
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
prosím o preventivku, děkuju
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
prosím o preventivku, děkuju
Logfile of random's system information tool 1.09 (written by random/random)
Run by Home at 2013-02-02 10:12:08
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 184 GB (80%) free of 230 GB
Total RAM: 3071 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:12:33, on 2.2.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16457)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\Dwm.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\ATKOSD2\ATKOSD2.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Users\Home\Desktop\RSIT.exe
C:\Program Files\trend micro\Home.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [ATKOSD2] "C:\Program Files\ATKOSD2\ATKOSD2.exe"
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [IaNvSrv] C:\Program Files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvSrv.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}: NameServer = 8.26.56.26,156.154.70.22
O17 - HKLM\System\CCS\Services\Tcpip\..\{DBB461A5-3A64-464D-9B14-96961794DF7A}: NameServer = 8.26.56.26,156.154.70.22
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\System32\guard32.dll C:\Windows\system32\guard32.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
--
End of file - 6719 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\njqu423u.default
prefs.js - "browser.startup.homepage" - "http://news.google.cz/nwshp?client=fire ... =cs&tab=wn"
prefs.js - "extensions.enabledItems" - "{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3, {73a6fe31-595d-460b-a920-fcc0f8843232}:2.0.9.9, {582195F5-92E7-40a0-A127-DB71295901D7}:0.6.4, {c50ca3c4-5656-43c2-a061-13e717f73fc8}:4.0.1, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.16"
"smartwebprinting@hp.com"=C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.5.502.146 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_5_502_146.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.11.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.11.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt
C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFF12.DLL
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\njqu423u.default\extensions\
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18 66280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-01-28 461216]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-30 1227736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-01-28 170912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-30 1227736]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2012-11-08 6756048]
"ATKOSD2"=C:\Program Files\ATKOSD2\ATKOSD2.exe [2007-10-17 7737344]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-06 1029416]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2007-03-20 36864]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-06-04 186904]
"IaNvSrv"=C:\Program Files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvSrv.exe [2009-07-13 33304]
"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2012-11-28 59280]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2012-12-12 152544]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-10-30 4297136]
"SMSERIAL"=C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2009-05-05 1466368]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2012-06-11 10996368]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe [2012-12-12 152544]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware]
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2012-12-14 512360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe [2009-09-20 270336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Home^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^_uninst_62732465.lnk]
C:\Users\Home\AppData\Local\temp\_UNINS~1.BAT []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\System32\guard32.dll C:\Windows\system32\guard32.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2009-09-03 548352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2011-09-05 113024]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=serwvdrv.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"wave2"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave3"=serwvdrv.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2013-02-02 09:52:52 ----A---- C:\Windows\system32\drivers\aswSP.sys
2013-02-02 09:52:52 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2013-02-02 09:52:45 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2013-02-02 09:52:44 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2013-02-02 09:52:42 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2013-02-02 09:52:37 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2013-02-02 09:52:12 ----A---- C:\Windows\avastSS.scr
2013-02-02 09:52:11 ----A---- C:\Windows\system32\aswBoot.exe
2013-02-02 09:36:15 ----A---- C:\Windows\system32\WavesLib.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\WavesGUILib.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\tosade.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\TepeqAPO.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\tadefxapo2.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\tadefxapo.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SRSWOW.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SRSTSXT.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SRSTSHD.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SRSHP360.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SFSS_APO.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SFNHK.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SFCOM.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SFAPO.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RtkPgExt.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RtkCoLDR.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RtkCoInstII.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RtkApoApi.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RtkAPO.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RTEEP32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RTEEL32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RTEEG32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RTEED32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RP3DHT32.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RP3DAA32.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RCoRes.dat
2013-02-02 09:36:14 ----A---- C:\Windows\system32\R4EEP32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\R4EEL32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\R4EEG32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\R4EED32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\R4EEA32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\MaxxAudioRealtek2.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2013-02-02 09:36:14 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioAPOShell.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\KAAPORT.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\FMAPO.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\DTSU2PREC32.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\DTSU2PLFX32.dll
2013-02-02 09:36:12 ----D---- C:\Program Files\Realtek
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSU2PGFX32.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\AERTARen.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\AERTACap.dll
2013-02-02 09:36:10 ----HD---- C:\Program Files\Temp
2013-02-02 09:36:09 ----A---- C:\Windows\RtlExUpd.dll
2013-02-02 01:36:49 ----N---- C:\bootsqm.dat
2013-02-01 23:37:40 ----SHD---- C:\found.001
2013-01-28 18:12:32 ----D---- C:\Windows\Sun
2013-01-28 18:10:28 ----D---- C:\Program Files\Common Files\Java
2013-01-28 18:10:15 ----A---- C:\Windows\system32\javaws.exe
2013-01-28 18:09:59 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2013-01-28 18:09:59 ----A---- C:\Windows\system32\javaw.exe
2013-01-28 18:09:59 ----A---- C:\Windows\system32\java.exe
2013-01-24 17:36:01 ----D---- C:\Program Files\Mozilla Firefox
2013-01-17 18:01:30 ----D---- C:\Program Files\Network Stumbler
2013-01-11 10:57:00 ----A---- C:\Windows\system32\usp10.dll
2013-01-11 10:56:59 ----A---- C:\Windows\system32\win32k.sys
2013-01-11 10:56:58 ----A---- C:\Windows\system32\win32spl.dll
2013-01-11 10:56:45 ----A---- C:\Windows\system32\msxml6.dll
2013-01-11 10:56:37 ----A---- C:\Windows\system32\KernelBase.dll
2013-01-11 10:56:35 ----A---- C:\Windows\system32\winsrv.dll
2013-01-11 10:56:35 ----A---- C:\Windows\system32\kernel32.dll
2013-01-11 10:56:35 ----A---- C:\Windows\system32\conhost.exe
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-01-11 10:56:32 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-01-11 10:56:32 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-01-11 10:55:37 ----A---- C:\Windows\system32\gameux.dll
2013-01-11 10:55:36 ----A---- C:\Windows\system32\Wpc.dll
2013-01-11 10:55:16 ----A---- C:\Windows\system32\ncrypt.dll
2013-01-11 10:55:15 ----A---- C:\Windows\system32\taskhost.exe
======List of files/folders modified in the last 1 month======
2013-02-02 10:12:23 ----D---- C:\Windows\Prefetch
2013-02-02 10:12:13 ----D---- C:\Program Files\trend micro
2013-02-02 10:11:50 ----D---- C:\Windows\system32\config
2013-02-02 10:10:10 ----D---- C:\Windows\temp
2013-02-02 10:09:20 ----D---- C:\Windows
2013-02-02 10:08:37 ----A---- C:\Windows\system32\acovcnt.exe
2013-02-02 10:08:13 ----D---- C:\ProgramData\NVIDIA
2013-02-02 10:07:09 ----D---- C:\Windows\system32\Tasks
2013-02-02 10:04:15 ----SHD---- C:\System Volume Information
2013-02-02 10:01:40 ----D---- C:\Windows\System32
2013-02-02 10:01:06 ----RD---- C:\Program Files
2013-02-02 10:01:00 ----D---- C:\Windows\system32\RTCOM
2013-02-02 10:01:00 ----D---- C:\Windows\system32\drivers
2013-02-02 09:52:34 ----D---- C:\Config.Msi
2013-02-02 09:52:32 ----SHD---- C:\Windows\Installer
2013-02-02 09:51:57 ----D---- C:\ProgramData\AVAST Software
2013-02-02 09:51:57 ----D---- C:\Program Files\AVAST Software
2013-02-02 09:48:43 ----D---- C:\Windows\system32\catroot
2013-02-02 09:40:08 ----D---- C:\Windows\Resources
2013-02-02 09:39:15 ----D---- C:\Windows\inf
2013-02-02 09:36:47 ----D---- C:\Windows\system32\catroot2
2013-02-02 09:36:45 ----D---- C:\Windows\system32\DriverStore
2013-02-02 09:36:12 ----HD---- C:\Program Files\InstallShield Installation Information
2013-02-02 09:35:27 ----A---- C:\Windows\DIFxAPI.dll
2013-02-02 09:21:06 ----D---- C:\Windows\system32\wbem
2013-02-02 09:20:20 ----D---- C:\Windows\Tasks
2013-02-02 09:20:20 ----D---- C:\Windows\system32\CodeIntegrity
2013-02-02 09:20:20 ----D---- C:\Windows\AppCompat
2013-02-02 09:20:20 ----D---- C:\Users\Home\AppData\Roaming\vlc
2013-02-02 09:20:20 ----D---- C:\Users\Home\AppData\Roaming\uTorrent
2013-02-02 09:20:19 ----D---- C:\Windows\registration
2013-01-28 18:10:28 ----D---- C:\Program Files\Common Files
2013-01-28 18:09:51 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-01-28 18:09:51 ----A---- C:\Windows\system32\deployJava1.dll
2013-01-25 20:07:01 ----D---- C:\Program Files\CCleaner
2013-01-25 18:04:15 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-01-17 22:59:10 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-01-17 18:01:32 ----SD---- C:\ProgramData\Microsoft
2013-01-17 16:29:50 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-01-17 01:28:58 ----N---- C:\Windows\system32\MpSigStub.exe
2013-01-16 19:22:33 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2013-01-16 16:06:10 ----D---- C:\Program Files\Java
2013-01-14 18:10:29 ----D---- C:\Windows\debug
2013-01-12 11:27:27 ----D---- C:\Windows\rescache
2013-01-11 20:26:50 ----D---- C:\Windows\Microsoft.NET
2013-01-11 20:26:49 ----RSD---- C:\Windows\assembly
2013-01-11 18:33:40 ----D---- C:\Windows\winsxs
2013-01-11 18:31:13 ----D---- C:\Windows\system32\cs-CZ
2013-01-11 17:00:10 ----D---- C:\ProgramData\Microsoft Help
2013-01-11 16:54:47 ----A---- C:\Windows\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaNvStor;Intel(R) Turbo Memory Controller; C:\Windows\system32\DRIVERS\iaNvStor.sys [2009-07-01 232472]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-06-04 330264]
R0 JGOGO;JMicron Hot-Plug Driver; C:\Windows\system32\DRIVERS\JGOGO.sys [2006-02-07 6912]
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys [2007-04-12 48000]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-10-15 44784]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-10-30 738504]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-10-30 361032]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-10-30 54232]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2012-11-08 494416]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2012-11-08 36072]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2012-11-08 82952]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2011-09-05 12880]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2011-09-05 67664]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-10-30 21256]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-10-30 58680]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-08-08 45568]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-07-30 43008]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-07-30 38400]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-04-14 242240]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2012-06-19 3240400]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2007-01-24 5632]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2009-07-14 18432]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2007-07-31 7680]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
R3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 84992]
R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2009-05-05 1095808]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-10-01 1769984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-12-06 196400]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 CFcatchme;CFcatchme; \??\C:\Users\Home\AppData\Local\Temp\CFcatchme.sys []
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 itecir;ITECIR Infrared Receiver; C:\Windows\system32\DRIVERS\itecir.sys [2007-06-20 49664]
S3 Netaapl;Apple Mobile Device Ethernet Service; C:\Windows\system32\DRIVERS\netaapl.sys [2011-05-10 18432]
S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver; \??\C:\Windows\system32\NSNDIS5.SYS [2004-03-24 17280]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 49664]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2012-09-28 44544]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys []
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2012-09-07 116608]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-08-11 55184]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-10-02 94208]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-10-30 44808]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2012-11-08 1990464]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-06-04 354840]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2012-12-12 553440]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-02 1258856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-17 251400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-01-24 115608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-01-08 1343400]
-----------------EOF-----------------
Run by Home at 2013-02-02 10:12:08
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 184 GB (80%) free of 230 GB
Total RAM: 3071 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:12:33, on 2.2.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16457)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\Dwm.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\ATKOSD2\ATKOSD2.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Users\Home\Desktop\RSIT.exe
C:\Program Files\trend micro\Home.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [ATKOSD2] "C:\Program Files\ATKOSD2\ATKOSD2.exe"
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [IaNvSrv] C:\Program Files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvSrv.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}: NameServer = 8.26.56.26,156.154.70.22
O17 - HKLM\System\CCS\Services\Tcpip\..\{DBB461A5-3A64-464D-9B14-96961794DF7A}: NameServer = 8.26.56.26,156.154.70.22
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\System32\guard32.dll C:\Windows\system32\guard32.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
--
End of file - 6719 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\njqu423u.default
prefs.js - "browser.startup.homepage" - "http://news.google.cz/nwshp?client=fire ... =cs&tab=wn"
prefs.js - "extensions.enabledItems" - "{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3, {73a6fe31-595d-460b-a920-fcc0f8843232}:2.0.9.9, {582195F5-92E7-40a0-A127-DB71295901D7}:0.6.4, {c50ca3c4-5656-43c2-a061-13e717f73fc8}:4.0.1, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.16"
"smartwebprinting@hp.com"=C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.5.502.146 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_5_502_146.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.11.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.11.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt
C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFF12.DLL
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\njqu423u.default\extensions\
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18 66280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-01-28 461216]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-30 1227736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-01-28 170912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-30 1227736]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2012-11-08 6756048]
"ATKOSD2"=C:\Program Files\ATKOSD2\ATKOSD2.exe [2007-10-17 7737344]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-06 1029416]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2007-03-20 36864]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-06-04 186904]
"IaNvSrv"=C:\Program Files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvSrv.exe [2009-07-13 33304]
"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2012-11-28 59280]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2012-12-12 152544]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-10-30 4297136]
"SMSERIAL"=C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2009-05-05 1466368]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2012-06-11 10996368]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe [2012-12-12 152544]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware]
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2012-12-14 512360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe [2009-09-20 270336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Home^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^_uninst_62732465.lnk]
C:\Users\Home\AppData\Local\temp\_UNINS~1.BAT []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\System32\guard32.dll C:\Windows\system32\guard32.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2009-09-03 548352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2011-09-05 113024]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=serwvdrv.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"wave2"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave3"=serwvdrv.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2013-02-02 09:52:52 ----A---- C:\Windows\system32\drivers\aswSP.sys
2013-02-02 09:52:52 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2013-02-02 09:52:45 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2013-02-02 09:52:44 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2013-02-02 09:52:42 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2013-02-02 09:52:37 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2013-02-02 09:52:12 ----A---- C:\Windows\avastSS.scr
2013-02-02 09:52:11 ----A---- C:\Windows\system32\aswBoot.exe
2013-02-02 09:36:15 ----A---- C:\Windows\system32\WavesLib.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\WavesGUILib.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\tosade.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\TepeqAPO.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\tadefxapo2.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\tadefxapo.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SRSWOW.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SRSTSXT.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SRSTSHD.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SRSHP360.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SFSS_APO.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SFNHK.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SFCOM.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SFAPO.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RtkPgExt.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RtkCoLDR.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RtkCoInstII.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RtkApoApi.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RtkAPO.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RTEEP32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RTEEL32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RTEEG32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RTEED32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RP3DHT32.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RP3DAA32.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RCoRes.dat
2013-02-02 09:36:14 ----A---- C:\Windows\system32\R4EEP32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\R4EEL32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\R4EEG32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\R4EED32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\R4EEA32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\MaxxAudioRealtek2.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2013-02-02 09:36:14 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioAPOShell.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\KAAPORT.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\FMAPO.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\DTSU2PREC32.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\DTSU2PLFX32.dll
2013-02-02 09:36:12 ----D---- C:\Program Files\Realtek
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSU2PGFX32.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\AERTARen.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\AERTACap.dll
2013-02-02 09:36:10 ----HD---- C:\Program Files\Temp
2013-02-02 09:36:09 ----A---- C:\Windows\RtlExUpd.dll
2013-02-02 01:36:49 ----N---- C:\bootsqm.dat
2013-02-01 23:37:40 ----SHD---- C:\found.001
2013-01-28 18:12:32 ----D---- C:\Windows\Sun
2013-01-28 18:10:28 ----D---- C:\Program Files\Common Files\Java
2013-01-28 18:10:15 ----A---- C:\Windows\system32\javaws.exe
2013-01-28 18:09:59 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2013-01-28 18:09:59 ----A---- C:\Windows\system32\javaw.exe
2013-01-28 18:09:59 ----A---- C:\Windows\system32\java.exe
2013-01-24 17:36:01 ----D---- C:\Program Files\Mozilla Firefox
2013-01-17 18:01:30 ----D---- C:\Program Files\Network Stumbler
2013-01-11 10:57:00 ----A---- C:\Windows\system32\usp10.dll
2013-01-11 10:56:59 ----A---- C:\Windows\system32\win32k.sys
2013-01-11 10:56:58 ----A---- C:\Windows\system32\win32spl.dll
2013-01-11 10:56:45 ----A---- C:\Windows\system32\msxml6.dll
2013-01-11 10:56:37 ----A---- C:\Windows\system32\KernelBase.dll
2013-01-11 10:56:35 ----A---- C:\Windows\system32\winsrv.dll
2013-01-11 10:56:35 ----A---- C:\Windows\system32\kernel32.dll
2013-01-11 10:56:35 ----A---- C:\Windows\system32\conhost.exe
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-01-11 10:56:32 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-01-11 10:56:32 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-01-11 10:55:37 ----A---- C:\Windows\system32\gameux.dll
2013-01-11 10:55:36 ----A---- C:\Windows\system32\Wpc.dll
2013-01-11 10:55:16 ----A---- C:\Windows\system32\ncrypt.dll
2013-01-11 10:55:15 ----A---- C:\Windows\system32\taskhost.exe
======List of files/folders modified in the last 1 month======
2013-02-02 10:12:23 ----D---- C:\Windows\Prefetch
2013-02-02 10:12:13 ----D---- C:\Program Files\trend micro
2013-02-02 10:11:50 ----D---- C:\Windows\system32\config
2013-02-02 10:10:10 ----D---- C:\Windows\temp
2013-02-02 10:09:20 ----D---- C:\Windows
2013-02-02 10:08:37 ----A---- C:\Windows\system32\acovcnt.exe
2013-02-02 10:08:13 ----D---- C:\ProgramData\NVIDIA
2013-02-02 10:07:09 ----D---- C:\Windows\system32\Tasks
2013-02-02 10:04:15 ----SHD---- C:\System Volume Information
2013-02-02 10:01:40 ----D---- C:\Windows\System32
2013-02-02 10:01:06 ----RD---- C:\Program Files
2013-02-02 10:01:00 ----D---- C:\Windows\system32\RTCOM
2013-02-02 10:01:00 ----D---- C:\Windows\system32\drivers
2013-02-02 09:52:34 ----D---- C:\Config.Msi
2013-02-02 09:52:32 ----SHD---- C:\Windows\Installer
2013-02-02 09:51:57 ----D---- C:\ProgramData\AVAST Software
2013-02-02 09:51:57 ----D---- C:\Program Files\AVAST Software
2013-02-02 09:48:43 ----D---- C:\Windows\system32\catroot
2013-02-02 09:40:08 ----D---- C:\Windows\Resources
2013-02-02 09:39:15 ----D---- C:\Windows\inf
2013-02-02 09:36:47 ----D---- C:\Windows\system32\catroot2
2013-02-02 09:36:45 ----D---- C:\Windows\system32\DriverStore
2013-02-02 09:36:12 ----HD---- C:\Program Files\InstallShield Installation Information
2013-02-02 09:35:27 ----A---- C:\Windows\DIFxAPI.dll
2013-02-02 09:21:06 ----D---- C:\Windows\system32\wbem
2013-02-02 09:20:20 ----D---- C:\Windows\Tasks
2013-02-02 09:20:20 ----D---- C:\Windows\system32\CodeIntegrity
2013-02-02 09:20:20 ----D---- C:\Windows\AppCompat
2013-02-02 09:20:20 ----D---- C:\Users\Home\AppData\Roaming\vlc
2013-02-02 09:20:20 ----D---- C:\Users\Home\AppData\Roaming\uTorrent
2013-02-02 09:20:19 ----D---- C:\Windows\registration
2013-01-28 18:10:28 ----D---- C:\Program Files\Common Files
2013-01-28 18:09:51 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-01-28 18:09:51 ----A---- C:\Windows\system32\deployJava1.dll
2013-01-25 20:07:01 ----D---- C:\Program Files\CCleaner
2013-01-25 18:04:15 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-01-17 22:59:10 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-01-17 18:01:32 ----SD---- C:\ProgramData\Microsoft
2013-01-17 16:29:50 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-01-17 01:28:58 ----N---- C:\Windows\system32\MpSigStub.exe
2013-01-16 19:22:33 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2013-01-16 16:06:10 ----D---- C:\Program Files\Java
2013-01-14 18:10:29 ----D---- C:\Windows\debug
2013-01-12 11:27:27 ----D---- C:\Windows\rescache
2013-01-11 20:26:50 ----D---- C:\Windows\Microsoft.NET
2013-01-11 20:26:49 ----RSD---- C:\Windows\assembly
2013-01-11 18:33:40 ----D---- C:\Windows\winsxs
2013-01-11 18:31:13 ----D---- C:\Windows\system32\cs-CZ
2013-01-11 17:00:10 ----D---- C:\ProgramData\Microsoft Help
2013-01-11 16:54:47 ----A---- C:\Windows\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaNvStor;Intel(R) Turbo Memory Controller; C:\Windows\system32\DRIVERS\iaNvStor.sys [2009-07-01 232472]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-06-04 330264]
R0 JGOGO;JMicron Hot-Plug Driver; C:\Windows\system32\DRIVERS\JGOGO.sys [2006-02-07 6912]
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys [2007-04-12 48000]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-10-15 44784]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-10-30 738504]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-10-30 361032]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-10-30 54232]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2012-11-08 494416]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2012-11-08 36072]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2012-11-08 82952]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2011-09-05 12880]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2011-09-05 67664]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-10-30 21256]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-10-30 58680]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-08-08 45568]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-07-30 43008]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-07-30 38400]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-04-14 242240]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2012-06-19 3240400]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2007-01-24 5632]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2009-07-14 18432]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2007-07-31 7680]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
R3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 84992]
R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2009-05-05 1095808]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-10-01 1769984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-12-06 196400]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 CFcatchme;CFcatchme; \??\C:\Users\Home\AppData\Local\Temp\CFcatchme.sys []
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 itecir;ITECIR Infrared Receiver; C:\Windows\system32\DRIVERS\itecir.sys [2007-06-20 49664]
S3 Netaapl;Apple Mobile Device Ethernet Service; C:\Windows\system32\DRIVERS\netaapl.sys [2011-05-10 18432]
S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver; \??\C:\Windows\system32\NSNDIS5.SYS [2004-03-24 17280]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 49664]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2012-09-28 44544]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys []
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2012-09-07 116608]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-08-11 55184]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-10-02 94208]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-10-30 44808]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2012-11-08 1990464]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-06-04 354840]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2012-12-12 553440]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-02 1258856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-17 251400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-01-24 115608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-01-08 1343400]
-----------------EOF-----------------
Re: prosím o preventivku, děkuju
Zdravim 
Vidim jen par zbytecnosti. Je to ciste prevence, nebo je s pc nejaky problem?
Stahnete OTM http://oldtimer.geekstogo.com/OTM.exe a ulozte nejlepe na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Do leveho okna zkopirujte tento skript (vcetne te dvojtecky pred slovem commands)
Kliknete na MoveIt a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu sem dejte log, ktery na vas vyskoci, nebo bude zde C:\_OTM\MovedFiles\xxxxxxxx_xxxxxx (misto tech x budou cisla, predstavujici datum a cas spusteni)

Vidim jen par zbytecnosti. Je to ciste prevence, nebo je s pc nejaky problem?

Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Do leveho okna zkopirujte tento skript (vcetne te dvojtecky pred slovem commands)
Kód: Vybrat vše
:commands
[EMPTYTEMP]
[EMPTYFLASH]
[RESETHOSTS]
[Purity]
:services
AdobeARMservice
AdobeFlashPlayerUpdateSvc
:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\Windows\tasks\Adobe Flash Player Updater.job
:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=-
"SunJavaUpdateSched"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware]
Po restartu sem dejte log, ktery na vas vyskoci, nebo bude zde C:\_OTM\MovedFiles\xxxxxxxx_xxxxxx (misto tech x budou cisla, predstavujici datum a cas spusteni)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: prosím o preventivku, děkuju
All processes killed
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Home
->Temp folder emptied: 164490454 bytes
->Temporary Internet Files folder emptied: 1700059 bytes
->Java cache emptied: 1817388 bytes
->FireFox cache emptied: 76145810 bytes
->Flash cache emptied: 593 bytes
User: Public
->Temp folder emptied: 0 bytes
User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 82350008 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50507 bytes
%systemroot%\system32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 0 bytes
RecycleBin emptied: 737260886 bytes
Total Files Cleaned = 1 015,00 mb
[EMPTYFLASH]
User: Administrator
User: All Users
User: Default
User: Default User
User: Home
->Flash cache emptied: 0 bytes
User: Public
User: UpdatusUser
Total Flash Files Cleaned = 0,00 mb
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
========== SERVICES/DRIVERS ==========
Service AdobeARMservice stopped successfully!
Service AdobeARMservice deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\.SET.tmp not found.
File/Folder C:\Windows\*.tmp not found.
C:\Windows\tasks\Adobe Flash Player Updater.job moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\currentversion\run] not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\currentversion\run] not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\shared tools\ msconfig\startupreg\daemon tools lite\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\shared tools\ msconfig\startupreg\malwarebytes anti-malware\ not found.
OTM by OldTimer - Version 3.1.21.0 log created on 02022013_204538
mel jsem problemy s HDD a vypl se avast, tak jsem mel obavu, jestli v tom nebylo neco vic.
OTM sel spustit jenom v nouzovem rezimu, ale vypada to, ze to asi vyslo
dekuju za pomoc
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Home
->Temp folder emptied: 164490454 bytes
->Temporary Internet Files folder emptied: 1700059 bytes
->Java cache emptied: 1817388 bytes
->FireFox cache emptied: 76145810 bytes
->Flash cache emptied: 593 bytes
User: Public
->Temp folder emptied: 0 bytes
User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 82350008 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50507 bytes
%systemroot%\system32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 0 bytes
RecycleBin emptied: 737260886 bytes
Total Files Cleaned = 1 015,00 mb
[EMPTYFLASH]
User: Administrator
User: All Users
User: Default
User: Default User
User: Home
->Flash cache emptied: 0 bytes
User: Public
User: UpdatusUser
Total Flash Files Cleaned = 0,00 mb
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
========== SERVICES/DRIVERS ==========
Service AdobeARMservice stopped successfully!
Service AdobeARMservice deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\.SET.tmp not found.
File/Folder C:\Windows\*.tmp not found.
C:\Windows\tasks\Adobe Flash Player Updater.job moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\currentversion\run] not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\currentversion\run] not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\shared tools\ msconfig\startupreg\daemon tools lite\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\shared tools\ msconfig\startupreg\malwarebytes anti-malware\ not found.
OTM by OldTimer - Version 3.1.21.0 log created on 02022013_204538
mel jsem problemy s HDD a vypl se avast, tak jsem mel obavu, jestli v tom nebylo neco vic.
OTM sel spustit jenom v nouzovem rezimu, ale vypada to, ze to asi vyslo
dekuju za pomoc

Re: prosím o preventivku, děkuju
OK, radeji to proverime.
Vidim tam MBAM. Delal jste kompletni kontrolu? Nasel neco?
Stahnete crystal disk info http://www.slunecnice.cz/sw/crystaldiskinfo/
Nainstalujte (pozor na pripadne doplnky, ty odmitnete zrusenim zatrzitka) a spustte jako spravce. Za chvili se zobrazi vysledek.
Kliknete nahore na napis Úpravy a pak na napis Kopírovat. To co se zkopiruje (ulozi se to do pameti) mi sem vlozte
Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe , ulozte ho na plochu, kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Zprava a objevi se log. Ten mi sem vlozte


Nainstalujte (pozor na pripadne doplnky, ty odmitnete zrusenim zatrzitka) a spustte jako spravce. Za chvili se zobrazi vysledek.
Kliknete nahore na napis Úpravy a pak na napis Kopírovat. To co se zkopiruje (ulozi se to do pameti) mi sem vlozte


Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Zprava a objevi se log. Ten mi sem vlozte
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: prosím o preventivku, děkuju
Byl vadny disk, neslo spustit chkdsk, musel byt pres F8 opraven pc, pak to slo, behem toho problemu vypadl zvuk (reinstal driveru) a vypl se avast (reinstal) Od te doby to vypada ok.
Roguekiller se spusti, najde 3 problemy ale pri prohledavani MBR spadne, opakuje se i v nouzovem rezimu.
Posilam aspon log z Crystalu
----------------------------------------------------------------------------
CrystalDiskInfo 5.3.1 (C) 2008-2013 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Home Premium Edition SP1 [6.1 Build 7601] (x86)
Date : 2013/02/02 21:45:27
-- Controller Map ----------------------------------------------------------
- Ricoh SD/MMC Host Controller [ATA]
- Ricoh xD-Picture Card Controller [ATA]
+ ATA Channel 0 (0) [ATA]
- HL-DT-ST DVDRAM GSA-T20L ATA Device
- Ricoh Memory Stick Controller [ATA]
+ Intel(R) ICH8M Ultra ATA Storage Controllers - 2850 [ATA]
- ATA Channel 0 (0)
+ Intel(R) ICH8M-E/M SATA AHCI Controller [ATA]
- ST9250827AS
+ Intel(R) Turbo Memory Controller [SCSI]
- IMD-0
- JMicron JMB36X Controller [SCSI]
-- Disk List ---------------------------------------------------------------
(1) ST9250827AS : 250,0 GB [0/0/0, pd1] - st
----------------------------------------------------------------------------
(1) ST9250827AS
----------------------------------------------------------------------------
Model : ST9250827AS
Firmware : 3.AAA
Serial Number : 5RG1JVD4
Disk Size : 250,0 GB (8,4/137,4/250,0)
Buffer Size : 8192 KB
NV Cache Size : 387 MB
Queue Depth : 32
# of Sectors : 488397168
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : SATA/150
Power On Hours : 13259 hod.
Power On Count : 3249 krát
Temparature : 50 C (122 F)
Health Status : Pozor
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 8080h [ON]
AAM Level : ----
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 253 __6 000000000000 Počet chyb čtení
03 _99 _99 __0 000000000000 Čas na roztočení ploten
04 _96 _96 _20 000000001185 Počet spuštění/zastavení
05 100 100 _36 000000000001 Počet přemapovaných sektorů
07 _75 _60 _30 001429DECABE Počet chybných hledání
09 _85 _85 __0 0000000033CB Hodin v činnosti
0A 100 100 _34 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _97 _97 _20 000000000CB1 Počet cyklů zapnutí zařízení
BB 100 100 __0 000000000000 Ohlášeno neopravitelných chyb
BD _96 _96 __0 000000000004 Vysoká rychlost zápisu
BE _50 _38 _45 00DD3E0D0032 Teplota toku vzduchu
BF 100 100 __0 000000000205 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 00000000046D Počet vypnutí disku
C1 __1 __1 __0 00000003D451 Počet cyklů načítání/vymazání
C2 _50 _62 __0 000D00000032 Teplota
C3 _65 _57 __0 000004CD3FD4 Počet oprav chybného čtení
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000003 Počet chyb v kontrolním součtu UltraDMA
C8 100 253 __0 000000000000 Počet chyb při zápisu sektorů
CA 100 253 __0 000000000000 Počet chyb při směrování údajů
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2020 3552 4731 4A56 4434
020: 0000 4000 0004 332E 4141 4120 2020 5354 3932 3530
030: 3832 3741 5320 2020 2020 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0502 0000 0048 0048
080: 01F0 0029 346B 7D09 6103 3069 BC09 6103 407F 0000
090: 0000 8080 FFFE 0000 FE00 0000 0000 0000 0000 0000
100: 5970 1D1C 0000 0000 0000 0000 4000 0000 5000 C500
110: 0B7E 057E 0000 0000 0000 0000 0000 0100 0000 400E
120: 400C 0000 0000 0000 0000 0000 0000 0000 0009 5970
130: 1D1C 5970 1D1C 2020 0002 0AB6 8002 0000 3C06 3C06
140: FFFF 07C6 0100 0000 100F 1800 0002 0080 0000 0000
150: 6080 0000 0000 0000 0000 0000 0000 0000 1E00 000B
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 0001 0000 0000 0000
210: 0000 0000 0000 0000 0011 1B80 000C 0041 0019 0005
220: 0000 0000 1010 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 55A5
-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 0F 00 64 FD 00 00 00 00 00 00 00 03 03
010: 00 63 63 00 00 00 00 00 00 00 04 32 00 60 60 85
020: 11 00 00 00 00 00 05 33 00 64 64 01 00 00 00 00
030: 00 00 07 0F 00 4B 3C BE CA DE 29 14 00 00 09 32
040: 00 55 55 CB 33 00 00 00 00 00 0A 13 00 64 64 00
050: 00 00 00 00 00 00 0C 32 00 61 61 B1 0C 00 00 00
060: 00 00 BB 32 00 64 64 00 00 00 00 00 00 00 BD 3A
070: 00 60 60 04 00 00 00 00 00 00 BE 22 00 32 26 32
080: 00 0D 3E DD 00 00 BF 32 00 64 64 05 02 00 00 00
090: 00 00 C0 32 00 64 64 6D 04 00 00 00 00 00 C1 22
0A0: 00 01 01 51 D4 03 00 00 00 00 C2 1A 00 32 3E 32
0B0: 00 00 00 0D 00 00 C3 12 00 41 39 D4 3F CD 04 00
0C0: 00 00 C5 10 00 64 64 00 00 00 00 00 00 00 C6 3E
0D0: 00 64 64 00 00 00 00 00 00 00 C7 00 00 C8 C8 03
0E0: 00 00 00 00 00 00 C8 32 00 64 FD 00 00 00 00 00
0F0: 00 00 CA 00 00 64 FD 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 82 00 AA 01 00 53
170: 03 00 01 00 01 5C 02 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 07 01 01 01 01 01 01 01 01 00
190: 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00
1A0: 01 00 30 75 8D D0 AB 05 00 00 00 00 00 00 05 02
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 02 00 01 00 00 00 03 00 00 00 20 C9 BC C1 0A 00
1D0: 00 00 BE E4 95 08 00 00 00 00 D2 04 00 00 00 00
1E0: 42 64 01 00 01 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 86
-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 06 00 00 00 00 00 00 00 00 00 00 03 00
010: 00 00 00 00 00 00 00 00 00 00 04 14 00 00 00 00
020: 00 00 00 00 00 00 05 24 00 00 00 00 00 00 00 00
030: 00 00 07 1E 00 00 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 22 00 00 00 00
050: 00 00 00 00 00 00 0C 14 00 00 00 00 00 00 00 00
060: 00 00 BB 00 00 00 00 00 00 00 00 00 00 00 BD 00
070: 00 00 00 00 00 00 00 00 00 00 BE 2D 00 00 00 00
080: 00 00 00 00 00 00 BF 00 00 00 00 00 00 00 00 00
090: 00 00 C0 00 00 00 00 00 00 00 00 00 00 00 C1 00
0A0: 00 00 00 00 00 00 00 00 00 00 C2 00 00 00 00 00
0B0: 00 00 00 00 00 00 C3 00 00 00 00 00 00 00 00 00
0C0: 00 00 C5 00 00 00 00 00 00 00 00 00 00 00 C6 00
0D0: 00 00 00 00 00 00 00 00 00 00 C7 00 00 00 00 00
0E0: 00 00 00 00 00 00 C8 00 00 00 00 00 00 00 00 00
0F0: 00 00 CA 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 25
Roguekiller se spusti, najde 3 problemy ale pri prohledavani MBR spadne, opakuje se i v nouzovem rezimu.
Posilam aspon log z Crystalu
----------------------------------------------------------------------------
CrystalDiskInfo 5.3.1 (C) 2008-2013 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Home Premium Edition SP1 [6.1 Build 7601] (x86)
Date : 2013/02/02 21:45:27
-- Controller Map ----------------------------------------------------------
- Ricoh SD/MMC Host Controller [ATA]
- Ricoh xD-Picture Card Controller [ATA]
+ ATA Channel 0 (0) [ATA]
- HL-DT-ST DVDRAM GSA-T20L ATA Device
- Ricoh Memory Stick Controller [ATA]
+ Intel(R) ICH8M Ultra ATA Storage Controllers - 2850 [ATA]
- ATA Channel 0 (0)
+ Intel(R) ICH8M-E/M SATA AHCI Controller [ATA]
- ST9250827AS
+ Intel(R) Turbo Memory Controller [SCSI]
- IMD-0
- JMicron JMB36X Controller [SCSI]
-- Disk List ---------------------------------------------------------------
(1) ST9250827AS : 250,0 GB [0/0/0, pd1] - st
----------------------------------------------------------------------------
(1) ST9250827AS
----------------------------------------------------------------------------
Model : ST9250827AS
Firmware : 3.AAA
Serial Number : 5RG1JVD4
Disk Size : 250,0 GB (8,4/137,4/250,0)
Buffer Size : 8192 KB
NV Cache Size : 387 MB
Queue Depth : 32
# of Sectors : 488397168
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : SATA/150
Power On Hours : 13259 hod.
Power On Count : 3249 krát
Temparature : 50 C (122 F)
Health Status : Pozor
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 8080h [ON]
AAM Level : ----
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 253 __6 000000000000 Počet chyb čtení
03 _99 _99 __0 000000000000 Čas na roztočení ploten
04 _96 _96 _20 000000001185 Počet spuštění/zastavení
05 100 100 _36 000000000001 Počet přemapovaných sektorů
07 _75 _60 _30 001429DECABE Počet chybných hledání
09 _85 _85 __0 0000000033CB Hodin v činnosti
0A 100 100 _34 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _97 _97 _20 000000000CB1 Počet cyklů zapnutí zařízení
BB 100 100 __0 000000000000 Ohlášeno neopravitelných chyb
BD _96 _96 __0 000000000004 Vysoká rychlost zápisu
BE _50 _38 _45 00DD3E0D0032 Teplota toku vzduchu
BF 100 100 __0 000000000205 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 00000000046D Počet vypnutí disku
C1 __1 __1 __0 00000003D451 Počet cyklů načítání/vymazání
C2 _50 _62 __0 000D00000032 Teplota
C3 _65 _57 __0 000004CD3FD4 Počet oprav chybného čtení
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000003 Počet chyb v kontrolním součtu UltraDMA
C8 100 253 __0 000000000000 Počet chyb při zápisu sektorů
CA 100 253 __0 000000000000 Počet chyb při směrování údajů
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2020 3552 4731 4A56 4434
020: 0000 4000 0004 332E 4141 4120 2020 5354 3932 3530
030: 3832 3741 5320 2020 2020 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0502 0000 0048 0048
080: 01F0 0029 346B 7D09 6103 3069 BC09 6103 407F 0000
090: 0000 8080 FFFE 0000 FE00 0000 0000 0000 0000 0000
100: 5970 1D1C 0000 0000 0000 0000 4000 0000 5000 C500
110: 0B7E 057E 0000 0000 0000 0000 0000 0100 0000 400E
120: 400C 0000 0000 0000 0000 0000 0000 0000 0009 5970
130: 1D1C 5970 1D1C 2020 0002 0AB6 8002 0000 3C06 3C06
140: FFFF 07C6 0100 0000 100F 1800 0002 0080 0000 0000
150: 6080 0000 0000 0000 0000 0000 0000 0000 1E00 000B
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 0001 0000 0000 0000
210: 0000 0000 0000 0000 0011 1B80 000C 0041 0019 0005
220: 0000 0000 1010 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 55A5
-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 0F 00 64 FD 00 00 00 00 00 00 00 03 03
010: 00 63 63 00 00 00 00 00 00 00 04 32 00 60 60 85
020: 11 00 00 00 00 00 05 33 00 64 64 01 00 00 00 00
030: 00 00 07 0F 00 4B 3C BE CA DE 29 14 00 00 09 32
040: 00 55 55 CB 33 00 00 00 00 00 0A 13 00 64 64 00
050: 00 00 00 00 00 00 0C 32 00 61 61 B1 0C 00 00 00
060: 00 00 BB 32 00 64 64 00 00 00 00 00 00 00 BD 3A
070: 00 60 60 04 00 00 00 00 00 00 BE 22 00 32 26 32
080: 00 0D 3E DD 00 00 BF 32 00 64 64 05 02 00 00 00
090: 00 00 C0 32 00 64 64 6D 04 00 00 00 00 00 C1 22
0A0: 00 01 01 51 D4 03 00 00 00 00 C2 1A 00 32 3E 32
0B0: 00 00 00 0D 00 00 C3 12 00 41 39 D4 3F CD 04 00
0C0: 00 00 C5 10 00 64 64 00 00 00 00 00 00 00 C6 3E
0D0: 00 64 64 00 00 00 00 00 00 00 C7 00 00 C8 C8 03
0E0: 00 00 00 00 00 00 C8 32 00 64 FD 00 00 00 00 00
0F0: 00 00 CA 00 00 64 FD 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 82 00 AA 01 00 53
170: 03 00 01 00 01 5C 02 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 07 01 01 01 01 01 01 01 01 00
190: 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00
1A0: 01 00 30 75 8D D0 AB 05 00 00 00 00 00 00 05 02
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 02 00 01 00 00 00 03 00 00 00 20 C9 BC C1 0A 00
1D0: 00 00 BE E4 95 08 00 00 00 00 D2 04 00 00 00 00
1E0: 42 64 01 00 01 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 86
-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 06 00 00 00 00 00 00 00 00 00 00 03 00
010: 00 00 00 00 00 00 00 00 00 00 04 14 00 00 00 00
020: 00 00 00 00 00 00 05 24 00 00 00 00 00 00 00 00
030: 00 00 07 1E 00 00 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 22 00 00 00 00
050: 00 00 00 00 00 00 0C 14 00 00 00 00 00 00 00 00
060: 00 00 BB 00 00 00 00 00 00 00 00 00 00 00 BD 00
070: 00 00 00 00 00 00 00 00 00 00 BE 2D 00 00 00 00
080: 00 00 00 00 00 00 BF 00 00 00 00 00 00 00 00 00
090: 00 00 C0 00 00 00 00 00 00 00 00 00 00 00 C1 00
0A0: 00 00 00 00 00 00 00 00 00 00 C2 00 00 00 00 00
0B0: 00 00 00 00 00 00 C3 00 00 00 00 00 00 00 00 00
0C0: 00 00 C5 00 00 00 00 00 00 00 00 00 00 00 C6 00
0D0: 00 00 00 00 00 00 00 00 00 00 C7 00 00 00 00 00
0E0: 00 00 00 00 00 00 C8 00 00 00 00 00 00 00 00 00
0F0: 00 00 CA 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 25
Re: prosím o preventivku, děkuju
Disk na tom neni nejlepe, vykazuje chyby. Ale videl jsem i horsi.
Stahnete MBRScan http://eric71.geekstogo.com/tools/MbrScan.exe , ulozte ho na plochu a spustte jako spravce.
Kliknete na Report
Za chvili vyskoci log s nazvem MBRScan.txt, ten mi sem zkopirujte.

Kliknete na Report
Za chvili vyskoci log s nazvem MBRScan.txt, ten mi sem zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: prosím o preventivku, děkuju
jakou myslite ze ma jeste zivotnost ten disk? Projistotu si vsechno zalohuju, ale kolik tak jeste orientacne muze vydrzet?
bohuzel pri otevreni programu a kliknuti na cokoli program spadne, nepomaha ani rezim kompatibility
bohuzel pri otevreni programu a kliknuti na cokoli program spadne, nepomaha ani rezim kompatibility
Re: prosím o preventivku, děkuju
No, tak bud tam mate poradnou potvoru, nebo je to systemem, ci tim diskem
Data zalohujte kazdopadne. S tim diskem vam nepordim. Vadne sektory to sice neukazuje, ale je tam spousta chyb hledani a otresovy senzor taky ukazuje spoustu zaznamu. Ale jak dlouho to bude funkcni tezko rict. Muze to byt 5 minut, ale taky 5 let
Zkusime tedy dalsi nastroj
Pokud nemate, zazalohujte si radeji dulezita data (fotky, dokumenty, atd.)
Nepouzivejte ComboFix bez predchozi domluvy! Je to poruseni pravidel fora a ztratite tim narok na pomoc!
Stahnete ComboFix http://download.bleepingcomputer.com/sUBs/ComboFix.exe a ulozte ho na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Kliknete na ComboFix pravym mysidlem a levym na Spustit jako spravce
Odsouhlaste licencni podminky a nechte program pracovat. Jestli vam nabidne instalaci Konzoly pro zotaveni, souhlaste.
Po dobu skenu nic nespoustejte, nikam neklikejte.
Po dokonceni skenovani (muze dojit i k restartu pc) by se mel vytvorit log, ktery bude umisteny zde C:\ComboFix.txt
Jeho obsah sem zkopirujte
Kdyby po restartu nenabehl windows, restartujte znovu, mackejte klavesu F8 a zvolte - Posledni znama funkcni konfigurace
Kdyz windows nabehne, ale pri spousteni programu bude hlasena chyba, staci restartovat pc a bude to v poradku

Data zalohujte kazdopadne. S tim diskem vam nepordim. Vadne sektory to sice neukazuje, ale je tam spousta chyb hledani a otresovy senzor taky ukazuje spoustu zaznamu. Ale jak dlouho to bude funkcni tezko rict. Muze to byt 5 minut, ale taky 5 let

Zkusime tedy dalsi nastroj




Vypnete antivir i dalsi pripadne zabezpeceni.
Kliknete na ComboFix pravym mysidlem a levym na Spustit jako spravce
Odsouhlaste licencni podminky a nechte program pracovat. Jestli vam nabidne instalaci Konzoly pro zotaveni, souhlaste.
Po dobu skenu nic nespoustejte, nikam neklikejte.
Po dokonceni skenovani (muze dojit i k restartu pc) by se mel vytvorit log, ktery bude umisteny zde C:\ComboFix.txt
Jeho obsah sem zkopirujte


Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: prosím o preventivku, děkuju
slo to jenom v nouzovem rezimu, potom nejel internet, pomohlo obnoveni
ComboFix 13-02-02.05 - Home 02.02.2013 22:41:50.6.2 - x86 MINIMAL
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3071.2158 [GMT 1:00]
Spuštěný z: c:\users\Home\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
FW: COMODO Firewall *Enabled* {7DB03214-694B-060B-1600-BD4715C36DBB}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: COMODO Defense+ *Disabled/Updated* {FEEA52D5-051E-08DD-07EF-2F009097607D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\msvcr71.dll
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_NPF
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-01-02 do 2013-02-02 )))))))))))))))))))))))))))))))
.
.
2013-02-02 21:49 . 2013-02-02 21:55 -------- d-----w- c:\users\Home\AppData\Local\temp
2013-02-02 21:49 . 2013-02-02 21:49 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-02-02 21:49 . 2013-02-02 21:49 -------- d-----w- c:\users\Public\AppData\Local\temp
2013-02-02 21:49 . 2013-02-02 21:49 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-02-02 21:49 . 2013-02-02 21:49 -------- d-----w- c:\users\Administrator\AppData\Local\temp
2013-02-02 20:29 . 2013-02-02 20:47 15616 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2013-02-02 20:24 . 2013-02-02 20:24 -------- d-----w- c:\programdata\Drivers.com
2013-02-02 19:45 . 2013-02-02 19:45 -------- d-----w- C:\_OTM
2013-02-02 13:54 . 2010-06-02 03:55 74072 ----a-w- c:\windows\system32\XAPOFX1_5.dll
2013-02-02 13:54 . 2010-06-02 03:55 527192 ----a-w- c:\windows\system32\XAudio2_7.dll
2013-02-02 13:54 . 2010-06-02 03:55 239960 ----a-w- c:\windows\system32\xactengine3_7.dll
2013-02-02 13:54 . 2010-05-26 10:41 1868128 ----a-w- c:\windows\system32\d3dcsx_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 470880 ----a-w- c:\windows\system32\d3dx10_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 248672 ----a-w- c:\windows\system32\d3dx11_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 1998168 ----a-w- c:\windows\system32\D3DX9_43.dll
2013-02-02 10:13 . 2013-02-02 13:48 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2013-02-02 08:52 . 2012-10-30 22:51 361032 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-02-02 08:52 . 2012-10-30 22:51 21256 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-02-02 08:52 . 2012-10-15 16:59 44784 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-02-02 08:52 . 2012-10-30 22:51 54232 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-02-02 08:52 . 2012-10-30 22:51 738504 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-02-02 08:52 . 2012-10-30 22:51 58680 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-02-02 08:52 . 2012-10-30 22:51 41224 ----a-w- c:\windows\avastSS.scr
2013-02-02 08:52 . 2012-10-30 22:50 227648 ----a-w- c:\windows\system32\aswBoot.exe
2013-02-02 08:42 . 2013-02-02 08:42 -------- d-----w- c:\users\Home\AppData\Local\Innovative Solutions
2013-02-01 22:37 . 2013-02-02 08:20 -------- d-----w- C:\found.001
2013-02-01 11:01 . 2013-01-08 04:57 6991832 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{C056C1A8-3731-4525-83B2-EE31CDF21B21}\mpengine.dll
2013-01-28 17:12 . 2013-01-28 17:12 -------- d-----w- c:\windows\Sun
2013-01-28 17:10 . 2013-01-28 17:10 -------- d-----w- c:\program files\Common Files\Java
2013-01-28 17:09 . 2013-01-28 17:09 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-01-17 17:01 . 2013-01-17 17:01 -------- d-----w- c:\program files\Network Stumbler
2013-01-16 18:22 . 2013-01-16 18:22 -------- d-----w- c:\users\Home\AppData\Local\Programs
2013-01-11 18:54 . 2013-01-11 18:54 -------- d-----w- c:\users\Home\Sniff
2013-01-11 09:57 . 2012-11-22 04:45 626688 ----a-w- c:\windows\system32\usp10.dll
2013-01-11 09:55 . 2012-12-07 10:46 43520 ----a-w- c:\windows\system32\csrr.rs
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-02-02 20:52 . 2011-01-08 08:51 45056 ----a-w- c:\windows\system32\acovcnt.exe
2013-02-02 08:35 . 2011-01-08 01:05 319456 ----a-w- c:\windows\DIFxAPI.dll
2013-01-28 17:09 . 2012-08-21 22:18 859552 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-01-28 17:09 . 2011-01-12 19:09 780192 ----a-w- c:\windows\system32\deployJava1.dll
2013-01-17 15:29 . 2012-04-05 09:21 697864 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-01-17 15:29 . 2011-09-16 08:30 74248 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-01-17 00:28 . 2011-01-08 00:04 232336 ------w- c:\windows\system32\MpSigStub.exe
2012-12-16 14:13 . 2012-12-21 13:24 295424 ----a-w- c:\windows\system32\atmfd.dll
2012-12-16 14:13 . 2012-12-21 13:24 34304 ----a-w- c:\windows\system32\atmlib.dll
2012-12-14 15:49 . 2012-03-02 22:51 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-11-14 02:09 . 2012-12-13 12:35 1800704 ----a-w- c:\windows\system32\jscript9.dll
2012-11-14 01:58 . 2012-12-13 12:35 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-11-14 01:57 . 2012-12-13 12:35 1129472 ----a-w- c:\windows\system32\wininet.dll
2012-11-14 01:49 . 2012-12-13 12:35 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2012-11-14 01:48 . 2012-12-13 12:35 420864 ----a-w- c:\windows\system32\vbscript.dll
2012-11-14 01:44 . 2012-12-13 12:35 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-11-09 04:42 . 2012-12-13 12:29 2048 ----a-w- c:\windows\system32\tzres.dll
2012-11-07 23:37 . 2010-12-29 00:41 82952 ----a-w- c:\windows\system32\drivers\inspect.sys
2012-11-07 23:37 . 2010-12-29 00:41 36072 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
2012-11-07 23:37 . 2010-12-29 00:41 494416 ----a-w- c:\windows\system32\drivers\cmdGuard.sys
2012-11-07 23:37 . 2010-12-29 00:41 19632 ----a-w- c:\windows\system32\drivers\cmderd.sys
2012-11-07 23:37 . 2011-10-19 18:11 34024 ----a-w- c:\windows\system32\cmdcsr.dll
2012-11-07 23:37 . 2010-12-29 00:42 301264 ----a-w- c:\windows\system32\guard32.dll
2013-01-24 16:36 . 2013-01-24 16:36 262552 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-10-30 22:50 121528 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"="c:\program files\COMODO\COMODO Internet Security\cfp.exe" [2012-11-07 6756048]
"ATKOSD2"="c:\program files\ATKOSD2\ATKOSD2.exe" [2007-10-17 7737344]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-12-06 1029416]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2007-03-20 36864]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-06-04 186904]
"IaNvSrv"="c:\program files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvSrv.exe" [2009-07-13 33304]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-11-28 59280]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-12-12 152544]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-12-03 946352]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-07-03 252848]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-10-30 4297136]
"SMSERIAL"="c:\program files\Motorola\SMSERIAL\sm56hlpr.exe" [2009-05-05 1466368]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2012-06-11 10996368]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-09-05 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 22:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\guard32.dll c:\windows\System32\guard32.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
backup=c:\windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
backupExtension=.CommonStartup
.
[HKLM\~\startupfolder\C:^Users^Home^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^_uninst_62732465.lnk]
path=c:\users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\_uninst_62732465.lnk
backup=c:\windows\pss\_uninst_62732465.lnk.Startup
backupExtension=.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
2008-07-22 17:33 150528 ----a-w- c:\program files\HP\Digital Imaging\bin\HpqSRmon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2012-12-12 12:57 152544 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware]
2012-12-14 15:49 512360 ----a-w- c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe
.
R3 CFcatchme;CFcatchme;c:\users\Home\AppData\Local\Temp\CFcatchme.sys [x]
R3 Netaapl;Apple Mobile Device Ethernet Service;c:\windows\system32\DRIVERS\netaapl.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 iaNvStor;Intel(R) Turbo Memory Controller;c:\windows\system32\DRIVERS\iaNvStor.sys [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\DRIVERS\cmdguard.sys [x]
S1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\DRIVERS\cmdhlp.sys [x]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [x]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [x]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista;c:\windows\system32\DRIVERS\netw5v32.sys [x]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x86.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
GPSvcGroup REG_MULTI_SZ GPSvc
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.cz/
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
Trusted Zone: mojebanka.cz
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
TCP: DhcpNameServer = 10.0.0.138
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\02960586F6E6560243: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\2456C6B696E6F5E4F575962756C6563737F5333313438324: NameServer = 156.154.70.25,156.154.71.25
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\44D2C696E6B6: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\651305732427E6F6: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{DBB461A5-3A64-464D-9B14-96961794DF7A}: NameServer = 8.26.56.26,156.154.70.22
FF - ProfilePath - c:\users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\njqu423u.default\
FF - prefs.js: browser.startup.homepage - hxxp://news.google.cz/nwshp?client=firefox-a&rls=org.mozilla:cs:official&hl=cs&tab=wn
FF - prefs.js: network.proxy.gopher -
FF - prefs.js: network.proxy.gopher_port - 0
FF - prefs.js: network.proxy.type - 0
FF - ExtSQL: 2013-02-02 09:55; wrc@avast.com; c:\program files\AVAST Software\Avast\WebRep\FF
FF - ExtSQL: !HIDDEN! 2011-01-10 00:29; smartwebprinting@hp.com; c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
MSConfigStartUp-DAEMON Tools Lite - c:\program files\DAEMON Tools Lite\DTLite.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'lsass.exe'(708)
c:\windows\system32\guard32.dll
.
- - - - - - - > 'Explorer.exe'(672)
c:\windows\system32\guard32.dll
c:\windows\System32\srchadmin.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\COMODO\COMODO Internet Security\cmdagent.exe
c:\program files\ATK Hotkey\ASLDRSrv.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\windows\system32\taskhost.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\System32\rundll32.exe
c:\program files\ATK Hotkey\Hcontrol.exe
c:\program files\ATK Hotkey\MsgTranAgt.exe
c:\program files\ATK Hotkey\ATKOSD.exe
c:\program files\Wireless Console 2\wcourier.exe
c:\program files\ATK Hotkey\KBFiltr.exe
c:\program files\P4G\BatteryLife.exe
c:\windows\system32\conhost.exe
c:\program files\ATK Hotkey\WDC.exe
c:\program files\ASUS\Splendid\ACMON.exe
c:\windows\System32\ACEngSvr.exe
c:\windows\servicing\TrustedInstaller.exe
.
**************************************************************************
.
Celkový čas: 2013-02-02 23:01:19 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-02-02 22:01
.
Před spuštěním: Volných bajtů: 194 723 647 488
Po spuštění: Volných bajtů: 194 401 476 608
.
- - End Of File - - D086B2622A6868F040238823B07B4A3A
ComboFix 13-02-02.05 - Home 02.02.2013 22:41:50.6.2 - x86 MINIMAL
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3071.2158 [GMT 1:00]
Spuštěný z: c:\users\Home\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
FW: COMODO Firewall *Enabled* {7DB03214-694B-060B-1600-BD4715C36DBB}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: COMODO Defense+ *Disabled/Updated* {FEEA52D5-051E-08DD-07EF-2F009097607D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\msvcr71.dll
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_NPF
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-01-02 do 2013-02-02 )))))))))))))))))))))))))))))))
.
.
2013-02-02 21:49 . 2013-02-02 21:55 -------- d-----w- c:\users\Home\AppData\Local\temp
2013-02-02 21:49 . 2013-02-02 21:49 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-02-02 21:49 . 2013-02-02 21:49 -------- d-----w- c:\users\Public\AppData\Local\temp
2013-02-02 21:49 . 2013-02-02 21:49 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-02-02 21:49 . 2013-02-02 21:49 -------- d-----w- c:\users\Administrator\AppData\Local\temp
2013-02-02 20:29 . 2013-02-02 20:47 15616 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2013-02-02 20:24 . 2013-02-02 20:24 -------- d-----w- c:\programdata\Drivers.com
2013-02-02 19:45 . 2013-02-02 19:45 -------- d-----w- C:\_OTM
2013-02-02 13:54 . 2010-06-02 03:55 74072 ----a-w- c:\windows\system32\XAPOFX1_5.dll
2013-02-02 13:54 . 2010-06-02 03:55 527192 ----a-w- c:\windows\system32\XAudio2_7.dll
2013-02-02 13:54 . 2010-06-02 03:55 239960 ----a-w- c:\windows\system32\xactengine3_7.dll
2013-02-02 13:54 . 2010-05-26 10:41 1868128 ----a-w- c:\windows\system32\d3dcsx_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 470880 ----a-w- c:\windows\system32\d3dx10_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 248672 ----a-w- c:\windows\system32\d3dx11_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 1998168 ----a-w- c:\windows\system32\D3DX9_43.dll
2013-02-02 10:13 . 2013-02-02 13:48 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2013-02-02 08:52 . 2012-10-30 22:51 361032 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-02-02 08:52 . 2012-10-30 22:51 21256 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-02-02 08:52 . 2012-10-15 16:59 44784 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-02-02 08:52 . 2012-10-30 22:51 54232 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-02-02 08:52 . 2012-10-30 22:51 738504 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-02-02 08:52 . 2012-10-30 22:51 58680 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-02-02 08:52 . 2012-10-30 22:51 41224 ----a-w- c:\windows\avastSS.scr
2013-02-02 08:52 . 2012-10-30 22:50 227648 ----a-w- c:\windows\system32\aswBoot.exe
2013-02-02 08:42 . 2013-02-02 08:42 -------- d-----w- c:\users\Home\AppData\Local\Innovative Solutions
2013-02-01 22:37 . 2013-02-02 08:20 -------- d-----w- C:\found.001
2013-02-01 11:01 . 2013-01-08 04:57 6991832 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{C056C1A8-3731-4525-83B2-EE31CDF21B21}\mpengine.dll
2013-01-28 17:12 . 2013-01-28 17:12 -------- d-----w- c:\windows\Sun
2013-01-28 17:10 . 2013-01-28 17:10 -------- d-----w- c:\program files\Common Files\Java
2013-01-28 17:09 . 2013-01-28 17:09 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-01-17 17:01 . 2013-01-17 17:01 -------- d-----w- c:\program files\Network Stumbler
2013-01-16 18:22 . 2013-01-16 18:22 -------- d-----w- c:\users\Home\AppData\Local\Programs
2013-01-11 18:54 . 2013-01-11 18:54 -------- d-----w- c:\users\Home\Sniff
2013-01-11 09:57 . 2012-11-22 04:45 626688 ----a-w- c:\windows\system32\usp10.dll
2013-01-11 09:55 . 2012-12-07 10:46 43520 ----a-w- c:\windows\system32\csrr.rs
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-02-02 20:52 . 2011-01-08 08:51 45056 ----a-w- c:\windows\system32\acovcnt.exe
2013-02-02 08:35 . 2011-01-08 01:05 319456 ----a-w- c:\windows\DIFxAPI.dll
2013-01-28 17:09 . 2012-08-21 22:18 859552 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-01-28 17:09 . 2011-01-12 19:09 780192 ----a-w- c:\windows\system32\deployJava1.dll
2013-01-17 15:29 . 2012-04-05 09:21 697864 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-01-17 15:29 . 2011-09-16 08:30 74248 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-01-17 00:28 . 2011-01-08 00:04 232336 ------w- c:\windows\system32\MpSigStub.exe
2012-12-16 14:13 . 2012-12-21 13:24 295424 ----a-w- c:\windows\system32\atmfd.dll
2012-12-16 14:13 . 2012-12-21 13:24 34304 ----a-w- c:\windows\system32\atmlib.dll
2012-12-14 15:49 . 2012-03-02 22:51 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-11-14 02:09 . 2012-12-13 12:35 1800704 ----a-w- c:\windows\system32\jscript9.dll
2012-11-14 01:58 . 2012-12-13 12:35 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-11-14 01:57 . 2012-12-13 12:35 1129472 ----a-w- c:\windows\system32\wininet.dll
2012-11-14 01:49 . 2012-12-13 12:35 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2012-11-14 01:48 . 2012-12-13 12:35 420864 ----a-w- c:\windows\system32\vbscript.dll
2012-11-14 01:44 . 2012-12-13 12:35 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-11-09 04:42 . 2012-12-13 12:29 2048 ----a-w- c:\windows\system32\tzres.dll
2012-11-07 23:37 . 2010-12-29 00:41 82952 ----a-w- c:\windows\system32\drivers\inspect.sys
2012-11-07 23:37 . 2010-12-29 00:41 36072 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
2012-11-07 23:37 . 2010-12-29 00:41 494416 ----a-w- c:\windows\system32\drivers\cmdGuard.sys
2012-11-07 23:37 . 2010-12-29 00:41 19632 ----a-w- c:\windows\system32\drivers\cmderd.sys
2012-11-07 23:37 . 2011-10-19 18:11 34024 ----a-w- c:\windows\system32\cmdcsr.dll
2012-11-07 23:37 . 2010-12-29 00:42 301264 ----a-w- c:\windows\system32\guard32.dll
2013-01-24 16:36 . 2013-01-24 16:36 262552 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-10-30 22:50 121528 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"="c:\program files\COMODO\COMODO Internet Security\cfp.exe" [2012-11-07 6756048]
"ATKOSD2"="c:\program files\ATKOSD2\ATKOSD2.exe" [2007-10-17 7737344]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-12-06 1029416]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2007-03-20 36864]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-06-04 186904]
"IaNvSrv"="c:\program files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvSrv.exe" [2009-07-13 33304]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-11-28 59280]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-12-12 152544]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-12-03 946352]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-07-03 252848]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-10-30 4297136]
"SMSERIAL"="c:\program files\Motorola\SMSERIAL\sm56hlpr.exe" [2009-05-05 1466368]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2012-06-11 10996368]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-09-05 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 22:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\guard32.dll c:\windows\System32\guard32.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
backup=c:\windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
backupExtension=.CommonStartup
.
[HKLM\~\startupfolder\C:^Users^Home^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^_uninst_62732465.lnk]
path=c:\users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\_uninst_62732465.lnk
backup=c:\windows\pss\_uninst_62732465.lnk.Startup
backupExtension=.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
2008-07-22 17:33 150528 ----a-w- c:\program files\HP\Digital Imaging\bin\HpqSRmon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2012-12-12 12:57 152544 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware]
2012-12-14 15:49 512360 ----a-w- c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe
.
R3 CFcatchme;CFcatchme;c:\users\Home\AppData\Local\Temp\CFcatchme.sys [x]
R3 Netaapl;Apple Mobile Device Ethernet Service;c:\windows\system32\DRIVERS\netaapl.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 iaNvStor;Intel(R) Turbo Memory Controller;c:\windows\system32\DRIVERS\iaNvStor.sys [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\DRIVERS\cmdguard.sys [x]
S1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\DRIVERS\cmdhlp.sys [x]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [x]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [x]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista;c:\windows\system32\DRIVERS\netw5v32.sys [x]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x86.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
GPSvcGroup REG_MULTI_SZ GPSvc
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.cz/
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
Trusted Zone: mojebanka.cz
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
TCP: DhcpNameServer = 10.0.0.138
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\02960586F6E6560243: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\2456C6B696E6F5E4F575962756C6563737F5333313438324: NameServer = 156.154.70.25,156.154.71.25
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\44D2C696E6B6: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\651305732427E6F6: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{DBB461A5-3A64-464D-9B14-96961794DF7A}: NameServer = 8.26.56.26,156.154.70.22
FF - ProfilePath - c:\users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\njqu423u.default\
FF - prefs.js: browser.startup.homepage - hxxp://news.google.cz/nwshp?client=firefox-a&rls=org.mozilla:cs:official&hl=cs&tab=wn
FF - prefs.js: network.proxy.gopher -
FF - prefs.js: network.proxy.gopher_port - 0
FF - prefs.js: network.proxy.type - 0
FF - ExtSQL: 2013-02-02 09:55; wrc@avast.com; c:\program files\AVAST Software\Avast\WebRep\FF
FF - ExtSQL: !HIDDEN! 2011-01-10 00:29; smartwebprinting@hp.com; c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
MSConfigStartUp-DAEMON Tools Lite - c:\program files\DAEMON Tools Lite\DTLite.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'lsass.exe'(708)
c:\windows\system32\guard32.dll
.
- - - - - - - > 'Explorer.exe'(672)
c:\windows\system32\guard32.dll
c:\windows\System32\srchadmin.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\COMODO\COMODO Internet Security\cmdagent.exe
c:\program files\ATK Hotkey\ASLDRSrv.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\windows\system32\taskhost.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\System32\rundll32.exe
c:\program files\ATK Hotkey\Hcontrol.exe
c:\program files\ATK Hotkey\MsgTranAgt.exe
c:\program files\ATK Hotkey\ATKOSD.exe
c:\program files\Wireless Console 2\wcourier.exe
c:\program files\ATK Hotkey\KBFiltr.exe
c:\program files\P4G\BatteryLife.exe
c:\windows\system32\conhost.exe
c:\program files\ATK Hotkey\WDC.exe
c:\program files\ASUS\Splendid\ACMON.exe
c:\windows\System32\ACEngSvr.exe
c:\windows\servicing\TrustedInstaller.exe
.
**************************************************************************
.
Celkový čas: 2013-02-02 23:01:19 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-02-02 22:01
.
Před spuštěním: Volných bajtů: 194 723 647 488
Po spuštění: Volných bajtů: 194 401 476 608
.
- - End Of File - - D086B2622A6868F040238823B07B4A3A
Re: prosím o preventivku, děkuju
posilam screen toho roguekillera jak se sekne, jde tam trosku videt, ze to naslo nejake problemy (sken delan po dobehnuti combofixe)
- Přílohy
-
- rk.jpg (90.65 KiB) Zobrazeno 1112 x
Re: prosím o preventivku, děkuju

Kód: Vybrat vše
KillAll::
DDS::
Trusted Zone: mojebanka.cz
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=-
"SunJavaUpdateSched"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware]
RegLock::
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
Firefox::
FF - ProfilePath - c:\users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\njqu423u.default\
FF - prefs.js: network.proxy.gopher -
FF - prefs.js: network.proxy.gopher_port - 0
FF - prefs.js: network.proxy.type - 0
Reboot::
Kliknete na napis Ulozit jako...
Napiste spravne ten cerveny nazev CFScript a ulozte na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Pretahntete mysi tento vytvoreny textovy dokument nad ikonu ComboFix a pustte.
ComboFix by se mel spustit a vykonat prikazy.
Az skonci (muze dojit k restartu pc), mel by se objevit novy log, ten mi sem zase zkopirujte.


Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: prosím o preventivku, děkuju
ComboFix 13-02-02.05 - Home 03.02.2013 12:59:32.5.2 - x86 NETWORK
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3071.2102 [GMT 1:00]
Spuštěný z: c:\users\Home\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Home\Desktop\CFScript.TXT
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
FW: COMODO Firewall *Enabled* {7DB03214-694B-060B-1600-BD4715C36DBB}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: COMODO Defense+ *Enabled/Updated* {FEEA52D5-051E-08DD-07EF-2F009097607D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\msvcr71.dll
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_NPF
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-01-03 do 2013-02-03 )))))))))))))))))))))))))))))))
.
.
2013-02-03 12:06 . 2013-02-03 12:09 -------- d-----w- c:\users\Home\AppData\Local\temp
2013-02-03 12:06 . 2013-02-03 12:06 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-02-03 12:06 . 2013-02-03 12:06 -------- d-----w- c:\users\Public\AppData\Local\temp
2013-02-03 12:06 . 2013-02-03 12:06 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-02-03 12:06 . 2013-02-03 12:06 -------- d-----w- c:\users\Administrator\AppData\Local\temp
2013-02-02 22:59 . 2013-02-02 23:24 -------- d-----w- c:\users\Home\Doctor Web
2013-02-02 22:23 . 2013-02-02 22:23 -------- d-----w- c:\program files\Symform
2013-02-02 20:29 . 2013-02-02 22:35 15616 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2013-02-02 20:24 . 2013-02-02 22:16 -------- d-----w- c:\users\Home\AppData\Local\PC_Drivers_Headquarters
2013-02-02 20:24 . 2013-02-02 20:24 -------- d-----w- c:\programdata\Drivers.com
2013-02-02 20:23 . 2013-02-02 22:16 -------- d-----w- c:\program files\Drivers.com
2013-02-02 19:45 . 2013-02-02 19:45 -------- d-----w- C:\_OTM
2013-02-02 13:54 . 2010-06-02 03:55 74072 ----a-w- c:\windows\system32\XAPOFX1_5.dll
2013-02-02 13:54 . 2010-06-02 03:55 527192 ----a-w- c:\windows\system32\XAudio2_7.dll
2013-02-02 13:54 . 2010-06-02 03:55 239960 ----a-w- c:\windows\system32\xactengine3_7.dll
2013-02-02 13:54 . 2010-05-26 10:41 1868128 ----a-w- c:\windows\system32\d3dcsx_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 470880 ----a-w- c:\windows\system32\d3dx10_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 248672 ----a-w- c:\windows\system32\d3dx11_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 1998168 ----a-w- c:\windows\system32\D3DX9_43.dll
2013-02-02 10:13 . 2013-02-02 13:48 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2013-02-02 08:52 . 2012-10-30 22:51 361032 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-02-02 08:52 . 2012-10-30 22:51 21256 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-02-02 08:52 . 2012-10-15 16:59 44784 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-02-02 08:52 . 2012-10-30 22:51 54232 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-02-02 08:52 . 2012-10-30 22:51 738504 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-02-02 08:52 . 2012-10-30 22:51 58680 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-02-02 08:52 . 2012-10-30 22:51 41224 ----a-w- c:\windows\avastSS.scr
2013-02-02 08:52 . 2012-10-30 22:50 227648 ----a-w- c:\windows\system32\aswBoot.exe
2013-02-02 08:42 . 2013-02-02 08:42 -------- d-----w- c:\users\Home\AppData\Local\Innovative Solutions
2013-02-01 22:37 . 2013-02-02 08:20 -------- d-----w- C:\found.001
2013-02-01 22:01 . 2013-02-02 22:16 -------- d-----w- c:\users\Home\AppData\Local\ElevatedDiagnostics
2013-02-01 11:01 . 2013-01-08 04:57 6991832 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{C056C1A8-3731-4525-83B2-EE31CDF21B21}\mpengine.dll
2013-01-28 17:12 . 2013-01-28 17:12 -------- d-----w- c:\windows\Sun
2013-01-28 17:10 . 2013-01-28 17:10 -------- d-----w- c:\program files\Common Files\Java
2013-01-28 17:09 . 2013-01-28 17:09 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-01-17 17:01 . 2013-01-17 17:01 -------- d-----w- c:\program files\Network Stumbler
2013-01-16 18:22 . 2013-01-16 18:22 -------- d-----w- c:\users\Home\AppData\Local\Programs
2013-01-11 09:57 . 2012-11-22 04:45 626688 ----a-w- c:\windows\system32\usp10.dll
2013-01-11 09:55 . 2012-12-07 10:46 43520 ----a-w- c:\windows\system32\csrr.rs
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-02-03 12:08 . 2011-01-08 08:51 45056 ----a-w- c:\windows\system32\acovcnt.exe
2013-02-02 08:35 . 2011-01-08 01:05 319456 ----a-w- c:\windows\DIFxAPI.dll
2013-01-28 17:09 . 2012-08-21 22:18 859552 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-01-28 17:09 . 2011-01-12 19:09 780192 ----a-w- c:\windows\system32\deployJava1.dll
2013-01-17 15:29 . 2012-04-05 09:21 697864 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-01-17 15:29 . 2011-09-16 08:30 74248 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-01-17 00:28 . 2011-01-08 00:04 232336 ------w- c:\windows\system32\MpSigStub.exe
2012-12-16 14:13 . 2012-12-21 13:24 295424 ----a-w- c:\windows\system32\atmfd.dll
2012-12-16 14:13 . 2012-12-21 13:24 34304 ----a-w- c:\windows\system32\atmlib.dll
2012-12-14 15:49 . 2012-03-02 22:51 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-11-14 02:09 . 2012-12-13 12:35 1800704 ----a-w- c:\windows\system32\jscript9.dll
2012-11-14 01:58 . 2012-12-13 12:35 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-11-14 01:57 . 2012-12-13 12:35 1129472 ----a-w- c:\windows\system32\wininet.dll
2012-11-14 01:49 . 2012-12-13 12:35 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2012-11-14 01:48 . 2012-12-13 12:35 420864 ----a-w- c:\windows\system32\vbscript.dll
2012-11-14 01:44 . 2012-12-13 12:35 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-11-09 04:42 . 2012-12-13 12:29 2048 ----a-w- c:\windows\system32\tzres.dll
2012-11-07 23:37 . 2010-12-29 00:41 82952 ----a-w- c:\windows\system32\drivers\inspect.sys
2012-11-07 23:37 . 2010-12-29 00:41 36072 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
2012-11-07 23:37 . 2010-12-29 00:41 494416 ----a-w- c:\windows\system32\drivers\cmdGuard.sys
2012-11-07 23:37 . 2010-12-29 00:41 19632 ----a-w- c:\windows\system32\drivers\cmderd.sys
2012-11-07 23:37 . 2011-10-19 18:11 34024 ----a-w- c:\windows\system32\cmdcsr.dll
2012-11-07 23:37 . 2010-12-29 00:42 301264 ----a-w- c:\windows\system32\guard32.dll
2013-01-24 16:36 . 2013-01-24 16:36 262552 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-10-30 22:50 121528 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"="c:\program files\COMODO\COMODO Internet Security\cfp.exe" [2012-11-07 6756048]
"ATKOSD2"="c:\program files\ATKOSD2\ATKOSD2.exe" [2007-10-17 7737344]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-12-06 1029416]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2007-03-20 36864]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-06-04 186904]
"IaNvSrv"="c:\program files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvSrv.exe" [2009-07-13 33304]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-11-28 59280]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-12-12 152544]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-10-30 4297136]
"SMSERIAL"="c:\program files\Motorola\SMSERIAL\sm56hlpr.exe" [2009-05-05 1466368]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2012-06-11 10996368]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-09-05 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 22:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\guard32.dll c:\windows\System32\guard32.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
backup=c:\windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
backupExtension=.CommonStartup
.
[HKLM\~\startupfolder\C:^Users^Home^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^_uninst_62732465.lnk]
path=c:\users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\_uninst_62732465.lnk
backup=c:\windows\pss\_uninst_62732465.lnk.Startup
backupExtension=.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
c:\program files\DAEMON Tools Lite\DTLite.exe [BU]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
2008-07-22 17:33 150528 ----a-w- c:\program files\HP\Digital Imaging\bin\HpqSRmon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2012-12-12 12:57 152544 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
R3 CFcatchme;CFcatchme;c:\users\Home\AppData\Local\Temp\CFcatchme.sys [x]
R3 Netaapl;Apple Mobile Device Ethernet Service;c:\windows\system32\DRIVERS\netaapl.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 iaNvStor;Intel(R) Turbo Memory Controller;c:\windows\system32\DRIVERS\iaNvStor.sys [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\DRIVERS\cmdguard.sys [x]
S1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\DRIVERS\cmdhlp.sys [x]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [x]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [x]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 symformcontrib;Symform Contribution Service;c:\program files\Symform\Node Service\symformcontrib.exe [x]
S2 symformsync;Symform Synchronization Service;c:\program files\Symform\Node Service\symformsync.exe [x]
S2 symformupdater;Symform Software Updater Service;c:\program files\Symform\Node Service\symformupdater.exe [x]
S3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista;c:\windows\system32\DRIVERS\netw5v32.sys [x]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x86.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
GPSvcGroup REG_MULTI_SZ GPSvc
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.cz/
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 10.0.0.138
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\02960586F6E6560243: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\2456C6B696E6F5E4F575962756C6563737F5333313438324: NameServer = 156.154.70.25,156.154.71.25
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\44D2C696E6B6: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\651305732427E6F6: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{DBB461A5-3A64-464D-9B14-96961794DF7A}: NameServer = 8.26.56.26,156.154.70.22
FF - ProfilePath - c:\users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\njqu423u.default\
FF - prefs.js: browser.startup.homepage - hxxp://news.google.cz/nwshp?client=firefox-a&rls=org.mozilla:cs:official&hl=cs&tab=wn
FF - ExtSQL: 2013-02-02 09:55; wrc@avast.com; c:\program files\AVAST Software\Avast\WebRep\FF
FF - ExtSQL: !HIDDEN! 2011-01-10 00:29; smartwebprinting@hp.com; c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'lsass.exe'(700)
c:\windows\system32\guard32.dll
.
- - - - - - - > 'Explorer.exe'(2812)
c:\windows\system32\guard32.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\COMODO\COMODO Internet Security\cmdagent.exe
c:\program files\ATK Hotkey\ASLDRSrv.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\taskhost.exe
c:\program files\ATK Hotkey\Hcontrol.exe
c:\program files\ATK Hotkey\MsgTranAgt.exe
c:\program files\Wireless Console 2\wcourier.exe
c:\program files\P4G\BatteryLife.exe
c:\program files\ASUS\Splendid\ACMON.exe
c:\windows\System32\ACEngSvr.exe
c:\program files\ATK Hotkey\ATKOSD.exe
c:\windows\System32\rundll32.exe
c:\program files\ATK Hotkey\KBFiltr.exe
c:\program files\ATK Hotkey\WDC.exe
c:\windows\system32\conhost.exe
c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
c:\windows\system32\sppsvc.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
.
**************************************************************************
.
Celkový čas: 2013-02-03 13:14:22 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-02-03 12:14
ComboFix2.txt 2013-02-02 22:01
.
Před spuštěním: Volných bajtů: 194 754 105 344
Po spuštění: Volných bajtů: 194 111 766 528
.
- - End Of File - - A239C199CF31A77BACE6C55560CBAFFB
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3071.2102 [GMT 1:00]
Spuštěný z: c:\users\Home\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Home\Desktop\CFScript.TXT
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
FW: COMODO Firewall *Enabled* {7DB03214-694B-060B-1600-BD4715C36DBB}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: COMODO Defense+ *Enabled/Updated* {FEEA52D5-051E-08DD-07EF-2F009097607D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\msvcr71.dll
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_NPF
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-01-03 do 2013-02-03 )))))))))))))))))))))))))))))))
.
.
2013-02-03 12:06 . 2013-02-03 12:09 -------- d-----w- c:\users\Home\AppData\Local\temp
2013-02-03 12:06 . 2013-02-03 12:06 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-02-03 12:06 . 2013-02-03 12:06 -------- d-----w- c:\users\Public\AppData\Local\temp
2013-02-03 12:06 . 2013-02-03 12:06 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-02-03 12:06 . 2013-02-03 12:06 -------- d-----w- c:\users\Administrator\AppData\Local\temp
2013-02-02 22:59 . 2013-02-02 23:24 -------- d-----w- c:\users\Home\Doctor Web
2013-02-02 22:23 . 2013-02-02 22:23 -------- d-----w- c:\program files\Symform
2013-02-02 20:29 . 2013-02-02 22:35 15616 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2013-02-02 20:24 . 2013-02-02 22:16 -------- d-----w- c:\users\Home\AppData\Local\PC_Drivers_Headquarters
2013-02-02 20:24 . 2013-02-02 20:24 -------- d-----w- c:\programdata\Drivers.com
2013-02-02 20:23 . 2013-02-02 22:16 -------- d-----w- c:\program files\Drivers.com
2013-02-02 19:45 . 2013-02-02 19:45 -------- d-----w- C:\_OTM
2013-02-02 13:54 . 2010-06-02 03:55 74072 ----a-w- c:\windows\system32\XAPOFX1_5.dll
2013-02-02 13:54 . 2010-06-02 03:55 527192 ----a-w- c:\windows\system32\XAudio2_7.dll
2013-02-02 13:54 . 2010-06-02 03:55 239960 ----a-w- c:\windows\system32\xactengine3_7.dll
2013-02-02 13:54 . 2010-05-26 10:41 1868128 ----a-w- c:\windows\system32\d3dcsx_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 470880 ----a-w- c:\windows\system32\d3dx10_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 248672 ----a-w- c:\windows\system32\d3dx11_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 1998168 ----a-w- c:\windows\system32\D3DX9_43.dll
2013-02-02 10:13 . 2013-02-02 13:48 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2013-02-02 08:52 . 2012-10-30 22:51 361032 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-02-02 08:52 . 2012-10-30 22:51 21256 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-02-02 08:52 . 2012-10-15 16:59 44784 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-02-02 08:52 . 2012-10-30 22:51 54232 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-02-02 08:52 . 2012-10-30 22:51 738504 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-02-02 08:52 . 2012-10-30 22:51 58680 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-02-02 08:52 . 2012-10-30 22:51 41224 ----a-w- c:\windows\avastSS.scr
2013-02-02 08:52 . 2012-10-30 22:50 227648 ----a-w- c:\windows\system32\aswBoot.exe
2013-02-02 08:42 . 2013-02-02 08:42 -------- d-----w- c:\users\Home\AppData\Local\Innovative Solutions
2013-02-01 22:37 . 2013-02-02 08:20 -------- d-----w- C:\found.001
2013-02-01 22:01 . 2013-02-02 22:16 -------- d-----w- c:\users\Home\AppData\Local\ElevatedDiagnostics
2013-02-01 11:01 . 2013-01-08 04:57 6991832 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{C056C1A8-3731-4525-83B2-EE31CDF21B21}\mpengine.dll
2013-01-28 17:12 . 2013-01-28 17:12 -------- d-----w- c:\windows\Sun
2013-01-28 17:10 . 2013-01-28 17:10 -------- d-----w- c:\program files\Common Files\Java
2013-01-28 17:09 . 2013-01-28 17:09 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-01-17 17:01 . 2013-01-17 17:01 -------- d-----w- c:\program files\Network Stumbler
2013-01-16 18:22 . 2013-01-16 18:22 -------- d-----w- c:\users\Home\AppData\Local\Programs
2013-01-11 09:57 . 2012-11-22 04:45 626688 ----a-w- c:\windows\system32\usp10.dll
2013-01-11 09:55 . 2012-12-07 10:46 43520 ----a-w- c:\windows\system32\csrr.rs
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-02-03 12:08 . 2011-01-08 08:51 45056 ----a-w- c:\windows\system32\acovcnt.exe
2013-02-02 08:35 . 2011-01-08 01:05 319456 ----a-w- c:\windows\DIFxAPI.dll
2013-01-28 17:09 . 2012-08-21 22:18 859552 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-01-28 17:09 . 2011-01-12 19:09 780192 ----a-w- c:\windows\system32\deployJava1.dll
2013-01-17 15:29 . 2012-04-05 09:21 697864 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-01-17 15:29 . 2011-09-16 08:30 74248 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-01-17 00:28 . 2011-01-08 00:04 232336 ------w- c:\windows\system32\MpSigStub.exe
2012-12-16 14:13 . 2012-12-21 13:24 295424 ----a-w- c:\windows\system32\atmfd.dll
2012-12-16 14:13 . 2012-12-21 13:24 34304 ----a-w- c:\windows\system32\atmlib.dll
2012-12-14 15:49 . 2012-03-02 22:51 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-11-14 02:09 . 2012-12-13 12:35 1800704 ----a-w- c:\windows\system32\jscript9.dll
2012-11-14 01:58 . 2012-12-13 12:35 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-11-14 01:57 . 2012-12-13 12:35 1129472 ----a-w- c:\windows\system32\wininet.dll
2012-11-14 01:49 . 2012-12-13 12:35 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2012-11-14 01:48 . 2012-12-13 12:35 420864 ----a-w- c:\windows\system32\vbscript.dll
2012-11-14 01:44 . 2012-12-13 12:35 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-11-09 04:42 . 2012-12-13 12:29 2048 ----a-w- c:\windows\system32\tzres.dll
2012-11-07 23:37 . 2010-12-29 00:41 82952 ----a-w- c:\windows\system32\drivers\inspect.sys
2012-11-07 23:37 . 2010-12-29 00:41 36072 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
2012-11-07 23:37 . 2010-12-29 00:41 494416 ----a-w- c:\windows\system32\drivers\cmdGuard.sys
2012-11-07 23:37 . 2010-12-29 00:41 19632 ----a-w- c:\windows\system32\drivers\cmderd.sys
2012-11-07 23:37 . 2011-10-19 18:11 34024 ----a-w- c:\windows\system32\cmdcsr.dll
2012-11-07 23:37 . 2010-12-29 00:42 301264 ----a-w- c:\windows\system32\guard32.dll
2013-01-24 16:36 . 2013-01-24 16:36 262552 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-10-30 22:50 121528 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"="c:\program files\COMODO\COMODO Internet Security\cfp.exe" [2012-11-07 6756048]
"ATKOSD2"="c:\program files\ATKOSD2\ATKOSD2.exe" [2007-10-17 7737344]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-12-06 1029416]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2007-03-20 36864]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-06-04 186904]
"IaNvSrv"="c:\program files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvSrv.exe" [2009-07-13 33304]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-11-28 59280]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-12-12 152544]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-10-30 4297136]
"SMSERIAL"="c:\program files\Motorola\SMSERIAL\sm56hlpr.exe" [2009-05-05 1466368]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2012-06-11 10996368]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-09-05 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 22:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\guard32.dll c:\windows\System32\guard32.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
backup=c:\windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
backupExtension=.CommonStartup
.
[HKLM\~\startupfolder\C:^Users^Home^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^_uninst_62732465.lnk]
path=c:\users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\_uninst_62732465.lnk
backup=c:\windows\pss\_uninst_62732465.lnk.Startup
backupExtension=.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
c:\program files\DAEMON Tools Lite\DTLite.exe [BU]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
2008-07-22 17:33 150528 ----a-w- c:\program files\HP\Digital Imaging\bin\HpqSRmon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2012-12-12 12:57 152544 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
R3 CFcatchme;CFcatchme;c:\users\Home\AppData\Local\Temp\CFcatchme.sys [x]
R3 Netaapl;Apple Mobile Device Ethernet Service;c:\windows\system32\DRIVERS\netaapl.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 iaNvStor;Intel(R) Turbo Memory Controller;c:\windows\system32\DRIVERS\iaNvStor.sys [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\DRIVERS\cmdguard.sys [x]
S1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\DRIVERS\cmdhlp.sys [x]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [x]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [x]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 symformcontrib;Symform Contribution Service;c:\program files\Symform\Node Service\symformcontrib.exe [x]
S2 symformsync;Symform Synchronization Service;c:\program files\Symform\Node Service\symformsync.exe [x]
S2 symformupdater;Symform Software Updater Service;c:\program files\Symform\Node Service\symformupdater.exe [x]
S3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista;c:\windows\system32\DRIVERS\netw5v32.sys [x]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x86.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
GPSvcGroup REG_MULTI_SZ GPSvc
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.cz/
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 10.0.0.138
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\02960586F6E6560243: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\2456C6B696E6F5E4F575962756C6563737F5333313438324: NameServer = 156.154.70.25,156.154.71.25
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\44D2C696E6B6: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\651305732427E6F6: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{DBB461A5-3A64-464D-9B14-96961794DF7A}: NameServer = 8.26.56.26,156.154.70.22
FF - ProfilePath - c:\users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\njqu423u.default\
FF - prefs.js: browser.startup.homepage - hxxp://news.google.cz/nwshp?client=firefox-a&rls=org.mozilla:cs:official&hl=cs&tab=wn
FF - ExtSQL: 2013-02-02 09:55; wrc@avast.com; c:\program files\AVAST Software\Avast\WebRep\FF
FF - ExtSQL: !HIDDEN! 2011-01-10 00:29; smartwebprinting@hp.com; c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'lsass.exe'(700)
c:\windows\system32\guard32.dll
.
- - - - - - - > 'Explorer.exe'(2812)
c:\windows\system32\guard32.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\COMODO\COMODO Internet Security\cmdagent.exe
c:\program files\ATK Hotkey\ASLDRSrv.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\taskhost.exe
c:\program files\ATK Hotkey\Hcontrol.exe
c:\program files\ATK Hotkey\MsgTranAgt.exe
c:\program files\Wireless Console 2\wcourier.exe
c:\program files\P4G\BatteryLife.exe
c:\program files\ASUS\Splendid\ACMON.exe
c:\windows\System32\ACEngSvr.exe
c:\program files\ATK Hotkey\ATKOSD.exe
c:\windows\System32\rundll32.exe
c:\program files\ATK Hotkey\KBFiltr.exe
c:\program files\ATK Hotkey\WDC.exe
c:\windows\system32\conhost.exe
c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
c:\windows\system32\sppsvc.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
.
**************************************************************************
.
Celkový čas: 2013-02-03 13:14:22 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-02-03 12:14
ComboFix2.txt 2013-02-02 22:01
.
Před spuštěním: Volných bajtů: 194 754 105 344
Po spuštění: Volných bajtů: 194 111 766 528
.
- - End Of File - - A239C199CF31A77BACE6C55560CBAFFB
Re: prosím o preventivku, děkuju

vyosek píše:Stahnete si TDSSKiller http://support.kaspersky.com/downloads/ ... killer.exe
- Kliknete na volbu Change parametrs
- V okne Additional Option zakliknete vsechny moznosti
- Kliknete na OK
- Utilite prikazte, at skenuje - klik na Start Scan
- Po dokonceni skenu se objevi okno, zkontrolujte, zda-li je vsude moznost Skip
- Pokud moznost Skip nebude primarne nastavena, prekliknete ji na Skip
- Pokud mate vsude Skip, kliknete na Continue
- Na disku, kde mate Windows (obvykle c:\) ve tvaru TDSSKiller.nejaka cisilka _log.txt bude log - jeho obsah sem vlozte
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: prosím o preventivku, děkuju
co za havet tam je?
13:30:17.0803 2608 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
13:30:18.0053 2608 ============================================================
13:30:18.0053 2608 Current date / time: 2013/02/03 13:30:18.0053
13:30:18.0053 2608 SystemInfo:
13:30:18.0053 2608
13:30:18.0053 2608 OS Version: 6.1.7601 ServicePack: 1.0
13:30:18.0053 2608 Product type: Workstation
13:30:18.0053 2608 ComputerName: HOME-PC
13:30:18.0053 2608 UserName: Home
13:30:18.0053 2608 Windows directory: C:\Windows
13:30:18.0053 2608 System windows directory: C:\Windows
13:30:18.0053 2608 Processor architecture: Intel x86
13:30:18.0053 2608 Number of processors: 2
13:30:18.0053 2608 Page size: 0x1000
13:30:18.0053 2608 Boot type: Normal boot
13:30:18.0053 2608 ============================================================
13:30:18.0786 2608 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x78A5, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFB, Type 'K0', Flags 0x00000050
13:30:18.0802 2608 ============================================================
13:30:18.0802 2608 \Device\Harddisk0\DR0:
13:30:18.0802 2608 MBR partitions:
13:30:18.0802 2608 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xFA0000
13:30:18.0802 2608 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xFA0800, BlocksNum 0x1C224800
13:30:18.0802 2608 ============================================================
13:30:18.0802 2608 C: <-> \Device\Harddisk0\DR0\Partition2
13:30:18.0833 2608 D: <-> \Device\Harddisk0\DR0\Partition1
13:30:18.0833 2608 ============================================================
13:30:18.0833 2608 Initialize success
13:30:18.0833 2608 ============================================================
13:30:48.0895 4344 ============================================================
13:30:48.0895 4344 Scan started
13:30:48.0895 4344 Mode: Manual; SigCheck; TDLFS;
13:30:48.0895 4344 ============================================================
13:30:49.0473 4344 ================ Scan system memory ========================
13:30:49.0473 4344 System memory - ok
13:30:49.0473 4344 ================ Scan services =============================
13:30:49.0519 4344 [ 01E81C84AD1D0ACC61CF3CFD06632210 ] !SASCORE C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
13:30:49.0613 4344 !SASCORE - ok
13:30:49.0863 4344 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
13:30:49.0972 4344 1394ohci - ok
13:30:50.0003 4344 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
13:30:50.0034 4344 ACPI - ok
13:30:50.0081 4344 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
13:30:50.0143 4344 AcpiPmi - ok
13:30:50.0190 4344 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
13:30:50.0221 4344 adp94xx - ok
13:30:50.0237 4344 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
13:30:50.0268 4344 adpahci - ok
13:30:50.0284 4344 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
13:30:50.0315 4344 adpu320 - ok
13:30:50.0315 4344 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
13:30:50.0377 4344 AeLookupSvc - ok
13:30:50.0409 4344 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
13:30:50.0455 4344 AFD - ok
13:30:50.0502 4344 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
13:30:50.0549 4344 agp440 - ok
13:30:50.0596 4344 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
13:30:50.0627 4344 aic78xx - ok
13:30:50.0689 4344 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
13:30:50.0736 4344 ALG - ok
13:30:50.0799 4344 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
13:30:50.0814 4344 aliide - ok
13:30:50.0830 4344 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
13:30:50.0861 4344 amdagp - ok
13:30:50.0892 4344 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
13:30:50.0908 4344 amdide - ok
13:30:50.0939 4344 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
13:30:50.0986 4344 AmdK8 - ok
13:30:51.0017 4344 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
13:30:51.0064 4344 AmdPPM - ok
13:30:51.0095 4344 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
13:30:51.0111 4344 amdsata - ok
13:30:51.0157 4344 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
13:30:51.0173 4344 amdsbs - ok
13:30:51.0189 4344 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
13:30:51.0204 4344 amdxata - ok
13:30:51.0313 4344 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
13:30:51.0360 4344 AppID - ok
13:30:51.0391 4344 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
13:30:51.0454 4344 AppIDSvc - ok
13:30:51.0469 4344 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
13:30:51.0547 4344 Appinfo - ok
13:30:51.0594 4344 [ A5299D04ED225D64CF07A568A3E1BF8C ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
13:30:51.0610 4344 Apple Mobile Device - ok
13:30:51.0688 4344 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
13:30:51.0703 4344 arc - ok
13:30:51.0766 4344 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
13:30:51.0797 4344 arcsas - ok
13:30:51.0813 4344 [ 5A055A4777CBBC8845DD598CB2EEBF69 ] ASLDRService C:\Program Files\ATK Hotkey\ASLDRSrv.exe
13:30:51.0859 4344 ASLDRService ( UnsignedFile.Multi.Generic ) - warning
13:30:51.0859 4344 ASLDRService - detected UnsignedFile.Multi.Generic (1)
13:30:51.0875 4344 [ 7B4D08D2017AC06689D422E06C43F0AA ] ASMMAP C:\Program Files\ATKGFNEX\ASMMAP.sys
13:30:51.0891 4344 ASMMAP - ok
13:30:52.0234 4344 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
13:30:52.0281 4344 aspnet_state - ok
13:30:52.0359 4344 [ DE6ED95AEF259979B2830450072A627B ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
13:30:52.0374 4344 aswFsBlk - ok
13:30:52.0390 4344 [ 62F9DCEC95F91B8E0203E85D344A7E65 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
13:30:52.0405 4344 aswMonFlt - ok
13:30:52.0437 4344 [ 81F638A2DD94ABBF0B43880AB38D8DBD ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
13:30:52.0452 4344 aswRdr - ok
13:30:52.0499 4344 [ B32E9AD44A1DBB3E8095E80F8DF32B03 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
13:30:52.0530 4344 aswSnx - ok
13:30:52.0608 4344 [ 67B558895695545FB0568B7541F3BCA7 ] aswSP C:\Windows\system32\drivers\aswSP.sys
13:30:52.0639 4344 aswSP - ok
13:30:52.0717 4344 [ E3E73B2B73A4DFADFDDF557192C4B08A ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
13:30:52.0733 4344 aswTdi - ok
13:30:52.0764 4344 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
13:30:52.0842 4344 AsyncMac - ok
13:30:52.0858 4344 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
13:30:52.0889 4344 atapi - ok
13:30:52.0920 4344 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
13:30:52.0983 4344 AudioEndpointBuilder - ok
13:30:53.0029 4344 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
13:30:53.0076 4344 Audiosrv - ok
13:30:53.0123 4344 [ 8FA553E9AE69808D99C164733A0F9590 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
13:30:53.0139 4344 avast! Antivirus - ok
13:30:53.0170 4344 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
13:30:53.0217 4344 AxInstSV - ok
13:30:53.0263 4344 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
13:30:53.0326 4344 b06bdrv - ok
13:30:53.0357 4344 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
13:30:53.0404 4344 b57nd60x - ok
13:30:53.0435 4344 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
13:30:53.0497 4344 BDESVC - ok
13:30:53.0497 4344 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
13:30:53.0544 4344 Beep - ok
13:30:53.0607 4344 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
13:30:53.0685 4344 BFE - ok
13:30:53.0716 4344 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\system32\qmgr.dll
13:30:53.0825 4344 BITS - ok
13:30:53.0825 4344 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
13:30:53.0872 4344 blbdrive - ok
13:30:53.0903 4344 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
13:30:53.0934 4344 Bonjour Service - ok
13:30:53.0950 4344 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
13:30:53.0981 4344 bowser - ok
13:30:54.0059 4344 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
13:30:54.0168 4344 BrFiltLo - ok
13:30:54.0184 4344 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
13:30:54.0231 4344 BrFiltUp - ok
13:30:54.0262 4344 [ 77361D72A04F18809D0EFB6CCEB74D4B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
13:30:54.0324 4344 BridgeMP - ok
13:30:54.0340 4344 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
13:30:54.0387 4344 Browser - ok
13:30:54.0511 4344 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
13:30:54.0558 4344 Brserid - ok
13:30:54.0589 4344 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
13:30:54.0683 4344 BrSerWdm - ok
13:30:54.0699 4344 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
13:30:54.0730 4344 BrUsbMdm - ok
13:30:54.0761 4344 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
13:30:54.0808 4344 BrUsbSer - ok
13:30:54.0855 4344 [ 2865A5C8E98C70C605F417908CEBB3A4 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys
13:30:54.0917 4344 BthEnum - ok
13:30:54.0948 4344 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
13:30:54.0995 4344 BTHMODEM - ok
13:30:55.0042 4344 [ AD1872E5829E8A2C3B5B4B641C3EAB0E ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
13:30:55.0089 4344 BthPan - ok
13:30:55.0229 4344 [ 1153DE2E4F5941E10C399CB5592F78A1 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
13:30:55.0338 4344 BTHPORT - ok
13:30:55.0369 4344 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
13:30:55.0416 4344 bthserv - ok
13:30:55.0479 4344 [ C81E9413A25A439F436B1D4B6A0CF9E9 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
13:30:55.0510 4344 BTHUSB - ok
13:30:55.0541 4344 catchme - ok
13:30:55.0572 4344 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
13:30:55.0619 4344 cdfs - ok
13:30:55.0650 4344 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
13:30:55.0697 4344 cdrom - ok
13:30:55.0728 4344 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
13:30:55.0775 4344 CertPropSvc - ok
13:30:55.0806 4344 CFcatchme - ok
13:30:55.0822 4344 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
13:30:55.0853 4344 circlass - ok
13:30:55.0884 4344 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
13:30:55.0900 4344 CLFS - ok
13:30:55.0962 4344 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:30:55.0993 4344 clr_optimization_v2.0.50727_32 - ok
13:30:56.0025 4344 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:30:56.0040 4344 clr_optimization_v4.0.30319_32 - ok
13:30:56.0056 4344 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
13:30:56.0118 4344 CmBatt - ok
13:30:56.0196 4344 [ 2A2D72271844C52F004901A60312B96A ] cmdAgent C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
13:30:56.0243 4344 cmdAgent - ok
13:30:56.0274 4344 [ A1865742BBCF4C5F38FEE1258F8048FD ] cmdGuard C:\Windows\system32\DRIVERS\cmdguard.sys
13:30:56.0305 4344 cmdGuard - ok
13:30:56.0305 4344 [ 221D000474F01B1606FFC3FF362D9333 ] cmdHlp C:\Windows\system32\DRIVERS\cmdhlp.sys
13:30:56.0321 4344 cmdHlp - ok
13:30:56.0399 4344 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
13:30:56.0461 4344 cmdide - ok
13:30:56.0539 4344 [ 42F158036BD4C2FF3122BF142E60E6FD ] CNG C:\Windows\system32\Drivers\cng.sys
13:30:56.0571 4344 CNG - ok
13:30:56.0586 4344 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
13:30:56.0617 4344 Compbatt - ok
13:30:56.0617 4344 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
13:30:56.0664 4344 CompositeBus - ok
13:30:56.0680 4344 COMSysApp - ok
13:30:56.0695 4344 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
13:30:56.0727 4344 crcdisk - ok
13:30:56.0758 4344 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll
13:30:56.0805 4344 CryptSvc - ok
13:30:56.0836 4344 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
13:30:56.0883 4344 DcomLaunch - ok
13:30:56.0976 4344 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
13:30:57.0070 4344 defragsvc - ok
13:30:57.0085 4344 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
13:30:57.0148 4344 DfsC - ok
13:30:57.0179 4344 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
13:30:57.0226 4344 Dhcp - ok
13:30:57.0226 4344 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
13:30:57.0273 4344 discache - ok
13:30:57.0288 4344 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
13:30:57.0319 4344 Disk - ok
13:30:57.0335 4344 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
13:30:57.0382 4344 Dnscache - ok
13:30:57.0397 4344 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
13:30:57.0444 4344 dot3svc - ok
13:30:57.0475 4344 [ B5E479EB83707DD698F66953E922042C ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys
13:30:57.0507 4344 Dot4 - ok
13:30:57.0600 4344 [ CAEFD09B6A6249C53A67D55A9A9FCABF ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys
13:30:57.0663 4344 Dot4Print - ok
13:30:57.0709 4344 [ CF491FF38D62143203C065260567E2F7 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
13:30:57.0756 4344 dot4usb - ok
13:30:57.0772 4344 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
13:30:57.0850 4344 DPS - ok
13:30:57.0897 4344 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
13:30:57.0943 4344 drmkaud - ok
13:30:57.0975 4344 [ 687AF6BB383885FF6A64071B189A7F3E ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
13:30:57.0990 4344 dtsoftbus01 - ok
13:30:58.0021 4344 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
13:30:58.0053 4344 DXGKrnl - ok
13:30:58.0084 4344 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
13:30:58.0146 4344 EapHost - ok
13:30:59.0269 4344 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
13:30:59.0425 4344 ebdrv - ok
13:30:59.0441 4344 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
13:30:59.0503 4344 EFS - ok
13:30:59.0659 4344 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
13:30:59.0737 4344 ehRecvr - ok
13:30:59.0753 4344 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
13:30:59.0800 4344 ehSched - ok
13:30:59.0847 4344 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
13:30:59.0878 4344 elxstor - ok
13:30:59.0893 4344 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
13:30:59.0940 4344 ErrDev - ok
13:30:59.0987 4344 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
13:31:00.0065 4344 EventSystem - ok
13:31:00.0127 4344 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
13:31:00.0205 4344 exfat - ok
13:31:00.0221 4344 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
13:31:00.0283 4344 fastfat - ok
13:31:00.0330 4344 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
13:31:00.0393 4344 Fax - ok
13:31:00.0424 4344 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
13:31:00.0502 4344 fdc - ok
13:31:00.0533 4344 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
13:31:00.0595 4344 fdPHost - ok
13:31:00.0595 4344 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
13:31:00.0673 4344 FDResPub - ok
13:31:00.0673 4344 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
13:31:00.0705 4344 FileInfo - ok
13:31:00.0736 4344 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
13:31:00.0798 4344 Filetrace - ok
13:31:00.0814 4344 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
13:31:00.0892 4344 flpydisk - ok
13:31:00.0907 4344 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
13:31:00.0939 4344 FltMgr - ok
13:31:01.0126 4344 [ B3A5EC6B6B6673DB7E87C2BCDBDDC074 ] FontCache C:\Windows\system32\FntCache.dll
13:31:01.0204 4344 FontCache - ok
13:31:01.0313 4344 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
13:31:01.0360 4344 FontCache3.0.0.0 - ok
13:31:01.0375 4344 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
13:31:01.0391 4344 FsDepends - ok
13:31:01.0407 4344 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
13:31:01.0422 4344 Fs_Rec - ok
13:31:01.0485 4344 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
13:31:01.0516 4344 fvevol - ok
13:31:01.0563 4344 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
13:31:01.0594 4344 gagp30kx - ok
13:31:01.0656 4344 [ 185ADA973B5020655CEE342059A86CBB ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
13:31:01.0672 4344 GEARAspiWDM - ok
13:31:01.0765 4344 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
13:31:01.0843 4344 gpsvc - ok
13:31:01.0890 4344 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
13:31:01.0968 4344 hcw85cir - ok
13:31:01.0999 4344 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
13:31:02.0046 4344 HdAudAddService - ok
13:31:02.0062 4344 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
13:31:02.0124 4344 HDAudBus - ok
13:31:02.0155 4344 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
13:31:02.0187 4344 HidBatt - ok
13:31:02.0218 4344 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
13:31:02.0265 4344 HidBth - ok
13:31:02.0311 4344 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
13:31:02.0358 4344 HidIr - ok
13:31:02.0374 4344 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\System32\hidserv.dll
13:31:02.0436 4344 hidserv - ok
13:31:02.0499 4344 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
13:31:02.0514 4344 HidUsb - ok
13:31:02.0545 4344 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
13:31:02.0608 4344 hkmsvc - ok
13:31:02.0701 4344 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
13:31:02.0779 4344 HomeGroupListener - ok
13:31:02.0811 4344 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
13:31:02.0889 4344 HomeGroupProvider - ok
13:31:02.0951 4344 [ 0A3C6AA4A9FC38C20BA4EAC2C3351C05 ] hpqcxs08 C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
13:31:02.0967 4344 hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning
13:31:02.0967 4344 hpqcxs08 - detected UnsignedFile.Multi.Generic (1)
13:31:02.0982 4344 [ 99E8EEF42FE2F4AF29B08C3355DD7685 ] hpqddsvc C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
13:31:03.0013 4344 hpqddsvc ( UnsignedFile.Multi.Generic ) - warning
13:31:03.0013 4344 hpqddsvc - detected UnsignedFile.Multi.Generic (1)
13:31:03.0045 4344 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
13:31:03.0060 4344 HpSAMD - ok
13:31:03.0107 4344 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
13:31:03.0154 4344 HTTP - ok
13:31:03.0169 4344 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
13:31:03.0201 4344 hwpolicy - ok
13:31:03.0247 4344 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
13:31:03.0294 4344 i8042prt - ok
13:31:03.0341 4344 [ 7548066DF68A8A1A56B043359F915F37 ] IAANTMON C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
13:31:03.0357 4344 IAANTMON - ok
13:31:03.0388 4344 [ 3DB9F6F69B8BB99D241B15C7B52E3A3D ] iaNvStor C:\Windows\system32\DRIVERS\iaNvStor.sys
13:31:03.0403 4344 iaNvStor - ok
13:31:03.0435 4344 [ D483687EACE0C065EE772481A96E05F5 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
13:31:03.0450 4344 iaStor - ok
13:31:03.0559 4344 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
13:31:03.0606 4344 iaStorV - ok
13:31:04.0090 4344 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
13:31:04.0183 4344 idsvc - ok
13:31:04.0246 4344 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
13:31:04.0261 4344 iirsp - ok
13:31:04.0308 4344 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
13:31:04.0386 4344 IKEEXT - ok
13:31:04.0386 4344 [ 3B6BE2DA5993B1E38613976FAF4AC83E ] inspect C:\Windows\system32\DRIVERS\inspect.sys
13:31:04.0417 4344 inspect - ok
13:31:04.0573 4344 [ F2C17D2C3D70C389193D9954E375E5E3 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
13:31:04.0636 4344 IntcAzAudAddService - ok
13:31:04.0651 4344 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
13:31:04.0667 4344 intelide - ok
13:31:04.0698 4344 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
13:31:04.0761 4344 intelppm - ok
13:31:04.0792 4344 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
13:31:04.0854 4344 IPBusEnum - ok
13:31:04.0870 4344 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:31:04.0932 4344 IpFilterDriver - ok
13:31:04.0963 4344 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
13:31:05.0026 4344 iphlpsvc - ok
13:31:05.0057 4344 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
13:31:05.0088 4344 IPMIDRV - ok
13:31:05.0135 4344 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
13:31:05.0244 4344 IPNAT - ok
13:31:05.0291 4344 [ E8A39D41474BE42FD8830CED32932D6C ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
13:31:05.0307 4344 iPod Service - ok
13:31:05.0338 4344 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
13:31:05.0385 4344 IRENUM - ok
13:31:05.0416 4344 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
13:31:05.0447 4344 isapnp - ok
13:31:05.0494 4344 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
13:31:05.0525 4344 iScsiPrt - ok
13:31:05.0587 4344 [ EB6F7C665D7B5B4D79573B7CB950F2D4 ] itecir C:\Windows\system32\DRIVERS\itecir.sys
13:31:05.0634 4344 itecir ( UnsignedFile.Multi.Generic ) - warning
13:31:05.0634 4344 itecir - detected UnsignedFile.Multi.Generic (1)
13:31:05.0634 4344 [ C995C0E8B4503FAC38793BB0236AD246 ] JGOGO C:\Windows\system32\DRIVERS\JGOGO.sys
13:31:05.0681 4344 JGOGO - ok
13:31:05.0697 4344 [ F5BF72EABC7E160BB6624168AAD52DFE ] JRAID C:\Windows\system32\DRIVERS\jraid.sys
13:31:05.0728 4344 JRAID - ok
13:31:05.0743 4344 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
13:31:05.0775 4344 kbdclass - ok
13:31:05.0806 4344 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
13:31:05.0837 4344 kbdhid - ok
13:31:05.0853 4344 [ CC2A86D7BBF14977340DCA61BBCBA771 ] kbfiltr C:\Windows\system32\DRIVERS\kbfiltr.sys
13:31:05.0899 4344 kbfiltr - ok
13:31:05.0899 4344 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
13:31:05.0931 4344 KeyIso - ok
13:31:05.0931 4344 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
13:31:05.0962 4344 KSecDD - ok
13:31:05.0993 4344 [ 5FE1ABF1AF591A3458C9CF24ED9A4D35 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
13:31:06.0040 4344 KSecPkg - ok
13:31:06.0071 4344 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
13:31:06.0149 4344 KtmRm - ok
13:31:06.0196 4344 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\System32\srvsvc.dll
13:31:06.0258 4344 LanmanServer - ok
13:31:06.0274 4344 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:31:06.0336 4344 LanmanWorkstation - ok
13:31:06.0367 4344 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
13:31:06.0414 4344 lltdio - ok
13:31:06.0477 4344 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
13:31:06.0570 4344 lltdsvc - ok
13:31:06.0586 4344 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
13:31:06.0664 4344 lmhosts - ok
13:31:06.0695 4344 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
13:31:06.0726 4344 LSI_FC - ok
13:31:06.0757 4344 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
13:31:06.0773 4344 LSI_SAS - ok
13:31:06.0789 4344 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
13:31:06.0804 4344 LSI_SAS2 - ok
13:31:06.0867 4344 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
13:31:06.0913 4344 LSI_SCSI - ok
13:31:06.0913 4344 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
13:31:06.0976 4344 luafv - ok
13:31:07.0023 4344 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
13:31:07.0054 4344 Mcx2Svc - ok
13:31:07.0069 4344 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
13:31:07.0101 4344 megasas - ok
13:31:07.0147 4344 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
13:31:07.0163 4344 MegaSR - ok
13:31:07.0179 4344 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
13:31:07.0241 4344 MMCSS - ok
13:31:07.0257 4344 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
13:31:07.0303 4344 Modem - ok
13:31:07.0319 4344 [ 25483F9D590D5F00BD951E1181453EC2 ] MODEMCSA C:\Windows\system32\drivers\MODEMCSA.sys
13:31:07.0350 4344 MODEMCSA - ok
13:31:07.0381 4344 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
13:31:07.0413 4344 monitor - ok
13:31:07.0444 4344 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
13:31:07.0459 4344 mouclass - ok
13:31:07.0522 4344 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
13:31:07.0569 4344 mouhid - ok
13:31:07.0584 4344 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
13:31:07.0615 4344 mountmgr - ok
13:31:07.0725 4344 [ 9C3758018DED02F4AE53CCA1C5F084A2 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
13:31:07.0771 4344 MozillaMaintenance - ok
13:31:07.0818 4344 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
13:31:07.0865 4344 mpio - ok
13:31:07.0865 4344 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
13:31:07.0927 4344 mpsdrv - ok
13:31:08.0052 4344 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
13:31:08.0177 4344 MpsSvc - ok
13:31:08.0208 4344 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
13:31:08.0271 4344 MRxDAV - ok
13:31:08.0333 4344 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
13:31:08.0364 4344 mrxsmb - ok
13:31:08.0380 4344 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:31:08.0411 4344 mrxsmb10 - ok
13:31:08.0411 4344 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:31:08.0458 4344 mrxsmb20 - ok
13:31:08.0473 4344 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
13:31:08.0489 4344 msahci - ok
13:31:08.0520 4344 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
13:31:08.0567 4344 msdsm - ok
13:31:08.0661 4344 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
13:31:08.0739 4344 MSDTC - ok
13:31:08.0754 4344 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
13:31:08.0801 4344 Msfs - ok
13:31:08.0817 4344 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
13:31:08.0879 4344 mshidkmdf - ok
13:31:08.0879 4344 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
13:31:08.0910 4344 msisadrv - ok
13:31:08.0988 4344 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
13:31:09.0051 4344 MSiSCSI - ok
13:31:09.0066 4344 msiserver - ok
13:31:09.0097 4344 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
13:31:09.0144 4344 MSKSSRV - ok
13:31:09.0222 4344 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
13:31:09.0300 4344 MSPCLOCK - ok
13:31:09.0331 4344 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
13:31:09.0378 4344 MSPQM - ok
13:31:09.0409 4344 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
13:31:09.0456 4344 MsRPC - ok
13:31:09.0456 4344 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
13:31:09.0487 4344 mssmbios - ok
13:31:09.0519 4344 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
13:31:09.0550 4344 MSTEE - ok
13:31:09.0565 4344 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
13:31:09.0628 4344 MTConfig - ok
13:31:09.0643 4344 [ 97AFFA9D95FFE20EEE6229BC6BE166CF ] MTsensor C:\Windows\system32\DRIVERS\ATKACPI.sys
13:31:09.0659 4344 MTsensor - ok
13:31:09.0675 4344 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
13:31:09.0690 4344 Mup - ok
13:31:09.0784 4344 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
13:31:09.0893 4344 napagent - ok
13:31:09.0924 4344 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
13:31:09.0971 4344 NativeWifiP - ok
13:31:10.0018 4344 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
13:31:10.0049 4344 NDIS - ok
13:31:10.0065 4344 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
13:31:10.0143 4344 NdisCap - ok
13:31:10.0158 4344 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
13:31:10.0205 4344 NdisTapi - ok
13:31:10.0236 4344 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
13:31:10.0299 4344 Ndisuio - ok
13:31:10.0314 4344 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
13:31:10.0361 4344 NdisWan - ok
13:31:10.0377 4344 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
13:31:10.0423 4344 NDProxy - ok
13:31:10.0486 4344 [ A081CB6FB9A12668F233EB5414BE3A0E ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
13:31:10.0501 4344 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
13:31:10.0501 4344 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
13:31:10.0533 4344 [ 1352E1648213551923A0A822E441553C ] Netaapl C:\Windows\system32\DRIVERS\netaapl.sys
13:31:10.0564 4344 Netaapl - ok
13:31:10.0579 4344 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
13:31:10.0642 4344 NetBIOS - ok
13:31:10.0642 4344 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
13:31:10.0704 4344 NetBT - ok
13:31:10.0704 4344 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
13:31:10.0735 4344 Netlogon - ok
13:31:10.0782 4344 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
13:31:10.0845 4344 Netman - ok
13:31:10.0891 4344 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:10.0907 4344 NetMsmqActivator - ok
13:31:10.0923 4344 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:10.0938 4344 NetPipeActivator - ok
13:31:10.0985 4344 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
13:31:11.0094 4344 netprofm - ok
13:31:11.0125 4344 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:11.0141 4344 NetTcpActivator - ok
13:31:11.0157 4344 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:11.0188 4344 NetTcpPortSharing - ok
13:31:11.0359 4344 [ 58218EC6B61B1169CF54AAB0D00F5FE2 ] netw5v32 C:\Windows\system32\DRIVERS\netw5v32.sys
13:31:11.0593 4344 netw5v32 - ok
13:31:11.0625 4344 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
13:31:11.0656 4344 nfrd960 - ok
13:31:11.0671 4344 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\Windows\System32\nlasvc.dll
13:31:11.0718 4344 NlaSvc - ok
13:31:11.0734 4344 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
13:31:11.0781 4344 Npfs - ok
13:31:11.0796 4344 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
13:31:11.0859 4344 nsi - ok
13:31:11.0874 4344 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
13:31:11.0952 4344 nsiproxy - ok
13:31:12.0077 4344 [ 53F7546E8DAEFB3A0813F5E19C4613C9 ] NSNDIS5 C:\Windows\system32\NSNDIS5.SYS
13:31:12.0171 4344 NSNDIS5 ( UnsignedFile.Multi.Generic ) - warning
13:31:12.0171 4344 NSNDIS5 - detected UnsignedFile.Multi.Generic (1)
13:31:12.0467 4344 [ 0D87503986BB3DFED58E343FE39DDE13 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
13:31:12.0561 4344 Ntfs - ok
13:31:12.0561 4344 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
13:31:12.0623 4344 Null - ok
13:31:13.0091 4344 [ 0A1B502CBC8230DA74BEFBAADDB58916 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
13:31:13.0325 4344 nvlddmkm - ok
13:31:13.0419 4344 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
13:31:13.0465 4344 nvraid - ok
13:31:13.0512 4344 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
13:31:13.0528 4344 nvstor - ok
13:31:13.0949 4344 [ 0629259E3AF6BB0534FCECA208973404 ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
13:31:14.0043 4344 nvUpdatusService - ok
13:31:14.0058 4344 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
13:31:14.0090 4344 nv_agp - ok
13:31:14.0200 4344 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
13:31:14.0246 4344 odserv - ok
13:31:14.0262 4344 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
13:31:14.0356 4344 ohci1394 - ok
13:31:14.0402 4344 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:31:14.0434 4344 ose - ok
13:31:14.0527 4344 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
13:31:14.0605 4344 p2pimsvc - ok
13:31:14.0761 4344 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
13:31:14.0792 4344 p2psvc - ok
13:31:14.0808 4344 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
13:31:14.0870 4344 Parport - ok
13:31:14.0902 4344 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
13:31:14.0917 4344 partmgr - ok
13:31:14.0948 4344 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
13:31:15.0011 4344 Parvdm - ok
13:31:15.0058 4344 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
13:31:15.0104 4344 PcaSvc - ok
13:31:15.0136 4344 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
13:31:15.0167 4344 pci - ok
13:31:15.0182 4344 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
13:31:15.0198 4344 pciide - ok
13:31:15.0276 4344 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
13:31:15.0354 4344 pcmcia - ok
13:31:15.0385 4344 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
13:31:15.0401 4344 pcw - ok
13:31:15.0494 4344 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
13:31:15.0572 4344 PEAUTH - ok
13:31:16.0072 4344 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
13:31:16.0182 4344 pla - ok
13:31:16.0213 4344 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
13:31:16.0260 4344 PlugPlay - ok
13:31:16.0307 4344 [ 65BC271F337637731D3C71455AE1F476 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
13:31:16.0338 4344 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
13:31:16.0338 4344 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
13:31:16.0369 4344 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
13:31:16.0416 4344 PNRPAutoReg - ok
13:31:16.0509 4344 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
13:31:16.0572 4344 PNRPsvc - ok
13:31:16.0603 4344 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
13:31:16.0681 4344 PolicyAgent - ok
13:31:16.0697 4344 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
13:31:16.0759 4344 Power - ok
13:31:16.0775 4344 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
13:31:16.0868 4344 PptpMiniport - ok
13:31:16.0915 4344 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys
13:31:17.0009 4344 Processor - ok
13:31:17.0024 4344 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
13:31:17.0071 4344 ProfSvc - ok
13:31:17.0087 4344 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
13:31:17.0118 4344 ProtectedStorage - ok
13:31:17.0180 4344 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
13:31:17.0258 4344 Psched - ok
13:31:17.0367 4344 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
13:31:17.0523 4344 ql2300 - ok
13:31:17.0555 4344 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
13:31:17.0586 4344 ql40xx - ok
13:31:17.0617 4344 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
13:31:17.0711 4344 QWAVE - ok
13:31:17.0742 4344 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
13:31:17.0773 4344 QWAVEdrv - ok
13:31:17.0789 4344 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
13:31:17.0851 4344 RasAcd - ok
13:31:17.0882 4344 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
13:31:17.0929 4344 RasAgileVpn - ok
13:31:17.0960 4344 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
13:31:18.0007 4344 RasAuto - ok
13:31:18.0038 4344 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
13:31:18.0085 4344 Rasl2tp - ok
13:31:18.0116 4344 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
13:31:18.0194 4344 RasMan - ok
13:31:18.0210 4344 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
13:31:18.0257 4344 RasPppoe - ok
13:31:18.0288 4344 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
13:31:18.0366 4344 RasSstp - ok
13:31:18.0381 4344 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
13:31:18.0459 4344 rdbss - ok
13:31:18.0475 4344 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
13:31:18.0537 4344 rdpbus - ok
13:31:18.0600 4344 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
13:31:18.0647 4344 RDPCDD - ok
13:31:18.0662 4344 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
13:31:18.0725 4344 RDPENCDD - ok
13:31:18.0756 4344 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
13:31:18.0803 4344 RDPREFMP - ok
13:31:18.0896 4344 [ 65375DF758CA1872AB7EBBBA457FD5E6 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
13:31:18.0927 4344 RdpVideoMiniport - ok
13:31:19.0005 4344 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
13:31:19.0068 4344 RDPWD - ok
13:31:19.0130 4344 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
13:31:19.0177 4344 rdyboost - ok
13:31:19.0208 4344 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
13:31:19.0239 4344 RemoteAccess - ok
13:31:19.0271 4344 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
13:31:19.0349 4344 RemoteRegistry - ok
13:31:19.0395 4344 [ CB928D9E6DAF51879DD6BA8D02F01321 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
13:31:19.0442 4344 RFCOMM - ok
13:31:19.0473 4344 [ C35CA13D3627EBD9DD12A23CE781BC3D ] rimmptsk C:\Windows\system32\DRIVERS\rimmptsk.sys
13:31:19.0520 4344 rimmptsk - ok
13:31:19.0520 4344 [ C398BCA91216755B098679A8DA8A2300 ] rimsptsk C:\Windows\system32\DRIVERS\rimsptsk.sys
13:31:19.0551 4344 rimsptsk - ok
13:31:19.0567 4344 [ 2A2554CB24506E0A0508FC395C4A1B42 ] rismxdp C:\Windows\system32\DRIVERS\rixdptsk.sys
13:31:19.0614 4344 rismxdp - ok
13:31:19.0614 4344 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
13:31:19.0676 4344 RpcEptMapper - ok
13:31:19.0707 4344 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
13:31:19.0754 4344 RpcLocator - ok
13:31:19.0801 4344 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\System32\rpcss.dll
13:31:19.0863 4344 RpcSs - ok
13:31:19.0895 4344 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
13:31:19.0957 4344 rspndr - ok
13:31:19.0973 4344 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
13:31:20.0004 4344 SamSs - ok
13:31:20.0051 4344 [ 39763504067962108505BFF25F024345 ] SASDIFSV C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
13:31:20.0082 4344 SASDIFSV - ok
13:31:20.0097 4344 [ 77B9FC20084B48408AD3E87570EB4A85 ] SASKUTIL C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS
13:31:20.0129 4344 SASKUTIL - ok
13:31:20.0160 4344 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
13:31:20.0175 4344 sbp2port - ok
13:31:20.0222 4344 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
13:31:20.0285 4344 SCardSvr - ok
13:31:20.0316 4344 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
13:31:20.0378 4344 scfilter - ok
13:31:20.0519 4344 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
13:31:20.0597 4344 Schedule - ok
13:31:20.0628 4344 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
13:31:20.0659 4344 SCPolicySvc - ok
13:31:20.0690 4344 [ 0328BE1C7F1CBA23848179F8762E391C ] sdbus C:\Windows\system32\drivers\sdbus.sys
13:31:20.0721 4344 sdbus - ok
13:31:20.0768 4344 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
13:31:20.0815 4344 SDRSVC - ok
13:31:20.0831 4344 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
13:31:20.0909 4344 secdrv - ok
13:31:20.0924 4344 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
13:31:20.0971 4344 seclogon - ok
13:31:21.0002 4344 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\system32\sens.dll
13:31:21.0065 4344 SENS - ok
13:31:21.0096 4344 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
13:31:21.0143 4344 SensrSvc - ok
13:31:21.0189 4344 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
13:31:21.0252 4344 Serenum - ok
13:31:21.0283 4344 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
13:31:21.0330 4344 Serial - ok
13:31:21.0345 4344 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
13:31:21.0423 4344 sermouse - ok
13:31:21.0486 4344 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
13:31:21.0564 4344 SessionEnv - ok
13:31:21.0611 4344 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
13:31:21.0673 4344 sffdisk - ok
13:31:21.0704 4344 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
13:31:21.0735 4344 sffp_mmc - ok
13:31:21.0767 4344 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
13:31:21.0813 4344 sffp_sd - ok
13:31:21.0845 4344 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
13:31:21.0891 4344 sfloppy - ok
13:31:21.0938 4344 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
13:31:22.0001 4344 SharedAccess - ok
13:31:22.0032 4344 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:31:22.0094 4344 ShellHWDetection - ok
13:31:22.0141 4344 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
13:31:22.0172 4344 sisagp - ok
13:31:22.0219 4344 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
13:31:22.0250 4344 SiSRaid2 - ok
13:31:22.0266 4344 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
13:31:22.0313 4344 SiSRaid4 - ok
13:31:22.0344 4344 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
13:31:22.0422 4344 Smb - ok
13:31:22.0500 4344 [ 7E6628D18D30F14A56C0D9116310AB8A ] smserial C:\Windows\system32\DRIVERS\smserial.sys
13:31:22.0578 4344 smserial - ok
13:31:22.0625 4344 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
13:31:22.0656 4344 SNMPTRAP - ok
13:31:22.0765 4344 [ 0302BC619D4A723317E7F8EB0C362BD3 ] SNP2UVC C:\Windows\system32\DRIVERS\snp2uvc.sys
13:31:22.0859 4344 SNP2UVC - ok
13:31:22.0905 4344 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
13:31:22.0937 4344 spldr - ok
13:31:22.0968 4344 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
13:31:22.0999 4344 Spooler - ok
13:31:23.0498 4344 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
13:31:23.0685 4344 sppsvc - ok
13:31:23.0701 4344 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
13:31:23.0795 4344 sppuinotify - ok
13:31:23.0826 4344 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
13:31:23.0873 4344 srv - ok
13:31:23.0904 4344 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
13:31:23.0951 4344 srv2 - ok
13:31:23.0966 4344 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
13:31:24.0013 4344 srvnet - ok
13:31:24.0029 4344 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
13:31:24.0091 4344 SSDPSRV - ok
13:31:24.0107 4344 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
13:31:24.0153 4344 SstpSvc - ok
13:31:24.0200 4344 [ F0359F7CE712D69ACEF0886BDB4792ED ] Stereo Service C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
13:31:24.0231 4344 Stereo Service - ok
13:31:24.0309 4344 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
13:31:24.0341 4344 stexstor - ok
13:31:24.0387 4344 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
13:31:24.0512 4344 StiSvc - ok
13:31:24.0528 4344 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\drivers\swenum.sys
13:31:24.0559 4344 swenum - ok
13:31:24.0653 4344 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
13:31:24.0746 4344 swprv - ok
13:31:24.0840 4344 [ 6ED12875AC002C0F86B931F17E859327 ] symformcontrib C:\Program Files\Symform\Node Service\symformcontrib.exe
13:31:24.0871 4344 symformcontrib - ok
13:31:24.0918 4344 [ 64BE329AF4F913D891AB58A9C9C66141 ] symformsync C:\Program Files\Symform\Node Service\symformsync.exe
13:31:24.0949 4344 symformsync - ok
13:31:24.0996 4344 [ 6A5E351D1BDBF8E0ECE2C112CD79013F ] symformupdater C:\Program Files\Symform\Node Service\symformupdater.exe
13:31:25.0011 4344 symformupdater - ok
13:31:25.0043 4344 [ 55F6E55CC2430CA8713387106FA79817 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
13:31:25.0074 4344 SynTP - ok
13:31:25.0121 4344 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
13:31:25.0199 4344 SysMain - ok
13:31:25.0214 4344 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
13:31:25.0277 4344 TabletInputService - ok
13:31:25.0292 4344 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
13:31:25.0339 4344 TapiSrv - ok
13:31:25.0355 4344 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
13:31:25.0417 4344 TBS - ok
13:31:25.0479 4344 [ E23A56F843E2AEBBB209D0ACCA73C640 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
13:31:25.0542 4344 Tcpip - ok
13:31:25.0620 4344 [ E23A56F843E2AEBBB209D0ACCA73C640 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
13:31:25.0667 4344 TCPIP6 - ok
13:31:25.0682 4344 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
13:31:25.0698 4344 tcpipreg - ok
13:31:25.0729 4344 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
13:31:25.0760 4344 TDPIPE - ok
13:31:25.0791 4344 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
13:31:25.0854 4344 TDTCP - ok
13:31:25.0869 4344 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
13:31:25.0932 4344 tdx - ok
13:31:25.0932 4344 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\drivers\termdd.sys
13:31:25.0963 4344 TermDD - ok
13:31:26.0010 4344 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
13:31:26.0088 4344 TermService - ok
13:31:26.0088 4344 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
13:31:26.0119 4344 Themes - ok
13:31:26.0135 4344 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
13:31:26.0181 4344 THREADORDER - ok
13:31:26.0197 4344 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
13:31:26.0259 4344 TrkWks - ok
13:31:26.0353 4344 [ 81532F3628F8ACC80FD1264095960C3A ] TrueSight C:\Windows\system32\drivers\TrueSight.sys
13:31:26.0384 4344 TrueSight ( UnsignedFile.Multi.Generic ) - warning
13:31:26.0384 4344 TrueSight - detected UnsignedFile.Multi.Generic (1)
13:31:26.0415 4344 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:31:26.0478 4344 TrustedInstaller - ok
13:31:26.0509 4344 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
13:31:26.0556 4344 tssecsrv - ok
13:31:26.0587 4344 [ 9CE253214ACAA5A7D323327D2055EFAA ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
13:31:26.0618 4344 TsUsbFlt - ok
13:31:26.0649 4344 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
13:31:26.0696 4344 tunnel - ok
13:31:26.0743 4344 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
13:31:26.0759 4344 uagp35 - ok
13:31:26.0790 4344 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
13:31:26.0852 4344 udfs - ok
13:31:26.0883 4344 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
13:31:26.0977 4344 UI0Detect - ok
13:31:27.0024 4344 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
13:31:27.0055 4344 uliagpkx - ok
13:31:27.0071 4344 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\drivers\umbus.sys
13:31:27.0195 4344 umbus - ok
13:31:27.0258 4344 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
13:31:27.0336 4344 UmPass - ok
13:31:27.0414 4344 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
13:31:27.0507 4344 upnphost - ok
13:31:27.0585 4344 [ 8BF5D980CDCE35FB26F05047144BB57E ] USBAAPL C:\Windows\system32\Drivers\usbaapl.sys
13:31:27.0663 4344 USBAAPL - ok
13:31:27.0710 4344 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
13:31:27.0741 4344 usbccgp - ok
13:31:27.0773 4344 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys
13:31:27.0804 4344 usbcir - ok
13:31:27.0819 4344 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\drivers\usbehci.sys
13:31:27.0851 4344 usbehci - ok
13:31:27.0882 4344 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
13:31:27.0929 4344 usbhub - ok
13:31:27.0991 4344 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\drivers\usbohci.sys
13:31:28.0053 4344 usbohci - ok
13:31:28.0100 4344 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
13:31:28.0131 4344 usbprint - ok
13:31:28.0147 4344 usbscan - ok
13:31:28.0178 4344 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:31:28.0209 4344 USBSTOR - ok
13:31:28.0225 4344 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
13:31:28.0241 4344 usbuhci - ok
13:31:28.0287 4344 [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
13:31:28.0334 4344 usbvideo - ok
13:31:28.0350 4344 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
13:31:28.0381 4344 UxSms - ok
13:31:28.0397 4344 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
13:31:28.0428 4344 VaultSvc - ok
13:31:28.0459 4344 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
13:31:28.0490 4344 vdrvroot - ok
13:31:28.0537 4344 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
13:31:28.0584 4344 vds - ok
13:31:28.0615 4344 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
13:31:28.0662 4344 vga - ok
13:31:28.0662 4344 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
13:31:28.0709 4344 VgaSave - ok
13:31:28.0755 4344 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
13:31:28.0771 4344 vhdmp - ok
13:31:28.0802 4344 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
13:31:28.0833 4344 viaagp - ok
13:31:28.0865 4344 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys
13:31:28.0911 4344 ViaC7 - ok
13:31:28.0974 4344 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
13:31:29.0005 4344 viaide - ok
13:31:29.0021 4344 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
13:31:29.0036 4344 volmgr - ok
13:31:29.0114 4344 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
13:31:29.0145 4344 volmgrx - ok
13:31:29.0208 4344 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
13:31:29.0239 4344 volsnap - ok
13:31:29.0270 4344 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
13:31:29.0296 4344 vsmraid - ok
13:31:29.0485 4344 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
13:31:29.0594 4344 VSS - ok
13:31:29.0610 4344 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
13:31:29.0657 4344 vwifibus - ok
13:31:29.0688 4344 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
13:31:29.0750 4344 W32Time - ok
13:31:29.0781 4344 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
13:31:29.0813 4344 WacomPen - ok
13:31:29.0828 4344 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
13:31:29.0859 4344 WANARP - ok
13:31:29.0875 4344 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
13:31:29.0906 4344 Wanarpv6 - ok
13:31:29.0984 4344 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
13:31:30.0031 4344 WatAdminSvc - ok
13:31:30.0188 4344 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
13:31:30.0282 4344 wbengine - ok
13:31:30.0297 4344 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
13:31:30.0360 4344 WbioSrvc - ok
13:31:30.0406 4344 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
13:31:30.0469 4344 wcncsvc - ok
13:31:30.0484 4344 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:31:30.0516 4344 WcsPlugInService - ok
13:31:30.0547 4344 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys
13:31:30.0562 4344 Wd - ok
13:31:30.0609 4344 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
13:31:30.0656 4344 Wdf01000 - ok
13:31:30.0672 4344 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
13:31:30.0703 4344 WdiServiceHost - ok
13:31:30.0703 4344 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
13:31:30.0750 4344 WdiSystemHost - ok
13:31:30.0781 4344 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
13:31:30.0828 4344 WebClient - ok
13:31:30.0859 4344 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
13:31:30.0906 4344 Wecsvc - ok
13:31:30.0937 4344 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
13:31:30.0999 4344 wercplsupport - ok
13:31:31.0046 4344 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
13:31:31.0094 4344 WerSvc - ok
13:31:31.0125 4344 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
13:31:31.0172 4344 WfpLwf - ok
13:31:31.0219 4344 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
13:31:31.0250 4344 WIMMount - ok
13:31:31.0281 4344 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
13:31:31.0328 4344 WinDefend - ok
13:31:31.0343 4344 WinHttpAutoProxySvc - ok
13:31:31.0375 4344 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
13:31:31.0453 4344 Winmgmt - ok
13:31:31.0546 4344 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
13:31:31.0640 4344 WinRM - ok
13:31:31.0718 4344 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
13:31:31.0765 4344 WinUsb - ok
13:31:31.0811 4344 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
13:31:31.0967 4344 Wlansvc - ok
13:31:32.0061 4344 [ 0A70F4022EC2E14C159EFC4F69AA2477 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
13:31:32.0139 4344 wlidsvc - ok
13:31:32.0170 4344 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
13:31:32.0201 4344 WmiAcpi - ok
13:31:32.0233 4344 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
13:31:32.0264 4344 wmiApSrv - ok
13:31:32.0295 4344 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
13:31:32.0357 4344 WMPNetworkSvc - ok
13:31:32.0389 4344 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
13:31:32.0435 4344 WPCSvc - ok
13:31:32.0451 4344 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
13:31:32.0498 4344 WPDBusEnum - ok
13:31:32.0513 4344 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
13:31:32.0576 4344 ws2ifsl - ok
13:31:32.0591 4344 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\system32\wscsvc.dll
13:31:32.0654 4344 wscsvc - ok
13:31:32.0654 4344 WSearch - ok
13:31:32.0950 4344 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
13:31:33.0028 4344 wuauserv - ok
13:31:33.0044 4344 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
13:31:33.0075 4344 WudfPf - ok
13:31:33.0106 4344 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
13:31:33.0153 4344 WUDFRd - ok
13:31:33.0184 4344 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
13:31:33.0215 4344 wudfsvc - ok
13:31:33.0309 4344 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
13:31:33.0371 4344 WwanSvc - ok
13:31:33.0418 4344 [ 30B73EB97218A16CBC6DE535782A1B35 ] yukonw7 C:\Windows\system32\DRIVERS\yk62x86.sys
13:31:33.0481 4344 yukonw7 - ok
13:31:33.0574 4344 ================ Scan global ===============================
13:31:33.0574 4344 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
13:31:33.0590 4344 [ D70FE45855CAD4C0C6B1C1426ABDEBA9 ] C:\Windows\system32\winsrv.dll
13:31:33.0605 4344 [ D70FE45855CAD4C0C6B1C1426ABDEBA9 ] C:\Windows\system32\winsrv.dll
13:31:33.0621 4344 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
13:31:33.0637 4344 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
13:31:33.0652 4344 [Global] - ok
13:31:33.0652 4344 ================ Scan MBR ==================================
13:31:33.0668 4344 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
13:31:33.0871 4344 \Device\Harddisk0\DR0 - ok
13:31:33.0871 4344 ================ Scan VBR ==================================
13:31:33.0871 4344 [ C7209228F0B028EDB18ABEE68FB01AF0 ] \Device\Harddisk0\DR0\Partition1
13:31:33.0886 4344 \Device\Harddisk0\DR0\Partition1 - ok
13:31:33.0886 4344 [ 96CDAD90CC7898C118D40F0E9BA259CD ] \Device\Harddisk0\DR0\Partition2
13:31:33.0886 4344 \Device\Harddisk0\DR0\Partition2 - ok
13:31:33.0886 4344 ============================================================
13:31:33.0886 4344 Scan finished
13:31:33.0886 4344 ============================================================
13:31:33.0902 4128 Detected object count: 8
13:31:33.0902 4128 Actual detected object count: 8
13:31:41.0360 4128 ASLDRService ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 ASLDRService ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 hpqddsvc ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 hpqddsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 itecir ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 itecir ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 NSNDIS5 ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 NSNDIS5 ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0375 4128 TrueSight ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0375 4128 TrueSight ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:43.0622 2280 Deinitialize success
13:30:17.0803 2608 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
13:30:18.0053 2608 ============================================================
13:30:18.0053 2608 Current date / time: 2013/02/03 13:30:18.0053
13:30:18.0053 2608 SystemInfo:
13:30:18.0053 2608
13:30:18.0053 2608 OS Version: 6.1.7601 ServicePack: 1.0
13:30:18.0053 2608 Product type: Workstation
13:30:18.0053 2608 ComputerName: HOME-PC
13:30:18.0053 2608 UserName: Home
13:30:18.0053 2608 Windows directory: C:\Windows
13:30:18.0053 2608 System windows directory: C:\Windows
13:30:18.0053 2608 Processor architecture: Intel x86
13:30:18.0053 2608 Number of processors: 2
13:30:18.0053 2608 Page size: 0x1000
13:30:18.0053 2608 Boot type: Normal boot
13:30:18.0053 2608 ============================================================
13:30:18.0786 2608 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x78A5, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFB, Type 'K0', Flags 0x00000050
13:30:18.0802 2608 ============================================================
13:30:18.0802 2608 \Device\Harddisk0\DR0:
13:30:18.0802 2608 MBR partitions:
13:30:18.0802 2608 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xFA0000
13:30:18.0802 2608 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xFA0800, BlocksNum 0x1C224800
13:30:18.0802 2608 ============================================================
13:30:18.0802 2608 C: <-> \Device\Harddisk0\DR0\Partition2
13:30:18.0833 2608 D: <-> \Device\Harddisk0\DR0\Partition1
13:30:18.0833 2608 ============================================================
13:30:18.0833 2608 Initialize success
13:30:18.0833 2608 ============================================================
13:30:48.0895 4344 ============================================================
13:30:48.0895 4344 Scan started
13:30:48.0895 4344 Mode: Manual; SigCheck; TDLFS;
13:30:48.0895 4344 ============================================================
13:30:49.0473 4344 ================ Scan system memory ========================
13:30:49.0473 4344 System memory - ok
13:30:49.0473 4344 ================ Scan services =============================
13:30:49.0519 4344 [ 01E81C84AD1D0ACC61CF3CFD06632210 ] !SASCORE C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
13:30:49.0613 4344 !SASCORE - ok
13:30:49.0863 4344 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
13:30:49.0972 4344 1394ohci - ok
13:30:50.0003 4344 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
13:30:50.0034 4344 ACPI - ok
13:30:50.0081 4344 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
13:30:50.0143 4344 AcpiPmi - ok
13:30:50.0190 4344 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
13:30:50.0221 4344 adp94xx - ok
13:30:50.0237 4344 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
13:30:50.0268 4344 adpahci - ok
13:30:50.0284 4344 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
13:30:50.0315 4344 adpu320 - ok
13:30:50.0315 4344 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
13:30:50.0377 4344 AeLookupSvc - ok
13:30:50.0409 4344 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
13:30:50.0455 4344 AFD - ok
13:30:50.0502 4344 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
13:30:50.0549 4344 agp440 - ok
13:30:50.0596 4344 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
13:30:50.0627 4344 aic78xx - ok
13:30:50.0689 4344 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
13:30:50.0736 4344 ALG - ok
13:30:50.0799 4344 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
13:30:50.0814 4344 aliide - ok
13:30:50.0830 4344 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
13:30:50.0861 4344 amdagp - ok
13:30:50.0892 4344 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
13:30:50.0908 4344 amdide - ok
13:30:50.0939 4344 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
13:30:50.0986 4344 AmdK8 - ok
13:30:51.0017 4344 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
13:30:51.0064 4344 AmdPPM - ok
13:30:51.0095 4344 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
13:30:51.0111 4344 amdsata - ok
13:30:51.0157 4344 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
13:30:51.0173 4344 amdsbs - ok
13:30:51.0189 4344 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
13:30:51.0204 4344 amdxata - ok
13:30:51.0313 4344 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
13:30:51.0360 4344 AppID - ok
13:30:51.0391 4344 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
13:30:51.0454 4344 AppIDSvc - ok
13:30:51.0469 4344 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
13:30:51.0547 4344 Appinfo - ok
13:30:51.0594 4344 [ A5299D04ED225D64CF07A568A3E1BF8C ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
13:30:51.0610 4344 Apple Mobile Device - ok
13:30:51.0688 4344 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
13:30:51.0703 4344 arc - ok
13:30:51.0766 4344 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
13:30:51.0797 4344 arcsas - ok
13:30:51.0813 4344 [ 5A055A4777CBBC8845DD598CB2EEBF69 ] ASLDRService C:\Program Files\ATK Hotkey\ASLDRSrv.exe
13:30:51.0859 4344 ASLDRService ( UnsignedFile.Multi.Generic ) - warning
13:30:51.0859 4344 ASLDRService - detected UnsignedFile.Multi.Generic (1)
13:30:51.0875 4344 [ 7B4D08D2017AC06689D422E06C43F0AA ] ASMMAP C:\Program Files\ATKGFNEX\ASMMAP.sys
13:30:51.0891 4344 ASMMAP - ok
13:30:52.0234 4344 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
13:30:52.0281 4344 aspnet_state - ok
13:30:52.0359 4344 [ DE6ED95AEF259979B2830450072A627B ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
13:30:52.0374 4344 aswFsBlk - ok
13:30:52.0390 4344 [ 62F9DCEC95F91B8E0203E85D344A7E65 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
13:30:52.0405 4344 aswMonFlt - ok
13:30:52.0437 4344 [ 81F638A2DD94ABBF0B43880AB38D8DBD ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
13:30:52.0452 4344 aswRdr - ok
13:30:52.0499 4344 [ B32E9AD44A1DBB3E8095E80F8DF32B03 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
13:30:52.0530 4344 aswSnx - ok
13:30:52.0608 4344 [ 67B558895695545FB0568B7541F3BCA7 ] aswSP C:\Windows\system32\drivers\aswSP.sys
13:30:52.0639 4344 aswSP - ok
13:30:52.0717 4344 [ E3E73B2B73A4DFADFDDF557192C4B08A ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
13:30:52.0733 4344 aswTdi - ok
13:30:52.0764 4344 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
13:30:52.0842 4344 AsyncMac - ok
13:30:52.0858 4344 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
13:30:52.0889 4344 atapi - ok
13:30:52.0920 4344 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
13:30:52.0983 4344 AudioEndpointBuilder - ok
13:30:53.0029 4344 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
13:30:53.0076 4344 Audiosrv - ok
13:30:53.0123 4344 [ 8FA553E9AE69808D99C164733A0F9590 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
13:30:53.0139 4344 avast! Antivirus - ok
13:30:53.0170 4344 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
13:30:53.0217 4344 AxInstSV - ok
13:30:53.0263 4344 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
13:30:53.0326 4344 b06bdrv - ok
13:30:53.0357 4344 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
13:30:53.0404 4344 b57nd60x - ok
13:30:53.0435 4344 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
13:30:53.0497 4344 BDESVC - ok
13:30:53.0497 4344 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
13:30:53.0544 4344 Beep - ok
13:30:53.0607 4344 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
13:30:53.0685 4344 BFE - ok
13:30:53.0716 4344 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\system32\qmgr.dll
13:30:53.0825 4344 BITS - ok
13:30:53.0825 4344 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
13:30:53.0872 4344 blbdrive - ok
13:30:53.0903 4344 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
13:30:53.0934 4344 Bonjour Service - ok
13:30:53.0950 4344 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
13:30:53.0981 4344 bowser - ok
13:30:54.0059 4344 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
13:30:54.0168 4344 BrFiltLo - ok
13:30:54.0184 4344 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
13:30:54.0231 4344 BrFiltUp - ok
13:30:54.0262 4344 [ 77361D72A04F18809D0EFB6CCEB74D4B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
13:30:54.0324 4344 BridgeMP - ok
13:30:54.0340 4344 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
13:30:54.0387 4344 Browser - ok
13:30:54.0511 4344 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
13:30:54.0558 4344 Brserid - ok
13:30:54.0589 4344 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
13:30:54.0683 4344 BrSerWdm - ok
13:30:54.0699 4344 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
13:30:54.0730 4344 BrUsbMdm - ok
13:30:54.0761 4344 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
13:30:54.0808 4344 BrUsbSer - ok
13:30:54.0855 4344 [ 2865A5C8E98C70C605F417908CEBB3A4 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys
13:30:54.0917 4344 BthEnum - ok
13:30:54.0948 4344 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
13:30:54.0995 4344 BTHMODEM - ok
13:30:55.0042 4344 [ AD1872E5829E8A2C3B5B4B641C3EAB0E ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
13:30:55.0089 4344 BthPan - ok
13:30:55.0229 4344 [ 1153DE2E4F5941E10C399CB5592F78A1 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
13:30:55.0338 4344 BTHPORT - ok
13:30:55.0369 4344 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
13:30:55.0416 4344 bthserv - ok
13:30:55.0479 4344 [ C81E9413A25A439F436B1D4B6A0CF9E9 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
13:30:55.0510 4344 BTHUSB - ok
13:30:55.0541 4344 catchme - ok
13:30:55.0572 4344 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
13:30:55.0619 4344 cdfs - ok
13:30:55.0650 4344 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
13:30:55.0697 4344 cdrom - ok
13:30:55.0728 4344 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
13:30:55.0775 4344 CertPropSvc - ok
13:30:55.0806 4344 CFcatchme - ok
13:30:55.0822 4344 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
13:30:55.0853 4344 circlass - ok
13:30:55.0884 4344 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
13:30:55.0900 4344 CLFS - ok
13:30:55.0962 4344 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:30:55.0993 4344 clr_optimization_v2.0.50727_32 - ok
13:30:56.0025 4344 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:30:56.0040 4344 clr_optimization_v4.0.30319_32 - ok
13:30:56.0056 4344 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
13:30:56.0118 4344 CmBatt - ok
13:30:56.0196 4344 [ 2A2D72271844C52F004901A60312B96A ] cmdAgent C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
13:30:56.0243 4344 cmdAgent - ok
13:30:56.0274 4344 [ A1865742BBCF4C5F38FEE1258F8048FD ] cmdGuard C:\Windows\system32\DRIVERS\cmdguard.sys
13:30:56.0305 4344 cmdGuard - ok
13:30:56.0305 4344 [ 221D000474F01B1606FFC3FF362D9333 ] cmdHlp C:\Windows\system32\DRIVERS\cmdhlp.sys
13:30:56.0321 4344 cmdHlp - ok
13:30:56.0399 4344 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
13:30:56.0461 4344 cmdide - ok
13:30:56.0539 4344 [ 42F158036BD4C2FF3122BF142E60E6FD ] CNG C:\Windows\system32\Drivers\cng.sys
13:30:56.0571 4344 CNG - ok
13:30:56.0586 4344 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
13:30:56.0617 4344 Compbatt - ok
13:30:56.0617 4344 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
13:30:56.0664 4344 CompositeBus - ok
13:30:56.0680 4344 COMSysApp - ok
13:30:56.0695 4344 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
13:30:56.0727 4344 crcdisk - ok
13:30:56.0758 4344 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll
13:30:56.0805 4344 CryptSvc - ok
13:30:56.0836 4344 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
13:30:56.0883 4344 DcomLaunch - ok
13:30:56.0976 4344 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
13:30:57.0070 4344 defragsvc - ok
13:30:57.0085 4344 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
13:30:57.0148 4344 DfsC - ok
13:30:57.0179 4344 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
13:30:57.0226 4344 Dhcp - ok
13:30:57.0226 4344 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
13:30:57.0273 4344 discache - ok
13:30:57.0288 4344 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
13:30:57.0319 4344 Disk - ok
13:30:57.0335 4344 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
13:30:57.0382 4344 Dnscache - ok
13:30:57.0397 4344 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
13:30:57.0444 4344 dot3svc - ok
13:30:57.0475 4344 [ B5E479EB83707DD698F66953E922042C ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys
13:30:57.0507 4344 Dot4 - ok
13:30:57.0600 4344 [ CAEFD09B6A6249C53A67D55A9A9FCABF ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys
13:30:57.0663 4344 Dot4Print - ok
13:30:57.0709 4344 [ CF491FF38D62143203C065260567E2F7 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
13:30:57.0756 4344 dot4usb - ok
13:30:57.0772 4344 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
13:30:57.0850 4344 DPS - ok
13:30:57.0897 4344 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
13:30:57.0943 4344 drmkaud - ok
13:30:57.0975 4344 [ 687AF6BB383885FF6A64071B189A7F3E ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
13:30:57.0990 4344 dtsoftbus01 - ok
13:30:58.0021 4344 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
13:30:58.0053 4344 DXGKrnl - ok
13:30:58.0084 4344 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
13:30:58.0146 4344 EapHost - ok
13:30:59.0269 4344 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
13:30:59.0425 4344 ebdrv - ok
13:30:59.0441 4344 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
13:30:59.0503 4344 EFS - ok
13:30:59.0659 4344 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
13:30:59.0737 4344 ehRecvr - ok
13:30:59.0753 4344 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
13:30:59.0800 4344 ehSched - ok
13:30:59.0847 4344 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
13:30:59.0878 4344 elxstor - ok
13:30:59.0893 4344 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
13:30:59.0940 4344 ErrDev - ok
13:30:59.0987 4344 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
13:31:00.0065 4344 EventSystem - ok
13:31:00.0127 4344 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
13:31:00.0205 4344 exfat - ok
13:31:00.0221 4344 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
13:31:00.0283 4344 fastfat - ok
13:31:00.0330 4344 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
13:31:00.0393 4344 Fax - ok
13:31:00.0424 4344 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
13:31:00.0502 4344 fdc - ok
13:31:00.0533 4344 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
13:31:00.0595 4344 fdPHost - ok
13:31:00.0595 4344 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
13:31:00.0673 4344 FDResPub - ok
13:31:00.0673 4344 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
13:31:00.0705 4344 FileInfo - ok
13:31:00.0736 4344 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
13:31:00.0798 4344 Filetrace - ok
13:31:00.0814 4344 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
13:31:00.0892 4344 flpydisk - ok
13:31:00.0907 4344 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
13:31:00.0939 4344 FltMgr - ok
13:31:01.0126 4344 [ B3A5EC6B6B6673DB7E87C2BCDBDDC074 ] FontCache C:\Windows\system32\FntCache.dll
13:31:01.0204 4344 FontCache - ok
13:31:01.0313 4344 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
13:31:01.0360 4344 FontCache3.0.0.0 - ok
13:31:01.0375 4344 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
13:31:01.0391 4344 FsDepends - ok
13:31:01.0407 4344 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
13:31:01.0422 4344 Fs_Rec - ok
13:31:01.0485 4344 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
13:31:01.0516 4344 fvevol - ok
13:31:01.0563 4344 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
13:31:01.0594 4344 gagp30kx - ok
13:31:01.0656 4344 [ 185ADA973B5020655CEE342059A86CBB ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
13:31:01.0672 4344 GEARAspiWDM - ok
13:31:01.0765 4344 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
13:31:01.0843 4344 gpsvc - ok
13:31:01.0890 4344 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
13:31:01.0968 4344 hcw85cir - ok
13:31:01.0999 4344 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
13:31:02.0046 4344 HdAudAddService - ok
13:31:02.0062 4344 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
13:31:02.0124 4344 HDAudBus - ok
13:31:02.0155 4344 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
13:31:02.0187 4344 HidBatt - ok
13:31:02.0218 4344 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
13:31:02.0265 4344 HidBth - ok
13:31:02.0311 4344 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
13:31:02.0358 4344 HidIr - ok
13:31:02.0374 4344 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\System32\hidserv.dll
13:31:02.0436 4344 hidserv - ok
13:31:02.0499 4344 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
13:31:02.0514 4344 HidUsb - ok
13:31:02.0545 4344 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
13:31:02.0608 4344 hkmsvc - ok
13:31:02.0701 4344 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
13:31:02.0779 4344 HomeGroupListener - ok
13:31:02.0811 4344 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
13:31:02.0889 4344 HomeGroupProvider - ok
13:31:02.0951 4344 [ 0A3C6AA4A9FC38C20BA4EAC2C3351C05 ] hpqcxs08 C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
13:31:02.0967 4344 hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning
13:31:02.0967 4344 hpqcxs08 - detected UnsignedFile.Multi.Generic (1)
13:31:02.0982 4344 [ 99E8EEF42FE2F4AF29B08C3355DD7685 ] hpqddsvc C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
13:31:03.0013 4344 hpqddsvc ( UnsignedFile.Multi.Generic ) - warning
13:31:03.0013 4344 hpqddsvc - detected UnsignedFile.Multi.Generic (1)
13:31:03.0045 4344 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
13:31:03.0060 4344 HpSAMD - ok
13:31:03.0107 4344 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
13:31:03.0154 4344 HTTP - ok
13:31:03.0169 4344 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
13:31:03.0201 4344 hwpolicy - ok
13:31:03.0247 4344 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
13:31:03.0294 4344 i8042prt - ok
13:31:03.0341 4344 [ 7548066DF68A8A1A56B043359F915F37 ] IAANTMON C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
13:31:03.0357 4344 IAANTMON - ok
13:31:03.0388 4344 [ 3DB9F6F69B8BB99D241B15C7B52E3A3D ] iaNvStor C:\Windows\system32\DRIVERS\iaNvStor.sys
13:31:03.0403 4344 iaNvStor - ok
13:31:03.0435 4344 [ D483687EACE0C065EE772481A96E05F5 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
13:31:03.0450 4344 iaStor - ok
13:31:03.0559 4344 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
13:31:03.0606 4344 iaStorV - ok
13:31:04.0090 4344 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
13:31:04.0183 4344 idsvc - ok
13:31:04.0246 4344 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
13:31:04.0261 4344 iirsp - ok
13:31:04.0308 4344 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
13:31:04.0386 4344 IKEEXT - ok
13:31:04.0386 4344 [ 3B6BE2DA5993B1E38613976FAF4AC83E ] inspect C:\Windows\system32\DRIVERS\inspect.sys
13:31:04.0417 4344 inspect - ok
13:31:04.0573 4344 [ F2C17D2C3D70C389193D9954E375E5E3 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
13:31:04.0636 4344 IntcAzAudAddService - ok
13:31:04.0651 4344 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
13:31:04.0667 4344 intelide - ok
13:31:04.0698 4344 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
13:31:04.0761 4344 intelppm - ok
13:31:04.0792 4344 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
13:31:04.0854 4344 IPBusEnum - ok
13:31:04.0870 4344 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:31:04.0932 4344 IpFilterDriver - ok
13:31:04.0963 4344 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
13:31:05.0026 4344 iphlpsvc - ok
13:31:05.0057 4344 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
13:31:05.0088 4344 IPMIDRV - ok
13:31:05.0135 4344 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
13:31:05.0244 4344 IPNAT - ok
13:31:05.0291 4344 [ E8A39D41474BE42FD8830CED32932D6C ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
13:31:05.0307 4344 iPod Service - ok
13:31:05.0338 4344 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
13:31:05.0385 4344 IRENUM - ok
13:31:05.0416 4344 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
13:31:05.0447 4344 isapnp - ok
13:31:05.0494 4344 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
13:31:05.0525 4344 iScsiPrt - ok
13:31:05.0587 4344 [ EB6F7C665D7B5B4D79573B7CB950F2D4 ] itecir C:\Windows\system32\DRIVERS\itecir.sys
13:31:05.0634 4344 itecir ( UnsignedFile.Multi.Generic ) - warning
13:31:05.0634 4344 itecir - detected UnsignedFile.Multi.Generic (1)
13:31:05.0634 4344 [ C995C0E8B4503FAC38793BB0236AD246 ] JGOGO C:\Windows\system32\DRIVERS\JGOGO.sys
13:31:05.0681 4344 JGOGO - ok
13:31:05.0697 4344 [ F5BF72EABC7E160BB6624168AAD52DFE ] JRAID C:\Windows\system32\DRIVERS\jraid.sys
13:31:05.0728 4344 JRAID - ok
13:31:05.0743 4344 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
13:31:05.0775 4344 kbdclass - ok
13:31:05.0806 4344 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
13:31:05.0837 4344 kbdhid - ok
13:31:05.0853 4344 [ CC2A86D7BBF14977340DCA61BBCBA771 ] kbfiltr C:\Windows\system32\DRIVERS\kbfiltr.sys
13:31:05.0899 4344 kbfiltr - ok
13:31:05.0899 4344 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
13:31:05.0931 4344 KeyIso - ok
13:31:05.0931 4344 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
13:31:05.0962 4344 KSecDD - ok
13:31:05.0993 4344 [ 5FE1ABF1AF591A3458C9CF24ED9A4D35 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
13:31:06.0040 4344 KSecPkg - ok
13:31:06.0071 4344 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
13:31:06.0149 4344 KtmRm - ok
13:31:06.0196 4344 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\System32\srvsvc.dll
13:31:06.0258 4344 LanmanServer - ok
13:31:06.0274 4344 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:31:06.0336 4344 LanmanWorkstation - ok
13:31:06.0367 4344 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
13:31:06.0414 4344 lltdio - ok
13:31:06.0477 4344 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
13:31:06.0570 4344 lltdsvc - ok
13:31:06.0586 4344 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
13:31:06.0664 4344 lmhosts - ok
13:31:06.0695 4344 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
13:31:06.0726 4344 LSI_FC - ok
13:31:06.0757 4344 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
13:31:06.0773 4344 LSI_SAS - ok
13:31:06.0789 4344 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
13:31:06.0804 4344 LSI_SAS2 - ok
13:31:06.0867 4344 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
13:31:06.0913 4344 LSI_SCSI - ok
13:31:06.0913 4344 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
13:31:06.0976 4344 luafv - ok
13:31:07.0023 4344 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
13:31:07.0054 4344 Mcx2Svc - ok
13:31:07.0069 4344 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
13:31:07.0101 4344 megasas - ok
13:31:07.0147 4344 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
13:31:07.0163 4344 MegaSR - ok
13:31:07.0179 4344 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
13:31:07.0241 4344 MMCSS - ok
13:31:07.0257 4344 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
13:31:07.0303 4344 Modem - ok
13:31:07.0319 4344 [ 25483F9D590D5F00BD951E1181453EC2 ] MODEMCSA C:\Windows\system32\drivers\MODEMCSA.sys
13:31:07.0350 4344 MODEMCSA - ok
13:31:07.0381 4344 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
13:31:07.0413 4344 monitor - ok
13:31:07.0444 4344 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
13:31:07.0459 4344 mouclass - ok
13:31:07.0522 4344 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
13:31:07.0569 4344 mouhid - ok
13:31:07.0584 4344 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
13:31:07.0615 4344 mountmgr - ok
13:31:07.0725 4344 [ 9C3758018DED02F4AE53CCA1C5F084A2 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
13:31:07.0771 4344 MozillaMaintenance - ok
13:31:07.0818 4344 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
13:31:07.0865 4344 mpio - ok
13:31:07.0865 4344 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
13:31:07.0927 4344 mpsdrv - ok
13:31:08.0052 4344 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
13:31:08.0177 4344 MpsSvc - ok
13:31:08.0208 4344 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
13:31:08.0271 4344 MRxDAV - ok
13:31:08.0333 4344 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
13:31:08.0364 4344 mrxsmb - ok
13:31:08.0380 4344 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:31:08.0411 4344 mrxsmb10 - ok
13:31:08.0411 4344 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:31:08.0458 4344 mrxsmb20 - ok
13:31:08.0473 4344 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
13:31:08.0489 4344 msahci - ok
13:31:08.0520 4344 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
13:31:08.0567 4344 msdsm - ok
13:31:08.0661 4344 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
13:31:08.0739 4344 MSDTC - ok
13:31:08.0754 4344 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
13:31:08.0801 4344 Msfs - ok
13:31:08.0817 4344 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
13:31:08.0879 4344 mshidkmdf - ok
13:31:08.0879 4344 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
13:31:08.0910 4344 msisadrv - ok
13:31:08.0988 4344 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
13:31:09.0051 4344 MSiSCSI - ok
13:31:09.0066 4344 msiserver - ok
13:31:09.0097 4344 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
13:31:09.0144 4344 MSKSSRV - ok
13:31:09.0222 4344 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
13:31:09.0300 4344 MSPCLOCK - ok
13:31:09.0331 4344 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
13:31:09.0378 4344 MSPQM - ok
13:31:09.0409 4344 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
13:31:09.0456 4344 MsRPC - ok
13:31:09.0456 4344 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
13:31:09.0487 4344 mssmbios - ok
13:31:09.0519 4344 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
13:31:09.0550 4344 MSTEE - ok
13:31:09.0565 4344 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
13:31:09.0628 4344 MTConfig - ok
13:31:09.0643 4344 [ 97AFFA9D95FFE20EEE6229BC6BE166CF ] MTsensor C:\Windows\system32\DRIVERS\ATKACPI.sys
13:31:09.0659 4344 MTsensor - ok
13:31:09.0675 4344 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
13:31:09.0690 4344 Mup - ok
13:31:09.0784 4344 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
13:31:09.0893 4344 napagent - ok
13:31:09.0924 4344 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
13:31:09.0971 4344 NativeWifiP - ok
13:31:10.0018 4344 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
13:31:10.0049 4344 NDIS - ok
13:31:10.0065 4344 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
13:31:10.0143 4344 NdisCap - ok
13:31:10.0158 4344 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
13:31:10.0205 4344 NdisTapi - ok
13:31:10.0236 4344 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
13:31:10.0299 4344 Ndisuio - ok
13:31:10.0314 4344 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
13:31:10.0361 4344 NdisWan - ok
13:31:10.0377 4344 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
13:31:10.0423 4344 NDProxy - ok
13:31:10.0486 4344 [ A081CB6FB9A12668F233EB5414BE3A0E ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
13:31:10.0501 4344 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
13:31:10.0501 4344 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
13:31:10.0533 4344 [ 1352E1648213551923A0A822E441553C ] Netaapl C:\Windows\system32\DRIVERS\netaapl.sys
13:31:10.0564 4344 Netaapl - ok
13:31:10.0579 4344 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
13:31:10.0642 4344 NetBIOS - ok
13:31:10.0642 4344 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
13:31:10.0704 4344 NetBT - ok
13:31:10.0704 4344 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
13:31:10.0735 4344 Netlogon - ok
13:31:10.0782 4344 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
13:31:10.0845 4344 Netman - ok
13:31:10.0891 4344 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:10.0907 4344 NetMsmqActivator - ok
13:31:10.0923 4344 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:10.0938 4344 NetPipeActivator - ok
13:31:10.0985 4344 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
13:31:11.0094 4344 netprofm - ok
13:31:11.0125 4344 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:11.0141 4344 NetTcpActivator - ok
13:31:11.0157 4344 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:11.0188 4344 NetTcpPortSharing - ok
13:31:11.0359 4344 [ 58218EC6B61B1169CF54AAB0D00F5FE2 ] netw5v32 C:\Windows\system32\DRIVERS\netw5v32.sys
13:31:11.0593 4344 netw5v32 - ok
13:31:11.0625 4344 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
13:31:11.0656 4344 nfrd960 - ok
13:31:11.0671 4344 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\Windows\System32\nlasvc.dll
13:31:11.0718 4344 NlaSvc - ok
13:31:11.0734 4344 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
13:31:11.0781 4344 Npfs - ok
13:31:11.0796 4344 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
13:31:11.0859 4344 nsi - ok
13:31:11.0874 4344 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
13:31:11.0952 4344 nsiproxy - ok
13:31:12.0077 4344 [ 53F7546E8DAEFB3A0813F5E19C4613C9 ] NSNDIS5 C:\Windows\system32\NSNDIS5.SYS
13:31:12.0171 4344 NSNDIS5 ( UnsignedFile.Multi.Generic ) - warning
13:31:12.0171 4344 NSNDIS5 - detected UnsignedFile.Multi.Generic (1)
13:31:12.0467 4344 [ 0D87503986BB3DFED58E343FE39DDE13 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
13:31:12.0561 4344 Ntfs - ok
13:31:12.0561 4344 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
13:31:12.0623 4344 Null - ok
13:31:13.0091 4344 [ 0A1B502CBC8230DA74BEFBAADDB58916 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
13:31:13.0325 4344 nvlddmkm - ok
13:31:13.0419 4344 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
13:31:13.0465 4344 nvraid - ok
13:31:13.0512 4344 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
13:31:13.0528 4344 nvstor - ok
13:31:13.0949 4344 [ 0629259E3AF6BB0534FCECA208973404 ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
13:31:14.0043 4344 nvUpdatusService - ok
13:31:14.0058 4344 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
13:31:14.0090 4344 nv_agp - ok
13:31:14.0200 4344 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
13:31:14.0246 4344 odserv - ok
13:31:14.0262 4344 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
13:31:14.0356 4344 ohci1394 - ok
13:31:14.0402 4344 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:31:14.0434 4344 ose - ok
13:31:14.0527 4344 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
13:31:14.0605 4344 p2pimsvc - ok
13:31:14.0761 4344 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
13:31:14.0792 4344 p2psvc - ok
13:31:14.0808 4344 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
13:31:14.0870 4344 Parport - ok
13:31:14.0902 4344 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
13:31:14.0917 4344 partmgr - ok
13:31:14.0948 4344 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
13:31:15.0011 4344 Parvdm - ok
13:31:15.0058 4344 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
13:31:15.0104 4344 PcaSvc - ok
13:31:15.0136 4344 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
13:31:15.0167 4344 pci - ok
13:31:15.0182 4344 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
13:31:15.0198 4344 pciide - ok
13:31:15.0276 4344 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
13:31:15.0354 4344 pcmcia - ok
13:31:15.0385 4344 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
13:31:15.0401 4344 pcw - ok
13:31:15.0494 4344 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
13:31:15.0572 4344 PEAUTH - ok
13:31:16.0072 4344 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
13:31:16.0182 4344 pla - ok
13:31:16.0213 4344 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
13:31:16.0260 4344 PlugPlay - ok
13:31:16.0307 4344 [ 65BC271F337637731D3C71455AE1F476 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
13:31:16.0338 4344 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
13:31:16.0338 4344 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
13:31:16.0369 4344 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
13:31:16.0416 4344 PNRPAutoReg - ok
13:31:16.0509 4344 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
13:31:16.0572 4344 PNRPsvc - ok
13:31:16.0603 4344 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
13:31:16.0681 4344 PolicyAgent - ok
13:31:16.0697 4344 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
13:31:16.0759 4344 Power - ok
13:31:16.0775 4344 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
13:31:16.0868 4344 PptpMiniport - ok
13:31:16.0915 4344 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys
13:31:17.0009 4344 Processor - ok
13:31:17.0024 4344 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
13:31:17.0071 4344 ProfSvc - ok
13:31:17.0087 4344 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
13:31:17.0118 4344 ProtectedStorage - ok
13:31:17.0180 4344 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
13:31:17.0258 4344 Psched - ok
13:31:17.0367 4344 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
13:31:17.0523 4344 ql2300 - ok
13:31:17.0555 4344 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
13:31:17.0586 4344 ql40xx - ok
13:31:17.0617 4344 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
13:31:17.0711 4344 QWAVE - ok
13:31:17.0742 4344 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
13:31:17.0773 4344 QWAVEdrv - ok
13:31:17.0789 4344 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
13:31:17.0851 4344 RasAcd - ok
13:31:17.0882 4344 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
13:31:17.0929 4344 RasAgileVpn - ok
13:31:17.0960 4344 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
13:31:18.0007 4344 RasAuto - ok
13:31:18.0038 4344 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
13:31:18.0085 4344 Rasl2tp - ok
13:31:18.0116 4344 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
13:31:18.0194 4344 RasMan - ok
13:31:18.0210 4344 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
13:31:18.0257 4344 RasPppoe - ok
13:31:18.0288 4344 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
13:31:18.0366 4344 RasSstp - ok
13:31:18.0381 4344 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
13:31:18.0459 4344 rdbss - ok
13:31:18.0475 4344 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
13:31:18.0537 4344 rdpbus - ok
13:31:18.0600 4344 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
13:31:18.0647 4344 RDPCDD - ok
13:31:18.0662 4344 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
13:31:18.0725 4344 RDPENCDD - ok
13:31:18.0756 4344 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
13:31:18.0803 4344 RDPREFMP - ok
13:31:18.0896 4344 [ 65375DF758CA1872AB7EBBBA457FD5E6 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
13:31:18.0927 4344 RdpVideoMiniport - ok
13:31:19.0005 4344 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
13:31:19.0068 4344 RDPWD - ok
13:31:19.0130 4344 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
13:31:19.0177 4344 rdyboost - ok
13:31:19.0208 4344 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
13:31:19.0239 4344 RemoteAccess - ok
13:31:19.0271 4344 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
13:31:19.0349 4344 RemoteRegistry - ok
13:31:19.0395 4344 [ CB928D9E6DAF51879DD6BA8D02F01321 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
13:31:19.0442 4344 RFCOMM - ok
13:31:19.0473 4344 [ C35CA13D3627EBD9DD12A23CE781BC3D ] rimmptsk C:\Windows\system32\DRIVERS\rimmptsk.sys
13:31:19.0520 4344 rimmptsk - ok
13:31:19.0520 4344 [ C398BCA91216755B098679A8DA8A2300 ] rimsptsk C:\Windows\system32\DRIVERS\rimsptsk.sys
13:31:19.0551 4344 rimsptsk - ok
13:31:19.0567 4344 [ 2A2554CB24506E0A0508FC395C4A1B42 ] rismxdp C:\Windows\system32\DRIVERS\rixdptsk.sys
13:31:19.0614 4344 rismxdp - ok
13:31:19.0614 4344 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
13:31:19.0676 4344 RpcEptMapper - ok
13:31:19.0707 4344 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
13:31:19.0754 4344 RpcLocator - ok
13:31:19.0801 4344 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\System32\rpcss.dll
13:31:19.0863 4344 RpcSs - ok
13:31:19.0895 4344 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
13:31:19.0957 4344 rspndr - ok
13:31:19.0973 4344 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
13:31:20.0004 4344 SamSs - ok
13:31:20.0051 4344 [ 39763504067962108505BFF25F024345 ] SASDIFSV C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
13:31:20.0082 4344 SASDIFSV - ok
13:31:20.0097 4344 [ 77B9FC20084B48408AD3E87570EB4A85 ] SASKUTIL C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS
13:31:20.0129 4344 SASKUTIL - ok
13:31:20.0160 4344 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
13:31:20.0175 4344 sbp2port - ok
13:31:20.0222 4344 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
13:31:20.0285 4344 SCardSvr - ok
13:31:20.0316 4344 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
13:31:20.0378 4344 scfilter - ok
13:31:20.0519 4344 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
13:31:20.0597 4344 Schedule - ok
13:31:20.0628 4344 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
13:31:20.0659 4344 SCPolicySvc - ok
13:31:20.0690 4344 [ 0328BE1C7F1CBA23848179F8762E391C ] sdbus C:\Windows\system32\drivers\sdbus.sys
13:31:20.0721 4344 sdbus - ok
13:31:20.0768 4344 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
13:31:20.0815 4344 SDRSVC - ok
13:31:20.0831 4344 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
13:31:20.0909 4344 secdrv - ok
13:31:20.0924 4344 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
13:31:20.0971 4344 seclogon - ok
13:31:21.0002 4344 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\system32\sens.dll
13:31:21.0065 4344 SENS - ok
13:31:21.0096 4344 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
13:31:21.0143 4344 SensrSvc - ok
13:31:21.0189 4344 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
13:31:21.0252 4344 Serenum - ok
13:31:21.0283 4344 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
13:31:21.0330 4344 Serial - ok
13:31:21.0345 4344 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
13:31:21.0423 4344 sermouse - ok
13:31:21.0486 4344 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
13:31:21.0564 4344 SessionEnv - ok
13:31:21.0611 4344 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
13:31:21.0673 4344 sffdisk - ok
13:31:21.0704 4344 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
13:31:21.0735 4344 sffp_mmc - ok
13:31:21.0767 4344 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
13:31:21.0813 4344 sffp_sd - ok
13:31:21.0845 4344 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
13:31:21.0891 4344 sfloppy - ok
13:31:21.0938 4344 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
13:31:22.0001 4344 SharedAccess - ok
13:31:22.0032 4344 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:31:22.0094 4344 ShellHWDetection - ok
13:31:22.0141 4344 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
13:31:22.0172 4344 sisagp - ok
13:31:22.0219 4344 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
13:31:22.0250 4344 SiSRaid2 - ok
13:31:22.0266 4344 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
13:31:22.0313 4344 SiSRaid4 - ok
13:31:22.0344 4344 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
13:31:22.0422 4344 Smb - ok
13:31:22.0500 4344 [ 7E6628D18D30F14A56C0D9116310AB8A ] smserial C:\Windows\system32\DRIVERS\smserial.sys
13:31:22.0578 4344 smserial - ok
13:31:22.0625 4344 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
13:31:22.0656 4344 SNMPTRAP - ok
13:31:22.0765 4344 [ 0302BC619D4A723317E7F8EB0C362BD3 ] SNP2UVC C:\Windows\system32\DRIVERS\snp2uvc.sys
13:31:22.0859 4344 SNP2UVC - ok
13:31:22.0905 4344 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
13:31:22.0937 4344 spldr - ok
13:31:22.0968 4344 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
13:31:22.0999 4344 Spooler - ok
13:31:23.0498 4344 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
13:31:23.0685 4344 sppsvc - ok
13:31:23.0701 4344 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
13:31:23.0795 4344 sppuinotify - ok
13:31:23.0826 4344 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
13:31:23.0873 4344 srv - ok
13:31:23.0904 4344 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
13:31:23.0951 4344 srv2 - ok
13:31:23.0966 4344 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
13:31:24.0013 4344 srvnet - ok
13:31:24.0029 4344 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
13:31:24.0091 4344 SSDPSRV - ok
13:31:24.0107 4344 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
13:31:24.0153 4344 SstpSvc - ok
13:31:24.0200 4344 [ F0359F7CE712D69ACEF0886BDB4792ED ] Stereo Service C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
13:31:24.0231 4344 Stereo Service - ok
13:31:24.0309 4344 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
13:31:24.0341 4344 stexstor - ok
13:31:24.0387 4344 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
13:31:24.0512 4344 StiSvc - ok
13:31:24.0528 4344 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\drivers\swenum.sys
13:31:24.0559 4344 swenum - ok
13:31:24.0653 4344 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
13:31:24.0746 4344 swprv - ok
13:31:24.0840 4344 [ 6ED12875AC002C0F86B931F17E859327 ] symformcontrib C:\Program Files\Symform\Node Service\symformcontrib.exe
13:31:24.0871 4344 symformcontrib - ok
13:31:24.0918 4344 [ 64BE329AF4F913D891AB58A9C9C66141 ] symformsync C:\Program Files\Symform\Node Service\symformsync.exe
13:31:24.0949 4344 symformsync - ok
13:31:24.0996 4344 [ 6A5E351D1BDBF8E0ECE2C112CD79013F ] symformupdater C:\Program Files\Symform\Node Service\symformupdater.exe
13:31:25.0011 4344 symformupdater - ok
13:31:25.0043 4344 [ 55F6E55CC2430CA8713387106FA79817 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
13:31:25.0074 4344 SynTP - ok
13:31:25.0121 4344 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
13:31:25.0199 4344 SysMain - ok
13:31:25.0214 4344 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
13:31:25.0277 4344 TabletInputService - ok
13:31:25.0292 4344 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
13:31:25.0339 4344 TapiSrv - ok
13:31:25.0355 4344 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
13:31:25.0417 4344 TBS - ok
13:31:25.0479 4344 [ E23A56F843E2AEBBB209D0ACCA73C640 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
13:31:25.0542 4344 Tcpip - ok
13:31:25.0620 4344 [ E23A56F843E2AEBBB209D0ACCA73C640 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
13:31:25.0667 4344 TCPIP6 - ok
13:31:25.0682 4344 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
13:31:25.0698 4344 tcpipreg - ok
13:31:25.0729 4344 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
13:31:25.0760 4344 TDPIPE - ok
13:31:25.0791 4344 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
13:31:25.0854 4344 TDTCP - ok
13:31:25.0869 4344 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
13:31:25.0932 4344 tdx - ok
13:31:25.0932 4344 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\drivers\termdd.sys
13:31:25.0963 4344 TermDD - ok
13:31:26.0010 4344 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
13:31:26.0088 4344 TermService - ok
13:31:26.0088 4344 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
13:31:26.0119 4344 Themes - ok
13:31:26.0135 4344 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
13:31:26.0181 4344 THREADORDER - ok
13:31:26.0197 4344 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
13:31:26.0259 4344 TrkWks - ok
13:31:26.0353 4344 [ 81532F3628F8ACC80FD1264095960C3A ] TrueSight C:\Windows\system32\drivers\TrueSight.sys
13:31:26.0384 4344 TrueSight ( UnsignedFile.Multi.Generic ) - warning
13:31:26.0384 4344 TrueSight - detected UnsignedFile.Multi.Generic (1)
13:31:26.0415 4344 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:31:26.0478 4344 TrustedInstaller - ok
13:31:26.0509 4344 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
13:31:26.0556 4344 tssecsrv - ok
13:31:26.0587 4344 [ 9CE253214ACAA5A7D323327D2055EFAA ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
13:31:26.0618 4344 TsUsbFlt - ok
13:31:26.0649 4344 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
13:31:26.0696 4344 tunnel - ok
13:31:26.0743 4344 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
13:31:26.0759 4344 uagp35 - ok
13:31:26.0790 4344 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
13:31:26.0852 4344 udfs - ok
13:31:26.0883 4344 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
13:31:26.0977 4344 UI0Detect - ok
13:31:27.0024 4344 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
13:31:27.0055 4344 uliagpkx - ok
13:31:27.0071 4344 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\drivers\umbus.sys
13:31:27.0195 4344 umbus - ok
13:31:27.0258 4344 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
13:31:27.0336 4344 UmPass - ok
13:31:27.0414 4344 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
13:31:27.0507 4344 upnphost - ok
13:31:27.0585 4344 [ 8BF5D980CDCE35FB26F05047144BB57E ] USBAAPL C:\Windows\system32\Drivers\usbaapl.sys
13:31:27.0663 4344 USBAAPL - ok
13:31:27.0710 4344 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
13:31:27.0741 4344 usbccgp - ok
13:31:27.0773 4344 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys
13:31:27.0804 4344 usbcir - ok
13:31:27.0819 4344 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\drivers\usbehci.sys
13:31:27.0851 4344 usbehci - ok
13:31:27.0882 4344 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
13:31:27.0929 4344 usbhub - ok
13:31:27.0991 4344 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\drivers\usbohci.sys
13:31:28.0053 4344 usbohci - ok
13:31:28.0100 4344 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
13:31:28.0131 4344 usbprint - ok
13:31:28.0147 4344 usbscan - ok
13:31:28.0178 4344 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:31:28.0209 4344 USBSTOR - ok
13:31:28.0225 4344 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
13:31:28.0241 4344 usbuhci - ok
13:31:28.0287 4344 [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
13:31:28.0334 4344 usbvideo - ok
13:31:28.0350 4344 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
13:31:28.0381 4344 UxSms - ok
13:31:28.0397 4344 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
13:31:28.0428 4344 VaultSvc - ok
13:31:28.0459 4344 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
13:31:28.0490 4344 vdrvroot - ok
13:31:28.0537 4344 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
13:31:28.0584 4344 vds - ok
13:31:28.0615 4344 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
13:31:28.0662 4344 vga - ok
13:31:28.0662 4344 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
13:31:28.0709 4344 VgaSave - ok
13:31:28.0755 4344 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
13:31:28.0771 4344 vhdmp - ok
13:31:28.0802 4344 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
13:31:28.0833 4344 viaagp - ok
13:31:28.0865 4344 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys
13:31:28.0911 4344 ViaC7 - ok
13:31:28.0974 4344 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
13:31:29.0005 4344 viaide - ok
13:31:29.0021 4344 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
13:31:29.0036 4344 volmgr - ok
13:31:29.0114 4344 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
13:31:29.0145 4344 volmgrx - ok
13:31:29.0208 4344 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
13:31:29.0239 4344 volsnap - ok
13:31:29.0270 4344 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
13:31:29.0296 4344 vsmraid - ok
13:31:29.0485 4344 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
13:31:29.0594 4344 VSS - ok
13:31:29.0610 4344 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
13:31:29.0657 4344 vwifibus - ok
13:31:29.0688 4344 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
13:31:29.0750 4344 W32Time - ok
13:31:29.0781 4344 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
13:31:29.0813 4344 WacomPen - ok
13:31:29.0828 4344 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
13:31:29.0859 4344 WANARP - ok
13:31:29.0875 4344 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
13:31:29.0906 4344 Wanarpv6 - ok
13:31:29.0984 4344 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
13:31:30.0031 4344 WatAdminSvc - ok
13:31:30.0188 4344 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
13:31:30.0282 4344 wbengine - ok
13:31:30.0297 4344 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
13:31:30.0360 4344 WbioSrvc - ok
13:31:30.0406 4344 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
13:31:30.0469 4344 wcncsvc - ok
13:31:30.0484 4344 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:31:30.0516 4344 WcsPlugInService - ok
13:31:30.0547 4344 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys
13:31:30.0562 4344 Wd - ok
13:31:30.0609 4344 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
13:31:30.0656 4344 Wdf01000 - ok
13:31:30.0672 4344 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
13:31:30.0703 4344 WdiServiceHost - ok
13:31:30.0703 4344 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
13:31:30.0750 4344 WdiSystemHost - ok
13:31:30.0781 4344 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
13:31:30.0828 4344 WebClient - ok
13:31:30.0859 4344 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
13:31:30.0906 4344 Wecsvc - ok
13:31:30.0937 4344 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
13:31:30.0999 4344 wercplsupport - ok
13:31:31.0046 4344 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
13:31:31.0094 4344 WerSvc - ok
13:31:31.0125 4344 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
13:31:31.0172 4344 WfpLwf - ok
13:31:31.0219 4344 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
13:31:31.0250 4344 WIMMount - ok
13:31:31.0281 4344 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
13:31:31.0328 4344 WinDefend - ok
13:31:31.0343 4344 WinHttpAutoProxySvc - ok
13:31:31.0375 4344 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
13:31:31.0453 4344 Winmgmt - ok
13:31:31.0546 4344 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
13:31:31.0640 4344 WinRM - ok
13:31:31.0718 4344 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
13:31:31.0765 4344 WinUsb - ok
13:31:31.0811 4344 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
13:31:31.0967 4344 Wlansvc - ok
13:31:32.0061 4344 [ 0A70F4022EC2E14C159EFC4F69AA2477 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
13:31:32.0139 4344 wlidsvc - ok
13:31:32.0170 4344 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
13:31:32.0201 4344 WmiAcpi - ok
13:31:32.0233 4344 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
13:31:32.0264 4344 wmiApSrv - ok
13:31:32.0295 4344 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
13:31:32.0357 4344 WMPNetworkSvc - ok
13:31:32.0389 4344 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
13:31:32.0435 4344 WPCSvc - ok
13:31:32.0451 4344 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
13:31:32.0498 4344 WPDBusEnum - ok
13:31:32.0513 4344 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
13:31:32.0576 4344 ws2ifsl - ok
13:31:32.0591 4344 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\system32\wscsvc.dll
13:31:32.0654 4344 wscsvc - ok
13:31:32.0654 4344 WSearch - ok
13:31:32.0950 4344 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
13:31:33.0028 4344 wuauserv - ok
13:31:33.0044 4344 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
13:31:33.0075 4344 WudfPf - ok
13:31:33.0106 4344 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
13:31:33.0153 4344 WUDFRd - ok
13:31:33.0184 4344 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
13:31:33.0215 4344 wudfsvc - ok
13:31:33.0309 4344 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
13:31:33.0371 4344 WwanSvc - ok
13:31:33.0418 4344 [ 30B73EB97218A16CBC6DE535782A1B35 ] yukonw7 C:\Windows\system32\DRIVERS\yk62x86.sys
13:31:33.0481 4344 yukonw7 - ok
13:31:33.0574 4344 ================ Scan global ===============================
13:31:33.0574 4344 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
13:31:33.0590 4344 [ D70FE45855CAD4C0C6B1C1426ABDEBA9 ] C:\Windows\system32\winsrv.dll
13:31:33.0605 4344 [ D70FE45855CAD4C0C6B1C1426ABDEBA9 ] C:\Windows\system32\winsrv.dll
13:31:33.0621 4344 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
13:31:33.0637 4344 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
13:31:33.0652 4344 [Global] - ok
13:31:33.0652 4344 ================ Scan MBR ==================================
13:31:33.0668 4344 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
13:31:33.0871 4344 \Device\Harddisk0\DR0 - ok
13:31:33.0871 4344 ================ Scan VBR ==================================
13:31:33.0871 4344 [ C7209228F0B028EDB18ABEE68FB01AF0 ] \Device\Harddisk0\DR0\Partition1
13:31:33.0886 4344 \Device\Harddisk0\DR0\Partition1 - ok
13:31:33.0886 4344 [ 96CDAD90CC7898C118D40F0E9BA259CD ] \Device\Harddisk0\DR0\Partition2
13:31:33.0886 4344 \Device\Harddisk0\DR0\Partition2 - ok
13:31:33.0886 4344 ============================================================
13:31:33.0886 4344 Scan finished
13:31:33.0886 4344 ============================================================
13:31:33.0902 4128 Detected object count: 8
13:31:33.0902 4128 Actual detected object count: 8
13:31:41.0360 4128 ASLDRService ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 ASLDRService ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 hpqddsvc ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 hpqddsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 itecir ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 itecir ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 NSNDIS5 ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 NSNDIS5 ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0375 4128 TrueSight ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0375 4128 TrueSight ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:43.0622 2280 Deinitialize success
Re: prosím o preventivku, děkuju
Zadnou nevidim, chci proverit to MBR
Stahnete MBRScan http://eric71.geekstogo.com/tools/MbrScan.exe , ulozte ho na plochu a spustte jako spravce.
Kliknete na Report
Za chvili vyskoci log s nazvem MBRScan.txt, ten mi sem zkopirujte.

Kliknete na Report
Za chvili vyskoci log s nazvem MBRScan.txt, ten mi sem zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).