Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

POMALY NOTEBOOK č.2 - PROSIM O CELKOVOU KONTROLU

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: POMALY NOTEBOOK č.2 - PROSIM O CELKOVOU KONTROLU

#16 Příspěvek od miratan »

HDTune_Health_ST9160821AS.png
HDTune_Health_ST9160821AS.png (47.33 KiB) Zobrazeno 1076 x
HD TUNE 2.55
healt OK,

miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: POMALY NOTEBOOK č.2 - PROSIM O CELKOVOU KONTROLU

#17 Příspěvek od miratan »

ROGUE KILLER log:

RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : MINO [Práva správce]
Mód : Kontrola -- Datum : 04/22/2013 12:20:01
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

JESTE SE CHCI ZEPTAT CO S PROGRAMEM HD TUNE,ponechat...vymazat????

¤¤¤ ¤¤¤ Záznamy Registrů: : 7 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\MINO\AppData\Roaming\Seznam.cz\szninstall.exe" -c) [7] -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-1876766861-4099627362-3959107545-1000[...]\Run : cz.seznam.software.autoupdate ("C:\Users\MINO\AppData\Roaming\Seznam.cz\szninstall.exe" -c) [7] -> NALEZENO
[TASK][SUSP PATH] FGRun : C:\Users\MINO\AppData\Roaming\pack.exe [x] -> NALEZENO
[HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ SMENU] HKCU\[...]\Advanced : Start_ShowRecentDocs (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ Zvláštní soubory / Složky: ¤¤¤
[ZeroAccess][FOLDER] $NtUninstallKB1750$ : C:\Windows\$NtUninstallKB1750$ --> NALEZENO
[Faked.Drv][FILE] netbt.sys : C:\Windows\system32\drivers\netbt.sys [-] --> NALEZENO

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Nákaza : ZeroAccess ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: ST9160821AS ATA Device +++++
--- User ---
[MBR] 405981678c1bf9e814918ff482f294f7
[BSP] e6c2cebec9d5914c6fe029aa4b621d92 : Windows Vista/7/8 MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x1c) [HIDDEN!] Offset (sectors): 2048 | Size: 7000 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 14338048 | Size: 145626 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: SD Memory Card +++++
--- User ---
[MBR] f88b70e514c1edfae01ff8f50a59e496
[BSP] df4f83c1f72e36823a12b0dfc7617313 : Empty MBR Code
Partition table:
0 - [XXXXXX] FAT16 (0x06) [VISIBLE] Offset (sectors): 137 | Size: 1875 Mo
Error reading LL1 MBR!
Error reading LL2 MBR!

+++++ PhysicalDrive2: USB 2.0 USB Flash Drive USB Device +++++
--- User ---
[MBR] f777761d6f3a7a0bd9b06703f5360a46
[BSP] a83a24340e59ea8cbbf2d8eaa19e98b0 : Windows XP MBR Code
Partition table:
0 - [ACTIVE] FAT32 (0x0b) [VISIBLE] Offset (sectors): 63 | Size: 3855 Mo
User = LL1 ... OK!
Error reading LL2 MBR!

Dokončeno : << RKreport[1]_S_04222013_02d1220.txt >>
RKreport[1]_S_04222013_02d1220.txt

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: POMALY NOTEBOOK č.2 - PROSIM O CELKOVOU KONTROLU

#18 Příspěvek od Márty84 »

Ale ale, pekneho broucka si tam schovavate ¤¤¤ Nákaza : ZeroAccess ¤¤¤
Co taky cekat na nezabezpecenem pc :boxed:

Kdyz si o nem najdete informace, zjistite, ze to nezridka konci formatem, jelikoz dokaze pekne naborit system. Co se disku tyka, je na tom zle. Chtelo by to vymenu.
HD Tune muzete nechat i odinstalovat, to je uplne jedno.


:arrow: Znovu spustte RogueKiller jako spravce (pokud jste ho jeste nezavrel/a, rovnou kliknete na napis Smazat)
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Smazat.
Pak kliknete na napis Zprava a objevi se log. Ten mi sem vlozte.
Pak kliknete na napis Oprava Host a Zprava.
Objevi se dalsi log. I ten mi sem vlozte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: POMALY NOTEBOOK č.2 - PROSIM O CELKOVOU KONTROLU

#19 Příspěvek od miratan »

RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : MINO [Práva správce]
Mód : Kontrola -- Datum : 04/22/2013 12:20:01
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 7 ¤¤¤

RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : MINO [Práva správce]
Mód : Oprava HOSTS -- Datum : 04/22/2013 15:36:15
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Resetovaný HOSTS: ¤¤¤
127.0.0.1 localhost

Dokončeno : << RKreport[5]_H_04222013_02d1536.txt >>
RKreport[1]_S_04222013_02d1220.txt ; RKreport[2]_D_04222013_02d1434.txt ; RKreport[3]_S_04222013_02d1453.txt ; RKreport[4]_S_04222013_02d1517.txt ; RKreport[5]_H_04222013_02d1536.txt




[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\MINO\AppData\Roaming\Seznam.cz\szninstall.exe" -c) [7] -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-1876766861-4099627362-3959107545-1000[...]\Run : cz.seznam.software.autoupdate ("C:\Users\MINO\AppData\Roaming\Seznam.cz\szninstall.exe" -c) [7] -> NALEZENO
[TASK][SUSP PATH] FGRun : C:\Users\MINO\AppData\Roaming\pack.exe [x] -> NALEZENO
[HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ SMENU] HKCU\[...]\Advanced : Start_ShowRecentDocs (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ Zvláštní soubory / Složky: ¤¤¤
[ZeroAccess][FOLDER] $NtUninstallKB1750$ : C:\Windows\$NtUninstallKB1750$ --> NALEZENO
[Faked.Drv][FILE] netbt.sys : C:\Windows\system32\drivers\netbt.sys [-] --> NALEZENO

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Nákaza : ZeroAccess ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: ST9160821AS ATA Device +++++
--- User ---
[MBR] 405981678c1bf9e814918ff482f294f7
[BSP] e6c2cebec9d5914c6fe029aa4b621d92 : Windows Vista/7/8 MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x1c) [HIDDEN!] Offset (sectors): 2048 | Size: 7000 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 14338048 | Size: 145626 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: SD Memory Card +++++
--- User ---
[MBR] f88b70e514c1edfae01ff8f50a59e496
[BSP] df4f83c1f72e36823a12b0dfc7617313 : Empty MBR Code
Partition table:
0 - [XXXXXX] FAT16 (0x06) [VISIBLE] Offset (sectors): 137 | Size: 1875 Mo
Error reading LL1 MBR!
Error reading LL2 MBR!

+++++ PhysicalDrive2: USB 2.0 USB Flash Drive USB Device +++++
--- User ---
[MBR] f777761d6f3a7a0bd9b06703f5360a46
[BSP] a83a24340e59ea8cbbf2d8eaa19e98b0 : Windows XP MBR Code
Partition table:
0 - [ACTIVE] FAT32 (0x0b) [VISIBLE] Offset (sectors): 63 | Size: 3855 Mo
User = LL1 ... OK!
Error reading LL2 MBR!

Dokončeno : << RKreport[1]_S_04222013_02d1220.txt >>
RKreport[1]_S_04222013_02d1220.txt



RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : MINO [Práva správce]
Mód : Odebrat -- Datum : 04/22/2013 14:34:44
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 6 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\MINO\AppData\Roaming\Seznam.cz\szninstall.exe" -c) [7] -> VYMAZÁNO
[TASK][SUSP PATH] FGRun : C:\Users\MINO\AppData\Roaming\pack.exe [x] -> VYMAZÁNO
[HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ SMENU] HKCU\[...]\Advanced : Start_ShowRecentDocs (0) -> NAHRAZENO (1)
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ Zvláštní soubory / Složky: ¤¤¤
[ZeroAccess][JUNCTION] C:\Windows\$NtUninstallKB1750$ >> \systemroot\system32\config --> ODSTRANĚN
[Del.Parent][FILE] @ : C:\Windows\$NtUninstallKB1750$\2017951377\@ [-] --> ODSTRANĚN
[Del.Parent][FILE] Desktop.ini : C:\Windows\$NtUninstallKB1750$\2017951377\Desktop.ini [-] --> ODSTRANĚN
[Del.Parent][FILE] 00000004.@ : C:\Windows\$NtUninstallKB1750$\2017951377\L\00000004.@ [-] --> ODSTRANĚN
[Del.Parent][FILE] 00000008.@ : C:\Windows\$NtUninstallKB1750$\2017951377\L\00000008.@ [-] --> ODSTRANĚN
[Del.Parent][FILE] 201d3dde : C:\Windows\$NtUninstallKB1750$\2017951377\L\201d3dde [-] --> ODSTRANĚN
[Del.Parent][FILE] 6715e287 : C:\Windows\$NtUninstallKB1750$\2017951377\L\6715e287 [-] --> ODSTRANĚN
[Del.Parent][FILE] 76603ac3 : C:\Windows\$NtUninstallKB1750$\2017951377\L\76603ac3 [-] --> ODSTRANĚN
[Del.Parent][FILE] qnbwvoto : C:\Windows\$NtUninstallKB1750$\2017951377\L\qnbwvoto [-] --> ODSTRANĚN
[Del.Parent][FOLDER] ROOT : C:\Windows\$NtUninstallKB1750$\2017951377\L --> ODSTRANĚN
[Del.Parent][FILE] 00000004.@ : C:\Windows\$NtUninstallKB1750$\2017951377\U\00000004.@ [-] --> ODSTRANĚN
[Del.Parent][FILE] 00000008.@ : C:\Windows\$NtUninstallKB1750$\2017951377\U\00000008.@ [-] --> ODSTRANĚN
[Del.Parent][FILE] 000000cb.@ : C:\Windows\$NtUninstallKB1750$\2017951377\U\000000cb.@ [-] --> ODSTRANĚN
[Del.Parent][FILE] 80000000.@ : C:\Windows\$NtUninstallKB1750$\2017951377\U\80000000.@ [-] --> ODSTRANĚN
[Del.Parent][FILE] 80000032.@ : C:\Windows\$NtUninstallKB1750$\2017951377\U\80000032.@ [-] --> ODSTRANĚN
[Del.Parent][FOLDER] ROOT : C:\Windows\$NtUninstallKB1750$\2017951377\U --> ODSTRANĚN
[Del.Parent][FOLDER] ROOT : C:\Windows\$NtUninstallKB1750$\2017951377 --> ODSTRANĚN PO RESTARTU
[Del.Parent][FILE] 3275580898 : C:\Windows\$NtUninstallKB1750$\3275580898 [-] --> ODSTRANĚN
[ZeroAccess][FOLDER] ROOT : C:\Windows\$NtUninstallKB1750$ --> ODSTRANĚN PO RESTARTU
[Faked.Drv][FILE] netbt.sys : C:\Windows\system32\drivers\netbt.sys [-] --> NELZE OPRAVIT

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Nákaza : ZeroAccess ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: ST9160821AS ATA Device +++++
--- User ---
[MBR] 405981678c1bf9e814918ff482f294f7
[BSP] e6c2cebec9d5914c6fe029aa4b621d92 : Windows Vista/7/8 MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x1c) [HIDDEN!] Offset (sectors): 2048 | Size: 7000 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 14338048 | Size: 145626 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: SD Memory Card +++++
--- User ---
[MBR] f88b70e514c1edfae01ff8f50a59e496
[BSP] df4f83c1f72e36823a12b0dfc7617313 : Empty MBR Code
Partition table:
0 - [XXXXXX] FAT16 (0x06) [VISIBLE] Offset (sectors): 137 | Size: 1875 Mo
Error reading LL1 MBR!
Error reading LL2 MBR!

+++++ PhysicalDrive2: USB 2.0 USB Flash Drive USB Device +++++
--- User ---
[MBR] f777761d6f3a7a0bd9b06703f5360a46
[BSP] a83a24340e59ea8cbbf2d8eaa19e98b0 : Windows XP MBR Code
Partition table:
0 - [ACTIVE] FAT32 (0x0b) [VISIBLE] Offset (sectors): 63 | Size: 3855 Mo
User = LL1 ... OK!
Error reading LL2 MBR!

Dokončeno : << RKreport[2]_D_04222013_02d1434.txt >>
RKreport[1]_S_04222013_02d1220.txt ; RKreport[2]_D_04222013_02d1434.txt



RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : MINO [Práva správce]
Mód : Kontrola -- Datum : 04/22/2013 14:53:35
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: ST9160821AS ATA Device +++++
--- User ---
[MBR] 405981678c1bf9e814918ff482f294f7
[BSP] e6c2cebec9d5914c6fe029aa4b621d92 : Windows Vista/7/8 MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x1c) [HIDDEN!] Offset (sectors): 2048 | Size: 7000 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 14338048 | Size: 145626 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: SD Memory Card +++++
--- User ---
[MBR] f88b70e514c1edfae01ff8f50a59e496
[BSP] df4f83c1f72e36823a12b0dfc7617313 : Empty MBR Code
Partition table:
0 - [XXXXXX] FAT16 (0x06) [VISIBLE] Offset (sectors): 137 | Size: 1875 Mo
Error reading LL1 MBR!
Error reading LL2 MBR!

+++++ PhysicalDrive2: USB 2.0 USB Flash Drive USB Device +++++
--- User ---
[MBR] f777761d6f3a7a0bd9b06703f5360a46
[BSP] a83a24340e59ea8cbbf2d8eaa19e98b0 : Windows XP MBR Code
Partition table:
0 - [ACTIVE] FAT32 (0x0b) [VISIBLE] Offset (sectors): 63 | Size: 3855 Mo
User = LL1 ... OK!
Error reading LL2 MBR!

Dokončeno : << RKreport[3]_S_04222013_02d1453.txt >>
RKreport[1]_S_04222013_02d1220.txt ; RKreport[2]_D_04222013_02d1434.txt ; RKreport[3]_S_04222013_02d1453.txt



RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : MINO [Práva správce]
Mód : Kontrola -- Datum : 04/22/2013 14:53:35
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: ST9160821AS ATA Device +++++
--- User ---
[MBR] 405981678c1bf9e814918ff482f294f7
[BSP] e6c2cebec9d5914c6fe029aa4b621d92 : Windows Vista/7/8 MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x1c) [HIDDEN!] Offset (sectors): 2048 | Size: 7000 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 14338048 | Size: 145626 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: SD Memory Card +++++
--- User ---
[MBR] f88b70e514c1edfae01ff8f50a59e496
[BSP] df4f83c1f72e36823a12b0dfc7617313 : Empty MBR Code
Partition table:
0 - [XXXXXX] FAT16 (0x06) [VISIBLE] Offset (sectors): 137 | Size: 1875 Mo
Error reading LL1 MBR!
Error reading LL2 MBR!

+++++ PhysicalDrive2: USB 2.0 USB Flash Drive USB Device +++++
--- User ---
[MBR] f777761d6f3a7a0bd9b06703f5360a46
[BSP] a83a24340e59ea8cbbf2d8eaa19e98b0 : Windows XP MBR Code
Partition table:
0 - [ACTIVE] FAT32 (0x0b) [VISIBLE] Offset (sectors): 63 | Size: 3855 Mo
User = LL1 ... OK!
Error reading LL2 MBR!

