Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

rootkit v MBR - prosím o pomoc

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
alpa104
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 01 srp 2013 10:17

rootkit v MBR - prosím o pomoc

#1 Příspěvek od alpa104 »

Ahoj - prosím o pomoc zda někdo máte zkušenosti - mám v pc Rootkit v MBR:\\.\PHYSICALDRIVE0\Partition2

Rootkit - MBR:Rovnix-A (Rtk) - podle avastu - jde detekovat, ale nejde odstranit léčit ani po startu, přepsání mbr.exe nelze - viz mbr.log



Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Windows 6.1.7601

device: opened successfully
user: error reading MBR
error: Read Neplatný popisovač.
kernel: error reading MBR


GMER.exe - výpis zde - díky předem za jakoukoliv radu. Aleš

GMER 1.0.15.15530 - http://www.gmer.net
Rootkit scan 2013-08-01 11:50:41
Windows 6.1.7601 Service Pack 1
Running: gmer.exe


---- Services - GMER 1.0.15 ----

Service (*** hidden *** ) [AUTO] aswFsBlk <-- ROOTKIT !!!
Service C:\Windows\system32\drivers\aswMonFlt.sys (*** hidden *** ) [AUTO] aswMonFlt <-- ROOTKIT !!!
Service System32\Drivers\aswrdr2.sys (*** hidden *** ) [SYSTEM] aswRdr <-- ROOTKIT !!!
Service (*** hidden *** ) [BOOT] aswRvrt <-- ROOTKIT !!!
Service (*** hidden *** ) [SYSTEM] aswSnx <-- ROOTKIT !!!
Service (*** hidden *** ) [SYSTEM] aswSP <-- ROOTKIT !!!
Service (*** hidden *** ) [SYSTEM] aswTdi <-- ROOTKIT !!!
Service (*** hidden *** ) [BOOT] aswVmm <-- ROOTKIT !!!
Service C:\Program Files\AVAST Software\Avast\AvastSvc.exe (*** hidden *** ) [AUTO] avast! Antivirus <-- ROOTKIT !!!

---- Registry - GMER 1.0.15 ----

Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@Type 2
Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@Start 2
Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@ErrorControl 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@DisplayName aswFsBlk
Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@Group FSFilter Activity Monitor
Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@DependOnService FltMgr?
Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@Description avast! mini-filter driver (aswFsBlk)
Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@Tag 3
Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk\Instances
Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk\Instances@DefaultInstance aswFsBlk Instance
Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk\Instances\aswFsBlk Instance
Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk\Instances\aswFsBlk Instance@Altitude 388400
Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk\Instances\aswFsBlk Instance@Flags 0
Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@Type 2
Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@Start 2
Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@ErrorControl 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@ImagePath \??\C:\Windows\system32\drivers\aswMonFlt.sys
Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@DisplayName aswMonFlt
Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@Group FSFilter Anti-Virus
Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@DependOnService FltMgr?
Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@Description avast! mini-filter driver (aswMonFlt)
Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt\Instances
Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt\Instances@DefaultInstance aswMonFlt Instance
Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt\Instances\aswMonFlt Instance
Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt\Instances\aswMonFlt Instance@Altitude 320700
Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt\Instances\aswMonFlt Instance@Flags 0
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@Type 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@Start 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@ErrorControl 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@DisplayName aswRdr
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@Group PNP_TDI
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@DependOnService tcpip?
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@Description avast! WFP Redirect driver
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@ImagePath \SystemRoot\System32\Drivers\aswrdr2.sys
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr\Parameters
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr\Parameters@MSIgnoreLSPDefault
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr\Parameters@WSIgnoreLSPDefault nl_lsp.dll,imon.dll,xfire_lsp.dll,mslsp.dll,mssplsp.dll,cwhook.dll,spi.dll,bmnet.dll,winsflt.dll
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt@Type 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt@Start 0
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt@ErrorControl 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt@DisplayName aswRvrt
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt@Description avast! Revert
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt\Parameters
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt\Parameters@BootCounter 111
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt\Parameters@TickCounter 3613262
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt\Parameters@SystemRoot \Device\Harddisk0\Partition2\Windows
Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt\Parameters@ImproperShutdown 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@Type 2
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@Start 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@ErrorControl 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@DisplayName aswSnx
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@Group FSFilter Virtualization
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@DependOnService FltMgr?
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@Description avast! virtualization driver (aswSnx)
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@Tag 2
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Instances
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Instances@DefaultInstance aswSnx Instance
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Instances\aswSnx Instance
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Instances\aswSnx Instance@Altitude 137600
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Instances\aswSnx Instance@Flags 0
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Parameters
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Parameters@ProgramFolder \DosDevices\C:\Program Files\AVAST Software\Avast
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Parameters@DataFolder \DosDevices\C:\ProgramData\AVAST Software\Avast
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP@Type 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP@Start 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP@ErrorControl 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP@DisplayName aswSP
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP@Description avast! Self Protection
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP\Parameters
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP\Parameters@BehavShield 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP\Parameters@ProgramFolder \DosDevices\C:\Program Files\AVAST Software\Avast
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP\Parameters@DataFolder \DosDevices\C:\ProgramData\AVAST Software\Avast
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP\Parameters@ProgramFilesFolder \DosDevices\C:\Program Files
Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP\Parameters@GadgetFolder \DosDevices\C:\Program Files\Windows Sidebar\Shared Gadgets\aswSidebar.gadget
Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@Type 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@Start 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@ErrorControl 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@DisplayName avast! Network Shield Support
Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@Group PNP_TDI
Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@DependOnService tcpip?
Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@Description avast! Network Shield TDI driver
Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@Tag 8
Reg HKLM\SYSTEM\CurrentControlSet\services\aswVmm@Type 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswVmm@Start 0
Reg HKLM\SYSTEM\CurrentControlSet\services\aswVmm@ErrorControl 1
Reg HKLM\SYSTEM\CurrentControlSet\services\aswVmm@DisplayName aswVmm
Reg HKLM\SYSTEM\CurrentControlSet\services\aswVmm@Description avast! VM Monitor
Reg HKLM\SYSTEM\CurrentControlSet\services\aswVmm\Parameters
Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@Type 32
Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@Start 2
Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@ErrorControl 1
Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@ImagePath "C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@DisplayName avast! Antivirus
Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@Group ShellSvcGroup
Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@DependOnService aswMonFlt?RpcSS?
Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@WOW64 1
Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@ObjectName LocalSystem
Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@ServiceSidType 1
Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@Description Zaji??uje antivirov? slu?by programu avast!, jako nap?. rezidentn? ochranu, virovou truhlu a pl?nova?.
Reg HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Epoch@Epoch 241753
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg@s1 771343423
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg@s2 285507792
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg@h0 1
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0x99 0x2C 0xAF 0x02 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files (x86)\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0xC7 0x1A 0xB5 0x56 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x8C 0xBC 0x03 0x2C ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41@ujdew 0xDB 0x60 0xA5 0xC4 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg42
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg42@ujdew 0x63 0x1D 0x74 0xC2 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg43
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg43@ujdew 0x8F 0x40 0xAD 0x29 ...
Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@Type 2
Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@Start 2
Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@ErrorControl 1
Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@DisplayName aswFsBlk
Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@Group FSFilter Activity Monitor
Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@DependOnService FltMgr?
Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@Description avast! mini-filter driver (aswFsBlk)
Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@Tag 3
Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk\Instances (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk\Instances@DefaultInstance aswFsBlk Instance
Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk\Instances\aswFsBlk Instance (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk\Instances\aswFsBlk Instance@Altitude 388400
Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk\Instances\aswFsBlk Instance@Flags 0
Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@Type 2
Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@Start 2
Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@ErrorControl 1
Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@ImagePath \??\C:\Windows\system32\drivers\aswMonFlt.sys
Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@DisplayName aswMonFlt
Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@Group FSFilter Anti-Virus
Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@DependOnService FltMgr?
Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@Description avast! mini-filter driver (aswMonFlt)
Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt\Instances (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt\Instances@DefaultInstance aswMonFlt Instance
Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt\Instances\aswMonFlt Instance (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt\Instances\aswMonFlt Instance@Altitude 320700
Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt\Instances\aswMonFlt Instance@Flags 0
Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@Type 1
Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@Start 1
Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@ErrorControl 1
Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@DisplayName aswRdr
Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@Group PNP_TDI
Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@DependOnService tcpip?
Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@Description avast! WFP Redirect driver
Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@ImagePath \SystemRoot\System32\Drivers\aswrdr2.sys
Reg HKLM\SYSTEM\ControlSet002\services\aswRdr\Parameters (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\aswRdr\Parameters@MSIgnoreLSPDefault
Reg HKLM\SYSTEM\ControlSet002\services\aswRdr\Parameters@WSIgnoreLSPDefault nl_lsp.dll,imon.dll,xfire_lsp.dll,mslsp.dll,mssplsp.dll,cwhook.dll,spi.dll,bmnet.dll,winsflt.dll
Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt@Type 1
Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt@Start 0
Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt@ErrorControl 1
Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt@DisplayName aswRvrt
Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt@Description avast! Revert
Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt\Parameters (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt\Parameters@BootCounter 111
Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt\Parameters@TickCounter 3613262
Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt\Parameters@SystemRoot \Device\Harddisk0\Partition2\Windows
Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt\Parameters@ImproperShutdown 1
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@Type 2
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@Start 1
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@ErrorControl 1
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@DisplayName aswSnx
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@Group FSFilter Virtualization
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@DependOnService FltMgr?
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@Description avast! virtualization driver (aswSnx)
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@Tag 2
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Instances (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Instances@DefaultInstance aswSnx Instance
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Instances\aswSnx Instance (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Instances\aswSnx Instance@Altitude 137600
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Instances\aswSnx Instance@Flags 0
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Parameters (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Parameters@ProgramFolder \DosDevices\C:\Program Files\AVAST Software\Avast
Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Parameters@DataFolder \DosDevices\C:\ProgramData\AVAST Software\Avast
Reg HKLM\SYSTEM\ControlSet002\services\aswSP@Type 1
Reg HKLM\SYSTEM\ControlSet002\services\aswSP@Start 1
Reg HKLM\SYSTEM\ControlSet002\services\aswSP@ErrorControl 1
Reg HKLM\SYSTEM\ControlSet002\services\aswSP@DisplayName aswSP
Reg HKLM\SYSTEM\ControlSet002\services\aswSP@Description avast! Self Protection
Reg HKLM\SYSTEM\ControlSet002\services\aswSP\Parameters (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\aswSP\Parameters@BehavShield 1
Reg HKLM\SYSTEM\ControlSet002\services\aswSP\Parameters@ProgramFolder \DosDevices\C:\Program Files\AVAST Software\Avast
Reg HKLM\SYSTEM\ControlSet002\services\aswSP\Parameters@DataFolder \DosDevices\C:\ProgramData\AVAST Software\Avast
Reg HKLM\SYSTEM\ControlSet002\services\aswSP\Parameters@ProgramFilesFolder \DosDevices\C:\Program Files
Reg HKLM\SYSTEM\ControlSet002\services\aswSP\Parameters@GadgetFolder \DosDevices\C:\Program Files\Windows Sidebar\Shared Gadgets\aswSidebar.gadget
Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@Type 1
Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@Start 1
Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@ErrorControl 1
Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@DisplayName avast! Network Shield Support
Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@Group PNP_TDI
Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@DependOnService tcpip?
Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@Description avast! Network Shield TDI driver
Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@Tag 8
Reg HKLM\SYSTEM\ControlSet002\services\aswVmm@Type 1
Reg HKLM\SYSTEM\ControlSet002\services\aswVmm@Start 0
Reg HKLM\SYSTEM\ControlSet002\services\aswVmm@ErrorControl 1
Reg HKLM\SYSTEM\ControlSet002\services\aswVmm@DisplayName aswVmm
Reg HKLM\SYSTEM\ControlSet002\services\aswVmm@Description avast! VM Monitor
Reg HKLM\SYSTEM\ControlSet002\services\aswVmm\Parameters (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@Type 32
Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@Start 2
Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@ErrorControl 1
Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@ImagePath "C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@DisplayName avast! Antivirus
Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@Group ShellSvcGroup
Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@DependOnService aswMonFlt?RpcSS?
Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@WOW64 1
Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@ObjectName LocalSystem
Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@ServiceSidType 1
Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@Description Zaji??uje antivirov? slu?by programu avast!, jako nap?. rezidentn? ochranu, virovou truhlu a pl?nova?.
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0x99 0x2C 0xAF 0x02 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files (x86)\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0xC7 0x1A 0xB5 0x56 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x8C 0xBC 0x03 0x2C ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41@ujdew 0xDB 0x60 0xA5 0xC4 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg42 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg42@ujdew 0x63 0x1D 0x74 0xC2 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg43 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg43@ujdew 0x8F 0x40 0xAD 0x29 ...

---- EOF - GMER 1.0.15 ----
Naposledy upravil(a) Mc_Murphy dne 01 srp 2013 11:01, celkem upraveno 1 x.
Důvod: Log odstraněn z kurzívy - nedávej to do toho, kdo to má číst.

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15718
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: rootkit v MBR - prosím o pomoc

#2 Příspěvek od JaRon »

ahoj,
vloz log z TDSSKiller
+
aka je to verzia AVAST :???:
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

alpa104
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 01 srp 2013 10:17

Re: rootkit v MBR - prosím o pomoc

#3 Příspěvek od alpa104 »

Zapoměl jsem jak se to projevuje - po 15ti až 30ti minutách naskočí modrá obrazovka smrti windowsu s tímto : STOP:0X00000109 (0XA3A039D895FEA575, 0XB3B7456EE87CE263, 0XFFFFF80000B96BB
ntoskrnl.exe - Adres FFFFF80000B96BB0 base at FFFFF80000B95000, DaseStamp 5149a99c


Avast! Free Antivirus - verze 8.0.1489 , databáze 130731-1

log z TDSSKiller :

12:21:10.0686 6444 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
12:21:10.0940 6444 ============================================================
12:21:10.0940 6444 Current date / time: 2013/08/01 12:21:10.0940
12:21:10.0940 6444 SystemInfo:
12:21:10.0940 6444
12:21:10.0940 6444 OS Version: 6.1.7601 ServicePack: 1.0
12:21:10.0940 6444 Product type: Workstation
12:21:10.0941 6444 ComputerName: ALPA
12:21:10.0941 6444 UserName: Pach
12:21:10.0941 6444 Windows directory: C:\Windows
12:21:10.0941 6444 System windows directory: C:\Windows
12:21:10.0941 6444 Running under WOW64
12:21:10.0941 6444 Processor architecture: Intel x64
12:21:10.0941 6444 Number of processors: 2
12:21:10.0941 6444 Page size: 0x1000
12:21:10.0941 6444 Boot type: Normal boot
12:21:10.0941 6444 ============================================================
12:21:12.0255 6444 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
12:21:12.0262 6444 Drive \Device\Harddisk1\DR1 - Size: 0x1D1C1116000 (1863.02 Gb), SectorSize: 0x200, Cylinders: 0x3B601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
12:21:12.0280 6444 ============================================================
12:21:12.0280 6444 \Device\Harddisk0\DR0:
12:21:12.0280 6444 MBR partitions:
12:21:12.0280 6444 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1D4B178, BlocksNum 0xE8E0360
12:21:12.0302 6444 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1062B517, BlocksNum 0x29D5972A
12:21:12.0302 6444 \Device\Harddisk1\DR1:
12:21:12.0303 6444 MBR partitions:
12:21:12.0303 6444 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xE8E07800
12:21:12.0303 6444 ============================================================
12:21:12.0337 6444 C: <-> \Device\Harddisk0\DR0\Partition1
12:21:12.0376 6444 D: <-> \Device\Harddisk0\DR0\Partition2
12:21:12.0392 6444 F: <-> \Device\Harddisk1\DR1\Partition1
12:21:12.0394 6444 ============================================================
12:21:12.0394 6444 Initialize success
12:21:12.0394 6444 ============================================================
12:21:14.0908 4608 ============================================================
12:21:14.0908 4608 Scan started
12:21:14.0908 4608 Mode: Manual;
12:21:14.0908 4608 ============================================================
12:21:15.0834 4608 ================ Scan system memory ========================
12:21:15.0834 4608 System memory - ok
12:21:15.0835 4608 ================ Scan services =============================
12:21:15.0968 4608 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
12:21:15.0973 4608 1394ohci - ok
12:21:16.0005 4608 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
12:21:16.0011 4608 ACPI - ok
12:21:16.0026 4608 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
12:21:16.0029 4608 AcpiPmi - ok
12:21:16.0088 4608 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
12:21:16.0091 4608 AdobeARMservice - ok
12:21:16.0128 4608 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
12:21:16.0136 4608 adp94xx - ok
12:21:16.0154 4608 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
12:21:16.0161 4608 adpahci - ok
12:21:16.0178 4608 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
12:21:16.0183 4608 adpu320 - ok
12:21:16.0234 4608 [ C0BF554D2277F7A4C735D475ADE2E3B2 ] ADSMService C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe
12:21:16.0238 4608 ADSMService - ok
12:21:16.0272 4608 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
12:21:16.0275 4608 AeLookupSvc - ok
12:21:16.0305 4608 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
12:21:16.0313 4608 AFD - ok
12:21:16.0337 4608 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
12:21:16.0340 4608 agp440 - ok
12:21:16.0367 4608 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
12:21:16.0369 4608 ALG - ok
12:21:16.0383 4608 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
12:21:16.0385 4608 aliide - ok
12:21:16.0406 4608 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
12:21:16.0409 4608 amdide - ok
12:21:16.0439 4608 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
12:21:16.0443 4608 AmdK8 - ok
12:21:16.0458 4608 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
12:21:16.0462 4608 AmdPPM - ok
12:21:16.0491 4608 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
12:21:16.0496 4608 amdsata - ok
12:21:16.0522 4608 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
12:21:16.0526 4608 amdsbs - ok
12:21:16.0544 4608 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
12:21:16.0546 4608 amdxata - ok
12:21:16.0578 4608 [ 9C7F164B49CADC658D1B3C575782F346 ] AmUStor C:\Windows\system32\drivers\AmUStor.SYS
12:21:16.0582 4608 AmUStor - ok
12:21:16.0618 4608 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
12:21:16.0621 4608 AppID - ok
12:21:16.0673 4608 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
12:21:16.0674 4608 AppIDSvc - ok
12:21:16.0700 4608 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll
12:21:16.0703 4608 Appinfo - ok
12:21:16.0747 4608 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
12:21:16.0751 4608 arc - ok
12:21:16.0770 4608 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
12:21:16.0773 4608 arcsas - ok
12:21:16.0808 4608 [ 88FBC8BEBFD38566235EAA5E4DBC4E05 ] AsDsm C:\Windows\system32\drivers\AsDsm.sys
12:21:16.0811 4608 AsDsm - ok
12:21:16.0859 4608 [ 18E5C2F937F9DEB8C282DF66A3761925 ] ASLDRService C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
12:21:16.0862 4608 ASLDRService - ok
12:21:16.0890 4608 [ 4C016FD76ED5C05E84CA8CAB77993961 ] ASMMAP64 C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys
12:21:16.0893 4608 ASMMAP64 - ok
12:21:16.0910 4608 [ 0BAEFD3F648C6E7AB52990DD9565E4E2 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
12:21:16.0912 4608 aswFsBlk - ok
12:21:16.0934 4608 [ FA562F34ED6633C66170B09182B4C049 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
12:21:16.0937 4608 aswMonFlt - ok
12:21:16.0975 4608 [ 64E2BAB4096C13D2342BC4661C967E07 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
12:21:16.0978 4608 aswRdr - ok
12:21:17.0032 4608 [ 5573AA70993A2BB81525B1C704B88763 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
12:21:17.0033 4608 aswRvrt - ok
12:21:17.0073 4608 [ 8C0800CDB501CFC1164B286A0478DC10 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
12:21:17.0107 4608 aswSnx - ok
12:21:17.0134 4608 [ 3815DB16CDA62190F5C0A65118F3D714 ] aswSP C:\Windows\system32\drivers\aswSP.sys
12:21:17.0141 4608 aswSP - ok
12:21:17.0176 4608 [ 29DD8E458A84171202AA4979364C30C0 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
12:21:17.0179 4608 aswTdi - ok
12:21:17.0221 4608 [ 22F521108881DC59837F6FC614E0568F ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
12:21:17.0223 4608 aswVmm - ok
12:21:17.0246 4608 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
12:21:17.0249 4608 AsyncMac - ok
12:21:17.0263 4608 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
12:21:17.0265 4608 atapi - ok
12:21:17.0340 4608 [ A5E770426D18F8EF332A593F3289DA91 ] athr C:\Windows\system32\DRIVERS\athrx.sys
12:21:17.0409 4608 athr - ok
12:21:17.0437 4608 [ 63F1212FFE13E62CA1E8D8EE19ABD9A7 ] ATKGFNEXSrv C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
12:21:17.0438 4608 ATKGFNEXSrv - ok
12:21:17.0479 4608 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
12:21:17.0502 4608 AudioEndpointBuilder - ok
12:21:17.0523 4608 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
12:21:17.0529 4608 AudioSrv - ok
12:21:17.0613 4608 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
12:21:17.0614 4608 avast! Antivirus - ok
12:21:17.0634 4608 [ 18AAAC7ED383C465E319B5DD07D0A0B6 ] avgtp C:\Windows\system32\drivers\avgtpx64.sys
12:21:17.0636 4608 avgtp - ok
12:21:17.0673 4608 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
12:21:17.0677 4608 AxInstSV - ok
12:21:17.0704 4608 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
12:21:17.0712 4608 b06bdrv - ok
12:21:17.0737 4608 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
12:21:17.0743 4608 b57nd60a - ok
12:21:17.0795 4608 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
12:21:17.0800 4608 BDESVC - ok
12:21:17.0820 4608 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
12:21:17.0823 4608 Beep - ok
12:21:17.0855 4608 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
12:21:17.0878 4608 BFE - ok
12:21:17.0919 4608 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
12:21:17.0953 4608 BITS - ok
12:21:17.0976 4608 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
12:21:17.0979 4608 blbdrive - ok
12:21:18.0011 4608 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
12:21:18.0014 4608 bowser - ok
12:21:18.0045 4608 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
12:21:18.0048 4608 BrFiltLo - ok
12:21:18.0067 4608 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
12:21:18.0070 4608 BrFiltUp - ok
12:21:18.0095 4608 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
12:21:18.0099 4608 Browser - ok
12:21:18.0301 4608 [ 981794879E8FD26CDD6ABCFF3F3F65EF ] BrowserProtect C:\ProgramData\BrowserProtect\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
12:21:18.0321 4608 BrowserProtect - ok
12:21:18.0350 4608 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
12:21:18.0357 4608 Brserid - ok
12:21:18.0375 4608 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
12:21:18.0379 4608 BrSerWdm - ok
12:21:18.0395 4608 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
12:21:18.0398 4608 BrUsbMdm - ok
12:21:18.0419 4608 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
12:21:18.0422 4608 BrUsbSer - ok
12:21:18.0443 4608 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
12:21:18.0447 4608 BTHMODEM - ok
12:21:18.0477 4608 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
12:21:18.0481 4608 bthserv - ok
12:21:18.0496 4608 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
12:21:18.0499 4608 cdfs - ok
12:21:18.0525 4608 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
12:21:18.0529 4608 cdrom - ok
12:21:18.0564 4608 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
12:21:18.0567 4608 CertPropSvc - ok
12:21:18.0583 4608 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
12:21:18.0586 4608 circlass - ok
12:21:18.0612 4608 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
12:21:18.0618 4608 CLFS - ok
12:21:18.0697 4608 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
12:21:18.0718 4608 clr_optimization_v2.0.50727_32 - ok
12:21:18.0765 4608 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
12:21:18.0767 4608 clr_optimization_v2.0.50727_64 - ok
12:21:18.0819 4608 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
12:21:18.0844 4608 clr_optimization_v4.0.30319_32 - ok
12:21:18.0885 4608 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
12:21:18.0899 4608 clr_optimization_v4.0.30319_64 - ok
12:21:18.0920 4608 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
12:21:18.0923 4608 CmBatt - ok
12:21:18.0947 4608 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
12:21:18.0950 4608 cmdide - ok
12:21:18.0987 4608 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
12:21:18.0996 4608 CNG - ok
12:21:19.0012 4608 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
12:21:19.0014 4608 Compbatt - ok
12:21:19.0030 4608 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
12:21:19.0033 4608 CompositeBus - ok
12:21:19.0039 4608 COMSysApp - ok
12:21:19.0069 4608 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
12:21:19.0072 4608 crcdisk - ok
12:21:19.0106 4608 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
12:21:19.0111 4608 CryptSvc - ok
12:21:19.0153 4608 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
12:21:19.0176 4608 DcomLaunch - ok
12:21:19.0213 4608 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
12:21:19.0220 4608 defragsvc - ok
12:21:19.0252 4608 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
12:21:19.0256 4608 DfsC - ok
12:21:19.0282 4608 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
12:21:19.0290 4608 Dhcp - ok
12:21:19.0317 4608 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
12:21:19.0320 4608 discache - ok
12:21:19.0347 4608 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
12:21:19.0351 4608 Disk - ok
12:21:19.0389 4608 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
12:21:19.0395 4608 Dnscache - ok
12:21:19.0424 4608 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
12:21:19.0431 4608 dot3svc - ok
12:21:19.0466 4608 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
12:21:19.0471 4608 DPS - ok
12:21:19.0490 4608 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
12:21:19.0493 4608 drmkaud - ok
12:21:19.0533 4608 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
12:21:19.0556 4608 DXGKrnl - ok
12:21:19.0563 4608 EagleX64 - ok
12:21:19.0590 4608 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
12:21:19.0596 4608 EapHost - ok
12:21:19.0683 4608 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
12:21:19.0772 4608 ebdrv - ok
12:21:19.0803 4608 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
12:21:19.0809 4608 EFS - ok
12:21:19.0861 4608 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
12:21:19.0871 4608 ehRecvr - ok
12:21:19.0901 4608 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
12:21:19.0902 4608 ehSched - ok
12:21:19.0945 4608 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
12:21:19.0955 4608 elxstor - ok
12:21:19.0985 4608 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
12:21:19.0987 4608 ErrDev - ok
12:21:20.0072 4608 [ 3C38648375B7F3988691F53A7AAE10A9 ] ETD C:\Windows\system32\DRIVERS\ETD.sys
12:21:20.0077 4608 ETD - ok
12:21:20.0149 4608 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
12:21:20.0157 4608 EventSystem - ok
12:21:20.0229 4608 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
12:21:20.0270 4608 exfat - ok
12:21:20.0300 4608 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
12:21:20.0305 4608 fastfat - ok
12:21:20.0342 4608 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
12:21:20.0365 4608 Fax - ok
12:21:20.0400 4608 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
12:21:20.0403 4608 fdc - ok
12:21:20.0431 4608 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
12:21:20.0436 4608 fdPHost - ok
12:21:20.0452 4608 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
12:21:20.0456 4608 FDResPub - ok
12:21:20.0476 4608 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
12:21:20.0479 4608 FileInfo - ok
12:21:20.0493 4608 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
12:21:20.0496 4608 Filetrace - ok
12:21:20.0587 4608 [ ACEFEEA621DCA62EFB7A7EEA59F5E91B ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
12:21:20.0611 4608 FLEXnet Licensing Service - ok
12:21:20.0632 4608 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
12:21:20.0635 4608 flpydisk - ok
12:21:20.0665 4608 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
12:21:20.0673 4608 FltMgr - ok
12:21:20.0723 4608 [ 5043F0D9A22AABF550508B3165C5B0FD ] FolderSize C:\Program Files (x86)\FolderSize\FolderSizeSvc.exe
12:21:20.0725 4608 FolderSize - ok
12:21:20.0783 4608 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\Windows\system32\FntCache.dll
12:21:20.0817 4608 FontCache - ok
12:21:20.0874 4608 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
12:21:20.0876 4608 FontCache3.0.0.0 - ok
12:21:20.0906 4608 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
12:21:20.0911 4608 FsDepends - ok
12:21:20.0942 4608 [ 5814011B2F6E088E29D689B5FCD49B8F ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
12:21:20.0945 4608 fssfltr - ok
12:21:20.0993 4608 [ F6717211C1EC2CDDAA81B97B0727C2E9 ] fsssvc C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
12:21:21.0001 4608 fsssvc - ok
12:21:21.0041 4608 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
12:21:21.0044 4608 Fs_Rec - ok
12:21:21.0084 4608 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
12:21:21.0090 4608 fvevol - ok
12:21:21.0117 4608 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
12:21:21.0120 4608 gagp30kx - ok
12:21:21.0219 4608 [ 7300D171A5A32456F990AC79608404E5 ] Garmin Core Update Service D:\navigace\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
12:21:21.0223 4608 Garmin Core Update Service - ok
12:21:21.0291 4608 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
12:21:21.0313 4608 gpsvc - ok
12:21:21.0384 4608 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
12:21:21.0387 4608 gupdate - ok
12:21:21.0393 4608 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
12:21:21.0395 4608 gupdatem - ok
12:21:21.0424 4608 [ CC839E8D766CC31A7710C9F38CF3E375 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
12:21:21.0429 4608 gusvc - ok
12:21:21.0457 4608 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
12:21:21.0460 4608 hcw85cir - ok
12:21:21.0491 4608 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
12:21:21.0498 4608 HdAudAddService - ok
12:21:21.0515 4608 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
12:21:21.0517 4608 HDAudBus - ok
12:21:21.0537 4608 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
12:21:21.0541 4608 HidBatt - ok
12:21:21.0560 4608 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
12:21:21.0564 4608 HidBth - ok
12:21:21.0578 4608 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
12:21:21.0582 4608 HidIr - ok
12:21:21.0611 4608 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
12:21:21.0615 4608 hidserv - ok
12:21:21.0636 4608 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
12:21:21.0639 4608 HidUsb - ok
12:21:21.0662 4608 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
12:21:21.0668 4608 hkmsvc - ok
12:21:21.0698 4608 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
12:21:21.0706 4608 HomeGroupListener - ok
12:21:21.0728 4608 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
12:21:21.0737 4608 HomeGroupProvider - ok
12:21:21.0754 4608 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
12:21:21.0758 4608 HpSAMD - ok
12:21:21.0805 4608 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
12:21:21.0828 4608 HTTP - ok
12:21:21.0843 4608 [ 84D3088475BD9BC56ED76D6E0F740A63 ] Huawei C:\Windows\system32\DRIVERS\ewdcsc.sys
12:21:21.0847 4608 Huawei - ok
12:21:21.0890 4608 [ 8F9B0FC4EC3A8194BD4CBC5ED3E7ABEB ] hwdatacard C:\Windows\system32\DRIVERS\ewusbmdm.sys
12:21:21.0894 4608 hwdatacard - ok
12:21:21.0920 4608 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
12:21:21.0923 4608 hwpolicy - ok
12:21:21.0942 4608 [ B45B3647BA32749B94FA689175EC8C26 ] hwusbdev C:\Windows\system32\DRIVERS\ewusbdev.sys
12:21:21.0946 4608 hwusbdev - ok
12:21:21.0986 4608 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
12:21:21.0990 4608 i8042prt - ok
12:21:22.0026 4608 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
12:21:22.0035 4608 iaStorV - ok
12:21:22.0083 4608 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
12:21:22.0117 4608 idsvc - ok
12:21:22.0143 4608 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
12:21:22.0147 4608 iirsp - ok
12:21:22.0187 4608 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
12:21:22.0221 4608 IKEEXT - ok
12:21:22.0305 4608 [ AF87012C22372CC982A1E5B597DEB5FA ] IMPI Updater C:\Program Files\IMPI\ExtensionUpdaterService.exe
12:21:22.0309 4608 IMPI Updater - ok
12:21:22.0382 4608 [ 181E4FF75674A7105ECD0A02C35EF43A ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
12:21:22.0451 4608 IntcAzAudAddService - ok
12:21:22.0484 4608 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
12:21:22.0488 4608 intelide - ok
12:21:22.0513 4608 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
12:21:22.0515 4608 intelppm - ok
12:21:22.0553 4608 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
12:21:22.0559 4608 IPBusEnum - ok
12:21:22.0589 4608 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
12:21:22.0593 4608 IpFilterDriver - ok
12:21:22.0632 4608 [ A34A587FFFD45FA649FBA6D03784D257 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
12:21:22.0655 4608 iphlpsvc - ok
12:21:22.0689 4608 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
12:21:22.0693 4608 IPMIDRV - ok
12:21:22.0726 4608 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
12:21:22.0731 4608 IPNAT - ok
12:21:22.0738 4608 ipswuio - ok
12:21:22.0751 4608 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
12:21:22.0755 4608 IRENUM - ok
12:21:22.0773 4608 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
12:21:22.0776 4608 isapnp - ok
12:21:22.0800 4608 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
12:21:22.0805 4608 iScsiPrt - ok
12:21:22.0831 4608 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
12:21:22.0835 4608 kbdclass - ok
12:21:22.0851 4608 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
12:21:22.0855 4608 kbdhid - ok
12:21:22.0888 4608 [ E63EF8C3271D014F14E2469CE75FECB4 ] kbfiltr C:\Windows\system32\DRIVERS\kbfiltr.sys
12:21:22.0891 4608 kbfiltr - ok
12:21:22.0907 4608 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
12:21:22.0911 4608 KeyIso - ok
12:21:22.0952 4608 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
12:21:22.0956 4608 KSecDD - ok
12:21:22.0979 4608 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
12:21:22.0984 4608 KSecPkg - ok
12:21:23.0014 4608 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
12:21:23.0017 4608 ksthunk - ok
12:21:23.0057 4608 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
12:21:23.0068 4608 KtmRm - ok
12:21:23.0096 4608 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
12:21:23.0107 4608 LanmanServer - ok
12:21:23.0143 4608 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
12:21:23.0153 4608 LanmanWorkstation - ok
12:21:23.0174 4608 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
12:21:23.0177 4608 lltdio - ok
12:21:23.0218 4608 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
12:21:23.0229 4608 lltdsvc - ok
12:21:23.0251 4608 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
12:21:23.0257 4608 lmhosts - ok
12:21:23.0292 4608 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
12:21:23.0296 4608 LSI_FC - ok
12:21:23.0311 4608 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
12:21:23.0315 4608 LSI_SAS - ok
12:21:23.0327 4608 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
12:21:23.0331 4608 LSI_SAS2 - ok
12:21:23.0348 4608 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
12:21:23.0353 4608 LSI_SCSI - ok
12:21:23.0376 4608 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
12:21:23.0380 4608 luafv - ok
12:21:23.0457 4608 [ F453D1E6D881E8F8717E20CCD4199E85 ] McComponentHostService C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe
12:21:23.0462 4608 McComponentHostService - ok
12:21:23.0493 4608 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
12:21:23.0499 4608 Mcx2Svc - ok
12:21:23.0524 4608 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
12:21:23.0527 4608 megasas - ok
12:21:23.0549 4608 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
12:21:23.0555 4608 MegaSR - ok
12:21:23.0613 4608 [ 7C4C76B39D5525C4A465E0BE32528E19 ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
12:21:23.0616 4608 Microsoft Office Groove Audit Service - ok
12:21:23.0636 4608 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
12:21:23.0643 4608 MMCSS - ok
12:21:23.0672 4608 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
12:21:23.0676 4608 Modem - ok
12:21:23.0697 4608 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
12:21:23.0698 4608 monitor - ok
12:21:23.0760 4608 [ 9B2923C59D49672D1205C391A1296525 ] MotoConnect Service C:\Program Files (x86)\Motorola\MotoConnectService\MotoConnectService.exe
12:21:23.0762 4608 MotoConnect Service - ok
12:21:23.0785 4608 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
12:21:23.0788 4608 mouclass - ok
12:21:23.0811 4608 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
12:21:23.0814 4608 mouhid - ok
12:21:23.0850 4608 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
12:21:23.0854 4608 mountmgr - ok
12:21:23.0933 4608 [ 528A5C2570F468155A1B3CF0A2FF5EBD ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
12:21:23.0935 4608 MozillaMaintenance - ok
12:21:23.0955 4608 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
12:21:23.0960 4608 mpio - ok
12:21:23.0985 4608 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
12:21:23.0989 4608 mpsdrv - ok
12:21:24.0033 4608 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
12:21:24.0066 4608 MpsSvc - ok
12:21:24.0096 4608 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
12:21:24.0101 4608 MRxDAV - ok
12:21:24.0128 4608 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
12:21:24.0133 4608 mrxsmb - ok
12:21:24.0164 4608 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
12:21:24.0170 4608 mrxsmb10 - ok
12:21:24.0188 4608 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
12:21:24.0210 4608 mrxsmb20 - ok
12:21:24.0229 4608 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
12:21:24.0232 4608 msahci - ok
12:21:24.0262 4608 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
12:21:24.0266 4608 msdsm - ok
12:21:24.0290 4608 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
12:21:24.0297 4608 MSDTC - ok
12:21:24.0328 4608 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
12:21:24.0330 4608 Msfs - ok
12:21:24.0344 4608 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
12:21:24.0346 4608 mshidkmdf - ok
12:21:24.0356 4608 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
12:21:24.0359 4608 msisadrv - ok
12:21:24.0384 4608 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
12:21:24.0392 4608 MSiSCSI - ok
12:21:24.0400 4608 msiserver - ok
12:21:24.0422 4608 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
12:21:24.0425 4608 MSKSSRV - ok
12:21:24.0438 4608 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
12:21:24.0441 4608 MSPCLOCK - ok
12:21:24.0449 4608 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
12:21:24.0452 4608 MSPQM - ok
12:21:24.0487 4608 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
12:21:24.0495 4608 MsRPC - ok
12:21:24.0521 4608 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
12:21:24.0523 4608 mssmbios - ok
12:21:24.0540 4608 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
12:21:24.0543 4608 MSTEE - ok
12:21:24.0558 4608 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
12:21:24.0562 4608 MTConfig - ok
12:21:24.0587 4608 [ 032D35C996F21D19A205A7C8F0B76F3C ] MTsensor C:\Windows\system32\DRIVERS\ATK64AMD.sys
12:21:24.0590 4608 MTsensor - ok
12:21:24.0612 4608 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
12:21:24.0616 4608 Mup - ok
12:21:24.0662 4608 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
12:21:24.0684 4608 napagent - ok
12:21:24.0715 4608 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
12:21:24.0722 4608 NativeWifiP - ok
12:21:24.0758 4608 [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS C:\Windows\system32\drivers\ndis.sys
12:21:24.0781 4608 NDIS - ok
12:21:24.0807 4608 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
12:21:24.0812 4608 NdisCap - ok
12:21:24.0826 4608 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
12:21:24.0829 4608 NdisTapi - ok
12:21:24.0854 4608 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
12:21:24.0857 4608 Ndisuio - ok
12:21:24.0894 4608 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
12:21:24.0917 4608 NdisWan - ok
12:21:24.0940 4608 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
12:21:24.0944 4608 NDProxy - ok
12:21:24.0960 4608 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
12:21:24.0963 4608 NetBIOS - ok
12:21:25.0023 4608 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
12:21:25.0029 4608 NetBT - ok
12:21:25.0053 4608 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
12:21:25.0058 4608 Netlogon - ok
12:21:25.0094 4608 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
12:21:25.0105 4608 Netman - ok
12:21:25.0136 4608 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
12:21:25.0148 4608 netprofm - ok
12:21:25.0181 4608 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
12:21:25.0183 4608 NetTcpPortSharing - ok
12:21:25.0224 4608 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
12:21:25.0227 4608 nfrd960 - ok
12:21:25.0354 4608 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\Windows\System32\nlasvc.dll
12:21:25.0364 4608 NlaSvc - ok
12:21:25.0418 4608 [ 4903177FC90E77ABEB19021451E9475E ] nmwcd C:\Windows\system32\drivers\ccdcmbx64.sys
12:21:25.0422 4608 nmwcd - ok
12:21:25.0485 4608 [ E6844A4C97E5409BBE24BB4ED000320D ] nmwcdc C:\Windows\system32\drivers\ccdcmbox64.sys
12:21:25.0488 4608 nmwcdc - ok
12:21:25.0522 4608 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
12:21:25.0525 4608 Npfs - ok
12:21:25.0555 4608 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
12:21:25.0560 4608 nsi - ok
12:21:25.0578 4608 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
12:21:25.0581 4608 nsiproxy - ok
12:21:25.0640 4608 [ A2F74975097F52A00745F9637451FDD8 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
12:21:25.0685 4608 Ntfs - ok
12:21:25.0700 4608 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
12:21:25.0703 4608 Null - ok
12:21:25.0733 4608 [ AD37248BD442D41C9A896E53EB8A85EE ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
12:21:25.0737 4608 NVHDA - ok
12:21:25.0997 4608 [ BC2D2480F58C3BC7F03C1E36A8AD4BF9 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
12:21:26.0232 4608 nvlddmkm - ok
12:21:26.0267 4608 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
12:21:26.0273 4608 nvraid - ok
12:21:26.0288 4608 [ A1381B3D52850BC4F0CC8B4697BD891C ] nvsmu C:\Windows\system32\DRIVERS\nvsmu.sys
12:21:26.0289 4608 nvsmu - ok
12:21:26.0318 4608 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
12:21:26.0323 4608 nvstor - ok
12:21:26.0350 4608 [ EBFE363AAB0D6E4086ADBF04C41EBDF8 ] nvstor64 C:\Windows\system32\DRIVERS\nvstor64.sys
12:21:26.0353 4608 nvstor64 - ok
12:21:26.0383 4608 [ D900EEE33EDF655872CBA55ADAE0201A ] nvsvc C:\Windows\system32\nvvsvc.exe
12:21:26.0394 4608 nvsvc - ok
12:21:26.0428 4608 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
12:21:26.0432 4608 nv_agp - ok
12:21:26.0502 4608 [ 1F0E05DFF4F5A833168E49BE1256F002 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
12:21:26.0510 4608 odserv - ok
12:21:26.0555 4608 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
12:21:26.0559 4608 ohci1394 - ok
12:21:26.0603 4608 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
12:21:26.0606 4608 ose - ok
12:21:26.0654 4608 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
12:21:26.0664 4608 p2pimsvc - ok
12:21:26.0706 4608 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
12:21:26.0729 4608 p2psvc - ok
12:21:26.0810 4608 [ 1011C779C9FCD01AFA96490C86A50421 ] PanService C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
12:21:26.0819 4608 PanService - ok
12:21:26.0853 4608 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
12:21:26.0858 4608 Parport - ok
12:21:26.0880 4608 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
12:21:26.0884 4608 partmgr - ok
12:21:26.0941 4608 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
12:21:26.0950 4608 PcaSvc - ok
12:21:26.0984 4608 [ 3FDE033DFB0D07F8B7D5C9A3044AA121 ] pccsmcfd C:\Windows\system32\DRIVERS\pccsmcfdx64.sys
12:21:26.0988 4608 pccsmcfd - ok
12:21:27.0015 4608 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
12:21:27.0037 4608 pci - ok
12:21:27.0057 4608 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
12:21:27.0059 4608 pciide - ok
12:21:27.0090 4608 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
12:21:27.0095 4608 pcmcia - ok
12:21:27.0154 4608 [ AF7CE12C4F3DC8CB2B07685C916BBCFE ] pcouffin C:\Windows\system32\Drivers\pcouffin.sys
12:21:27.0159 4608 pcouffin - ok
12:21:27.0265 4608 [ 2FE52F3547835C18BEA0962F373D986C ] PCSUService C:\Program Files (x86)\Zrychleni Pocitace\PCSUService.exe
12:21:27.0271 4608 PCSUService - ok
12:21:27.0301 4608 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
12:21:27.0305 4608 pcw - ok
12:21:27.0335 4608 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
12:21:27.0358 4608 PEAUTH - ok
12:21:27.0420 4608 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
12:21:27.0425 4608 PerfHost - ok
12:21:27.0515 4608 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
12:21:27.0561 4608 pla - ok
12:21:27.0608 4608 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
12:21:27.0631 4608 PlugPlay - ok
12:21:27.0663 4608 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
12:21:27.0670 4608 PNRPAutoReg - ok
12:21:27.0700 4608 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
12:21:27.0707 4608 PNRPsvc - ok
12:21:27.0748 4608 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
12:21:27.0770 4608 PolicyAgent - ok
12:21:27.0814 4608 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
12:21:27.0824 4608 Power - ok
12:21:27.0846 4608 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
12:21:27.0849 4608 PptpMiniport - ok
12:21:27.0884 4608 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
12:21:27.0888 4608 Processor - ok
12:21:27.0927 4608 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
12:21:27.0937 4608 ProfSvc - ok
12:21:27.0958 4608 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
12:21:27.0963 4608 ProtectedStorage - ok
12:21:27.0996 4608 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
12:21:27.0999 4608 Psched - ok
12:21:28.0047 4608 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
12:21:28.0081 4608 ql2300 - ok
12:21:28.0119 4608 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
12:21:28.0123 4608 ql40xx - ok
12:21:28.0158 4608 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
12:21:28.0170 4608 QWAVE - ok
12:21:28.0189 4608 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
12:21:28.0193 4608 QWAVEdrv - ok
12:21:28.0229 4608 [ A55E7D0D873B2C97585B3B5926AC6ADE ] RapiMgr C:\Windows\WindowsMobile\rapimgr.dll
12:21:28.0236 4608 RapiMgr - ok
12:21:28.0255 4608 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
12:21:28.0259 4608 RasAcd - ok
12:21:28.0280 4608 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
12:21:28.0283 4608 RasAgileVpn - ok
12:21:28.0309 4608 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
12:21:28.0317 4608 RasAuto - ok
12:21:28.0353 4608 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
12:21:28.0370 4608 Rasl2tp - ok
12:21:28.0432 4608 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
12:21:28.0444 4608 RasMan - ok
12:21:28.0468 4608 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
12:21:28.0471 4608 RasPppoe - ok
12:21:28.0485 4608 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
12:21:28.0488 4608 RasSstp - ok
12:21:28.0513 4608 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
12:21:28.0519 4608 rdbss - ok
12:21:28.0544 4608 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
12:21:28.0547 4608 rdpbus - ok
12:21:28.0564 4608 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
12:21:28.0566 4608 RDPCDD - ok
12:21:28.0589 4608 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
12:21:28.0591 4608 RDPENCDD - ok
12:21:28.0608 4608 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
12:21:28.0611 4608 RDPREFMP - ok
12:21:28.0641 4608 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
12:21:28.0646 4608 RDPWD - ok
12:21:28.0682 4608 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
12:21:28.0688 4608 rdyboost - ok
12:21:28.0749 4608 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
12:21:28.0757 4608 RemoteAccess - ok
12:21:28.0792 4608 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
12:21:28.0803 4608 RemoteRegistry - ok
12:21:28.0883 4608 [ BD517C7FB119997EFFBE39D5E4B37B05 ] RichVideo C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
12:21:28.0887 4608 RichVideo - ok
12:21:28.0950 4608 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
12:21:28.0959 4608 RpcEptMapper - ok
12:21:28.0982 4608 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
12:21:28.0987 4608 RpcLocator - ok
12:21:29.0024 4608 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
12:21:29.0034 4608 RpcSs - ok
12:21:29.0078 4608 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
12:21:29.0081 4608 rspndr - ok
12:21:29.0137 4608 [ EE082E06A82FF630351D1E0EBBD3D8D0 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
12:21:29.0147 4608 RTL8167 - ok
12:21:29.0169 4608 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
12:21:29.0173 4608 SamSs - ok
12:21:29.0204 4608 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
12:21:29.0209 4608 sbp2port - ok
12:21:29.0243 4608 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
12:21:29.0254 4608 SCardSvr - ok
12:21:29.0286 4608 [ 07237C66E05DA6778E9F3CB67FA00736 ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys
12:21:29.0290 4608 SCDEmu - ok
12:21:29.0324 4608 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
12:21:29.0327 4608 scfilter - ok
12:21:29.0379 4608 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
12:21:29.0415 4608 Schedule - ok
12:21:29.0458 4608 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
12:21:29.0460 4608 SCPolicySvc - ok
12:21:29.0480 4608 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
12:21:29.0492 4608 SDRSVC - ok
12:21:29.0525 4608 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
12:21:29.0528 4608 secdrv - ok
12:21:29.0557 4608 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
12:21:29.0565 4608 seclogon - ok
12:21:29.0603 4608 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
12:21:29.0612 4608 SENS - ok
12:21:29.0648 4608 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
12:21:29.0656 4608 SensrSvc - ok
12:21:29.0685 4608 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
12:21:29.0688 4608 Serenum - ok
12:21:29.0706 4608 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
12:21:29.0710 4608 Serial - ok
12:21:29.0747 4608 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
12:21:29.0751 4608 sermouse - ok
12:21:29.0836 4608 [ 289E853881E688286AD24299FCC485D8 ] ServiceLayer C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
12:21:29.0846 4608 ServiceLayer - ok
12:21:29.0906 4608 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
12:21:29.0915 4608 SessionEnv - ok
12:21:29.0945 4608 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
12:21:29.0949 4608 sffdisk - ok
12:21:29.0971 4608 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
12:21:29.0974 4608 sffp_mmc - ok
12:21:30.0001 4608 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
12:21:30.0009 4608 sffp_sd - ok
12:21:30.0042 4608 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
12:21:30.0045 4608 sfloppy - ok
12:21:30.0126 4608 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
12:21:30.0138 4608 SharedAccess - ok
12:21:30.0171 4608 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
12:21:30.0194 4608 ShellHWDetection - ok
12:21:30.0220 4608 [ 1BC348CF6BAA90EC8E533EF6E6A69933 ] SiSGbeLH C:\Windows\system32\DRIVERS\SiSG664.sys
12:21:30.0224 4608 SiSGbeLH - ok
12:21:30.0256 4608 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
12:21:30.0259 4608 SiSRaid2 - ok
12:21:30.0280 4608 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
12:21:30.0284 4608 SiSRaid4 - ok
12:21:30.0334 4608 [ 7C15061CD0372487903B07B9BB03AFAD ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
12:21:30.0338 4608 SkypeUpdate - ok
12:21:30.0363 4608 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
12:21:30.0381 4608 Smb - ok
12:21:30.0437 4608 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
12:21:30.0444 4608 SNMPTRAP - ok
12:21:30.0647 4608 [ F06A6DE8438F7446BFF9E61F31356521 ] SNP2UVC C:\Windows\system32\DRIVERS\snp2uvc.sys
12:21:30.0713 4608 SNP2UVC - ok
12:21:30.0739 4608 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
12:21:30.0742 4608 spldr - ok
12:21:30.0785 4608 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
12:21:30.0807 4608 Spooler - ok
12:21:30.0903 4608 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
12:21:30.0986 4608 sppsvc - ok
12:21:31.0044 4608 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
12:21:31.0054 4608 sppuinotify - ok
12:21:31.0094 4608 [ 88E5162E58C8919CC873F5D8946197CF ] sptd C:\Windows\system32\Drivers\sptd.sys
12:21:31.0095 4608 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: 88E5162E58C8919CC873F5D8946197CF
12:21:31.0120 4608 sptd ( LockedFile.Multi.Generic ) - warning
12:21:31.0120 4608 sptd - detected LockedFile.Multi.Generic (1)
12:21:31.0156 4608 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
12:21:31.0163 4608 srv - ok
12:21:31.0204 4608 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
12:21:31.0226 4608 srv2 - ok
12:21:31.0253 4608 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
12:21:31.0258 4608 srvnet - ok
12:21:31.0354 4608 [ 4905E29FE0BE2A4441E4D3AA9D4461C7 ] SrvUpdater C:\Program Files (x86)\SoftwareUpdater\UpdaterService.exe
12:21:31.0356 4608 SrvUpdater - ok
12:21:31.0414 4608 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
12:21:31.0425 4608 SSDPSRV - ok
12:21:31.0450 4608 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
12:21:31.0458 4608 SstpSvc - ok
12:21:31.0503 4608 StarWindServiceAE - ok
12:21:31.0542 4608 [ E55F8D27EB014B31073F2F60270B6B3E ] Stereo Service C:\Windows\SysWOW64\nvSCPAPISvr.exe
12:21:31.0550 4608 Stereo Service - ok
12:21:31.0584 4608 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
12:21:31.0587 4608 stexstor - ok
12:21:31.0653 4608 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
12:21:31.0676 4608 stisvc - ok
12:21:31.0710 4608 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
12:21:31.0713 4608 swenum - ok
12:21:31.0756 4608 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
12:21:31.0779 4608 swprv - ok
12:21:31.0843 4608 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
12:21:31.0900 4608 SysMain - ok
12:21:31.0930 4608 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
12:21:31.0939 4608 TabletInputService - ok
12:21:31.0971 4608 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
12:21:31.0983 4608 TapiSrv - ok
12:21:32.0017 4608 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
12:21:32.0024 4608 TBS - ok
12:21:32.0105 4608 [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
12:21:32.0152 4608 Tcpip - ok
12:21:32.0237 4608 [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
12:21:32.0253 4608 TCPIP6 - ok
12:21:32.0299 4608 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
12:21:32.0302 4608 tcpipreg - ok
12:21:32.0344 4608 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
12:21:32.0347 4608 TDPIPE - ok
12:21:32.0381 4608 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
12:21:32.0385 4608 TDTCP - ok
12:21:32.0418 4608 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
12:21:32.0422 4608 tdx - ok
12:21:32.0583 4608 [ 402794A75A899E296AB3EDEC4ECCB9A8 ] TeamViewer8 C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
12:21:32.0692 4608 TeamViewer8 - ok
12:21:32.0733 4608 [ F5520DBB47C60EE83024B38720ABDA24 ] teamviewervpn C:\Windows\system32\DRIVERS\teamviewervpn.sys
12:21:32.0736 4608 teamviewervpn - ok
12:21:32.0762 4608 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
12:21:32.0766 4608 TermDD - ok
12:21:32.0808 4608 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
12:21:32.0841 4608 TermService - ok
12:21:32.0870 4608 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
12:21:32.0879 4608 Themes - ok
12:21:32.0902 4608 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
12:21:32.0907 4608 THREADORDER - ok
12:21:32.0952 4608 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
12:21:32.0961 4608 TrkWks - ok
12:21:33.0020 4608 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
12:21:33.0025 4608 TrustedInstaller - ok
12:21:33.0072 4608 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
12:21:33.0076 4608 tssecsrv - ok
12:21:33.0107 4608 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
12:21:33.0110 4608 TsUsbFlt - ok
12:21:33.0197 4608 [ DC0F2A0C445EF104BC240954D3A460C2 ] TuneUp.UtilitiesSvc C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe
12:21:33.0254 4608 TuneUp.UtilitiesSvc - ok
12:21:33.0289 4608 [ DCC94C51D27C7EC0DADECA8F64C94FCF ] TuneUpUtilitiesDrv C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys
12:21:33.0292 4608 TuneUpUtilitiesDrv - ok
12:21:33.0322 4608 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
12:21:33.0326 4608 tunnel - ok
12:21:33.0349 4608 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
12:21:33.0353 4608 uagp35 - ok
12:21:33.0383 4608 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
12:21:33.0389 4608 udfs - ok
12:21:33.0434 4608 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
12:21:33.0442 4608 UI0Detect - ok
12:21:33.0469 4608 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
12:21:33.0472 4608 uliagpkx - ok
12:21:33.0498 4608 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
12:21:33.0501 4608 umbus - ok
12:21:33.0521 4608 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
12:21:33.0524 4608 UmPass - ok
12:21:33.0558 4608 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
12:21:33.0580 4608 upnphost - ok
12:21:33.0659 4608 [ 907F50B8695DAA65A9445D27AD306E65 ] upperdev C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys
12:21:33.0662 4608 upperdev - ok
12:21:33.0701 4608 [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
12:21:33.0706 4608 usbaudio - ok
12:21:33.0738 4608 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
12:21:33.0742 4608 usbccgp - ok
12:21:33.0776 4608 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
12:21:33.0780 4608 usbcir - ok
12:21:33.0814 4608 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
12:21:33.0818 4608 usbehci - ok
12:21:33.0855 4608 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
12:21:33.0861 4608 usbhub - ok
12:21:33.0882 4608 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
12:21:33.0886 4608 usbohci - ok
12:21:33.0918 4608 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
12:21:33.0922 4608 usbprint - ok
12:21:33.0956 4608 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
12:21:33.0957 4608 usbscan - ok
12:21:33.0992 4608 [ 4ACEE387FA8FD39F83564FCD2FC234F2 ] usbser C:\Windows\system32\drivers\usbser.sys
12:21:33.0996 4608 usbser - ok
12:21:34.0076 4608 [ 3F7498527B48657091C355F683BEB0DD ] UsbserFilt C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys
12:21:34.0080 4608 UsbserFilt - ok
12:21:34.0116 4608 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
12:21:34.0120 4608 USBSTOR - ok
12:21:34.0152 4608 [ 81FB2216D3A60D1284455D511797DB3D ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
12:21:34.0155 4608 usbuhci - ok
12:21:34.0185 4608 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
12:21:34.0190 4608 usbvideo - ok
12:21:34.0221 4608 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
12:21:34.0231 4608 UxSms - ok
12:21:34.0264 4608 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
12:21:34.0269 4608 VaultSvc - ok
12:21:34.0301 4608 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
12:21:34.0304 4608 vdrvroot - ok
12:21:34.0350 4608 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
12:21:34.0373 4608 vds - ok
12:21:34.0416 4608 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
12:21:34.0419 4608 vga - ok
12:21:34.0438 4608 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
12:21:34.0441 4608 VgaSave - ok
12:21:34.0488 4608 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
12:21:34.0493 4608 vhdmp - ok
12:21:34.0526 4608 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
12:21:34.0530 4608 viaide - ok
12:21:34.0555 4608 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
12:21:34.0559 4608 volmgr - ok
12:21:34.0594 4608 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
12:21:34.0616 4608 volmgrx - ok
12:21:34.0634 4608 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
12:21:34.0641 4608 volsnap - ok
12:21:34.0683 4608 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
12:21:34.0688 4608 vsmraid - ok
12:21:34.0751 4608 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
12:21:34.0799 4608 VSS - ok
12:21:34.0961 4608 [ 8754BA5FCC85325C229ADCB72087706E ] vToolbarUpdater15.4.0 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.4.0\ToolbarUpdater.exe
12:21:34.0996 4608 vToolbarUpdater15.4.0 - ok
12:21:35.0034 4608 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
12:21:35.0038 4608 vwifibus - ok
12:21:35.0061 4608 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
12:21:35.0065 4608 vwififlt - ok
12:21:35.0103 4608 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
12:21:35.0126 4608 W32Time - ok
12:21:35.0173 4608 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
12:21:35.0176 4608 WacomPen - ok
12:21:35.0199 4608 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
12:21:35.0202 4608 WANARP - ok
12:21:35.0213 4608 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
12:21:35.0216 4608 Wanarpv6 - ok
12:21:35.0287 4608 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
12:21:35.0320 4608 WatAdminSvc - ok
12:21:35.0390 4608 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
12:21:35.0438 4608 wbengine - ok
12:21:35.0478 4608 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
12:21:35.0491 4608 WbioSrvc - ok
12:21:35.0539 4608 [ 8BDA6DB43AA54E8BB5E0794541DDC209 ] WcesComm C:\Windows\WindowsMobile\wcescomm.dll
12:21:35.0548 4608 WcesComm - ok
12:21:35.0615 4608 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
12:21:35.0651 4608 wcncsvc - ok
12:21:35.0715 4608 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
12:21:35.0767 4608 WcsPlugInService - ok
12:21:35.0823 4608 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
12:21:35.0827 4608 Wd - ok
12:21:35.0862 4608 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
12:21:35.0885 4608 Wdf01000 - ok
12:21:35.0923 4608 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
12:21:35.0933 4608 WdiServiceHost - ok
12:21:35.0946 4608 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
12:21:35.0954 4608 WdiSystemHost - ok
12:21:35.0996 4608 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
12:21:36.0019 4608 WebClient - ok
12:21:36.0052 4608 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
12:21:36.0065 4608 Wecsvc - ok
12:21:36.0105 4608 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
12:21:36.0115 4608 wercplsupport - ok
12:21:36.0138 4608 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
12:21:36.0148 4608 WerSvc - ok
12:21:36.0170 4608 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
12:21:36.0173 4608 WfpLwf - ok
12:21:36.0222 4608 [ 52DED146E4797E6CCF94799E8E22BB2A ] WimFltr C:\Windows\system32\DRIVERS\wimfltr.sys
12:21:36.0227 4608 WimFltr - ok
12:21:36.0263 4608 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
12:21:36.0265 4608 WIMMount - ok
12:21:36.0288 4608 WinDefend - ok
12:21:36.0310 4608 WinHttpAutoProxySvc - ok
12:21:36.0365 4608 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
12:21:36.0371 4608 Winmgmt - ok
12:21:36.0446 4608 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
12:21:36.0503 4608 WinRM - ok
12:21:36.0575 4608 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
12:21:36.0580 4608 WinUsb - ok
12:21:36.0634 4608 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
12:21:36.0689 4608 Wlansvc - ok
12:21:36.0823 4608 [ 98F138897EF4246381D197CB81846D62 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
12:21:36.0880 4608 wlidsvc - ok
12:21:36.0913 4608 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
12:21:36.0914 4608 WmiAcpi - ok
12:21:36.0997 4608 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
12:21:37.0002 4608 wmiApSrv - ok
12:21:37.0041 4608 WMPNetworkSvc - ok
12:21:37.0079 4608 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
12:21:37.0089 4608 WPCSvc - ok
12:21:37.0117 4608 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
12:21:37.0127 4608 WPDBusEnum - ok
12:21:37.0166 4608 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
12:21:37.0170 4608 ws2ifsl - ok
12:21:37.0213 4608 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
12:21:37.0224 4608 wscsvc - ok
12:21:37.0237 4608 WSearch - ok
12:21:37.0335 4608 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
12:21:37.0414 4608 wuauserv - ok
12:21:37.0460 4608 [ D3381DC54C34D79B22CEE0D65BA91B7C ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
12:21:37.0464 4608 WudfPf - ok
12:21:37.0491 4608 [ CF8D590BE3373029D57AF80914190682 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
12:21:37.0497 4608 WUDFRd - ok
12:21:37.0545 4608 [ 7A95C95B6C4CF292D689106BCAE49543 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
12:21:37.0555 4608 wudfsvc - ok
12:21:37.0605 4608 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
12:21:37.0650 4608 WwanSvc - ok
12:21:37.0743 4608 [ 24FB8DB6D1D55E2C5D0A53DFE48E6AF8 ] Yontoo Desktop Updater C:\Program Files (x86)\Yontoo\Y2Desktop.Updater.exe
12:21:37.0745 4608 Yontoo Desktop Updater - ok
12:21:37.0834 4608 [ 74983ADDCA2D9618512C088D856D6615 ] {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC} C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\000.fcl
12:21:37.0838 4608 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC} - ok
12:21:37.0887 4608 ================ Scan global ===============================
12:21:37.0943 4608 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
12:21:37.0981 4608 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\Windows\system32\winsrv.dll
12:21:38.0002 4608 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\Windows\system32\winsrv.dll
12:21:38.0042 4608 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
12:21:38.0073 4608 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
12:21:38.0085 4608 [Global] - ok
12:21:38.0086 4608 ================ Scan MBR ==================================
12:21:38.0106 4608 [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
12:21:38.0368 4608 \Device\Harddisk0\DR0 ( Rootkit.Win32.BackBoot.gen ) - warning
12:21:38.0368 4608 \Device\Harddisk0\DR0 - detected Rootkit.Win32.BackBoot.gen (1)
12:21:38.0374 4608 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
12:21:38.0459 4608 \Device\Harddisk1\DR1 - ok
12:21:38.0460 4608 ================ Scan VBR ==================================
12:21:38.0465 4608 [ FBD8BA3C5A9C765C3E6CF96FDDD0F921 ] \Device\Harddisk0\DR0\Partition1
12:21:38.0466 4608 \Device\Harddisk0\DR0\Partition1 ( Rootkit.Boot.Cidox.b ) - infected
12:21:38.0467 4608 \Device\Harddisk0\DR0\Partition1 - detected Rootkit.Boot.Cidox.b (0)
12:21:38.0484 4608 [ 550ECBA092F16E46D234C458C94D4DD5 ] \Device\Harddisk0\DR0\Partition2
12:21:38.0487 4608 \Device\Harddisk0\DR0\Partition2 - ok
12:21:38.0492 4608 [ C87A3E1DB84A2EA09ECA436937ECA807 ] \Device\Harddisk1\DR1\Partition1
12:21:38.0496 4608 \Device\Harddisk1\DR1\Partition1 - ok
12:21:38.0497 4608 ============================================================
12:21:38.0497 4608 Scan finished
12:21:38.0498 4608 ============================================================
12:21:38.0522 5092 Detected object count: 3
12:21:38.0522 5092 Actual detected object count: 3
12:22:00.0992 5092 sptd ( LockedFile.Multi.Generic ) - skipped by user
12:22:00.0993 5092 sptd ( LockedFile.Multi.Generic ) - User select action: Skip
12:22:00.0996 5092 \Device\Harddisk0\DR0 ( Rootkit.Win32.BackBoot.gen ) - skipped by user
12:22:00.0996 5092 \Device\Harddisk0\DR0 ( Rootkit.Win32.BackBoot.gen ) - User select action: Skip
12:22:01.0282 5092 \Device\Harddisk0\DR0\Partition1 - copied to quarantine
12:22:01.0287 5092 \Device\Harddisk0\DR0\Partition1 ( Rootkit.Boot.Cidox.b ) - will be cured on reboot
12:22:01.0288 5092 \Device\Harddisk0\DR0\Partition1 - ok
12:22:01.0288 5092 \Device\Harddisk0\DR0\Partition1 ( Rootkit.Boot.Cidox.b ) - User select action: Cure


díky za snahu - je špatně free antivirus?

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15718
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: rootkit v MBR - prosím o pomoc

#4 Příspěvek od JaRon »

- po restarte zopakuj akciu s TDSSK - log vloz
- free AV je OK
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

alpa104
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 01 srp 2013 10:17

Re: rootkit v MBR - prosím o pomoc

#5 Příspěvek od alpa104 »

počítač ukončen modrou obrazovkou smrti - nový report - viz

13:37:08.0027 4384 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
13:37:08.0287 4384 ============================================================
13:37:08.0287 4384 Current date / time: 2013/08/01 13:37:08.0287
13:37:08.0287 4384 SystemInfo:
13:37:08.0287 4384
13:37:08.0287 4384 OS Version: 6.1.7601 ServicePack: 1.0
13:37:08.0287 4384 Product type: Workstation
13:37:08.0287 4384 ComputerName: ALPA
13:37:08.0287 4384 UserName: Pach
13:37:08.0287 4384 Windows directory: C:\Windows
13:37:08.0287 4384 System windows directory: C:\Windows
13:37:08.0287 4384 Running under WOW64
13:37:08.0287 4384 Processor architecture: Intel x64
13:37:08.0287 4384 Number of processors: 2
13:37:08.0287 4384 Page size: 0x1000
13:37:08.0287 4384 Boot type: Normal boot
13:37:08.0287 4384 ============================================================
13:37:09.0202 4384 BG loaded
13:37:09.0669 4384 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
13:37:09.0679 4384 Drive \Device\Harddisk1\DR1 - Size: 0x1D1C1116000 (1863.02 Gb), SectorSize: 0x200, Cylinders: 0x3B601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
13:37:09.0689 4384 ============================================================
13:37:09.0689 4384 \Device\Harddisk0\DR0:
13:37:09.0690 4384 MBR partitions:
13:37:09.0690 4384 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1D4B178, BlocksNum 0xE8E0360
13:37:09.0706 4384 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1062B517, BlocksNum 0x29D5972A
13:37:09.0706 4384 \Device\Harddisk1\DR1:
13:37:09.0706 4384 MBR partitions:
13:37:09.0706 4384 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xE8E07800
13:37:09.0706 4384 ============================================================
13:37:09.0740 4384 C: <-> \Device\Harddisk0\DR0\Partition1
13:37:09.0780 4384 D: <-> \Device\Harddisk0\DR0\Partition2
13:37:09.0819 4384 F: <-> \Device\Harddisk1\DR1\Partition1
13:37:09.0821 4384 ============================================================
13:37:09.0821 4384 Initialize success
13:37:09.0821 4384 ============================================================
13:37:11.0858 2988 ============================================================
13:37:11.0858 2988 Scan started
13:37:11.0858 2988 Mode: Manual;
13:37:11.0858 2988 ============================================================
13:37:13.0626 2988 ================ Scan system memory ========================
13:37:13.0626 2988 System memory - ok
13:37:13.0627 2988 ================ Scan services =============================
13:37:13.0878 2988 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
13:37:13.0883 2988 1394ohci - ok
13:37:13.0915 2988 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
13:37:13.0920 2988 ACPI - ok
13:37:13.0935 2988 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
13:37:13.0938 2988 AcpiPmi - ok
13:37:13.0998 2988 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
13:37:13.0999 2988 AdobeARMservice - ok
13:37:14.0036 2988 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
13:37:14.0044 2988 adp94xx - ok
13:37:14.0063 2988 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
13:37:14.0070 2988 adpahci - ok
13:37:14.0088 2988 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
13:37:14.0093 2988 adpu320 - ok
13:37:14.0154 2988 [ C0BF554D2277F7A4C735D475ADE2E3B2 ] ADSMService C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe
13:37:14.0157 2988 ADSMService - ok
13:37:14.0192 2988 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
13:37:14.0194 2988 AeLookupSvc - ok
13:37:14.0225 2988 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
13:37:14.0230 2988 AFD - ok
13:37:14.0257 2988 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
13:37:14.0260 2988 agp440 - ok
13:37:14.0288 2988 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
13:37:14.0291 2988 ALG - ok
13:37:14.0314 2988 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
13:37:14.0317 2988 aliide - ok
13:37:14.0338 2988 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
13:37:14.0341 2988 amdide - ok
13:37:14.0371 2988 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
13:37:14.0374 2988 AmdK8 - ok
13:37:14.0389 2988 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
13:37:14.0394 2988 AmdPPM - ok
13:37:14.0423 2988 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
13:37:14.0426 2988 amdsata - ok
13:37:14.0453 2988 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
13:37:14.0457 2988 amdsbs - ok
13:37:14.0475 2988 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
13:37:14.0478 2988 amdxata - ok
13:37:14.0510 2988 [ 9C7F164B49CADC658D1B3C575782F346 ] AmUStor C:\Windows\system32\drivers\AmUStor.SYS
13:37:14.0513 2988 AmUStor - ok
13:37:14.0549 2988 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
13:37:14.0552 2988 AppID - ok
13:37:14.0582 2988 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
13:37:14.0594 2988 AppIDSvc - ok
13:37:14.0621 2988 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll
13:37:14.0622 2988 Appinfo - ok
13:37:14.0657 2988 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
13:37:14.0660 2988 arc - ok
13:37:14.0679 2988 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
13:37:14.0683 2988 arcsas - ok
13:37:14.0718 2988 [ 88FBC8BEBFD38566235EAA5E4DBC4E05 ] AsDsm C:\Windows\system32\drivers\AsDsm.sys
13:37:14.0721 2988 AsDsm - ok
13:37:14.0769 2988 [ 18E5C2F937F9DEB8C282DF66A3761925 ] ASLDRService C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
13:37:14.0770 2988 ASLDRService - ok
13:37:14.0799 2988 [ 4C016FD76ED5C05E84CA8CAB77993961 ] ASMMAP64 C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys
13:37:14.0800 2988 ASMMAP64 - ok
13:37:14.0828 2988 [ 0BAEFD3F648C6E7AB52990DD9565E4E2 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
13:37:14.0829 2988 aswFsBlk - ok
13:37:14.0838 2988 [ FA562F34ED6633C66170B09182B4C049 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
13:37:14.0839 2988 aswMonFlt - ok
13:37:14.0873 2988 [ 64E2BAB4096C13D2342BC4661C967E07 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
13:37:14.0875 2988 aswRdr - ok
13:37:14.0930 2988 [ 5573AA70993A2BB81525B1C704B88763 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
13:37:14.0933 2988 aswRvrt - ok
13:37:14.0972 2988 [ 8C0800CDB501CFC1164B286A0478DC10 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
13:37:14.0980 2988 aswSnx - ok
13:37:15.0012 2988 [ 3815DB16CDA62190F5C0A65118F3D714 ] aswSP C:\Windows\system32\drivers\aswSP.sys
13:37:15.0015 2988 aswSP - ok
13:37:15.0042 2988 [ 29DD8E458A84171202AA4979364C30C0 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
13:37:15.0043 2988 aswTdi - ok
13:37:15.0114 2988 [ 22F521108881DC59837F6FC614E0568F ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
13:37:15.0119 2988 aswVmm - ok
13:37:15.0144 2988 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
13:37:15.0147 2988 AsyncMac - ok
13:37:15.0172 2988 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
13:37:15.0174 2988 atapi - ok
13:37:15.0249 2988 [ A5E770426D18F8EF332A593F3289DA91 ] athr C:\Windows\system32\DRIVERS\athrx.sys
13:37:15.0268 2988 athr - ok
13:37:15.0302 2988 [ 63F1212FFE13E62CA1E8D8EE19ABD9A7 ] ATKGFNEXSrv C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
13:37:15.0304 2988 ATKGFNEXSrv - ok
13:37:15.0345 2988 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
13:37:15.0350 2988 AudioEndpointBuilder - ok
13:37:15.0379 2988 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
13:37:15.0384 2988 AudioSrv - ok
13:37:15.0456 2988 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
13:37:15.0457 2988 avast! Antivirus - ok
13:37:15.0477 2988 [ 18AAAC7ED383C465E319B5DD07D0A0B6 ] avgtp C:\Windows\system32\drivers\avgtpx64.sys
13:37:15.0479 2988 avgtp - ok
13:37:15.0516 2988 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
13:37:15.0520 2988 AxInstSV - ok
13:37:15.0547 2988 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
13:37:15.0555 2988 b06bdrv - ok
13:37:15.0581 2988 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
13:37:15.0587 2988 b57nd60a - ok
13:37:15.0628 2988 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
13:37:15.0632 2988 BDESVC - ok
13:37:15.0653 2988 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
13:37:15.0654 2988 Beep - ok
13:37:15.0688 2988 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
13:37:15.0722 2988 BFE - ok
13:37:15.0785 2988 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
13:37:15.0993 2988 BITS - ok
13:37:16.0039 2988 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
13:37:16.0041 2988 blbdrive - ok
13:37:16.0074 2988 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
13:37:16.0076 2988 bowser - ok
13:37:16.0108 2988 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
13:37:16.0111 2988 BrFiltLo - ok
13:37:16.0130 2988 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
13:37:16.0133 2988 BrFiltUp - ok
13:37:16.0159 2988 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
13:37:16.0161 2988 Browser - ok
13:37:16.0365 2988 [ 981794879E8FD26CDD6ABCFF3F3F65EF ] BrowserProtect C:\ProgramData\BrowserProtect\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
13:37:16.0387 2988 BrowserProtect - ok
13:37:16.0424 2988 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
13:37:16.0431 2988 Brserid - ok
13:37:16.0450 2988 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
13:37:16.0453 2988 BrSerWdm - ok
13:37:16.0470 2988 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
13:37:16.0473 2988 BrUsbMdm - ok
13:37:16.0494 2988 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
13:37:16.0497 2988 BrUsbSer - ok
13:37:16.0518 2988 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
13:37:16.0521 2988 BTHMODEM - ok
13:37:16.0552 2988 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
13:37:16.0555 2988 bthserv - ok
13:37:16.0581 2988 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
13:37:16.0583 2988 cdfs - ok
13:37:16.0611 2988 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
13:37:16.0613 2988 cdrom - ok
13:37:16.0649 2988 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
13:37:16.0653 2988 CertPropSvc - ok
13:37:16.0668 2988 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
13:37:16.0671 2988 circlass - ok
13:37:16.0708 2988 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
13:37:16.0715 2988 CLFS - ok
13:37:16.0804 2988 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:37:16.0816 2988 clr_optimization_v2.0.50727_32 - ok
13:37:16.0861 2988 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
13:37:16.0865 2988 clr_optimization_v2.0.50727_64 - ok
13:37:16.0915 2988 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:37:16.0940 2988 clr_optimization_v4.0.30319_32 - ok
13:37:16.0981 2988 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
13:37:17.0007 2988 clr_optimization_v4.0.30319_64 - ok
13:37:17.0027 2988 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
13:37:17.0029 2988 CmBatt - ok
13:37:17.0054 2988 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
13:37:17.0057 2988 cmdide - ok
13:37:17.0094 2988 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
13:37:17.0103 2988 CNG - ok
13:37:17.0119 2988 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
13:37:17.0121 2988 Compbatt - ok
13:37:17.0137 2988 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
13:37:17.0139 2988 CompositeBus - ok
13:37:17.0149 2988 COMSysApp - ok
13:37:17.0176 2988 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
13:37:17.0179 2988 crcdisk - ok
13:37:17.0213 2988 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
13:37:17.0216 2988 CryptSvc - ok
13:37:17.0263 2988 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
13:37:17.0283 2988 DcomLaunch - ok
13:37:17.0310 2988 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
13:37:17.0317 2988 defragsvc - ok
13:37:17.0349 2988 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
13:37:17.0351 2988 DfsC - ok
13:37:17.0379 2988 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
13:37:17.0384 2988 Dhcp - ok
13:37:17.0413 2988 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
13:37:17.0415 2988 discache - ok
13:37:17.0431 2988 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
13:37:17.0434 2988 Disk - ok
13:37:17.0463 2988 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
13:37:17.0467 2988 Dnscache - ok
13:37:17.0499 2988 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
13:37:17.0505 2988 dot3svc - ok
13:37:17.0540 2988 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
13:37:17.0544 2988 DPS - ok
13:37:17.0564 2988 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
13:37:17.0567 2988 drmkaud - ok
13:37:17.0608 2988 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
13:37:17.0615 2988 DXGKrnl - ok
13:37:17.0622 2988 EagleX64 - ok
13:37:17.0654 2988 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
13:37:17.0657 2988 EapHost - ok
13:37:17.0745 2988 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
13:37:17.0824 2988 ebdrv - ok
13:37:17.0856 2988 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
13:37:17.0860 2988 EFS - ok
13:37:17.0914 2988 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
13:37:17.0948 2988 ehRecvr - ok
13:37:17.0975 2988 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
13:37:17.0980 2988 ehSched - ok
13:37:18.0020 2988 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
13:37:18.0029 2988 elxstor - ok
13:37:18.0059 2988 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
13:37:18.0062 2988 ErrDev - ok
13:37:18.0092 2988 [ 3C38648375B7F3988691F53A7AAE10A9 ] ETD C:\Windows\system32\DRIVERS\ETD.sys
13:37:18.0094 2988 ETD - ok
13:37:18.0126 2988 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
13:37:18.0131 2988 EventSystem - ok
13:37:18.0161 2988 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
13:37:18.0165 2988 exfat - ok
13:37:18.0187 2988 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
13:37:18.0190 2988 fastfat - ok
13:37:18.0216 2988 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
13:37:18.0226 2988 Fax - ok
13:37:18.0255 2988 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
13:37:18.0258 2988 fdc - ok
13:37:18.0286 2988 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
13:37:18.0290 2988 fdPHost - ok
13:37:18.0307 2988 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
13:37:18.0311 2988 FDResPub - ok
13:37:18.0330 2988 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
13:37:18.0334 2988 FileInfo - ok
13:37:18.0348 2988 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
13:37:18.0350 2988 Filetrace - ok
13:37:18.0441 2988 [ ACEFEEA621DCA62EFB7A7EEA59F5E91B ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
13:37:18.0477 2988 FLEXnet Licensing Service - ok
13:37:18.0497 2988 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
13:37:18.0501 2988 flpydisk - ok
13:37:18.0541 2988 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
13:37:18.0544 2988 FltMgr - ok
13:37:18.0600 2988 [ 5043F0D9A22AABF550508B3165C5B0FD ] FolderSize C:\Program Files (x86)\FolderSize\FolderSizeSvc.exe
13:37:18.0602 2988 FolderSize - ok
13:37:18.0660 2988 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\Windows\system32\FntCache.dll
13:37:18.0670 2988 FontCache - ok
13:37:18.0728 2988 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
13:37:18.0731 2988 FontCache3.0.0.0 - ok
13:37:18.0760 2988 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
13:37:18.0766 2988 FsDepends - ok
13:37:18.0796 2988 [ 5814011B2F6E088E29D689B5FCD49B8F ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
13:37:18.0801 2988 fssfltr - ok
13:37:18.0914 2988 [ F6717211C1EC2CDDAA81B97B0727C2E9 ] fsssvc C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
13:37:18.0924 2988 fsssvc - ok
13:37:18.0983 2988 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
13:37:19.0030 2988 Fs_Rec - ok
13:37:19.0159 2988 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
13:37:19.0238 2988 fvevol - ok
13:37:19.0290 2988 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
13:37:19.0294 2988 gagp30kx - ok
13:37:19.0392 2988 [ 7300D171A5A32456F990AC79608404E5 ] Garmin Core Update Service D:\navigace\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
13:37:19.0395 2988 Garmin Core Update Service - ok
13:37:19.0453 2988 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
13:37:19.0461 2988 gpsvc - ok
13:37:19.0524 2988 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:37:19.0526 2988 gupdate - ok
13:37:19.0533 2988 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:37:19.0535 2988 gupdatem - ok
13:37:19.0565 2988 [ CC839E8D766CC31A7710C9F38CF3E375 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
13:37:19.0568 2988 gusvc - ok
13:37:19.0597 2988 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
13:37:19.0601 2988 hcw85cir - ok
13:37:19.0644 2988 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
13:37:19.0651 2988 HdAudAddService - ok
13:37:19.0678 2988 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
13:37:19.0680 2988 HDAudBus - ok
13:37:19.0700 2988 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
13:37:19.0703 2988 HidBatt - ok
13:37:19.0723 2988 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
13:37:19.0727 2988 HidBth - ok
13:37:19.0741 2988 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
13:37:19.0744 2988 HidIr - ok
13:37:19.0773 2988 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
13:37:19.0776 2988 hidserv - ok
13:37:19.0798 2988 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
13:37:19.0800 2988 HidUsb - ok
13:37:19.0825 2988 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
13:37:19.0831 2988 hkmsvc - ok
13:37:19.0861 2988 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
13:37:19.0866 2988 HomeGroupListener - ok
13:37:19.0891 2988 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
13:37:19.0898 2988 HomeGroupProvider - ok
13:37:19.0927 2988 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
13:37:19.0931 2988 HpSAMD - ok
13:37:19.0978 2988 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
13:37:19.0984 2988 HTTP - ok
13:37:20.0006 2988 [ 84D3088475BD9BC56ED76D6E0F740A63 ] Huawei C:\Windows\system32\DRIVERS\ewdcsc.sys
13:37:20.0010 2988 Huawei - ok
13:37:20.0042 2988 [ 8F9B0FC4EC3A8194BD4CBC5ED3E7ABEB ] hwdatacard C:\Windows\system32\DRIVERS\ewusbmdm.sys
13:37:20.0046 2988 hwdatacard - ok
13:37:20.0071 2988 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
13:37:20.0075 2988 hwpolicy - ok
13:37:20.0094 2988 [ B45B3647BA32749B94FA689175EC8C26 ] hwusbdev C:\Windows\system32\DRIVERS\ewusbdev.sys
13:37:20.0097 2988 hwusbdev - ok
13:37:20.0127 2988 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
13:37:20.0128 2988 i8042prt - ok
13:37:20.0166 2988 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
13:37:20.0174 2988 iaStorV - ok
13:37:20.0224 2988 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
13:37:20.0258 2988 idsvc - ok
13:37:20.0284 2988 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
13:37:20.0287 2988 iirsp - ok
13:37:20.0327 2988 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
13:37:20.0335 2988 IKEEXT - ok
13:37:20.0424 2988 [ AF87012C22372CC982A1E5B597DEB5FA ] IMPI Updater C:\Program Files\IMPI\ExtensionUpdaterService.exe
13:37:20.0427 2988 IMPI Updater - ok
13:37:20.0500 2988 [ 181E4FF75674A7105ECD0A02C35EF43A ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
13:37:20.0533 2988 IntcAzAudAddService - ok
13:37:20.0547 2988 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
13:37:20.0551 2988 intelide - ok
13:37:20.0576 2988 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
13:37:20.0578 2988 intelppm - ok
13:37:20.0616 2988 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
13:37:20.0622 2988 IPBusEnum - ok
13:37:20.0653 2988 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:37:20.0657 2988 IpFilterDriver - ok
13:37:20.0695 2988 [ A34A587FFFD45FA649FBA6D03784D257 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
13:37:20.0703 2988 iphlpsvc - ok
13:37:20.0742 2988 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
13:37:20.0745 2988 IPMIDRV - ok
13:37:20.0778 2988 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
13:37:20.0783 2988 IPNAT - ok
13:37:20.0791 2988 ipswuio - ok
13:37:20.0815 2988 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
13:37:20.0818 2988 IRENUM - ok
13:37:20.0836 2988 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
13:37:20.0840 2988 isapnp - ok
13:37:20.0874 2988 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
13:37:20.0877 2988 iScsiPrt - ok
13:37:20.0895 2988 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
13:37:20.0896 2988 kbdclass - ok
13:37:20.0915 2988 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
13:37:20.0918 2988 kbdhid - ok
13:37:20.0941 2988 [ E63EF8C3271D014F14E2469CE75FECB4 ] kbfiltr C:\Windows\system32\DRIVERS\kbfiltr.sys
13:37:20.0942 2988 kbfiltr - ok
13:37:20.0959 2988 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
13:37:20.0963 2988 KeyIso - ok
13:37:20.0993 2988 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
13:37:20.0997 2988 KSecDD - ok
13:37:21.0022 2988 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
13:37:21.0027 2988 KSecPkg - ok
13:37:21.0055 2988 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
13:37:21.0058 2988 ksthunk - ok
13:37:21.0098 2988 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
13:37:21.0109 2988 KtmRm - ok
13:37:21.0138 2988 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
13:37:21.0196 2988 LanmanServer - ok
13:37:21.0228 2988 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:37:21.0291 2988 LanmanWorkstation - ok
13:37:21.0314 2988 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
13:37:21.0316 2988 lltdio - ok
13:37:21.0347 2988 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
13:37:21.0357 2988 lltdsvc - ok
13:37:21.0380 2988 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
13:37:21.0384 2988 lmhosts - ok
13:37:21.0410 2988 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
13:37:21.0414 2988 LSI_FC - ok
13:37:21.0430 2988 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
13:37:21.0434 2988 LSI_SAS - ok
13:37:21.0446 2988 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
13:37:21.0449 2988 LSI_SAS2 - ok
13:37:21.0467 2988 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
13:37:21.0471 2988 LSI_SCSI - ok
13:37:21.0495 2988 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
13:37:21.0496 2988 luafv - ok
13:37:21.0575 2988 [ F453D1E6D881E8F8717E20CCD4199E85 ] McComponentHostService C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe
13:37:21.0590 2988 McComponentHostService - ok
13:37:21.0622 2988 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
13:37:21.0630 2988 Mcx2Svc - ok
13:37:21.0653 2988 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
13:37:21.0657 2988 megasas - ok
13:37:21.0678 2988 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
13:37:21.0685 2988 MegaSR - ok
13:37:21.0743 2988 [ 7C4C76B39D5525C4A465E0BE32528E19 ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
13:37:21.0823 2988 Microsoft Office Groove Audit Service - ok
13:37:21.0854 2988 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
13:37:21.0859 2988 MMCSS - ok
13:37:21.0890 2988 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
13:37:21.0893 2988 Modem - ok
13:37:21.0914 2988 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
13:37:21.0916 2988 monitor - ok
13:37:21.0977 2988 [ 9B2923C59D49672D1205C391A1296525 ] MotoConnect Service C:\Program Files (x86)\Motorola\MotoConnectService\MotoConnectService.exe
13:37:21.0981 2988 MotoConnect Service - ok
13:37:22.0002 2988 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
13:37:22.0004 2988 mouclass - ok
13:37:22.0029 2988 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
13:37:22.0030 2988 mouhid - ok
13:37:22.0057 2988 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
13:37:22.0062 2988 mountmgr - ok
13:37:22.0139 2988 [ 528A5C2570F468155A1B3CF0A2FF5EBD ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
13:37:22.0141 2988 MozillaMaintenance - ok
13:37:22.0162 2988 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
13:37:22.0167 2988 mpio - ok
13:37:22.0192 2988 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
13:37:22.0193 2988 mpsdrv - ok
13:37:22.0239 2988 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
13:37:22.0249 2988 MpsSvc - ok
13:37:22.0281 2988 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
13:37:22.0285 2988 MRxDAV - ok
13:37:22.0313 2988 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
13:37:22.0315 2988 mrxsmb - ok
13:37:22.0348 2988 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:37:22.0351 2988 mrxsmb10 - ok
13:37:22.0363 2988 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:37:22.0365 2988 mrxsmb20 - ok
13:37:22.0381 2988 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
13:37:22.0383 2988 msahci - ok
13:37:22.0413 2988 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
13:37:22.0418 2988 msdsm - ok
13:37:22.0441 2988 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
13:37:22.0449 2988 MSDTC - ok
13:37:22.0479 2988 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
13:37:22.0481 2988 Msfs - ok
13:37:22.0495 2988 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
13:37:22.0498 2988 mshidkmdf - ok
13:37:22.0507 2988 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
13:37:22.0510 2988 msisadrv - ok
13:37:22.0535 2988 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
13:37:22.0541 2988 MSiSCSI - ok
13:37:22.0549 2988 msiserver - ok
13:37:22.0573 2988 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
13:37:22.0577 2988 MSKSSRV - ok
13:37:22.0611 2988 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
13:37:22.0614 2988 MSPCLOCK - ok
13:37:22.0623 2988 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
13:37:22.0625 2988 MSPQM - ok
13:37:22.0660 2988 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
13:37:22.0668 2988 MsRPC - ok
13:37:22.0695 2988 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
13:37:22.0696 2988 mssmbios - ok
13:37:22.0713 2988 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
13:37:22.0716 2988 MSTEE - ok
13:37:22.0732 2988 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
13:37:22.0735 2988 MTConfig - ok
13:37:22.0761 2988 [ 032D35C996F21D19A205A7C8F0B76F3C ] MTsensor C:\Windows\system32\DRIVERS\ATK64AMD.sys
13:37:22.0762 2988 MTsensor - ok
13:37:22.0786 2988 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
13:37:22.0790 2988 Mup - ok
13:37:22.0835 2988 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
13:37:22.0858 2988 napagent - ok
13:37:22.0877 2988 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
13:37:22.0881 2988 NativeWifiP - ok
13:37:22.0921 2988 [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS C:\Windows\system32\drivers\ndis.sys
13:37:22.0944 2988 NDIS - ok
13:37:22.0970 2988 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
13:37:22.0974 2988 NdisCap - ok
13:37:22.0988 2988 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
13:37:22.0990 2988 NdisTapi - ok
13:37:23.0016 2988 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
13:37:23.0018 2988 Ndisuio - ok
13:37:23.0044 2988 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
13:37:23.0046 2988 NdisWan - ok
13:37:23.0070 2988 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
13:37:23.0072 2988 NDProxy - ok
13:37:23.0090 2988 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
13:37:23.0091 2988 NetBIOS - ok
13:37:23.0131 2988 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
13:37:23.0133 2988 NetBT - ok
13:37:23.0149 2988 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
13:37:23.0154 2988 Netlogon - ok
13:37:23.0190 2988 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
13:37:23.0197 2988 Netman - ok
13:37:23.0222 2988 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
13:37:23.0229 2988 netprofm - ok
13:37:23.0266 2988 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
13:37:23.0271 2988 NetTcpPortSharing - ok
13:37:23.0309 2988 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
13:37:23.0312 2988 nfrd960 - ok
13:37:23.0366 2988 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\Windows\System32\nlasvc.dll
13:37:23.0373 2988 NlaSvc - ok
13:37:23.0449 2988 [ 4903177FC90E77ABEB19021451E9475E ] nmwcd C:\Windows\system32\drivers\ccdcmbx64.sys
13:37:23.0451 2988 nmwcd - ok
13:37:23.0527 2988 [ E6844A4C97E5409BBE24BB4ED000320D ] nmwcdc C:\Windows\system32\drivers\ccdcmbox64.sys
13:37:23.0529 2988 nmwcdc - ok
13:37:23.0552 2988 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
13:37:23.0554 2988 Npfs - ok
13:37:23.0586 2988 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
13:37:23.0591 2988 nsi - ok
13:37:23.0608 2988 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
13:37:23.0609 2988 nsiproxy - ok
13:37:23.0670 2988 [ A2F74975097F52A00745F9637451FDD8 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
13:37:23.0716 2988 Ntfs - ok
13:37:23.0741 2988 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
13:37:23.0742 2988 Null - ok
13:37:23.0775 2988 [ AD37248BD442D41C9A896E53EB8A85EE ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
13:37:23.0776 2988 NVHDA - ok
13:37:24.0047 2988 [ BC2D2480F58C3BC7F03C1E36A8AD4BF9 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
13:37:24.0127 2988 nvlddmkm - ok
13:37:24.0154 2988 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
13:37:24.0159 2988 nvraid - ok
13:37:24.0186 2988 [ A1381B3D52850BC4F0CC8B4697BD891C ] nvsmu C:\Windows\system32\DRIVERS\nvsmu.sys
13:37:24.0188 2988 nvsmu - ok
13:37:24.0216 2988 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
13:37:24.0222 2988 nvstor - ok
13:37:24.0248 2988 [ EBFE363AAB0D6E4086ADBF04C41EBDF8 ] nvstor64 C:\Windows\system32\DRIVERS\nvstor64.sys
13:37:24.0251 2988 nvstor64 - ok
13:37:24.0304 2988 [ D900EEE33EDF655872CBA55ADAE0201A ] nvsvc C:\Windows\system32\nvvsvc.exe
13:37:24.0311 2988 nvsvc - ok
13:37:24.0337 2988 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
13:37:24.0341 2988 nv_agp - ok
13:37:24.0412 2988 [ 1F0E05DFF4F5A833168E49BE1256F002 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
13:37:24.0443 2988 odserv - ok
13:37:24.0486 2988 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
13:37:24.0491 2988 ohci1394 - ok
13:37:24.0534 2988 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:37:24.0538 2988 ose - ok
13:37:24.0586 2988 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
13:37:24.0593 2988 p2pimsvc - ok
13:37:24.0638 2988 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
13:37:24.0646 2988 p2psvc - ok
13:37:24.0719 2988 [ 1011C779C9FCD01AFA96490C86A50421 ] PanService C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
13:37:24.0724 2988 PanService - ok
13:37:24.0762 2988 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
13:37:24.0766 2988 Parport - ok
13:37:24.0790 2988 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
13:37:24.0793 2988 partmgr - ok
13:37:24.0850 2988 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
13:37:24.0857 2988 PcaSvc - ok
13:37:24.0883 2988 [ 3FDE033DFB0D07F8B7D5C9A3044AA121 ] pccsmcfd C:\Windows\system32\DRIVERS\pccsmcfdx64.sys
13:37:24.0886 2988 pccsmcfd - ok
13:37:24.0914 2988 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
13:37:24.0936 2988 pci - ok
13:37:24.0956 2988 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
13:37:24.0958 2988 pciide - ok
13:37:24.0988 2988 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
13:37:24.0993 2988 pcmcia - ok
13:37:25.0042 2988 [ AF7CE12C4F3DC8CB2B07685C916BBCFE ] pcouffin C:\Windows\system32\Drivers\pcouffin.sys
13:37:25.0044 2988 pcouffin - ok
13:37:25.0131 2988 [ 2FE52F3547835C18BEA0962F373D986C ] PCSUService C:\Program Files (x86)\Zrychleni Pocitace\PCSUService.exe
13:37:25.0133 2988 PCSUService - ok
13:37:25.0167 2988 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
13:37:25.0171 2988 pcw - ok
13:37:25.0200 2988 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
13:37:25.0206 2988 PEAUTH - ok
13:37:25.0274 2988 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
13:37:25.0283 2988 PerfHost - ok
13:37:25.0381 2988 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
13:37:25.0427 2988 pla - ok
13:37:25.0484 2988 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
13:37:25.0494 2988 PlugPlay - ok
13:37:25.0517 2988 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
13:37:25.0525 2988 PNRPAutoReg - ok
13:37:25.0554 2988 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
13:37:25.0562 2988 PNRPsvc - ok
13:37:25.0591 2988 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
13:37:25.0600 2988 PolicyAgent - ok
13:37:25.0647 2988 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
13:37:25.0655 2988 Power - ok
13:37:25.0678 2988 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
13:37:25.0680 2988 PptpMiniport - ok
13:37:25.0716 2988 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
13:37:25.0720 2988 Processor - ok
13:37:25.0748 2988 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
13:37:25.0755 2988 ProfSvc - ok
13:37:25.0769 2988 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
13:37:25.0773 2988 ProtectedStorage - ok
13:37:25.0806 2988 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
13:37:25.0808 2988 Psched - ok
13:37:25.0858 2988 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
13:37:25.0892 2988 ql2300 - ok
13:37:25.0928 2988 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
13:37:25.0932 2988 ql40xx - ok
13:37:25.0969 2988 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
13:37:25.0980 2988 QWAVE - ok
13:37:25.0999 2988 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
13:37:26.0002 2988 QWAVEdrv - ok
13:37:26.0039 2988 [ A55E7D0D873B2C97585B3B5926AC6ADE ] RapiMgr C:\Windows\WindowsMobile\rapimgr.dll
13:37:26.0168 2988 RapiMgr - ok
13:37:26.0198 2988 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
13:37:26.0201 2988 RasAcd - ok
13:37:26.0233 2988 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
13:37:26.0235 2988 RasAgileVpn - ok
13:37:26.0273 2988 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
13:37:26.0282 2988 RasAuto - ok
13:37:26.0306 2988 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
13:37:26.0308 2988 Rasl2tp - ok
13:37:26.0364 2988 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
13:37:26.0374 2988 RasMan - ok
13:37:26.0399 2988 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
13:37:26.0401 2988 RasPppoe - ok
13:37:26.0412 2988 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
13:37:26.0414 2988 RasSstp - ok
13:37:26.0444 2988 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
13:37:26.0447 2988 rdbss - ok
13:37:26.0464 2988 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
13:37:26.0468 2988 rdpbus - ok
13:37:26.0484 2988 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
13:37:26.0486 2988 RDPCDD - ok
13:37:26.0502 2988 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
13:37:26.0504 2988 RDPENCDD - ok
13:37:26.0521 2988 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
13:37:26.0523 2988 RDPREFMP - ok
13:37:26.0550 2988 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
13:37:26.0555 2988 RDPWD - ok
13:37:26.0591 2988 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
13:37:26.0596 2988 rdyboost - ok
13:37:26.0659 2988 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
13:37:26.0665 2988 RemoteAccess - ok
13:37:26.0702 2988 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
13:37:26.0712 2988 RemoteRegistry - ok
13:37:26.0803 2988 [ BD517C7FB119997EFFBE39D5E4B37B05 ] RichVideo C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
13:37:26.0808 2988 RichVideo - ok
13:37:26.0871 2988 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
13:37:26.0877 2988 RpcEptMapper - ok
13:37:26.0903 2988 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
13:37:26.0908 2988 RpcLocator - ok
13:37:26.0945 2988 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
13:37:26.0954 2988 RpcSs - ok
13:37:26.0976 2988 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
13:37:26.0978 2988 rspndr - ok
13:37:27.0025 2988 [ EE082E06A82FF630351D1E0EBBD3D8D0 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
13:37:27.0030 2988 RTL8167 - ok
13:37:27.0045 2988 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
13:37:27.0049 2988 SamSs - ok
13:37:27.0081 2988 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
13:37:27.0085 2988 sbp2port - ok
13:37:27.0120 2988 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
13:37:27.0130 2988 SCardSvr - ok
13:37:27.0162 2988 [ 07237C66E05DA6778E9F3CB67FA00736 ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys
13:37:27.0165 2988 SCDEmu - ok
13:37:27.0200 2988 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
13:37:27.0204 2988 scfilter - ok
13:37:27.0245 2988 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
13:37:27.0259 2988 Schedule - ok
13:37:27.0302 2988 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
13:37:27.0304 2988 SCPolicySvc - ok
13:37:27.0324 2988 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
13:37:27.0333 2988 SDRSVC - ok
13:37:27.0368 2988 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
13:37:27.0370 2988 secdrv - ok
13:37:27.0389 2988 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
13:37:27.0397 2988 seclogon - ok
13:37:27.0435 2988 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
13:37:27.0442 2988 SENS - ok
13:37:27.0469 2988 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
13:37:27.0477 2988 SensrSvc - ok
13:37:27.0506 2988 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
13:37:27.0509 2988 Serenum - ok
13:37:27.0528 2988 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
13:37:27.0531 2988 Serial - ok
13:37:27.0557 2988 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
13:37:27.0561 2988 sermouse - ok
13:37:27.0646 2988 [ 289E853881E688286AD24299FCC485D8 ] ServiceLayer C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
13:37:27.0653 2988 ServiceLayer - ok
13:37:27.0716 2988 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
13:37:27.0725 2988 SessionEnv - ok
13:37:27.0756 2988 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
13:37:27.0759 2988 sffdisk - ok
13:37:27.0781 2988 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
13:37:27.0785 2988 sffp_mmc - ok
13:37:27.0811 2988 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
13:37:27.0814 2988 sffp_sd - ok
13:37:27.0841 2988 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
13:37:27.0844 2988 sfloppy - ok
13:37:27.0915 2988 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
13:37:27.0927 2988 SharedAccess - ok
13:37:27.0959 2988 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:37:27.0969 2988 ShellHWDetection - ok
13:37:27.0987 2988 [ 1BC348CF6BAA90EC8E533EF6E6A69933 ] SiSGbeLH C:\Windows\system32\DRIVERS\SiSG664.sys
13:37:27.0990 2988 SiSGbeLH - ok
13:37:28.0012 2988 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
13:37:28.0015 2988 SiSRaid2 - ok
13:37:28.0035 2988 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
13:37:28.0039 2988 SiSRaid4 - ok
13:37:28.0089 2988 [ 7C15061CD0372487903B07B9BB03AFAD ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
13:37:28.0091 2988 SkypeUpdate - ok
13:37:28.0108 2988 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
13:37:28.0111 2988 Smb - ok
13:37:28.0148 2988 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
13:37:28.0155 2988 SNMPTRAP - ok
13:37:28.0246 2988 [ F06A6DE8438F7446BFF9E61F31356521 ] SNP2UVC C:\Windows\system32\DRIVERS\snp2uvc.sys
13:37:28.0260 2988 SNP2UVC - ok
13:37:28.0296 2988 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
13:37:28.0299 2988 spldr - ok
13:37:28.0342 2988 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
13:37:28.0365 2988 Spooler - ok
13:37:28.0459 2988 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
13:37:28.0561 2988 sppsvc - ok
13:37:28.0613 2988 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
13:37:28.0622 2988 sppuinotify - ok
13:37:28.0662 2988 [ 88E5162E58C8919CC873F5D8946197CF ] sptd C:\Windows\system32\Drivers\sptd.sys
13:37:28.0663 2988 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: 88E5162E58C8919CC873F5D8946197CF
13:37:28.0670 2988 sptd ( LockedFile.Multi.Generic ) - warning
13:37:28.0671 2988 sptd - detected LockedFile.Multi.Generic (1)
13:37:28.0702 2988 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
13:37:28.0708 2988 srv - ok
13:37:28.0739 2988 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
13:37:28.0743 2988 srv2 - ok
13:37:28.0767 2988 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
13:37:28.0769 2988 srvnet - ok
13:37:28.0867 2988 [ 4905E29FE0BE2A4441E4D3AA9D4461C7 ] SrvUpdater C:\Program Files (x86)\SoftwareUpdater\UpdaterService.exe
13:37:28.0868 2988 SrvUpdater - ok
13:37:28.0917 2988 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
13:37:28.0927 2988 SSDPSRV - ok
13:37:28.0952 2988 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
13:37:28.0960 2988 SstpSvc - ok
13:37:29.0017 2988 StarWindServiceAE - ok
13:37:29.0055 2988 [ E55F8D27EB014B31073F2F60270B6B3E ] Stereo Service C:\Windows\SysWOW64\nvSCPAPISvr.exe
13:37:29.0063 2988 Stereo Service - ok
13:37:29.0098 2988 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
13:37:29.0101 2988 stexstor - ok
13:37:29.0166 2988 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
13:37:29.0177 2988 stisvc - ok
13:37:29.0213 2988 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
13:37:29.0214 2988 swenum - ok
13:37:29.0258 2988 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
13:37:29.0281 2988 swprv - ok
13:37:29.0346 2988 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
13:37:29.0413 2988 SysMain - ok
13:37:29.0443 2988 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
13:37:29.0453 2988 TabletInputService - ok
13:37:29.0485 2988 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
13:37:29.0496 2988 TapiSrv - ok
13:37:29.0530 2988 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
13:37:29.0539 2988 TBS - ok
13:37:29.0609 2988 [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
13:37:29.0653 2988 Tcpip - ok
13:37:29.0719 2988 [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
13:37:29.0734 2988 TCPIP6 - ok
13:37:29.0779 2988 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
13:37:29.0781 2988 tcpipreg - ok
13:37:29.0824 2988 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
13:37:29.0833 2988 TDPIPE - ok
13:37:29.0873 2988 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
13:37:29.0876 2988 TDTCP - ok
13:37:29.0909 2988 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
13:37:29.0911 2988 tdx - ok
13:37:30.0076 2988 [ 402794A75A899E296AB3EDEC4ECCB9A8 ] TeamViewer8 C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
13:37:30.0178 2988 TeamViewer8 - ok
13:37:30.0235 2988 [ F5520DBB47C60EE83024B38720ABDA24 ] teamviewervpn C:\Windows\system32\DRIVERS\teamviewervpn.sys
13:37:30.0237 2988 teamviewervpn - ok
13:37:30.0265 2988 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
13:37:30.0267 2988 TermDD - ok
13:37:30.0310 2988 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
13:37:30.0333 2988 TermService - ok
13:37:30.0361 2988 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
13:37:30.0368 2988 Themes - ok
13:37:30.0393 2988 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
13:37:30.0398 2988 THREADORDER - ok
13:37:30.0443 2988 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
13:37:30.0451 2988 TrkWks - ok
13:37:30.0511 2988 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:37:30.0530 2988 TrustedInstaller - ok
13:37:30.0575 2988 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
13:37:30.0578 2988 tssecsrv - ok
13:37:30.0609 2988 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
13:37:30.0613 2988 TsUsbFlt - ok
13:37:30.0710 2988 [ DC0F2A0C445EF104BC240954D3A460C2 ] TuneUp.UtilitiesSvc C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe
13:37:30.0755 2988 TuneUp.UtilitiesSvc - ok
13:37:30.0780 2988 [ DCC94C51D27C7EC0DADECA8F64C94FCF ] TuneUpUtilitiesDrv C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys
13:37:30.0782 2988 TuneUpUtilitiesDrv - ok
13:37:30.0814 2988 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
13:37:30.0818 2988 tunnel - ok
13:37:30.0841 2988 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
13:37:30.0845 2988 uagp35 - ok
13:37:30.0874 2988 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
13:37:30.0881 2988 udfs - ok
13:37:30.0925 2988 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
13:37:30.0934 2988 UI0Detect - ok
13:37:30.0960 2988 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
13:37:30.0964 2988 uliagpkx - ok
13:37:30.0989 2988 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
13:37:30.0991 2988 umbus - ok
13:37:31.0012 2988 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
13:37:31.0017 2988 UmPass - ok
13:37:31.0060 2988 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
13:37:31.0069 2988 upnphost - ok
13:37:31.0139 2988 [ 907F50B8695DAA65A9445D27AD306E65 ] upperdev C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys
13:37:31.0142 2988 upperdev - ok
13:37:31.0182 2988 [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
13:37:31.0186 2988 usbaudio - ok
13:37:31.0218 2988 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
13:37:31.0220 2988 usbccgp - ok
13:37:31.0256 2988 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
13:37:31.0261 2988 usbcir - ok
13:37:31.0294 2988 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
13:37:31.0296 2988 usbehci - ok
13:37:31.0324 2988 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
13:37:31.0331 2988 usbhub - ok
13:37:31.0352 2988 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
13:37:31.0353 2988 usbohci - ok
13:37:31.0388 2988 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
13:37:31.0391 2988 usbprint - ok
13:37:31.0425 2988 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
13:37:31.0429 2988 usbscan - ok
13:37:31.0462 2988 [ 4ACEE387FA8FD39F83564FCD2FC234F2 ] usbser C:\Windows\system32\drivers\usbser.sys
13:37:31.0465 2988 usbser - ok
13:37:31.0546 2988 [ 3F7498527B48657091C355F683BEB0DD ] UsbserFilt C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys
13:37:31.0549 2988 UsbserFilt - ok
13:37:31.0574 2988 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:37:31.0577 2988 USBSTOR - ok
13:37:31.0610 2988 [ 81FB2216D3A60D1284455D511797DB3D ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
13:37:31.0614 2988 usbuhci - ok
13:37:31.0644 2988 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
13:37:31.0649 2988 usbvideo - ok
13:37:31.0679 2988 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
13:37:31.0687 2988 UxSms - ok
13:37:31.0722 2988 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
13:37:31.0726 2988 VaultSvc - ok
13:37:31.0759 2988 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
13:37:31.0763 2988 vdrvroot - ok
13:37:31.0808 2988 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
13:37:31.0831 2988 vds - ok
13:37:31.0874 2988 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
13:37:31.0878 2988 vga - ok
13:37:31.0897 2988 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
13:37:31.0899 2988 VgaSave - ok
13:37:31.0935 2988 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
13:37:31.0941 2988 vhdmp - ok
13:37:31.0962 2988 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
13:37:31.0966 2988 viaide - ok
13:37:32.0014 2988 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
13:37:32.0017 2988 volmgr - ok
13:37:32.0052 2988 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
13:37:32.0074 2988 volmgrx - ok
13:37:32.0093 2988 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
13:37:32.0100 2988 volsnap - ok
13:37:32.0141 2988 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
13:37:32.0147 2988 vsmraid - ok
13:37:32.0209 2988 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
13:37:32.0256 2988 VSS - ok
13:37:32.0430 2988 [ 8754BA5FCC85325C229ADCB72087706E ] vToolbarUpdater15.4.0 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.4.0\ToolbarUpdater.exe
13:37:32.0464 2988 vToolbarUpdater15.4.0 - ok
13:37:32.0493 2988 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
13:37:32.0494 2988 vwifibus - ok
13:37:32.0519 2988 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
13:37:32.0521 2988 vwififlt - ok
13:37:32.0573 2988 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
13:37:32.0595 2988 W32Time - ok
13:37:32.0642 2988 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
13:37:32.0647 2988 WacomPen - ok
13:37:32.0668 2988 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
13:37:32.0670 2988 WANARP - ok
13:37:32.0681 2988 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
13:37:32.0683 2988 Wanarpv6 - ok
13:37:32.0756 2988 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
13:37:32.0789 2988 WatAdminSvc - ok
13:37:32.0859 2988 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
13:37:32.0905 2988 wbengine - ok
13:37:32.0947 2988 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
13:37:32.0961 2988 WbioSrvc - ok
13:37:33.0010 2988 [ 8BDA6DB43AA54E8BB5E0794541DDC209 ] WcesComm C:\Windows\WindowsMobile\wcescomm.dll
13:37:33.0095 2988 WcesComm - ok
13:37:33.0126 2988 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
13:37:33.0149 2988 wcncsvc - ok
13:37:33.0185 2988 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:37:33.0195 2988 WcsPlugInService - ok
13:37:33.0226 2988 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
13:37:33.0230 2988 Wd - ok
13:37:33.0266 2988 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
13:37:33.0288 2988 Wdf01000 - ok
13:37:33.0326 2988 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
13:37:33.0334 2988 WdiServiceHost - ok
13:37:33.0348 2988 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
13:37:33.0356 2988 WdiSystemHost - ok
13:37:33.0388 2988 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
13:37:33.0411 2988 WebClient - ok
13:37:33.0444 2988 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
13:37:33.0457 2988 Wecsvc - ok
13:37:33.0486 2988 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
13:37:33.0494 2988 wercplsupport - ok
13:37:33.0519 2988 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
13:37:33.0527 2988 WerSvc - ok
13:37:33.0551 2988 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
13:37:33.0553 2988 WfpLwf - ok
13:37:33.0592 2988 [ 52DED146E4797E6CCF94799E8E22BB2A ] WimFltr C:\Windows\system32\DRIVERS\wimfltr.sys
13:37:33.0597 2988 WimFltr - ok
13:37:33.0633 2988 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
13:37:33.0637 2988 WIMMount - ok
13:37:33.0669 2988 WinDefend - ok
13:37:33.0688 2988 WinHttpAutoProxySvc - ok
13:37:33.0747 2988 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
13:37:33.0775 2988 Winmgmt - ok
13:37:33.0849 2988 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
13:37:33.0917 2988 WinRM - ok
13:37:34.0001 2988 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
13:37:34.0004 2988 WinUsb - ok
13:37:34.0058 2988 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
13:37:34.0072 2988 Wlansvc - ok
13:37:34.0214 2988 [ 98F138897EF4246381D197CB81846D62 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
13:37:34.0272 2988 wlidsvc - ok
13:37:34.0305 2988 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
13:37:34.0306 2988 WmiAcpi - ok
13:37:34.0400 2988 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
13:37:34.0405 2988 wmiApSrv - ok
13:37:34.0433 2988 WMPNetworkSvc - ok
13:37:34.0471 2988 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
13:37:34.0482 2988 WPCSvc - ok
13:37:34.0510 2988 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
13:37:34.0518 2988 WPDBusEnum - ok
13:37:34.0558 2988 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
13:37:34.0562 2988 ws2ifsl - ok
13:37:34.0605 2988 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
13:37:34.0613 2988 wscsvc - ok
13:37:34.0625 2988 WSearch - ok
13:37:34.0715 2988 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
13:37:34.0739 2988 wuauserv - ok
13:37:34.0786 2988 [ D3381DC54C34D79B22CEE0D65BA91B7C ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
13:37:34.0788 2988 WudfPf - ok
13:37:34.0817 2988 [ CF8D590BE3373029D57AF80914190682 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
13:37:34.0822 2988 WUDFRd - ok
13:37:34.0871 2988 [ 7A95C95B6C4CF292D689106BCAE49543 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
13:37:34.0879 2988 wudfsvc - ok
13:37:34.0931 2988 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
13:37:34.0945 2988 WwanSvc - ok
13:37:35.0069 2988 [ 24FB8DB6D1D55E2C5D0A53DFE48E6AF8 ] Yontoo Desktop Updater C:\Program Files (x86)\Yontoo\Y2Desktop.Updater.exe
13:37:35.0070 2988 Yontoo Desktop Updater - ok
13:37:35.0171 2988 [ 74983ADDCA2D9618512C088D856D6615 ] {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC} C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\000.fcl
13:37:35.0190 2988 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC} - ok
13:37:35.0235 2988 ================ Scan global ===============================
13:37:35.0303 2988 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
13:37:35.0342 2988 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\Windows\system32\winsrv.dll
13:37:35.0374 2988 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\Windows\system32\winsrv.dll
13:37:35.0412 2988 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
13:37:35.0433 2988 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
13:37:35.0440 2988 [Global] - ok
13:37:35.0441 2988 ================ Scan MBR ==================================
13:37:35.0455 2988 [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
13:37:35.0659 2988 \Device\Harddisk0\DR0 - ok
13:37:35.0664 2988 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
13:37:35.0740 2988 \Device\Harddisk1\DR1 - ok
13:37:35.0741 2988 ================ Scan VBR ==================================
13:37:35.0745 2988 [ D219AB87B0F9C00CBC4CA7169E9ECFA1 ] \Device\Harddisk0\DR0\Partition1
13:37:35.0748 2988 \Device\Harddisk0\DR0\Partition1 - ok
13:37:35.0766 2988 [ 550ECBA092F16E46D234C458C94D4DD5 ] \Device\Harddisk0\DR0\Partition2
13:37:35.0769 2988 \Device\Harddisk0\DR0\Partition2 - ok
13:37:35.0774 2988 [ C87A3E1DB84A2EA09ECA436937ECA807 ] \Device\Harddisk1\DR1\Partition1
13:37:35.0776 2988 \Device\Harddisk1\DR1\Partition1 - ok
13:37:35.0780 2988 ============================================================
13:37:35.0780 2988 Scan finished
13:37:35.0780 2988 ============================================================
13:37:35.0800 4616 Detected object count: 1
13:37:35.0800 4616 Actual detected object count: 1
13:38:09.0642 4616 C:\Windows\system32\Drivers\sptd.sys - copied to quarantine
13:38:09.0668 4616 sptd ( LockedFile.Multi.Generic ) - User select action: Quarantine
13:38:14.0641 5024 ============================================================
13:38:14.0642 5024 Scan started
13:38:14.0642 5024 Mode: Manual;
13:38:14.0642 5024 ============================================================
13:38:15.0067 5024 ================ Scan system memory ========================
13:38:15.0067 5024 System memory - ok
13:38:15.0067 5024 ================ Scan services =============================
13:38:15.0222 5024 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
13:38:15.0224 5024 1394ohci - ok
13:38:15.0259 5024 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
13:38:15.0262 5024 ACPI - ok
13:38:15.0279 5024 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
13:38:15.0280 5024 AcpiPmi - ok
13:38:15.0342 5024 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
13:38:15.0343 5024 AdobeARMservice - ok
13:38:15.0381 5024 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
13:38:15.0385 5024 adp94xx - ok
13:38:15.0407 5024 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
13:38:15.0410 5024 adpahci - ok
13:38:15.0432 5024 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
13:38:15.0434 5024 adpu320 - ok
13:38:15.0487 5024 [ C0BF554D2277F7A4C735D475ADE2E3B2 ] ADSMService C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe
13:38:15.0489 5024 ADSMService - ok
13:38:15.0525 5024 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
13:38:15.0527 5024 AeLookupSvc - ok
13:38:15.0558 5024 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
13:38:15.0562 5024 AFD - ok
13:38:15.0590 5024 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
13:38:15.0595 5024 agp440 - ok
13:38:15.0632 5024 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe

alpa104
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 01 srp 2013 10:17

Re: rootkit v MBR - prosím o pomoc

#6 Příspěvek od alpa104 »

13:38:15.0633 5024 ALG - ok
13:38:15.0647 5024 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
13:38:15.0648 5024 aliide - ok
13:38:15.0671 5024 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
13:38:15.0672 5024 amdide - ok
13:38:15.0704 5024 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
13:38:15.0705 5024 AmdK8 - ok
13:38:15.0722 5024 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
13:38:15.0723 5024 AmdPPM - ok
13:38:15.0756 5024 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
13:38:15.0757 5024 amdsata - ok
13:38:15.0786 5024 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
13:38:15.0788 5024 amdsbs - ok
13:38:15.0808 5024 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
13:38:15.0809 5024 amdxata - ok
13:38:15.0832 5024 [ 9C7F164B49CADC658D1B3C575782F346 ] AmUStor C:\Windows\system32\drivers\AmUStor.SYS
13:38:15.0833 5024 AmUStor - ok
13:38:15.0882 5024 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
13:38:15.0883 5024 AppID - ok
13:38:15.0915 5024 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
13:38:15.0917 5024 AppIDSvc - ok
13:38:15.0943 5024 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll
13:38:15.0944 5024 Appinfo - ok
13:38:15.0979 5024 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
13:38:15.0980 5024 arc - ok
13:38:16.0001 5024 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
13:38:16.0003 5024 arcsas - ok
13:38:16.0040 5024 [ 88FBC8BEBFD38566235EAA5E4DBC4E05 ] AsDsm C:\Windows\system32\drivers\AsDsm.sys
13:38:16.0041 5024 AsDsm - ok
13:38:16.0091 5024 [ 18E5C2F937F9DEB8C282DF66A3761925 ] ASLDRService C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
13:38:16.0093 5024 ASLDRService - ok
13:38:16.0121 5024 [ 4C016FD76ED5C05E84CA8CAB77993961 ] ASMMAP64 C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys
13:38:16.0122 5024 ASMMAP64 - ok
13:38:16.0150 5024 [ 0BAEFD3F648C6E7AB52990DD9565E4E2 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
13:38:16.0151 5024 aswFsBlk - ok
13:38:16.0160 5024 [ FA562F34ED6633C66170B09182B4C049 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
13:38:16.0161 5024 aswMonFlt - ok
13:38:16.0195 5024 [ 64E2BAB4096C13D2342BC4661C967E07 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
13:38:16.0196 5024 aswRdr - ok
13:38:16.0219 5024 [ 5573AA70993A2BB81525B1C704B88763 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
13:38:16.0220 5024 aswRvrt - ok
13:38:16.0250 5024 [ 8C0800CDB501CFC1164B286A0478DC10 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
13:38:16.0258 5024 aswSnx - ok
13:38:16.0289 5024 [ 3815DB16CDA62190F5C0A65118F3D714 ] aswSP C:\Windows\system32\drivers\aswSP.sys
13:38:16.0291 5024 aswSP - ok
13:38:16.0309 5024 [ 29DD8E458A84171202AA4979364C30C0 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
13:38:16.0310 5024 aswTdi - ok
13:38:16.0320 5024 [ 22F521108881DC59837F6FC614E0568F ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
13:38:16.0322 5024 aswVmm - ok
13:38:16.0345 5024 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
13:38:16.0346 5024 AsyncMac - ok
13:38:16.0362 5024 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
13:38:16.0363 5024 atapi - ok
13:38:16.0451 5024 [ A5E770426D18F8EF332A593F3289DA91 ] athr C:\Windows\system32\DRIVERS\athrx.sys
13:38:16.0470 5024 athr - ok
13:38:16.0503 5024 [ 63F1212FFE13E62CA1E8D8EE19ABD9A7 ] ATKGFNEXSrv C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
13:38:16.0504 5024 ATKGFNEXSrv - ok
13:38:16.0545 5024 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
13:38:16.0551 5024 AudioEndpointBuilder - ok
13:38:16.0579 5024 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
13:38:16.0584 5024 AudioSrv - ok
13:38:16.0657 5024 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
13:38:16.0658 5024 avast! Antivirus - ok
13:38:16.0678 5024 [ 18AAAC7ED383C465E319B5DD07D0A0B6 ] avgtp C:\Windows\system32\drivers\avgtpx64.sys
13:38:16.0679 5024 avgtp - ok
13:38:16.0717 5024 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
13:38:16.0719 5024 AxInstSV - ok
13:38:16.0748 5024 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
13:38:16.0752 5024 b06bdrv - ok
13:38:16.0771 5024 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
13:38:16.0773 5024 b57nd60a - ok
13:38:16.0807 5024 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
13:38:16.0809 5024 BDESVC - ok
13:38:16.0832 5024 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
13:38:16.0833 5024 Beep - ok
13:38:16.0867 5024 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
13:38:16.0873 5024 BFE - ok
13:38:16.0920 5024 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
13:38:16.0931 5024 BITS - ok
13:38:16.0943 5024 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
13:38:16.0944 5024 blbdrive - ok
13:38:16.0978 5024 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
13:38:16.0979 5024 bowser - ok
13:38:17.0012 5024 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
13:38:17.0013 5024 BrFiltLo - ok
13:38:17.0034 5024 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
13:38:17.0035 5024 BrFiltUp - ok
13:38:17.0062 5024 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
13:38:17.0065 5024 Browser - ok
13:38:17.0224 5024 [ 981794879E8FD26CDD6ABCFF3F3F65EF ] BrowserProtect C:\ProgramData\BrowserProtect\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
13:38:17.0246 5024 BrowserProtect - ok
13:38:17.0273 5024 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
13:38:17.0276 5024 Brserid - ok
13:38:17.0299 5024 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
13:38:17.0301 5024 BrSerWdm - ok
13:38:17.0319 5024 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
13:38:17.0320 5024 BrUsbMdm - ok
13:38:17.0332 5024 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
13:38:17.0333 5024 BrUsbSer - ok
13:38:17.0356 5024 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
13:38:17.0357 5024 BTHMODEM - ok
13:38:17.0389 5024 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
13:38:17.0391 5024 bthserv - ok
13:38:17.0408 5024 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
13:38:17.0410 5024 cdfs - ok
13:38:17.0437 5024 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
13:38:17.0439 5024 cdrom - ok
13:38:17.0476 5024 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
13:38:17.0478 5024 CertPropSvc - ok
13:38:17.0506 5024 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
13:38:17.0507 5024 circlass - ok
13:38:17.0535 5024 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
13:38:17.0538 5024 CLFS - ok
13:38:17.0620 5024 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:38:17.0622 5024 clr_optimization_v2.0.50727_32 - ok
13:38:17.0666 5024 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
13:38:17.0668 5024 clr_optimization_v2.0.50727_64 - ok
13:38:17.0709 5024 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:38:17.0711 5024 clr_optimization_v4.0.30319_32 - ok
13:38:17.0753 5024 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
13:38:17.0755 5024 clr_optimization_v4.0.30319_64 - ok
13:38:17.0766 5024 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
13:38:17.0768 5024 CmBatt - ok
13:38:17.0793 5024 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
13:38:17.0794 5024 cmdide - ok
13:38:17.0833 5024 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
13:38:17.0837 5024 CNG - ok
13:38:17.0857 5024 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
13:38:17.0859 5024 Compbatt - ok
13:38:17.0888 5024 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
13:38:17.0889 5024 CompositeBus - ok
13:38:17.0895 5024 COMSysApp - ok
13:38:17.0915 5024 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
13:38:17.0916 5024 crcdisk - ok
13:38:17.0952 5024 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
13:38:17.0955 5024 CryptSvc - ok
13:38:17.0999 5024 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
13:38:18.0009 5024 DcomLaunch - ok
13:38:18.0038 5024 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
13:38:18.0042 5024 defragsvc - ok
13:38:18.0077 5024 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
13:38:18.0079 5024 DfsC - ok
13:38:18.0107 5024 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
13:38:18.0111 5024 Dhcp - ok
13:38:18.0141 5024 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
13:38:18.0142 5024 discache - ok
13:38:18.0159 5024 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
13:38:18.0160 5024 Disk - ok
13:38:18.0191 5024 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
13:38:18.0194 5024 Dnscache - ok
13:38:18.0226 5024 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
13:38:18.0231 5024 dot3svc - ok
13:38:18.0268 5024 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
13:38:18.0271 5024 DPS - ok
13:38:18.0292 5024 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
13:38:18.0293 5024 drmkaud - ok
13:38:18.0335 5024 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
13:38:18.0342 5024 DXGKrnl - ok
13:38:18.0349 5024 EagleX64 - ok
13:38:18.0381 5024 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
13:38:18.0385 5024 EapHost - ok
13:38:18.0473 5024 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
13:38:18.0496 5024 ebdrv - ok
13:38:18.0529 5024 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
13:38:18.0533 5024 EFS - ok
13:38:18.0586 5024 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
13:38:18.0591 5024 ehRecvr - ok
13:38:18.0615 5024 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
13:38:18.0616 5024 ehSched - ok
13:38:18.0660 5024 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
13:38:18.0665 5024 elxstor - ok
13:38:18.0699 5024 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
13:38:18.0700 5024 ErrDev - ok
13:38:18.0732 5024 [ 3C38648375B7F3988691F53A7AAE10A9 ] ETD C:\Windows\system32\DRIVERS\ETD.sys
13:38:18.0733 5024 ETD - ok
13:38:18.0766 5024 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
13:38:18.0770 5024 EventSystem - ok
13:38:18.0800 5024 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
13:38:18.0802 5024 exfat - ok
13:38:18.0827 5024 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
13:38:18.0829 5024 fastfat - ok
13:38:18.0856 5024 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
13:38:18.0864 5024 Fax - ok
13:38:18.0916 5024 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
13:38:18.0917 5024 fdc - ok
13:38:18.0948 5024 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
13:38:18.0951 5024 fdPHost - ok
13:38:18.0968 5024 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
13:38:18.0971 5024 FDResPub - ok
13:38:18.0981 5024 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
13:38:18.0983 5024 FileInfo - ok
13:38:19.0009 5024 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
13:38:19.0011 5024 Filetrace - ok
13:38:19.0059 5024 [ ACEFEEA621DCA62EFB7A7EEA59F5E91B ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
13:38:19.0066 5024 FLEXnet Licensing Service - ok
13:38:19.0082 5024 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
13:38:19.0083 5024 flpydisk - ok
13:38:19.0115 5024 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
13:38:19.0119 5024 FltMgr - ok
13:38:19.0163 5024 [ 5043F0D9A22AABF550508B3165C5B0FD ] FolderSize C:\Program Files (x86)\FolderSize\FolderSizeSvc.exe
13:38:19.0164 5024 FolderSize - ok
13:38:19.0211 5024 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\Windows\system32\FntCache.dll
13:38:19.0221 5024 FontCache - ok
13:38:19.0280 5024 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
13:38:19.0281 5024 FontCache3.0.0.0 - ok
13:38:19.0312 5024 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
13:38:19.0314 5024 FsDepends - ok
13:38:19.0337 5024 [ 5814011B2F6E088E29D689B5FCD49B8F ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
13:38:19.0339 5024 fssfltr - ok
13:38:19.0410 5024 [ F6717211C1EC2CDDAA81B97B0727C2E9 ] fsssvc C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
13:38:19.0414 5024 fsssvc - ok
13:38:19.0447 5024 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
13:38:19.0448 5024 Fs_Rec - ok
13:38:19.0479 5024 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
13:38:19.0482 5024 fvevol - ok
13:38:19.0512 5024 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
13:38:19.0513 5024 gagp30kx - ok
13:38:19.0581 5024 [ 7300D171A5A32456F990AC79608404E5 ] Garmin Core Update Service D:\navigace\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
13:38:19.0583 5024 Garmin Core Update Service - ok
13:38:19.0641 5024 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
13:38:19.0649 5024 gpsvc - ok
13:38:19.0713 5024 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:38:19.0714 5024 gupdate - ok
13:38:19.0722 5024 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:38:19.0724 5024 gupdatem - ok
13:38:19.0754 5024 [ CC839E8D766CC31A7710C9F38CF3E375 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
13:38:19.0755 5024 gusvc - ok
13:38:19.0786 5024 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
13:38:19.0787 5024 hcw85cir - ok
13:38:19.0820 5024 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
13:38:19.0824 5024 HdAudAddService - ok
13:38:19.0845 5024 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
13:38:19.0847 5024 HDAudBus - ok
13:38:19.0867 5024 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
13:38:19.0868 5024 HidBatt - ok
13:38:19.0889 5024 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
13:38:19.0891 5024 HidBth - ok
13:38:19.0907 5024 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
13:38:19.0909 5024 HidIr - ok
13:38:19.0940 5024 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
13:38:19.0943 5024 hidserv - ok
13:38:19.0965 5024 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
13:38:19.0966 5024 HidUsb - ok
13:38:19.0991 5024 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
13:38:19.0996 5024 hkmsvc - ok
13:38:20.0027 5024 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
13:38:20.0033 5024 HomeGroupListener - ok
13:38:20.0058 5024 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
13:38:20.0065 5024 HomeGroupProvider - ok
13:38:20.0094 5024 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
13:38:20.0096 5024 HpSAMD - ok
13:38:20.0133 5024 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
13:38:20.0139 5024 HTTP - ok
13:38:20.0162 5024 [ 84D3088475BD9BC56ED76D6E0F740A63 ] Huawei C:\Windows\system32\DRIVERS\ewdcsc.sys
13:38:20.0163 5024 Huawei - ok
13:38:20.0197 5024 [ 8F9B0FC4EC3A8194BD4CBC5ED3E7ABEB ] hwdatacard C:\Windows\system32\DRIVERS\ewusbmdm.sys
13:38:20.0199 5024 hwdatacard - ok
13:38:20.0227 5024 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
13:38:20.0228 5024 hwpolicy - ok
13:38:20.0249 5024 [ B45B3647BA32749B94FA689175EC8C26 ] hwusbdev C:\Windows\system32\DRIVERS\ewusbdev.sys
13:38:20.0251 5024 hwusbdev - ok
13:38:20.0282 5024 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
13:38:20.0284 5024 i8042prt - ok
13:38:20.0322 5024 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
13:38:20.0325 5024 iaStorV - ok
13:38:20.0380 5024 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
13:38:20.0386 5024 idsvc - ok
13:38:20.0418 5024 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
13:38:20.0419 5024 iirsp - ok
13:38:20.0460 5024 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
13:38:20.0470 5024 IKEEXT - ok
13:38:20.0513 5024 [ AF87012C22372CC982A1E5B597DEB5FA ] IMPI Updater C:\Program Files\IMPI\ExtensionUpdaterService.exe
13:38:20.0515 5024 IMPI Updater - ok
13:38:20.0590 5024 [ 181E4FF75674A7105ECD0A02C35EF43A ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
13:38:20.0607 5024 IntcAzAudAddService - ok
13:38:20.0626 5024 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
13:38:20.0627 5024 intelide - ok
13:38:20.0655 5024 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
13:38:20.0657 5024 intelppm - ok
13:38:20.0695 5024 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
13:38:20.0699 5024 IPBusEnum - ok
13:38:20.0720 5024 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:38:20.0722 5024 IpFilterDriver - ok
13:38:20.0763 5024 [ A34A587FFFD45FA649FBA6D03784D257 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
13:38:20.0770 5024 iphlpsvc - ok
13:38:20.0798 5024 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
13:38:20.0800 5024 IPMIDRV - ok
13:38:20.0835 5024 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
13:38:20.0837 5024 IPNAT - ok
13:38:20.0844 5024 ipswuio - ok
13:38:20.0860 5024 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
13:38:20.0862 5024 IRENUM - ok
13:38:20.0882 5024 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
13:38:20.0883 5024 isapnp - ok
13:38:20.0920 5024 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
13:38:20.0923 5024 iScsiPrt - ok
13:38:20.0940 5024 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
13:38:20.0942 5024 kbdclass - ok
13:38:20.0971 5024 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
13:38:20.0972 5024 kbdhid - ok
13:38:21.0009 5024 [ E63EF8C3271D014F14E2469CE75FECB4 ] kbfiltr C:\Windows\system32\DRIVERS\kbfiltr.sys
13:38:21.0010 5024 kbfiltr - ok
13:38:21.0027 5024 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
13:38:21.0032 5024 KeyIso - ok
13:38:21.0072 5024 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
13:38:21.0073 5024 KSecDD - ok
13:38:21.0088 5024 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
13:38:21.0090 5024 KSecPkg - ok
13:38:21.0112 5024 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
13:38:21.0113 5024 ksthunk - ok
13:38:21.0155 5024 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
13:38:21.0162 5024 KtmRm - ok
13:38:21.0194 5024 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
13:38:21.0202 5024 LanmanServer - ok
13:38:21.0241 5024 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:38:21.0249 5024 LanmanWorkstation - ok
13:38:21.0272 5024 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
13:38:21.0273 5024 lltdio - ok
13:38:21.0304 5024 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
13:38:21.0310 5024 lltdsvc - ok
13:38:21.0338 5024 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
13:38:21.0341 5024 lmhosts - ok
13:38:21.0379 5024 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
13:38:21.0381 5024 LSI_FC - ok
13:38:21.0398 5024 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
13:38:21.0400 5024 LSI_SAS - ok
13:38:21.0414 5024 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
13:38:21.0416 5024 LSI_SAS2 - ok
13:38:21.0435 5024 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
13:38:21.0437 5024 LSI_SCSI - ok
13:38:21.0452 5024 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
13:38:21.0454 5024 luafv - ok
13:38:21.0522 5024 [ F453D1E6D881E8F8717E20CCD4199E85 ] McComponentHostService C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe
13:38:21.0524 5024 McComponentHostService - ok
13:38:21.0547 5024 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
13:38:21.0551 5024 Mcx2Svc - ok
13:38:21.0578 5024 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
13:38:21.0579 5024 megasas - ok
13:38:21.0603 5024 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
13:38:21.0606 5024 MegaSR - ok
13:38:21.0667 5024 [ 7C4C76B39D5525C4A465E0BE32528E19 ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
13:38:21.0669 5024 Microsoft Office Groove Audit Service - ok
13:38:21.0690 5024 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
13:38:21.0695 5024 MMCSS - ok
13:38:21.0726 5024 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
13:38:21.0728 5024 Modem - ok
13:38:21.0740 5024 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
13:38:21.0741 5024 monitor - ok
13:38:21.0803 5024 [ 9B2923C59D49672D1205C391A1296525 ] MotoConnect Service C:\Program Files (x86)\Motorola\MotoConnectService\MotoConnectService.exe
13:38:21.0804 5024 MotoConnect Service - ok
13:38:21.0828 5024 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
13:38:21.0829 5024 mouclass - ok
13:38:21.0854 5024 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
13:38:21.0855 5024 mouhid - ok
13:38:21.0882 5024 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
13:38:21.0884 5024 mountmgr - ok
13:38:21.0932 5024 [ 528A5C2570F468155A1B3CF0A2FF5EBD ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
13:38:21.0933 5024 MozillaMaintenance - ok
13:38:21.0954 5024 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
13:38:21.0956 5024 mpio - ok
13:38:21.0984 5024 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
13:38:21.0986 5024 mpsdrv - ok
13:38:22.0031 5024 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
13:38:22.0041 5024 MpsSvc - ok
13:38:22.0073 5024 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
13:38:22.0075 5024 MRxDAV - ok
13:38:22.0106 5024 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
13:38:22.0108 5024 mrxsmb - ok
13:38:22.0140 5024 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:38:22.0143 5024 mrxsmb10 - ok
13:38:22.0155 5024 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:38:22.0158 5024 mrxsmb20 - ok
13:38:22.0173 5024 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
13:38:22.0174 5024 msahci - ok
13:38:22.0206 5024 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
13:38:22.0207 5024 msdsm - ok
13:38:22.0233 5024 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
13:38:22.0238 5024 MSDTC - ok
13:38:22.0272 5024 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
13:38:22.0273 5024 Msfs - ok
13:38:22.0287 5024 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
13:38:22.0289 5024 mshidkmdf - ok
13:38:22.0304 5024 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
13:38:22.0305 5024 msisadrv - ok
13:38:22.0328 5024 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
13:38:22.0333 5024 MSiSCSI - ok
13:38:22.0341 5024 msiserver - ok
13:38:22.0355 5024 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
13:38:22.0356 5024 MSKSSRV - ok
13:38:22.0382 5024 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
13:38:22.0383 5024 MSPCLOCK - ok
13:38:22.0391 5024 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
13:38:22.0393 5024 MSPQM - ok
13:38:22.0431 5024 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
13:38:22.0435 5024 MsRPC - ok
13:38:22.0465 5024 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
13:38:22.0467 5024 mssmbios - ok
13:38:22.0495 5024 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
13:38:22.0496 5024 MSTEE - ok
13:38:22.0513 5024 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
13:38:22.0515 5024 MTConfig - ok
13:38:22.0542 5024 [ 032D35C996F21D19A205A7C8F0B76F3C ] MTsensor C:\Windows\system32\DRIVERS\ATK64AMD.sys
13:38:22.0544 5024 MTsensor - ok
13:38:22.0567 5024 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
13:38:22.0569 5024 Mup - ok
13:38:22.0606 5024 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
13:38:22.0615 5024 napagent - ok
13:38:22.0637 5024 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
13:38:22.0640 5024 NativeWifiP - ok
13:38:22.0680 5024 [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS C:\Windows\system32\drivers\ndis.sys
13:38:22.0687 5024 NDIS - ok
13:38:22.0707 5024 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
13:38:22.0709 5024 NdisCap - ok
13:38:22.0726 5024 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
13:38:22.0727 5024 NdisTapi - ok
13:38:22.0754 5024 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
13:38:22.0756 5024 Ndisuio - ok
13:38:22.0781 5024 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
13:38:22.0783 5024 NdisWan - ok
13:38:22.0807 5024 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
13:38:22.0809 5024 NDProxy - ok
13:38:22.0838 5024 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
13:38:22.0839 5024 NetBIOS - ok
13:38:22.0868 5024 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
13:38:22.0871 5024 NetBT - ok
13:38:22.0887 5024 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
13:38:22.0891 5024 Netlogon - ok
13:38:22.0928 5024 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
13:38:22.0935 5024 Netman - ok
13:38:22.0959 5024 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
13:38:22.0967 5024 netprofm - ok
13:38:23.0007 5024 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
13:38:23.0009 5024 NetTcpPortSharing - ok
13:38:23.0046 5024 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
13:38:23.0048 5024 nfrd960 - ok
13:38:23.0081 5024 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\Windows\System32\nlasvc.dll
13:38:23.0089 5024 NlaSvc - ok
13:38:23.0120 5024 [ 4903177FC90E77ABEB19021451E9475E ] nmwcd C:\Windows\system32\drivers\ccdcmbx64.sys
13:38:23.0121 5024 nmwcd - ok
13:38:23.0154 5024 [ E6844A4C97E5409BBE24BB4ED000320D ] nmwcdc C:\Windows\system32\drivers\ccdcmbox64.sys
13:38:23.0155 5024 nmwcdc - ok
13:38:23.0180 5024 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
13:38:23.0181 5024 Npfs - ok
13:38:23.0213 5024 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
13:38:23.0218 5024 nsi - ok
13:38:23.0235 5024 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
13:38:23.0237 5024 nsiproxy - ok
13:38:23.0297 5024 [ A2F74975097F52A00745F9637451FDD8 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
13:38:23.0309 5024 Ntfs - ok
13:38:23.0335 5024 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
13:38:23.0337 5024 Null - ok
13:38:23.0369 5024 [ AD37248BD442D41C9A896E53EB8A85EE ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
13:38:23.0371 5024 NVHDA - ok
13:38:23.0663 5024 [ BC2D2480F58C3BC7F03C1E36A8AD4BF9 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
13:38:23.0916 5024 nvlddmkm - ok
13:38:23.0947 5024 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
13:38:23.0951 5024 nvraid - ok
13:38:23.0979 5024 [ A1381B3D52850BC4F0CC8B4697BD891C ] nvsmu C:\Windows\system32\DRIVERS\nvsmu.sys
13:38:23.0980 5024 nvsmu - ok
13:38:24.0008 5024 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
13:38:24.0014 5024 nvstor - ok
13:38:24.0041 5024 [ EBFE363AAB0D6E4086ADBF04C41EBDF8 ] nvstor64 C:\Windows\system32\DRIVERS\nvstor64.sys
13:38:24.0043 5024 nvstor64 - ok
13:38:24.0074 5024 [ D900EEE33EDF655872CBA55ADAE0201A ] nvsvc C:\Windows\system32\nvvsvc.exe
13:38:24.0085 5024 nvsvc - ok
13:38:24.0119 5024 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
13:38:24.0123 5024 nv_agp - ok
13:38:24.0193 5024 [ 1F0E05DFF4F5A833168E49BE1256F002 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
13:38:24.0201 5024 odserv - ok
13:38:24.0234 5024 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
13:38:24.0239 5024 ohci1394 - ok
13:38:24.0282 5024 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:38:24.0286 5024 ose - ok
13:38:24.0323 5024 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
13:38:24.0333 5024 p2pimsvc - ok
13:38:24.0375 5024 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
13:38:24.0397 5024 p2psvc - ok
13:38:24.0446 5024 [ 1011C779C9FCD01AFA96490C86A50421 ] PanService C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
13:38:24.0455 5024 PanService - ok
13:38:24.0489 5024 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
13:38:24.0493 5024 Parport - ok
13:38:24.0516 5024 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
13:38:24.0520 5024 partmgr - ok
13:38:24.0555 5024 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
13:38:24.0563 5024 PcaSvc - ok
13:38:24.0598 5024 [ 3FDE033DFB0D07F8B7D5C9A3044AA121 ] pccsmcfd C:\Windows\system32\DRIVERS\pccsmcfdx64.sys
13:38:24.0601 5024 pccsmcfd - ok
13:38:24.0615 5024 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
13:38:24.0619 5024 pci - ok
13:38:24.0650 5024 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
13:38:24.0653 5024 pciide - ok
13:38:24.0682 5024 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
13:38:24.0686 5024 pcmcia - ok
13:38:24.0713 5024 [ AF7CE12C4F3DC8CB2B07685C916BBCFE ] pcouffin C:\Windows\system32\Drivers\pcouffin.sys
13:38:24.0718 5024 pcouffin - ok
13:38:24.0758 5024 [ 2FE52F3547835C18BEA0962F373D986C ] PCSUService C:\Program Files (x86)\Zrychleni Pocitace\PCSUService.exe
13:38:24.0764 5024 PCSUService - ok
13:38:24.0781 5024 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
13:38:24.0784 5024 pcw - ok
13:38:24.0816 5024 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
13:38:24.0827 5024 PEAUTH - ok
13:38:24.0902 5024 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
13:38:24.0911 5024 PerfHost - ok
13:38:24.0997 5024 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
13:38:25.0046 5024 pla - ok
13:38:25.0101 5024 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
13:38:25.0123 5024 PlugPlay - ok
13:38:25.0155 5024 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
13:38:25.0161 5024 PNRPAutoReg - ok
13:38:25.0192 5024 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
13:38:25.0200 5024 PNRPsvc - ok
13:38:25.0240 5024 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
13:38:25.0251 5024 PolicyAgent - ok
13:38:25.0296 5024 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
13:38:25.0306 5024 Power - ok
13:38:25.0327 5024 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
13:38:25.0331 5024 PptpMiniport - ok
13:38:25.0365 5024 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
13:38:25.0369 5024 Processor - ok
13:38:25.0397 5024 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
13:38:25.0404 5024 ProfSvc - ok
13:38:25.0429 5024 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
13:38:25.0434 5024 ProtectedStorage - ok
13:38:25.0467 5024 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
13:38:25.0469 5024 Psched - ok
13:38:25.0517 5024 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
13:38:25.0552 5024 ql2300 - ok
13:38:25.0588 5024 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
13:38:25.0592 5024 ql40xx - ok
13:38:25.0629 5024 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
13:38:25.0636 5024 QWAVE - ok
13:38:25.0659 5024 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
13:38:25.0663 5024 QWAVEdrv - ok
13:38:25.0700 5024 [ A55E7D0D873B2C97585B3B5926AC6ADE ] RapiMgr C:\Windows\WindowsMobile\rapimgr.dll
13:38:25.0705 5024 RapiMgr - ok
13:38:25.0726 5024 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
13:38:25.0729 5024 RasAcd - ok
13:38:25.0750 5024 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
13:38:25.0753 5024 RasAgileVpn - ok
13:38:25.0791 5024 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
13:38:25.0797 5024 RasAuto - ok
13:38:25.0830 5024 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
13:38:25.0834 5024 Rasl2tp - ok
13:38:25.0870 5024 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
13:38:25.0881 5024 RasMan - ok
13:38:25.0898 5024 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
13:38:25.0902 5024 RasPppoe - ok
13:38:25.0922 5024 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
13:38:25.0927 5024 RasSstp - ok
13:38:25.0962 5024 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
13:38:25.0968 5024 rdbss - ok
13:38:25.0993 5024 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
13:38:25.0996 5024 rdpbus - ok
13:38:26.0023 5024 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
13:38:26.0025 5024 RDPCDD - ok
13:38:26.0044 5024 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
13:38:26.0046 5024 RDPENCDD - ok
13:38:26.0063 5024 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
13:38:26.0064 5024 RDPREFMP - ok
13:38:26.0100 5024 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
13:38:26.0105 5024 RDPWD - ok
13:38:26.0141 5024 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
13:38:26.0147 5024 rdyboost - ok
13:38:26.0176 5024 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
13:38:26.0181 5024 RemoteAccess - ok
13:38:26.0219 5024 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
13:38:26.0226 5024 RemoteRegistry - ok
13:38:26.0310 5024 [ BD517C7FB119997EFFBE39D5E4B37B05 ] RichVideo C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
13:38:26.0314 5024 RichVideo - ok
13:38:26.0344 5024 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
13:38:26.0352 5024 RpcEptMapper - ok
13:38:26.0376 5024 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
13:38:26.0382 5024 RpcLocator - ok
13:38:26.0418 5024 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
13:38:26.0428 5024 RpcSs - ok
13:38:26.0449 5024 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
13:38:26.0452 5024 rspndr - ok
13:38:26.0497 5024 [ EE082E06A82FF630351D1E0EBBD3D8D0 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
13:38:26.0506 5024 RTL8167 - ok
13:38:26.0529 5024 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
13:38:26.0533 5024 SamSs - ok
13:38:26.0576 5024 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
13:38:26.0581 5024 sbp2port - ok
13:38:26.0615 5024 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
13:38:26.0622 5024 SCardSvr - ok
13:38:26.0647 5024 [ 07237C66E05DA6778E9F3CB67FA00736 ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys
13:38:26.0651 5024 SCDEmu - ok
13:38:26.0684 5024 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
13:38:26.0688 5024 scfilter - ok
13:38:26.0729 5024 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
13:38:26.0765 5024 Schedule - ok
13:38:26.0797 5024 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
13:38:26.0799 5024 SCPolicySvc - ok
13:38:26.0819 5024 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
13:38:26.0829 5024 SDRSVC - ok
13:38:26.0864 5024 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
13:38:26.0867 5024 secdrv - ok
13:38:26.0895 5024 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
13:38:26.0904 5024 seclogon - ok
13:38:26.0942 5024 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
13:38:26.0949 5024 SENS - ok
13:38:26.0975 5024 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
13:38:26.0982 5024 SensrSvc - ok
13:38:27.0001 5024 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
13:38:27.0006 5024 Serenum - ok
13:38:27.0034 5024 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
13:38:27.0038 5024 Serial - ok
13:38:27.0064 5024 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
13:38:27.0067 5024 sermouse - ok
13:38:27.0130 5024 [ 289E853881E688286AD24299FCC485D8 ] ServiceLayer C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
13:38:27.0136 5024 ServiceLayer - ok
13:38:27.0190 5024 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
13:38:27.0199 5024 SessionEnv - ok
13:38:27.0229 5024 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
13:38:27.0232 5024 sffdisk - ok
13:38:27.0255 5024 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
13:38:27.0258 5024 sffp_mmc - ok
13:38:27.0284 5024 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
13:38:27.0287 5024 sffp_sd - ok
13:38:27.0325 5024 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
13:38:27.0329 5024 sfloppy - ok
13:38:27.0366 5024 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
13:38:27.0371 5024 SharedAccess - ok
13:38:27.0411 5024 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:38:27.0433 5024 ShellHWDetection - ok
13:38:27.0460 5024 [ 1BC348CF6BAA90EC8E533EF6E6A69933 ] SiSGbeLH C:\Windows\system32\DRIVERS\SiSG664.sys
13:38:27.0463 5024 SiSGbeLH - ok
13:38:27.0485 5024 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
13:38:27.0488 5024 SiSRaid2 - ok
13:38:27.0508 5024 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
13:38:27.0513 5024 SiSRaid4 - ok
13:38:27.0562 5024 [ 7C15061CD0372487903B07B9BB03AFAD ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
13:38:27.0566 5024 SkypeUpdate - ok
13:38:27.0592 5024 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
13:38:27.0596 5024 Smb - ok
13:38:27.0643 5024 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
13:38:27.0650 5024 SNMPTRAP - ok
13:38:27.0719 5024 [ F06A6DE8438F7446BFF9E61F31356521 ] SNP2UVC C:\Windows\system32\DRIVERS\snp2uvc.sys
13:38:27.0766 5024 SNP2UVC - ok
13:38:27.0791 5024 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
13:38:27.0795 5024 spldr - ok
13:38:27.0837 5024 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
13:38:27.0860 5024 Spooler - ok
13:38:27.0956 5024 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
13:38:28.0063 5024 sppsvc - ok
13:38:28.0097 5024 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
13:38:28.0104 5024 sppuinotify - ok
13:38:28.0147 5024 [ 88E5162E58C8919CC873F5D8946197CF ] sptd C:\Windows\system32\Drivers\sptd.sys
13:38:28.0148 5024 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: 88E5162E58C8919CC873F5D8946197CF
13:38:28.0155 5024 sptd ( LockedFile.Multi.Generic ) - warning
13:38:28.0155 5024 sptd - detected LockedFile.Multi.Generic (1)
13:38:28.0186 5024 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
13:38:28.0194 5024 srv - ok
13:38:28.0223 5024 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
13:38:28.0244 5024 srv2 - ok
13:38:28.0262 5024 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
13:38:28.0264 5024 srvnet - ok
13:38:28.0307 5024 [ 4905E29FE0BE2A4441E4D3AA9D4461C7 ] SrvUpdater C:\Program Files (x86)\SoftwareUpdater\UpdaterService.exe
13:38:28.0308 5024 SrvUpdater - ok
13:38:28.0335 5024 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
13:38:28.0343 5024 SSDPSRV - ok
13:38:28.0359 5024 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
13:38:28.0366 5024 SstpSvc - ok
13:38:28.0424 5024 StarWindServiceAE - ok
13:38:28.0463 5024 [ E55F8D27EB014B31073F2F60270B6B3E ] Stereo Service C:\Windows\SysWOW64\nvSCPAPISvr.exe
13:38:28.0468 5024 Stereo Service - ok
13:38:28.0505 5024 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
13:38:28.0506 5024 stexstor - ok
13:38:28.0551 5024 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
13:38:28.0562 5024 stisvc - ok
13:38:28.0598 5024 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
13:38:28.0599 5024 swenum - ok
13:38:28.0643 5024 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
13:38:28.0653 5024 swprv - ok
13:38:28.0719 5024 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
13:38:28.0737 5024 SysMain - ok
13:38:28.0773 5024 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
13:38:28.0781 5024 TabletInputService - ok
13:38:28.0804 5024 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
13:38:28.0813 5024 TapiSrv - ok
13:38:28.0849 5024 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
13:38:28.0857 5024 TBS - ok
13:38:28.0926 5024 [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
13:38:28.0941 5024 Tcpip - ok
13:38:29.0003 5024 [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
13:38:29.0019 5024 TCPIP6 - ok
13:38:29.0065 5024 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
13:38:29.0067 5024 tcpipreg - ok
13:38:29.0110 5024 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
13:38:29.0112 5024 TDPIPE - ok
13:38:29.0148 5024 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
13:38:29.0150 5024 TDTCP - ok
13:38:29.0184 5024 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
13:38:29.0186 5024 tdx - ok
13:38:29.0319 5024 [ 402794A75A899E296AB3EDEC4ECCB9A8 ] TeamViewer8 C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
13:38:29.0349 5024 TeamViewer8 - ok
13:38:29.0389 5024 [ F5520DBB47C60EE83024B38720ABDA24 ] teamviewervpn C:\Windows\system32\DRIVERS\teamviewervpn.sys
13:38:29.0391 5024 teamviewervpn - ok
13:38:29.0419 5024 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
13:38:29.0420 5024 TermDD - ok
13:38:29.0464 5024 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
13:38:29.0475 5024 TermService - ok
13:38:29.0504 5024 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
13:38:29.0511 5024 Themes - ok
13:38:29.0537 5024 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
13:38:29.0543 5024 THREADORDER - ok
13:38:29.0586 5024 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
13:38:29.0594 5024 TrkWks - ok
13:38:29.0654 5024 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:38:29.0657 5024 TrustedInstaller - ok
13:38:29.0696 5024 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
13:38:29.0698 5024 tssecsrv - ok
13:38:29.0730 5024 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
13:38:29.0732 5024 TsUsbFlt - ok
13:38:29.0842 5024 [ DC0F2A0C445EF104BC240954D3A460C2 ] TuneUp.UtilitiesSvc C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe
13:38:29.0858 5024 TuneUp.UtilitiesSvc - ok
13:38:29.0890 5024 [ DCC94C51D27C7EC0DADECA8F64C94FCF ] TuneUpUtilitiesDrv C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys
13:38:29.0891 5024 TuneUpUtilitiesDrv - ok
13:38:29.0924 5024 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
13:38:29.0926 5024 tunnel - ok
13:38:29.0951 5024 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
13:38:29.0953 5024 uagp35 - ok
13:38:29.0984 5024 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
13:38:29.0987 5024 udfs - ok
13:38:30.0035 5024 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
13:38:30.0043 5024 UI0Detect - ok
13:38:30.0070 5024 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
13:38:30.0072 5024 uliagpkx - ok
13:38:30.0099 5024 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
13:38:30.0101 5024 umbus - ok
13:38:30.0133 5024 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
13:38:30.0135 5024 UmPass - ok
13:38:30.0183 5024 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
13:38:30.0193 5024 upnphost - ok
13:38:30.0227 5024 [ 907F50B8695DAA65A9445D27AD306E65 ] upperdev C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys
13:38:30.0228 5024 upperdev - ok
13:38:30.0259 5024 [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
13:38:30.0260 5024 usbaudio - ok
13:38:30.0295 5024 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
13:38:30.0297 5024 usbccgp - ok
13:38:30.0333 5024 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
13:38:30.0335 5024 usbcir - ok
13:38:30.0372 5024 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
13:38:30.0373 5024 usbehci - ok
13:38:30.0401 5024 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
13:38:30.0405 5024 usbhub - ok
13:38:30.0428 5024 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
13:38:30.0430 5024 usbohci - ok
13:38:30.0464 5024 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
13:38:30.0466 5024 usbprint - ok
13:38:30.0502 5024 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
13:38:30.0503 5024 usbscan - ok
13:38:30.0539 5024 [ 4ACEE387FA8FD39F83564FCD2FC234F2 ] usbser C:\Windows\system32\drivers\usbser.sys
13:38:30.0540 5024 usbser - ok
13:38:30.0557 5024 [ 3F7498527B48657091C355F683BEB0DD ] UsbserFilt C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys
13:38:30.0558 5024 UsbserFilt - ok
13:38:30.0585 5024 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:38:30.0587 5024 USBSTOR - ok
13:38:30.0621 5024 [ 81FB2216D3A60D1284455D511797DB3D ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
13:38:30.0623 5024 usbuhci - ok
13:38:30.0655 5024 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
13:38:30.0657 5024 usbvideo - ok
13:38:30.0690 5024 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
13:38:30.0698 5024 UxSms - ok
13:38:30.0733 5024 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
13:38:30.0737 5024 VaultSvc - ok
13:38:30.0770 5024 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
13:38:30.0772 5024 vdrvroot - ok
13:38:30.0819 5024 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
13:38:30.0830 5024 vds - ok
13:38:30.0874 5024 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
13:38:30.0875 5024 vga - ok
13:38:30.0908 5024 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
13:38:30.0909 5024 VgaSave - ok
13:38:30.0946 5024 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
13:38:30.0949 5024 vhdmp - ok
13:38:30.0984 5024 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
13:38:30.0985 5024 viaide - ok
13:38:31.0013 5024 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
13:38:31.0016 5024 volmgr - ok
13:38:31.0056 5024 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
13:38:31.0059 5024 volmgrx - ok
13:38:31.0076 5024 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
13:38:31.0080 5024 volsnap - ok
13:38:31.0130 5024 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
13:38:31.0132 5024 vsmraid - ok
13:38:31.0198 5024 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
13:38:31.0215 5024 VSS - ok
13:38:31.0364 5024 [ 8754BA5FCC85325C229ADCB72087706E ] vToolbarUpdater15.4.0 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.4.0\ToolbarUpdater.exe
13:38:31.0375 5024 vToolbarUpdater15.4.0 - ok
13:38:31.0415 5024 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
13:38:31.0417 5024 vwifibus - ok
13:38:31.0442 5024 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
13:38:31.0444 5024 vwififlt - ok
13:38:31.0484 5024 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
13:38:31.0494 5024 W32Time - ok
13:38:31.0543 5024 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
13:38:31.0545 5024 WacomPen - ok
13:38:31.0569 5024 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
13:38:31.0571 5024 WANARP - ok
13:38:31.0582 5024 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
13:38:31.0585 5024 Wanarpv6 - ok
13:38:31.0645 5024 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
13:38:31.0654 5024 WatAdminSvc - ok
13:38:31.0728 5024 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
13:38:31.0746 5024 wbengine - ok
13:38:31.0782 5024 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
13:38:31.0790 5024 WbioSrvc - ok
13:38:31.0832 5024 [ 8BDA6DB43AA54E8BB5E0794541DDC209 ] WcesComm C:\Windows\WindowsMobile\wcescomm.dll
13:38:31.0837 5024 WcesComm - ok
13:38:31.0873 5024 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
13:38:31.0885 5024 wcncsvc - ok
13:38:31.0910 5024 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:38:31.0917 5024 WcsPlugInService - ok
13:38:31.0951 5024 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
13:38:31.0952 5024 Wd - ok
13:38:31.0990 5024 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
13:38:31.0996 5024 Wdf01000 - ok
13:38:32.0040 5024 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
13:38:32.0048 5024 WdiServiceHost - ok
13:38:32.0062 5024 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
13:38:32.0069 5024 WdiSystemHost - ok
13:38:32.0102 5024 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
13:38:32.0112 5024 WebClient - ok
13:38:32.0147 5024 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
13:38:32.0156 5024 Wecsvc - ok
13:38:32.0189 5024 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
13:38:32.0197 5024 wercplsupport - ok
13:38:32.0222 5024 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
13:38:32.0230 5024 WerSvc - ok
13:38:32.0254 5024 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
13:38:32.0256 5024 WfpLwf - ok
13:38:32.0295 5024 [ 52DED146E4797E6CCF94799E8E22BB2A ] WimFltr C:\Windows\system32\DRIVERS\wimfltr.sys
13:38:32.0297 5024 WimFltr - ok
13:38:32.0336 5024 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
13:38:32.0338 5024 WIMMount - ok
13:38:32.0361 5024 WinDefend - ok
13:38:32.0382 5024 WinHttpAutoProxySvc - ok
13:38:32.0449 5024 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
13:38:32.0453 5024 Winmgmt - ok
13:38:32.0530 5024 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
13:38:32.0551 5024 WinRM - ok
13:38:32.0604 5024 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
13:38:32.0606 5024 WinUsb - ok
13:38:32.0662 5024 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
13:38:32.0676 5024 Wlansvc - ok
13:38:32.0807 5024 [ 98F138897EF4246381D197CB81846D62 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
13:38:32.0824 5024 wlidsvc - ok
13:38:32.0853 5024 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
13:38:32.0855 5024 WmiAcpi - ok
13:38:32.0905 5024 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
13:38:32.0908 5024 wmiApSrv - ok
13:38:32.0938 5024 WMPNetworkSvc - ok
13:38:32.0976 5024 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
13:38:32.0984 5024 WPCSvc - ok
13:38:33.0015 5024 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
13:38:33.0024 5024 WPDBusEnum - ok
13:38:33.0063 5024 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
13:38:33.0065 5024 ws2ifsl - ok
13:38:33.0110 5024 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
13:38:33.0118 5024 wscsvc - ok
13:38:33.0131 5024 WSearch - ok
13:38:33.0232 5024 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
13:38:33.0257 5024 wuauserv - ok
13:38:33.0302 5024 [ D3381DC54C34D79B22CEE0D65BA91B7C ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
13:38:33.0304 5024 WudfPf - ok
13:38:33.0333 5024 [ CF8D590BE3373029D57AF80914190682 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
13:38:33.0335 5024 WUDFRd - ok
13:38:33.0364 5024 [ 7A95C95B6C4CF292D689106BCAE49543 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
13:38:33.0374 5024 wudfsvc - ok
13:38:33.0436 5024 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
13:38:33.0446 5024 WwanSvc - ok
13:38:33.0574 5024 [ 24FB8DB6D1D55E2C5D0A53DFE48E6AF8 ] Yontoo Desktop Updater C:\Program Files (x86)\Yontoo\Y2Desktop.Updater.exe
13:38:33.0576 5024 Yontoo Desktop Updater - ok
13:38:33.0698 5024 [ 74983ADDCA2D9618512C088D856D6615 ] {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC} C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\000.fcl
13:38:33.0700 5024 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC} - ok
13:38:33.0730 5024 ================ Scan global ===============================
13:38:33.0752 5024 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
13:38:33.0791 5024 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\Windows\system32\winsrv.dll
13:38:33.0812 5024 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\Windows\system32\winsrv.dll
13:38:33.0851 5024 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
13:38:33.0871 5024 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
13:38:33.0880 5024 [Global] - ok
13:38:33.0880 5024 ================ Scan MBR ==================================
13:38:33.0893 5024 [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
13:38:34.0111 5024 \Device\Harddisk0\DR0 - ok
13:38:34.0116 5024 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
13:38:34.0169 5024 \Device\Harddisk1\DR1 - ok
13:38:34.0170 5024 ================ Scan VBR ==================================
13:38:34.0174 5024 [ D219AB87B0F9C00CBC4CA7169E9ECFA1 ] \Device\Harddisk0\DR0\Partition1
13:38:34.0176 5024 \Device\Harddisk0\DR0\Partition1 - ok
13:38:34.0194 5024 [ 550ECBA092F16E46D234C458C94D4DD5 ] \Device\Harddisk0\DR0\Partition2
13:38:34.0197 5024 \Device\Harddisk0\DR0\Partition2 - ok
13:38:34.0202 5024 [ C87A3E1DB84A2EA09ECA436937ECA807 ] \Device\Harddisk1\DR1\Partition1
13:38:34.0204 5024 \Device\Harddisk1\DR1\Partition1 - ok
13:38:34.0206 5024 ============================================================
13:38:34.0206 5024 Scan finished
13:38:34.0206 5024 ============================================================
13:38:34.0226 2092 Detected object count: 1
13:38:34.0226 2092 Actual detected object count: 1
13:38:45.0610 2092 C:\Windows\system32\Drivers\sptd.sys - copied to quarantine
13:38:45.0640 2092 HKLM\SYSTEM\ControlSet001\services\sptd - will be deleted on reboot
13:38:45.0821 2092 HKLM\SYSTEM\ControlSet002\services\sptd - will be deleted on reboot
13:38:45.0950 2092 C:\Windows\system32\Drivers\sptd.sys - will be deleted on reboot
13:38:45.0950 2092 sptd ( LockedFile.Multi.Generic ) - User select action: Delete

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15718
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: rootkit v MBR - prosím o pomoc

#7 Příspěvek od JaRon »

prescanuj s AVASTom - ci nieco najde ? :James008:
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

alpa104
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 01 srp 2013 10:17

Re: rootkit v MBR - prosím o pomoc

#8 Příspěvek od alpa104 »

Díky - rychlý test Avastu nic nenašel a windows už tři hodiny zázračně nespadl ;-) . Spouštím úplný test...
Zjevně zabral TDSSKiller
- díky za radu a mám dotaz
- bylo by lepší z free Avastu přejít raději na jiný antivirus?
- Kaspersky z jehož dílny je TDSSKiller?

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15718
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: rootkit v MBR - prosím o pomoc

#9 Příspěvek od JaRon »

rado sa stalo :)
osobne doporucujem, pokial si s AV spokojny, tak ho nemen
ak nie >> http://forum.viry.cz/viewtopic.php?f=29&t=6152
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Zamčeno