Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o pomoc

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
SimčaBrunoMars
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 19 pro 2012 20:57

Prosím o pomoc

#1 Příspěvek od SimčaBrunoMars »

Dobry Den,
Prosím o pomoc pri riešení problému. Po otvorení internetového prehliadača sa mi vždy otvorí táto stránka ako domovská. Neviem ju odtial dostat preč. Skúšala som zmenit si domovsku stranku na google ,ale vzdy sa tam znovu objavila.
Vopred dakujem za pomoc :)

http ://www1.delta-search.com/?babsrc=NT_ss_SU&mntrId=58B60016414200AC&affID=121564&tt=070813_wt4&tsp=4969

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o pomoc

#2 Příspěvek od Márty84 »

Zdravim :)

Nejprve dejte log z RSIT http://forum.viry.cz/viewtopic.php?f=24&t=130784 a mrknem na to :wink:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

SimčaBrunoMars
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 19 pro 2012 20:57

Re: Prosím o pomoc

#3 Příspěvek od SimčaBrunoMars »

tu je ten log :)

Logfile of random's system information tool 1.09 (written by random/random)
Run by Lenovo at 2013-08-10 11:21:15
Microsoft Windows XP Professional Service Pack 3
System drive C: has 1 GB (4%) free of 33 GB
Total RAM: 1013 MB (5% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:23:56, on 10.8.2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Panda Security\Panda Gold Protection\TPSrv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRAM FILES\PANDA SECURITY\PANDA GOLD PROTECTION\WebProxy.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\IPSSVC.EXE
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\Panda Security\Panda Gold Protection\PsCtrls.exe
C:\Program Files\Panda Security\Panda Gold Protection\PavFnSvr.exe
C:\Program Files\Common Files\Panda Security\PavShld\pavprsrv.exe
C:\Program Files\Google\Update\1.3.21.153\GoogleCrashHandler.exe
c:\program files\panda security\panda gold protection\firewall\PSHOST.EXE
C:\Program Files\Panda Security\Panda Gold Protection\PsImSvc.exe
C:\Program Files\Panda Security\Panda Gold Protection\PskSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\Panda Security\Panda Gold Protection\pavsrvx86.exe
C:\Program Files\Panda Security\Panda Gold Protection\AVENGINE.EXE
C:\WINDOWS\System32\alg.exe
C:\Documents and Settings\All Users\Application Data\BetterSoft\OptimizerPro\OptimizerPro.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\ThinkVantage\AMSG\Amsg.exe
C:\PROGRA~1\THINKV~1\PrdCtr\LPMGR.exe
C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe
C:\Program Files\Panda Security\Panda Gold Protection\APVXDWIN.EXE
C:\Program Files\Lexmark X1100 Series\lxbkbmon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Panda Security\Panda Gold Protection\SRVLOAD.EXE
C:\Program Files\Panda Security\Panda Gold Protection\PavBckPT.exe
C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE
C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe
C:\Documents and Settings\Lenovo\My Documents\Downloads\Norman_Malware_Cleaner (1).exe
C:\DOCUME~1\Lenovo\LOCALS~1\Temp\Rar$EXa0.591\UPM.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Lenovo\My Documents\Downloads\RSIT.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\trend micro\Lenovo.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.sk/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: savEnsharE - {D70373C1-E897-E8DA-FF19-E23B4FA2E974} - C:\Documents and Settings\All Users\Application Data\savEnsharE\52010cb342e32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [AMSG] C:\Program Files\ThinkVantage\AMSG\Amsg.exe
O4 - HKLM\..\Run: [LPManager] C:\PROGRA~1\THINKV~1\PrdCtr\LPMGR.exe
O4 - HKLM\..\Run: [Lexmark X1100 Series] "C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe"
O4 - HKLM\..\Run: [APVXDWIN] "C:\Program Files\Panda Security\Panda Gold Protection\APVXDWIN.EXE" /s
O4 - HKLM\..\Run: [SCANINICIO] "C:\Program Files\Panda Security\Panda Gold Protection\Inicio.exe"
O4 - HKLM\..\Run: [SpyHunter Security Suite] C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre7\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: IBM Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre7\bin\jp2iexp.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [JAVA_IBM] Java (IBM)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 5984967625
O20 - AppInit_DLLs: c:\progra~1\savesh~1\sprote~1.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: IPS Core Service (IPSSVC) - Lenovo Ltd. - C:\WINDOWS\system32\IPSSVC.EXE
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Panda Software Controller - Panda Security, S.L. - C:\Program Files\Panda Security\Panda Gold Protection\PsCtrls.exe
O23 - Service: Panda Function Service (PAVFNSVR) - Unknown owner - C:\Program Files\Panda Security\Panda Gold Protection\PavFnSvr.exe
O23 - Service: Panda Process Protection Service (PavPrSrv) - Unknown owner - C:\Program Files\Common Files\Panda Security\PavShld\pavprsrv.exe
O23 - Service: Panda On-Access Anti-Malware Service (PAVSRV) - Panda Security, S.L. - C:\Program Files\Panda Security\Panda Gold Protection\pavsrvx86.exe
O23 - Service: Panda Host Service (PSHost) - Unknown owner - c:\program files\panda security\panda gold protection\firewall\PSHOST.EXE
O23 - Service: Panda IManager Service (PSIMSVC) - Panda Security S.L. - C:\Program Files\Panda Security\Panda Gold Protection\PsImSvc.exe
O23 - Service: Panda PSK service (PskSvcRetail) - Panda Security, S.L. - C:\Program Files\Panda Security\Panda Gold Protection\PskSvc.exe
O23 - Service: SpyHunter 4 Service - Enigma Software Group USA, LLC. - C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE
O23 - Service: Panda TPSrv (TPSrv) - Panda Security, S.L. - C:\Program Files\Panda Security\Panda Gold Protection\TPSrv.exe

--
End of file - 9109 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Basic clean-up.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\schedule!1173230912.job
C:\WINDOWS\tasks\Symantec NetDetect.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
&Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-08-08 463272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D70373C1-E897-E8DA-FF19-E23B4FA2E974}]
savEnsharE - C:\Documents and Settings\All Users\Application Data\savEnsharE\52010cb342e32.dll [2013-08-06 118784]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-08-08 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2005-06-08 94208]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2005-06-08 77824]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2005-06-08 114688]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2005-05-20 925696]
"AMSG"=C:\Program Files\ThinkVantage\AMSG\Amsg.exe [2005-10-05 487424]
"LPManager"=C:\PROGRA~1\THINKV~1\PrdCtr\LPMGR.exe [2005-09-08 102400]
"Lexmark X1100 Series"=C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe [2003-08-19 57344]
"APVXDWIN"=C:\Program Files\Panda Security\Panda Gold Protection\APVXDWIN.EXE [2013-06-20 1054688]
"SCANINICIO"=C:\Program Files\Panda Security\Panda Gold Protection\Inicio.exe [2012-11-08 70432]
"SpyHunter Security Suite"=C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe [2013-06-27 6427008]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-13 1695232]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="c:\progra~1\savesh~1\sprote~1.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avldr]
C:\WINDOWS\system32\avldr.dll [2010-03-24 55552]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-06-08 131072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\NavLogon]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 239496]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PskSvcRetail]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ThinkVantage\SystemUpdate\jre\bin\javaw.exe"="C:\Program Files\ThinkVantage\SystemUpdate\jre\bin\javaw.exe:*:Enabled:ThinkVantage System Update"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\WINDOWS\system32\LEXPPS.EXE"="C:\WINDOWS\system32\LEXPPS.EXE:*:Enabled:LEXPPS.EXE"
"C:\Program Files\Electronic Arts\EADM\Core.exe"="C:\Program Files\Electronic Arts\EADM\Core.exe:*:Enabled:EA Download Manager"
"C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*:Enabled:Steam"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ThinkVantage\SystemUpdate\jre\bin\javaw.exe"="C:\Program Files\ThinkVantage\SystemUpdate\jre\bin\javaw.exe:*:Enabled:ThinkVantage System Update"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.dvsd"=pdvcodec.dll
"msacm.divxa32"=msaud32_divx.acm
"vidc.ffds"=ffdshow.ax
"vidc.VP60"=C:\WINDOWS\system32\vp6vfw.dll
"vidc.VP61"=C:\WINDOWS\system32\vp6vfw.dll

======File associations======

.js - open - C:\PROGRA~1\PANDAS~1\PANDAG~1\PavScrip.exe "%1" %*
.vbs - open - C:\PROGRA~1\PANDAS~1\PANDAG~1\PavScrip.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-08-10 11:21:21 ----D---- C:\Program Files\trend micro
2013-08-10 11:21:15 ----D---- C:\rsit
2013-08-10 11:11:41 ----A---- C:\AdwCleaner[R1].txt
2013-08-10 10:35:26 ----A---- C:\TDSSKiller.2.8.16.0_10.08.2013_10.35.26_log.txt
2013-08-10 10:24:30 ----A---- C:\WINDOWS\wininit.ini
2013-08-10 10:20:39 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2013-08-10 10:19:49 ----D---- C:\Program Files\Spybot - Search & Destroy 2
2013-08-10 09:42:35 ----D---- C:\WINDOWS\LastGood
2013-08-10 09:42:10 ----D---- C:\sh4ldr
2013-08-10 09:42:10 ----D---- C:\Program Files\Enigma Software Group
2013-08-10 09:41:11 ----D---- C:\WINDOWS\471D8B37C5B344579FA1B3C693334F4F.TMP
2013-08-10 09:41:01 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2013-08-09 11:19:04 ----D---- C:\Program Files\TuneUp Utilities 2013
2013-08-09 11:18:33 ----D---- C:\WINDOWS\system32\Extensions
2013-08-09 11:18:32 ----D---- C:\WINDOWS\system32\searchplugins
2013-08-09 11:17:08 ----D---- C:\Program Files\Mozilla Firefox
2013-08-09 11:16:31 ----D---- C:\Documents and Settings\Lenovo\Application Data\BabSolution
2013-08-09 11:15:55 ----D---- C:\Documents and Settings\All Users\Application Data\Babylon
2013-08-09 11:15:48 ----D---- C:\Documents and Settings\Lenovo\Application Data\Babylon
2013-08-09 11:14:45 ----D---- C:\Program Files\DVDVideoSoft
2013-08-09 11:13:35 ----D---- C:\Documents and Settings\Lenovo\Application Data\DVDVideoSoft
2013-08-08 12:36:46 ----D---- C:\WINDOWS\system32\MRT
2013-08-08 11:09:36 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2013-08-08 10:57:54 ----A---- C:\WINDOWS\system32\deployJava1.dll
2013-08-08 10:57:53 ----A---- C:\WINDOWS\system32\npDeployJava1.dll
2013-08-08 10:57:52 ----A---- C:\WINDOWS\system32\javaws.exe
2013-08-08 10:57:33 ----A---- C:\WINDOWS\system32\javaw.exe
2013-08-08 10:57:33 ----A---- C:\WINDOWS\system32\java.exe
2013-08-08 10:55:19 ----D---- C:\Program Files\Java
2013-08-08 10:44:20 ----D---- C:\Documents and Settings\Lenovo\Application Data\Sun
2013-08-08 10:23:56 ----D---- C:\Documents and Settings\Lenovo\Application Data\TuneUp Software
2013-08-08 10:23:33 ----D---- C:\Documents and Settings\All Users\Application Data\TuneUp Software
2013-08-08 10:23:21 ----SHD---- C:\Documents and Settings\All Users\Application Data\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2013-08-08 10:23:21 ----HD---- C:\Documents and Settings\All Users\Application Data\Common Files
2013-08-08 10:22:21 ----D---- C:\Documents and Settings\Lenovo\Application Data\OpenCandy
2013-08-08 09:22:13 ----D---- C:\430e42cd5ef2561708c0ea2e
2013-08-07 22:39:46 ----D---- C:\WINDOWS\system32\XPSViewer
2013-08-07 22:39:41 ----D---- C:\Program Files\MSBuild
2013-08-07 22:39:32 ----D---- C:\Program Files\Reference Assemblies
2013-08-07 22:39:00 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2013-08-07 22:39:00 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2013-08-07 22:39:00 ----N---- C:\WINDOWS\system32\prntvpt.dll
2013-08-07 22:39:00 ----D---- C:\7cf3dc835a07b4ae2f20493eab
2013-08-07 20:00:47 ----D---- C:\3c2b788061bb4029ed9afa86fd
2013-08-07 20:00:42 ----D---- C:\f0592dee565404027c
2013-08-07 10:27:16 ----D---- C:\Program Files\directx
2013-08-07 10:23:35 ----D---- C:\Program Files\Rockstar Games
2013-08-07 10:15:28 ----A---- C:\WINDOWS\system32\PavCPL.dat
2013-08-07 10:15:18 ----A---- C:\WINDOWS\system32\wodSFTP.dll
2013-08-07 10:15:18 ----A---- C:\WINDOWS\system32\wodKeys.dll
2013-08-07 10:15:14 ----A---- C:\WINDOWS\system32\drivers\APPFCONT.DAT
2013-08-07 10:15:12 ----D---- C:\WINDOWS\system32\LogFiles
2013-08-07 10:15:08 ----A---- C:\WINDOWS\system32\drivers\wnmflt.sys
2013-08-07 10:15:08 ----A---- C:\WINDOWS\system32\drivers\idsflt.sys
2013-08-07 10:15:08 ----A---- C:\WINDOWS\system32\drivers\dsaflt.sys
2013-08-07 10:14:56 ----A---- C:\WINDOWS\system32\drivers\fnetmon.sys
2013-08-07 10:14:56 ----A---- C:\WINDOWS\system32\drivers\APPFLT.SYS
2013-08-07 10:14:55 ----A---- C:\WINDOWS\system32\drivers\NETFLTDI.SYS
2013-08-07 10:14:47 ----D---- C:\Documents and Settings\All Users\Application Data\Backup
2013-08-07 10:14:44 ----A---- C:\WINDOWS\system32\drivers\pavboot.sys
2013-08-07 10:12:25 ----A---- C:\WINDOWS\system32\HHActiveX.dll
2013-08-07 10:12:11 ----A---- C:\WINDOWS\system32\TpUtil.dll
2013-08-07 10:12:11 ----A---- C:\WINDOWS\system32\SYSTOOLS.DLL
2013-08-07 10:12:11 ----A---- C:\WINDOWS\system32\PavLspHook.dll
2013-08-07 10:12:11 ----A---- C:\WINDOWS\system32\pavipc.dll
2013-08-07 10:12:10 ----A---- C:\WINDOWS\system32\PavSHook.dll
2013-08-07 10:12:07 ----D---- C:\WINDOWS\system32\PAV
2013-08-07 10:12:07 ----A---- C:\WINDOWS\system32\drivers\neti1644.sys
2013-08-07 10:12:07 ----A---- C:\WINDOWS\system32\drivers\amm8651.sys
2013-08-07 10:12:07 ----A---- C:\WINDOWS\system32\avldr.dll
2013-08-07 10:12:06 ----D---- C:\Documents and Settings\Lenovo\Application Data\Panda Security
2013-08-07 10:12:06 ----D---- C:\Documents and Settings\All Users\Application Data\Panda Security
2013-08-07 10:12:04 ----D---- C:\Program Files\Panda Security
2013-08-07 10:11:53 ----D---- C:\Program Files\Common Files\Panda Security
2013-08-07 10:11:53 ----A---- C:\WINDOWS\system32\drivers\ShlDrv51.sys
2013-08-07 10:11:53 ----A---- C:\WINDOWS\system32\drivers\PavProc.sys
2013-08-07 10:02:07 ----D---- C:\3a34bc99c8d9dca79d620b
2013-08-07 10:02:01 ----D---- C:\a7b7c114cd834d5c289b1ed2141e710f
2013-08-06 20:27:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2013-08-06 20:26:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2712808$
2013-08-06 20:26:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2013-08-06 20:26:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2659262$
2013-08-06 20:26:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2013-08-06 20:25:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2013-08-06 20:25:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2758857$
2013-08-06 20:24:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2013-08-06 20:24:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2834886$
2013-08-06 20:24:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2013-08-06 20:24:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2013-08-06 20:24:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2850851$
2013-08-06 20:24:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2013-08-06 20:24:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2013-08-06 20:24:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2013-08-06 20:23:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$
2013-08-06 20:23:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2013-08-06 20:23:38 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2013-08-06 20:23:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2779562$
2013-08-06 20:23:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2013-08-06 20:23:17 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2013-08-06 20:23:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2013-08-06 20:23:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2655992$
2013-08-06 20:22:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2802968$
2013-08-06 20:22:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2013-08-06 20:22:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2013-08-06 20:22:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2013-08-06 20:22:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2013-08-06 20:22:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2686509$
2013-08-06 20:22:20 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2013-08-06 20:22:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2013-08-06 20:22:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2780091$
2013-08-06 20:22:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2845187$
2013-08-06 20:21:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2510581$
2013-08-06 20:21:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2013-08-06 20:21:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2013-08-06 20:21:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2013-08-06 20:21:18 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2013-08-06 20:21:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2719985$
2013-08-06 20:21:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2013-08-06 20:20:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2753842-v2$
2013-08-06 20:20:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2770660$
2013-08-06 20:20:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2013-08-06 20:20:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2839229$
2013-08-06 20:20:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2807986$
2013-08-06 20:20:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2013-08-06 20:20:20 ----A---- C:\WINDOWS\system32\MRT.INI
2013-08-06 20:16:54 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2013-08-06 20:16:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2834902_WM10$
2013-08-06 20:16:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2820917$
2013-08-06 20:16:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2013-08-06 20:16:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2757638$
2013-08-06 20:16:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2013-08-06 20:16:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2013-08-06 20:16:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2653956$
2013-08-06 20:16:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2820197$
2013-08-06 20:15:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2749655$
2013-08-06 20:15:48 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2013-08-06 20:15:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2013-08-06 20:15:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2698365$
2013-08-06 20:15:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2013-08-06 20:15:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2705219-v2$
2013-08-06 20:15:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2727528$
2013-08-06 20:15:09 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2013-08-06 20:15:03 ----HDC---- C:\WINDOWS\$NtUninstallKB2723135-v2$
2013-08-06 20:14:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2013-08-06 20:14:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2661254-v2$
2013-08-06 20:14:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2813345$
2013-08-06 20:14:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2013-08-06 20:14:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2676562$
2013-08-06 20:14:19 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2013-08-06 20:14:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2013-08-06 20:14:03 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2013-08-06 20:13:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2013-08-06 20:13:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2013-08-06 20:13:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2661637$
2013-08-06 20:13:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2013-08-06 20:13:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2846071$
2013-08-06 20:13:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2013-08-06 20:12:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2013-08-06 16:49:22 ----D---- C:\Documents and Settings\All Users\Application Data\StarApp
2013-08-06 16:49:04 ----D---- C:\Documents and Settings\All Users\Application Data\BetterSoft
2013-08-06 16:48:37 ----D---- C:\Program Files\SaveShare
2013-08-06 16:48:33 ----D---- C:\Documents and Settings\All Users\Application Data\savEnsharE
2013-08-06 16:48:10 ----D---- C:\Documents and Settings\All Users\Application Data\InstallMate
2013-08-06 15:03:10 ----D---- C:\Documents and Settings\Lenovo\Application Data\Unity
2013-08-06 14:27:25 ----N---- C:\WINDOWS\system32\iacenc.dll
2013-08-03 13:17:44 ----D---- C:\Program Files\KeyNote
2013-08-03 13:01:39 ----D---- C:\Program Files\project dogwaffle
2013-08-01 20:11:43 ----D---- C:\Program Files\Centauri
2013-08-01 19:43:10 ----D---- C:\Program Files\Eidos

======List of files/folders modified in the last 1 month======

2013-08-10 11:21:26 ----D---- C:\WINDOWS\system32\drivers
2013-08-10 11:21:21 ----RD---- C:\Program Files
2013-08-10 10:35:27 ----D---- C:\WINDOWS\Temp
2013-08-10 10:24:52 ----AD---- C:\WINDOWS\system32
2013-08-10 10:24:32 ----SD---- C:\WINDOWS\Tasks
2013-08-10 10:24:30 ----AD---- C:\WINDOWS
2013-08-10 10:20:18 ----D---- C:\WINDOWS\system32\config
2013-08-10 10:20:17 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2013-08-10 10:00:59 ----D---- C:\Temp
2013-08-10 09:42:57 ----SHD---- C:\WINDOWS\Installer
2013-08-10 09:42:38 ----HD---- C:\WINDOWS\inf
2013-08-10 09:41:01 ----D---- C:\Program Files\Common Files
2013-08-10 09:26:59 ----D---- C:\WINDOWS\Help
2013-08-10 09:20:25 ----D---- C:\WINDOWS\system32\CatRoot2
2013-08-10 09:12:34 ----D---- C:\WINDOWS\system32\drivers\etc
2013-08-09 13:51:30 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-08-09 12:08:16 ----D---- C:\Program Files\Google
2013-08-09 11:56:32 ----D---- C:\Program Files\ePlaybus.com
2013-08-09 11:56:31 ----D---- C:\Program Files\Windows Media Connect
2013-08-09 11:56:30 ----D---- C:\Program Files\Messenger
2013-08-09 08:56:09 ----RSD---- C:\WINDOWS\assembly
2013-08-09 08:52:46 ----D---- C:\WINDOWS\Microsoft.NET
2013-08-08 12:34:40 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-08-08 12:34:24 ----D---- C:\WINDOWS\WinSxS
2013-08-08 11:10:45 ----D---- C:\WINDOWS\system32\CatRoot
2013-08-08 11:10:00 ----RSHD---- C:\WINDOWS\system32\dllcache
2013-08-08 11:03:00 ----D---- C:\WINDOWS\SoftwareDistribution
2013-08-08 11:02:59 ----SD---- C:\WINDOWS\Downloaded Program Files
2013-08-08 10:56:55 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll
2013-08-08 10:22:52 ----D---- C:\ProgramData
2013-08-08 08:50:44 ----D---- C:\Program Files\Lexmark X1100 Series
2013-08-07 22:39:39 ----D---- C:\WINDOWS\system32\en-us
2013-08-07 22:39:37 ----RSD---- C:\WINDOWS\Fonts
2013-08-07 22:39:13 ----D---- C:\WINDOWS\system32\spool
2013-08-07 19:13:30 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2013-08-07 15:03:29 ----D---- C:\WINDOWS\Prefetch
2013-08-07 11:23:46 ----D---- C:\Program Files\EA GAMES
2013-08-07 10:23:34 ----HD---- C:\Program Files\InstallShield Installation Information
2013-08-07 10:07:03 ----D---- C:\WINDOWS\Minidump
2013-08-06 20:27:10 ----A---- C:\WINDOWS\imsins.BAK
2013-08-06 20:27:01 ----HD---- C:\WINDOWS\$hf_mig$
2013-08-06 20:15:11 ----D---- C:\Program Files\Movie Maker
2013-08-06 20:13:22 ----D---- C:\Program Files\Outlook Express
2013-08-06 14:46:53 ----SD---- C:\Documents and Settings\Lenovo\Application Data\Microsoft
2013-08-03 14:59:06 ----A---- C:\WINDOWS\win.ini
2013-08-02 10:11:31 ----D---- C:\Program Files\Pohadka
2013-08-01 20:14:04 ----D---- C:\Program Files\Windows Media Player

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pavboot;Panda boot driver; C:\WINDOWS\system32\Drivers\pavboot.sys [2010-06-22 26696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2008-04-07 43872]
R1 APPFLT;App Filter Plugin; \??\C:\WINDOWS\system32\Drivers\APPFLT.SYS []
R1 DSAFLT;DSA Filter Plugin; \??\C:\WINDOWS\system32\Drivers\DSAFLT.SYS []
R1 FNETMON;NetMon Filter Plugin; \??\C:\WINDOWS\system32\Drivers\fnetmon.SYS []
R1 IDSFLT;Ids Filter Plugin; \??\C:\WINDOWS\system32\Drivers\IDSFLT.SYS []
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R1 NETFLTDI;Panda Net Driver [TDI Layer]; \??\C:\WINDOWS\system32\Drivers\NETFLTDI.SYS []
R1 ShldDrv;Panda File Shield Driver; C:\WINDOWS\System32\DRIVERS\ShlDrv51.sys [2011-02-21 37448]
R1 WNMFLT;Wifi Monitor Filter Plugin; \??\C:\WINDOWS\system32\Drivers\WNMFLT.SYS []
R2 AmFSM;AmFSM; C:\WINDOWS\system32\DRIVERS\amm8651.sys [2012-03-26 63240]
R2 PavProc;Panda Process Protection Driver; \??\C:\WINDOWS\system32\DRIVERS\PavProc.sys []
R2 pmem;pmem; \??\C:\WINDOWS\System32\drivers\pmemnt.sys []
R2 PROCDD;IPS Helper Driver; C:\WINDOWS\system32\DRIVERS\PROCDD.SYS [2005-09-02 5120]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2005-07-19 163840]
R3 AEAudioService;AEAudio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2005-03-04 127872]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e1e5132.sys [2005-03-31 180736]
R3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys []
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-06-08 1050140]
R3 NETIMFLT01060044;PANDA NDIS IM Filter Miniport v1.6.0.44; C:\WINDOWS\system32\DRIVERS\neti1644.sys [2010-09-01 201032]
R3 PavTPK.sys;PavTPK.sys; \??\C:\WINDOWS\system32\PavTPK.sys []
R3 SenFiltService;SenFilt Service; C:\WINDOWS\system32\drivers\Senfilt.sys [2005-08-11 393088]
R3 TPM12;NSC Integrated Trusted Platform Module 1.2; C:\WINDOWS\system32\DRIVERS\nsctpm12.sys [2005-04-21 13056]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
S3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2001-08-17 117760]
S3 EsgScanner;EsgScanner; C:\WINDOWS\system32\DRIVERS\EsgScanner.sys [2012-06-22 19984]
S3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S4 agp440;Intel AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
S4 agpCPQ;Compaq AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2008-04-13 44928]
S4 alim1541;ALI AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2008-04-13 42752]
S4 amdagp;AMD AGP Bus Filter Driver; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2008-04-13 43008]
S4 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-08-17 13952]
S4 sisagp;SIS AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2008-04-13 40960]
S4 viaagp;VIA AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2008-04-13 42240]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 IPSSVC;IPS Core Service; C:\WINDOWS\system32\IPSSVC.EXE [2005-09-02 73728]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2013-08-08 182184]
R2 LexBceS;LexBce Server; C:\WINDOWS\system32\LEXBCES.EXE [2003-08-18 303104]
R2 Panda Software Controller;Panda Software Controller; C:\Program Files\Panda Security\Panda Gold Protection\PsCtrls.exe [2012-11-19 177440]
R2 PAVFNSVR;Panda Function Service; C:\Program Files\Panda Security\Panda Gold Protection\PavFnSvr.exe [2012-09-21 202016]
R2 PavPrSrv;Panda Process Protection Service; C:\Program Files\Common Files\Panda Security\PavShld\pavprsrv.exe [2008-02-04 62768]
R2 PAVSRV;Panda On-Access Anti-Malware Service; C:\Program Files\Panda Security\Panda Gold Protection\pavsrvx86.exe [2011-04-13 313664]
R2 PSHost;Panda Host Service; c:\program files\panda security\panda gold protection\firewall\PSHOST.EXE [2009-11-26 226560]
R2 PSIMSVC;Panda IManager Service; C:\Program Files\Panda Security\Panda Gold Protection\PsImSvc.exe [2008-06-19 108288]
R2 PskSvcRetail;Panda PSK service; C:\Program Files\Panda Security\Panda Gold Protection\PskSvc.exe [2010-08-16 28992]
R2 SpyHunter 4 Service;SpyHunter 4 Service; C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE [2013-06-27 770432]
R2 TPSrv;Panda TPSrv; C:\Program Files\Panda Security\Panda Gold Protection\TPSrv.exe [2012-11-16 156960]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-11 38912]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-08-09 116648]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-08-09 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-04-07 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 WmcCds;Windows Media Connect (WMC); c:\program files\windows media connect\mswmccds.exe [2004-08-11 483328]
S3 WmcCdsLs;Windows Media Connect (WMC) Helper; C:\Program Files\Windows Media Connect\mswmcls.exe [2004-08-10 28160]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o pomoc

#4 Příspěvek od Márty84 »

Jezkovy voci. Nekdo si hral na doktora. Co se tam provadelo s TDSSKillerem? Nasel neco?


:arrow: Zkopirujte mi sem tyto dva logy
2013-08-10 11:11:41 ----A---- C:\AdwCleaner[R1].txt
2013-08-10 10:35:26 ----A---- C:\TDSSKiller.2.8.16.0_10.08.2013_10.35.26_log.txt



:arrow: Odinstalujte Spybot - Search & Destroy a SpyHunter

:arrow: Ta Panda Security, to tam je uz dlouho, nebo to je taky cerstva zalezitost?
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

SimčaBrunoMars
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 19 pro 2012 20:57

Re: Prosím o pomoc

#5 Příspěvek od SimčaBrunoMars »

tu je log z adwcleaner :arrow:

# AdwCleaner v2.306 - Logfile created 08/10/2013 at 11:11:41
# Updated 19/07/2013 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Lenovo - LENOVO-47049E37
# Boot Mode : Normal
# Running from : C:\Documents and Settings\Lenovo\My Documents\Downloads\AdwCleaner.exe
# Option [Search]


***** [Services] *****


***** [Files / Folders] *****

File Found : C:\WINDOWS\system32\roboot.exe
Folder Found : C:\Documents and Settings\All Users\Application Data\Babylon
Folder Found : C:\Documents and Settings\All Users\Application Data\BetterSoft
Folder Found : C:\Documents and Settings\All Users\Application Data\savEnsharE
Folder Found : C:\Documents and Settings\Lenovo\Application Data\BabSolution
Folder Found : C:\Documents and Settings\Lenovo\Application Data\Babylon
Folder Found : C:\Documents and Settings\Lenovo\Application Data\OpenCandy

***** [Registry] *****

Key Found : HKCU\Software\AppDataLow\SProtector
Key Found : HKCU\Software\BabSolution
Key Found : HKCU\Software\DataMngr
Key Found : HKCU\Software\DataMngr_Toolbar
Key Found : HKCU\Software\Delta
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D70373C1-E897-E8DA-FF19-E23B4FA2E974}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKCU\Software\Softonic
Key Found : HKLM\SOFTWARE\5ee8cdfe26deb10
Key Found : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D70373C1-E897-E8DA-FF19-E23B4FA2E974}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Found : HKLM\SOFTWARE\Classes\Prod.cap
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Found : HKLM\Software\DataMngr
Key Found : HKLM\Software\Delta
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{62D82EC1-0D3A-DF54-8E3E-07E1337A5311}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Optimizer Pro_is1
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\OptimizerPro
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D70373C1-E897-E8DA-FF19-E23B4FA2E974}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{62D82EC1-0D3A-DF54-8E3E-07E1337A5311}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OptimizerPro
Key Found : HKLM\Software\SP Global
Key Found : HKLM\Software\SProtector
Key Found : HKU\S-1-5-21-1823023330-1460979184-14589832-1005\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]

***** [Internet Browsers] *****

-\\ Internet Explorer v6.0.2900.5512

[OK] Registry is clean.

-\\ Google Chrome v28.0.1500.95

File : C:\Documents and Settings\Lenovo\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

File : C:\Documents and Settings\Konto 2\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [4036 octets] - [10/08/2013 11:11:41]

########## EOF - C:\AdwCleaner[R1].txt - [4096 octets] ##########

:arrow: ten log z TDSS je dlhší ako 80000 znakov tak newm ako to poslat

:arrow: ten Spyhunter som odinštalovala,ale ten SpyBot neviem ako odinštalovat pretože tam nie je nič ako uninstall

:arrow: to panda security som tam dala tento týžden

SimčaBrunoMars
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 19 pro 2012 20:57

Re: Prosím o pomoc

#6 Příspěvek od SimčaBrunoMars »

:arrow: tu je prva polovica logu z TDSS

10:35:28.0125 1180
10:35:28.0125 1180 OS Version: 5.1.2600 ServicePack: 3.0
10:35:28.0125 1180 Product type: Workstation
10:35:28.0125 1180 ComputerName: LENOVO-47049E37
10:35:28.0125 1180 UserName: Lenovo
10:35:28.0125 1180 Windows directory: C:\WINDOWS
10:35:28.0125 1180 System windows directory: C:\WINDOWS
10:35:28.0125 1180 Processor architecture: Intel x86
10:35:28.0125 1180 Number of processors: 2
10:35:28.0125 1180 Page size: 0x1000
10:35:28.0125 1180 Boot type: Normal boot
10:35:28.0125 1180 ============================================================
10:35:30.0578 1180 Drive \Device\Harddisk0\DR0 - Size: 0x951240000 (37.27 Gb), SectorSize: 0x200, Cylinders: 0x1301, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
10:35:30.0578 1180 ============================================================
10:35:30.0578 1180 \Device\Harddisk0\DR0:
10:35:30.0578 1180 MBR partitions:
10:35:30.0578 1180 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x4138722
10:35:30.0578 1180 ============================================================
10:35:30.0593 1180 C: <-> \Device\Harddisk0\DR0\Partition1
10:35:30.0593 1180 ============================================================
10:35:30.0593 1180 Initialize success
10:35:30.0593 1180 ============================================================
10:36:38.0968 5308 ============================================================
10:36:38.0968 5308 Scan started
10:36:38.0968 5308 Mode: Manual;
10:36:38.0984 5308 ============================================================
10:36:39.0312 5308 ================ Scan system memory ========================
10:36:39.0312 5308 System memory - ok
10:36:39.0312 5308 ================ Scan services =============================
10:36:39.0453 5308 Abiosdsk - ok
10:36:39.0484 5308 [ 6ABB91494FE6C59089B9336452AB2EA3 ] abp480n5 C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
10:36:39.0484 5308 abp480n5 - ok
10:36:39.0500 5308 [ 0F2D66D5F08EBE2F77BB904288DCF6F0 ] ac97intc C:\WINDOWS\system32\drivers\ac97intc.sys
10:36:39.0500 5308 ac97intc - ok
10:36:39.0531 5308 [ 8FD99680A539792A30E97944FDAECF17 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
10:36:39.0531 5308 ACPI - ok
10:36:39.0562 5308 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
10:36:39.0578 5308 ACPIEC - ok
10:36:39.0640 5308 [ 62701BD138D063DEB603189B3E56F760 ] ADIHdAudAddService C:\WINDOWS\system32\drivers\ADIHdAud.sys
10:36:39.0640 5308 ADIHdAudAddService - ok
10:36:39.0671 5308 [ 9A11864873DA202C996558B2106B0BBC ] adpu160m C:\WINDOWS\system32\DRIVERS\adpu160m.sys
10:36:39.0671 5308 adpu160m - ok
10:36:39.0687 5308 [ 9F59AE2DE835641FBB0C6AFD80D8FA9B ] AEAudioService C:\WINDOWS\system32\drivers\AEAudio.sys
10:36:39.0687 5308 AEAudioService - ok
10:36:39.0703 5308 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
10:36:39.0718 5308 aec - ok
10:36:39.0750 5308 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
10:36:39.0765 5308 AFD - ok
10:36:39.0781 5308 [ 08FD04AA961BDC77FB983F328334E3D7 ] agp440 C:\WINDOWS\system32\DRIVERS\agp440.sys
10:36:39.0781 5308 agp440 - ok
10:36:39.0796 5308 [ 03A7E0922ACFE1B07D5DB2EEB0773063 ] agpCPQ C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
10:36:39.0796 5308 agpCPQ - ok
10:36:39.0812 5308 [ C23EA9B5F46C7F7910DB3EAB648FF013 ] Aha154x C:\WINDOWS\system32\DRIVERS\aha154x.sys
10:36:39.0812 5308 Aha154x - ok
10:36:39.0843 5308 [ 19DD0FB48B0C18892F70E2E7D61A1529 ] aic78u2 C:\WINDOWS\system32\DRIVERS\aic78u2.sys
10:36:39.0843 5308 aic78u2 - ok
10:36:39.0875 5308 [ B7FE594A7468AA0132DEB03FB8E34326 ] aic78xx C:\WINDOWS\system32\DRIVERS\aic78xx.sys
10:36:39.0875 5308 aic78xx - ok
10:36:39.0906 5308 [ A9A3DAA780CA6C9671A19D52456705B4 ] Alerter C:\WINDOWS\system32\alrsvc.dll
10:36:39.0906 5308 Alerter - ok
10:36:39.0937 5308 [ 8C515081584A38AA007909CD02020B3D ] ALG C:\WINDOWS\System32\alg.exe
10:36:39.0937 5308 ALG - ok
10:36:39.0953 5308 [ 1140AB9938809700B46BB88E46D72A96 ] AliIde C:\WINDOWS\system32\DRIVERS\aliide.sys
10:36:39.0953 5308 AliIde - ok
10:36:39.0968 5308 [ CB08AED0DE2DD889A8A820CD8082D83C ] alim1541 C:\WINDOWS\system32\DRIVERS\alim1541.sys
10:36:39.0968 5308 alim1541 - ok
10:36:39.0984 5308 [ 95B4FB835E28AA1336CEEB07FD5B9398 ] amdagp C:\WINDOWS\system32\DRIVERS\amdagp.sys
10:36:39.0984 5308 amdagp - ok
10:36:40.0015 5308 [ AABEB007D994D269F98902FA212DE588 ] AmFSM C:\WINDOWS\system32\DRIVERS\amm8651.sys
10:36:40.0015 5308 AmFSM - ok
10:36:40.0031 5308 [ 79F5ADD8D24BD6893F2903A3E2F3FAD6 ] amsint C:\WINDOWS\system32\DRIVERS\amsint.sys
10:36:40.0031 5308 amsint - ok
10:36:40.0062 5308 [ 6B467E791EC470D010BD50E5E98BF467 ] APPFLT C:\WINDOWS\system32\Drivers\APPFLT.SYS
10:36:40.0062 5308 APPFLT - ok
10:36:40.0093 5308 [ D8849F77C0B66226335A59D26CB4EDC6 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
10:36:40.0093 5308 AppMgmt - ok
10:36:40.0125 5308 [ 62D318E9A0C8FC9B780008E724283707 ] asc C:\WINDOWS\system32\DRIVERS\asc.sys
10:36:40.0140 5308 asc - ok
10:36:40.0140 5308 [ 69EB0CC7714B32896CCBFD5EDCBEA447 ] asc3350p C:\WINDOWS\system32\DRIVERS\asc3350p.sys
10:36:40.0140 5308 asc3350p - ok
10:36:40.0156 5308 [ 5D8DE112AA0254B907861E9E9C31D597 ] asc3550 C:\WINDOWS\system32\DRIVERS\asc3550.sys
10:36:40.0156 5308 asc3550 - ok
10:36:40.0406 5308 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
10:36:40.0515 5308 aspnet_state - ok
10:36:40.0546 5308 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
10:36:40.0546 5308 AsyncMac - ok
10:36:40.0578 5308 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
10:36:40.0578 5308 atapi - ok
10:36:40.0578 5308 Atdisk - ok
10:36:40.0640 5308 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
10:36:40.0640 5308 Atmarpc - ok
10:36:40.0671 5308 [ DEF7A7882BEC100FE0B2CE2549188F9D ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
10:36:40.0671 5308 AudioSrv - ok
10:36:40.0671 5308 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
10:36:40.0671 5308 audstub - ok
10:36:40.0718 5308 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
10:36:40.0718 5308 Beep - ok
10:36:40.0750 5308 [ 574738F61FCA2935F5265DC4E5691314 ] BITS C:\WINDOWS\system32\qmgr.dll
10:36:40.0765 5308 BITS - ok
10:36:40.0796 5308 [ CFD4E51402DA9838B5A04AE680AF54A0 ] Browser C:\WINDOWS\System32\browser.dll
10:36:40.0796 5308 Browser - ok
10:36:40.0828 5308 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
10:36:40.0828 5308 cbidf - ok
10:36:40.0828 5308 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
10:36:40.0828 5308 cbidf2k - ok
10:36:40.0859 5308 [ F3EC03299634490E97BBCE94CD2954C7 ] cd20xrnt C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
10:36:40.0859 5308 cd20xrnt - ok
10:36:40.0875 5308 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
10:36:40.0875 5308 Cdaudio - ok
10:36:40.0890 5308 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
10:36:40.0890 5308 Cdfs - ok
10:36:40.0906 5308 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
10:36:40.0906 5308 Cdrom - ok
10:36:40.0906 5308 Changer - ok
10:36:40.0937 5308 [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] CiSvc C:\WINDOWS\system32\cisvc.exe
10:36:40.0937 5308 CiSvc - ok
10:36:40.0953 5308 [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
10:36:40.0953 5308 ClipSrv - ok
10:36:40.0984 5308 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
10:36:41.0031 5308 clr_optimization_v2.0.50727_32 - ok
10:36:41.0046 5308 [ E5DCB56C533014ECBC556A8357C929D5 ] CmdIde C:\WINDOWS\system32\DRIVERS\cmdide.sys
10:36:41.0062 5308 CmdIde - ok
10:36:41.0062 5308 COMSysApp - ok
10:36:41.0093 5308 [ 3EE529119EED34CD212A215E8C40D4B6 ] Cpqarray C:\WINDOWS\system32\DRIVERS\cpqarray.sys
10:36:41.0093 5308 Cpqarray - ok
10:36:41.0125 5308 [ 3D4E199942E29207970E04315D02AD3B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
10:36:41.0125 5308 CryptSvc - ok
10:36:41.0140 5308 [ E550E7418984B65A78299D248F0A7F36 ] dac2w2k C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
10:36:41.0156 5308 dac2w2k - ok
10:36:41.0171 5308 [ 683789CAA3864EB46125AE86FF677D34 ] dac960nt C:\WINDOWS\system32\DRIVERS\dac960nt.sys
10:36:41.0171 5308 dac960nt - ok
10:36:41.0187 5308 [ 6B27A5C03DFB94B4245739065431322C ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
10:36:41.0203 5308 DcomLaunch - ok
10:36:41.0218 5308 [ 5E38D7684A49CACFB752B046357E0589 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
10:36:41.0234 5308 Dhcp - ok
10:36:41.0234 5308 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
10:36:41.0250 5308 Disk - ok
10:36:41.0250 5308 dmadmin - ok
10:36:41.0281 5308 [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
10:36:41.0296 5308 dmboot - ok
10:36:41.0296 5308 [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio C:\WINDOWS\system32\drivers\dmio.sys
10:36:41.0312 5308 dmio - ok
10:36:41.0328 5308 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
10:36:41.0328 5308 dmload - ok
10:36:41.0343 5308 [ 57EDEC2E5F59F0335E92F35184BC8631 ] dmserver C:\WINDOWS\System32\dmserver.dll
10:36:41.0343 5308 dmserver - ok
10:36:41.0359 5308 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
10:36:41.0359 5308 DMusic - ok
10:36:41.0390 5308 [ 5F7E24FA9EAB896051FFB87F840730D2 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
10:36:41.0390 5308 Dnscache - ok
10:36:41.0437 5308 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
10:36:41.0437 5308 Dot3svc - ok
10:36:41.0453 5308 [ 40F3B93B4E5B0126F2F5C0A7A5E22660 ] dpti2o C:\WINDOWS\system32\DRIVERS\dpti2o.sys
10:36:41.0453 5308 dpti2o - ok
10:36:41.0468 5308 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
10:36:41.0468 5308 drmkaud - ok
10:36:41.0515 5308 [ 5BB0F91FFD84057D094D106D9FF53298 ] DSAFLT C:\WINDOWS\system32\Drivers\DSAFLT.SYS
10:36:41.0515 5308 DSAFLT - ok
10:36:41.0531 5308 [ 3FCA03CBCA11269F973B70FA483C88EF ] E100B C:\WINDOWS\system32\DRIVERS\e100b325.sys
10:36:41.0531 5308 E100B - ok
10:36:41.0593 5308 [ 0849EACDC01487573ADD86F5E470806C ] e1express C:\WINDOWS\system32\DRIVERS\e1e5132.sys
10:36:41.0593 5308 e1express - ok
10:36:41.0640 5308 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll
10:36:41.0640 5308 EapHost - ok
10:36:41.0671 5308 [ BC93B4A066477954555966D77FEC9ECB ] ERSvc C:\WINDOWS\System32\ersvc.dll
10:36:41.0671 5308 ERSvc - ok
10:36:41.0765 5308 [ 2407B8164E966755BC6A4242FC9DE31E ] esgiguard C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys
10:36:41.0765 5308 esgiguard - ok
10:36:41.0781 5308 [ 01CE484FF6D70A39479BC6D619DE7ED6 ] EsgScanner C:\WINDOWS\system32\DRIVERS\EsgScanner.sys
10:36:41.0781 5308 EsgScanner - ok
10:36:41.0796 5308 [ 65DF52F5B8B6E9BBD183505225C37315 ] Eventlog C:\WINDOWS\system32\services.exe
10:36:41.0812 5308 Eventlog - ok
10:36:41.0843 5308 [ D4991D98F2DB73C60D042F1AEF79EFAE ] EventSystem C:\WINDOWS\system32\es.dll
10:36:41.0843 5308 EventSystem - ok
10:36:41.0859 5308 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
10:36:41.0859 5308 Fastfat - ok
10:36:41.0890 5308 [ 99BC0B50F511924348BE19C7C7313BBF ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
10:36:41.0906 5308 FastUserSwitchingCompatibility - ok
10:36:41.0921 5308 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
10:36:41.0921 5308 Fdc - ok
10:36:41.0937 5308 [ D45926117EB9FA946A6AF572FBE1CAA3 ] Fips C:\WINDOWS\system32\drivers\Fips.sys
10:36:41.0937 5308 Fips - ok
10:36:41.0953 5308 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys
10:36:41.0953 5308 Flpydisk - ok
10:36:41.0984 5308 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
10:36:41.0984 5308 FltMgr - ok
10:36:42.0000 5308 [ A38B9BA7A4C17F7DCE9EC4E8F7870026 ] FNETMON C:\WINDOWS\system32\Drivers\fnetmon.SYS
10:36:42.0000 5308 FNETMON - ok
10:36:42.0062 5308 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
10:36:42.0078 5308 FontCache3.0.0.0 - ok
10:36:42.0093 5308 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
10:36:42.0093 5308 Fs_Rec - ok
10:36:42.0109 5308 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
10:36:42.0125 5308 Ftdisk - ok
10:36:42.0140 5308 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
10:36:42.0140 5308 Gpc - ok
10:36:42.0203 5308 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
10:36:42.0203 5308 gupdate - ok
10:36:42.0203 5308 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
10:36:42.0203 5308 gupdatem - ok
10:36:42.0234 5308 [ C1B577B2169900F4CF7190C39F085794 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
10:36:42.0234 5308 gusvc - ok
10:36:42.0265 5308 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
10:36:42.0265 5308 HDAudBus - ok
10:36:42.0296 5308 [ 4FCCA060DFE0C51A09DD5C3843888BCD ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
10:36:42.0312 5308 helpsvc - ok
10:36:42.0312 5308 HidServ - ok
10:36:42.0328 5308 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
10:36:42.0328 5308 HidUsb - ok
10:36:42.0359 5308 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
10:36:42.0359 5308 hkmsvc - ok
10:36:42.0406 5308 [ B028377DEA0546A5FCFBA928A8AEFAE0 ] hpn C:\WINDOWS\system32\DRIVERS\hpn.sys
10:36:42.0406 5308 hpn - ok
10:36:42.0437 5308 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
10:36:42.0437 5308 HTTP - ok
10:36:42.0468 5308 [ 6100A808600F44D999CEBDEF8841C7A3 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
10:36:42.0468 5308 HTTPFilter - ok
10:36:42.0484 5308 [ 9368670BD426EBEA5E8B18A62416EC28 ] i2omgmt C:\WINDOWS\system32\drivers\i2omgmt.sys
10:36:42.0484 5308 i2omgmt - ok
10:36:42.0500 5308 [ F10863BF1CCC290BABD1A09188AE49E0 ] i2omp C:\WINDOWS\system32\DRIVERS\i2omp.sys
10:36:42.0500 5308 i2omp - ok
10:36:42.0515 5308 [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
10:36:42.0515 5308 i8042prt - ok
10:36:42.0578 5308 [ 4007984827E19E6A5B6FAF8532EAEFBA ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
10:36:42.0593 5308 ialm - ok
10:36:42.0656 5308 [ 6F95324909B502E2651442C1548AB12F ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
10:36:42.0656 5308 IDriverT - ok
10:36:42.0703 5308 [ C4E887CF7BA2D3624233231AECD34C9D ] IDSFLT C:\WINDOWS\system32\Drivers\IDSFLT.SYS
10:36:42.0703 5308 IDSFLT - ok
10:36:42.0796 5308 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
10:36:42.0859 5308 idsvc - ok
10:36:42.0890 5308 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
10:36:42.0890 5308 Imapi - ok
10:36:42.0921 5308 [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService C:\WINDOWS\system32\imapi.exe
10:36:42.0921 5308 ImapiService - ok
10:36:42.0953 5308 [ 4A40E045FAEE58631FD8D91AFC620719 ] ini910u C:\WINDOWS\system32\DRIVERS\ini910u.sys
10:36:42.0953 5308 ini910u - ok
10:36:42.0968 5308 [ B5466A9250342A7AA0CD1FBA13420678 ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys
10:36:42.0968 5308 IntelIde - ok
10:36:42.0984 5308 [ 8C953733D8F36EB2133F5BB58808B66B ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
10:36:43.0000 5308 intelppm - ok
10:36:43.0000 5308 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys
10:36:43.0000 5308 Ip6Fw - ok
10:36:43.0031 5308 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
10:36:43.0031 5308 IpFilterDriver - ok
10:36:43.0046 5308 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
10:36:43.0046 5308 IpInIp - ok
10:36:43.0062 5308 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
10:36:43.0062 5308 IpNat - ok
10:36:43.0078 5308 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
10:36:43.0078 5308 IPSec - ok
10:36:43.0109 5308 [ 8B901EDCE8380AA7BAD34965E192B3E4 ] IPSSVC C:\WINDOWS\system32\IPSSVC.EXE
10:36:43.0109 5308 IPSSVC - ok
10:36:43.0125 5308 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
10:36:43.0125 5308 IRENUM - ok
10:36:43.0140 5308 [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
10:36:43.0140 5308 isapnp - ok
10:36:43.0218 5308 [ 9ECF00E19736054E019C532AED8228FC ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe
10:36:43.0218 5308 JavaQuickStarterService - ok
10:36:43.0250 5308 [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
10:36:43.0250 5308 Kbdclass - ok
10:36:43.0281 5308 [ 9EF487A186DEA361AA06913A75B3FA99 ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
10:36:43.0281 5308 kbdhid - ok
10:36:43.0296 5308 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
10:36:43.0296 5308 kmixer - ok
10:36:43.0312 5308 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
10:36:43.0328 5308 KSecDD - ok
10:36:43.0359 5308 [ 3A7C3CBE5D96B8AE96CE81F0B22FB527 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
10:36:43.0359 5308 lanmanserver - ok
10:36:43.0390 5308 [ A8888A5327621856C0CEC4E385F69309 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
10:36:43.0406 5308 lanmanworkstation - ok
10:36:43.0406 5308 lbrtfdc - ok
10:36:43.0453 5308 [ 027D03D9D8AB95194A115A999E960AC0 ] LexBceS C:\WINDOWS\system32\LEXBCES.EXE
10:36:43.0453 5308 LexBceS - ok
10:36:43.0484 5308 [ A7DB739AE99A796D91580147E919CC59 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
10:36:43.0484 5308 LmHosts - ok
10:36:43.0515 5308 [ 986B1FF5814366D71E0AC5755C88F2D3 ] Messenger C:\WINDOWS\System32\msgsvc.dll
10:36:43.0531 5308 Messenger - ok
10:36:43.0562 5308 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
10:36:43.0562 5308 mnmdd - ok
10:36:43.0625 5308 [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
10:36:43.0625 5308 mnmsrvc - ok
10:36:43.0640 5308 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
10:36:43.0656 5308 Modem - ok
10:36:43.0671 5308 [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
10:36:43.0671 5308 Mouclass - ok
10:36:43.0703 5308 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
10:36:43.0703 5308 mouhid - ok
10:36:43.0718 5308 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
10:36:43.0718 5308 MountMgr - ok
10:36:43.0734 5308 [ 3F4BB95E5A44F3BE34824E8E7CAF0737 ] mraid35x C:\WINDOWS\system32\DRIVERS\mraid35x.sys
10:36:43.0734 5308 mraid35x - ok
10:36:43.0734 5308 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
10:36:43.0750 5308 MRxDAV - ok
10:36:43.0796 5308 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
10:36:43.0796 5308 MRxSmb - ok
10:36:43.0843 5308 [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC C:\WINDOWS\system32\msdtc.exe
10:36:43.0843 5308 MSDTC - ok
10:36:43.0859 5308 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
10:36:43.0859 5308 Msfs - ok
10:36:43.0875 5308 MSIServer - ok
10:36:43.0906 5308 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
10:36:43.0906 5308 MSKSSRV - ok
10:36:43.0906 5308 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
10:36:43.0906 5308 MSPCLOCK - ok
10:36:43.0921 5308 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
10:36:43.0921 5308 MSPQM - ok
10:36:43.0937 5308 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
10:36:43.0937 5308 mssmbios - ok
10:36:43.0968 5308 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
10:36:43.0968 5308 Mup - ok
10:36:44.0015 5308 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
10:36:44.0015 5308 napagent - ok
10:36:44.0046 5308 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
10:36:44.0046 5308 NDIS - ok
10:36:44.0078 5308 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
10:36:44.0078 5308 NdisTapi - ok
10:36:44.0093 5308 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
10:36:44.0093 5308 Ndisuio - ok
10:36:44.0109 5308 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
10:36:44.0109 5308 NdisWan - ok
10:36:44.0140 5308 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
10:36:44.0140 5308 NDProxy - ok
10:36:44.0171 5308 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
10:36:44.0171 5308 NetBIOS - ok
10:36:44.0187 5308 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
10:36:44.0187 5308 NetBT - ok
10:36:44.0234 5308 [ B857BA82860D7FF85AE29B095645563B ] NetDDE C:\WINDOWS\system32\netdde.exe
10:36:44.0234 5308 NetDDE - ok
10:36:44.0234 5308 [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
10:36:44.0234 5308 NetDDEdsdm - ok
10:36:44.0281 5308 [ D8F44FC13DB193C9379297973EE42272 ] NETFLTDI C:\WINDOWS\system32\Drivers\NETFLTDI.SYS
10:36:44.0281 5308 NETFLTDI - ok
10:36:44.0328 5308 [ 9DEE136C4863D5065437D07262BB5C40 ] NETIMFLT01060044 C:\WINDOWS\system32\DRIVERS\neti1644.sys
10:36:44.0328 5308 NETIMFLT01060044 - ok
10:36:44.0359 5308 [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon C:\WINDOWS\system32\lsass.exe
10:36:44.0359 5308 Netlogon - ok
10:36:44.0375 5308 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE ] Netman C:\WINDOWS\System32\netman.dll
10:36:44.0375 5308 Netman - ok
10:36:44.0406 5308 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
10:36:44.0406 5308 NetTcpPortSharing - ok
10:36:44.0421 5308 [ 943337D786A56729263071623BBB9DE5 ] Nla C:\WINDOWS\System32\mswsock.dll
10:36:44.0437 5308 Nla - ok
10:36:44.0453 5308 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
10:36:44.0453 5308 Npfs - ok
10:36:44.0484 5308 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
10:36:44.0500 5308 Ntfs - ok
10:36:44.0515 5308 [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
10:36:44.0515 5308 NtLmSsp - ok
10:36:44.0578 5308 [ 156F64A3345BD23C600655FB4D10BC08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
10:36:44.0593 5308 NtmsSvc - ok
10:36:44.0609 5308 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
10:36:44.0609 5308 Null - ok
10:36:44.0671 5308 [ 2B298519EDBFCF451D43E0F1E8F1006D ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
10:36:44.0718 5308 nv - ok
10:36:44.0750 5308 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
10:36:44.0750 5308 NwlnkFlt - ok
10:36:44.0765 5308 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
10:36:44.0781 5308 NwlnkFwd - ok
10:36:45.0015 5308 [ 54F00466439F749EDDF29CBA0BC1A28A ] Panda Software Controller C:\Program Files\Panda Security\Panda Gold Protection\PsCtrls.exe
10:36:45.0015 5308 Panda Software Controller - ok
10:36:45.0046 5308 [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
10:36:45.0046 5308 Parport - ok
10:36:45.0062 5308 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
10:36:45.0062 5308 PartMgr - ok
10:36:45.0093 5308 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
10:36:45.0093 5308 ParVdm - ok
10:36:45.0109 5308 [ 55D654258A9C509B671310C314BD30B4 ] pavboot C:\WINDOWS\system32\Drivers\pavboot.sys
10:36:45.0125 5308 pavboot - ok
10:36:45.0171 5308 [ F458128A5321BB48DF7B3D8E279F6393 ] PAVFNSVR C:\Program Files\Panda Security\Panda Gold Protection\PavFnSvr.exe
10:36:45.0171 5308 PAVFNSVR - ok
10:36:45.0203 5308 [ 3373D4B2C105AB5B3C8E081C3D9D34FC ] PavProc C:\WINDOWS\system32\DRIVERS\PavProc.sys
10:36:45.0203 5308 PavProc - ok
10:36:45.0234 5308 [ 2AE3F6B23448443BBEF5DE207159213B ] PavPrSrv C:\Program Files\Common Files\Panda Security\PavShld\pavprsrv.exe
10:36:45.0234 5308 PavPrSrv - ok
10:36:45.0312 5308 [ 4D8C2645A12FDDF9CD4A68DDE8496BEF ] PAVSRV C:\Program Files\Panda Security\Panda Gold Protection\pavsrvx86.exe
10:36:45.0312 5308 PAVSRV - ok
10:36:45.0312 5308 PavTPK.sys - ok
10:36:45.0343 5308 [ A219903CCF74233761D92BEF471A07B1 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
10:36:45.0343 5308 PCI - ok
10:36:45.0343 5308 PCIDump - ok
10:36:45.0359 5308 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
10:36:45.0359 5308 PCIIde - ok
10:36:45.0390 5308 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
10:36:45.0390 5308 Pcmcia - ok
10:36:45.0406 5308 PDCOMP - ok
10:36:45.0406 5308 PDFRAME - ok
10:36:45.0421 5308 PDRELI - ok
10:36:45.0421 5308 PDRFRAME - ok
10:36:45.0437 5308 [ 6C14B9C19BA84F73D3A86DBA11133101 ] perc2 C:\WINDOWS\system32\DRIVERS\perc2.sys
10:36:45.0437 5308 perc2 - ok
10:36:45.0468 5308 [ F50F7C27F131AFE7BEBA13E14A3B9416 ] perc2hib C:\WINDOWS\system32\DRIVERS\perc2hib.sys
10:36:45.0468 5308 perc2hib - ok
10:36:45.0515 5308 [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay C:\WINDOWS\system32\services.exe
10:36:45.0515 5308 PlugPlay - ok
10:36:45.0546 5308 [ FA292805788528C083F416E151B60AB6 ] pmem C:\WINDOWS\System32\drivers\pmemnt.sys
10:36:45.0546 5308 pmem - ok
10:36:45.0578 5308 [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
10:36:45.0578 5308 PolicyAgent - ok
10:36:45.0609 5308 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
10:36:45.0609 5308 PptpMiniport - ok
10:36:45.0640 5308 [ 884228979A63A63799B48A2926481EA1 ] PROCDD C:\WINDOWS\system32\DRIVERS\PROCDD.SYS
10:36:45.0640 5308 PROCDD - ok
10:36:45.0656 5308 [ A32BEBAF723557681BFC6BD93E98BD26 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
10:36:45.0656 5308 Processor - ok
10:36:45.0671 5308 [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
10:36:45.0671 5308 ProtectedStorage - ok
10:36:45.0687 5308 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
10:36:45.0687 5308 PSched - ok
10:36:45.0781 5308 [ 532053E8E3BB8FA7166AB4E7685FDDCC ] PSHost c:\program files\panda security\panda gold protection\firewall\PSHOST.EXE
10:36:45.0781 5308 PSHost - ok
10:36:45.0828 5308 [ 196C450F2779D0B462C444DA4906EA7F ] PSIMSVC C:\Program Files\Panda Security\Panda Gold Protection\PsImSvc.exe
10:36:45.0828 5308 PSIMSVC - ok
10:36:45.0859 5308 [ 341457B79B3FC31A80C346C767045879 ] PskSvcRetail C:\Program Files\Panda Security\Panda Gold Protection\PskSvc.exe
10:36:45.0859 5308 PskSvcRetail - ok
10:36:45.0890 5308 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
10:36:45.0890 5308 Ptilink - ok
10:36:45.0921 5308 [ 49452BFCEC22F36A7A9B9C2181BC3042 ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
10:36:45.0921 5308 PxHelp20 - ok
10:36:45.0937 5308 [ 0A63FB54039EB5662433CABA3B26DBA7 ] ql1080 C:\WINDOWS\system32\DRIVERS\ql1080.sys
10:36:45.0937 5308 ql1080 - ok
10:36:45.0953 5308 [ 6503449E1D43A0FF0201AD5CB1B8C706 ] Ql10wnt C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
10:36:45.0968 5308 Ql10wnt - ok
10:36:45.0968 5308 [ 156ED0EF20C15114CA097A34A30D8A01 ] ql12160 C:\WINDOWS\system32\DRIVERS\ql12160.sys
10:36:45.0968 5308 ql12160 - ok
10:36:45.0984 5308 [ 70F016BEBDE6D29E864C1230A07CC5E6 ] ql1240 C:\WINDOWS\system32\DRIVERS\ql1240.sys
10:36:45.0984 5308 ql1240 - ok
10:36:46.0000 5308 [ 907F0AEEA6BC451011611E732BD31FCF ] ql1280 C:\WINDOWS\system32\DRIVERS\ql1280.sys
10:36:46.0000 5308 ql1280 - ok
10:36:46.0015 5308 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
10:36:46.0015 5308 RasAcd - ok
10:36:46.0046 5308 [ AD188BE7BDF94E8DF4CA0A55C00A5073 ] RasAuto C:\WINDOWS\System32\rasauto.dll
10:36:46.0046 5308 RasAuto - ok
10:36:46.0078 5308 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
10:36:46.0078 5308 Rasl2tp - ok
10:36:46.0109 5308 [ 76A9A3CBEADD68CC57CDA5E1D7448235 ] RasMan C:\WINDOWS\System32\rasmans.dll
10:36:46.0109 5308 RasMan - ok
10:36:46.0125 5308 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
10:36:46.0125 5308 RasPppoe - ok
10:36:46.0140 5308 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
10:36:46.0140 5308 Raspti - ok
10:36:46.0187 5308 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
10:36:46.0187 5308 Rdbss - ok
10:36:46.0187 5308 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
10:36:46.0187 5308 RDPCDD - ok
10:36:46.0203 5308 [ 15CABD0F7C00C47C70124907916AF3F1 ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
10:36:46.0218 5308 rdpdr - ok
10:36:46.0250 5308 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
10:36:46.0250 5308 RDPWD - ok
10:36:46.0296 5308 [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
10:36:46.0296 5308 RDSessMgr - ok
10:36:46.0312 5308 [ F828DD7E1419B6653894A8F97A0094C5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
10:36:46.0312 5308 redbook - ok
10:36:46.0343 5308 [ 7E699FF5F59B5D9DE5390E3C34C67CF5 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
10:36:46.0343 5308 RemoteAccess - ok
10:36:46.0390 5308 [ 5B19B557B0C188210A56A6B699D90B8F ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
10:36:46.0390 5308 RemoteRegistry - ok
10:36:46.0421 5308 [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator C:\WINDOWS\system32\locator.exe
10:36:46.0421 5308 RpcLocator - ok
10:36:46.0453 5308 [ 6B27A5C03DFB94B4245739065431322C ] RpcSs C:\WINDOWS\system32\rpcss.dll
10:36:46.0453 5308 RpcSs - ok
10:36:46.0484 5308 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\system32\rsvp.exe
10:36:46.0484 5308 RSVP - ok
10:36:46.0500 5308 [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs C:\WINDOWS\system32\lsass.exe
10:36:46.0500 5308 SamSs - ok
10:36:46.0531 5308 [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
10:36:46.0546 5308 SCardSvr - ok
10:36:46.0609 5308 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA ] Schedule C:\WINDOWS\system32\schedsvc.dll
10:36:46.0609 5308 Schedule - ok
10:36:46.0640 5308 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
10:36:46.0640 5308 Secdrv - ok
10:36:46.0656 5308 [ CBE612E2BB6A10E3563336191EDA1250 ] seclogon C:\WINDOWS\System32\seclogon.dll
10:36:46.0656 5308 seclogon - ok
10:36:46.0687 5308 [ ECA77BEEB2BE8D573CF1B265E44FBFBD ] SenFiltService C:\WINDOWS\system32\drivers\Senfilt.sys
10:36:46.0687 5308 SenFiltService - ok
10:36:46.0718 5308 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0 ] SENS C:\WINDOWS\system32\sens.dll
10:36:46.0718 5308 SENS - ok
10:36:46.0750 5308 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
10:36:46.0750 5308 serenum - ok
10:36:46.0765 5308 [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
10:36:46.0765 5308 Serial - ok
10:36:46.0796 5308 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
10:36:46.0796 5308 Sfloppy - ok
10:36:46.0828 5308 [ 83F41D0D89645D7235C051AB1D9523AC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
10:36:46.0828 5308 SharedAccess - ok
10:36:46.0859 5308 [ 99BC0B50F511924348BE19C7C7313BBF ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
10:36:46.0859 5308 ShellHWDetection - ok
10:36:46.0875 5308 [ 32D6F7632234F0354C79E915CA4613D4 ] ShldDrv C:\WINDOWS\system32\DRIVERS\ShlDrv51.sys
10:36:46.0875 5308 ShldDrv - ok
10:36:46.0890 5308 Simbad - ok
10:36:46.0921 5308 [ 6B33D0EBD30DB32E27D1D78FE946A754 ] sisagp C:\WINDOWS\system32\DRIVERS\sisagp.sys
10:36:46.0921 5308 sisagp - ok
10:36:46.0968 5308 [ 83C0F71F86D3BDAF915685F3D568B20E ] Sparrow C:\WINDOWS\system32\DRIVERS\sparrow.sys
10:36:46.0968 5308 Sparrow - ok
10:36:46.0984 5308 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
10:36:46.0984 5308 splitter - ok
10:36:47.0031 5308 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
10:36:47.0031 5308 Spooler - ok
10:36:47.0078 5308 [ 8494B173DD812F7F6A87F2385E444B18 ] SpyHunter 4 Service C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE
10:36:47.0078 5308 SpyHunter 4 Service - ok
10:36:47.0109 5308 [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
10:36:47.0109 5308 sr - ok
10:36:47.0140 5308 [ 3805DF0AC4296A34BA4BF93B346CC378 ] srservice C:\WINDOWS\system32\srsvc.dll
10:36:47.0140 5308 srservice - ok
10:36:47.0187 5308 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
10:36:47.0203 5308 Srv - ok
10:36:47.0203 5308 [ 0A5679B3714EDAB99E357057EE88FCA6 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
10:36:47.0218 5308 SSDPSRV - ok
10:36:47.0250 5308 [ 8BAD69CBAC032D4BBACFCE0306174C30 ] stisvc C:\WINDOWS\system32\wiaservc.dll
10:36:47.0250 5308 stisvc - ok
10:36:47.0281 5308 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
10:36:47.0281 5308 swenum - ok
10:36:47.0296 5308 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
10:36:47.0296 5308 swmidi - ok
10:36:47.0312 5308 SwPrv - ok
10:36:47.0328 5308 [ 1FF3217614018630D0A6758630FC698C ] symc810 C:\WINDOWS\system32\DRIVERS\symc810.sys
10:36:47.0328 5308 symc810 - ok
10:36:47.0359 5308 [ 070E001D95CF725186EF8B20335F933C ] symc8xx C:\WINDOWS\system32\DRIVERS\symc8xx.sys
10:36:47.0359 5308 symc8xx - ok
10:36:47.0359 5308 [ 80AC1C4ABBE2DF3B738BF15517A51F2C ] sym_hi C:\WINDOWS\system32\DRIVERS\sym_hi.sys
10:36:47.0359 5308 sym_hi - ok
10:36:47.0375 5308 [ BF4FAB949A382A8E105F46EBB4937058 ] sym_u3 C:\WINDOWS\system32\DRIVERS\sym_u3.sys
10:36:47.0375 5308 sym_u3 - ok
10:36:47.0390 5308 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
10:36:47.0390 5308 sysaudio - ok
10:36:47.0437 5308 [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
10:36:47.0437 5308 SysmonLog - ok
10:36:47.0484 5308 [ 3CB78C17BB664637787C9A1C98F79C38 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
10:36:47.0484 5308 TapiSrv - ok

SimčaBrunoMars
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 19 pro 2012 20:57

Re: Prosím o pomoc

#7 Příspěvek od SimčaBrunoMars »

:arrow: tu je druha polovica z logu z TDSS

10:35:26.0125 1180 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
10:35:28.0125 1180 ============================================================
10:35:28.0125 1180 Current date / time: 2013/08/10 10:35:28.0125
10:35:28.0125 1180 SystemInfo:

10:36:47.0531 5308 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
10:36:47.0531 5308 Tcpip - ok
10:36:47.0562 5308 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
10:36:47.0562 5308 TDPIPE - ok
10:36:47.0578 5308 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
10:36:47.0578 5308 TDTCP - ok
10:36:47.0593 5308 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
10:36:47.0593 5308 TermDD - ok
10:36:47.0640 5308 [ FF3477C03BE7201C294C35F684B3479F ] TermService C:\WINDOWS\System32\termsrv.dll
10:36:47.0640 5308 TermService - ok
10:36:47.0656 5308 [ 99BC0B50F511924348BE19C7C7313BBF ] Themes C:\WINDOWS\System32\shsvcs.dll
10:36:47.0671 5308 Themes - ok
10:36:47.0687 5308 [ DB7205804759FF62C34E3EFD8A4CC76A ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
10:36:47.0703 5308 TlntSvr - ok
10:36:47.0734 5308 [ F2790F6AF01321B172AA62F8E1E187D9 ] TosIde C:\WINDOWS\system32\DRIVERS\toside.sys
10:36:47.0734 5308 TosIde - ok
10:36:47.0750 5308 [ 41B3FC80A578CAB4B4E0E39371F71012 ] TPM12 C:\WINDOWS\system32\DRIVERS\nsctpm12.sys
10:36:47.0750 5308 TPM12 - ok
10:36:47.0812 5308 [ F7F79FCB3331BC2DB57572E33A5A969D ] TPSrv C:\Program Files\Panda Security\Panda Gold Protection\TPSrv.exe
10:36:47.0812 5308 TPSrv - ok
10:36:47.0843 5308 [ 55BCA12F7F523D35CA3CB833C725F54E ] TrkWks C:\WINDOWS\system32\trkwks.dll
10:36:47.0859 5308 TrkWks - ok
10:36:47.0875 5308 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
10:36:47.0875 5308 Udfs - ok
10:36:47.0890 5308 [ 1B698A51CD528D8DA4FFAED66DFC51B9 ] ultra C:\WINDOWS\system32\DRIVERS\ultra.sys
10:36:47.0890 5308 ultra - ok
10:36:47.0921 5308 [ C81B8635DEE0D3EF5F64B3DD643023A5 ] UMWdf C:\WINDOWS\system32\wdfmgr.exe
10:36:47.0921 5308 UMWdf - ok
10:36:47.0953 5308 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
10:36:47.0968 5308 Update - ok
10:36:48.0000 5308 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 ] upnphost C:\WINDOWS\System32\upnphost.dll
10:36:48.0000 5308 upnphost - ok
10:36:48.0031 5308 [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS C:\WINDOWS\System32\ups.exe
10:36:48.0031 5308 UPS - ok
10:36:48.0062 5308 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
10:36:48.0062 5308 usbehci - ok
10:36:48.0093 5308 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
10:36:48.0093 5308 usbhub - ok
10:36:48.0140 5308 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
10:36:48.0140 5308 usbprint - ok
10:36:48.0171 5308 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
10:36:48.0171 5308 usbscan - ok
10:36:48.0203 5308 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
10:36:48.0203 5308 USBSTOR - ok
10:36:48.0234 5308 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
10:36:48.0234 5308 usbuhci - ok
10:36:48.0250 5308 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
10:36:48.0250 5308 VgaSave - ok
10:36:48.0281 5308 [ 754292CE5848B3738281B4F3607EAEF4 ] viaagp C:\WINDOWS\system32\DRIVERS\viaagp.sys
10:36:48.0281 5308 viaagp - ok
10:36:48.0312 5308 [ 3B3EFCDA263B8AC14FDF9CBDD0791B2E ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
10:36:48.0312 5308 ViaIde - ok
10:36:48.0328 5308 [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
10:36:48.0328 5308 VolSnap - ok
10:36:48.0359 5308 [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS C:\WINDOWS\System32\vssvc.exe
10:36:48.0359 5308 VSS - ok
10:36:48.0390 5308 [ 54AF4B1D5459500EF0937F6D33B1914F ] W32Time C:\WINDOWS\system32\w32time.dll
10:36:48.0406 5308 W32Time - ok
10:36:48.0421 5308 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
10:36:48.0421 5308 Wanarp - ok
10:36:48.0437 5308 WDICA - ok
10:36:48.0468 5308 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
10:36:48.0468 5308 wdmaud - ok
10:36:48.0500 5308 [ 77A354E28153AD2D5E120A5A8687BC06 ] WebClient C:\WINDOWS\System32\webclnt.dll
10:36:48.0500 5308 WebClient - ok
10:36:48.0562 5308 [ 2D0E4ED081963804CCC196A0929275B5 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
10:36:48.0578 5308 winmgmt - ok
10:36:48.0625 5308 [ 20263DAFD033D30F151BB87568386769 ] WmcCds c:\program files\windows media connect\mswmccds.exe
10:36:48.0640 5308 WmcCds - ok
10:36:48.0640 5308 [ 1DD015A69235DCFAE18B5F98FB50BE23 ] WmcCdsLs C:\Program Files\Windows Media Connect\mswmcls.exe
10:36:48.0656 5308 WmcCdsLs - ok
10:36:48.0671 5308 [ A477391B7A8B0A0DAABADB17CF533A4B ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
10:36:48.0671 5308 WmdmPmSN - ok
10:36:48.0703 5308 [ E76F8807070ED04E7408A86D6D3A6137 ] Wmi C:\WINDOWS\System32\advapi32.dll
10:36:48.0703 5308 Wmi - ok
10:36:48.0750 5308 [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
10:36:48.0765 5308 WmiApSrv - ok
10:36:48.0781 5308 [ 0411D0433E8C48AD24B2EF32D7C97AE0 ] WNMFLT C:\WINDOWS\system32\Drivers\WNMFLT.SYS
10:36:48.0796 5308 WNMFLT - ok
10:36:48.0828 5308 [ 7C278E6408D1DCE642230C0585A854D5 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
10:36:48.0843 5308 wscsvc - ok
10:36:48.0859 5308 [ 35321FB577CDC98CE3EB3A3EB9E4610A ] wuauserv C:\WINDOWS\system32\wuauserv.dll
10:36:48.0859 5308 wuauserv - ok
10:36:48.0906 5308 [ 81DC3F549F44B1C1FFF022DEC9ECF30B ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
10:36:48.0921 5308 WZCSVC - ok
10:36:48.0937 5308 [ 295D21F14C335B53CB8154E5B1F892B9 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
10:36:48.0937 5308 xmlprov - ok
10:36:48.0953 5308 ================ Scan global ===============================
10:36:48.0984 5308 [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll
10:36:49.0015 5308 [ 69AE2B2E6968C316536E5B10B9702E63 ] C:\WINDOWS\system32\winsrv.dll
10:36:49.0031 5308 [ 69AE2B2E6968C316536E5B10B9702E63 ] C:\WINDOWS\system32\winsrv.dll
10:36:49.0046 5308 [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe
10:36:49.0046 5308 [Global] - ok
10:36:49.0046 5308 ================ Scan MBR ==================================
10:36:49.0062 5308 [ 0D34606D0DC010D6B7E7D03120FB8F2D ] \Device\Harddisk0\DR0
10:36:49.0203 5308 \Device\Harddisk0\DR0 - ok
10:36:49.0203 5308 ================ Scan VBR ==================================
10:36:49.0203 5308 [ 00A978F806758AF9BF5D4D9096979BD5 ] \Device\Harddisk0\DR0\Partition1
10:36:49.0218 5308 \Device\Harddisk0\DR0\Partition1 - ok
10:36:49.0218 5308 ============================================================
10:36:49.0218 5308 Scan finished
10:36:49.0218 5308 ============================================================
10:36:49.0218 6036 Detected object count: 0
10:36:49.0218 6036 Actual detected object count: 0
10:37:18.0171 3460 ============================================================
10:37:18.0171 3460 Scan started
10:37:18.0171 3460 Mode: Manual; TDLFS;
10:37:18.0171 3460 ============================================================
10:37:18.0328 3460 ================ Scan system memory ========================
10:37:18.0343 3460 System memory - ok
10:37:18.0343 3460 ================ Scan services =============================
10:37:18.0421 3460 Abiosdsk - ok
10:37:18.0453 3460 [ 6ABB91494FE6C59089B9336452AB2EA3 ] abp480n5 C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
10:37:18.0453 3460 abp480n5 - ok
10:37:18.0468 3460 [ 0F2D66D5F08EBE2F77BB904288DCF6F0 ] ac97intc C:\WINDOWS\system32\drivers\ac97intc.sys
10:37:18.0468 3460 ac97intc - ok
10:37:18.0500 3460 [ 8FD99680A539792A30E97944FDAECF17 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
10:37:18.0500 3460 ACPI - ok
10:37:18.0531 3460 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
10:37:18.0531 3460 ACPIEC - ok
10:37:18.0562 3460 [ 62701BD138D063DEB603189B3E56F760 ] ADIHdAudAddService C:\WINDOWS\system32\drivers\ADIHdAud.sys
10:37:18.0562 3460 ADIHdAudAddService - ok
10:37:18.0593 3460 [ 9A11864873DA202C996558B2106B0BBC ] adpu160m C:\WINDOWS\system32\DRIVERS\adpu160m.sys
10:37:18.0593 3460 adpu160m - ok
10:37:18.0609 3460 [ 9F59AE2DE835641FBB0C6AFD80D8FA9B ] AEAudioService C:\WINDOWS\system32\drivers\AEAudio.sys
10:37:18.0609 3460 AEAudioService - ok
10:37:18.0640 3460 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
10:37:18.0640 3460 aec - ok
10:37:18.0671 3460 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
10:37:18.0671 3460 AFD - ok
10:37:18.0703 3460 [ 08FD04AA961BDC77FB983F328334E3D7 ] agp440 C:\WINDOWS\system32\DRIVERS\agp440.sys
10:37:18.0703 3460 agp440 - ok
10:37:18.0718 3460 [ 03A7E0922ACFE1B07D5DB2EEB0773063 ] agpCPQ C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
10:37:18.0718 3460 agpCPQ - ok
10:37:18.0734 3460 [ C23EA9B5F46C7F7910DB3EAB648FF013 ] Aha154x C:\WINDOWS\system32\DRIVERS\aha154x.sys
10:37:18.0734 3460 Aha154x - ok
10:37:18.0750 3460 [ 19DD0FB48B0C18892F70E2E7D61A1529 ] aic78u2 C:\WINDOWS\system32\DRIVERS\aic78u2.sys
10:37:18.0765 3460 aic78u2 - ok
10:37:18.0796 3460 [ B7FE594A7468AA0132DEB03FB8E34326 ] aic78xx C:\WINDOWS\system32\DRIVERS\aic78xx.sys
10:37:18.0796 3460 aic78xx - ok
10:37:18.0828 3460 [ A9A3DAA780CA6C9671A19D52456705B4 ] Alerter C:\WINDOWS\system32\alrsvc.dll
10:37:18.0828 3460 Alerter - ok
10:37:18.0843 3460 [ 8C515081584A38AA007909CD02020B3D ] ALG C:\WINDOWS\System32\alg.exe
10:37:18.0843 3460 ALG - ok
10:37:18.0875 3460 [ 1140AB9938809700B46BB88E46D72A96 ] AliIde C:\WINDOWS\system32\DRIVERS\aliide.sys
10:37:18.0875 3460 AliIde - ok
10:37:18.0890 3460 [ CB08AED0DE2DD889A8A820CD8082D83C ] alim1541 C:\WINDOWS\system32\DRIVERS\alim1541.sys
10:37:18.0890 3460 alim1541 - ok
10:37:18.0906 3460 [ 95B4FB835E28AA1336CEEB07FD5B9398 ] amdagp C:\WINDOWS\system32\DRIVERS\amdagp.sys
10:37:18.0906 3460 amdagp - ok
10:37:18.0921 3460 [ AABEB007D994D269F98902FA212DE588 ] AmFSM C:\WINDOWS\system32\DRIVERS\amm8651.sys
10:37:18.0921 3460 AmFSM - ok
10:37:18.0937 3460 [ 79F5ADD8D24BD6893F2903A3E2F3FAD6 ] amsint C:\WINDOWS\system32\DRIVERS\amsint.sys
10:37:18.0937 3460 amsint - ok
10:37:18.0984 3460 [ 6B467E791EC470D010BD50E5E98BF467 ] APPFLT C:\WINDOWS\system32\Drivers\APPFLT.SYS
10:37:18.0984 3460 APPFLT - ok
10:37:19.0015 3460 [ D8849F77C0B66226335A59D26CB4EDC6 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
10:37:19.0015 3460 AppMgmt - ok
10:37:19.0062 3460 [ 62D318E9A0C8FC9B780008E724283707 ] asc C:\WINDOWS\system32\DRIVERS\asc.sys
10:37:19.0062 3460 asc - ok
10:37:19.0062 3460 [ 69EB0CC7714B32896CCBFD5EDCBEA447 ] asc3350p C:\WINDOWS\system32\DRIVERS\asc3350p.sys
10:37:19.0062 3460 asc3350p - ok
10:37:19.0078 3460 [ 5D8DE112AA0254B907861E9E9C31D597 ] asc3550 C:\WINDOWS\system32\DRIVERS\asc3550.sys
10:37:19.0078 3460 asc3550 - ok
10:37:19.0156 3460 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
10:37:19.0156 3460 aspnet_state - ok
10:37:19.0187 3460 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
10:37:19.0187 3460 AsyncMac - ok
10:37:19.0203 3460 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
10:37:19.0203 3460 atapi - ok
10:37:19.0203 3460 Atdisk - ok
10:37:19.0234 3460 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
10:37:19.0234 3460 Atmarpc - ok
10:37:19.0250 3460 [ DEF7A7882BEC100FE0B2CE2549188F9D ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
10:37:19.0250 3460 AudioSrv - ok
10:37:19.0265 3460 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
10:37:19.0265 3460 audstub - ok
10:37:19.0296 3460 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
10:37:19.0296 3460 Beep - ok
10:37:19.0328 3460 [ 574738F61FCA2935F5265DC4E5691314 ] BITS C:\WINDOWS\system32\qmgr.dll
10:37:19.0343 3460 BITS - ok
10:37:19.0359 3460 [ CFD4E51402DA9838B5A04AE680AF54A0 ] Browser C:\WINDOWS\System32\browser.dll
10:37:19.0359 3460 Browser - ok
10:37:19.0390 3460 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
10:37:19.0390 3460 cbidf - ok
10:37:19.0406 3460 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
10:37:19.0406 3460 cbidf2k - ok
10:37:19.0437 3460 [ F3EC03299634490E97BBCE94CD2954C7 ] cd20xrnt C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
10:37:19.0437 3460 cd20xrnt - ok
10:37:19.0468 3460 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
10:37:19.0468 3460 Cdaudio - ok
10:37:19.0515 3460 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
10:37:19.0515 3460 Cdfs - ok
10:37:19.0546 3460 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
10:37:19.0546 3460 Cdrom - ok
10:37:19.0562 3460 Changer - ok
10:37:19.0609 3460 [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] CiSvc C:\WINDOWS\system32\cisvc.exe
10:37:19.0609 3460 CiSvc - ok
10:37:19.0625 3460 [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
10:37:19.0625 3460 ClipSrv - ok
10:37:19.0640 3460 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
10:37:19.0656 3460 clr_optimization_v2.0.50727_32 - ok
10:37:19.0703 3460 [ E5DCB56C533014ECBC556A8357C929D5 ] CmdIde C:\WINDOWS\system32\DRIVERS\cmdide.sys
10:37:19.0703 3460 CmdIde - ok
10:37:19.0703 3460 COMSysApp - ok
10:37:19.0750 3460 [ 3EE529119EED34CD212A215E8C40D4B6 ] Cpqarray C:\WINDOWS\system32\DRIVERS\cpqarray.sys
10:37:19.0750 3460 Cpqarray - ok
10:37:19.0781 3460 [ 3D4E199942E29207970E04315D02AD3B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
10:37:19.0781 3460 CryptSvc - ok
10:37:19.0796 3460 [ E550E7418984B65A78299D248F0A7F36 ] dac2w2k C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
10:37:19.0796 3460 dac2w2k - ok
10:37:19.0812 3460 [ 683789CAA3864EB46125AE86FF677D34 ] dac960nt C:\WINDOWS\system32\DRIVERS\dac960nt.sys
10:37:19.0812 3460 dac960nt - ok
10:37:19.0843 3460 [ 6B27A5C03DFB94B4245739065431322C ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
10:37:19.0843 3460 DcomLaunch - ok
10:37:19.0875 3460 [ 5E38D7684A49CACFB752B046357E0589 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
10:37:19.0875 3460 Dhcp - ok
10:37:19.0890 3460 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
10:37:19.0906 3460 Disk - ok
10:37:19.0906 3460 dmadmin - ok
10:37:19.0937 3460 [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
10:37:19.0953 3460 dmboot - ok
10:37:19.0984 3460 [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio C:\WINDOWS\system32\drivers\dmio.sys
10:37:19.0984 3460 dmio - ok
10:37:20.0000 3460 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
10:37:20.0000 3460 dmload - ok
10:37:20.0015 3460 [ 57EDEC2E5F59F0335E92F35184BC8631 ] dmserver C:\WINDOWS\System32\dmserver.dll
10:37:20.0015 3460 dmserver - ok
10:37:20.0031 3460 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
10:37:20.0031 3460 DMusic - ok
10:37:20.0062 3460 [ 5F7E24FA9EAB896051FFB87F840730D2 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
10:37:20.0062 3460 Dnscache - ok
10:37:20.0109 3460 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
10:37:20.0109 3460 Dot3svc - ok
10:37:20.0125 3460 [ 40F3B93B4E5B0126F2F5C0A7A5E22660 ] dpti2o C:\WINDOWS\system32\DRIVERS\dpti2o.sys
10:37:20.0125 3460 dpti2o - ok
10:37:20.0140 3460 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
10:37:20.0156 3460 drmkaud - ok
10:37:20.0187 3460 [ 5BB0F91FFD84057D094D106D9FF53298 ] DSAFLT C:\WINDOWS\system32\Drivers\DSAFLT.SYS
10:37:20.0187 3460 DSAFLT - ok
10:37:20.0203 3460 [ 3FCA03CBCA11269F973B70FA483C88EF ] E100B C:\WINDOWS\system32\DRIVERS\e100b325.sys
10:37:20.0203 3460 E100B - ok
10:37:20.0234 3460 [ 0849EACDC01487573ADD86F5E470806C ] e1express C:\WINDOWS\system32\DRIVERS\e1e5132.sys
10:37:20.0234 3460 e1express - ok
10:37:20.0265 3460 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll
10:37:20.0265 3460 EapHost - ok
10:37:20.0281 3460 [ BC93B4A066477954555966D77FEC9ECB ] ERSvc C:\WINDOWS\System32\ersvc.dll
10:37:20.0281 3460 ERSvc - ok
10:37:20.0375 3460 [ 2407B8164E966755BC6A4242FC9DE31E ] esgiguard C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys
10:37:20.0375 3460 esgiguard - ok
10:37:20.0390 3460 [ 01CE484FF6D70A39479BC6D619DE7ED6 ] EsgScanner C:\WINDOWS\system32\DRIVERS\EsgScanner.sys
10:37:20.0390 3460 EsgScanner - ok
10:37:20.0421 3460 [ 65DF52F5B8B6E9BBD183505225C37315 ] Eventlog C:\WINDOWS\system32\services.exe
10:37:20.0421 3460 Eventlog - ok
10:37:20.0453 3460 [ D4991D98F2DB73C60D042F1AEF79EFAE ] EventSystem C:\WINDOWS\system32\es.dll
10:37:20.0453 3460 EventSystem - ok
10:37:20.0468 3460 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
10:37:20.0468 3460 Fastfat - ok
10:37:20.0515 3460 [ 99BC0B50F511924348BE19C7C7313BBF ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
10:37:20.0515 3460 FastUserSwitchingCompatibility - ok
10:37:20.0531 3460 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
10:37:20.0531 3460 Fdc - ok
10:37:20.0546 3460 [ D45926117EB9FA946A6AF572FBE1CAA3 ] Fips C:\WINDOWS\system32\drivers\Fips.sys
10:37:20.0546 3460 Fips - ok
10:37:20.0562 3460 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys
10:37:20.0562 3460 Flpydisk - ok
10:37:20.0593 3460 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
10:37:20.0593 3460 FltMgr - ok
10:37:20.0609 3460 [ A38B9BA7A4C17F7DCE9EC4E8F7870026 ] FNETMON C:\WINDOWS\system32\Drivers\fnetmon.SYS
10:37:20.0609 3460 FNETMON - ok
10:37:20.0656 3460 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
10:37:20.0656 3460 FontCache3.0.0.0 - ok
10:37:20.0703 3460 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
10:37:20.0718 3460 Fs_Rec - ok
10:37:20.0734 3460 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
10:37:20.0734 3460 Ftdisk - ok
10:37:20.0765 3460 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
10:37:20.0765 3460 Gpc - ok
10:37:20.0812 3460 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
10:37:20.0828 3460 gupdate - ok
10:37:20.0828 3460 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
10:37:20.0828 3460 gupdatem - ok
10:37:20.0859 3460 [ C1B577B2169900F4CF7190C39F085794 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
10:37:20.0859 3460 gusvc - ok
10:37:20.0890 3460 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
10:37:20.0890 3460 HDAudBus - ok
10:37:20.0921 3460 [ 4FCCA060DFE0C51A09DD5C3843888BCD ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
10:37:20.0921 3460 helpsvc - ok
10:37:20.0937 3460 HidServ - ok
10:37:20.0968 3460 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
10:37:20.0968 3460 HidUsb - ok
10:37:21.0000 3460 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
10:37:21.0000 3460 hkmsvc - ok
10:37:21.0031 3460 [ B028377DEA0546A5FCFBA928A8AEFAE0 ] hpn C:\WINDOWS\system32\DRIVERS\hpn.sys
10:37:21.0031 3460 hpn - ok
10:37:21.0062 3460 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
10:37:21.0062 3460 HTTP - ok
10:37:21.0093 3460 [ 6100A808600F44D999CEBDEF8841C7A3 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
10:37:21.0093 3460 HTTPFilter - ok
10:37:21.0109 3460 [ 9368670BD426EBEA5E8B18A62416EC28 ] i2omgmt C:\WINDOWS\system32\drivers\i2omgmt.sys
10:37:21.0109 3460 i2omgmt - ok
10:37:21.0125 3460 [ F10863BF1CCC290BABD1A09188AE49E0 ] i2omp C:\WINDOWS\system32\DRIVERS\i2omp.sys
10:37:21.0125 3460 i2omp - ok
10:37:21.0140 3460 [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
10:37:21.0140 3460 i8042prt - ok
10:37:21.0171 3460 [ 4007984827E19E6A5B6FAF8532EAEFBA ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
10:37:21.0187 3460 ialm - ok
10:37:21.0250 3460 [ 6F95324909B502E2651442C1548AB12F ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
10:37:21.0250 3460 IDriverT - ok
10:37:21.0281 3460 [ C4E887CF7BA2D3624233231AECD34C9D ] IDSFLT C:\WINDOWS\system32\Drivers\IDSFLT.SYS
10:37:21.0281 3460 IDSFLT - ok
10:37:21.0375 3460 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
10:37:21.0390 3460 idsvc - ok
10:37:21.0421 3460 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
10:37:21.0421 3460 Imapi - ok
10:37:21.0453 3460 [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService C:\WINDOWS\system32\imapi.exe
10:37:21.0453 3460 ImapiService - ok
10:37:21.0468 3460 [ 4A40E045FAEE58631FD8D91AFC620719 ] ini910u C:\WINDOWS\system32\DRIVERS\ini910u.sys
10:37:21.0468 3460 ini910u - ok
10:37:21.0484 3460 [ B5466A9250342A7AA0CD1FBA13420678 ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys
10:37:21.0484 3460 IntelIde - ok
10:37:21.0515 3460 [ 8C953733D8F36EB2133F5BB58808B66B ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
10:37:21.0515 3460 intelppm - ok
10:37:21.0531 3460 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys
10:37:21.0531 3460 Ip6Fw - ok
10:37:21.0546 3460 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
10:37:21.0562 3460 IpFilterDriver - ok
10:37:21.0562 3460 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
10:37:21.0562 3460 IpInIp - ok
10:37:21.0578 3460 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
10:37:21.0578 3460 IpNat - ok
10:37:21.0609 3460 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
10:37:21.0609 3460 IPSec - ok
10:37:21.0640 3460 [ 8B901EDCE8380AA7BAD34965E192B3E4 ] IPSSVC C:\WINDOWS\system32\IPSSVC.EXE
10:37:21.0640 3460 IPSSVC - ok
10:37:21.0656 3460 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
10:37:21.0656 3460 IRENUM - ok
10:37:21.0671 3460 [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
10:37:21.0671 3460 isapnp - ok
10:37:21.0765 3460 [ 9ECF00E19736054E019C532AED8228FC ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe
10:37:21.0765 3460 JavaQuickStarterService - ok
10:37:21.0781 3460 [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
10:37:21.0781 3460 Kbdclass - ok
10:37:21.0812 3460 [ 9EF487A186DEA361AA06913A75B3FA99 ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
10:37:21.0812 3460 kbdhid - ok
10:37:21.0828 3460 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
10:37:21.0828 3460 kmixer - ok
10:37:21.0859 3460 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
10:37:21.0859 3460 KSecDD - ok
10:37:21.0890 3460 [ 3A7C3CBE5D96B8AE96CE81F0B22FB527 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
10:37:21.0890 3460 lanmanserver - ok
10:37:21.0921 3460 [ A8888A5327621856C0CEC4E385F69309 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
10:37:21.0937 3460 lanmanworkstation - ok
10:37:21.0937 3460 lbrtfdc - ok
10:37:21.0984 3460 [ 027D03D9D8AB95194A115A999E960AC0 ] LexBceS C:\WINDOWS\system32\LEXBCES.EXE
10:37:21.0984 3460 LexBceS - ok
10:37:22.0015 3460 [ A7DB739AE99A796D91580147E919CC59 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
10:37:22.0015 3460 LmHosts - ok
10:37:22.0046 3460 [ 986B1FF5814366D71E0AC5755C88F2D3 ] Messenger C:\WINDOWS\System32\msgsvc.dll
10:37:22.0046 3460 Messenger - ok
10:37:22.0093 3460 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
10:37:22.0093 3460 mnmdd - ok
10:37:22.0125 3460 [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
10:37:22.0125 3460 mnmsrvc - ok
10:37:22.0156 3460 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
10:37:22.0156 3460 Modem - ok
10:37:22.0171 3460 [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
10:37:22.0171 3460 Mouclass - ok
10:37:22.0234 3460 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
10:37:22.0234 3460 mouhid - ok
10:37:22.0265 3460 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
10:37:22.0265 3460 MountMgr - ok
10:37:22.0296 3460 [ 3F4BB95E5A44F3BE34824E8E7CAF0737 ] mraid35x C:\WINDOWS\system32\DRIVERS\mraid35x.sys
10:37:22.0296 3460 mraid35x - ok
10:37:22.0328 3460 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
10:37:22.0328 3460 MRxDAV - ok
10:37:22.0375 3460 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
10:37:22.0390 3460 MRxSmb - ok
10:37:22.0421 3460 [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC C:\WINDOWS\system32\msdtc.exe
10:37:22.0421 3460 MSDTC - ok
10:37:22.0453 3460 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
10:37:22.0453 3460 Msfs - ok
10:37:22.0453 3460 MSIServer - ok
10:37:22.0484 3460 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
10:37:22.0484 3460 MSKSSRV - ok
10:37:22.0500 3460 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
10:37:22.0500 3460 MSPCLOCK - ok
10:37:22.0515 3460 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
10:37:22.0515 3460 MSPQM - ok
10:37:22.0515 3460 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
10:37:22.0515 3460 mssmbios - ok
10:37:22.0562 3460 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
10:37:22.0562 3460 Mup - ok
10:37:22.0593 3460 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
10:37:22.0593 3460 napagent - ok
10:37:22.0625 3460 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
10:37:22.0625 3460 NDIS - ok
10:37:22.0656 3460 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
10:37:22.0656 3460 NdisTapi - ok
10:37:22.0671 3460 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
10:37:22.0671 3460 Ndisuio - ok
10:37:22.0687 3460 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
10:37:22.0687 3460 NdisWan - ok
10:37:22.0703 3460 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
10:37:22.0703 3460 NDProxy - ok
10:37:22.0718 3460 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
10:37:22.0750 3460 NetBIOS - ok
10:37:22.0781 3460 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
10:37:22.0781 3460 NetBT - ok
10:37:22.0812 3460 [ B857BA82860D7FF85AE29B095645563B ] NetDDE C:\WINDOWS\system32\netdde.exe
10:37:22.0812 3460 NetDDE - ok
10:37:22.0828 3460 [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
10:37:22.0828 3460 NetDDEdsdm - ok
10:37:22.0859 3460 [ D8F44FC13DB193C9379297973EE42272 ] NETFLTDI C:\WINDOWS\system32\Drivers\NETFLTDI.SYS
10:37:22.0859 3460 NETFLTDI - ok
10:37:22.0906 3460 [ 9DEE136C4863D5065437D07262BB5C40 ] NETIMFLT01060044 C:\WINDOWS\system32\DRIVERS\neti1644.sys
10:37:22.0906 3460 NETIMFLT01060044 - ok
10:37:22.0937 3460 [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon C:\WINDOWS\system32\lsass.exe
10:37:22.0937 3460 Netlogon - ok
10:37:22.0968 3460 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE ] Netman C:\WINDOWS\System32\netman.dll
10:37:22.0968 3460 Netman - ok
10:37:23.0015 3460 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
10:37:23.0015 3460 NetTcpPortSharing - ok
10:37:23.0031 3460 [ 943337D786A56729263071623BBB9DE5 ] Nla C:\WINDOWS\System32\mswsock.dll
10:37:23.0031 3460 Nla - ok
10:37:23.0062 3460 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
10:37:23.0062 3460 Npfs - ok
10:37:23.0078 3460 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
10:37:23.0093 3460 Ntfs - ok
10:37:23.0109 3460 [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
10:37:23.0109 3460 NtLmSsp - ok
10:37:23.0140 3460 [ 156F64A3345BD23C600655FB4D10BC08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
10:37:23.0156 3460 NtmsSvc - ok
10:37:23.0171 3460 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
10:37:23.0171 3460 Null - ok
10:37:23.0234 3460 [ 2B298519EDBFCF451D43E0F1E8F1006D ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
10:37:23.0250 3460 nv - ok
10:37:23.0281 3460 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
10:37:23.0281 3460 NwlnkFlt - ok
10:37:23.0296 3460 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
10:37:23.0296 3460 NwlnkFwd - ok
10:37:23.0531 3460 [ 54F00466439F749EDDF29CBA0BC1A28A ] Panda Software Controller C:\Program Files\Panda Security\Panda Gold Protection\PsCtrls.exe
10:37:23.0531 3460 Panda Software Controller - ok
10:37:23.0578 3460 [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
10:37:23.0578 3460 Parport - ok
10:37:23.0593 3460 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
10:37:23.0593 3460 PartMgr - ok
10:37:23.0625 3460 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
10:37:23.0625 3460 ParVdm - ok
10:37:23.0640 3460 [ 55D654258A9C509B671310C314BD30B4 ] pavboot C:\WINDOWS\system32\Drivers\pavboot.sys
10:37:23.0640 3460 pavboot - ok
10:37:23.0687 3460 [ F458128A5321BB48DF7B3D8E279F6393 ] PAVFNSVR C:\Program Files\Panda Security\Panda Gold Protection\PavFnSvr.exe
10:37:23.0687 3460 PAVFNSVR - ok
10:37:23.0718 3460 [ 3373D4B2C105AB5B3C8E081C3D9D34FC ] PavProc C:\WINDOWS\system32\DRIVERS\PavProc.sys
10:37:23.0718 3460 PavProc - ok
10:37:23.0734 3460 [ 2AE3F6B23448443BBEF5DE207159213B ] PavPrSrv C:\Program Files\Common Files\Panda Security\PavShld\pavprsrv.exe
10:37:23.0734 3460 PavPrSrv - ok
10:37:23.0828 3460 [ 4D8C2645A12FDDF9CD4A68DDE8496BEF ] PAVSRV C:\Program Files\Panda Security\Panda Gold Protection\pavsrvx86.exe
10:37:23.0828 3460 PAVSRV - ok
10:37:23.0828 3460 PavTPK.sys - ok
10:37:23.0843 3460 [ A219903CCF74233761D92BEF471A07B1 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
10:37:23.0859 3460 PCI - ok
10:37:23.0859 3460 PCIDump - ok
10:37:23.0875 3460 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
10:37:23.0875 3460 PCIIde - ok
10:37:23.0906 3460 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
10:37:23.0906 3460 Pcmcia - ok
10:37:23.0906 3460 PDCOMP - ok
10:37:23.0921 3460 PDFRAME - ok
10:37:23.0937 3460 PDRELI - ok
10:37:23.0937 3460 PDRFRAME - ok
10:37:23.0968 3460 [ 6C14B9C19BA84F73D3A86DBA11133101 ] perc2 C:\WINDOWS\system32\DRIVERS\perc2.sys
10:37:23.0968 3460 perc2 - ok
10:37:23.0984 3460 [ F50F7C27F131AFE7BEBA13E14A3B9416 ] perc2hib C:\WINDOWS\system32\DRIVERS\perc2hib.sys
10:37:23.0984 3460 perc2hib - ok
10:37:24.0015 3460 [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay C:\WINDOWS\system32\services.exe
10:37:24.0015 3460 PlugPlay - ok
10:37:24.0046 3460 [ FA292805788528C083F416E151B60AB6 ] pmem C:\WINDOWS\System32\drivers\pmemnt.sys
10:37:24.0046 3460 pmem - ok
10:37:24.0062 3460 [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
10:37:24.0062 3460 PolicyAgent - ok
10:37:24.0093 3460 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
10:37:24.0093 3460 PptpMiniport - ok
10:37:24.0140 3460 [ 884228979A63A63799B48A2926481EA1 ] PROCDD C:\WINDOWS\system32\DRIVERS\PROCDD.SYS
10:37:24.0140 3460 PROCDD - ok
10:37:24.0156 3460 [ A32BEBAF723557681BFC6BD93E98BD26 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
10:37:24.0156 3460 Processor - ok
10:37:24.0171 3460 [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
10:37:24.0171 3460 ProtectedStorage - ok
10:37:24.0171 3460 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
10:37:24.0187 3460 PSched - ok
10:37:24.0281 3460 [ 532053E8E3BB8FA7166AB4E7685FDDCC ] PSHost c:\program files\panda security\panda gold protection\firewall\PSHOST.EXE
10:37:24.0281 3460 PSHost - ok
10:37:24.0312 3460 [ 196C450F2779D0B462C444DA4906EA7F ] PSIMSVC C:\Program Files\Panda Security\Panda Gold Protection\PsImSvc.exe
10:37:24.0312 3460 PSIMSVC - ok
10:37:24.0359 3460 [ 341457B79B3FC31A80C346C767045879 ] PskSvcRetail C:\Program Files\Panda Security\Panda Gold Protection\PskSvc.exe
10:37:24.0359 3460 PskSvcRetail - ok
10:37:24.0375 3460 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
10:37:24.0375 3460 Ptilink - ok
10:37:24.0406 3460 [ 49452BFCEC22F36A7A9B9C2181BC3042 ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
10:37:24.0406 3460 PxHelp20 - ok
10:37:24.0437 3460 [ 0A63FB54039EB5662433CABA3B26DBA7 ] ql1080 C:\WINDOWS\system32\DRIVERS\ql1080.sys
10:37:24.0437 3460 ql1080 - ok
10:37:24.0453 3460 [ 6503449E1D43A0FF0201AD5CB1B8C706 ] Ql10wnt C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
10:37:24.0453 3460 Ql10wnt - ok
10:37:24.0453 3460 [ 156ED0EF20C15114CA097A34A30D8A01 ] ql12160 C:\WINDOWS\system32\DRIVERS\ql12160.sys
10:37:24.0468 3460 ql12160 - ok
10:37:24.0468 3460 [ 70F016BEBDE6D29E864C1230A07CC5E6 ] ql1240 C:\WINDOWS\system32\DRIVERS\ql1240.sys
10:37:24.0468 3460 ql1240 - ok
10:37:24.0484 3460 [ 907F0AEEA6BC451011611E732BD31FCF ] ql1280 C:\WINDOWS\system32\DRIVERS\ql1280.sys
10:37:24.0484 3460 ql1280 - ok
10:37:24.0500 3460 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
10:37:24.0500 3460 RasAcd - ok
10:37:24.0531 3460 [ AD188BE7BDF94E8DF4CA0A55C00A5073 ] RasAuto C:\WINDOWS\System32\rasauto.dll
10:37:24.0546 3460 RasAuto - ok
10:37:24.0562 3460 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
10:37:24.0562 3460 Rasl2tp - ok
10:37:24.0593 3460 [ 76A9A3CBEADD68CC57CDA5E1D7448235 ] RasMan C:\WINDOWS\System32\rasmans.dll
10:37:24.0609 3460 RasMan - ok
10:37:24.0609 3460 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
10:37:24.0609 3460 RasPppoe - ok
10:37:24.0640 3460 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
10:37:24.0640 3460 Raspti - ok
10:37:24.0671 3460 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
10:37:24.0671 3460 Rdbss - ok
10:37:24.0687 3460 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
10:37:24.0687 3460 RDPCDD - ok
10:37:24.0703 3460 [ 15CABD0F7C00C47C70124907916AF3F1 ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
10:37:24.0703 3460 rdpdr - ok
10:37:24.0734 3460 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
10:37:24.0734 3460 RDPWD - ok
10:37:24.0781 3460 [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
10:37:24.0781 3460 RDSessMgr - ok
10:37:24.0812 3460 [ F828DD7E1419B6653894A8F97A0094C5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
10:37:24.0812 3460 redbook - ok
10:37:24.0859 3460 [ 7E699FF5F59B5D9DE5390E3C34C67CF5 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
10:37:24.0859 3460 RemoteAccess - ok
10:37:24.0890 3460 [ 5B19B557B0C188210A56A6B699D90B8F ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
10:37:24.0890 3460 RemoteRegistry - ok
10:37:24.0921 3460 [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator C:\WINDOWS\system32\locator.exe
10:37:24.0921 3460 RpcLocator - ok
10:37:24.0968 3460 [ 6B27A5C03DFB94B4245739065431322C ] RpcSs C:\WINDOWS\system32\rpcss.dll
10:37:24.0968 3460 RpcSs - ok
10:37:25.0000 3460 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\system32\rsvp.exe
10:37:25.0000 3460 RSVP - ok
10:37:25.0015 3460 [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs C:\WINDOWS\system32\lsass.exe
10:37:25.0015 3460 SamSs - ok
10:37:25.0046 3460 [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
10:37:25.0046 3460 SCardSvr - ok
10:37:25.0093 3460 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA ] Schedule C:\WINDOWS\system32\schedsvc.dll
10:37:25.0093 3460 Schedule - ok
10:37:25.0109 3460 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
10:37:25.0109 3460 Secdrv - ok
10:37:25.0125 3460 [ CBE612E2BB6A10E3563336191EDA1250 ] seclogon C:\WINDOWS\System32\seclogon.dll
10:37:25.0125 3460 seclogon - ok
10:37:25.0156 3460 [ ECA77BEEB2BE8D573CF1B265E44FBFBD ] SenFiltService C:\WINDOWS\system32\drivers\Senfilt.sys
10:37:25.0156 3460 SenFiltService - ok
10:37:25.0187 3460 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0 ] SENS C:\WINDOWS\system32\sens.dll
10:37:25.0187 3460 SENS - ok
10:37:25.0218 3460 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
10:37:25.0218 3460 serenum - ok
10:37:25.0234 3460 [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
10:37:25.0234 3460 Serial - ok
10:37:25.0265 3460 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
10:37:25.0265 3460 Sfloppy - ok
10:37:25.0359 3460 [ 83F41D0D89645D7235C051AB1D9523AC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
10:37:25.0375 3460 SharedAccess - ok
10:37:25.0421 3460 [ 99BC0B50F511924348BE19C7C7313BBF ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
10:37:25.0421 3460 ShellHWDetection - ok
10:37:25.0453 3460 [ 32D6F7632234F0354C79E915CA4613D4 ] ShldDrv C:\WINDOWS\system32\DRIVERS\ShlDrv51.sys
10:37:25.0453 3460 ShldDrv - ok
10:37:25.0468 3460 Simbad - ok
10:37:25.0531 3460 [ 6B33D0EBD30DB32E27D1D78FE946A754 ] sisagp C:\WINDOWS\system32\DRIVERS\sisagp.sys
10:37:25.0531 3460 sisagp - ok
10:37:25.0578 3460 [ 83C0F71F86D3BDAF915685F3D568B20E ] Sparrow C:\WINDOWS\system32\DRIVERS\sparrow.sys
10:37:25.0578 3460 Sparrow - ok
10:37:25.0656 3460 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
10:37:25.0656 3460 splitter - ok
10:37:25.0703 3460 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
10:37:25.0703 3460 Spooler - ok
10:37:25.0890 3460 [ 8494B173DD812F7F6A87F2385E444B18 ] SpyHunter 4 Service C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE
10:37:25.0890 3460 SpyHunter 4 Service - ok
10:37:25.0937 3460 [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
10:37:25.0937 3460 sr - ok
10:37:25.0968 3460 [ 3805DF0AC4296A34BA4BF93B346CC378 ] srservice C:\WINDOWS\system32\srsvc.dll
10:37:25.0984 3460 srservice - ok
10:37:26.0078 3460 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
10:37:26.0078 3460 Srv - ok
10:37:26.0156 3460 [ 0A5679B3714EDAB99E357057EE88FCA6 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
10:37:26.0156 3460 SSDPSRV - ok
10:37:26.0281 3460 [ 8BAD69CBAC032D4BBACFCE0306174C30 ] stisvc C:\WINDOWS\system32\wiaservc.dll
10:37:26.0296 3460 stisvc - ok
10:37:26.0328 3460 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
10:37:26.0328 3460 swenum - ok
10:37:26.0359 3460 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
10:37:26.0359 3460 swmidi - ok
10:37:26.0359 3460 SwPrv - ok
10:37:26.0390 3460 [ 1FF3217614018630D0A6758630FC698C ] symc810 C:\WINDOWS\system32\DRIVERS\symc810.sys
10:37:26.0406 3460 symc810 - ok
10:37:26.0421 3460 [ 070E001D95CF725186EF8B20335F933C ] symc8xx C:\WINDOWS\system32\DRIVERS\symc8xx.sys
10:37:26.0421 3460 symc8xx - ok
10:37:26.0421 3460 [ 80AC1C4ABBE2DF3B738BF15517A51F2C ] sym_hi C:\WINDOWS\system32\DRIVERS\sym_hi.sys
10:37:26.0421 3460 sym_hi - ok
10:37:26.0437 3460 [ BF4FAB949A382A8E105F46EBB4937058 ] sym_u3 C:\WINDOWS\system32\DRIVERS\sym_u3.sys
10:37:26.0437 3460 sym_u3 - ok
10:37:26.0453 3460 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
10:37:26.0453 3460 sysaudio - ok
10:37:26.0500 3460 [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
10:37:26.0515 3460 SysmonLog - ok
10:37:26.0562 3460 [ 3CB78C17BB664637787C9A1C98F79C38 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
10:37:26.0578 3460 TapiSrv - ok
10:37:26.0625 3460 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
10:37:26.0625 3460 Tcpip - ok
10:37:26.0656 3460 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
10:37:26.0656 3460 TDPIPE - ok
10:37:26.0671 3460 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
10:37:26.0671 3460 TDTCP - ok
10:37:26.0687 3460 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
10:37:26.0687 3460 TermDD - ok
10:37:26.0718 3460 [ FF3477C03BE7201C294C35F684B3479F ] TermService C:\WINDOWS\System32\termsrv.dll
10:37:26.0734 3460 TermService - ok
10:37:26.0750 3460 [ 99BC0B50F511924348BE19C7C7313BBF ] Themes C:\WINDOWS\System32\shsvcs.dll
10:37:26.0750 3460 Themes - ok
10:37:26.0781 3460 [ DB7205804759FF62C34E3EFD8A4CC76A ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
10:37:26.0781 3460 TlntSvr - ok
10:37:26.0812 3460 [ F2790F6AF01321B172AA62F8E1E187D9 ] TosIde C:\WINDOWS\system32\DRIVERS\toside.sys
10:37:26.0812 3460 TosIde - ok
10:37:26.0828 3460 [ 41B3FC80A578CAB4B4E0E39371F71012 ] TPM12 C:\WINDOWS\system32\DRIVERS\nsctpm12.sys
10:37:26.0828 3460 TPM12 - ok
10:37:26.0906 3460 [ F7F79FCB3331BC2DB57572E33A5A969D ] TPSrv C:\Program Files\Panda Security\Panda Gold Protection\TPSrv.exe
10:37:26.0906 3460 TPSrv - ok
10:37:26.0937 3460 [ 55BCA12F7F523D35CA3CB833C725F54E ] TrkWks C:\WINDOWS\system32\trkwks.dll
10:37:26.0937 3460 TrkWks - ok
10:37:26.0968 3460 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
10:37:26.0968 3460 Udfs - ok
10:37:26.0984 3460 [ 1B698A51CD528D8DA4FFAED66DFC51B9 ] ultra C:\WINDOWS\system32\DRIVERS\ultra.sys
10:37:26.0984 3460 ultra - ok
10:37:27.0015 3460 [ C81B8635DEE0D3EF5F64B3DD643023A5 ] UMWdf C:\WINDOWS\system32\wdfmgr.exe
10:37:27.0015 3460 UMWdf - ok
10:37:27.0046 3460 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
10:37:27.0046 3460 Update - ok
10:37:27.0093 3460 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 ] upnphost C:\WINDOWS\System32\upnphost.dll
10:37:27.0093 3460 upnphost - ok
10:37:27.0109 3460 [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS C:\WINDOWS\System32\ups.exe
10:37:27.0109 3460 UPS - ok
10:37:27.0156 3460 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
10:37:27.0156 3460 usbehci - ok
10:37:27.0234 3460 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
10:37:27.0234 3460 usbhub - ok
10:37:27.0296 3460 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
10:37:27.0296 3460 usbprint - ok
10:37:27.0328 3460 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
10:37:27.0328 3460 usbscan - ok
10:37:27.0390 3460 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
10:37:27.0406 3460 USBSTOR - ok
10:37:27.0437 3460 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
10:37:27.0437 3460 usbuhci - ok
10:37:27.0453 3460 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
10:37:27.0453 3460 VgaSave - ok
10:37:27.0515 3460 [ 754292CE5848B3738281B4F3607EAEF4 ] viaagp C:\WINDOWS\system32\DRIVERS\viaagp.sys
10:37:27.0515 3460 viaagp - ok
10:37:27.0546 3460 [ 3B3EFCDA263B8AC14FDF9CBDD0791B2E ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
10:37:27.0546 3460 ViaIde - ok
10:37:27.0578 3460 [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
10:37:27.0578 3460 VolSnap - ok
10:37:27.0640 3460 [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS C:\WINDOWS\System32\vssvc.exe
10:37:27.0640 3460 VSS - ok
10:37:27.0671 3460 [ 54AF4B1D5459500EF0937F6D33B1914F ] W32Time C:\WINDOWS\system32\w32time.dll
10:37:27.0671 3460 W32Time - ok
10:37:27.0718 3460 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
10:37:27.0718 3460 Wanarp - ok
10:37:27.0718 3460 WDICA - ok
10:37:27.0781 3460 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
10:37:27.0781 3460 wdmaud - ok
10:37:27.0828 3460 [ 77A354E28153AD2D5E120A5A8687BC06 ] WebClient C:\WINDOWS\System32\webclnt.dll
10:37:27.0828 3460 WebClient - ok
10:37:27.0984 3460 [ 2D0E4ED081963804CCC196A0929275B5 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
10:37:27.0984 3460 winmgmt - ok
10:37:28.0109 3460 [ 20263DAFD033D30F151BB87568386769 ] WmcCds c:\program files\windows media connect\mswmccds.exe
10:37:28.0109 3460 WmcCds - ok
10:37:28.0125 3460 [ 1DD015A69235DCFAE18B5F98FB50BE23 ] WmcCdsLs C:\Program Files\Windows Media Connect\mswmcls.exe
10:37:28.0125 3460 WmcCdsLs - ok
10:37:28.0156 3460 [ A477391B7A8B0A0DAABADB17CF533A4B ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
10:37:28.0156 3460 WmdmPmSN - ok
10:37:28.0312 3460 [ E76F8807070ED04E7408A86D6D3A6137 ] Wmi C:\WINDOWS\System32\advapi32.dll
10:37:28.0312 3460 Wmi - ok
10:37:28.0390 3460 [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
10:37:28.0390 3460 WmiApSrv - ok
10:37:28.0437 3460 [ 0411D0433E8C48AD24B2EF32D7C97AE0 ] WNMFLT C:\WINDOWS\system32\Drivers\WNMFLT.SYS
10:37:28.0437 3460 WNMFLT - ok
10:37:28.0500 3460 [ 7C278E6408D1DCE642230C0585A854D5 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
10:37:28.0515 3460 wscsvc - ok
10:37:28.0562 3460 [ 35321FB577CDC98CE3EB3A3EB9E4610A ] wuauserv C:\WINDOWS\system32\wuauserv.dll
10:37:28.0562 3460 wuauserv - ok
10:37:28.0656 3460 [ 81DC3F549F44B1C1FFF022DEC9ECF30B ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
10:37:28.0671 3460 WZCSVC - ok
10:37:28.0703 3460 [ 295D21F14C335B53CB8154E5B1F892B9 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
10:37:28.0703 3460 xmlprov - ok
10:37:28.0703 3460 ================ Scan global ===============================
10:37:28.0765 3460 [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll
10:37:28.0812 3460 [ 69AE2B2E6968C316536E5B10B9702E63 ] C:\WINDOWS\system32\winsrv.dll
10:37:28.0828 3460 [ 69AE2B2E6968C316536E5B10B9702E63 ] C:\WINDOWS\system32\winsrv.dll
10:37:28.0859 3460 [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe
10:37:28.0859 3460 [Global] - ok
10:37:28.0859 3460 ================ Scan MBR ==================================
10:37:28.0875 3460 [ 0D34606D0DC010D6B7E7D03120FB8F2D ] \Device\Harddisk0\DR0
10:37:30.0640 3460 \Device\Harddisk0\DR0 - ok
10:37:30.0640 3460 ================ Scan VBR ==================================
10:37:30.0671 3460 [ 00A978F806758AF9BF5D4D9096979BD5 ] \Device\Harddisk0\DR0\Partition1
10:37:30.0703 3460 \Device\Harddisk0\DR0\Partition1 - ok
10:37:30.0703 3460 ============================================================
10:37:30.0703 3460 Scan finished
10:37:30.0703 3460 ============================================================
10:37:30.0718 4268 Detected object count: 0
10:37:30.0718 4268 Actual detected object count: 0
10:37:36.0031 4748 Deinitialize success

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o pomoc

#8 Příspěvek od Márty84 »

TDSSKiller je cisty.

:arrow: Proc zrovna Pandu? Doporucil bych spis neco lepsiho, jako Avast, nebo Aviru.

:arrow: Spybota vyhodime pozdeji.

:arrow: Znovu ukoncete vsechny programy a spustte AdwCleaner.
Tentokrat kliknete na Smazat
Program zacne pracovat (muze dojit k restartu pc) a vyplivne dalsi log (pripadne bude zde C:\AdwCleaner [S1].txt ). Ten mi sem zase zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

SimčaBrunoMars
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 19 pro 2012 20:57

Re: Prosím o pomoc

#9 Příspěvek od SimčaBrunoMars »

# AdwCleaner v2.306 - Logfile created 08/11/2013 at 16:22:15
# Updated 19/07/2013 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Lenovo - LENOVO-47049E37
# Boot Mode : Normal
# Running from : C:\Documents and Settings\Lenovo\My Documents\Downloads\AdwCleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Deleted on reboot : C:\Documents and Settings\All Users\Application Data\BetterSoft
File Deleted : C:\WINDOWS\system32\roboot.exe
Folder Deleted : C:\Documents and Settings\All Users\Application Data\Babylon
Folder Deleted : C:\Documents and Settings\All Users\Application Data\savEnsharE
Folder Deleted : C:\Documents and Settings\Lenovo\Application Data\Babylon
Folder Deleted : C:\Documents and Settings\Lenovo\Application Data\OpenCandy

***** [Registry] *****

Key Deleted : HKCU\Software\AppDataLow\SProtector
Key Deleted : HKCU\Software\BabSolution
Key Deleted : HKCU\Software\DataMngr
Key Deleted : HKCU\Software\DataMngr_Toolbar
Key Deleted : HKCU\Software\Delta
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D70373C1-E897-E8DA-FF19-E23B4FA2E974}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKLM\SOFTWARE\5ee8cdfe26deb10
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D70373C1-E897-E8DA-FF19-E23B4FA2E974}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\Software\Delta
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{62D82EC1-0D3A-DF54-8E3E-07E1337A5311}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Optimizer Pro_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\OptimizerPro
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D70373C1-E897-E8DA-FF19-E23B4FA2E974}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{62D82EC1-0D3A-DF54-8E3E-07E1337A5311}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OptimizerPro
Key Deleted : HKLM\Software\SP Global
Key Deleted : HKLM\Software\SProtector
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]

***** [Internet Browsers] *****

-\\ Internet Explorer v6.0.2900.5512

[OK] Registry is clean.

-\\ Google Chrome v28.0.1500.95

File : C:\Documents and Settings\Lenovo\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

File : C:\Documents and Settings\Konto 2\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [4165 octets] - [10/08/2013 11:11:41]
AdwCleaner[S1].txt - [3946 octets] - [11/08/2013 16:22:15]

########## EOF - C:\AdwCleaner[S1].txt - [4006 octets] ##########

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o pomoc

#10 Příspěvek od Márty84 »

:arrow: Udelejte !!!kompletni!!! kontrolu s MBAM http://forum.viry.cz/viewtopic.php?f=29&t=115222 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

SimčaBrunoMars
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 19 pro 2012 20:57

Re: Prosím o pomoc

#11 Příspěvek od SimčaBrunoMars »

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.08.12.01

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 6.0.2900.5512
Lenovo :: LENOVO-47049E37 [administrátor]

Ochrana: Povolena

12.8.2013 8:00:30
MBAM-log-2013-08-12 (09-40-43).txt

Typ: Kompletní kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 310188
Uplynulý čas: 1 hodin, 34 minut, 37 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 1
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SETUP.EXE (PUP.Babylon.A) -> Nebyla provedena žádná instrukce.

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 1
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Nebyla provedena žádná instrukce.

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 13
C:\System Volume Information\_restore{5D527826-05BD-4A83-8416-28ACDDA14001}\RP82\A0038009.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{5D527826-05BD-4A83-8416-28ACDDA14001}\RP82\A0038012.exe (PUP.Optional.SilentInstall.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{5D527826-05BD-4A83-8416-28ACDDA14001}\RP82\A0038013.exe (PUP.Optional.Babylon.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Lenovo\Local Settings\Temp\5B4059EF-BAB0-7891-AD5E-EC35CCA78203\Latest\BabMaint.exe (PUP.Optional.Babylon.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Lenovo\Local Settings\Temp\5B4059EF-BAB0-7891-AD5E-EC35CCA78203\Latest\ccp.exe (PUP.Babylon.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Lenovo\Local Settings\Temp\5B4059EF-BAB0-7891-AD5E-EC35CCA78203\Latest\MyDeltaTB.exe (PUP.Delta.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Lenovo\Local Settings\Temp\5B4059EF-BAB0-7891-AD5E-EC35CCA78203\Latest\NTRedirect.dll (PUP.Optional.Babylon.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Lenovo\Local Settings\Temp\5B4059EF-BAB0-7891-AD5E-EC35CCA78203\Latest\Setup.exe (PUP.Babylon.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Lenovo\Local Settings\Temporary Internet Files\Content.IE5\4TU7SPQR\52010cb35cbfd[1].exe (PUP.Optional.SilentInstall.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Lenovo\Local Settings\Temporary Internet Files\Content.IE5\GHAJW1IJ\pack[1].7z (PUP.Optional.BrowserDefender.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Lenovo\Local Settings\Temporary Internet Files\Content.IE5\WHAN8HYR\OptimizerPro[1].exe (PUP.Optional.OptimizePro.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Lenovo\My Documents\Downloads\MM26_ENU-jd.exe (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Lenovo\My Documents\Downloads\Bruno Mars Ft Jackie Boyz - Break Down.exe (PUP.Optional.Installex) -> Nebyla provedena žádná instrukce.

(konec)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o pomoc

#12 Příspěvek od Márty84 »

:arrow: Vsechny nalezy nechte odstranit, pak MBAM odinstalujte.

:arrow: Jelikoz mate havet v bodech obnovy, vymazte je, navod zde http://forum.viry.cz/viewtopic.php?f=46&t=47040 - nezapomente to pak zase zapnout!


:arrow: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe , ulozte ho na plochu a spustte.
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Zprava a objevi se log. Ten mi sem vlozte
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

SimčaBrunoMars
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 19 pro 2012 20:57

Re: Prosím o pomoc

#13 Příspěvek od SimčaBrunoMars »

:)

RogueKiller V8.6.5 [Aug 5 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Feedback : http://www.adlice.com/forum/
Website : http://www.adlice.com/softwares/roguekiller/
Blog : http://tigzyrk.blogspot.com/

Operating System : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User : Lenovo [Admin rights]
Mode : Scan -- Date : 08/13/2013 10:06:55
| ARK || FAK || MBR |

¤¤¤ Bad processes : 1 ¤¤¤
[BLPATH] OptimizerPro.exe -- C:\Documents and Settings\All Users\Application Data\BetterSoft\OptimizerPro\OptimizerPro.exe [-] -> KILLED [TermProc]

¤¤¤ Registry Entries : 2 ¤¤¤
[PROXY IE] HKCU\[...]\Internet Settings : ProxyServer (:0) -> FOUND
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND

¤¤¤ Scheduled tasks : 1 ¤¤¤
[V1][ROGUE ST] schedule!1173230912.job : C:\Documents and Settings\All Users\Application Data\BetterSoft\OptimizerPro\OptimizerPro.exe - /schedule /profile "c:\documents and settings\all users\application data\bettersoft\optimizerpro\1173230912.ini" [-][x] -> FOUND

¤¤¤ Startup Entries : 0 ¤¤¤

¤¤¤ Web browsers : 0 ¤¤¤

¤¤¤ Particular Files / Folders: ¤¤¤

¤¤¤ Driver : [LOADED] ¤¤¤

¤¤¤ External Hives: ¤¤¤

¤¤¤ Infection : ¤¤¤

¤¤¤ HOSTS File: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ MBR Check: ¤¤¤

+++++ PhysicalDrive0: HDS728040PLA320 40Y9027LEN +++++
--- User ---
[MBR] e030a782e5f7e149d1a91b0918cbbe79
[BSP] 20fc8ce2911a7af845d91dec80b9d94a : MBR Code unknown
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 33392 Mo
1 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 68388705 | Size: 4761 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Finished : << RKreport[0]_S_08132013_100655.txt >>

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o pomoc

#14 Příspěvek od Márty84 »

:arrow: Znovu spustte RogueKiller (pokud jste ho jeste nezavrel/a, rovnou kliknete na napis Smazat)
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Smazat.
Pak kliknete na napis Zprava a objevi se log. Ten mi sem vlozte.
Pak kliknete na napis Oprava Host a Zprava.
Objevi se dalsi log. I ten mi sem vlozte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

SimčaBrunoMars
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 19 pro 2012 20:57

Re: Prosím o pomoc

#15 Příspěvek od SimčaBrunoMars »

:arrow: log po zmazaní
RogueKiller V8.6.5 [Aug 5 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Feedback : http://www.adlice.com/forum/
Website : http://www.adlice.com/softwares/roguekiller/
Blog : http://tigzyrk.blogspot.com/

Operating System : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User : Lenovo [Admin rights]
Mode : Remove -- Date : 08/14/2013 09:51:24
| ARK || FAK || MBR |

¤¤¤ Bad processes : 1 ¤¤¤
[SUSP PATH][DLL] explorer.exe -- C:\DOCUME~1\Lenovo\LOCALS~1\Temp\CmdLineExt.dll [x] -> UNLOADED

¤¤¤ Registry Entries : 1 ¤¤¤
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REPLACED (0)

¤¤¤ Scheduled tasks : 0 ¤¤¤

¤¤¤ Startup Entries : 0 ¤¤¤

¤¤¤ Web browsers : 0 ¤¤¤

¤¤¤ Particular Files / Folders: ¤¤¤

¤¤¤ Driver : [LOADED] ¤¤¤

¤¤¤ External Hives: ¤¤¤

¤¤¤ Infection : ¤¤¤

¤¤¤ HOSTS File: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ MBR Check: ¤¤¤

+++++ PhysicalDrive0: HDS728040PLA320 40Y9027LEN +++++
--- User ---
[MBR] e030a782e5f7e149d1a91b0918cbbe79
[BSP] 20fc8ce2911a7af845d91dec80b9d94a : MBR Code unknown
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 33392 Mo
1 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 68388705 | Size: 4761 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Finished : << RKreport[0]_D_08142013_095124.txt >>
RKreport[0]_S_08132013_100655.txt;RKreport[0]_S_08142013_095013.txt

Zamčeno