Dokončeno : << RKreport[3]_S_04222013_02d1453.txt >>
RKreport[1]_S_04222013_02d1220.txt ; RKreport[2]_D_04222013_02d1434.txt ; RKreport[3]_S_04222013_02d1453.txt



RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : MINO [Práva správce]
Mód : Kontrola -- Datum : 04/22/2013 15:17:22
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: ST9160821AS ATA Device +++++
--- User ---
[MBR] 405981678c1bf9e814918ff482f294f7
[BSP] e6c2cebec9d5914c6fe029aa4b621d92 : Windows Vista/7/8 MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x1c) [HIDDEN!] Offset (sectors): 2048 | Size: 7000 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 14338048 | Size: 145626 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: SD Memory Card +++++
--- User ---
[MBR] f88b70e514c1edfae01ff8f50a59e496
[BSP] df4f83c1f72e36823a12b0dfc7617313 : Empty MBR Code
Partition table:
0 - [XXXXXX] FAT16 (0x06) [VISIBLE] Offset (sectors): 137 | Size: 1875 Mo
Error reading LL1 MBR!
Error reading LL2 MBR!

+++++ PhysicalDrive2: USB 2.0 USB Flash Drive USB Device +++++
--- User ---
[MBR] f777761d6f3a7a0bd9b06703f5360a46
[BSP] a83a24340e59ea8cbbf2d8eaa19e98b0 : Windows XP MBR Code
Partition table:
0 - [ACTIVE] FAT32 (0x0b) [VISIBLE] Offset (sectors): 63 | Size: 3855 Mo
User = LL1 ... OK!
Error reading LL2 MBR!

Dokončeno : << RKreport[4]_S_04222013_02d1517.txt >>
RKreport[1]_S_04222013_02d1220.txt ; RKreport[2]_D_04222013_02d1434.txt ; RKreport[3]_S_04222013_02d1453.txt ; RKreport[4]_S_04222013_02d1517.txt

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: POMALY NOTEBOOK č.2 - PROSIM O CELKOVOU KONTROLU

#20 Příspěvek od Márty84 »

:arrow: Postupujte podle navodu kolegy
vyosek píše: :arrow: Stahnete si TDSSKiller http://support.kaspersky.com/downloads/ ... killer.exe
  • Kliknete na volbu Change parametrs
  • V okne Additional Option zakliknete vsechny moznosti
  • Kliknete na OK
  • Utilite prikazte, at skenuje - klik na Start Scan
  • Po dokonceni skenu se objevi okno, zkontrolujte, zda-li je vsude moznost Skip
  • Pokud moznost Skip nebude primarne nastavena, prekliknete ji na Skip
  • Pokud mate vsude Skip, kliknete na Continue
  • Na disku, kde mate Windows (obvykle c:\) ve tvaru TDSSKiller.nejaka cisilka _log.txt bude log - jeho obsah sem vlozte
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: POMALY NOTEBOOK č.2 - PROSIM O CELKOVOU KONTROLU

#21 Příspěvek od miratan »

04:17:27.0740 4596 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
04:17:28.0026 4596 ============================================================
04:17:28.0026 4596 Current date / time: 2013/04/23 04:17:28.0026
04:17:28.0026 4596 SystemInfo:
04:17:28.0026 4596
04:17:28.0026 4596 OS Version: 6.0.6002 ServicePack: 2.0
04:17:28.0026 4596 Product type: Workstation
04:17:28.0026 4596 ComputerName: MINO-PC
04:17:28.0027 4596 UserName: MINO
04:17:28.0027 4596 Windows directory: C:\Windows
04:17:28.0027 4596 System windows directory: C:\Windows
04:17:28.0027 4596 Processor architecture: Intel x86
04:17:28.0027 4596 Number of processors: 2
04:17:28.0027 4596 Page size: 0x1000
04:17:28.0027 4596 Boot type: Normal boot
04:17:28.0027 4596 ============================================================
04:17:29.0145 4596 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
04:17:29.0152 4596 Drive \Device\Harddisk2\DR1 - Size: 0xF1000000 (3.77 Gb), SectorSize: 0x200, Cylinders: 0x1EB, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
04:17:29.0154 4596 ============================================================
04:17:29.0154 4596 \Device\Harddisk0\DR0:
04:17:29.0167 4596 MBR partitions:
04:17:29.0168 4596 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0xDAC800, BlocksNum 0x11C6D000
04:17:29.0168 4596 \Device\Harddisk2\DR1:
04:17:29.0168 4596 MBR partitions:
04:17:29.0168 4596 \Device\Harddisk2\DR1\Partition1: MBR, Type 0xB, StartLBA 0x3F, BlocksNum 0x787FC1
04:17:29.0169 4596 ============================================================
04:17:29.0466 4596 C: <-> \Device\Harddisk0\DR0\Partition1
04:17:29.0467 4596 ============================================================
04:17:29.0467 4596 Initialize success
04:17:29.0467 4596 ============================================================
04:19:44.0846 3220 ============================================================
04:19:44.0846 3220 Scan started
04:19:44.0846 3220 Mode: Manual; SigCheck; TDLFS;
04:19:44.0846 3220 ============================================================
04:19:46.0284 3220 ================ Scan system memory ========================
04:19:46.0284 3220 System memory - ok
04:19:46.0285 3220 ================ Scan services =============================
04:19:46.0462 3220 [ 82B296AE1892FE3DBEE00C9CF92F8AC7 ] ACPI C:\Windows\system32\drivers\acpi.sys
04:19:46.0736 3220 ACPI - ok
04:19:46.0819 3220 [ EA856F4A46320389D1899B2CAA7BF40F ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
04:19:46.0868 3220 AdobeFlashPlayerUpdateSvc - ok
04:19:46.0927 3220 [ 2EDC5BBAC6C651ECE337BDE8ED97C9FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
04:19:46.0965 3220 adp94xx - ok
04:19:47.0011 3220 [ B84088CA3CDCA97DA44A984C6CE1CCAD ] adpahci C:\Windows\system32\drivers\adpahci.sys
04:19:47.0042 3220 adpahci - ok
04:19:47.0061 3220 [ 7880C67BCCC27C86FD05AA2AFB5EA469 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
04:19:47.0086 3220 adpu160m - ok
04:19:47.0116 3220 [ 9AE713F8E30EFC2ABCCD84904333DF4D ] adpu320 C:\Windows\system32\drivers\adpu320.sys
04:19:47.0141 3220 adpu320 - ok
04:19:47.0245 3220 [ 609A6F49B6AF0F25837F8A0EDDDB0745 ] ADSMService C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
04:19:47.0632 3220 ADSMService ( UnsignedFile.Multi.Generic ) - warning
04:19:47.0632 3220 ADSMService - detected UnsignedFile.Multi.Generic (1)
04:19:47.0794 3220 [ 9D1FDA9E086BA64E3C93C9DE32461BCF ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
04:19:48.0106 3220 AeLookupSvc - ok
04:19:48.0162 3220 [ 3911B972B55FEA0478476B2E777B29FA ] AFD C:\Windows\system32\drivers\afd.sys
04:19:48.0289 3220 AFD - ok
04:19:48.0325 3220 [ EF23439CDD587F64C2C1B8825CEAD7D8 ] agp440 C:\Windows\system32\drivers\agp440.sys
04:19:48.0347 3220 agp440 - ok
04:19:48.0399 3220 [ AE1FDF7BF7BB6C6A70F67699D880592A ] aic78xx C:\Windows\system32\drivers\djsvs.sys
04:19:48.0626 3220 aic78xx - ok
04:19:48.0668 3220 [ A1545B731579895D8CC44FC0481C1192 ] ALG C:\Windows\System32\alg.exe
04:19:48.0877 3220 ALG - ok
04:19:48.0908 3220 [ 90395B64600EBB4552E26E178C94B2E4 ] aliide C:\Windows\system32\drivers\aliide.sys
04:19:48.0930 3220 aliide - ok
04:19:48.0956 3220 [ 2B13E304C9DFDFA5EB582F6A149FA2C7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
04:19:48.0979 3220 amdagp - ok
04:19:49.0000 3220 [ 0577DF1D323FE75A739C787893D300EA ] amdide C:\Windows\system32\drivers\amdide.sys
04:19:49.0022 3220 amdide - ok
04:19:49.0052 3220 [ DC487885BCEF9F28EECE6FAC0E5DDFC5 ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
04:19:49.0294 3220 AmdK7 - ok
04:19:49.0331 3220 [ 93AE7F7DD54AB986A6F1A1B37BE7442D ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
04:19:49.0395 3220 AmdK8 - ok
04:19:49.0432 3220 [ C6D704C7F0434DC791AAC37CAC4B6E14 ] Appinfo C:\Windows\System32\appinfo.dll
04:19:49.0511 3220 Appinfo - ok
04:19:49.0553 3220 [ 5F673180268BB1FDB69C99B6619FE379 ] arc C:\Windows\system32\drivers\arc.sys
04:19:49.0577 3220 arc - ok
04:19:49.0596 3220 [ 957F7540B5E7F602E44648C7DE5A1C05 ] arcsas C:\Windows\system32\drivers\arcsas.sys
04:19:49.0620 3220 arcsas - ok
04:19:49.0659 3220 [ 0ADFAAECC36CBE604F4EFD0829EEBB89 ] AsDsm C:\Windows\system32\drivers\AsDsm.sys
04:19:49.0711 3220 AsDsm - ok
04:19:49.0773 3220 [ 66597AD6098352D11239C0C42100B176 ] ASLDRService C:\Program Files\ATK Hotkey\ASLDRSrv.exe
04:19:49.0809 3220 ASLDRService ( UnsignedFile.Multi.Generic ) - warning
04:19:49.0809 3220 ASLDRService - detected UnsignedFile.Multi.Generic (1)
04:19:49.0834 3220 [ 7B4D08D2017AC06689D422E06C43F0AA ] ASMMAP C:\Program Files\ATKGFNEX\ASMMAP.sys
04:19:49.0854 3220 ASMMAP - ok
04:19:49.0897 3220 [ CCDA8D84FD02AEC52E62F296433AE9DC ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
04:19:49.0919 3220 aswFsBlk - ok
04:19:49.0967 3220 [ A6E20E62871A28A0F1C05B1681848FA7 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
04:19:49.0991 3220 aswMonFlt - ok
04:19:50.0042 3220 [ C1A411B7CCD604554D96EFDAC2F83617 ] AswRdr C:\Windows\system32\drivers\AswRdr.sys
04:19:50.0064 3220 AswRdr - ok
04:19:50.0122 3220 [ 657A61979F40D67CA29716149766FFA7 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
04:19:50.0160 3220 aswRvrt - ok
04:19:50.0414 3220 [ 0E604867FC28F00D91CB0B00D2EC830D ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
04:19:50.0615 3220 aswSnx - ok
04:19:50.0661 3220 [ 6FC4AA106AA505394C908D37CCCB9148 ] aswSP C:\Windows\system32\drivers\aswSP.sys
04:19:50.0698 3220 aswSP - ok
04:19:50.0762 3220 [ 33E21FFB063CA6C7E00D568467DC72E4 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
04:19:50.0785 3220 aswTdi - ok
04:19:50.0806 3220 [ EDB0C9BA44B748E420CCA989FD8B826E ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
04:19:50.0833 3220 aswVmm - ok
04:19:50.0872 3220 [ 53B202ABEE6455406254444303E87BE1 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
04:19:50.0933 3220 AsyncMac - ok
04:19:50.0967 3220 [ 1F05B78AB91C9075565A9D8A4B880BC4 ] atapi C:\Windows\system32\drivers\atapi.sys
04:19:50.0988 3220 atapi - ok
04:19:51.0044 3220 [ 44362605F5FFF00C9B7696B47680A8C5 ] athr C:\Windows\system32\DRIVERS\athr.sys
04:19:51.0191 3220 athr - ok
04:19:51.0300 3220 [ DC29F69A1264CCD65C9A405C78B45A38 ] Ati External Event Utility C:\Windows\system32\Ati2evxx.exe
04:19:51.0430 3220 Ati External Event Utility - ok
04:19:51.0554 3220 [ DAB221F5D3FDE9D0F87FAB2E256CE85C ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
04:19:51.0791 3220 atikmdag - ok
04:19:51.0835 3220 [ DCE3F93C8AD509C51060EDD4B6C71E70 ] ATKGFNEXSrv C:\Program Files\ATKGFNEX\GFNEXSrv.exe
04:19:51.0879 3220 ATKGFNEXSrv ( UnsignedFile.Multi.Generic ) - warning
04:19:51.0879 3220 ATKGFNEXSrv - detected UnsignedFile.Multi.Generic (1)
04:19:51.0937 3220 [ 68E2A1A0407A66CF50DA0300852424AB ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
04:19:51.0999 3220 AudioEndpointBuilder - ok
04:19:52.0037 3220 [ 68E2A1A0407A66CF50DA0300852424AB ] Audiosrv C:\Windows\System32\Audiosrv.dll
04:19:52.0078 3220 Audiosrv - ok
04:19:52.0162 3220 [ B5D974C1FD078A68C7536C561B031D39 ] Automatic LiveUpdate Scheduler C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
04:19:52.0231 3220 Automatic LiveUpdate Scheduler - ok
04:19:52.0336 3220 [ 41735B82DB57E4EBE9504EC400FD120E ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
04:19:52.0359 3220 avast! Antivirus - ok
04:19:52.0401 3220 [ 5903D729D4F0C5BCA74123C96A1B29E0 ] AvgMfx86 C:\Windows\System32\Drivers\avgmfx86.sys
04:19:52.0428 3220 AvgMfx86 - ok
04:19:52.0468 3220 [ CAE7B6E4D7EB17829C526153D19B9C95 ] avgtp C:\Windows\system32\drivers\avgtpx86.sys
04:19:52.0499 3220 avgtp - ok
04:19:52.0530 3220 [ 67E506B75BD5326A3EC7B70BD014DFB6 ] Beep C:\Windows\system32\drivers\Beep.sys
04:19:52.0609 3220 Beep - ok
04:19:52.0626 3220 blbdrive - ok
04:19:52.0667 3220 [ 35F376253F687BDE63976CCB3F2108CA ] bowser C:\Windows\system32\DRIVERS\bowser.sys
04:19:52.0948 3220 bowser - ok
04:19:52.0974 3220 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
04:19:53.0017 3220 BrFiltLo - ok
04:19:53.0036 3220 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
04:19:53.0090 3220 BrFiltUp - ok
04:19:53.0128 3220 [ A3629A0C4226F9E9C72FAAEEBC3AD33C ] Browser C:\Windows\System32\browser.dll
04:19:53.0208 3220 Browser - ok
04:19:53.0247 3220 [ B304E75CFF293029EDDF094246747113 ] Brserid C:\Windows\system32\drivers\brserid.sys
04:19:53.0347 3220 Brserid - ok
04:19:53.0366 3220 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
04:19:53.0446 3220 BrSerWdm - ok
04:19:53.0487 3220 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
04:19:53.0564 3220 BrUsbMdm - ok
04:19:53.0589 3220 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
04:19:53.0685 3220 BrUsbSer - ok
04:19:53.0742 3220 [ 3472331B9D460212965B51A8D38E8BEC ] BthAvrcp C:\Windows\system32\DRIVERS\BthAvrcp.sys
04:19:53.0872 3220 BthAvrcp - ok
04:19:53.0912 3220 [ 6D39C954799B63BA866910234CF7D726 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys
04:19:53.0960 3220 BthEnum - ok
04:19:53.0985 3220 [ 9A966A8E86D1771911AE34A20D11BFF3 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
04:19:54.0039 3220 BTHMODEM - ok
04:19:54.0112 3220 [ 5904EFA25F829BF84EA6FB045134A1D8 ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
04:19:54.0175 3220 BthPan - ok
04:19:54.0266 3220 [ 611FF3F2F095C8D4A6D4CFD9DCC09793 ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys
04:19:54.0365 3220 BTHPORT - ok
04:19:54.0432 3220 [ A4C8377FA4A994E07075107DBE2E3DCE ] BthServ C:\Windows\System32\bthserv.dll
04:19:54.0494 3220 BthServ - ok
04:19:54.0512 3220 [ D330803EAB2A15CAEC7F011F1D4CB30E ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys
04:19:54.0550 3220 BTHUSB - ok
04:19:54.0590 3220 [ 7ADD03E75BEB9E6DD102C3081D29840A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
04:19:54.0644 3220 cdfs - ok
04:19:54.0679 3220 [ 6B4BFFB9BECD728097024276430DB314 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
04:19:54.0716 3220 cdrom - ok
04:19:54.0749 3220 [ 312EC3E37A0A1F2006534913E37B4423 ] CertPropSvc C:\Windows\System32\certprop.dll
04:19:54.0822 3220 CertPropSvc - ok
04:19:54.0856 3220 [ E5D4133F37219DBCFE102BC61072589D ] circlass C:\Windows\system32\DRIVERS\circlass.sys
04:19:54.0914 3220 circlass - ok
04:19:54.0960 3220 [ D7659D3B5B92C31E84E53C1431F35132 ] CLFS C:\Windows\system32\CLFS.sys
04:19:55.0005 3220 CLFS - ok
04:19:55.0066 3220 [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
04:19:55.0761 3220 clr_optimization_v2.0.50727_32 - ok
04:19:55.0842 3220 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
04:19:56.0045 3220 clr_optimization_v4.0.30319_32 - ok
04:19:56.0085 3220 [ 99AFC3795B58CC478FBBBCDC658FCB56 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
04:19:56.0145 3220 CmBatt - ok
04:19:56.0173 3220 [ 45201046C776FFDAF3FC8A0029C581C8 ] cmdide C:\Windows\system32\drivers\cmdide.sys
04:19:56.0197 3220 cmdide - ok
04:19:56.0221 3220 [ 6AFEF0B60FA25DE07C0968983EE4F60A ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
04:19:56.0247 3220 Compbatt - ok
04:19:56.0261 3220 COMSysApp - ok
04:19:56.0271 3220 [ 2A213AE086BBEC5E937553C7D9A2B22C ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
04:19:56.0297 3220 crcdisk - ok
04:19:56.0329 3220 [ 22A7F883508176489F559EE745B5BF5D ] Crusoe C:\Windows\system32\drivers\crusoe.sys
04:19:56.0417 3220 Crusoe - ok
04:19:56.0469 3220 [ F1E8C34892336D33EDDCDFE44E474F64 ] CryptSvc C:\Windows\system32\cryptsvc.dll
04:19:56.0545 3220 CryptSvc - ok
04:19:56.0611 3220 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] DcomLaunch C:\Windows\system32\rpcss.dll
04:19:56.0789 3220 DcomLaunch - ok
04:19:56.0825 3220 [ 622C41A07CA7E6DD91770F50D532CB6C ] DfsC C:\Windows\system32\Drivers\dfsc.sys
04:19:56.0886 3220 DfsC - ok
04:19:56.0991 3220 [ 2CC3DCFB533A1035B13DCAB6160AB38B ] DFSR C:\Windows\system32\DFSR.exe
04:19:57.0668 3220 DFSR - ok
04:19:58.0058 3220 [ 9028559C132146FB75EB7ACF384B086A ] Dhcp C:\Windows\System32\dhcpcsvc.dll
04:19:58.0143 3220 Dhcp - ok
04:19:58.0184 3220 [ 5D4AEFC3386920236A548271F8F1AF6A ] disk C:\Windows\system32\drivers\disk.sys
04:19:58.0211 3220 disk - ok
04:19:58.0247 3220 [ 57D762F6F5974AF0DA2BE88A3349BAAA ] Dnscache C:\Windows\System32\dnsrslvr.dll
04:19:58.0313 3220 Dnscache - ok
04:19:58.0349 3220 [ 324FD74686B1EF5E7C19A8AF49E748F6 ] dot3svc C:\Windows\System32\dot3svc.dll
04:19:58.0456 3220 dot3svc - ok
04:19:58.0491 3220 [ A622E888F8AA2F6B49E9BC466F0E5DEF ] DPS C:\Windows\system32\dps.dll
04:19:58.0601 3220 DPS - ok
04:19:58.0634 3220 [ 97FEF831AB90BEE128C9AF390E243F80 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
04:19:58.0669 3220 drmkaud - ok
04:19:58.0724 3220 [ C68AC676B0EF30CFBB1080ADCE49EB1F ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
04:19:58.0789 3220 DXGKrnl - ok
04:19:58.0844 3220 [ F88FB26547FD2CE6D0A5AF2985892C48 ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys
04:19:58.0949 3220 E1G60 - ok
04:19:58.0993 3220 [ C0B95E40D85CD807D614E264248A45B9 ] EapHost C:\Windows\System32\eapsvc.dll
04:19:59.0068 3220 EapHost - ok
04:19:59.0133 3220 [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371 ] Ecache C:\Windows\system32\drivers\ecache.sys
04:19:59.0163 3220 Ecache - ok
04:19:59.0243 3220 [ 9BE3744D295A7701EB425332014F0797 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
04:19:59.0350 3220 ehRecvr - ok
04:19:59.0384 3220 [ AD1870C8E5D6DD340C829E6074BF3C3F ] ehSched C:\Windows\ehome\ehsched.exe
04:19:59.0450 3220 ehSched - ok
04:19:59.0488 3220 [ C27C4EE8926E74AA72EFCAB24C5242C3 ] ehstart C:\Windows\ehome\ehstart.dll
04:19:59.0534 3220 ehstart - ok
04:19:59.0577 3220 [ E8F3F21A71720C84BCF423B80028359F ] elxstor C:\Windows\system32\drivers\elxstor.sys
04:19:59.0612 3220 elxstor - ok
04:19:59.0665 3220 [ 4E6B23DFC917EA39306B529B773950F4 ] EMDMgmt C:\Windows\system32\emdmgmt.dll
04:19:59.0839 3220 EMDMgmt - ok
04:19:59.0922 3220 [ 67058C46504BC12D821F38CF99B7B28F ] EventSystem C:\Windows\system32\es.dll
04:20:00.0026 3220 EventSystem - ok
04:20:00.0069 3220 [ 22B408651F9123527BCEE54B4F6C5CAE ] exfat C:\Windows\system32\drivers\exfat.sys
04:20:00.0117 3220 exfat - ok
04:20:00.0195 3220 [ 1E9B9A70D332103C52995E957DC09EF8 ] fastfat C:\Windows\system32\drivers\fastfat.sys
04:20:00.0293 3220 fastfat - ok
04:20:00.0332 3220 [ 63BDADA84951B9C03E641800E176898A ] fdc C:\Windows\system32\DRIVERS\fdc.sys
04:20:00.0416 3220 fdc - ok
04:20:00.0446 3220 [ 6629B5F0E98151F4AFDD87567EA32BA3 ] fdPHost C:\Windows\system32\fdPHost.dll
04:20:00.0528 3220 fdPHost - ok
04:20:00.0544 3220 [ 89ED56DCE8E47AF40892778A5BD31FD2 ] FDResPub C:\Windows\system32\fdrespub.dll
04:20:00.0666 3220 FDResPub - ok
04:20:00.0713 3220 [ A8C0139A884861E3AAE9CFE73B208A9F ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
04:20:00.0742 3220 FileInfo - ok
04:20:00.0775 3220 [ 0AE429A696AECBC5970E3CF2C62635AE ] Filetrace C:\Windows\system32\drivers\filetrace.sys
04:20:00.0829 3220 Filetrace - ok
04:20:00.0864 3220 [ 6603957EFF5EC62D25075EA8AC27DE68 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
04:20:00.0946 3220 flpydisk - ok
04:20:00.0983 3220 [ 01334F9EA68E6877C4EF05D3EA8ABB05 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
04:20:01.0013 3220 FltMgr - ok
04:20:01.0074 3220 [ 8CE364388C8ECA59B14B539179276D44 ] FontCache C:\Windows\system32\FntCache.dll
04:20:01.0290 3220 FontCache - ok
04:20:01.0359 3220 [ C7FBDD1ED42F82BFA35167A5C9803EA3 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
04:20:01.0450 3220 FontCache3.0.0.0 - ok
04:20:01.0601 3220 [ 3DF091D40FCBBE66280A8B2AEE282601 ] FreemakeUtilsService C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
04:20:01.0713 3220 FreemakeUtilsService ( UnsignedFile.Multi.Generic ) - warning
04:20:01.0713 3220 FreemakeUtilsService - detected UnsignedFile.Multi.Generic (1)
04:20:01.0772 3220 [ B972A66758577E0BFD1DE0F91AAA27B5 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
04:20:01.0849 3220 Fs_Rec - ok
04:20:01.0910 3220 [ 4E1CD0A45C50A8882616CAE5BF82F3C5 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
04:20:01.0934 3220 gagp30kx - ok
04:20:02.0003 3220 [ FBB754B5D0BB19E139214CBA2542A883 ] ghaio C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys
04:20:02.0034 3220 ghaio ( UnsignedFile.Multi.Generic ) - warning
04:20:02.0034 3220 ghaio - detected UnsignedFile.Multi.Generic (1)
04:20:02.0084 3220 [ CD5D0AEEE35DFD4E986A5AA1500A6E66 ] gpsvc C:\Windows\System32\gpsvc.dll
04:20:02.0222 3220 gpsvc - ok
04:20:02.0306 3220 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
04:20:02.0363 3220 gupdate - ok
04:20:02.0384 3220 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
04:20:02.0405 3220 gupdatem - ok
04:20:02.0428 3220 [ 5467F1FF0AF264566740F67E8B810735 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
04:20:02.0452 3220 gusvc - ok
04:20:02.0490 3220 [ 3F90E001369A07243763BD5A523D8722 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
04:20:02.0563 3220 HdAudAddService - ok
04:20:02.0811 3220 [ 062452B7FFD68C8C042A6261FE8DFF4A ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
04:20:03.0013 3220 HDAudBus - ok
04:20:03.0070 3220 [ FCB3F4BE408F72C1BD81BCABA87FC22F ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
04:20:03.0123 3220 HidBth - ok
04:20:03.0165 3220 [ D8DF3722D5E961BAA1292AA2F12827E2 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
04:20:03.0285 3220 HidIr - ok
04:20:03.0330 3220 [ 84067081F3318162797385E11A8F0582 ] hidserv C:\Windows\system32\hidserv.dll
04:20:03.0437 3220 hidserv - ok
04:20:03.0469 3220 [ CCA4B519B17E23A00B826C55716809CC ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
04:20:03.0517 3220 HidUsb - ok
04:20:03.0552 3220 [ D8AD255B37DA92434C26E4876DB7D418 ] hkmsvc C:\Windows\system32\kmsvc.dll
04:20:03.0674 3220 hkmsvc - ok
04:20:03.0708 3220 [ DF353B401001246853763C4B7AAA6F50 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
04:20:03.0737 3220 HpCISSs - ok
04:20:03.0797 3220 [ F870AA3E254628EBEAFE754108D664DE ] HTTP C:\Windows\system32\drivers\HTTP.sys
04:20:03.0876 3220 HTTP - ok
04:20:03.0910 3220 [ 324C2152FF2C61ABAE92D09F3CCA4D63 ] i2omp C:\Windows\system32\drivers\i2omp.sys
04:20:03.0936 3220 i2omp - ok
04:20:03.0963 3220 [ 22D56C8184586B7A1F6FA60BE5F5A2BD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
04:20:04.0011 3220 i8042prt - ok
04:20:04.0042 3220 [ C957BF4B5D80B46C5017BF0101E6C906 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
04:20:04.0074 3220 iaStorV - ok
04:20:04.0160 3220 [ DAF66902F08796F9C694901660E5A64A ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
04:20:04.0206 3220 IDriverT ( UnsignedFile.Multi.Generic ) - warning
04:20:04.0206 3220 IDriverT - detected UnsignedFile.Multi.Generic (1)
04:20:04.0483 3220 [ 98477B08E61945F974ED9FDC4CB6BDAB ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
04:20:04.0662 3220 idsvc - ok
04:20:04.0764 3220 [ 2D077BF86E843F901D8DB709C95B49A5 ] iirsp C:\Windows\system32\drivers\iirsp.sys
04:20:04.0794 3220 iirsp - ok
04:20:04.0854 3220 [ 51516252DBBFED36F70B341DBA263167 ] IJPLMSVC C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
04:20:04.0889 3220 IJPLMSVC ( UnsignedFile.Multi.Generic ) - warning
04:20:04.0889 3220 IJPLMSVC - detected UnsignedFile.Multi.Generic (1)
04:20:04.0943 3220 [ 9908D8A397B76CD8D31D0D383C5773C9 ] IKEEXT C:\Windows\System32\ikeext.dll
04:20:05.0070 3220 IKEEXT - ok
04:20:05.0179 3220 [ AEF2FA29204056B81BC4CBF30260DEE1 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
04:20:05.0544 3220 IntcAzAudAddService - ok
04:20:05.0579 3220 [ 97469037714070E45194ED318D636401 ] intelide C:\Windows\system32\drivers\intelide.sys
04:20:05.0607 3220 intelide - ok
04:20:05.0692 3220 [ CE44CC04262F28216DD4341E9E36A16F ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
04:20:05.0830 3220 intelppm - ok
04:20:05.0875 3220 [ 9AC218C6E6105477484C6FDBE7D409A4 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
04:20:05.0996 3220 IPBusEnum - ok
04:20:06.0036 3220 [ 62C265C38769B864CB25B4BCF62DF6C3 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
04:20:06.0094 3220 IpFilterDriver - ok
04:20:06.0108 3220 IpInIp - ok
04:20:06.0129 3220 [ 40F34F8ABA2A015D780E4B09138B6C17 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
04:20:06.0243 3220 IPMIDRV - ok
04:20:06.0279 3220 [ 8793643A67B42CEC66490B2A0CF92D68 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
04:20:06.0357 3220 IPNAT - ok
04:20:06.0391 3220 [ E50A95179211B12946F7E035D60AF560 ] irda C:\Windows\system32\DRIVERS\irda.sys
04:20:06.0440 3220 irda - ok
04:20:06.0473 3220 [ 109C0DFB82C3632FBD11949B73AEEAC9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
04:20:06.0531 3220 IRENUM - ok
04:20:06.0591 3220 [ CBB0D940221A281BCFEAEA695BD1CDA5 ] Irmon C:\Windows\System32\irmon.dll
04:20:06.0713 3220 Irmon - ok
04:20:06.0749 3220 [ 5896B5FF6332AB2BE1582523E9656A67 ] irsir C:\Windows\system32\DRIVERS\irsir.sys
04:20:06.0810 3220 irsir - ok
04:20:06.0856 3220 [ 350FCA7E73CF65BCEF43FAE1E4E91293 ] isapnp C:\Windows\system32\drivers\isapnp.sys
04:20:06.0883 3220 isapnp - ok
04:20:06.0913 3220 [ 232FA340531D940AAC623B121A595034 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
04:20:06.0949 3220 iScsiPrt - ok
04:20:06.0968 3220 [ BCED60D16156E428F8DF8CF27B0DF150 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
04:20:06.0996 3220 iteatapi - ok
04:20:07.0030 3220 [ A9E05E4DAB315E38D30B1729BA94FE66 ] itecir C:\Windows\system32\DRIVERS\itecir.sys
04:20:07.0081 3220 itecir - ok
04:20:07.0139 3220 [ 06FA654504A498C30ADCA8BEC4E87E7E ] iteraid C:\Windows\system32\drivers\iteraid.sys
04:20:07.0179 3220 iteraid - ok
04:20:07.0212 3220 [ C995C0E8B4503FAC38793BB0236AD246 ] JGOGO C:\Windows\system32\DRIVERS\JGOGO.sys
04:20:07.0277 3220 JGOGO - ok
04:20:07.0302 3220 [ 543C25180D0D304ADE597E7A1FE76FBB ] JRAID C:\Windows\system32\DRIVERS\jraid.sys
04:20:07.0331 3220 JRAID - ok
04:20:07.0372 3220 [ 37605E0A8CF00CBBA538E753E4344C6E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
04:20:07.0400 3220 kbdclass - ok
04:20:07.0415 3220 [ EDE59EC70E25C24581ADD1FBEC7325F7 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
04:20:07.0468 3220 kbdhid - ok
04:20:07.0496 3220 [ CC2A86D7BBF14977340DCA61BBCBA771 ] kbfiltr C:\Windows\system32\DRIVERS\kbfiltr.sys
04:20:07.0550 3220 kbfiltr - ok
04:20:07.0582 3220 [ A3E186B4B935905B829219502557314E ] KeyIso C:\Windows\system32\lsass.exe
04:20:07.0689 3220 KeyIso - ok
04:20:07.0972 3220 [ 4A1445EFA932A3BAF5BDB02D7131EE20 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
04:20:08.0021 3220 KSecDD - ok
04:20:08.0064 3220 [ 8078F8F8F7A79E2E6B494523A828C585 ] KtmRm C:\Windows\system32\msdtckrm.dll
04:20:08.0233 3220 KtmRm - ok
04:20:08.0286 3220 [ 1BF5EEBFD518DD7298434D8C862F825D ] LanmanServer C:\Windows\System32\srvsvc.dll
04:20:08.0463 3220 LanmanServer - ok
04:20:08.0499 3220 [ 1DB69705B695B987082C8BAEC0C6B34F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
04:20:08.0669 3220 LanmanWorkstation - ok
04:20:08.0803 3220 [ A97EEB81F05BCE3D7AA6C81F04EF39A4 ] LiveUpdate C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
04:20:09.0212 3220 LiveUpdate - ok
04:20:09.0312 3220 [ 2D1389E05A807D956829F44BD4B60389 ] LiveUpdate Notice Service C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
04:20:09.0361 3220 LiveUpdate Notice Service - ok
04:20:09.0403 3220 [ D1C5883087A0C3F1344D9D55A44901F6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
04:20:09.0504 3220 lltdio - ok
04:20:09.0541 3220 [ 2D5A428872F1442631D0959A34ABFF63 ] lltdsvc C:\Windows\System32\lltdsvc.dll
04:20:09.0661 3220 lltdsvc - ok
04:20:09.0690 3220 [ 35D40113E4A5B961B6CE5C5857702518 ] lmhosts C:\Windows\System32\lmhsvc.dll
04:20:09.0840 3220 lmhosts - ok
04:20:09.0889 3220 [ A2262FB9F28935E862B4DB46438C80D2 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
04:20:09.0917 3220 LSI_FC - ok
04:20:09.0940 3220 [ 30D73327D390F72A62F32C103DAF1D6D ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
04:20:09.0971 3220 LSI_SAS - ok
04:20:09.0994 3220 [ E1E36FEFD45849A95F1AB81DE0159FE3 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
04:20:10.0022 3220 LSI_SCSI - ok
04:20:10.0069 3220 [ 8F5C7426567798E62A3B3614965D62CC ] luafv C:\Windows\system32\drivers\luafv.sys
04:20:10.0132 3220 luafv - ok
04:20:10.0164 3220 [ 0DB7527DB188C7D967A37BB51BBF3963 ] MBAMSwissArmy C:\Windows\system32\drivers\mbamswissarmy.sys
04:20:10.0192 3220 MBAMSwissArmy - ok
04:20:10.0233 3220 [ AEF9BABB8A506BC4CE0451A64AADED46 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
04:20:10.0353 3220 Mcx2Svc - ok
04:20:10.0383 3220 [ D153B14FC6598EAE8422A2037553ADCE ] megasas C:\Windows\system32\drivers\megasas.sys
04:20:10.0410 3220 megasas - ok
04:20:10.0484 3220 [ FAFE367D032ED82E9332B4C741A20216 ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
04:20:10.0566 3220 Microsoft Office Groove Audit Service - ok
04:20:10.0608 3220 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] MMCSS C:\Windows\system32\mmcss.dll
04:20:10.0722 3220 MMCSS - ok
04:20:10.0755 3220 [ E13B5EA0F51BA5B1512EC671393D09BA ] Modem C:\Windows\system32\drivers\modem.sys
04:20:10.0803 3220 Modem - ok
04:20:10.0833 3220 [ CBB59C41F19EFEA1A000793E08070A62 ] MODEMCSA C:\Windows\system32\drivers\MODEMCSA.sys
04:20:10.0893 3220 MODEMCSA - ok
04:20:10.0931 3220 [ 0A9BB33B56E294F686ABB7C1E4E2D8A8 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
04:20:10.0997 3220 monitor - ok
04:20:11.0027 3220 [ 5BF6A1326A335C5298477754A506D263 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
04:20:11.0055 3220 mouclass - ok
04:20:11.0076 3220 [ 93B8D4869E12CFBE663915502900876F ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
04:20:11.0135 3220 mouhid - ok
04:20:11.0168 3220 [ BDAFC88AA6B92F7842416EA6A48E1600 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
04:20:11.0198 3220 MountMgr - ok
04:20:11.0253 3220 [ 7EDBBB9351A38C6BB0FE98CFD44DB430 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
04:20:11.0280 3220 MozillaMaintenance - ok
04:20:11.0316 3220 [ 583A41F26278D9E0EA548163D6139397 ] mpio C:\Windows\system32\drivers\mpio.sys
04:20:11.0345 3220 mpio - ok
04:20:11.0379 3220 [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
04:20:11.0446 3220 mpsdrv - ok
04:20:11.0465 3220 [ 4FBBB70D30FD20EC51F80061703B001E ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
04:20:11.0494 3220 Mraid35x - ok
04:20:11.0558 3220 [ 82CEA0395524AACFEB58BA1448E8325C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
04:20:11.0683 3220 MRxDAV - ok
04:20:11.0729 3220 [ 1E94971C4B446AB2290DEB71D01CF0C2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
04:20:11.0773 3220 mrxsmb - ok
04:20:11.0799 3220 [ 4FCCB34D793B116423209C0F8B7A3B03 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
04:20:11.0834 3220 mrxsmb10 - ok
04:20:11.0849 3220 [ C3CB1B40AD4A0124D617A1199B0B9D7C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
04:20:11.0892 3220 mrxsmb20 - ok
04:20:11.0924 3220 [ 742AED7939E734C36B7E8D6228CE26B7 ] msahci C:\Windows\system32\drivers\msahci.sys
04:20:11.0951 3220 msahci - ok
04:20:11.0973 3220 [ 3FC82A2AE4CC149165A94699183D3028 ] msdsm C:\Windows\system32\drivers\msdsm.sys
04:20:12.0003 3220 msdsm - ok
04:20:12.0045 3220 [ FD7520CC3A80C5FC8C48852BB24C6DED ] MSDTC C:\Windows\System32\msdtc.exe
04:20:12.0161 3220 MSDTC - ok
04:20:12.0201 3220 [ A9927F4A46B816C92F461ACB90CF8515 ] Msfs C:\Windows\system32\drivers\Msfs.sys
04:20:12.0259 3220 Msfs - ok
04:20:12.0290 3220 [ 11756768993106DD07861096FB97CDB8 ] MSIRCOMM C:\Windows\system32\DRIVERS\MSIRCOMM.sys
04:20:12.0350 3220 MSIRCOMM - ok
04:20:12.0377 3220 [ 0F400E306F385C56317357D6DEA56F62 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
04:20:12.0406 3220 msisadrv - ok
04:20:12.0440 3220 [ 85466C0757A23D9A9AECDC0755203CB2 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
04:20:12.0544 3220 MSiSCSI - ok
04:20:12.0554 3220 msiserver - ok
04:20:12.0587 3220 [ D8C63D34D9C9E56C059E24EC7185CC07 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
04:20:12.0652 3220 MSKSSRV - ok
04:20:12.0687 3220 [ 1D373C90D62DDB641D50E55B9E78D65E ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
04:20:12.0746 3220 MSPCLOCK - ok
04:20:12.0906 3220 [ B572DA05BF4E098D4BBA3A4734FB505B ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
04:20:13.0007 3220 MSPQM - ok
04:20:13.0041 3220 [ B49456D70555DE905C311BCDA6EC6ADB ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
04:20:13.0074 3220 MsRPC - ok
04:20:13.0101 3220 [ E384487CB84BE41D09711C30CA79646C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
04:20:13.0131 3220 mssmbios - ok
04:20:13.0159 3220 [ 7199C1EEC1E4993CAF96B8C0A26BD58A ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
04:20:13.0207 3220 MSTEE - ok
04:20:13.0235 3220 [ 97AFFA9D95FFE20EEE6229BC6BE166CF ] MTsensor C:\Windows\system32\DRIVERS\ATKACPI.sys
04:20:13.0287 3220 MTsensor - ok
04:20:13.0326 3220 [ 6A57B5733D4CB702C8EA4542E836B96C ] Mup C:\Windows\system32\Drivers\mup.sys
04:20:13.0356 3220 Mup - ok
04:20:13.0396 3220 [ E4EAF0C5C1B41B5C83386CF212CA9584 ] napagent C:\Windows\system32\qagentRT.dll
04:20:13.0542 3220 napagent - ok
04:20:13.0583 3220 [ 85C44FDFF9CF7E72A40DCB7EC06A4416 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
04:20:13.0632 3220 NativeWifiP - ok
04:20:13.0693 3220 [ 1357274D1883F68300AEADD15D7BBB42 ] NDIS C:\Windows\system32\drivers\ndis.sys
04:20:13.0755 3220 NDIS - ok
04:20:13.0809 3220 [ 0E186E90404980569FB449BA7519AE61 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
04:20:13.0871 3220 NdisTapi - ok
04:20:13.0902 3220 [ D6973AA34C4D5D76C0430B181C3CD389 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
04:20:13.0950 3220 Ndisuio - ok
04:20:13.0985 3220 [ 818F648618AE34F729FDB47EC68345C3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
04:20:14.0037 3220 NdisWan - ok
04:20:14.0073 3220 [ 71DAB552B41936358F3B541AE5997FB3 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
04:20:14.0113 3220 NDProxy - ok
04:20:14.0220 3220 [ 2AAE889742376EDC5C3203DFB74F28FD ] Nero BackItUp Scheduler 3 C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
04:20:19.0299 3220 Nero BackItUp Scheduler 3 - ok
04:20:19.0392 3220 [ BCD093A5A6777CF626434568DC7DBA78 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
04:20:19.0441 3220 NetBIOS - ok
04:20:19.0450 3220 netbt - ok
04:20:19.0485 3220 [ A3E186B4B935905B829219502557314E ] Netlogon C:\Windows\system32\lsass.exe
04:20:19.0581 3220 Netlogon - ok
04:20:19.0630 3220 [ C8052711DAECC48B982434C5116CA401 ] Netman C:\Windows\System32\netman.dll
04:20:19.0773 3220 Netman - ok
04:20:19.0818 3220 [ 2EF3BBE22E5A5ACD1428EE387A0D0172 ] netprofm C:\Windows\System32\netprofm.dll
04:20:19.0949 3220 netprofm - ok
04:20:19.0987 3220 [ D6C4E4A39A36029AC0813D476FBD0248 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
04:20:20.0011 3220 NetTcpPortSharing - ok
04:20:20.0100 3220 [ A15F219208843A5A210C8CB391384453 ] NETw3v32 C:\Windows\system32\DRIVERS\NETw3v32.sys
04:20:20.0312 3220 NETw3v32 - ok
04:20:20.0377 3220 [ 2E7FB731D4790A1BC6270ACCEFACB36E ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
04:20:20.0405 3220 nfrd960 - ok
04:20:20.0438 3220 [ 2997B15415F9BBE05B5A4C1C85E0C6A2 ] NlaSvc C:\Windows\System32\nlasvc.dll
04:20:20.0575 3220 NlaSvc - ok
04:20:20.0655 3220 [ CB992AE1506985D9167E85883B4C3240 ] NMIndexingService C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
04:20:20.0776 3220 NMIndexingService - ok
04:20:20.0817 3220 [ B48DC6ABCD3AEFF8618350CCBDC6B09A ] npf C:\Windows\system32\drivers\npf.sys
04:20:20.0844 3220 npf - ok
04:20:20.0879 3220 [ D36F239D7CCE1931598E8FB90A0DBC26 ] Npfs C:\Windows\system32\drivers\Npfs.sys
04:20:20.0961 3220 Npfs - ok
04:20:21.0000 3220 [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD ] nsi C:\Windows\system32\nsisvc.dll
04:20:21.0145 3220 nsi - ok
04:20:21.0187 3220 [ 609773E344A97410CE4EBF74A8914FCF ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
04:20:21.0253 3220 nsiproxy - ok
04:20:21.0327 3220 [ 6A4A98CEE84CF9E99564510DDA4BAA47 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
04:20:21.0411 3220 Ntfs - ok
04:20:21.0453 3220 [ E875C093AEC0C978A90F30C9E0DFBB72 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys
04:20:21.0545 3220 ntrigdigi - ok
04:20:21.0576 3220 [ C5DBBCDA07D780BDA9B685DF333BB41E ] Null C:\Windows\system32\drivers\Null.sys
04:20:21.0622 3220 Null - ok
04:20:21.0826 3220 [ CFDDEDC1151839DD71F78472645214A5 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
04:20:22.0684 3220 nvlddmkm - ok
04:20:22.0713 3220 [ E69E946F80C1C31C53003BFBF50CBB7C ] nvraid C:\Windows\system32\drivers\nvraid.sys
04:20:22.0744 3220 nvraid - ok
04:20:22.0951 3220 [ 9E0BA19A28C498A6D323D065DB76DFFC ] nvstor C:\Windows\system32\drivers\nvstor.sys
04:20:23.0015 3220 nvstor - ok
04:20:23.0050 3220 [ 07C186427EB8FCC3D8D7927187F260F7 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
04:20:23.0082 3220 nv_agp - ok
04:20:23.0091 3220 NwlnkFlt - ok
04:20:23.0104 3220 NwlnkFwd - ok
04:20:23.0193 3220 [ 84DE1DD996B48B05ACE31AD015FA108A ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
04:20:23.0361 3220 odserv - ok
04:20:23.0422 3220 [ 6F310E890D46E246E0E261A63D9B36B4 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
04:20:23.0492 3220 ohci1394 - ok
04:20:23.0524 3220 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
04:20:23.0549 3220 ose - ok
04:20:23.0603 3220 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2pimsvc C:\Windows\system32\p2psvc.dll
04:20:23.0809 3220 p2pimsvc - ok
04:20:23.0859 3220 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2psvc C:\Windows\system32\p2psvc.dll
04:20:23.0976 3220 p2psvc - ok
04:20:24.0049 3220 [ 1011C779C9FCD01AFA96490C86A50421 ] PanService C:\Program Files\PANDORA.TV\PanService\PandoraService.exe
04:20:24.0100 3220 PanService - ok
04:20:24.0161 3220 [ 0FA9B5055484649D63C303FE404E5F4D ] Parport C:\Windows\system32\drivers\parport.sys
04:20:24.0263 3220 Parport - ok
04:20:24.0294 3220 [ B9C2B89F08670E159F7181891E449CD9 ] partmgr C:\Windows\system32\drivers\partmgr.sys
04:20:24.0327 3220 partmgr - ok
04:20:24.0362 3220 [ 4F9A6A8A31413180D0FCB279AD5D8112 ] Parvdm C:\Windows\system32\drivers\parvdm.sys
04:20:24.0457 3220 Parvdm - ok
04:20:24.0489 3220 [ C6276AD11F4BB49B58AA1ED88537F14A ] PcaSvc C:\Windows\System32\pcasvc.dll
04:20:24.0640 3220 PcaSvc - ok
04:20:24.0685 3220 [ 941DC1D19E7E8620F40BBC206981EFDB ] pci C:\Windows\system32\drivers\pci.sys
04:20:24.0720 3220 pci - ok
04:20:24.0750 3220 [ 1636D43F10416AEB483BC6001097B26C ] pciide C:\Windows\system32\drivers\pciide.sys
04:20:24.0780 3220 pciide - ok
04:20:24.0851 3220 [ E6F3FB1B86AA519E7698AD05E58B04E5 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
04:20:24.0896 3220 pcmcia - ok
04:20:24.0927 3220 [ 5B6C11DE7E839C05248CED8825470FEF ] pcouffin C:\Windows\system32\Drivers\pcouffin.sys
04:20:24.0985 3220 pcouffin - ok
04:20:25.0036 3220 [ 6349F6ED9C623B44B52EA3C63C831A92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
04:20:25.0156 3220 PEAUTH - ok
04:20:25.0277 3220 [ B1689DF169143F57053F795390C99DB3 ] pla C:\Windows\system32\pla.dll
04:20:25.0520 3220 pla - ok
04:20:25.0571 3220 [ 875E4E0661F3A5994DF9E5E3A0A4F96B ] PLFlash DeviceIoControl Service C:\Windows\system32\IoctlSvc.exe
04:20:25.0644 3220 PLFlash DeviceIoControl Service ( UnsignedFile.Multi.Generic ) - warning
04:20:25.0644 3220 PLFlash DeviceIoControl Service - detected UnsignedFile.Multi.Generic (1)
04:20:25.0685 3220 [ C5E7F8A996EC0A82D508FD9064A5569E ] PlugPlay C:\Windows\system32\umpnpmgr.dll
04:20:25.0841 3220 PlugPlay - ok
04:20:25.0883 3220 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
04:20:26.0001 3220 PNRPAutoReg - ok
04:20:26.0057 3220 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPsvc C:\Windows\system32\p2psvc.dll
04:20:26.0181 3220 PNRPsvc - ok
04:20:26.0259 3220 [ D0494460421A03CD5225CCA0059AA146 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
04:20:26.0374 3220 PolicyAgent - ok
04:20:26.0413 3220 [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
04:20:26.0479 3220 PptpMiniport - ok
04:20:26.0516 3220 [ 0E3CEF5D28B40CF273281D620C50700A ] Processor C:\Windows\system32\drivers\processr.sys
04:20:26.0600 3220 Processor - ok
04:20:26.0640 3220 [ 0508FAA222D28835310B7BFCA7A77346 ] ProfSvc C:\Windows\system32\profsvc.dll
04:20:26.0771 3220 ProfSvc - ok
04:20:26.0791 3220 [ A3E186B4B935905B829219502557314E ] ProtectedStorage C:\Windows\system32\lsass.exe
04:20:26.0888 3220 ProtectedStorage - ok
04:20:26.0915 3220 [ 99514FAA8DF93D34B5589187DB3AA0BA ] PSched C:\Windows\system32\DRIVERS\pacer.sys
04:20:26.0975 3220 PSched - ok
04:20:27.0007 3220 [ D86B4A68565E444D76457F14172C875A ] PxHelp20 C:\Windows\system32\Drivers\PxHelp20.sys
04:20:27.0047 3220 PxHelp20 - ok
04:20:27.0110 3220 [ CCDAC889326317792480C0A67156A1EC ] ql2300 C:\Windows\system32\drivers\ql2300.sys
04:20:27.0190 3220 ql2300 - ok
04:20:27.0215 3220 [ 81A7E5C076E59995D54BC1ED3A16E60B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
04:20:27.0248 3220 ql40xx - ok
04:20:27.0330 3220 [ E9ECAE663F47E6CB43962D18AB18890F ] QWAVE C:\Windows\system32\qwave.dll
04:20:27.0475 3220 QWAVE - ok
04:20:27.0517 3220 [ 9F5E0E1926014D17486901C88ECA2DB7 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
04:20:27.0580 3220 QWAVEdrv - ok
04:20:27.0608 3220 [ 147D7F9C556D259924351FEB0DE606C3 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
04:20:27.0656 3220 RasAcd - ok
04:20:27.0694 3220 [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F ] RasAuto C:\Windows\System32\rasauto.dll
04:20:27.0999 3220 RasAuto - ok
04:20:28.0041 3220 [ A214ADBAF4CB47DD2728859EF31F26B0 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
04:20:28.0105 3220 Rasl2tp - ok
04:20:28.0166 3220 [ 75D47445D70CA6F9F894B032FBC64FCF ] RasMan C:\Windows\System32\rasmans.dll
04:20:28.0312 3220 RasMan - ok
04:20:28.0349 3220 [ 509A98DD18AF4375E1FC40BC175F1DEF ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
04:20:28.0405 3220 RasPppoe - ok
04:20:28.0448 3220 [ 2005F4A1E05FA09389AC85840F0A9E4D ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
04:20:28.0497 3220 RasSstp - ok
04:20:28.0537 3220 [ B14C9D5B9ADD2F84F70570BBBFAA7935 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
04:20:28.0598 3220 rdbss - ok
04:20:28.0642 3220 [ 89E59BE9A564262A3FB6C4F4F1CD9899 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
04:20:28.0706 3220 RDPCDD - ok
04:20:28.0756 3220 [ E8BD98D46F2ED77132BA927FCCB47D8B ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
04:20:28.0845 3220 rdpdr - ok
04:20:28.0926 3220 [ 9D91FE5286F748862ECFFA05F8A0710C ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
04:20:28.0981 3220 RDPENCDD - ok
04:20:29.0031 3220 [ C127EBD5AFAB31524662C48DFCEB773A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
04:20:29.0084 3220 RDPWD - ok
04:20:29.0137 3220 [ BCDD6B4804D06B1F7EBF29E53A57ECE9 ] RemoteAccess C:\Windows\System32\mprdim.dll
04:20:29.0267 3220 RemoteAccess - ok
04:20:29.0309 3220 [ 9E6894EA18DAFF37B63E1005F83AE4AB ] RemoteRegistry C:\Windows\system32\regsvc.dll
04:20:29.0470 3220 RemoteRegistry - ok
04:20:29.0505 3220 [ B9BB8E2093C1615AD6EA55AD96214354 ] Revoflt C:\Windows\system32\DRIVERS\revoflt.sys
04:20:29.0534 3220 Revoflt - ok
04:20:29.0576 3220 [ 6482707F9F4DA0ECBAB43B2E0398A101 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
04:20:29.0636 3220 RFCOMM - ok
04:20:29.0671 3220 [ 355AAC141B214BEF1DBC1483AFD9BD50 ] rimmptsk C:\Windows\system32\DRIVERS\rimmptsk.sys
04:20:29.0743 3220 rimmptsk - ok
04:20:29.0778 3220 [ A4216C71DD4F60B26418CCFD99CD0815 ] rimsptsk C:\Windows\system32\DRIVERS\rimsptsk.sys
04:20:29.0829 3220 rimsptsk - ok
04:20:29.0843 3220 [ D231B577024AA324AF13A42F3A807D10 ] rismxdp C:\Windows\system32\DRIVERS\rixdptsk.sys
04:20:29.0898 3220 rismxdp - ok
04:20:29.0934 3220 [ 5123F83CBC4349D065534EEB6BBDC42B ] RpcLocator C:\Windows\system32\locator.exe
04:20:30.0045 3220 RpcLocator - ok
04:20:30.0121 3220 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] RpcSs C:\Windows\system32\rpcss.dll
04:20:30.0281 3220 RpcSs - ok
04:20:30.0362 3220 [ 9C508F4074A39E8B4B31D27198146FAD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
04:20:30.0433 3220 rspndr - ok
04:20:30.0471 3220 [ 17B1D7CE7AF11FB24DB1DEF9621C033B ] RTL8169 C:\Windows\system32\DRIVERS\Rtlh86.sys
04:20:30.0505 3220 RTL8169 - ok
04:20:30.0542 3220 [ 59509AD6CBC28F2C73056268985B3E48 ] s0016bus C:\Windows\system32\DRIVERS\s0016bus.sys
04:20:30.0572 3220 s0016bus - ok
04:20:30.0599 3220 [ B98C3A6F91F4FBA285AF9606A240C6B4 ] s0016mdfl C:\Windows\system32\DRIVERS\s0016mdfl.sys
04:20:30.0686 3220 s0016mdfl - ok
04:20:30.0713 3220 [ 8A83426F4FB7B5212825D9DE76368B1A ] s0016mdm C:\Windows\system32\DRIVERS\s0016mdm.sys
04:20:30.0753 3220 s0016mdm - ok
04:20:30.0780 3220 [ 7A78BBA97FEB5E6D24C49E93A3BF7287 ] s0016mgmt C:\Windows\system32\DRIVERS\s0016mgmt.sys
04:20:30.0813 3220 s0016mgmt - ok
04:20:30.0833 3220 [ 34EF7B5F611957B73E7219DD5A222AD1 ] s0016nd5 C:\Windows\system32\DRIVERS\s0016nd5.sys
04:20:30.0871 3220 s0016nd5 - ok
04:20:30.0893 3220 [ 36792935847143E4A3CDA0DC87248487 ] s0016obex C:\Windows\system32\DRIVERS\s0016obex.sys
04:20:30.0927 3220 s0016obex - ok
04:20:30.0964 3220 [ 927208754FB27FC3E7A659E77500C5D1 ] s0016unic C:\Windows\system32\DRIVERS\s0016unic.sys
04:20:30.0997 3220 s0016unic - ok
04:20:31.0021 3220 [ A3E186B4B935905B829219502557314E ] SamSs C:\Windows\system32\lsass.exe
04:20:31.0101 3220 SamSs - ok
04:20:31.0146 3220 [ 3CE8F073A557E172B330109436984E30 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
04:20:31.0186 3220 sbp2port - ok
04:20:31.0218 3220 [ 77B7A11A0C3D78D3386398FBBEA1B632 ] SCardSvr C:\Windows\System32\SCardSvr.dll
04:20:31.0360 3220 SCardSvr - ok
04:20:31.0419 3220 [ 1A58069DB21D05EB2AB58EE5753EBE8D ] Schedule C:\Windows\system32\schedsvc.dll
04:20:31.0579 3220 Schedule - ok
04:20:31.0613 3220 [ 312EC3E37A0A1F2006534913E37B4423 ] SCPolicySvc C:\Windows\System32\certprop.dll
04:20:31.0656 3220 SCPolicySvc - ok
04:20:31.0713 3220 [ 8F36B54688C31EED4580129040C6A3D3 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
04:20:31.0757 3220 sdbus - ok
04:20:31.0789 3220 [ 716313D9F6B0529D03F726D5AAF6F191 ] SDRSVC C:\Windows\System32\SDRSVC.dll
04:20:31.0953 3220 SDRSVC - ok
04:20:31.0985 3220 [ 531EBC57DB331C8500C042D9F8A6AEF2 ] se45bus C:\Windows\system32\DRIVERS\se45bus.sys
04:20:32.0052 3220 se45bus - ok
04:20:32.0092 3220 [ 148E7E813681D3A0A05F09826080CC2B ] se45mdfl C:\Windows\system32\DRIVERS\se45mdfl.sys
04:20:32.0154 3220 se45mdfl - ok
04:20:32.0173 3220 [ B4CE022564D0D3FD7B0E5459AA12AA72 ] se45mdm C:\Windows\system32\DRIVERS\se45mdm.sys
04:20:32.0228 3220 se45mdm - ok
04:20:32.0271 3220 [ 6D04EA9C049EBD78D64ADE447DE3F7EB ] se45mgmt C:\Windows\system32\DRIVERS\se45mgmt.sys
04:20:32.0315 3220 se45mgmt - ok
04:20:32.0367 3220 [ FDC74BEAA13A801FAC574BC7AF1450C4 ] se45nd5 C:\Windows\system32\DRIVERS\se45nd5.sys
04:20:32.0413 3220 se45nd5 - ok
04:20:32.0445 3220 [ 5E003693822460D37516D9A262DE9E11 ] se45obex C:\Windows\system32\DRIVERS\se45obex.sys
04:20:32.0503 3220 se45obex - ok
04:20:32.0532 3220 [ FC7021ADB632200DA591A55A35A78ACC ] se45unic C:\Windows\system32\DRIVERS\se45unic.sys
04:20:32.0577 3220 se45unic - ok
04:20:32.0612 3220 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
04:20:32.0701 3220 secdrv - ok
04:20:32.0734 3220 [ FD5199D4D8A521005E4B5EE7FE00FA9B ] seclogon C:\Windows\system32\seclogon.dll
04:20:32.0998 3220 seclogon - ok
04:20:33.0056 3220 [ A9BBAB5759771E523F55563D6CBE140F ] SENS C:\Windows\system32\sens.dll
04:20:33.0215 3220 SENS - ok
04:20:33.0242 3220 [ 68E44E331D46F0FB38F0863A84CD1A31 ] Serenum C:\Windows\system32\drivers\serenum.sys
04:20:33.0321 3220 Serenum - ok
04:20:33.0356 3220 [ C70D69A918B178D3C3B06339B40C2E1B ] Serial C:\Windows\system32\drivers\serial.sys
04:20:33.0442 3220 Serial - ok
04:20:33.0462 3220 [ 8AF3D28A879BF75DB53A0EE7A4289624 ] sermouse C:\Windows\system32\drivers\sermouse.sys
04:20:33.0516 3220 sermouse - ok
04:20:33.0577 3220 [ D2193326F729B163125610DBF3E17D57 ] SessionEnv C:\Windows\system32\sessenv.dll
04:20:33.0727 3220 SessionEnv - ok
04:20:33.0761 3220 [ 3EFA810BDCA87F6ECC24F9832243FE86 ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
04:20:33.0804 3220 sffdisk - ok
04:20:33.0837 3220 [ 8FD08A310645FE872EEEC6E08C6BF3EE ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
04:20:33.0916 3220 sffp_mmc - ok
04:20:33.0946 3220 [ 9F66A46C55D6F1CCABC79BB7AFCCC545 ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
04:20:33.0990 3220 sffp_sd - ok
04:20:34.0014 3220 [ 46ED8E91793B2E6F848015445A0AC188 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
04:20:34.0108 3220 sfloppy - ok
04:20:34.0158 3220 [ C7230FBEE14437716701C15BE02C27B8 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
04:20:34.0333 3220 ShellHWDetection - ok
04:20:34.0375 3220 [ D2A595D6EEBEEAF4334F8E50EFBC9931 ] sisagp C:\Windows\system32\drivers\sisagp.sys
04:20:34.0408 3220 sisagp - ok
04:20:34.0430 3220 [ CEDD6F4E7D84E9F98B34B3FE988373AA ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
04:20:34.0462 3220 SiSRaid2 - ok
04:20:34.0487 3220 [ DF843C528C4F69D12CE41CE462E973A7 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
04:20:34.0590 3220 SiSRaid4 - ok
04:20:34.0785 3220 [ E42D201B0B53A94BD8E5B032EC83D843 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
04:20:35.0007 3220 Skype C2C Service - ok
04:20:35.0163 3220 [ A4FAB5F7818A69DA6E740943CB8F7CA9 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
04:20:35.0187 3220 SkypeUpdate - ok
04:20:35.0329 3220 [ 862BB4CBC05D80C5B45BE430E5EF872F ] slsvc C:\Windows\system32\SLsvc.exe
04:20:35.0806 3220 slsvc - ok
04:20:35.0835 3220 [ 6EDC422215CD78AA8A9CDE6B30ABBD35 ] SLUINotify C:\Windows\system32\SLUINotify.dll
04:20:35.0993 3220 SLUINotify - ok
04:20:36.0033 3220 [ 7B75299A4D201D6A6533603D6914AB04 ] Smb C:\Windows\system32\DRIVERS\smb.sys
04:20:36.0086 3220 Smb - ok
04:20:36.0156 3220 [ 7E6628D18D30F14A56C0D9116310AB8A ] smserial C:\Windows\system32\DRIVERS\smserial.sys
04:20:36.0274 3220 smserial - ok
04:20:36.0394 3220 [ 2A146A055B4401C16EE62D18B8E2A032 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
04:20:36.0526 3220 SNMPTRAP - ok
04:20:36.0587 3220 [ E603BEE916153164B990A9DE49C04B9B ] Sony Ericsson PCCompanion C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe
04:20:36.0660 3220 Sony Ericsson PCCompanion ( UnsignedFile.Multi.Generic ) - warning
04:20:36.0660 3220 Sony Ericsson PCCompanion - detected UnsignedFile.Multi.Generic (1)
04:20:36.0696 3220 [ 7AEBDEEF071FE28B0EEF2CDD69102BFF ] spldr C:\Windows\system32\drivers\spldr.sys
04:20:36.0731 3220 spldr - ok
04:20:36.0810 3220 [ D1E30EEA74ED4C65A72AFDE5B6FA36EE ] spmgr C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
04:20:36.0849 3220 spmgr ( UnsignedFile.Multi.Generic ) - warning
04:20:36.0849 3220 spmgr - detected UnsignedFile.Multi.Generic (1)
04:20:36.0886 3220 [ 8554097E5136C3BF9F69FE578A1B35F4 ] Spooler C:\Windows\System32\spoolsv.exe
04:20:37.0065 3220 Spooler - ok
04:20:37.0111 3220 [ 68103A2B441BBF3908EBB587F0704D6C ] sptd C:\Windows\System32\Drivers\sptd.sys
04:20:37.0159 3220 sptd - ok
04:20:37.0218 3220 [ 41987F9FC0E61ADF54F581E15029AD91 ] srv C:\Windows\system32\DRIVERS\srv.sys
04:20:37.0287 3220 srv - ok
04:20:37.0315 3220 [ FF33AFF99564B1AA534F58868CBE41EF ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
04:20:37.0386 3220 srv2 - ok
04:20:37.0414 3220 [ 7605C0E1D01A08F3ECD743F38B834A44 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
04:20:37.0453 3220 srvnet - ok
04:20:37.0494 3220 [ 03D50B37234967433A5EA5BA72BC0B62 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
04:20:37.0675 3220 SSDPSRV - ok
04:20:37.0713 3220 [ 6F1A32E7B7B30F004D9A20AFADB14944 ] SstpSvc C:\Windows\system32\sstpsvc.dll
04:20:38.0036 3220 SstpSvc - ok
04:20:38.0087 3220 [ 5DE7D67E49B88F5F07F3E53C4B92A352 ] stisvc C:\Windows\System32\wiaservc.dll
04:20:38.0298 3220 stisvc - ok
04:20:38.0413 3220 [ 8181A2ECC2B5ECCD26B05F6DAD1A8736 ] StkCMini C:\Windows\system32\Drivers\StkCMini.sys
04:20:38.0529 3220 StkCMini - ok
04:20:38.0558 3220 [ 54FB71D9645AE6754BA3390813280DBD ] StkSSrv C:\Windows\System32\StkCSrv.exe
04:20:38.0719 3220 StkSSrv - ok
04:20:38.0738 3220 [ 7BA58ECF0C0A9A69D44B3DCA62BECF56 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
04:20:38.0779 3220 swenum - ok
04:20:38.0821 3220 [ F21FD248040681CCA1FB6C9A03AAA93D ] swprv C:\Windows\System32\swprv.dll
04:20:38.0996 3220 swprv - ok
04:20:39.0038 3220 [ 192AA3AC01DF071B541094F251DEED10 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
04:20:39.0079 3220 Symc8xx - ok
04:20:39.0096 3220 [ 8C8EB8C76736EBAF3B13B633B2E64125 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
04:20:39.0131 3220 Sym_hi - ok
04:20:39.0148 3220 [ 8072AF52B5FD103BBBA387A1E49F62CB ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
04:20:39.0184 3220 Sym_u3 - ok
04:20:39.0232 3220 [ 760E4F5A1E754BBE4A1BD2A0B54F6AA6 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
04:20:39.0273 3220 SynTP - ok
04:20:39.0332 3220 [ 9A51B04E9886AA4EE90093586B0BA88D ] SysMain C:\Windows\system32\sysmain.dll
04:20:39.0511 3220 SysMain - ok
04:20:39.0558 3220 [ 2DCA225EAE15F42C0933E998EE0231C3 ] TabletInputService C:\Windows\System32\TabSvc.dll
04:20:39.0723 3220 TabletInputService - ok
04:20:39.0774 3220 [ D7673E4B38CE21EE54C59EEEB65E2483 ] TapiSrv C:\Windows\System32\tapisrv.dll
04:20:39.0928 3220 TapiSrv - ok
04:20:39.0995 3220 [ CB05822CD9CC6C688168E113C603DBE7 ] TBS C:\Windows\System32\tbssvc.dll
04:20:40.0145 3220 TBS - ok
04:20:40.0208 3220 [ 27D470DABC77BC60D0A3B0E4DEB6CB91 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
04:20:40.0279 3220 Tcpip - ok
04:20:40.0363 3220 [ 27D470DABC77BC60D0A3B0E4DEB6CB91 ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
04:20:40.0424 3220 Tcpip6 - ok
04:20:40.0472 3220 [ 608C345A255D82A6289C2D468EB41FD7 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
04:20:40.0537 3220 tcpipreg - ok
04:20:40.0568 3220 [ 5DCF5E267BE67A1AE926F2DF77FBCC56 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
04:20:40.0633 3220 TDPIPE - ok
04:20:40.0671 3220 [ 389C63E32B3CEFED425B61ED92D3F021 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
04:20:40.0746 3220 TDTCP - ok
04:20:40.0779 3220 [ 76B06EB8A01FC8624D699E7045303E54 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
04:20:40.0843 3220 tdx - ok
04:20:40.0877 3220 [ 3CAD38910468EAB9A6479E2F01DB43C7 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
04:20:40.0914 3220 TermDD - ok
04:20:40.0965 3220 [ BB95DA09BEF6E7A131BFF3BA5032090D ] TermService C:\Windows\System32\termsrv.dll
04:20:41.0136 3220 TermService - ok
04:20:41.0209 3220 [ C7230FBEE14437716701C15BE02C27B8 ] Themes C:\Windows\system32\shsvcs.dll
04:20:41.0372 3220 Themes - ok
04:20:41.0398 3220 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] THREADORDER C:\Windows\system32\mmcss.dll
04:20:41.0513 3220 THREADORDER - ok
04:20:41.0539 3220 [ 6D9AD3534A9CF7E4B86C6EAE8BC335F6 ] TPM C:\Windows\system32\drivers\tpm.sys
04:20:41.0574 3220 TPM - ok
04:20:41.0612 3220 [ EC74E77D0EB004BD3A809B5F8FB8C2CE ] TrkWks C:\Windows\System32\trkwks.dll
04:20:41.0772 3220 TrkWks - ok
04:20:41.0808 3220 [ 97D9D6A04E3AD9B6C626B9931DB78DBA ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
04:20:41.0919 3220 TrustedInstaller - ok
04:20:41.0964 3220 [ DCF0F056A2E4F52287264F5AB29CF206 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
04:20:42.0016 3220 tssecsrv - ok
04:20:42.0055 3220 [ 4196D7BC21786883201747DCC0DC84A0 ] TuneUp.Defrag C:\Windows\System32\TuneUpDefragService.exe
04:20:42.0211 3220 TuneUp.Defrag - ok
04:20:42.0276 3220 [ 02E5F68A55CD413C5BFB9F2DF677DD01 ] TuneUp.ProgramStatisticsSvc C:\Windows\System32\TUProgSt.exe
04:20:42.0438 3220 TuneUp.ProgramStatisticsSvc - ok
04:20:42.0470 3220 [ CAECC0120AC49E3D2F758B9169872D38 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
04:20:42.0596 3220 tunmp - ok
04:20:42.0617 3220 [ 300DB877AC094FEAB0BE7688C3454A9C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
04:20:42.0671 3220 tunnel - ok
04:20:42.0707 3220 [ C3ADE15414120033A36C0F293D4A4121 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
04:20:42.0748 3220 uagp35 - ok
04:20:42.0984 3220 [ D9728AF68C4C7693CB100B8441CBDEC6 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
04:20:43.0059 3220 udfs - ok
04:20:43.0123 3220 [ ECEF404F62863755951E09C802C94AD5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
04:20:43.0312 3220 UI0Detect - ok
04:20:43.0350 3220 [ 75E6890EBFCE0841D3291B02E7A8BDB0 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
04:20:43.0391 3220 uliagpkx - ok
04:20:43.0424 3220 [ 3CD4EA35A6221B85DCC25DAA46313F8D ] uliahci C:\Windows\system32\drivers\uliahci.sys
04:20:43.0465 3220 uliahci - ok
04:20:43.0502 3220 [ 8514D0E5CD0534467C5FC61BE94A569F ] UlSata C:\Windows\system32\drivers\ulsata.sys
04:20:43.0644 3220 UlSata - ok
04:20:43.0674 3220 [ 38C3C6E62B157A6BC46594FADA45C62B ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
04:20:43.0716 3220 ulsata2 - ok
04:20:43.0740 3220 [ 32CFF9F809AE9AED85464492BF3E32D2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
04:20:43.0813 3220 umbus - ok
04:20:43.0854 3220 [ 68308183F4AE0BE7BF8ECD07CB297999 ] upnphost C:\Windows\System32\upnphost.dll
04:20:44.0019 3220 upnphost - ok
04:20:44.0091 3220 [ CAF811AE4C147FFCD5B51750C7F09142 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
04:20:44.0159 3220 usbccgp - ok
04:20:44.0196 3220 [ E9476E6C486E76BC4898074768FB7131 ] usbcir C:\Windows\system32\drivers\usbcir.sys
04:20:44.0307 3220 usbcir - ok
04:20:44.0337 3220 [ 79E96C23A97CE7B8F14D310DA2DB0C9B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
04:20:44.0384 3220 usbehci - ok
04:20:44.0414 3220 [ 4673BBCB006AF60E7ABDDBE7A130BA42 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
04:20:44.0482 3220 usbhub - ok
04:20:44.0522 3220 [ CE697FEE0D479290D89BEC80DFE793B7 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
04:20:44.0590 3220 usbohci - ok
04:20:44.0628 3220 [ E75C4B5269091D15A2E7DC0B6D35F2F5 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
04:20:44.0689 3220 usbprint - ok
04:20:44.0724 3220 [ A508C9BD8724980512136B039BBA65E9 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
04:20:44.0796 3220 usbscan - ok
04:20:44.0839 3220 [ BE3DA31C191BC222D9AD503C5224F2AD ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
04:20:44.0892 3220 USBSTOR - ok
04:20:44.0934 3220 [ 325DBBACB8A36AF9988CCF40EAC228CC ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
04:20:45.0037 3220 usbuhci - ok
04:20:45.0086 3220 [ 1509E705F3AC1D474C92454A5C2DD81F ] UxSms C:\Windows\System32\uxsms.dll
04:20:45.0248 3220 UxSms - ok
04:20:45.0289 3220 [ 4360D5653E885479FED75C378E9FAAB3 ] UxTuneUp C:\Windows\System32\uxtuneup.dll
04:20:45.0427 3220 UxTuneUp - ok
04:20:45.0479 3220 [ CD88D1B7776DC17A119049742EC07EB4 ] vds C:\Windows\System32\vds.exe
04:20:45.0696 3220 vds - ok
04:20:45.0732 3220 [ 7D92BE0028ECDEDEC74617009084B5EF ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
04:20:45.0817 3220 vga - ok
04:20:45.0853 3220 [ 2E93AC0A1D8C79D019DB6C51F036636C ] VgaSave C:\Windows\System32\drivers\vga.sys
04:20:45.0914 3220 VgaSave - ok
04:20:45.0946 3220 [ 045D9961E591CF0674A920B6BA3BA5CB ] viaagp C:\Windows\system32\drivers\viaagp.sys
04:20:45.0988 3220 viaagp - ok
04:20:46.0009 3220 [ 56A4DE5F02F2E88182B0981119B4DD98 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
04:20:46.0095 3220 ViaC7 - ok
04:20:46.0121 3220 [ FD2E3175FCADA350C7AB4521DCA187EC ] viaide C:\Windows\system32\drivers\viaide.sys
04:20:46.0158 3220 viaide - ok
04:20:46.0190 3220 [ 69503668AC66C77C6CD7AF86FBDF8C43 ] volmgr C:\Windows\system32\drivers\volmgr.sys
04:20:46.0233 3220 volmgr - ok
04:20:46.0267 3220 [ 23E41B834759917BFD6B9A0D625D0C28 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
04:20:46.0323 3220 volmgrx - ok
04:20:46.0353 3220 [ 786DB5771F05EF300390399F626BF30A ] volsnap C:\Windows\system32\drivers\volsnap.sys
04:20:46.0403 3220 volsnap - ok
04:20:46.0441 3220 [ D984439746D42B30FC65A4C3546C6829 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
04:20:46.0483 3220 vsmraid - ok
04:20:46.0554 3220 [ DB3D19F850C6EB32BDCB9BC0836ACDDB ] VSS C:\Windows\system32\vssvc.exe
04:20:46.0765 3220 VSS - ok
04:20:46.0970 3220 [ 3AD1E72748978D8B0B3B674741E4C3E2 ] vToolbarUpdater14.2.0 C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe
04:20:47.0043 3220 vToolbarUpdater14.2.0 - ok
04:20:47.0155 3220 [ 96EA68B9EB310A69C25EBB0282B2B9DE ] W32Time C:\Windows\system32\w32time.dll
04:20:47.0320 3220 W32Time - ok
04:20:47.0358 3220 [ 48DFEE8F1AF7C8235D4E626F0C4FE031 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
04:20:47.0451 3220 WacomPen - ok
04:20:47.0496 3220 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
04:20:47.0546 3220 Wanarp - ok
04:20:47.0563 3220 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
04:20:47.0611 3220 Wanarpv6 - ok
04:20:47.0887 3220 [ A3CD60FD826381B49F03832590E069AF ] wcncsvc C:\Windows\System32\wcncsvc.dll
04:20:48.0102 3220 wcncsvc - ok
04:20:48.0173 3220 [ 11BCB7AFCDD7AADACB5746F544D3A9C7 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
04:20:48.0342 3220 WcsPlugInService - ok
04:20:48.0377 3220 [ AFC5AD65B991C1E205CF25CFDBF7A6F4 ] Wd C:\Windows\system32\drivers\wd.sys
04:20:48.0418 3220 Wd - ok
04:20:48.0471 3220 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
04:20:48.0548 3220 Wdf01000 - ok
04:20:48.0578 3220 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiServiceHost C:\Windows\system32\wdi.dll
04:20:48.0739 3220 WdiServiceHost - ok
04:20:48.0755 3220 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiSystemHost C:\Windows\system32\wdi.dll
04:20:48.0911 3220 WdiSystemHost - ok
04:20:49.0002 3220 [ 04C37D8107320312FBAE09926103D5E2 ] WebClient C:\Windows\System32\webclnt.dll
04:20:49.0173 3220 WebClient - ok
04:20:49.0217 3220 [ AE3736E7E8892241C23E4EBBB7453B60 ] Wecsvc C:\Windows\system32\wecsvc.dll
04:20:49.0398 3220 Wecsvc - ok
04:20:49.0431 3220 [ 670FF720071ED741206D69BD995EA453 ] wercplsupport C:\Windows\System32\wercplsupport.dll
04:20:49.0595 3220 wercplsupport - ok
04:20:49.0628 3220 [ 32B88481D3B326DA6DEB07B1D03481E7 ] WerSvc C:\Windows\System32\WerSvc.dll
04:20:49.0792 3220 WerSvc - ok
04:20:49.0802 3220 WinHttpAutoProxySvc - ok
04:20:49.0941 3220 [ 6B2A1D0E80110E3D04E6863C6E62FD8A ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
04:20:50.0804 3220 Winmgmt - ok
04:20:50.0885 3220 [ 7CFE68BDC065E55AA5E8421607037511 ] WinRM C:\Windows\system32\WsmSvc.dll
04:20:51.0108 3220 WinRM - ok
04:20:51.0306 3220 [ F514C1C9D814F3DB46A17C59EA8214B2 ] WiseBootAssistant C:\Program Files\Wise\Wise Care 365\BootTime.exe
04:20:51.0366 3220 WiseBootAssistant - ok
04:20:51.0430 3220 [ C008405E4FEEB069E30DA1D823910234 ] Wlansvc C:\Windows\System32\wlansvc.dll
04:20:51.0613 3220 Wlansvc - ok
04:20:51.0694 3220 [ 701A9F884A294327E9141D73746EE279 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
04:20:51.0820 3220 WmiAcpi - ok
04:20:51.0873 3220 [ 43BE3875207DCB62A85C8C49970B66CC ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
04:20:51.0983 3220 wmiApSrv - ok
04:20:52.0067 3220 [ 3978704576A121A9204F8CC49A301A9B ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
04:20:52.0132 3220 WMPNetworkSvc - ok
04:20:52.0238 3220 [ CFC5A04558F5070CEE3E3A7809F3FF52 ] WPCSvc C:\Windows\System32\wpcsvc.dll
04:20:52.0403 3220 WPCSvc - ok
04:20:52.0434 3220 [ 801FBDB89D472B3C467EB112A0FC9246 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
04:20:52.0598 3220 WPDBusEnum - ok
04:20:52.0638 3220 [ DE9D36F91A4DF3D911626643DEBF11EA ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys
04:20:52.0701 3220 WpdUsb - ok
04:20:53.0032 3220 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
04:20:53.0250 3220 WPFFontCache_v0400 - ok
04:20:53.0291 3220 [ E3A3CB253C0EC2494D4A61F5E43A389C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
04:20:53.0373 3220 ws2ifsl - ok
04:20:53.0390 3220 WSearch - ok
04:20:53.0470 3220 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
04:20:53.0525 3220 WudfPf - ok
04:20:53.0563 3220 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
04:20:53.0604 3220 WUDFRd - ok
04:20:53.0627 3220 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
04:20:53.0818 3220 wudfsvc - ok
04:20:53.0852 3220 ================ Scan global ===============================
04:20:53.0915 3220 [ F31EEBC1A1C81FD04005489CC3DCDFE7 ] C:\Windows\system32\basesrv.dll
04:20:53.0990 3220 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
04:20:54.0132 3220 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
04:20:54.0300 3220 [ D4E6D91C1349B7BFB3599A6ADA56851B ] C:\Windows\system32\services.exe
04:20:54.0412 3220 [Global] - ok
04:20:54.0413 3220 ================ Scan MBR ==================================
04:20:54.0426 3220 [ 64B1E91C5C6C2157642651010728F90F ] \Device\Harddisk0\DR0
04:20:54.0725 3220 \Device\Harddisk0\DR0 - ok
04:20:54.0733 3220 [ 739B36F7A373FC81121D831231B6D311 ] \Device\Harddisk2\DR1
04:20:58.0677 3220 \Device\Harddisk2\DR1 - ok
04:20:58.0677 3220 ================ Scan VBR ==================================
04:20:58.0742 3220 [ 3B95C799AC69486F93891AE69304D39E ] \Device\Harddisk0\DR0\Partition1
04:20:58.0744 3220 \Device\Harddisk0\DR0\Partition1 - ok
04:20:58.0751 3220 [ 1C5253F5B8850AD585015570F25DCBDD ] \Device\Harddisk2\DR1\Partition1
04:20:58.0752 3220 \Device\Harddisk2\DR1\Partition1 - ok
04:20:58.0755 3220 ============================================================
04:20:58.0755 3220 Scan finished
04:20:58.0755 3220 ============================================================
04:20:58.0784 3816 Detected object count: 10
04:20:58.0784 3816 Actual detected object count: 10
04:21:40.0740 3816 ADSMService ( UnsignedFile.Multi.Generic ) - skipped by user
04:21:40.0740 3816 ADSMService ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:21:40.0741 3816 ASLDRService ( UnsignedFile.Multi.Generic ) - skipped by user
04:21:40.0741 3816 ASLDRService ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:21:40.0744 3816 ATKGFNEXSrv ( UnsignedFile.Multi.Generic ) - skipped by user
04:21:40.0744 3816 ATKGFNEXSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:21:40.0749 3816 FreemakeUtilsService ( UnsignedFile.Multi.Generic ) - skipped by user
04:21:40.0750 3816 FreemakeUtilsService ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:21:40.0754 3816 ghaio ( UnsignedFile.Multi.Generic ) - skipped by user
04:21:40.0754 3816 ghaio ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:21:40.0758 3816 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
04:21:40.0758 3816 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:21:40.0761 3816 IJPLMSVC ( UnsignedFile.Multi.Generic ) - skipped by user
04:21:40.0761 3816 IJPLMSVC ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:21:40.0768 3816 PLFlash DeviceIoControl Service ( UnsignedFile.Multi.Generic ) - skipped by user
04:21:40.0768 3816 PLFlash DeviceIoControl Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:21:40.0771 3816 Sony Ericsson PCCompanion ( UnsignedFile.Multi.Generic ) - skipped by user
04:21:40.0772 3816 Sony Ericsson PCCompanion ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:21:40.0775 3816 spmgr ( UnsignedFile.Multi.Generic ) - skipped by user
04:21:40.0775 3816 spmgr ( UnsignedFile.Multi.Generic ) - User select action: Skip

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: POMALY NOTEBOOK č.2 - PROSIM O CELKOVOU KONTROLU

#22 Příspěvek od Márty84 »

:!: Pokud nemate, zazalohujte si radeji dulezita data (fotky, dokumenty, atd.) :!:

:!: Nepouzivejte ComboFix bez predchozi domluvy! Je to poruseni pravidel fora a ztratite tim narok na pomoc!

:arrow: Stahnete ComboFix http://download.bleepingcomputer.com/sUBs/ComboFix.exe a ulozte ho na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Kliknete na ComboFix pravym mysidlem a levym na Spustit jako spravce
Odsouhlaste licencni podminky a nechte program pracovat. Jestli vam nabidne instalaci Konzoly pro zotaveni, souhlaste.
Po dobu skenu nic nespoustejte, nikam neklikejte.
Po dokonceni skenovani (muze dojit i k restartu pc) by se mel vytvorit log, ktery bude umisteny zde C:\ComboFix.txt
Jeho obsah sem zkopirujte

:!: Kdyby po restartu nenabehl windows, restartujte znovu, mackejte klavesu F8 a zvolte - Posledni znama funkcni konfigurace
:!: Kdyz windows nabehne, ale pri spousteni programu bude hlasena chyba, staci restartovat pc a bude to v poradku
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: POMALY NOTEBOOK č.2 - PROSIM O CELKOVOU KONTROLU

#23 Příspěvek od miratan »

zdravim..........posilam log ComboFix

ComboFix 13-04-24.03 - MINO 24.04.2013 18:26:02.3.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.894.246 [GMT 2:00]
Spuštěný z: c:\users\MINO\Documents\ComboFix.exe
AV: avast! antivirus *Enabled/Outdated* {C37D8F93-0602-E43C-40AA-47DAD597F308}
SP: avast! antivirus *Enabled/Outdated* {781C6E77-2038-EBB2-7A1A-7CA8AE10B9B5}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\wxDownload Fast
c:\programdata\Microsoft\Windows\Start Menu\Programs\wxDownload Fast\Uninstall wxDownload Fast.lnk
c:\programdata\Microsoft\Windows\Start Menu\Programs\wxDownload Fast\wxDownload Fast on the Web.lnk
c:\programdata\Microsoft\Windows\Start Menu\Programs\wxDownload Fast\wxDownload Fast.lnk
c:\programdata\page
c:\programdata\page\page.ico
c:\programdata\page\page.URL
c:\programdata\wxDownload
c:\users\MINO\AppData\Local\Temp\_MEI33042\_ctypes.pyd
c:\users\MINO\AppData\Local\temp\_MEI33042\_elementtree.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\_hashlib.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\_socket.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\_ssl.pyd
c:\users\MINO\AppData\Local\temp\_MEI33042\pyexpat.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\pysqlite2._sqlite.pyd
c:\users\MINO\AppData\Local\temp\_MEI33042\python27.dll
c:\users\MINO\AppData\Local\temp\_MEI33042\pythoncom27.dll
c:\users\MINO\AppData\Local\Temp\_MEI33042\PyWinTypes27.dll
c:\users\MINO\AppData\Local\Temp\_MEI33042\select.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\unicodedata.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\win32api.pyd
c:\users\MINO\AppData\Local\temp\_MEI33042\win32com.shell.shell.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\win32crypt.pyd
c:\users\MINO\AppData\Local\temp\_MEI33042\win32event.pyd
c:\users\MINO\AppData\Local\temp\_MEI33042\win32file.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\win32inet.pyd
c:\users\MINO\AppData\Local\temp\_MEI33042\win32pdh.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\win32process.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\win32profile.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\win32security.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\win32ts.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\windows._cacheinvalidation.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\wx._controls_.pyd
c:\users\MINO\AppData\Local\temp\_MEI33042\wx._core_.pyd
c:\users\MINO\AppData\Local\temp\_MEI33042\wx._gdi_.pyd
c:\users\MINO\AppData\Local\temp\_MEI33042\wx._html2.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\wx._misc_.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\wx._windows_.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\wx._wizard.pyd
c:\users\MINO\AppData\Local\Temp\_MEI33042\wxbase294u_net_vc90.dll
c:\users\MINO\AppData\Local\Temp\_MEI33042\wxbase294u_vc90.dll
c:\users\MINO\AppData\Local\Temp\_MEI33042\wxmsw294u_adv_vc90.dll
c:\users\MINO\AppData\Local\temp\_MEI33042\wxmsw294u_core_vc90.dll
c:\users\MINO\AppData\Local\Temp\_MEI33042\wxmsw294u_html_vc90.dll
c:\users\MINO\AppData\Local\Temp\_MEI33042\wxmsw294u_webview_vc90.dll
c:\users\MINO\AppData\Roaming\vso_ts_preview.xml
c:\windows\IsUn0407.exe
c:\windows\msvcr71.dll
c:\windows\pkunzip.pif
c:\windows\pkzip.pif
c:\windows\PolicyDefinitions
c:\windows\PolicyDefinitions\CaptureWizard.admx
c:\windows\PolicyDefinitions\cs-CZ\CaptureWizard.adml
c:\windows\PolicyDefinitions\cs-CZ\EventForwarding.adml
c:\windows\PolicyDefinitions\cs-CZ\InetRes.adml
c:\windows\PolicyDefinitions\cs-CZ\MovieMaker.adml
c:\windows\PolicyDefinitions\cs-CZ\Search.adml
c:\windows\PolicyDefinitions\cs-CZ\WindowsMediaDRM.adml
c:\windows\PolicyDefinitions\cs-CZ\WindowsMediaPlayer.adml
c:\windows\PolicyDefinitions\cs-CZ\WindowsRemoteManagement.adml
c:\windows\PolicyDefinitions\cs-CZ\WindowsRemoteShell.adml
c:\windows\PolicyDefinitions\en-US\InetRes.adml
c:\windows\PolicyDefinitions\EventForwarding.admx
c:\windows\PolicyDefinitions\inetres.admx
c:\windows\PolicyDefinitions\MovieMaker.admx
c:\windows\PolicyDefinitions\Search.admx
c:\windows\PolicyDefinitions\WindowsMediaDRM.admx
c:\windows\PolicyDefinitions\WindowsMediaPlayer.admx
c:\windows\PolicyDefinitions\WindowsRemoteManagement.admx
c:\windows\PolicyDefinitions\WindowsRemoteShell.admx
c:\windows\system32\drivers\etc\hosts.ics
c:\windows\system32\roboot.exe
.
c:\windows\system32\drivers\netbt.sys . . . chybí !!
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-03-24 do 2013-04-24 )))))))))))))))))))))))))))))))
.
.
2013-04-24 16:57 . 2013-04-24 17:02 -------- d-----w- c:\users\MINO\AppData\Local\temp
2013-04-24 16:57 . 2013-04-24 16:57 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-04-23 13:48 . 2013-04-23 13:48 -------- d-----w- c:\program files\Defraggler
2013-04-23 13:42 . 2013-04-23 13:42 -------- d-----w- c:\program files\Seznam.cz
2013-04-22 13:54 . 2013-03-06 22:33 368176 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-04-22 13:54 . 2013-03-06 22:33 29816 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-04-22 13:54 . 2013-03-06 22:33 765736 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-04-22 13:54 . 2013-03-06 22:33 62376 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-04-22 13:54 . 2013-03-06 22:33 49760 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2013-04-22 13:54 . 2013-03-06 22:33 49248 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2013-04-22 13:54 . 2013-03-06 22:33 164736 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-04-22 13:54 . 2013-03-06 22:33 66336 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-04-22 13:54 . 2013-03-06 22:32 228600 ----a-w- c:\windows\system32\aswBoot.exe
2013-04-22 13:52 . 2013-03-06 22:32 41664 ----a-w- c:\windows\avastSS.scr
2013-04-22 13:51 . 2013-04-22 13:51 -------- d-----w- c:\program files\AVAST Software
2013-04-22 10:19 . 2013-04-22 10:19 -------- d-----w- c:\windows\snack
2013-04-22 06:34 . 2013-04-22 06:34 -------- d-----w- c:\program files\HD Tune
2013-04-22 02:55 . 2013-04-22 02:55 40776 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2013-04-21 18:14 . 2013-04-21 18:14 -------- d-----w- c:\program files\CCleaner
2013-04-21 12:03 . 2013-04-21 12:03 -------- d-----w- c:\users\MINO\AppData\Roaming\Malwarebytes
2013-04-21 12:02 . 2013-04-21 12:02 -------- d-----w- c:\programdata\Malwarebytes
2013-04-13 14:15 . 2013-04-23 13:42 -------- d-----w- c:\users\MINO\AppData\Roaming\Seznam.cz
2013-04-12 11:44 . 2013-04-15 04:26 509 ----a-w- c:\windows\DeleteOnReboot.bat
2013-03-28 12:45 . 2013-03-28 12:45 -------- d-----w- c:\programdata\Datamngr
2013-03-27 19:38 . 2013-04-09 02:24 -------- d-----w- c:\program files\DsNET Corp
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-04-24 17:01 . 2008-09-21 03:10 45056 ----a-w- c:\windows\system32\acovcnt.exe
2013-03-13 07:38 . 2012-12-20 07:46 73432 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-03-13 07:38 . 2012-12-20 07:46 693976 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-02-18 15:47 . 2013-02-01 04:44 33112 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
2013-01-31 08:14 . 2013-01-31 08:14 603904 ----a-w- c:\windows\system32\TUProgSt.exe
2013-01-31 08:14 . 2013-01-31 08:14 360192 ----a-w- c:\windows\system32\TuneUpDefragService.exe
2013-01-27 13:17 . 2013-01-27 13:17 466008 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-02-10 09:18 . 2010-05-03 11:06 2131336 ----a-w- c:\program files\Common Files\AskToolbarInstaller.exe
2013-04-13 03:51 . 2013-04-13 03:51 263064 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-03-06 22:32 121968 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-02 00:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2013-03-07 14:31 576976 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2013-03-07 14:31 576976 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2013-03-07 14:31 576976 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2013-03-07 14:31 576976 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]
"Sidebar"="c:\program files\Windows Sidebar\SideBar.exe" [2009-04-11 1233920]
"GoogleDriveSync"="c:\program files\Google\Drive\googledrivesync.exe" [2013-03-07 19357112]
"cz.seznam.software.szndesktop"="c:\users\MINO\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" [2013-04-12 92664]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
"RtHDVCpl"="RtHDVCpl.exe" [2007-02-15 4390912]
"SMSERIAL"="c:\program files\Motorola\SMSERIAL\sm56hlpr.exe" [2009-05-05 1466368]
"JMB36X IDE Setup"="c:\windows\JM\JMInsIDE.exe" [2006-10-30 36864]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-03-01 857648]
"ASUS Camera ScreenSaver"="c:\windows\ASScrProlog.exe" [2008-09-21 37232]
"ASUS Screen Saver Protector"="c:\windows\ASScrPro.exe" [2008-09-21 33136]
"Symantec PIF AlertEng"="c:\program files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" [2008-01-29 583048]
"CanonSolutionMenu"="c:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2007-05-14 644696]
"OpwareSE4"="c:\program files\ScanSoft\OmniPageSE4\OpwareSE4.exe" [2007-02-04 79400]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
"ATKMEDIA"="c:\program files\ASUS\ATK Media\DMEDIA.EXE" [2006-11-02 61440]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-03-06 4767304]
"seznam-listicka-distribuce"="c:\program files\Seznam.cz\distribution\szninstall.exe" [2013-03-21 1061960]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma Loader.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2009-9-1 113664]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"PromptOnSecureDesktop"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"ISUSPM Startup"=c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
"Opera Internet Browser"=c:\program files\Opera\Opera.exe
"Sony Ericsson PC Companion"="c:\program files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe" /Background
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
"Skype"="c:\program files\Skype\Phone\Skype.exe" /minimized /regrun
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" -autorun
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"SSBkgdUpdate"="c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
"ISUSScheduler"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe" -start
"PDFPrint"=c:\program files\pdf24\pdf24.exe
"NBKeyScan"="c:\program files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
"CanonMyPrinter"=c:\program files\Canon\MyPrinter\BJMyPrt.exe /logon
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-1876766861-4099627362-3959107545-1000]
"EnableNotificationsRef"=dword:00000001
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'
.
2013-04-24 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2009\OneClickStarter.exe [2008-12-11 20:36]
.
2013-04-24 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-12-20 07:38]
.
2013-04-24 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-05-10 09:06]
.
2013-04-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-01-20 13:09]
.
2013-04-24 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-01-20 13:09]
.
2013-04-24 c:\windows\Tasks\Wise Care 365.job
- c:\program files\Wise\Wise Care 365\WiseTray.exe [2013-01-21 11:55]
.
2013-04-24 c:\windows\Tasks\Wise Registry Cleaner Schedule Task.job
- c:\program files\Wise\Wise Registry Cleaner\WiseRegCleaner.exe [2013-01-20 15:37]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/?clid=12454
mStart Page = hxxp://www.google.com
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
IE: {{230D1201-7607-4CF6-A11F-9E4BF0A333E0} - {0DB13731-CEFD-43CF-A8FD-B61DCBC4D5B8} - c:\program files\Verdict Free\etnxp.dll
IE: {{2C73F784-D2DE-4422-B070-2E3332FE5744} - {0320AC26-52C8-4316-B2C4-24BB6FA73C9A} - c:\program files\Verdict Free\etnxp.dll
TCP: DhcpNameServer = 217.119.113.244 87.244.248.13 217.119.113.245
FF - ProfilePath - c:\users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - www.seznam.cz
FF - ExtSQL: 2013-04-13 15:58; {ea614400-e918-4741-9a97-7a972ff7c30b}; c:\users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
FF - ExtSQL: 2013-04-22 15:53; wrc@avast.com; c:\program files\AVAST Software\Avast\WebRep\FF
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
WebBrowser-{124D001A-BDCB-472F-AA59-BBE7E4BC3204} - (no file)
SafeBoot-WudfPf
SafeBoot-WudfRd
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2013-04-24 19:05
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
.
C:\ADSM_PData_0150
.
sken byl úspešně dokončen
skryté soubory: 1
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\Approved Extensions]
@Denied: (2) (LocalSystem)
"{D4027C7F-154A-4066-A1AD-4243D8127440}"=hex:51,66,7a,6c,4c,1d,38,12,11,7f,11,
d0,78,5b,08,05,de,bb,01,03,dd,4c,30,54
"{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}"=hex:51,66,7a,6c,4c,1d,38,12,f1,9d,97,
02,e5,86,37,08,c7,6b,3b,0b,78,35,a4,a7
"{72853161-30C5-4D22-B7F9-0BBC1D38A37E}"=hex:51,66,7a,6c,4c,1d,38,12,0f,32,96,
76,f7,7e,4c,08,c8,ef,48,fc,18,66,e7,6a
"{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}"=hex:51,66,7a,6c,4c,1d,38,12,07,5b,93,
aa,6e,60,ba,0b,f0,6d,b2,b7,80,44,00,83
"{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}"=hex:51,66,7a,6c,4c,1d,38,12,2d,dd,7a,
ab,6a,33,56,03,c9,ec,8d,26,b0,f3,64,49
"{DBC80044-A445-435B-BC74-9C25C1C588A9}"=hex:51,66,7a,6c,4c,1d,38,12,2a,03,db,
df,77,ea,35,06,c3,62,df,65,c4,9b,cc,bd
"{EA837F48-5AD1-443E-AE34-FFE03CBF3099}"=hex:51,66,7a,6c,4c,1d,38,12,26,7c,90,
ee,e3,14,50,01,d1,22,bc,a0,39,e1,74,8d
"{2A541AE1-5BF6-4665-A8A3-CFA9672E4291}"=hex:51,66,7a,6c,4c,1d,38,12,8f,19,47,
2e,c4,15,0b,03,d7,b5,8c,e9,62,70,06,85
"{B0DE3308-5D5A-470D-81B9-634FC078393B}"=hex:51,66,7a,6c,4c,1d,38,12,66,30,cd,
b4,68,13,63,02,fe,af,20,0f,c5,26,7d,2f
"{FF059E31-CC5A-4E2E-BF3B-96E929D65503}"=hex:51,66,7a,6c,4c,1d,38,12,5f,9d,16,
fb,68,82,40,0b,c0,2d,d5,a9,2c,88,11,17
"{BDEADE7F-C265-11D0-BCED-00A0C90AB50F}"=hex:51,66,7a,6c,4c,1d,38,12,11,dd,f9,
b9,57,8c,be,54,c3,fb,43,e0,cc,54,f1,1b
"{336D0C35-8A85-403a-B9D2-65C292C39087}"=hex:51,66,7a,6c,4c,1d,3b,1b,08,df,80,
77,82,e9,b7,3d,9d,e9,17,af,ad,b0,e5,ab
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration]
@Denied: (2) (LocalSystem)
"Timestamp"=hex:d3,89,a4,b5,fd,eb,cd,01
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (LocalSystem)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,df,36,59,f5,52,e8,68,4e,ba,54,e7,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,df,36,59,f5,52,e8,68,4e,ba,54,e7,\
.
[HKEY_USERS\S-1-5-21-1876766861-4099627362-3959107545-1000_Classes\CLSID\{34486a73-8661-4fac-ae25-fb2602f952a8}]
@Denied: (Full) (Everyone)
@Allowed: (Read) (RestrictedCode)
"Model"=dword:00000099
"Therad"=dword:0000001e
"MData"=hex(0):2b,8f,78,29,5a,0c,ce,ec,48,d4,68,e5,9f,6a,96,3e,ab,de,c5,81,26,
38,95,44,70,75,48,6f,6b,93,7b,73,3f,bb,67,be,0c,c4,2b,ed,61,e9,2e,65,a8,f2,\
.
[HKEY_USERS\S-1-5-21-1876766861-4099627362-3959107545-1000_Classes\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}]
@Denied: (Full) (Everyone)
@Allowed: (Read) (RestrictedCode)
"scansk"=hex(0):78,e2,f9,16,a7,30,44,e2,e5,18,e7,fa,0a,83,e8,d6,e2,0e,a9,27,06,
88,43,8d,07,dd,3e,45,7d,88,11,cf,1c,0a,34,81,7e,b4,a8,dd,00,00,00,00,00,00,\
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_6_602_180_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_6_602_180_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0011\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0012\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0013\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0014\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'Explorer.exe'(3892)
c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt.dll
c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
c:\windows\System32\netshell.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\program files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\ATK Hotkey\ASLDRSrv.exe
c:\program files\ATKGFNEX\GFNEXSrv.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
c:\programdata\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
c:\program files\Nero\Nero8\Nero BackItUp\NBService.exe
c:\program files\PANDORA.TV\PanService\PandoraService.exe
c:\windows\system32\IoctlSvc.exe
c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe
c:\program files\PANDORA.TV\PanService\PanProcess.exe
c:\program files\ASUS\NB Probe\SPM\spmgr.exe
c:\windows\System32\StkCSrv.exe
c:\windows\System32\TUProgSt.exe
c:\program files\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe
c:\windows\System32\WUDFHost.exe
c:\program files\ATK Hotkey\Hcontrol.exe
c:\program files\ATKOSD2\ATKOSD2.exe
c:\program files\Wireless Console 2\wcourier.exe
c:\program files\P4G\BatteryLife.exe
c:\program files\ASUS\Splendid\ACMON.exe
c:\program files\ATK Hotkey\ATKOSD.exe
c:\windows\System32\ACEngSvr.exe
c:\program files\ATK Hotkey\KBFiltr.exe
c:\windows\system32\conime.exe
c:\windows\system32\wbem\unsecapp.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\system32\RacAgent.exe
.
**************************************************************************
.
Celkový čas: 2013-04-24 19:18:21 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-04-24 17:16
.
Před spuštěním: Volných bajtů: 72 979 611 648
Po spuštění: Volných bajtů: 72 722 198 528
.
- - End Of File - - 9480854A126063EBFE89A561C615A1AA

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: POMALY NOTEBOOK č.2 - PROSIM O CELKOVOU KONTROLU

#24 Příspěvek od Márty84 »

miratan píše:zdravim..........posilam log ComboFix

ComboFix 13-04-24.03 - MINO 24.04.2013 18:26:02.3.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.894.246 [GMT 2:00]
Spuštěný z: c:\users\MINO\Documents\ComboFix.exe
AV: avast! antivirus *Enabled/Outdated* {C37D8F93-0602-E43C-40AA-47DAD597F308}
SP: avast! antivirus *Enabled/Outdated* {781C6E77-2038-EBB2-7A1A-7CA8AE10B9B5}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\system32\drivers\netbt.sys . . . chybí !!
:???: Vy jste ten soubor v tom Avastu smazal, ze?

:!: A podle CF neni Avast aktualizovany.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: POMALY NOTEBOOK č.2 - PROSIM O CELKOVOU KONTROLU

#25 Příspěvek od miratan »

Zdravim Vas ,vsechny viry,co jsem popisoval v e-mailu jsou ulozeny v Antivirove truhle. A jinak Avast se mi aktualiizuje automaticky.Jadro a virova databaze
je130424-1 a soucasna verze 8.0.1483

Jinak Windows Update uz funguje,vcera probehlo 20 aktualizaci,ale "NAPOVEDA A PODPORA " NEJDE..

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: POMALY NOTEBOOK č.2 - PROSIM O CELKOVOU KONTROLU

#26 Příspěvek od Márty84 »

Nevim proc CF hlasi, ze je avsat neaktualizovany :?: Ale hlasi taky, ze byl zapnuty, coz podle navodu nemel byt :boxed:


Co se tyka napovedy atd., docictime to a uvidime. Ale je dost mozne, ze system uz je natolik naboreny, ze se to neobejde bez opravne instalace. Stejne by to bylo nejlepsi a rovnou na novy disk :)



:arrow: Stahnete SystemLook http://jpshortstuff.247fixes.com/SystemLook.exe a ulozte ho na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Do okna zkopirujte tento skript

Kód: Vybrat vše

:filefind
*netbt.sys*
kliknete na Look a chvili pockejte
Mel by na vas vyskocit log s nazvem Systemlook
Ten mi sem zkopirujte
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: POMALY NOTEBOOK č.2 - PROSIM O CELKOVOU KONTROLU

#27 Příspěvek od miratan »

SystemLook 30.07.11 by jpshortstuff
Log created at 13:18 on 25/04/2013 by MINO
Administrator - Elevation successful

========== filefind ==========

Searching for "*netbt.sys*"
C:\Windows\snack\netbt.sys --a---- 185856 bytes [10:19 22/04/2013] [04:45 11/04/2009] ECD64230A59CBD93C85F1CD1CAB9F3F6
C:\Windows\winsxs\x86_microsoft-windows-netbt_31bf3856ad364e35_6.0.6000.16386_none_5e2e0665fa591691\netbt.sys --a---- 184320 bytes [08:57 02/11/2006] [08:57 02/11/2006] E3A168912E7EEFC3BD3B814720D68B41
C:\Windows\winsxs\x86_microsoft-windows-netbt_31bf3856ad364e35_6.0.6001.18000_none_6064c861f7442765\netbt.sys --a---- 184320 bytes [12:15 08/07/2009] [05:55 19/01/2008] 7C5FEE5B1C5728507CD96FB4A13E7A02

-= EOF =-

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: POMALY NOTEBOOK č.2 - PROSIM O CELKOVOU KONTROLU

#28 Příspěvek od Márty84 »

:arrow: Najdete tento soubor C:\Windows\winsxs\x86_microsoft-windows-netbt_31bf3856ad364e35_6.0.6001.18000_none_6064c861f7442765\netbt.sys a otestujte ho na virustotal a jotti http://forum.viry.cz/viewtopic.php?f=29&t=5846 Vysledky sem zkopirujte, nebo dejte odkaz.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno