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2012-11-02 21:11:02 ----D---- C:\ProgramData\PassMark
2012-11-02 21:11:01 ----D---- C:\Program Files (x86)\PerformanceTest

======List of files/folders modified in the last 1 month======

2012-11-30 23:52:58 ----RD---- C:\Program Files
2012-11-30 23:46:31 ----D---- C:\Users\jaroy\AppData\Roaming\TS3Client
2012-11-30 23:46:31 ----D---- C:\Program Files (x86)\Steam
2012-11-30 23:46:26 ----D---- C:\Windows\Logs
2012-11-30 23:46:26 ----D---- C:\Windows\inf
2012-11-30 23:46:26 ----D---- C:\Windows
2012-11-30 23:46:25 ----D---- C:\Windows\Temp
2012-11-30 23:42:02 ----SHD---- C:\Windows\Installer
2012-11-30 23:38:04 ----RD---- C:\Program Files (x86)
2012-11-30 23:37:59 ----D---- C:\Program Files (x86)\Google
2012-11-30 23:37:21 ----D---- C:\Windows\Tasks
2012-11-30 23:37:21 ----D---- C:\Windows\system32\Tasks
2012-11-30 23:34:02 ----D---- C:\Users\jaroy\AppData\Roaming\Skype
2012-11-30 11:44:56 ----D---- C:\Windows\System32
2012-11-30 11:44:56 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-11-27 23:58:58 ----D---- C:\Windows\system32\config
2012-11-27 16:22:57 ----HD---- C:\Windows\msdownld.tmp
2012-11-27 16:22:50 ----D---- C:\Windows\SYSWOW64\directx
2012-11-27 16:12:26 ----D---- C:\Windows\system32\drivers
2012-11-27 16:12:25 ----D---- C:\Windows\system32\DriverStore
2012-11-27 16:12:18 ----SHD---- C:\System Volume Information
2012-11-25 04:48:07 ----D---- C:\ProgramData\PMB Files
2012-11-22 17:31:30 ----SD---- C:\Users\jaroy\AppData\Roaming\Microsoft
2012-11-22 17:31:06 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2012-11-22 17:28:33 ----D---- C:\Users\jaroy\AppData\Roaming\Mozilla
2012-11-22 17:28:21 ----HD---- C:\ProgramData
2012-11-22 17:26:55 ----D---- C:\Windows\Prefetch
2012-11-21 20:59:35 ----D---- C:\Windows\system32\catroot2
2012-11-18 20:18:09 ----D---- C:\Users\jaroy\AppData\Roaming\uTorrent
2012-11-18 20:17:58 ----D---- C:\Windows\SoftwareDistribution
2012-11-18 20:17:58 ----D---- C:\Windows\Panther
2012-11-18 20:17:58 ----D---- C:\Windows\debug
2012-11-18 20:10:15 ----D---- C:\Windows\winsxs
2012-11-17 19:34:29 ----D---- C:\Users\jaroy\AppData\Roaming\Xfire
2012-11-15 02:03:54 ----D---- C:\Windows\SysWOW64
2012-11-15 02:03:27 ----RSD---- C:\Windows\assembly
2012-11-13 17:46:52 ----RSD---- C:\Windows\Fonts
2012-11-08 16:37:45 ----D---- C:\Windows\system32\catroot
2012-11-05 21:33:36 ----D---- C:\ProgramData\Origin
2012-11-05 20:40:52 ----D---- C:\Program Files (x86)\Origin Games

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-05-05 16440]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2010-12-16 40816]
R2 AODDriver4.1;AODDriver4.1; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-03-05 53888]
R2 ESLWireAC;ESLWireAC; \??\C:\Windows\system32\drivers\ESLWireACD.sys [2012-09-04 147472]
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-07-28 10278912]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-07-28 368640]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-05-22 4052496]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2010-11-19 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2010-11-19 181248]
R3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIVX.sys [2011-12-02 239208]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-09-29 646248]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2009-12-22 38456]
R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2011-01-15 36352]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-05-14 96896]
S3 ATITool;ATITool Overclocking Utility; C:\Windows\system32\DRIVERS\ATITool64.sys [2006-11-10 30720]
S3 DIRECTIO;DIRECTIO; \??\C:\Program Files (x86)\PerformanceTest\DirectIo.sys [2012-08-13 22120]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2012-07-28 239616]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-08-06 361984]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 EslWireHelper;ESL Wire Helper Service; C:\Program Files\EslWire\service\WireHelperSvc.exe [2012-09-04 678416]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2012-10-18 76888]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2012-10-24 529744]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-30 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-30 116648]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-11-20 115168]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: nejde mi mail ani google

#2 Příspěvek od Márty84 »

Zdravim :)

:???: Nejak tam nevidim antivir. Je k tomu nejaky duvod? Cistit nezabezpecene pc je vetsinou zbytecne, jelikoz je behem par dnu zase zavsivene :boxed:


:arrow: Doporucuji odinstalovat Akamai


:arrow: Udelejte !!!uplnou!!! kontrolu s MBAM http://forum.viry.cz/viewtopic.php?f=29&t=115222 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

jaroy
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 15 črc 2012 12:07

Re: nejde mi mail ani google

#3 Příspěvek od jaroy »

Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org

Verze databáze: v2012.12.01.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 8.0.7601.17514
jaroy :: JAROY-PC [administrátor]

1.12.2012 12:08:17
mbam-log-2012-12-01 (12-59-05).txt

Typ: Úplná kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 364612
Uplynulý čas: 49 minut, 44 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 2
C:\Windows\Installer\{ca105a95-6adb-85ae-a9d8-be0458fcaa01}\U\00000008.@ (Trojan.Dropper.BCMiner) -> Žádná instrukce nebyla provedena.
C:\Windows\Installer\{ca105a95-6adb-85ae-a9d8-be0458fcaa01}\U\000000cb.@ (Rootkit.0Access) -> Žádná instrukce nebyla provedena.

(konec)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: nejde mi mail ani google

#4 Příspěvek od Márty84 »

Rootkit.0Access - tohle neni moc dobra zprava.


:arrow: Nalezy MBAM nechte odstranit


:arrow:
vyosek píše: :arrow: Stahnete si TDSSKiller http://support.kaspersky.com/downloads/ ... killer.exe
  • Kliknete na volbu Change parametrs
  • V okne Additional Option zakliknete vsechny moznosti
  • Kliknete na OK
  • Utilite prikazte, at skenuje - klik na Start Scan
  • Po dokonceni skenu se objevi okno, zkontrolujte, zda-li je vsude moznost Skip
  • Pokud moznost Skip nebude primarne nastavena, prekliknete ji na Skip
  • Pokud mate vsude Skip, kliknete na Continue
  • Na disku, kde mate Windows (obvykle c:\) ve tvaru TDSSKiller.nejaka cisilka _log.txt bude log - jeho obsah sem vlozte
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

jaroy
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 15 črc 2012 12:07

Re: nejde mi mail ani google

#5 Příspěvek od jaroy »

14:36:26.0266 5308 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
14:36:26.0585 5308 ============================================================
14:36:26.0585 5308 Current date / time: 2012/12/01 14:36:26.0585
14:36:26.0585 5308 SystemInfo:
14:36:26.0585 5308
14:36:26.0585 5308 OS Version: 6.1.7601 ServicePack: 1.0
14:36:26.0585 5308 Product type: Workstation
14:36:26.0585 5308 ComputerName: JAROY-PC
14:36:26.0585 5308 UserName: jaroy
14:36:26.0585 5308 Windows directory: C:\Windows
14:36:26.0585 5308 System windows directory: C:\Windows
14:36:26.0585 5308 Running under WOW64
14:36:26.0585 5308 Processor architecture: Intel x64
14:36:26.0585 5308 Number of processors: 4
14:36:26.0585 5308 Page size: 0x1000
14:36:26.0585 5308 Boot type: Normal boot
14:36:26.0585 5308 ============================================================
14:36:28.0092 5308 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1F8B1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xF0, Type 'K0', Flags 0x00000040
14:36:28.0095 5308 ============================================================
14:36:28.0095 5308 \Device\Harddisk0\DR0:
14:36:28.0095 5308 MBR partitions:
14:36:28.0095 5308 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
14:36:28.0095 5308 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x746D3800
14:36:28.0095 5308 ============================================================
14:36:28.0119 5308 C: <-> \Device\Harddisk0\DR0\Partition2
14:36:28.0120 5308 ============================================================
14:36:28.0120 5308 Initialize success
14:36:28.0120 5308 ============================================================
14:37:05.0843 3416 ============================================================
14:37:05.0843 3416 Scan started
14:37:05.0843 3416 Mode: Manual; SigCheck; TDLFS;
14:37:05.0843 3416 ============================================================
14:37:06.0664 3416 ================ Scan system memory ========================
14:37:06.0664 3416 System memory - ok
14:37:06.0665 3416 ================ Scan services =============================
14:37:06.0874 3416 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
14:37:06.0991 3416 1394ohci - ok
14:37:06.0997 3416 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
14:37:07.0008 3416 ACPI - ok
14:37:07.0017 3416 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
14:37:07.0164 3416 AcpiPmi - ok
14:37:07.0175 3416 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
14:37:07.0272 3416 adp94xx - ok
14:37:07.0278 3416 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
14:37:07.0361 3416 adpahci - ok
14:37:07.0378 3416 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
14:37:07.0460 3416 adpu320 - ok
14:37:07.0480 3416 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
14:37:07.0597 3416 AeLookupSvc - ok
14:37:07.0611 3416 [ D31DC7A16DEA4A9BAF179F3D6FBDB38C ] AFD C:\Windows\system32\drivers\afd.sys
14:37:07.0741 3416 AFD - ok
14:37:07.0751 3416 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
14:37:07.0875 3416 agp440 - ok
14:37:07.0889 3416 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
14:37:07.0915 3416 ALG - ok
14:37:07.0926 3416 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
14:37:08.0033 3416 aliide - ok
14:37:08.0064 3416 [ B3B263B419FC9E7B1D41E61FDAE45BD9 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
14:37:08.0419 3416 AMD External Events Utility - ok
14:37:08.0491 3416 AMD FUEL Service - ok
14:37:08.0505 3416 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
14:37:08.0522 3416 amdide - ok
14:37:08.0543 3416 [ 6A2EEB0C4133B20773BB3DD0B7B377B4 ] amdiox64 C:\Windows\system32\DRIVERS\amdiox64.sys
14:37:08.0636 3416 amdiox64 - ok
14:37:08.0664 3416 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
14:37:08.0745 3416 AmdK8 - ok
14:37:08.0894 3416 [ 9A6E9363F7A5E5A06629D9DDC76EE6B5 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
14:37:09.0327 3416 amdkmdag - ok
14:37:09.0344 3416 [ 957A4C13E1981B1701E600EF1E823C68 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
14:37:09.0585 3416 amdkmdap - ok
14:37:09.0624 3416 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
14:37:09.0639 3416 AmdPPM - ok
14:37:09.0654 3416 [ 6EC6D772EAE38DC17C14AED9B178D24B ] amdsata C:\Windows\system32\drivers\amdsata.sys
14:37:09.0712 3416 amdsata - ok
14:37:09.0732 3416 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
14:37:09.0846 3416 amdsbs - ok
14:37:09.0858 3416 [ 1142A21DB581A84EA5597B03A26EBAA0 ] amdxata C:\Windows\system32\drivers\amdxata.sys
14:37:09.0864 3416 amdxata - ok
14:37:09.0902 3416 [ 5B25D1A753CC3A3EDB909BB759AC1098 ] AODDriver4.1 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys
14:37:09.0987 3416 AODDriver4.1 - ok
14:37:10.0014 3416 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
14:37:10.0040 3416 AppID - ok
14:37:10.0070 3416 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
14:37:10.0105 3416 AppIDSvc - ok
14:37:10.0117 3416 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll
14:37:10.0152 3416 Appinfo - ok
14:37:10.0193 3416 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
14:37:10.0224 3416 AppMgmt - ok
14:37:10.0227 3416 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
14:37:10.0289 3416 arc - ok
14:37:10.0312 3416 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
14:37:10.0391 3416 arcsas - ok
14:37:10.0505 3416 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
14:37:10.0532 3416 aspnet_state - ok
14:37:10.0555 3416 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
14:37:10.0597 3416 AsyncMac - ok
14:37:10.0611 3416 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
14:37:10.0617 3416 atapi - ok
14:37:10.0647 3416 [ B0790FF0E25B7A2674296052F2162C1A ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
14:37:10.0653 3416 AtiHDAudioService - ok
14:37:10.0671 3416 [ 7C5D273E29DCC5505469B299C6F29163 ] AtiPcie C:\Windows\system32\DRIVERS\AtiPcie.sys
14:37:10.0675 3416 AtiPcie - ok
14:37:10.0713 3416 [ B07E6681D303A612680223C729B021E2 ] ATITool C:\Windows\system32\DRIVERS\ATITool64.sys
14:37:10.0786 3416 ATITool ( UnsignedFile.Multi.Generic ) - warning
14:37:10.0786 3416 ATITool - detected UnsignedFile.Multi.Generic (1)
14:37:10.0813 3416 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
14:37:10.0847 3416 AudioEndpointBuilder - ok
14:37:10.0859 3416 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
14:37:10.0895 3416 AudioSrv - ok
14:37:11.0106 3416 [ 56C73C5BC1656656CAC38A23B4310466 ] AVGIDSAgent C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe
14:37:11.0239 3416 AVGIDSAgent - ok
14:37:11.0251 3416 [ 388056EBD5FE6718FE669078DBE37897 ] AVGIDSDriver C:\Windows\system32\DRIVERS\avgidsdrivera.sys
14:37:11.0275 3416 AVGIDSDriver - ok
14:37:11.0286 3416 [ 550E981747D6A6C55078C77346FFC2C6 ] AVGIDSHA C:\Windows\system32\DRIVERS\avgidsha.sys
14:37:11.0292 3416 AVGIDSHA - ok
14:37:11.0306 3416 [ 5989592A91A17587799792A81E1541D4 ] Avgldx64 C:\Windows\system32\DRIVERS\avgldx64.sys
14:37:11.0313 3416 Avgldx64 - ok
14:37:11.0342 3416 [ 3FC43AA02545FCDDC22817829114DEC8 ] Avgloga C:\Windows\system32\DRIVERS\avgloga.sys
14:37:11.0384 3416 Avgloga - ok
14:37:11.0417 3416 [ 767B4A485FB22AA0FC0BF5EEF00572B9 ] Avgmfx64 C:\Windows\system32\DRIVERS\avgmfx64.sys
14:37:11.0426 3416 Avgmfx64 - ok
14:37:11.0468 3416 [ FE4F444DBE4BBBDFD8FECF49398DEFC7 ] Avgrkx64 C:\Windows\system32\DRIVERS\avgrkx64.sys
14:37:11.0473 3416 Avgrkx64 - ok
14:37:11.0477 3416 [ 6E634525613D48A1D1657FB21F21F3B2 ] Avgtdia C:\Windows\system32\DRIVERS\avgtdia.sys
14:37:11.0492 3416 Avgtdia - ok
14:37:11.0512 3416 [ 6B72E1E329C4E98C6B6FDD2D265E3BA3 ] avgwd C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe
14:37:11.0519 3416 avgwd - ok
14:37:11.0542 3416 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
14:37:11.0582 3416 AxInstSV - ok
14:37:11.0612 3416 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
14:37:11.0747 3416 b06bdrv - ok
14:37:11.0763 3416 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
14:37:11.0877 3416 b57nd60a - ok
14:37:11.0904 3416 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
14:37:11.0947 3416 BDESVC - ok
14:37:11.0961 3416 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
14:37:12.0009 3416 Beep - ok
14:37:12.0019 3416 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
14:37:12.0080 3416 blbdrive - ok
14:37:12.0097 3416 [ 91CE0D3DC57DD377E690A2D324022B08 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
14:37:12.0122 3416 bowser - ok
14:37:12.0125 3416 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
14:37:12.0194 3416 BrFiltLo - ok
14:37:12.0197 3416 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
14:37:12.0270 3416 BrFiltUp - ok
14:37:12.0290 3416 [ 8EF0D5C41EC907751B8429162B1239ED ] Browser C:\Windows\System32\browser.dll
14:37:12.0327 3416 Browser - ok
14:37:12.0332 3416 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
14:37:12.0427 3416 Brserid - ok
14:37:12.0449 3416 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
14:37:12.0535 3416 BrSerWdm - ok
14:37:12.0539 3416 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
14:37:12.0667 3416 BrUsbMdm - ok
14:37:12.0671 3416 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
14:37:12.0791 3416 BrUsbSer - ok
14:37:12.0795 3416 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
14:37:12.0896 3416 BTHMODEM - ok
14:37:12.0927 3416 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
14:37:12.0950 3416 bthserv - ok
14:37:12.0971 3416 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
14:37:13.0109 3416 cdfs - ok
14:37:13.0134 3416 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
14:37:13.0239 3416 cdrom - ok
14:37:13.0263 3416 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
14:37:13.0296 3416 CertPropSvc - ok
14:37:13.0300 3416 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
14:37:13.0329 3416 circlass - ok
14:37:13.0348 3416 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
14:37:13.0359 3416 CLFS - ok
14:37:13.0414 3416 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:37:13.0442 3416 clr_optimization_v2.0.50727_32 - ok
14:37:13.0477 3416 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
14:37:13.0495 3416 clr_optimization_v2.0.50727_64 - ok
14:37:13.0561 3416 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:37:13.0634 3416 clr_optimization_v4.0.30319_32 - ok
14:37:13.0651 3416 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
14:37:13.0660 3416 clr_optimization_v4.0.30319_64 - ok
14:37:13.0665 3416 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
14:37:13.0789 3416 CmBatt - ok
14:37:13.0800 3416 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
14:37:13.0937 3416 cmdide - ok
14:37:13.0957 3416 [ D5FEA92400F12412B3922087C09DA6A5 ] CNG C:\Windows\system32\Drivers\cng.sys
14:37:14.0015 3416 CNG - ok
14:37:14.0023 3416 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
14:37:14.0078 3416 Compbatt - ok
14:37:14.0106 3416 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
14:37:14.0203 3416 CompositeBus - ok
14:37:14.0215 3416 COMSysApp - ok
14:37:14.0220 3416 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
14:37:14.0326 3416 crcdisk - ok
14:37:14.0367 3416 [ 15597883FBE9B056F276ADA3AD87D9AF ] CryptSvc C:\Windows\system32\cryptsvc.dll
14:37:14.0415 3416 CryptSvc - ok
14:37:14.0451 3416 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys
14:37:14.0526 3416 CSC - ok
14:37:14.0554 3416 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll
14:37:14.0583 3416 CscService - ok
14:37:14.0606 3416 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
14:37:14.0654 3416 DcomLaunch - ok
14:37:14.0675 3416 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
14:37:14.0700 3416 defragsvc - ok
14:37:14.0711 3416 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
14:37:14.0739 3416 DfsC - ok
14:37:14.0774 3416 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
14:37:14.0835 3416 Dhcp - ok
14:37:14.0866 3416 DIRECTIO - ok
14:37:14.0892 3416 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
14:37:14.0929 3416 discache - ok
14:37:14.0953 3416 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
14:37:14.0959 3416 Disk - ok
14:37:14.0971 3416 [ 5DB085A8A6600BE6401F2B24EECB5415 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
14:37:15.0042 3416 dmvsc - ok
14:37:15.0061 3416 [ CD55F5355D8F55D44C9F4ED875705BD6 ] Dnscache C:\Windows\System32\dnsrslvr.dll
14:37:15.0096 3416 Dnscache - ok
14:37:15.0100 3416 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
14:37:15.0125 3416 dot3svc - ok
14:37:15.0129 3416 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
14:37:15.0154 3416 DPS - ok
14:37:15.0173 3416 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
14:37:15.0277 3416 drmkaud - ok
14:37:15.0298 3416 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
14:37:15.0326 3416 DXGKrnl - ok
14:37:15.0352 3416 EagleX64 - ok
14:37:15.0357 3416 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
14:37:15.0392 3416 EapHost - ok
14:37:15.0467 3416 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
14:37:15.0663 3416 ebdrv - ok
14:37:15.0688 3416 [ 0793F40B9B8A1BDD266296409DBD91EA ] EFS C:\Windows\System32\lsass.exe
14:37:15.0695 3416 EFS - ok
14:37:15.0752 3416 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
14:37:15.0780 3416 ehRecvr - ok
14:37:15.0794 3416 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
14:37:15.0803 3416 ehSched - ok
14:37:15.0844 3416 [ A05FC7ECA0966EBB70E4D17B855A853B ] ElbyCDIO C:\Windows\system32\Drivers\ElbyCDIO.sys
14:37:15.0877 3416 ElbyCDIO - ok
14:37:15.0902 3416 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
14:37:16.0029 3416 elxstor - ok
14:37:16.0062 3416 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
14:37:16.0093 3416 ErrDev - ok
14:37:16.0131 3416 [ ABC24F129C616E5DEE5CE58683606C84 ] ESLWireAC C:\Windows\system32\drivers\ESLWireACD.sys
14:37:16.0140 3416 ESLWireAC - ok
14:37:16.0204 3416 [ 4FC6545A22D348E1B6DA15A27748B7FE ] EslWireHelper C:\Program Files\EslWire\service\WireHelperSvc.exe
14:37:16.0268 3416 EslWireHelper - ok
14:37:16.0301 3416 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
14:37:16.0340 3416 EventSystem - ok
14:37:16.0354 3416 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
14:37:16.0385 3416 exfat - ok
14:37:16.0405 3416 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
14:37:16.0441 3416 fastfat - ok
14:37:16.0480 3416 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
14:37:16.0591 3416 Fax - ok
14:37:16.0618 3416 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
14:37:16.0727 3416 fdc - ok
14:37:16.0739 3416 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
14:37:16.0778 3416 fdPHost - ok
14:37:16.0788 3416 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
14:37:16.0821 3416 FDResPub - ok
14:37:16.0834 3416 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
14:37:16.0840 3416 FileInfo - ok
14:37:16.0858 3416 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
14:37:16.0923 3416 Filetrace - ok
14:37:16.0927 3416 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
14:37:17.0108 3416 flpydisk - ok
14:37:17.0127 3416 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
14:37:17.0136 3416 FltMgr - ok
14:37:17.0163 3416 [ B4447F606BB19FD8AD0BAFB59B90F5D9 ] FontCache C:\Windows\system32\FntCache.dll
14:37:17.0197 3416 FontCache - ok
14:37:17.0228 3416 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
14:37:17.0235 3416 FontCache3.0.0.0 - ok
14:37:17.0246 3416 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
14:37:17.0252 3416 FsDepends - ok
14:37:17.0266 3416 [ E95EF8547DE20CF0603557C0CF7A9462 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
14:37:17.0272 3416 Fs_Rec - ok
14:37:17.0291 3416 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
14:37:17.0304 3416 fvevol - ok
14:37:17.0319 3416 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
14:37:17.0353 3416 gagp30kx - ok
14:37:17.0388 3416 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
14:37:17.0424 3416 gpsvc - ok
14:37:17.0512 3416 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:37:17.0518 3416 gupdate - ok
14:37:17.0521 3416 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:37:17.0526 3416 gupdatem - ok
14:37:17.0530 3416 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
14:37:17.0641 3416 hcw85cir - ok
14:37:17.0663 3416 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:37:17.0764 3416 HdAudAddService - ok
14:37:17.0772 3416 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
14:37:17.0795 3416 HDAudBus - ok
14:37:17.0798 3416 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
14:37:17.0915 3416 HidBatt - ok
14:37:17.0923 3416 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
14:37:17.0986 3416 HidBth - ok
14:37:17.0989 3416 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
14:37:18.0046 3416 HidIr - ok
14:37:18.0057 3416 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
14:37:18.0080 3416 hidserv - ok
14:37:18.0106 3416 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
14:37:18.0174 3416 HidUsb - ok
14:37:18.0189 3416 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
14:37:18.0216 3416 hkmsvc - ok
14:37:18.0236 3416 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:37:18.0261 3416 HomeGroupListener - ok
14:37:18.0281 3416 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:37:18.0292 3416 HomeGroupProvider - ok
14:37:18.0310 3416 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
14:37:18.0384 3416 HpSAMD - ok
14:37:18.0424 3416 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
14:37:18.0483 3416 HTTP - ok
14:37:18.0515 3416 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
14:37:18.0520 3416 hwpolicy - ok
14:37:18.0535 3416 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
14:37:18.0671 3416 i8042prt - ok
14:37:18.0679 3416 [ 3DF4395A7CF8B7A72A5F4606366B8C2D ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
14:37:18.0734 3416 iaStorV - ok
14:37:18.0776 3416 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
14:37:18.0792 3416 idsvc - ok
14:37:18.0807 3416 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
14:37:18.0916 3416 iirsp - ok
14:37:18.0943 3416 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
14:37:18.0992 3416 IKEEXT - ok
14:37:19.0074 3416 [ A4A57A57020849117EF7B1D905F2A16A ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
14:37:19.0193 3416 IntcAzAudAddService - ok
14:37:19.0208 3416 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
14:37:19.0305 3416 intelide - ok
14:37:19.0336 3416 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\drivers\intelppm.sys
14:37:19.0417 3416 intelppm - ok
14:37:19.0435 3416 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
14:37:19.0466 3416 IPBusEnum - ok
14:37:19.0470 3416 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:37:19.0491 3416 IpFilterDriver - ok
14:37:19.0496 3416 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
14:37:19.0587 3416 IPMIDRV - ok
14:37:19.0591 3416 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
14:37:19.0630 3416 IPNAT - ok
14:37:19.0653 3416 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
14:37:19.0663 3416 IRENUM - ok
14:37:19.0674 3416 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
14:37:19.0729 3416 isapnp - ok
14:37:19.0747 3416 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
14:37:19.0831 3416 iScsiPrt - ok
14:37:19.0846 3416 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
14:37:19.0856 3416 kbdclass - ok
14:37:19.0865 3416 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
14:37:19.0970 3416 kbdhid - ok
14:37:19.0980 3416 [ 0793F40B9B8A1BDD266296409DBD91EA ] KeyIso C:\Windows\system32\lsass.exe
14:37:19.0991 3416 KeyIso - ok
14:37:20.0011 3416 [ CCD53B5BD33CE0C889E830D839C8B66E ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
14:37:20.0018 3416 KSecDD - ok
14:37:20.0035 3416 [ 9FF918A261752C12639E8AD4208D2C2F ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
14:37:20.0043 3416 KSecPkg - ok
14:37:20.0050 3416 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
14:37:20.0077 3416 ksthunk - ok
14:37:20.0120 3416 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
14:37:20.0174 3416 KtmRm - ok
14:37:20.0188 3416 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
14:37:20.0212 3416 LanmanServer - ok
14:37:20.0232 3416 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:37:20.0262 3416 LanmanWorkstation - ok
14:37:20.0277 3416 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
14:37:20.0299 3416 lltdio - ok
14:37:20.0317 3416 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
14:37:20.0351 3416 lltdsvc - ok
14:37:20.0361 3416 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
14:37:20.0393 3416 lmhosts - ok
14:37:20.0411 3416 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
14:37:20.0508 3416 LSI_FC - ok
14:37:20.0520 3416 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
14:37:20.0583 3416 LSI_SAS - ok
14:37:20.0593 3416 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
14:37:20.0682 3416 LSI_SAS2 - ok
14:37:20.0705 3416 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
14:37:20.0781 3416 LSI_SCSI - ok
14:37:20.0800 3416 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
14:37:20.0850 3416 luafv - ok
14:37:20.0876 3416 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
14:37:20.0884 3416 Mcx2Svc - ok
14:37:20.0903 3416 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
14:37:20.0952 3416 megasas - ok
14:37:20.0968 3416 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
14:37:21.0054 3416 MegaSR - ok
14:37:21.0064 3416 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
14:37:21.0089 3416 MMCSS - ok
14:37:21.0103 3416 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
14:37:21.0131 3416 Modem - ok
14:37:21.0150 3416 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
14:37:21.0164 3416 monitor - ok
14:37:21.0185 3416 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
14:37:21.0192 3416 mouclass - ok
14:37:21.0197 3416 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
14:37:21.0272 3416 mouhid - ok
14:37:21.0295 3416 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
14:37:21.0302 3416 mountmgr - ok
14:37:21.0317 3416 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
14:37:21.0377 3416 mpio - ok
14:37:21.0388 3416 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
14:37:21.0410 3416 mpsdrv - ok
14:37:21.0426 3416 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
14:37:21.0445 3416 MRxDAV - ok
14:37:21.0465 3416 [ FAF015B07E3A2874A790A39B7D2C579F ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
14:37:21.0500 3416 mrxsmb - ok
14:37:21.0522 3416 [ 08E2345DF129082BCDFFDC1440F9C00D ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:37:21.0545 3416 mrxsmb10 - ok
14:37:21.0563 3416 [ 108D87409C5812EF47D81E22843E8C9D ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:37:21.0602 3416 mrxsmb20 - ok
14:37:21.0609 3416 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
14:37:21.0691 3416 msahci - ok
14:37:21.0722 3416 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
14:37:21.0743 3416 msdsm - ok
14:37:21.0758 3416 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
14:37:21.0774 3416 MSDTC - ok
14:37:21.0791 3416 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
14:37:21.0813 3416 Msfs - ok
14:37:21.0827 3416 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
14:37:21.0849 3416 mshidkmdf - ok
14:37:21.0861 3416 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
14:37:21.0867 3416 msisadrv - ok
14:37:21.0891 3416 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
14:37:21.0917 3416 MSiSCSI - ok
14:37:21.0920 3416 msiserver - ok
14:37:21.0942 3416 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
14:37:21.0970 3416 MSKSSRV - ok
14:37:21.0983 3416 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
14:37:22.0013 3416 MSPCLOCK - ok
14:37:22.0022 3416 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
14:37:22.0050 3416 MSPQM - ok
14:37:22.0060 3416 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
14:37:22.0072 3416 MsRPC - ok
14:37:22.0088 3416 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
14:37:22.0094 3416 mssmbios - ok
14:37:22.0103 3416 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
14:37:22.0131 3416 MSTEE - ok
14:37:22.0135 3416 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
14:37:22.0194 3416 MTConfig - ok
14:37:22.0204 3416 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
14:37:22.0210 3416 Mup - ok
14:37:22.0234 3416 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
14:37:22.0261 3416 napagent - ok
14:37:22.0280 3416 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
14:37:22.0306 3416 NativeWifiP - ok
14:37:22.0319 3416 [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS C:\Windows\system32\drivers\ndis.sys
14:37:22.0339 3416 NDIS - ok
14:37:22.0347 3416 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
14:37:22.0373 3416 NdisCap - ok
14:37:22.0385 3416 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
14:37:22.0415 3416 NdisTapi - ok
14:37:22.0419 3416 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
14:37:22.0442 3416 Ndisuio - ok
14:37:22.0462 3416 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
14:37:22.0492 3416 NdisWan - ok
14:37:22.0510 3416 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
14:37:22.0541 3416 NDProxy - ok
14:37:22.0587 3416 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
14:37:22.0634 3416 NetBIOS - ok
14:37:22.0658 3416 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
14:37:22.0682 3416 NetBT - ok
14:37:22.0692 3416 [ 0793F40B9B8A1BDD266296409DBD91EA ] Netlogon C:\Windows\system32\lsass.exe
14:37:22.0700 3416 Netlogon - ok
14:37:22.0723 3416 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
14:37:22.0758 3416 Netman - ok
14:37:22.0795 3416 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:37:22.0808 3416 NetMsmqActivator - ok
14:37:22.0816 3416 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:37:22.0822 3416 NetPipeActivator - ok
14:37:22.0828 3416 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
14:37:22.0855 3416 netprofm - ok
14:37:22.0859 3416 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:37:22.0864 3416 NetTcpActivator - ok
14:37:22.0868 3416 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:37:22.0874 3416 NetTcpPortSharing - ok
14:37:22.0889 3416 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
14:37:23.0036 3416 nfrd960 - ok
14:37:23.0048 3416 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\Windows\System32\nlasvc.dll
14:37:23.0084 3416 NlaSvc - ok
14:37:23.0101 3416 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
14:37:23.0123 3416 Npfs - ok
14:37:23.0146 3416 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
14:37:23.0172 3416 nsi - ok
14:37:23.0182 3416 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
14:37:23.0211 3416 nsiproxy - ok
14:37:23.0244 3416 [ 05D78AA5CB5F3F5C31160BDB955D0B7C ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
14:37:23.0279 3416 Ntfs - ok
14:37:23.0287 3416 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
14:37:23.0309 3416 Null - ok
14:37:23.0328 3416 [ A7127E86F9FFE2A53E271B56B2C4CEDF ] nusb3hub C:\Windows\system32\DRIVERS\nusb3hub.sys
14:37:23.0403 3416 nusb3hub - ok
14:37:23.0412 3416 [ 49BBEC6F48D5F9284B03ABF3A959B19B ] nusb3xhc C:\Windows\system32\DRIVERS\nusb3xhc.sys
14:37:23.0535 3416 nusb3xhc - ok
14:37:23.0560 3416 [ 5D9FD91F3D38DC9DA01E3CB5FA89CD48 ] nvraid C:\Windows\system32\drivers\nvraid.sys
14:37:23.0604 3416 nvraid - ok
14:37:23.0616 3416 [ F7CD50FE7139F07E77DA8AC8033D1832 ] nvstor C:\Windows\system32\drivers\nvstor.sys
14:37:23.0669 3416 nvstor - ok
14:37:23.0681 3416 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
14:37:23.0748 3416 nv_agp - ok
14:37:23.0756 3416 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
14:37:23.0813 3416 ohci1394 - ok
14:37:23.0828 3416 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
14:37:23.0857 3416 p2pimsvc - ok
14:37:23.0878 3416 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
14:37:23.0890 3416 p2psvc - ok
14:37:23.0912 3416 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
14:37:24.0021 3416 Parport - ok
14:37:24.0029 3416 [ 871EADAC56B0A4C6512BBE32753CCF79 ] partmgr C:\Windows\system32\drivers\partmgr.sys
14:37:24.0039 3416 partmgr - ok
14:37:24.0049 3416 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
14:37:24.0072 3416 PcaSvc - ok
14:37:24.0084 3416 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
14:37:24.0092 3416 pci - ok
14:37:24.0103 3416 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
14:37:24.0109 3416 pciide - ok
14:37:24.0129 3416 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
14:37:24.0220 3416 pcmcia - ok
14:37:24.0237 3416 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
14:37:24.0246 3416 pcw - ok
14:37:24.0260 3416 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
14:37:24.0312 3416 PEAUTH - ok
14:37:24.0344 3416 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
14:37:24.0383 3416 PeerDistSvc - ok
14:37:24.0440 3416 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
14:37:24.0454 3416 PerfHost - ok
14:37:24.0482 3416 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
14:37:24.0523 3416 pla - ok
14:37:24.0548 3416 [ B806E50427511BCF4AD8E8239C3E25FA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
14:37:24.0581 3416 PlugPlay - ok
14:37:24.0596 3416 PnkBstrA - ok
14:37:24.0604 3416 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
14:37:24.0623 3416 PNRPAutoReg - ok
14:37:24.0632 3416 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
14:37:24.0641 3416 PNRPsvc - ok
14:37:24.0666 3416 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
14:37:24.0705 3416 PolicyAgent - ok
14:37:24.0718 3416 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
14:37:24.0753 3416 Power - ok
14:37:24.0785 3416 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
14:37:24.0820 3416 PptpMiniport - ok
14:37:24.0831 3416 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
14:37:24.0926 3416 Processor - ok
14:37:24.0942 3416 [ 5C78838B4D166D1A27DB3A8A820C799A ] ProfSvc C:\Windows\system32\profsvc.dll
14:37:24.0984 3416 ProfSvc - ok
14:37:24.0994 3416 [ 0793F40B9B8A1BDD266296409DBD91EA ] ProtectedStorage C:\Windows\system32\lsass.exe
14:37:25.0001 3416 ProtectedStorage - ok
14:37:25.0012 3416 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
14:37:25.0041 3416 Psched - ok
14:37:25.0072 3416 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
14:37:25.0153 3416 ql2300 - ok
14:37:25.0166 3416 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
14:37:25.0270 3416 ql40xx - ok
14:37:25.0285 3416 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
14:37:25.0305 3416 QWAVE - ok
14:37:25.0321 3416 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
14:37:25.0336 3416 QWAVEdrv - ok
14:37:25.0347 3416 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
14:37:25.0369 3416 RasAcd - ok
14:37:25.0399 3416 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
14:37:25.0421 3416 RasAgileVpn - ok
14:37:25.0430 3416 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
14:37:25.0463 3416 RasAuto - ok
14:37:25.0475 3416 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
14:37:25.0497 3416 Rasl2tp - ok
14:37:25.0511 3416 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
14:37:25.0542 3416 RasMan - ok
14:37:25.0555 3416 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
14:37:25.0587 3416 RasPppoe - ok
14:37:25.0601 3416 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
14:37:25.0624 3416 RasSstp - ok
14:37:25.0636 3416 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
14:37:25.0660 3416 rdbss - ok
14:37:25.0669 3416 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
14:37:25.0791 3416 rdpbus - ok
14:37:25.0807 3416 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
14:37:25.0844 3416 RDPCDD - ok
14:37:25.0868 3416 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
14:37:25.0890 3416 RDPDR - ok
14:37:25.0902 3416 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
14:37:25.0928 3416 RDPENCDD - ok
14:37:25.0932 3416 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
14:37:25.0953 3416 RDPREFMP - ok
14:37:25.0959 3416 [ 15B66C206B5CB095BAB980553F38ED23 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
14:37:25.0983 3416 RDPWD - ok
14:37:26.0001 3416 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
14:37:26.0010 3416 rdyboost - ok
14:37:26.0052 3416 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
14:37:26.0089 3416 RemoteAccess - ok
14:37:26.0099 3416 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
14:37:26.0123 3416 RemoteRegistry - ok
14:37:26.0135 3416 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
14:37:26.0158 3416 RpcEptMapper - ok
14:37:26.0184 3416 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
14:37:26.0206 3416 RpcLocator - ok
14:37:26.0225 3416 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
14:37:26.0256 3416 RpcSs - ok
14:37:26.0277 3416 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
14:37:26.0299 3416 rspndr - ok
14:37:26.0340 3416 [ C20F64FCD5E2B40310A1774495877ACD ] RTHDMIAzAudService C:\Windows\system32\drivers\RtHDMIVX.sys
14:37:26.0347 3416 RTHDMIAzAudService - ok
14:37:26.0373 3416 [ 7F4F11527AF5A7E4526CB6A146B3E40C ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
14:37:26.0388 3416 RTL8167 - ok
14:37:26.0403 3416 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
14:37:26.0487 3416 s3cap - ok
14:37:26.0503 3416 [ 0793F40B9B8A1BDD266296409DBD91EA ] SamSs C:\Windows\system32\lsass.exe
14:37:26.0514 3416 SamSs - ok
14:37:26.0522 3416 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
14:37:26.0638 3416 sbp2port - ok
14:37:26.0656 3416 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
14:37:26.0681 3416 SCardSvr - ok
14:37:26.0697 3416 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
14:37:26.0728 3416 scfilter - ok
14:37:26.0752 3416 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
14:37:26.0790 3416 Schedule - ok
14:37:26.0813 3416 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
14:37:26.0835 3416 SCPolicySvc - ok
14:37:26.0849 3416 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
14:37:26.0870 3416 SDRSVC - ok
14:37:26.0891 3416 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
14:37:26.0965 3416 secdrv - ok
14:37:26.0976 3416 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
14:37:27.0009 3416 seclogon - ok
14:37:27.0022 3416 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
14:37:27.0052 3416 SENS - ok
14:37:27.0068 3416 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
14:37:27.0088 3416 SensrSvc - ok
14:37:27.0101 3416 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
14:37:27.0169 3416 Serenum - ok
14:37:27.0178 3416 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
14:37:27.0252 3416 Serial - ok
14:37:27.0265 3416 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
14:37:27.0355 3416 sermouse - ok
14:37:27.0364 3416 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
14:37:27.0391 3416 SessionEnv - ok
14:37:27.0394 3416 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
14:37:27.0533 3416 sffdisk - ok
14:37:27.0537 3416 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
14:37:27.0613 3416 sffp_mmc - ok
14:37:27.0616 3416 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
14:37:27.0652 3416 sffp_sd - ok
14:37:27.0656 3416 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
14:37:27.0686 3416 sfloppy - ok
14:37:27.0703 3416 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
14:37:27.0730 3416 ShellHWDetection - ok
14:37:27.0756 3416 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
14:37:27.0819 3416 SiSRaid2 - ok
14:37:27.0837 3416 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
14:37:27.0953 3416 SiSRaid4 - ok
14:37:28.0023 3416 [ B7FBC508933553828E0948B537FD7984 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
14:37:28.0032 3416 SkypeUpdate - ok
14:37:28.0052 3416 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
14:37:28.0086 3416 Smb - ok
14:37:28.0119 3416 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
14:37:28.0135 3416 SNMPTRAP - ok
14:37:28.0151 3416 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
14:37:28.0156 3416 spldr - ok
14:37:28.0169 3416 [ B96C17B5DC1424D56EEA3A99E97428CD ] Spooler C:\Windows\System32\spoolsv.exe
14:37:28.0199 3416 Spooler - ok
14:37:28.0251 3416 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
14:37:28.0332 3416 sppsvc - ok
14:37:28.0342 3416 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
14:37:28.0365 3416 sppuinotify - ok
14:37:28.0388 3416 [ 2098B8556D1CEC2ACA9A29CD479E3692 ] srv C:\Windows\system32\DRIVERS\srv.sys
14:37:28.0428 3416 srv - ok
14:37:28.0435 3416 [ D0F73A42040F21F92FD314B42AC5C9E7 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
14:37:28.0471 3416 srv2 - ok
14:37:28.0489 3416 [ 2BA8F3250828CCDB4204ECF2C6F40B6A ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
14:37:28.0526 3416 srvnet - ok
14:37:28.0551 3416 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
14:37:28.0588 3416 SSDPSRV - ok
14:37:28.0603 3416 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
14:37:28.0629 3416 SstpSvc - ok
14:37:28.0673 3416 Steam Client Service - ok
14:37:28.0701 3416 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys
14:37:28.0797 3416 stexstor - ok
14:37:28.0815 3416 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
14:37:28.0844 3416 stisvc - ok
14:37:28.0863 3416 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
14:37:28.0869 3416 storflt - ok
14:37:28.0892 3416 [ C40841817EF57D491F22EB103DA587CC ] StorSvc C:\Windows\system32\storsvc.dll
14:37:28.0928 3416 StorSvc - ok
14:37:28.0954 3416 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys
14:37:29.0029 3416 storvsc - ok
14:37:29.0044 3416 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
14:37:29.0053 3416 swenum - ok
14:37:29.0060 3416 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
14:37:29.0088 3416 swprv - ok
14:37:29.0127 3416 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
14:37:29.0176 3416 SysMain - ok
14:37:29.0190 3416 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
14:37:29.0202 3416 TabletInputService - ok
14:37:29.0220 3416 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
14:37:29.0245 3416 TapiSrv - ok
14:37:29.0259 3416 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
14:37:29.0283 3416 TBS - ok
14:37:29.0313 3416 [ 509383E505C973ED7534A06B3D19688D ] Tcpip C:\Windows\system32\drivers\tcpip.sys
14:37:29.0352 3416 Tcpip - ok
14:37:29.0371 3416 [ 509383E505C973ED7534A06B3D19688D ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
14:37:29.0395 3416 TCPIP6 - ok
14:37:29.0412 3416 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
14:37:29.0437 3416 tcpipreg - ok
14:37:29.0455 3416 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
14:37:29.0482 3416 TDPIPE - ok
14:37:29.0485 3416 [ E4245BDA3190A582D55ED09E137401A9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
14:37:29.0507 3416 TDTCP - ok
14:37:29.0516 3416 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
14:37:29.0544 3416 tdx - ok
14:37:29.0555 3416 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
14:37:29.0561 3416 TermDD - ok
14:37:29.0581 3416 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
14:37:29.0611 3416 TermService - ok
14:37:29.0625 3416 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
14:37:29.0636 3416 Themes - ok
14:37:29.0651 3416 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
14:37:29.0672 3416 THREADORDER - ok
14:37:29.0683 3416 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
14:37:29.0720 3416 TrkWks - ok
14:37:29.0757 3416 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
14:37:29.0781 3416 TrustedInstaller - ok
14:37:29.0789 3416 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
14:37:29.0813 3416 tssecsrv - ok
14:37:29.0816 3416 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
14:37:29.0829 3416 TsUsbFlt - ok
14:37:29.0833 3416 [ 9CC2CCAE8A84820EAECB886D477CBCB8 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
14:37:29.0932 3416 TsUsbGD - ok
14:37:29.0944 3416 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
14:37:29.0974 3416 tunnel - ok
14:37:29.0991 3416 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
14:37:30.0070 3416 uagp35 - ok
14:37:30.0076 3416 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
14:37:30.0112 3416 udfs - ok
14:37:30.0118 3416 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
14:37:30.0127 3416 UI0Detect - ok
14:37:30.0140 3416 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
14:37:30.0230 3416 uliagpkx - ok
14:37:30.0240 3416 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
14:37:30.0330 3416 umbus - ok
14:37:30.0334 3416 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\drivers\umpass.sys
14:37:30.0449 3416 UmPass - ok
14:37:30.0482 3416 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll
14:37:30.0502 3416 UmRdpService - ok
14:37:30.0516 3416 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
14:37:30.0542 3416 upnphost - ok
14:37:30.0570 3416 [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
14:37:30.0665 3416 usbaudio - ok
14:37:30.0676 3416 [ 481DFF26B4DCA8F4CBAC1F7DCE1D6829 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
14:37:30.0825 3416 usbccgp - ok
14:37:30.0835 3416 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
14:37:30.0931 3416 usbcir - ok
14:37:30.0944 3416 [ 74EE782B1D9C241EFE425565854C661C ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
14:37:31.0035 3416 usbehci - ok
14:37:31.0062 3416 [ 2C780746DC44A28FE67004DC58173F05 ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys
14:37:31.0070 3416 usbfilter - ok
14:37:31.0094 3416 [ DC96BD9CCB8403251BCF25047573558E ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
14:37:31.0170 3416 usbhub - ok
14:37:31.0180 3416 [ 58E546BBAF87664FC57E0F6081E4F609 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
14:37:31.0230 3416 usbohci - ok
14:37:31.0240 3416 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\drivers\usbprint.sys
14:37:31.0307 3416 usbprint - ok
14:37:31.0362 3416 [ D76510CFA0FC09023077F22C2F979D86 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
14:37:31.0609 3416 USBSTOR - ok
14:37:31.0663 3416 [ 81FB2216D3A60D1284455D511797DB3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
14:37:31.0740 3416 usbuhci - ok
14:37:31.0786 3416 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
14:37:31.0830 3416 usbvideo - ok
14:37:31.0854 3416 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
14:37:31.0889 3416 UxSms - ok
14:37:31.0902 3416 [ 0793F40B9B8A1BDD266296409DBD91EA ] VaultSvc C:\Windows\system32\lsass.exe
14:37:31.0910 3416 VaultSvc - ok
14:37:31.0941 3416 [ FD911873C0BB6945FA38C16E9A2B58F9 ] VClone C:\Windows\system32\DRIVERS\VClone.sys
14:37:32.0033 3416 VClone - ok
14:37:32.0060 3416 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
14:37:32.0067 3416 vdrvroot - ok
14:37:32.0086 3416 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
14:37:32.0128 3416 vds - ok
14:37:32.0131 3416 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
14:37:32.0187 3416 vga - ok
14:37:32.0194 3416 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
14:37:32.0222 3416 VgaSave - ok
14:37:32.0226 3416 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
14:37:32.0281 3416 vhdmp - ok
14:37:32.0295 3416 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
14:37:32.0307 3416 viaide - ok
14:37:32.0324 3416 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys
14:37:32.0383 3416 vmbus - ok
14:37:32.0397 3416 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
14:37:32.0464 3416 VMBusHID - ok
14:37:32.0482 3416 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
14:37:32.0488 3416 volmgr - ok
14:37:32.0506 3416 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
14:37:32.0516 3416 volmgrx - ok
14:37:32.0533 3416 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
14:37:32.0543 3416 volsnap - ok
14:37:32.0570 3416 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
14:37:32.0656 3416 vsmraid - ok
14:37:32.0690 3416 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
14:37:32.0750 3416 VSS - ok
14:37:32.0762 3416 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
14:37:32.0784 3416 vwifibus - ok
14:37:32.0790 3416 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
14:37:32.0816 3416 W32Time - ok
14:37:32.0823 3416 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys
14:37:32.0897 3416 WacomPen - ok
14:37:32.0929 3416 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
14:37:32.0971 3416 WANARP - ok
14:37:32.0974 3416 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
14:37:32.0995 3416 Wanarpv6 - ok
14:37:33.0020 3416 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
14:37:33.0161 3416 wbengine - ok
14:37:33.0177 3416 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
14:37:33.0202 3416 WbioSrvc - ok
14:37:33.0210 3416 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
14:37:33.0236 3416 wcncsvc - ok
14:37:33.0250 3416 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
14:37:33.0284 3416 WcsPlugInService - ok
14:37:33.0299 3416 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys
14:37:33.0385 3416 Wd - ok
14:37:33.0405 3416 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
14:37:33.0427 3416 Wdf01000 - ok
14:37:33.0443 3416 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
14:37:33.0525 3416 WdiServiceHost - ok
14:37:33.0529 3416 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
14:37:33.0546 3416 WdiSystemHost - ok
14:37:33.0552 3416 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
14:37:33.0576 3416 WebClient - ok
14:37:33.0581 3416 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
14:37:33.0612 3416 Wecsvc - ok
14:37:33.0631 3416 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
14:37:33.0655 3416 wercplsupport - ok
14:37:33.0677 3416 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
14:37:33.0700 3416 WerSvc - ok
14:37:33.0714 3416 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
14:37:33.0736 3416 WfpLwf - ok
14:37:33.0744 3416 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
14:37:33.0750 3416 WIMMount - ok
14:37:33.0755 3416 WinHttpAutoProxySvc - ok
14:37:33.0804 3416 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
14:37:33.0877 3416 Winmgmt - ok
14:37:34.0032 3416 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
14:37:34.0091 3416 WinRM - ok
14:37:34.0128 3416 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
14:37:34.0149 3416 Wlansvc - ok
14:37:34.0162 3416 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
14:37:34.0174 3416 WmiAcpi - ok
14:37:34.0188 3416 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
14:37:34.0203 3416 wmiApSrv - ok
14:37:34.0215 3416 WMPNetworkSvc - ok
14:37:34.0224 3416 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
14:37:34.0244 3416 WPCSvc - ok
14:37:34.0253 3416 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
14:37:34.0279 3416 WPDBusEnum - ok
14:37:34.0290 3416 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
14:37:34.0312 3416 ws2ifsl - ok
14:37:34.0314 3416 WSearch - ok
14:37:34.0328 3416 [ D3381DC54C34D79B22CEE0D65BA91B7C ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
14:37:34.0361 3416 WudfPf - ok
14:37:34.0392 3416 [ CF8D590BE3373029D57AF80914190682 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
14:37:34.0445 3416 WUDFRd - ok
14:37:34.0456 3416 [ 7A95C95B6C4CF292D689106BCAE49543 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
14:37:34.0478 3416 wudfsvc - ok
14:37:34.0484 3416 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
14:37:34.0512 3416 WwanSvc - ok
14:37:34.0516 3416 ================ Scan global ===============================
14:37:34.0533 3416 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
14:37:34.0548 3416 [ E0406AEF04B088D1C49FC78D0546F689 ] C:\Windows\system32\winsrv.dll
14:37:34.0555 3416 [ E0406AEF04B088D1C49FC78D0546F689 ] C:\Windows\system32\winsrv.dll
14:37:34.0571 3416 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
14:37:34.0593 3416 [ 50BEA589F7D7958BDD2528A8F69D05CC ] C:\Windows\system32\services.exe
14:37:34.0737 3416 C:\Windows\system32\services.exe ( Virus.Win64.ZAccess.a ) - infected
14:37:34.0737 3416 C:\Windows\system32\services.exe - detected Virus.Win64.ZAccess.a (0)
14:37:34.0737 3416 ================ Scan MBR ==================================
14:37:34.0771 3416 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
14:37:35.0163 3416 \Device\Harddisk0\DR0 - ok
14:37:35.0164 3416 ================ Scan VBR ==================================
14:37:35.0170 3416 [ EAD6614C5546C2F25C54A455EA390FE8 ] \Device\Harddisk0\DR0\Partition1
14:37:35.0174 3416 \Device\Harddisk0\DR0\Partition1 - ok
14:37:35.0199 3416 [ B18DCB84F5454FD5C27FB40C07ABC031 ] \Device\Harddisk0\DR0\Partition2
14:37:35.0202 3416 \Device\Harddisk0\DR0\Partition2 - ok
14:37:35.0203 3416 ============================================================
14:37:35.0203 3416 Scan finished
14:37:35.0203 3416 ============================================================
14:37:35.0212 6020 Detected object count: 2
14:37:35.0212 6020 Actual detected object count: 2
14:37:50.0041 6020 ATITool ( UnsignedFile.Multi.Generic ) - skipped by user
14:37:50.0041 6020 ATITool ( UnsignedFile.Multi.Generic ) - User select action: Skip
14:37:50.0042 6020 C:\Windows\system32\services.exe ( Virus.Win64.ZAccess.a ) - skipped by user
14:37:50.0042 6020 C:\Windows\system32\services.exe ( Virus.Win64.ZAccess.a ) - User select action: Skip

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: nejde mi mail ani google

#6 Příspěvek od Márty84 »

No je tam svine :boxed:



:!: Pokud nemate, zazalohujte si dulezita data (fotky, dokumenty, atd.) :!:

:!: Nepouzivejte ComboFix bez predchozi domluvy! Je to poruseni pravidel fora a ztratite tim narok na pomoc!

:arrow: Stahnete ComboFix http://download.bleepingcomputer.com/sUBs/ComboFix.exe a ulozte ho na plochu.
Restartujte pc a najedte do nouzoveho rezimu s praci v siti
Kliknete na ComboFix pravym mysidlem a levym na Spustit jako spravce
Odsouhlaste licencni podminky a nechte program pracovat. Jestli vam nabidne instalaci Konzoly pro zotaveni, souhlaste.
Po dobu skenu nic nespoustejte, nikam neklikejte.
Po dokonceni skenovani (muze dojit i k restartu pc) by se mel vytvorit log, ktery bude umisteny zde C:\ComboFix.txt
Jeho obsah sem zkopirujte

:!: Kdyby po restartu nenabehl windows, restartujte znovu, mackejte klavesu F8 a zvolte - Posledni znama funkcni konfigurace
:!: Kdyz windows nabehne, ale pri spousteni programu bude hlasena chyba, staci restartovat pc a bude to v poradku
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

jaroy
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 15 črc 2012 12:07

Re: nejde mi mail ani google

#7 Příspěvek od jaroy »

ComboFix 12-12-01.01 - jaroy 01.12.2012 15:23:22.1.4 - x64 NETWORK
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.4094.2919 [GMT 1:00]
Spuštěný z: c:\users\jaroy\Desktop\ComboFix.exe
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\boost_interprocess\20121115124954.109999
c:\windows\assembly\GAC_32\Desktop.ini
c:\windows\assembly\GAC_64\Desktop.ini
c:\windows\Installer\{ca105a95-6adb-85ae-a9d8-be0458fcaa01}\@
c:\windows\Installer\{ca105a95-6adb-85ae-a9d8-be0458fcaa01}\L\00000004.@
c:\windows\Installer\{ca105a95-6adb-85ae-a9d8-be0458fcaa01}\L\201d3dde
c:\windows\Installer\{ca105a95-6adb-85ae-a9d8-be0458fcaa01}\L\4cce1f70
c:\windows\Installer\{ca105a95-6adb-85ae-a9d8-be0458fcaa01}\L\55490ac4
c:\windows\Installer\{ca105a95-6adb-85ae-a9d8-be0458fcaa01}\U\00000004.@
c:\windows\Installer\{ca105a95-6adb-85ae-a9d8-be0458fcaa01}\U\00000008.@
c:\windows\Installer\{ca105a95-6adb-85ae-a9d8-be0458fcaa01}\U\000000cb.@
c:\windows\Installer\{ca105a95-6adb-85ae-a9d8-be0458fcaa01}\U\80000000.@
c:\windows\Installer\{ca105a95-6adb-85ae-a9d8-be0458fcaa01}\U\80000032.@
c:\windows\Installer\{ca105a95-6adb-85ae-a9d8-be0458fcaa01}\U\80000064.@
c:\windows\iun6002.exe
.
Nakažená kopie c:\windows\system32\services.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-11-01 do 2012-12-01 )))))))))))))))))))))))))))))))
.
.
2012-12-01 11:07 . 2012-12-01 11:07 -------- d-----w- c:\users\jaroy\AppData\Roaming\AVG2013
2012-12-01 11:06 . 2012-12-01 11:06 -------- d-----w- c:\users\jaroy\AppData\Roaming\TuneUp Software
2012-12-01 11:05 . 2012-12-01 11:05 -------- d-----w- C:\$AVG
2012-12-01 11:05 . 2012-12-01 11:06 -------- d-----w- c:\programdata\AVG2013
2012-12-01 11:04 . 2012-12-01 11:04 -------- d-----w- c:\program files (x86)\AVG
2012-12-01 10:59 . 2012-12-01 11:09 -------- d-----w- c:\users\jaroy\AppData\Local\Avg2013
2012-12-01 10:59 . 2012-12-01 11:08 -------- d-----w- c:\programdata\MFAData
2012-12-01 10:59 . 2012-12-01 10:59 -------- d--h--w- c:\programdata\Common Files
2012-12-01 10:59 . 2012-12-01 10:59 -------- d-----w- c:\users\jaroy\AppData\Local\MFAData
2012-12-01 10:43 . 2012-12-01 10:43 -------- d-----w- c:\users\jaroy\AppData\Roaming\Malwarebytes
2012-12-01 10:43 . 2012-12-01 10:43 -------- d-----w- c:\programdata\Malwarebytes
2012-12-01 10:43 . 2012-12-01 10:43 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-12-01 10:43 . 2012-09-29 18:54 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-11-30 22:52 . 2012-11-30 22:53 -------- d-----w- C:\rsit
2012-11-30 22:52 . 2012-11-30 22:53 -------- d-----w- c:\program files\trend micro
2012-11-27 15:36 . 2012-12-01 10:39 -------- d-----w- c:\program files (x86)\Sapphire TRIXX
2012-11-22 16:31 . 2012-11-22 16:31 -------- d-----w- c:\users\jaroy\AppData\Local\Macromedia
2012-11-22 16:28 . 2012-11-22 16:28 -------- d-----w- c:\users\jaroy\AppData\Local\Mozilla
2012-11-19 01:19 . 2012-11-19 01:19 -------- d-----w- c:\program files (x86)\Guild Wars 2
2012-11-18 19:17 . 2012-11-18 19:17 -------- d-----w- c:\program files\CCleaner
2012-11-14 15:15 . 2012-12-01 14:28 -------- d-----w- c:\programdata\boost_interprocess
2012-11-14 15:13 . 2012-12-01 10:37 -------- d-----w- c:\users\jaroy\AppData\Local\Boss Media
2012-11-14 15:13 . 2012-12-01 10:37 -------- d-----w- c:\programdata\Boss Media
2012-11-13 16:31 . 2012-11-13 16:31 -------- d-----w- c:\windows\SysWow64\spool
2012-11-13 16:31 . 2012-11-13 16:31 -------- d-----w- c:\program files (x86)\Sony
2012-11-13 15:54 . 2012-11-13 16:07 -------- d-----w- c:\windows\system32\appmgmt
2012-11-13 15:36 . 2012-11-13 15:36 -------- d-----w- c:\users\jaroy\AppData\Roaming\Publish Providers
2012-11-13 15:25 . 2012-11-13 15:25 -------- d-sh--w- c:\windows\SysWow64\%APPDATA%
2012-11-13 15:25 . 2012-11-13 17:37 -------- d-----w- c:\users\jaroy\AppData\Roaming\Sony
2012-11-13 15:25 . 2012-11-13 15:25 -------- d-----w- c:\users\jaroy\AppData\Local\Sony
2012-11-13 15:24 . 2012-11-13 15:24 -------- d-----w- c:\programdata\Sony
2012-11-13 15:04 . 2012-11-13 15:07 -------- d-----w- C:\Fraps
2012-11-08 15:37 . 2012-11-08 15:37 -------- d-----w- c:\program files (x86)\Elaborate Bytes
2012-11-05 23:16 . 2001-09-05 02:18 225280 ------w- c:\program files (x86)\Common Files\InstallShield\IScript\iscript.dll
2012-11-05 23:16 . 2000-10-05 13:55 77824 ----a-w- c:\program files (x86)\Common Files\InstallShield\Engine\6\Intel 32\ctor.dll
2012-11-05 23:16 . 2000-10-05 13:50 176128 ----a-w- c:\program files (x86)\Common Files\InstallShield\Engine\6\Intel 32\iuser.dll
2012-11-05 23:16 . 2000-10-05 13:49 32768 ----a-w- c:\program files (x86)\Common Files\InstallShield\Engine\6\Intel 32\objectps.dll
2012-11-05 23:16 . 2001-09-04 19:24 610436 ----a-w- c:\program files (x86)\Common Files\InstallShield\Engine\6\Intel 32\IKernel.exe
2012-11-05 19:50 . 2007-10-22 02:37 17928 ----a-w- c:\windows\SysWow64\X3DAudio1_2.dll
2012-11-05 19:50 . 2007-10-22 02:37 21000 ----a-w- c:\windows\system32\X3DAudio1_2.dll
2012-11-03 14:37 . 2005-05-26 14:34 3767504 ----a-w- c:\windows\system32\d3dx9_26.dll
2012-11-03 14:37 . 2005-05-26 14:34 2297552 ----a-w- c:\windows\SysWow64\d3dx9_26.dll
2012-11-03 14:37 . 2005-03-18 16:19 3823312 ----a-w- c:\windows\system32\d3dx9_25.dll
2012-11-03 14:37 . 2005-02-05 18:45 3544272 ----a-w- c:\windows\system32\d3dx9_24.dll
2012-11-02 20:11 . 2012-11-02 20:11 -------- d-----w- c:\users\jaroy\AppData\Local\PassMark
2012-11-02 20:11 . 2008-07-12 07:18 467984 ----a-w- c:\windows\SysWow64\d3dx10_39.dll
2012-11-02 20:11 . 2008-07-12 07:18 1493528 ----a-w- c:\windows\SysWow64\D3DCompiler_39.dll
2012-11-02 20:11 . 2008-07-12 07:18 3851784 ----a-w- c:\windows\SysWow64\D3DX9_39.dll
2012-11-02 20:11 . 2006-09-28 15:05 2414360 ----a-w- c:\windows\SysWow64\d3dx9_31.dll
2012-11-02 20:11 . 2012-11-02 20:11 -------- d-----w- c:\programdata\PassMark
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-11-22 16:31 . 2012-10-27 21:20 73656 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-11-22 16:31 . 2012-10-27 21:20 697272 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-10-27 16:37 . 2012-10-18 05:46 281520 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2012-10-27 16:37 . 2012-10-18 05:39 281520 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2012-10-27 16:36 . 2012-10-18 05:39 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2012-10-22 12:02 . 2012-10-22 12:02 154464 ----a-w- c:\windows\system32\drivers\avgidsdrivera.sys
2012-10-18 05:51 . 2012-10-18 05:39 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2012-10-15 02:48 . 2012-10-15 02:48 63328 ----a-w- c:\windows\system32\drivers\avgidsha.sys
2012-10-10 19:27 . 2012-10-10 19:27 95208 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2012-10-10 19:27 . 2012-10-10 19:27 821736 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2012-10-10 19:27 . 2012-10-10 19:27 746984 ----a-w- c:\windows\SysWow64\deployJava1.dll
2012-10-05 02:32 . 2012-10-05 02:32 111456 ----a-w- c:\windows\system32\drivers\avgmfx64.sys
2012-10-02 02:30 . 2012-10-02 02:30 185696 ----a-w- c:\windows\system32\drivers\avgldx64.sys
2012-09-21 02:46 . 2012-09-21 02:46 200032 ----a-w- c:\windows\system32\drivers\avgtdia.sys
2012-09-21 02:46 . 2012-09-21 02:46 225120 ----a-w- c:\windows\system32\drivers\avgloga.sys
2012-09-14 02:05 . 2012-09-14 02:05 40800 ----a-w- c:\windows\system32\drivers\avgrkx64.sys
2012-09-04 10:16 . 2012-10-12 09:28 147472 ----a-w- c:\windows\system32\drivers\ESLWireACD.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{7473b6bd-4691-4744-a82b-7854eb3d70b6}"= "c:\program files (x86)\uTorrentControl_v2\prxtbuTor.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{7473b6bd-4691-4744-a82b-7854eb3d70b6}]
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{7473b6bd-4691-4744-a82b-7854eb3d70b6}]
2011-05-09 09:49 176936 ----a-w- c:\program files (x86)\uTorrentControl_v2\prxtbuTor.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{7473b6bd-4691-4744-a82b-7854eb3d70b6}"= "c:\program files (x86)\uTorrentControl_v2\prxtbuTor.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{7473b6bd-4691-4744-a82b-7854eb3d70b6}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Steam"="c:\program files (x86)\Steam\steam.exe" [2012-10-12 1353080]
"ESL Wire"="c:\program files\EslWire\wire.exe" [2012-10-10 4104192]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-08-06 642216]
"NUSB3MON"="c:\program files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2010-11-17 113288]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-07-03 252848]
"VirtualCloneDrive"="c:\program files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2011-03-07 89456]
"AVG_UI"="c:\program files (x86)\AVG\AVG2013\avgui.exe" [2012-11-06 3143800]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux2"=wdmaud.drv
.
R1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdrivera.sys [2012-10-22 154464]
R1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys [2012-10-02 185696]
R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2012-07-28 239616]
R2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-08-06 361984]
R2 AODDriver4.1;AODDriver4.1;c:\program files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-03-05 53888]
R2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\AVG2013\avgidsagent.exe [2012-11-06 5814392]
R2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\AVG2013\avgwdsvc.exe [2012-10-22 196664]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 ESLWireAC;ESLWireAC;c:\windows\system32\drivers\ESLWireACD.sys [2012-09-04 147472]
R2 EslWireHelper;ESL Wire Helper Service;c:\program files\EslWire\service\WireHelperSvc.exe [2012-09-04 678416]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [2012-05-14 96896]
R3 DIRECTIO;DIRECTIO;c:\program files (x86)\PerformanceTest\DirectIo.sys [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S0 AVGIDSHA;AVGIDSHA;c:\windows\system32\DRIVERS\avgidsha.sys [2012-10-15 63328]
S0 Avgloga;AVG Logging Driver;c:\windows\system32\DRIVERS\avgloga.sys [2012-09-21 225120]
S0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys [2012-10-05 111456]
S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys [2012-09-14 40800]
S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys [2012-09-21 200032]
S3 amdiox64;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2010-11-19 80384]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2010-11-19 181248]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2011-09-29 646248]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [2009-12-22 38456]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
Obsah adresáře 'Naplánované úlohy'
.
2012-12-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-11-30 22:37]
.
2012-12-01 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-11-30 22:37]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-05-18 12489360]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT3220468
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = <local>
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
TCP: DhcpNameServer = 192.168.0.1
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKCU-Run-Akamai NetSession Interface - c:\users\jaroy\AppData\Local\Akamai\netsession_win.exe
WebBrowser-{7473B6BD-4691-4744-A82B-7854EB3D70B6} - (no file)
AddRemove-DesertCombat - c:\windows\iun6002.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_4_402_287_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_4_402_287_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2012-12-01 15:29:23
ComboFix-quarantined-files.txt 2012-12-01 14:29
.
Před spuštěním: Volných bajtů: 780 155 715 584
Po spuštění: Volných bajtů: 779 710 578 688
.
- - End Of File - - C7F70CC389784EE9A8696431BAA7912B

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: nejde mi mail ani google

#8 Příspěvek od Márty84 »

:arrow: Zopakujte TDSSKiller
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

jaroy
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 15 črc 2012 12:07

Re: nejde mi mail ani google

#9 Příspěvek od jaroy »

16:06:11.0781 6136 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
16:06:12.0111 6136 ============================================================
16:06:12.0111 6136 Current date / time: 2012/12/01 16:06:12.0111
16:06:12.0111 6136 SystemInfo:
16:06:12.0111 6136
16:06:12.0111 6136 OS Version: 6.1.7601 ServicePack: 1.0
16:06:12.0111 6136 Product type: Workstation
16:06:12.0111 6136 ComputerName: JAROY-PC
16:06:12.0111 6136 UserName: jaroy
16:06:12.0111 6136 Windows directory: C:\Windows
16:06:12.0111 6136 System windows directory: C:\Windows
16:06:12.0111 6136 Running under WOW64
16:06:12.0111 6136 Processor architecture: Intel x64
16:06:12.0111 6136 Number of processors: 4
16:06:12.0111 6136 Page size: 0x1000
16:06:12.0111 6136 Boot type: Normal boot
16:06:12.0111 6136 ============================================================
16:06:12.0308 6136 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1F8B1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xF0, Type 'K0', Flags 0x00000040
16:06:12.0311 6136 ============================================================
16:06:12.0311 6136 \Device\Harddisk0\DR0:
16:06:12.0312 6136 MBR partitions:
16:06:12.0312 6136 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
16:06:12.0312 6136 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x746D3800
16:06:12.0312 6136 ============================================================
16:06:12.0324 6136 C: <-> \Device\Harddisk0\DR0\Partition2
16:06:12.0324 6136 ============================================================
16:06:12.0324 6136 Initialize success
16:06:12.0324 6136 ============================================================
16:06:15.0948 2572 ============================================================
16:06:15.0948 2572 Scan started
16:06:15.0948 2572 Mode: Manual; TDLFS;
16:06:15.0948 2572 ============================================================
16:06:20.0900 2572 ================ Scan system memory ========================
16:06:20.0900 2572 System memory - ok
16:06:20.0900 2572 ================ Scan services =============================
16:06:21.0251 2572 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
16:06:21.0253 2572 1394ohci - ok
16:06:21.0291 2572 [ F146E2BA475893DD77B2370DC1211FC6 ] 51493810 C:\Windows\system32\drivers\32290937.sys
16:06:21.0302 2572 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
16:06:21.0304 2572 ACPI - ok
16:06:21.0325 2572 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
16:06:21.0325 2572 AcpiPmi - ok
16:06:21.0332 2572 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
16:06:21.0334 2572 adp94xx - ok
16:06:21.0345 2572 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
16:06:21.0347 2572 adpahci - ok
16:06:21.0362 2572 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
16:06:21.0364 2572 adpu320 - ok
16:06:21.0388 2572 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
16:06:21.0389 2572 AeLookupSvc - ok
16:06:21.0402 2572 [ D31DC7A16DEA4A9BAF179F3D6FBDB38C ] AFD C:\Windows\system32\drivers\afd.sys
16:06:21.0405 2572 AFD - ok
16:06:21.0422 2572 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
16:06:21.0422 2572 agp440 - ok
16:06:21.0440 2572 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
16:06:21.0441 2572 ALG - ok
16:06:21.0453 2572 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
16:06:21.0454 2572 aliide - ok
16:06:21.0507 2572 [ B3B263B419FC9E7B1D41E61FDAE45BD9 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
16:06:21.0508 2572 AMD External Events Utility - ok
16:06:21.0587 2572 AMD FUEL Service - ok
16:06:21.0601 2572 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
16:06:21.0603 2572 amdide - ok
16:06:21.0626 2572 [ 6A2EEB0C4133B20773BB3DD0B7B377B4 ] amdiox64 C:\Windows\system32\DRIVERS\amdiox64.sys
16:06:21.0627 2572 amdiox64 - ok
16:06:21.0632 2572 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
16:06:21.0633 2572 AmdK8 - ok
16:06:21.0773 2572 [ 9A6E9363F7A5E5A06629D9DDC76EE6B5 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
16:06:21.0817 2572 amdkmdag - ok
16:06:21.0863 2572 [ 957A4C13E1981B1701E600EF1E823C68 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
16:06:21.0865 2572 amdkmdap - ok
16:06:21.0891 2572 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
16:06:21.0892 2572 AmdPPM - ok
16:06:21.0909 2572 [ 6EC6D772EAE38DC17C14AED9B178D24B ] amdsata C:\Windows\system32\drivers\amdsata.sys
16:06:21.0910 2572 amdsata - ok
16:06:21.0927 2572 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
16:06:21.0929 2572 amdsbs - ok
16:06:21.0945 2572 [ 1142A21DB581A84EA5597B03A26EBAA0 ] amdxata C:\Windows\system32\drivers\amdxata.sys
16:06:21.0946 2572 amdxata - ok
16:06:21.0966 2572 [ 5B25D1A753CC3A3EDB909BB759AC1098 ] AODDriver4.1 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys
16:06:21.0966 2572 AODDriver4.1 - ok
16:06:21.0971 2572 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
16:06:21.0972 2572 AppID - ok
16:06:21.0975 2572 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
16:06:21.0975 2572 AppIDSvc - ok
16:06:21.0991 2572 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll
16:06:21.0992 2572 Appinfo - ok
16:06:22.0019 2572 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
16:06:22.0020 2572 AppMgmt - ok
16:06:22.0301 2572 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
16:06:22.0302 2572 arc - ok
16:06:22.0318 2572 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
16:06:22.0319 2572 arcsas - ok
16:06:22.0427 2572 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
16:06:22.0430 2572 aspnet_state - ok
16:06:22.0454 2572 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
16:06:22.0454 2572 AsyncMac - ok
16:06:22.0462 2572 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
16:06:22.0462 2572 atapi - ok
16:06:22.0485 2572 [ B0790FF0E25B7A2674296052F2162C1A ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
16:06:22.0486 2572 AtiHDAudioService - ok
16:06:22.0509 2572 [ 7C5D273E29DCC5505469B299C6F29163 ] AtiPcie C:\Windows\system32\DRIVERS\AtiPcie.sys
16:06:22.0510 2572 AtiPcie - ok
16:06:22.0539 2572 [ B07E6681D303A612680223C729B021E2 ] ATITool C:\Windows\system32\DRIVERS\ATITool64.sys
16:06:22.0540 2572 ATITool - ok
16:06:22.0555 2572 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
16:06:22.0558 2572 AudioEndpointBuilder - ok
16:06:22.0566 2572 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
16:06:22.0570 2572 AudioSrv - ok
16:06:22.0757 2572 [ 56C73C5BC1656656CAC38A23B4310466 ] AVGIDSAgent C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe
16:06:22.0782 2572 AVGIDSAgent - ok
16:06:22.0815 2572 [ 388056EBD5FE6718FE669078DBE37897 ] AVGIDSDriver C:\Windows\system32\DRIVERS\avgidsdrivera.sys
16:06:22.0816 2572 AVGIDSDriver - ok
16:06:22.0848 2572 [ 550E981747D6A6C55078C77346FFC2C6 ] AVGIDSHA C:\Windows\system32\DRIVERS\avgidsha.sys
16:06:22.0849 2572 AVGIDSHA - ok
16:06:22.0881 2572 [ 5989592A91A17587799792A81E1541D4 ] Avgldx64 C:\Windows\system32\DRIVERS\avgldx64.sys
16:06:22.0882 2572 Avgldx64 - ok
16:06:22.0916 2572 [ 3FC43AA02545FCDDC22817829114DEC8 ] Avgloga C:\Windows\system32\DRIVERS\avgloga.sys
16:06:22.0917 2572 Avgloga - ok
16:06:22.0943 2572 [ 767B4A485FB22AA0FC0BF5EEF00572B9 ] Avgmfx64 C:\Windows\system32\DRIVERS\avgmfx64.sys
16:06:22.0944 2572 Avgmfx64 - ok
16:06:22.0982 2572 [ FE4F444DBE4BBBDFD8FECF49398DEFC7 ] Avgrkx64 C:\Windows\system32\DRIVERS\avgrkx64.sys
16:06:22.0983 2572 Avgrkx64 - ok
16:06:23.0005 2572 [ 6E634525613D48A1D1657FB21F21F3B2 ] Avgtdia C:\Windows\system32\DRIVERS\avgtdia.sys
16:06:23.0007 2572 Avgtdia - ok
16:06:23.0026 2572 [ 6B72E1E329C4E98C6B6FDD2D265E3BA3 ] avgwd C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe
16:06:23.0027 2572 avgwd - ok
16:06:23.0057 2572 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
16:06:23.0060 2572 AxInstSV - ok
16:06:23.0092 2572 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
16:06:23.0096 2572 b06bdrv - ok
16:06:23.0109 2572 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
16:06:23.0111 2572 b57nd60a - ok
16:06:23.0130 2572 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
16:06:23.0131 2572 BDESVC - ok
16:06:23.0139 2572 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
16:06:23.0140 2572 Beep - ok
16:06:23.0158 2572 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
16:06:23.0161 2572 BFE - ok
16:06:23.0192 2572 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\system32\qmgr.dll
16:06:23.0197 2572 BITS - ok
16:06:23.0209 2572 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
16:06:23.0210 2572 blbdrive - ok
16:06:23.0227 2572 [ 91CE0D3DC57DD377E690A2D324022B08 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
16:06:23.0228 2572 bowser - ok
16:06:23.0231 2572 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
16:06:23.0232 2572 BrFiltLo - ok
16:06:23.0235 2572 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
16:06:23.0235 2572 BrFiltUp - ok
16:06:23.0239 2572 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
16:06:23.0239 2572 BridgeMP - ok
16:06:23.0243 2572 [ 8EF0D5C41EC907751B8429162B1239ED ] Browser C:\Windows\System32\browser.dll
16:06:23.0244 2572 Browser - ok
16:06:23.0249 2572 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
16:06:23.0250 2572 Brserid - ok
16:06:23.0253 2572 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
16:06:23.0254 2572 BrSerWdm - ok
16:06:23.0256 2572 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
16:06:23.0257 2572 BrUsbMdm - ok
16:06:23.0259 2572 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
16:06:23.0260 2572 BrUsbSer - ok
16:06:23.0263 2572 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
16:06:23.0264 2572 BTHMODEM - ok
16:06:23.0277 2572 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
16:06:23.0279 2572 bthserv - ok
16:06:23.0281 2572 catchme - ok
16:06:23.0285 2572 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
16:06:23.0286 2572 cdfs - ok
16:06:23.0292 2572 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
16:06:23.0293 2572 cdrom - ok
16:06:23.0312 2572 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
16:06:23.0313 2572 CertPropSvc - ok
16:06:23.0316 2572 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
16:06:23.0317 2572 circlass - ok
16:06:23.0338 2572 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
16:06:23.0340 2572 CLFS - ok
16:06:23.0476 2572 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:06:23.0477 2572 clr_optimization_v2.0.50727_32 - ok
16:06:23.0684 2572 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
16:06:23.0685 2572 clr_optimization_v2.0.50727_64 - ok
16:06:23.0755 2572 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:06:23.0756 2572 clr_optimization_v4.0.30319_32 - ok
16:06:23.0775 2572 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
16:06:23.0778 2572 clr_optimization_v4.0.30319_64 - ok
16:06:23.0788 2572 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
16:06:23.0790 2572 CmBatt - ok
16:06:23.0803 2572 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
16:06:23.0804 2572 cmdide - ok
16:06:23.0865 2572 [ D5FEA92400F12412B3922087C09DA6A5 ] CNG C:\Windows\system32\Drivers\cng.sys
16:06:23.0869 2572 CNG - ok
16:06:23.0917 2572 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
16:06:23.0918 2572 Compbatt - ok
16:06:23.0930 2572 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
16:06:23.0930 2572 CompositeBus - ok
16:06:23.0936 2572 COMSysApp - ok
16:06:23.0946 2572 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
16:06:23.0947 2572 crcdisk - ok
16:06:23.0962 2572 [ 15597883FBE9B056F276ADA3AD87D9AF ] CryptSvc C:\Windows\system32\cryptsvc.dll
16:06:23.0963 2572 CryptSvc - ok
16:06:23.0983 2572 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys
16:06:23.0985 2572 CSC - ok
16:06:24.0003 2572 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll
16:06:24.0006 2572 CscService - ok
16:06:24.0020 2572 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
16:06:24.0023 2572 DcomLaunch - ok
16:06:24.0042 2572 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
16:06:24.0044 2572 defragsvc - ok
16:06:24.0053 2572 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
16:06:24.0054 2572 DfsC - ok
16:06:24.0068 2572 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
16:06:24.0070 2572 Dhcp - ok
16:06:24.0101 2572 DIRECTIO - ok
16:06:24.0115 2572 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
16:06:24.0115 2572 discache - ok
16:06:24.0127 2572 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
16:06:24.0128 2572 Disk - ok
16:06:24.0145 2572 [ 5DB085A8A6600BE6401F2B24EECB5415 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
16:06:24.0146 2572 dmvsc - ok
16:06:24.0163 2572 [ CD55F5355D8F55D44C9F4ED875705BD6 ] Dnscache C:\Windows\System32\dnsrslvr.dll
16:06:24.0165 2572 Dnscache - ok
16:06:24.0171 2572 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
16:06:24.0173 2572 dot3svc - ok
16:06:24.0177 2572 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
16:06:24.0178 2572 DPS - ok
16:06:24.0203 2572 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
16:06:24.0204 2572 drmkaud - ok
16:06:24.0219 2572 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
16:06:24.0224 2572 DXGKrnl - ok
16:06:24.0251 2572 EagleX64 - ok
16:06:24.0255 2572 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
16:06:24.0256 2572 EapHost - ok
16:06:24.0304 2572 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
16:06:24.0317 2572 ebdrv - ok
16:06:24.0346 2572 [ 0793F40B9B8A1BDD266296409DBD91EA ] EFS C:\Windows\System32\lsass.exe
16:06:24.0347 2572 EFS - ok
16:06:24.0398 2572 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
16:06:24.0402 2572 ehRecvr - ok
16:06:24.0417 2572 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
16:06:24.0418 2572 ehSched - ok
16:06:24.0455 2572 [ A05FC7ECA0966EBB70E4D17B855A853B ] ElbyCDIO C:\Windows\system32\Drivers\ElbyCDIO.sys
16:06:24.0456 2572 ElbyCDIO - ok
16:06:24.0476 2572 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
16:06:24.0479 2572 elxstor - ok
16:06:24.0494 2572 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
16:06:24.0495 2572 ErrDev - ok
16:06:24.0527 2572 [ ABC24F129C616E5DEE5CE58683606C84 ] ESLWireAC C:\Windows\system32\drivers\ESLWireACD.sys
16:06:24.0528 2572 ESLWireAC - ok
16:06:24.0582 2572 [ 4FC6545A22D348E1B6DA15A27748B7FE ] EslWireHelper C:\Program Files\EslWire\service\WireHelperSvc.exe
16:06:24.0585 2572 EslWireHelper - ok
16:06:24.0601 2572 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
16:06:24.0603 2572 EventSystem - ok
16:06:24.0610 2572 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
16:06:24.0611 2572 exfat - ok
16:06:24.0645 2572 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
16:06:24.0646 2572 fastfat - ok
16:06:24.0674 2572 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
16:06:24.0678 2572 Fax - ok
16:06:24.0682 2572 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
16:06:24.0683 2572 fdc - ok
16:06:24.0691 2572 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
16:06:24.0692 2572 fdPHost - ok
16:06:24.0704 2572 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
16:06:24.0705 2572 FDResPub - ok
16:06:24.0715 2572 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
16:06:24.0715 2572 FileInfo - ok
16:06:24.0726 2572 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
16:06:24.0727 2572 Filetrace - ok
16:06:24.0729 2572 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
16:06:24.0730 2572 flpydisk - ok
16:06:24.0735 2572 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
16:06:24.0736 2572 FltMgr - ok
16:06:24.0756 2572 [ B4447F606BB19FD8AD0BAFB59B90F5D9 ] FontCache C:\Windows\system32\FntCache.dll
16:06:24.0761 2572 FontCache - ok
16:06:24.0796 2572 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
16:06:24.0797 2572 FontCache3.0.0.0 - ok
16:06:24.0804 2572 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
16:06:24.0804 2572 FsDepends - ok
16:06:24.0812 2572 [ E95EF8547DE20CF0603557C0CF7A9462 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
16:06:24.0812 2572 Fs_Rec - ok
16:06:24.0838 2572 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
16:06:24.0839 2572 fvevol - ok
16:06:24.0852 2572 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
16:06:24.0853 2572 gagp30kx - ok
16:06:24.0873 2572 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
16:06:24.0877 2572 gpsvc - ok
16:06:24.0949 2572 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:06:24.0950 2572 gupdate - ok
16:06:24.0953 2572 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:06:24.0954 2572 gupdatem - ok
16:06:24.0957 2572 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
16:06:24.0957 2572 hcw85cir - ok
16:06:24.0980 2572 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
16:06:24.0982 2572 HdAudAddService - ok
16:06:24.0994 2572 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
16:06:24.0995 2572 HDAudBus - ok
16:06:24.0998 2572 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
16:06:24.0999 2572 HidBatt - ok
16:06:25.0002 2572 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
16:06:25.0003 2572 HidBth - ok
16:06:25.0015 2572 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
16:06:25.0016 2572 HidIr - ok
16:06:25.0027 2572 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
16:06:25.0028 2572 hidserv - ok
16:06:25.0040 2572 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
16:06:25.0041 2572 HidUsb - ok
16:06:25.0050 2572 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
16:06:25.0051 2572 hkmsvc - ok
16:06:25.0062 2572 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
16:06:25.0063 2572 HomeGroupListener - ok
16:06:25.0083 2572 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
16:06:25.0084 2572 HomeGroupProvider - ok
16:06:25.0100 2572 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
16:06:25.0100 2572 HpSAMD - ok
16:06:25.0128 2572 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
16:06:25.0132 2572 HTTP - ok
16:06:25.0317 2572 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
16:06:25.0317 2572 hwpolicy - ok
16:06:25.0362 2572 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
16:06:25.0363 2572 i8042prt - ok
16:06:25.0383 2572 [ 3DF4395A7CF8B7A72A5F4606366B8C2D ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
16:06:25.0385 2572 iaStorV - ok
16:06:25.0423 2572 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
16:06:25.0426 2572 idsvc - ok
16:06:25.0442 2572 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
16:06:25.0443 2572 iirsp - ok
16:06:25.0469 2572 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
16:06:25.0474 2572 IKEEXT - ok
16:06:25.0553 2572 [ A4A57A57020849117EF7B1D905F2A16A ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
16:06:25.0572 2572 IntcAzAudAddService - ok
16:06:25.0577 2572 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
16:06:25.0578 2572 intelide - ok
16:06:25.0598 2572 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\drivers\intelppm.sys
16:06:25.0599 2572 intelppm - ok
16:06:25.0604 2572 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
16:06:25.0605 2572 IPBusEnum - ok
16:06:25.0611 2572 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
16:06:25.0612 2572 IpFilterDriver - ok
16:06:25.0617 2572 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
16:06:25.0617 2572 IPMIDRV - ok
16:06:25.0621 2572 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
16:06:25.0622 2572 IPNAT - ok
16:06:25.0640 2572 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
16:06:25.0641 2572 IRENUM - ok
16:06:25.0649 2572 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
16:06:25.0649 2572 isapnp - ok
16:06:25.0769 2572 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
16:06:25.0771 2572 iScsiPrt - ok
16:06:25.0785 2572 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
16:06:25.0786 2572 kbdclass - ok
16:06:25.0791 2572 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
16:06:25.0792 2572 kbdhid - ok
16:06:25.0799 2572 [ 0793F40B9B8A1BDD266296409DBD91EA ] KeyIso C:\Windows\system32\lsass.exe
16:06:25.0800 2572 KeyIso - ok
16:06:25.0817 2572 [ CCD53B5BD33CE0C889E830D839C8B66E ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
16:06:25.0818 2572 KSecDD - ok
16:06:25.0879 2572 [ 9FF918A261752C12639E8AD4208D2C2F ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
16:06:25.0880 2572 KSecPkg - ok
16:06:25.0917 2572 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
16:06:25.0917 2572 ksthunk - ok
16:06:25.0936 2572 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
16:06:25.0938 2572 KtmRm - ok
16:06:25.0970 2572 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\System32\srvsvc.dll
16:06:25.0973 2572 LanmanServer - ok
16:06:25.0979 2572 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
16:06:25.0982 2572 LanmanWorkstation - ok
16:06:26.0000 2572 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
16:06:26.0000 2572 lltdio - ok
16:06:26.0018 2572 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
16:06:26.0020 2572 lltdsvc - ok
16:06:26.0036 2572 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
16:06:26.0037 2572 lmhosts - ok
16:06:26.0062 2572 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
16:06:26.0063 2572 LSI_FC - ok
16:06:26.0075 2572 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
16:06:26.0076 2572 LSI_SAS - ok
16:06:26.0088 2572 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
16:06:26.0088 2572 LSI_SAS2 - ok
16:06:26.0103 2572 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
16:06:26.0104 2572 LSI_SCSI - ok
16:06:26.0319 2572 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
16:06:26.0320 2572 luafv - ok
16:06:26.0334 2572 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
16:06:26.0335 2572 Mcx2Svc - ok
16:06:26.0349 2572 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
16:06:26.0350 2572 megasas - ok
16:06:26.0366 2572 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
16:06:26.0368 2572 MegaSR - ok
16:06:26.0379 2572 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
16:06:26.0380 2572 MMCSS - ok
16:06:26.0394 2572 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
16:06:26.0395 2572 Modem - ok
16:06:26.0405 2572 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
16:06:26.0406 2572 monitor - ok
16:06:26.0427 2572 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
16:06:26.0428 2572 mouclass - ok
16:06:26.0440 2572 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
16:06:26.0441 2572 mouhid - ok
16:06:26.0453 2572 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
16:06:26.0454 2572 mountmgr - ok
16:06:26.0464 2572 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
16:06:26.0465 2572 mpio - ok
16:06:26.0475 2572 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
16:06:26.0475 2572 mpsdrv - ok
16:06:26.0487 2572 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
16:06:26.0488 2572 MRxDAV - ok
16:06:26.0503 2572 [ FAF015B07E3A2874A790A39B7D2C579F ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
16:06:26.0504 2572 mrxsmb - ok
16:06:26.0510 2572 [ 08E2345DF129082BCDFFDC1440F9C00D ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
16:06:26.0511 2572 mrxsmb10 - ok
16:06:26.0518 2572 [ 108D87409C5812EF47D81E22843E8C9D ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
16:06:26.0519 2572 mrxsmb20 - ok
16:06:26.0528 2572 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
16:06:26.0528 2572 msahci - ok
16:06:26.0544 2572 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
16:06:26.0545 2572 msdsm - ok
16:06:26.0557 2572 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
16:06:26.0558 2572 MSDTC - ok
16:06:26.0577 2572 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
16:06:26.0578 2572 Msfs - ok
16:06:26.0589 2572 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
16:06:26.0590 2572 mshidkmdf - ok
16:06:26.0600 2572 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
16:06:26.0600 2572 msisadrv - ok
16:06:26.0617 2572 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
16:06:26.0619 2572 MSiSCSI - ok
16:06:26.0622 2572 msiserver - ok
16:06:26.0644 2572 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
16:06:26.0645 2572 MSKSSRV - ok
16:06:26.0662 2572 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
16:06:26.0662 2572 MSPCLOCK - ok
16:06:26.0676 2572 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
16:06:26.0677 2572 MSPQM - ok
16:06:26.0691 2572 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
16:06:26.0692 2572 MsRPC - ok
16:06:26.0707 2572 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
16:06:26.0708 2572 mssmbios - ok
16:06:26.0710 2572 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
16:06:26.0711 2572 MSTEE - ok
16:06:26.0713 2572 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
16:06:26.0714 2572 MTConfig - ok
16:06:26.0727 2572 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
16:06:26.0727 2572 Mup - ok
16:06:26.0757 2572 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
16:06:26.0759 2572 napagent - ok
16:06:26.0779 2572 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
16:06:26.0780 2572 NativeWifiP - ok
16:06:26.0794 2572 [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS C:\Windows\system32\drivers\ndis.sys
16:06:26.0799 2572 NDIS - ok
16:06:26.0810 2572 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
16:06:26.0811 2572 NdisCap - ok
16:06:26.0824 2572 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
16:06:26.0824 2572 NdisTapi - ok
16:06:26.0828 2572 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
16:06:26.0829 2572 Ndisuio - ok
16:06:26.0841 2572 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
16:06:26.0842 2572 NdisWan - ok
16:06:26.0853 2572 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
16:06:26.0854 2572 NDProxy - ok
16:06:26.0870 2572 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
16:06:26.0870 2572 NetBIOS - ok
16:06:26.0881 2572 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
16:06:26.0882 2572 NetBT - ok
16:06:26.0891 2572 [ 0793F40B9B8A1BDD266296409DBD91EA ] Netlogon C:\Windows\system32\lsass.exe
16:06:26.0892 2572 Netlogon - ok
16:06:26.0922 2572 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
16:06:26.0924 2572 Netman - ok
16:06:26.0957 2572 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:06:26.0958 2572 NetMsmqActivator - ok
16:06:26.0967 2572 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:06:26.0968 2572 NetPipeActivator - ok
16:06:26.0975 2572 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
16:06:26.0978 2572 netprofm - ok
16:06:26.0982 2572 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:06:26.0983 2572 NetTcpActivator - ok
16:06:26.0987 2572 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:06:26.0987 2572 NetTcpPortSharing - ok
16:06:27.0004 2572 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
16:06:27.0005 2572 nfrd960 - ok
16:06:27.0018 2572 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\Windows\System32\nlasvc.dll
16:06:27.0020 2572 NlaSvc - ok
16:06:27.0036 2572 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
16:06:27.0036 2572 Npfs - ok
16:06:27.0044 2572 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
16:06:27.0045 2572 nsi - ok
16:06:27.0057 2572 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
16:06:27.0057 2572 nsiproxy - ok
16:06:27.0094 2572 [ 05D78AA5CB5F3F5C31160BDB955D0B7C ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
16:06:27.0103 2572 Ntfs - ok
16:06:27.0114 2572 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
16:06:27.0115 2572 Null - ok
16:06:27.0148 2572 [ A7127E86F9FFE2A53E271B56B2C4CEDF ] nusb3hub C:\Windows\system32\DRIVERS\nusb3hub.sys
16:06:27.0149 2572 nusb3hub - ok
16:06:27.0168 2572 [ 49BBEC6F48D5F9284B03ABF3A959B19B ] nusb3xhc C:\Windows\system32\DRIVERS\nusb3xhc.sys
16:06:27.0175 2572 nusb3xhc - ok
16:06:27.0188 2572 [ 5D9FD91F3D38DC9DA01E3CB5FA89CD48 ] nvraid C:\Windows\system32\drivers\nvraid.sys
16:06:27.0194 2572 nvraid - ok
16:06:27.0214 2572 [ F7CD50FE7139F07E77DA8AC8033D1832 ] nvstor C:\Windows\system32\drivers\nvstor.sys
16:06:27.0216 2572 nvstor - ok
16:06:27.0232 2572 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
16:06:27.0233 2572 nv_agp - ok
16:06:27.0237 2572 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
16:06:27.0238 2572 ohci1394 - ok
16:06:27.0259 2572 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
16:06:27.0261 2572 p2pimsvc - ok
16:06:27.0273 2572 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
16:06:27.0275 2572 p2psvc - ok
16:06:27.0307 2572 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
16:06:27.0308 2572 Parport - ok
16:06:27.0316 2572 [ 871EADAC56B0A4C6512BBE32753CCF79 ] partmgr C:\Windows\system32\drivers\partmgr.sys
16:06:27.0317 2572 partmgr - ok
16:06:27.0323 2572 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
16:06:27.0325 2572 PcaSvc - ok
16:06:27.0335 2572 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
16:06:27.0336 2572 pci - ok
16:06:27.0342 2572 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
16:06:27.0343 2572 pciide - ok
16:06:27.0356 2572 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
16:06:27.0357 2572 pcmcia - ok
16:06:27.0368 2572 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
16:06:27.0368 2572 pcw - ok
16:06:27.0376 2572 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
16:06:27.0379 2572 PEAUTH - ok
16:06:27.0405 2572 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
16:06:27.0411 2572 PeerDistSvc - ok
16:06:27.0463 2572 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
16:06:27.0465 2572 PerfHost - ok
16:06:27.0492 2572 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
16:06:27.0499 2572 pla - ok
16:06:27.0523 2572 [ B806E50427511BCF4AD8E8239C3E25FA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
16:06:27.0526 2572 PlugPlay - ok
16:06:27.0535 2572 PnkBstrA - ok
16:06:27.0543 2572 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
16:06:27.0544 2572 PNRPAutoReg - ok
16:06:27.0549 2572 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
16:06:27.0551 2572 PNRPsvc - ok
16:06:27.0566 2572 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
16:06:27.0569 2572 PolicyAgent - ok
16:06:27.0584 2572 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
16:06:27.0586 2572 Power - ok
16:06:27.0616 2572 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
16:06:27.0617 2572 PptpMiniport - ok
16:06:27.0625 2572 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
16:06:27.0626 2572 Processor - ok
16:06:27.0641 2572 [ 5C78838B4D166D1A27DB3A8A820C799A ] ProfSvc C:\Windows\system32\profsvc.dll
16:06:27.0643 2572 ProfSvc - ok
16:06:27.0659 2572 [ 0793F40B9B8A1BDD266296409DBD91EA ] ProtectedStorage C:\Windows\system32\lsass.exe
16:06:27.0660 2572 ProtectedStorage - ok
16:06:27.0677 2572 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
16:06:27.0678 2572 Psched - ok
16:06:27.0713 2572 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
16:06:27.0719 2572 ql2300 - ok
16:06:27.0735 2572 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
16:06:27.0736 2572 ql40xx - ok
16:06:27.0746 2572 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
16:06:27.0748 2572 QWAVE - ok
16:06:27.0758 2572 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
16:06:27.0759 2572 QWAVEdrv - ok
16:06:27.0772 2572 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
16:06:27.0772 2572 RasAcd - ok
16:06:27.0800 2572 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
16:06:27.0800 2572 RasAgileVpn - ok
16:06:27.0807 2572 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
16:06:27.0808 2572 RasAuto - ok
16:06:27.0816 2572 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
16:06:27.0817 2572 Rasl2tp - ok
16:06:27.0854 2572 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
16:06:27.0856 2572 RasMan - ok
16:06:27.0872 2572 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
16:06:27.0873 2572 RasPppoe - ok
16:06:27.0884 2572 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
16:06:27.0884 2572 RasSstp - ok
16:06:27.0895 2572 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
16:06:27.0896 2572 rdbss - ok
16:06:27.0914 2572 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
16:06:27.0915 2572 rdpbus - ok
16:06:27.0917 2572 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
16:06:27.0918 2572 RDPCDD - ok
16:06:27.0935 2572 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
16:06:27.0936 2572 RDPDR - ok
16:06:27.0946 2572 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
16:06:27.0947 2572 RDPENCDD - ok
16:06:27.0954 2572 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
16:06:27.0954 2572 RDPREFMP - ok
16:06:27.0965 2572 [ 15B66C206B5CB095BAB980553F38ED23 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
16:06:27.0966 2572 RDPWD - ok
16:06:27.0985 2572 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
16:06:27.0987 2572 rdyboost - ok
16:06:28.0012 2572 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
16:06:28.0013 2572 RemoteAccess - ok
16:06:28.0017 2572 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
16:06:28.0018 2572 RemoteRegistry - ok
16:06:28.0035 2572 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
16:06:28.0036 2572 RpcEptMapper - ok
16:06:28.0048 2572 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
16:06:28.0049 2572 RpcLocator - ok
16:06:28.0219 2572 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
16:06:28.0223 2572 RpcSs - ok
16:06:28.0237 2572 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
16:06:28.0238 2572 rspndr - ok
16:06:28.0288 2572 [ C20F64FCD5E2B40310A1774495877ACD ] RTHDMIAzAudService C:\Windows\system32\drivers\RtHDMIVX.sys
16:06:28.0289 2572 RTHDMIAzAudService - ok
16:06:28.0333 2572 [ 7F4F11527AF5A7E4526CB6A146B3E40C ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
16:06:28.0336 2572 RTL8167 - ok
16:06:28.0351 2572 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
16:06:28.0352 2572 s3cap - ok
16:06:28.0355 2572 [ 0793F40B9B8A1BDD266296409DBD91EA ] SamSs C:\Windows\system32\lsass.exe
16:06:28.0356 2572 SamSs - ok
16:06:28.0374 2572 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
16:06:28.0375 2572 sbp2port - ok
16:06:28.0402 2572 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
16:06:28.0409 2572 SCardSvr - ok
16:06:28.0429 2572 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
16:06:28.0431 2572 scfilter - ok
16:06:28.0460 2572 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
16:06:28.0465 2572 Schedule - ok
16:06:28.0473 2572 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
16:06:28.0474 2572 SCPolicySvc - ok
16:06:28.0485 2572 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
16:06:28.0487 2572 SDRSVC - ok
16:06:28.0503 2572 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
16:06:28.0504 2572 secdrv - ok
16:06:28.0516 2572 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
16:06:28.0517 2572 seclogon - ok
16:06:28.0526 2572 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll
16:06:28.0527 2572 SENS - ok
16:06:28.0536 2572 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
16:06:28.0537 2572 SensrSvc - ok
16:06:28.0569 2572 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
16:06:28.0570 2572 Serenum - ok
16:06:28.0586 2572 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
16:06:28.0586 2572 Serial - ok
16:06:28.0601 2572 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
16:06:28.0602 2572 sermouse - ok
16:06:28.0612 2572 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
16:06:28.0613 2572 SessionEnv - ok
16:06:28.0616 2572 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
16:06:28.0617 2572 sffdisk - ok
16:06:28.0620 2572 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
16:06:28.0620 2572 sffp_mmc - ok
16:06:28.0623 2572 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
16:06:28.0623 2572 sffp_sd - ok
16:06:28.0626 2572 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
16:06:28.0626 2572 sfloppy - ok
16:06:28.0642 2572 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
16:06:28.0644 2572 SharedAccess - ok
16:06:28.0655 2572 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
16:06:28.0658 2572 ShellHWDetection - ok
16:06:28.0684 2572 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
16:06:28.0684 2572 SiSRaid2 - ok
16:06:28.0693 2572 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
16:06:28.0694 2572 SiSRaid4 - ok
16:06:28.0748 2572 [ B7FBC508933553828E0948B537FD7984 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
16:06:28.0749 2572 SkypeUpdate - ok
16:06:28.0753 2572 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
16:06:28.0754 2572 Smb - ok
16:06:28.0783 2572 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
16:06:28.0784 2572 SNMPTRAP - ok
16:06:28.0803 2572 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
16:06:28.0803 2572 spldr - ok
16:06:28.0825 2572 [ B96C17B5DC1424D56EEA3A99E97428CD ] Spooler C:\Windows\System32\spoolsv.exe
16:06:28.0828 2572 Spooler - ok
16:06:28.0879 2572 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
16:06:28.0894 2572 sppsvc - ok
16:06:28.0910 2572 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
16:06:28.0912 2572 sppuinotify - ok
16:06:28.0932 2572 [ 2098B8556D1CEC2ACA9A29CD479E3692 ] srv C:\Windows\system32\DRIVERS\srv.sys
16:06:28.0935 2572 srv - ok
16:06:28.0941 2572 [ D0F73A42040F21F92FD314B42AC5C9E7 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
16:06:28.0943 2572 srv2 - ok
16:06:28.0961 2572 [ 2BA8F3250828CCDB4204ECF2C6F40B6A ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
16:06:28.0962 2572 srvnet - ok
16:06:28.0987 2572 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
16:06:28.0989 2572 SSDPSRV - ok
16:06:29.0003 2572 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
16:06:29.0005 2572 SstpSvc - ok
16:06:29.0048 2572 Steam Client Service - ok
16:06:29.0065 2572 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys
16:06:29.0066 2572 stexstor - ok
16:06:29.0106 2572 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
16:06:29.0110 2572 stisvc - ok
16:06:29.0120 2572 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
16:06:29.0121 2572 storflt - ok
16:06:29.0136 2572 [ C40841817EF57D491F22EB103DA587CC ] StorSvc C:\Windows\system32\storsvc.dll
16:06:29.0138 2572 StorSvc - ok
16:06:29.0162 2572 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys
16:06:29.0162 2572 storvsc - ok
16:06:29.0180 2572 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
16:06:29.0181 2572 swenum - ok
16:06:29.0189 2572 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
16:06:29.0192 2572 swprv - ok
16:06:29.0227 2572 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
16:06:29.0234 2572 SysMain - ok
16:06:29.0254 2572 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
16:06:29.0255 2572 TabletInputService - ok
16:06:29.0272 2572 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
16:06:29.0274 2572 TapiSrv - ok
16:06:29.0288 2572 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
16:06:29.0289 2572 TBS - ok
16:06:29.0317 2572 [ 509383E505C973ED7534A06B3D19688D ] Tcpip C:\Windows\system32\drivers\tcpip.sys
16:06:29.0325 2572 Tcpip - ok
16:06:29.0431 2572 [ 509383E505C973ED7534A06B3D19688D ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
16:06:29.0440 2572 TCPIP6 - ok
16:06:29.0452 2572 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
16:06:29.0453 2572 tcpipreg - ok
16:06:29.0471 2572 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
16:06:29.0471 2572 TDPIPE - ok
16:06:29.0474 2572 [ E4245BDA3190A582D55ED09E137401A9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
16:06:29.0475 2572 TDTCP - ok
16:06:29.0484 2572 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
16:06:29.0485 2572 tdx - ok
16:06:29.0499 2572 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
16:06:29.0500 2572 TermDD - ok
16:06:29.0525 2572 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
16:06:29.0529 2572 TermService - ok
16:06:29.0545 2572 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
16:06:29.0546 2572 Themes - ok
16:06:29.0559 2572 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
16:06:29.0560 2572 THREADORDER - ok
16:06:29.0567 2572 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
16:06:29.0569 2572 TrkWks - ok
16:06:29.0605 2572 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
16:06:29.0606 2572 TrustedInstaller - ok
16:06:29.0613 2572 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
16:06:29.0613 2572 tssecsrv - ok
16:06:29.0616 2572 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
16:06:29.0617 2572 TsUsbFlt - ok
16:06:29.0620 2572 [ 9CC2CCAE8A84820EAECB886D477CBCB8 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
16:06:29.0620 2572 TsUsbGD - ok
16:06:29.0648 2572 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
16:06:29.0649 2572 tunnel - ok
16:06:29.0659 2572 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
16:06:29.0660 2572 uagp35 - ok
16:06:29.0666 2572 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
16:06:29.0667 2572 udfs - ok
16:06:29.0686 2572 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
16:06:29.0687 2572 UI0Detect - ok
16:06:29.0690 2572 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
16:06:29.0691 2572 uliagpkx - ok
16:06:29.0716 2572 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
16:06:29.0717 2572 umbus - ok
16:06:29.0720 2572 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\drivers\umpass.sys
16:06:29.0720 2572 UmPass - ok
16:06:29.0730 2572 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll
16:06:29.0732 2572 UmRdpService - ok
16:06:29.0752 2572 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
16:06:29.0755 2572 upnphost - ok
16:06:29.0794 2572 [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
16:06:29.0795 2572 usbaudio - ok
16:06:29.0804 2572 [ 481DFF26B4DCA8F4CBAC1F7DCE1D6829 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
16:06:29.0805 2572 usbccgp - ok
16:06:29.0833 2572 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
16:06:29.0834 2572 usbcir - ok
16:06:29.0844 2572 [ 74EE782B1D9C241EFE425565854C661C ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
16:06:29.0845 2572 usbehci - ok
16:06:29.0878 2572 [ 2C780746DC44A28FE67004DC58173F05 ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys
16:06:29.0879 2572 usbfilter - ok
16:06:29.0885 2572 [ DC96BD9CCB8403251BCF25047573558E ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
16:06:29.0887 2572 usbhub - ok
16:06:29.0900 2572 [ 58E546BBAF87664FC57E0F6081E4F609 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
16:06:29.0901 2572 usbohci - ok
16:06:29.0913 2572 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\drivers\usbprint.sys
16:06:29.0913 2572 usbprint - ok
16:06:29.0926 2572 [ D76510CFA0FC09023077F22C2F979D86 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
16:06:29.0927 2572 USBSTOR - ok
16:06:29.0930 2572 [ 81FB2216D3A60D1284455D511797DB3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
16:06:29.0931 2572 usbuhci - ok
16:06:29.0966 2572 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
16:06:29.0967 2572 usbvideo - ok
16:06:29.0974 2572 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
16:06:29.0975 2572 UxSms - ok
16:06:29.0987 2572 [ 0793F40B9B8A1BDD266296409DBD91EA ] VaultSvc C:\Windows\system32\lsass.exe
16:06:29.0988 2572 VaultSvc - ok
16:06:30.0025 2572 [ FD911873C0BB6945FA38C16E9A2B58F9 ] VClone C:\Windows\system32\DRIVERS\VClone.sys
16:06:30.0026 2572 VClone - ok
16:06:30.0037 2572 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
16:06:30.0037 2572 vdrvroot - ok
16:06:30.0062 2572 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
16:06:30.0065 2572 vds - ok
16:06:30.0069 2572 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
16:06:30.0070 2572 vga - ok
16:06:30.0086 2572 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
16:06:30.0087 2572 VgaSave - ok
16:06:30.0099 2572 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
16:06:30.0101 2572 vhdmp - ok
16:06:30.0115 2572 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
16:06:30.0116 2572 viaide - ok
16:06:30.0133 2572 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys
16:06:30.0134 2572 vmbus - ok
16:06:30.0146 2572 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
16:06:30.0146 2572 VMBusHID - ok
16:06:30.0158 2572 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
16:06:30.0159 2572 volmgr - ok
16:06:30.0170 2572 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
16:06:30.0172 2572 volmgrx - ok
16:06:30.0185 2572 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
16:06:30.0187 2572 volsnap - ok
16:06:30.0210 2572 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
16:06:30.0212 2572 vsmraid - ok
16:06:30.0247 2572 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
16:06:30.0254 2572 VSS - ok
16:06:30.0270 2572 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
16:06:30.0271 2572 vwifibus - ok
16:06:30.0277 2572 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
16:06:30.0279 2572 W32Time - ok
16:06:30.0296 2572 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys
16:06:30.0296 2572 WacomPen - ok
16:06:30.0317 2572 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
16:06:30.0318 2572 WANARP - ok
16:06:30.0321 2572 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
16:06:30.0322 2572 Wanarpv6 - ok
16:06:30.0348 2572 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
16:06:30.0356 2572 wbengine - ok
16:06:30.0457 2572 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
16:06:30.0459 2572 WbioSrvc - ok
16:06:30.0465 2572 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
16:06:30.0468 2572 wcncsvc - ok
16:06:30.0482 2572 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
16:06:30.0483 2572 WcsPlugInService - ok
16:06:30.0496 2572 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys
16:06:30.0497 2572 Wd - ok
16:06:30.0516 2572 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
16:06:30.0519 2572 Wdf01000 - ok
16:06:30.0532 2572 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
16:06:30.0533 2572 WdiServiceHost - ok
16:06:30.0536 2572 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
16:06:30.0537 2572 WdiSystemHost - ok
16:06:30.0542 2572 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
16:06:30.0544 2572 WebClient - ok
16:06:30.0550 2572 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
16:06:30.0553 2572 Wecsvc - ok
16:06:30.0575 2572 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
16:06:30.0577 2572 wercplsupport - ok
16:06:30.0597 2572 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
16:06:30.0599 2572 WerSvc - ok
16:06:30.0611 2572 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
16:06:30.0611 2572 WfpLwf - ok
16:06:30.0629 2572 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
16:06:30.0629 2572 WIMMount - ok
16:06:30.0641 2572 WinDefend - ok
16:06:30.0645 2572 WinHttpAutoProxySvc - ok
16:06:30.0677 2572 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
16:06:30.0678 2572 Winmgmt - ok
16:06:30.0717 2572 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
16:06:30.0726 2572 WinRM - ok
16:06:30.0762 2572 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
16:06:30.0767 2572 Wlansvc - ok
16:06:30.0794 2572 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
16:06:30.0794 2572 WmiAcpi - ok
16:06:30.0809 2572 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
16:06:30.0811 2572 wmiApSrv - ok
16:06:30.0836 2572 WMPNetworkSvc - ok
16:06:30.0845 2572 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
16:06:30.0846 2572 WPCSvc - ok
16:06:30.0862 2572 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
16:06:30.0863 2572 WPDBusEnum - ok
16:06:30.0867 2572 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
16:06:30.0867 2572 ws2ifsl - ok
16:06:30.0879 2572 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\system32\wscsvc.dll
16:06:30.0880 2572 wscsvc - ok
16:06:30.0884 2572 WSearch - ok
16:06:30.0930 2572 [ 9DF12EDBC698B0BC353B3EF84861E430 ] wuauserv C:\Windows\system32\wuaueng.dll
16:06:30.0940 2572 wuauserv - ok
16:06:30.0959 2572 [ D3381DC54C34D79B22CEE0D65BA91B7C ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
16:06:30.0960 2572 WudfPf - ok
16:06:30.0987 2572 [ CF8D590BE3373029D57AF80914190682 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
16:06:30.0988 2572 WUDFRd - ok
16:06:31.0004 2572 [ 7A95C95B6C4CF292D689106BCAE49543 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
16:06:31.0005 2572 wudfsvc - ok
16:06:31.0010 2572 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
16:06:31.0012 2572 WwanSvc - ok
16:06:31.0017 2572 ================ Scan global ===============================
16:06:31.0033 2572 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
16:06:31.0047 2572 [ E0406AEF04B088D1C49FC78D0546F689 ] C:\Windows\system32\winsrv.dll
16:06:31.0053 2572 [ E0406AEF04B088D1C49FC78D0546F689 ] C:\Windows\system32\winsrv.dll
16:06:31.0070 2572 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
16:06:31.0101 2572 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
16:06:31.0104 2572 [Global] - ok
16:06:31.0104 2572 ================ Scan MBR ==================================
16:06:31.0126 2572 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
16:06:31.0746 2572 \Device\Harddisk0\DR0 - ok
16:06:31.0747 2572 ================ Scan VBR ==================================
16:06:31.0749 2572 [ EAD6614C5546C2F25C54A455EA390FE8 ] \Device\Harddisk0\DR0\Partition1
16:06:31.0751 2572 \Device\Harddisk0\DR0\Partition1 - ok
16:06:31.0770 2572 [ B18DCB84F5454FD5C27FB40C07ABC031 ] \Device\Harddisk0\DR0\Partition2
16:06:31.0771 2572 \Device\Harddisk0\DR0\Partition2 - ok
16:06:31.0771 2572 ============================================================
16:06:31.0771 2572 Scan finished
16:06:31.0771 2572 ============================================================
16:06:31.0781 1384 Detected object count: 0
16:06:31.0781 1384 Actual detected object count: 0
16:06:40.0199 6128 Deinitialize success

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: nejde mi mail ani google

#10 Příspěvek od Márty84 »

:arrow: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe , ulozte ho na plochu, kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Zprava a objevi se log. Ten mi sem vlozte
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

jaroy
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 15 črc 2012 12:07

Re: nejde mi mail ani google

#11 Příspěvek od jaroy »

RogueKiller V8.3.1 [Nov 29 2012] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : jaroy [Práva správce]
Mód : Kontrola -- Datum : 12/01/2012 16:16:42

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 6 ¤¤¤
[RUN][SUSP PATH] HKLM\[...]\Wow6432Node\RunOnce : 855A9B15-0C0C-4F64-BBEF-C8C01332DD16 (cmd.exe /C start /D "C:\Users\jaroy\AppData\Local\Temp" /B 855A9B15-0C0C-4F64-BBEF-C8C01332DD16.exe -postboot) -> NALEZENO
[HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJPOL] HKLM\[...]\Wow6432Node\System : DisableRegistryTools (0) -> NALEZENO
[HJ SMENU] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ Zvláštní soubory / Složky: ¤¤¤
[ZeroAccess][FOLDER] U : C:\Windows\Installer\{ca105a95-6adb-85ae-a9d8-be0458fcaa01}\U --> NALEZENO
[ZeroAccess][FOLDER] L : C:\Windows\Installer\{ca105a95-6adb-85ae-a9d8-be0458fcaa01}\L --> NALEZENO

¤¤¤ Ovladač : [NENAHRÁNO] ¤¤¤

¤¤¤ Nákaza : ZeroAccess ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: WDC WD10EARS-00MVWB0 ATA Device +++++
--- User ---
[MBR] 781cb9c394a0064a96bd1dfed765a129
[BSP] 446e8f9ed52fad5c254c2611ee5028e9 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 953767 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[1]_S_12012012_02d1616.txt >>
RKreport[1]_S_12012012_02d1616.txt

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: nejde mi mail ani google

#12 Příspěvek od Márty84 »

:arrow: Znovu spustte RogueKiller jako spravce (pokud jste ho jeste nezavrel/a, rovnou kliknete na napis Smazat)
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Smazat.
Pak kliknete na napis Zprava a objevi se log. Ten mi sem vlozte.
Pak kliknete na napis Oprava Host a Zprava.
Objevi se dalsi log. I ten mi sem vlozte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

jaroy
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 15 črc 2012 12:07

Re: nejde mi mail ani google

#13 Příspěvek od jaroy »

RogueKiller V8.3.1 [Nov 29 2012] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : jaroy [Práva správce]
Mód : Kontrola -- Datum : 12/01/2012 16:21:18

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO] ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: WDC WD10EARS-00MVWB0 ATA Device +++++
--- User ---
[MBR] 781cb9c394a0064a96bd1dfed765a129
[BSP] 446e8f9ed52fad5c254c2611ee5028e9 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 953767 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[3]_S_12012012_02d1621.txt >>
RKreport[1]_S_12012012_02d1616.txt ; RKreport[2]_D_12012012_02d1621.txt ; RKreport[3]_S_12012012_02d1621.txt

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: nejde mi mail ani google

#14 Příspěvek od Márty84 »

:arrow: Nejak mi tu chybi ten druhy log z Roguekilleru
Márty84 píše:Pak kliknete na napis Oprava Host a Zprava.
Objevi se dalsi log. I ten mi sem vlozte.



:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c

type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno