ComboFix log :
ComboFix 11-10-19.04 - Spravca . 10. 2011 18:45:33.1.2 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.421.1051.18.3003.1784 [GMT 2:00]
Running from: c:\users\Spravca\Downloads\Programs\ComboFix.exe
AV: ESET Smart Security 5.0 *Disabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
FW: ESET personal firewall *Disabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
SP: ESET Smart Security 5.0 *Disabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\components\idmmzcc.dll
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\components\iIDMMzCC.xpt
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\components2\idmhelper.js
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\components2\idmhelper2.js
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\components2\idmmzcc.dll
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\components2\idmmzcc64.dll
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\components2\iIDMHelper.xpt
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\components2\iIDMHelper2.xpt
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\components2\iIDMMzCC.xpt
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\chrome.manifest
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\chrome\idmmzcc.jar
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\install.js
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\install.rdf
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\META-INF\manifest.mf
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\META-INF\zigbert.rsa
c:\users\Spravca\AppData\Roaming\IDM\idmmzcc3\META-INF\zigbert.sf
c:\users\Spravca\AppData\Roaming\Windows Defender
c:\windows\assembly\tmp\U
c:\windows\assembly\tmp\U\000000c0.@
c:\windows\assembly\tmp\U\000000cb.@
c:\windows\assembly\tmp\U\000000cf.@
c:\windows\assembly\tmp\U\80000000.@
c:\windows\assembly\tmp\U\800000c0.@
c:\windows\assembly\tmp\U\800000cb.@
c:\windows\assembly\tmp\U\800000cf.@
c:\windows\pkunzip.pif
c:\windows\pkzip.pif
c:\windows\System64
.
.
((((((((((((((((((((((((( Files Created from 2011-09-19 to 2011-10-19 )))))))))))))))))))))))))))))))
.
.
2011-10-19 17:03 . 2011-10-19 17:03 69000 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{4AA10484-ECDC-4D0F-BB68-C17CA19EDDFF}\offreg.dll
2011-10-19 16:57 . 2011-10-19 16:57 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-10-19 16:18 . 2011-10-19 16:18 -------- d-----w- c:\program files\ESET
2011-10-19 14:41 . 2011-10-19 14:41 388096 ----a-r- c:\users\Spravca\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-10-19 14:41 . 2011-10-19 14:41 -------- d-----w- c:\program files (x86)\Trend Micro
2011-10-19 12:58 . 2011-09-13 00:26 9049936 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{4AA10484-ECDC-4D0F-BB68-C17CA19EDDFF}\mpengine.dll
2011-10-16 16:23 . 2011-10-16 16:23 -------- d-----w- c:\program files (x86)\Safari
2011-10-16 16:22 . 2011-10-16 18:02 -------- d-----w- c:\users\Spravca\AppData\Roaming\Apple Computer
2011-10-16 16:21 . 2009-05-18 11:17 34152 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2011-10-16 16:21 . 2008-04-17 10:12 126312 ----a-w- c:\windows\system32\GEARAspi64.dll
2011-10-16 16:21 . 2008-04-17 10:12 107368 ----a-w- c:\windows\SysWow64\GEARAspi.dll
2011-10-16 16:21 . 2011-10-16 16:21 -------- d-----w- c:\programdata\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
2011-10-16 16:21 . 2011-10-16 16:21 -------- d-----w- c:\program files\iTunes
2011-10-16 16:21 . 2011-10-16 16:21 -------- d-----w- c:\program files (x86)\iTunes
2011-10-16 16:21 . 2011-10-16 16:21 -------- d-----w- c:\program files\iPod
2011-10-16 16:20 . 2011-10-16 16:20 -------- d-----w- c:\program files\Common Files\Apple
2011-10-16 16:20 . 2011-10-16 16:20 -------- d-----w- c:\program files\Bonjour
2011-10-16 16:20 . 2011-10-16 16:20 -------- d-----w- c:\program files (x86)\Bonjour
2011-10-16 16:12 . 2011-10-16 16:21 -------- d-----w- c:\program files (x86)\Common Files\Apple
2011-10-15 18:41 . 2011-10-15 18:41 -------- d-sh--w- c:\windows\system32\%APPDATA%
2011-10-14 21:21 . 2011-10-14 21:21 -------- d-----w- c:\programdata\hssff
2011-10-14 21:19 . 2011-10-05 22:43 571208 ----a-w- c:\program files (x86)\Mozilla Firefox\extensions\
afurladvisor@anchorfree.com\components\afurladvisor70.dll
2011-10-14 21:19 . 2011-10-05 22:43 571208 ----a-w- c:\program files (x86)\Mozilla Firefox\extensions\
afurladvisor@anchorfree.com\components\afurladvisor60.dll
2011-10-14 21:03 . 2011-10-14 21:04 -------- d-----w- C:\Hotspot Shield
2011-10-14 21:02 . 2011-10-05 22:43 571208 ----a-w- c:\program files (x86)\Mozilla Firefox\extensions\
afurladvisor@anchorfree.com\components\afurladvisor50.dll
2011-10-14 21:02 . 2011-08-18 17:32 635720 ----a-w- c:\program files (x86)\Mozilla Firefox\extensions\
afurladvisor@anchorfree.com\components\afurladvisor.dll
2011-10-14 21:00 . 2011-10-14 21:19 -------- d-----w- c:\program files (x86)\Hotspot Shield
2011-10-11 18:41 . 2011-08-17 05:26 613888 ----a-w- c:\windows\system32\psisdecd.dll
2011-10-11 18:41 . 2011-08-17 04:19 75776 ----a-w- c:\windows\SysWow64\psisrndr.ax
2011-10-11 18:41 . 2011-08-17 05:25 108032 ----a-w- c:\windows\system32\psisrndr.ax
2011-10-11 18:41 . 2011-08-17 04:24 465408 ----a-w- c:\windows\SysWow64\psisdecd.dll
2011-10-11 18:41 . 2011-09-06 03:03 3138048 ----a-w- c:\windows\system32\win32k.sys
2011-10-11 18:41 . 2011-08-27 05:37 331776 ----a-w- c:\windows\system32\oleacc.dll
2011-10-11 18:41 . 2011-08-27 04:26 233472 ----a-w- c:\windows\SysWow64\oleacc.dll
2011-10-11 18:41 . 2011-08-27 05:37 861696 ----a-w- c:\windows\system32\oleaut32.dll
2011-10-11 18:41 . 2011-08-27 04:26 571904 ----a-w- c:\windows\SysWow64\oleaut32.dll
2011-09-29 15:42 . 2011-09-29 15:42 -------- d-----w- c:\program files (x86)\City Interactive
2011-09-28 19:09 . 2011-10-16 16:30 -------- d-----w- c:\users\Spravca\AppData\Local\Apple Computer
2011-09-27 14:01 . 2011-09-27 14:01 -------- d-----w- c:\programdata\Ashampoo
2011-09-27 14:00 . 2011-10-12 03:14 -------- d-----w- c:\users\Spravca\AppData\Local\Conduit
2011-09-26 18:18 . 2011-09-26 18:18 -------- d-----w- c:\users\Spravca\AppData\Local\Native Instruments
2011-09-26 18:15 . 2011-09-26 18:16 -------- d-----w- c:\program files (x86)\Native Instruments
2011-09-25 11:11 . 2011-09-25 11:11 -------- d-----w- c:\windows\system32\ms-MY
2011-09-25 08:46 . 2011-09-25 08:46 -------- d-----r- c:\users\Spravca\Podcasts
2011-09-23 03:06 . 2011-09-23 03:06 -------- d-----w- c:\program files (x86)\Microsoft CAPICOM 2.1.0.2
2011-09-23 03:04 . 2011-09-23 03:04 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2011-09-22 18:07 . 2011-09-22 18:07 -------- d-----w- c:\users\Spravca\AppData\Roaming\Malwarebytes
2011-09-22 18:06 . 2011-09-22 18:06 -------- d-----w- c:\programdata\Malwarebytes
2011-09-22 18:06 . 2011-09-22 18:06 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2011-09-22 18:06 . 2011-08-31 15:00 25416 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-09-22 12:56 . 2011-09-22 12:57 -------- d-----w- c:\users\Spravca\AppData\Local\Nero
2011-09-22 12:40 . 2011-09-22 12:51 -------- d-----w- c:\program files (x86)\Nero
2011-09-22 12:40 . 2011-09-22 12:51 -------- d-----w- c:\programdata\Nero
2011-09-22 12:37 . 2011-10-11 18:54 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2011-09-22 03:13 . 2011-09-22 03:13 -------- d-----w- c:\program files (x86)\XviD MPEG-4 Video Codec
2011-09-22 03:13 . 2009-10-25 01:18 198144 ----a-w- c:\windows\SysWow64\xvidvfw.dll
2011-09-22 03:13 . 2009-10-25 01:18 150528 ----a-w- c:\windows\SysWow64\xvid.ax
2011-09-22 03:13 . 2009-10-25 01:17 887296 ----a-w- c:\windows\SysWow64\xvidcore.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-10-16 04:46 . 2011-07-29 09:17 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-09-03 04:50 . 2011-09-03 04:50 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll
2011-08-30 21:05 . 2011-08-30 21:05 96104 ----a-w- c:\windows\system32\dns-sd.exe
2011-08-30 21:05 . 2011-08-30 21:05 85864 ----a-w- c:\windows\system32\dnssd.dll
2011-08-30 21:05 . 2011-08-30 21:05 61288 ----a-w- c:\windows\system32\jdns_sd.dll
2011-08-30 21:05 . 2011-08-30 21:05 212840 ----a-w- c:\windows\system32\dnssdX.dll
2011-08-30 21:05 . 2011-08-30 21:05 83816 ----a-w- c:\windows\SysWow64\dns-sd.exe
2011-08-30 21:05 . 2011-08-30 21:05 73064 ----a-w- c:\windows\SysWow64\dnssd.dll
2011-08-30 21:05 . 2011-08-30 21:05 50536 ----a-w- c:\windows\SysWow64\jdns_sd.dll
2011-08-30 21:05 . 2011-08-30 21:05 178536 ----a-w- c:\windows\SysWow64\dnssdX.dll
2011-08-17 16:37 . 2011-07-29 09:02 505128 ------w- c:\windows\SysWow64\msvcp71.dll
2011-08-17 16:37 . 2011-07-29 09:02 353576 ------w- c:\windows\SysWow64\msvcr71.dll
2011-08-17 16:37 . 2011-07-29 09:02 29480 ------w- c:\windows\SysWow64\msxml3a.dll
2011-08-17 15:16 . 2011-08-03 03:14 1066544 ------w- c:\windows\SysWow64\mfc71.dll
2011-08-09 12:24 . 2011-08-09 12:24 202576 ----a-w- c:\windows\system32\drivers\eamonm.sys
2011-08-04 07:20 . 2011-08-04 07:20 62496 ----a-w- c:\windows\system32\drivers\epfwwfp.sys
2011-08-04 07:20 . 2011-08-04 07:20 38288 ----a-w- c:\windows\system32\drivers\EpfwLWF.sys
2011-08-04 07:20 . 2011-08-04 07:20 187632 ----a-w- c:\windows\system32\drivers\epfw.sys
2011-08-04 07:20 . 2011-08-04 07:20 146432 ----a-w- c:\windows\system32\drivers\ehdrv.sys
2011-08-02 13:53 . 2011-08-02 13:53 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2011-08-02 13:52 . 2011-08-02 13:52 458048 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2011-07-29 18:57 . 2011-07-29 18:58 472808 ------w- c:\windows\SysWow64\deployJava1.dll
2011-07-29 09:21 . 2011-07-29 09:21 86528 ----a-w- c:\windows\SysWow64\iesysprep.dll
2011-07-29 09:21 . 2011-07-29 09:21 76800 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2011-07-29 09:21 . 2011-07-29 09:21 74752 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2011-07-29 09:21 . 2011-07-29 09:21 74752 ----a-w- c:\windows\SysWow64\iesetup.dll
2011-07-29 09:21 . 2011-07-29 09:21 63488 ----a-w- c:\windows\SysWow64\tdc.ocx
2011-07-29 09:21 . 2011-07-29 09:21 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2011-07-29 09:21 . 2011-07-29 09:21 420864 ----a-w- c:\windows\SysWow64\vbscript.dll
2011-07-29 09:21 . 2011-07-29 09:21 367104 ----a-w- c:\windows\SysWow64\html.iec
2011-07-29 09:21 . 2011-07-29 09:21 23552 ----a-w- c:\windows\SysWow64\licmgr10.dll
2011-07-29 09:21 . 2011-07-29 09:21 161792 ----a-w- c:\windows\SysWow64\msls31.dll
2011-07-29 09:21 . 2011-07-29 09:21 152064 ----a-w- c:\windows\SysWow64\wextract.exe
2011-07-29 09:21 . 2011-07-29 09:21 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2011-07-29 09:21 . 2011-07-29 09:21 1427456 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2011-07-29 09:21 . 2011-07-29 09:21 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2011-07-29 09:21 . 2011-07-29 09:21 91648 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2011-07-29 09:21 . 2011-07-29 09:21 89088 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2011-07-29 09:21 . 2011-07-29 09:21 85504 ----a-w- c:\windows\system32\iesetup.dll
2011-07-29 09:21 . 2011-07-29 09:21 76800 ----a-w- c:\windows\system32\tdc.ocx
2011-07-29 09:21 . 2011-07-29 09:21 603648 ----a-w- c:\windows\system32\vbscript.dll
2011-07-29 09:21 . 2011-07-29 09:21 49664 ----a-w- c:\windows\system32\imgutil.dll
2011-07-29 09:21 . 2011-07-29 09:21 48640 ----a-w- c:\windows\system32\mshtmler.dll
2011-07-29 09:21 . 2011-07-29 09:21 448512 ----a-w- c:\windows\system32\html.iec
2011-07-29 09:21 . 2011-07-29 09:21 35840 ----a-w- c:\windows\SysWow64\imgutil.dll
2011-07-29 09:21 . 2011-07-29 09:21 30720 ----a-w- c:\windows\system32\licmgr10.dll
2011-07-29 09:21 . 2011-07-29 09:21 222208 ----a-w- c:\windows\system32\msls31.dll
2011-07-29 09:21 . 2011-07-29 09:21 173056 ----a-w- c:\windows\system32\ieUnatt.exe
2011-07-29 09:21 . 2011-07-29 09:21 165888 ----a-w- c:\windows\system32\iexpress.exe
2011-07-29 09:21 . 2011-07-29 09:21 160256 ----a-w- c:\windows\system32\wextract.exe
2011-07-29 09:21 . 2011-07-29 09:21 1492992 ----a-w- c:\windows\system32\inetcpl.cpl
2011-07-29 09:21 . 2011-07-29 09:21 142848 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2011-07-29 09:21 . 2011-07-29 09:21 135168 ----a-w- c:\windows\system32\IEAdvpack.dll
2011-07-29 09:21 . 2011-07-29 09:21 12288 ----a-w- c:\windows\system32\mshta.exe
2011-07-29 09:21 . 2011-07-29 09:21 11776 ----a-w- c:\windows\SysWow64\mshta.exe
2011-07-29 09:21 . 2011-07-29 09:21 114176 ----a-w- c:\windows\system32\admparse.dll
2011-07-29 09:21 . 2011-07-29 09:21 111616 ----a-w- c:\windows\system32\iesysprep.dll
2011-07-29 09:21 . 2011-07-29 09:21 101888 ----a-w- c:\windows\SysWow64\admparse.dll
2011-07-22 14:47 . 2011-07-22 14:47 67072 ----a-w- c:\windows\system32\ZuneTcp2Udp.dll
2011-07-22 14:47 . 2011-07-22 14:47 60928 ----a-w- c:\windows\system32\ZuneRegUtil.dll
2011-07-22 14:47 . 2011-07-22 14:47 45568 ----a-w- c:\windows\system32\ZunePTDNS.dll
2011-07-22 14:47 . 2011-07-22 14:47 405504 ----a-w- c:\windows\system32\ZuneNetProxy.dll
2011-07-22 14:47 . 2011-07-22 14:47 354304 ----a-w- c:\windows\system32\ZuneCoInst.dll
2011-07-22 14:47 . 2011-07-22 14:47 249344 ----a-w- c:\windows\system32\ZuneMTPZ.dll
2011-07-22 14:47 . 2011-07-22 14:47 149504 ----a-w- c:\windows\system32\ZuneUsbTransport.dll
2011-07-22 14:47 . 2011-07-22 14:47 1093632 ----a-w- c:\windows\system32\drivers\UMDF\ZuneDriver.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
"IDMan"="c:\program files (x86)\Internet Download Manager\IDMan.exe" [2011-04-25 3298712]
"AFProg"="c:\program files (x86)\Hotspot Shield\AnchorFree\ctrl\AFController.exe" [2006-06-05 118784]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920]
"Hercules DJ Series"="c:\program files\Hercules\Audio\DJ Console Series\HDJSeriesCPL.exe" [2009-10-23 639784]
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2011-09-27 59240]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2011-07-05 421888]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2011-10-09 421736]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
"EnableLinkedConnections"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux2"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 Com4QLBEx;Com4QLBEx;c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408]
R3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [2008-08-07 3276800]
R3 LVPr2M64;Logitech LVPr2M64 Driver;c:\windows\system32\DRIVERS\LVPr2M64.sys [x]
R3 Revoflt;Revoflt;c:\windows\system32\DRIVERS\revoflt.sys [x]
R3 RtsUIR;Realtek IR Driver;c:\windows\system32\DRIVERS\Rts516xIR.sys [x]
R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [x]
R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [x]
R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [x]
R3 WMZuneComm;Zune Windows Mobile Connectivity Service;c:\program files\Zune\WMZuneComm.exe [2011-08-05 306400]
S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [x]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [x]
S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC};Power Control [2011/08/17 18:42];c:\program files (x86)\CyberLink\PowerDVD10\NavFilter\000.fcl [2010-11-17 19:29 146928]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
S2 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\x86\ekrn.exe [2011-09-22 974944]
S2 Fabs;FABS - Helping agent for MAGIX media database;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [2009-08-27 1253376]
S2 HerculesDJControlMP3;Hercules DJ Control MP3;c:\program files\Hercules\Audio\DJ Console Series\HerculesDJControlMP3.EXE [2007-11-21 20480]
S2 HsfXAudioService;HsfXAudioService;c:\windows\system32\svchost.exe [2009-07-14 27136]
S2 hshld;Hotspot Shield Service;c:\program files (x86)\Hotspot Shield\bin\openvpnas.exe [2011-10-06 288088]
S2 HssWd;Hotspot Shield Monitoring Service;c:\program files (x86)\Hotspot Shield\bin\hsswd.exe [2011-05-26 329544]
S2 IDMWFP;IDMWFP;c:\windows\system32\DRIVERS\idmwfp.sys [x]
S2 NAUpdate;Nero Update;c:\program files (x86)\Nero\Update\NASvc.exe [2010-05-04 503080]
S3 Bulk;HDJBulk;c:\windows\system32\Drivers\HDJBulk.sys [x]
S3 CAXHWAZL;CAXHWAZL;c:\windows\system32\DRIVERS\CAXHWAZL.sys [x]
S3 HDJMidi;DJ Control MP3 e2 MIDI;c:\windows\system32\DRIVERS\HDJMidi.sys [x]
S3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI;c:\windows\system32\drivers\IntcHdmi.sys [x]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2010-08-16 11:43 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe
.
Contents of the 'Scheduled Tasks' folder
.
2011-10-17 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2829890784-1566823118-172072024-1000Core.job
- c:\users\Spravca\AppData\Local\Google\Update\GoogleUpdate.exe [2011-09-22 18:30]
.
2011-10-19 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2829890784-1566823118-172072024-1000UA.job
- c:\users\Spravca\AppData\Local\Google\Update\GoogleUpdate.exe [2011-09-22 18:30]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}]
2011-06-20 17:37 287048 ----a-w- c:\program files (x86)\Hotspot Shield\HssIE\HssIE_64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\IDM Shell Extension]
@="{CDC95B92-E27C-4745-A8C5-64A52A78855D}"
[HKEY_CLASSES_ROOT\CLSID\{CDC95B92-E27C-4745-A8C5-64A52A78855D}]
2011-03-02 15:23 85232 ----a-w- c:\program files (x86)\Internet Download Manager\IDMShellExt64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-02-11 162328]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-02-11 386584]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-02-11 417304]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2011-09-22 4035152]
"combofix"="c:\combofix\CF18019.3XE" [2010-11-21 345088]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://search.hotspotshield.com/g/?c=h
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Prevziať cez IDM - c:\program files (x86)\Internet Download Manager\IEExt.htm
IE: Prevziať cez IDM všetky prepojenia - c:\program files (x86)\Internet Download Manager\IEGetAll.htm
TCP: DhcpNameServer = 10.0.0.138 10.0.0.138
FF - ProfilePath - c:\users\Spravca\AppData\Roaming\Mozilla\Firefox\Profiles\iooim8c1.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2475029&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - MyAshampoo Customized Web Search
FF - prefs.js: browser.startup.homepage - hxxp://
www.google.sk/
.
- - - - ORPHANS REMOVED - - - -
.
URLSearchHooks-{a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - (no file)
Wow6432Node-HKCU-Run-Clock Widget (HTC Home) - c:\program files (x86)\HTC Home\Clock.exe
Wow6432Node-HKCU-Run-Photos Widget (HTC Home) - c:\program files (x86)\HTC Home\Photos.exe
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\{1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC}]
"ImagePath"="\??\c:\program files (x86)\CyberLink\PowerDVD10\NavFilter\000.fcl"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-2829890784-1566823118-172072024-1000_Classes\Wow6432Node\CLSID\{1e657a76-7dd0-4863-97b7-4298d6ecfcb6}]
@Denied: (Full) (Everyone)
@Allowed: (Read) (RestrictedCode)
"Model"=dword:00000110
"Therad"=dword:00000007
"MData"=hex(0):73,d5,cf,b8,a4,07,89,80,31,e4,35,6b,2a,ca,fe,43,b6,1f,81,1f,5a,
1b,4d,36,46,8f,3c,f2,5c,68,ee,21,46,8f,3c,f2,5c,68,ee,21,46,8f,3c,f2,5c,68,\
.
[HKEY_USERS\S-1-5-21-2829890784-1566823118-172072024-1000_Classes\Wow6432Node\CLSID\{7B8E9164-324D-4A2E-A46D-0165FB2000EC}]
@Denied: (Full) (Everyone)
"scansk"=hex(0):93,94,23,a6,70,fa,ff,aa,d7,c9,53,75,b7,5e,83,d7,19,2f,3c,82,7b,
2b,e8,9c,d0,66,48,20,27,fa,8d,78,fc,1e,ba,11,5b,0b,f2,51,00,00,00,00,00,00,\
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10u_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10u_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10u.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10u.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10u.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10u.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files (x86)\Hotspot Shield\HssWPR\hsssrv.exe
c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe
c:\program files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
c:\program files (x86)\Hotspot Shield\bin\openvpntray.exe
.
**************************************************************************
.
Completion time: 2011-10-19 19:19:13 - machine was rebooted
ComboFix-quarantined-files.txt 2011-10-19 17:19
.
Pre-Run: 136 313 720 832 bytes free
Post-Run: 136 229 081 088 bytes free
.
- - End Of File - - 7911D4E05ABD5CE3CA3F7ED3064B45A2
TDSSkiller log:
19:22:47.0878 2904 TDSS rootkit removing tool 2.6.11.0 Oct 19 2011 13:50:27
19:22:48.0204 2904 ============================================================
19:22:48.0204 2904 Current date / time: 2011/10/19 19:22:48.0204
19:22:48.0205 2904 SystemInfo:
19:22:48.0205 2904
19:22:48.0205 2904 OS Version: 6.1.7601 ServicePack: 1.0
19:22:48.0205 2904 Product type: Workstation
19:22:48.0205 2904 ComputerName: SPRAVCA-PC
19:22:48.0205 2904 UserName: Spravca
19:22:48.0205 2904 Windows directory: C:\Windows
19:22:48.0205 2904 System windows directory: C:\Windows
19:22:48.0205 2904 Running under WOW64
19:22:48.0205 2904 Processor architecture: Intel x64
19:22:48.0205 2904 Number of processors: 2
19:22:48.0205 2904 Page size: 0x1000
19:22:48.0205 2904 Boot type: Normal boot
19:22:48.0205 2904 ============================================================
19:22:49.0481 2904 Initialize success
19:23:13.0714 2104 ============================================================
19:23:13.0714 2104 Scan started
19:23:13.0714 2104 Mode: Manual; SigCheck; TDLFS;
19:23:13.0714 2104 ============================================================
19:23:14.0780 2104 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
19:23:14.0863 2104 1394ohci - ok
19:23:14.0928 2104 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
19:23:14.0950 2104 ACPI - ok
19:23:14.0964 2104 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
19:23:14.0997 2104 AcpiPmi - ok
19:23:15.0088 2104 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\drivers\adp94xx.sys
19:23:15.0114 2104 adp94xx - ok
19:23:15.0169 2104 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\drivers\adpahci.sys
19:23:15.0196 2104 adpahci - ok
19:23:15.0220 2104 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\drivers\adpu320.sys
19:23:15.0237 2104 adpu320 - ok
19:23:15.0326 2104 AFD (d5b031c308a409a0a576bff4cf083d30) C:\Windows\system32\drivers\afd.sys
19:23:15.0371 2104 AFD - ok
19:23:15.0427 2104 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
19:23:15.0441 2104 agp440 - ok
19:23:15.0466 2104 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
19:23:15.0481 2104 aliide - ok
19:23:15.0507 2104 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
19:23:15.0521 2104 amdide - ok
19:23:15.0560 2104 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\drivers\amdk8.sys
19:23:15.0580 2104 AmdK8 - ok
19:23:15.0593 2104 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\drivers\amdppm.sys
19:23:15.0612 2104 AmdPPM - ok
19:23:15.0652 2104 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
19:23:15.0667 2104 amdsata - ok
19:23:15.0697 2104 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\drivers\amdsbs.sys
19:23:15.0716 2104 amdsbs - ok
19:23:15.0743 2104 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
19:23:15.0756 2104 amdxata - ok
19:23:15.0814 2104 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
19:23:15.0867 2104 AppID - ok
19:23:15.0983 2104 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\drivers\arc.sys
19:23:15.0998 2104 arc - ok
19:23:16.0016 2104 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\drivers\arcsas.sys
19:23:16.0032 2104 arcsas - ok
19:23:16.0091 2104 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
19:23:16.0135 2104 AsyncMac - ok
19:23:16.0154 2104 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
19:23:16.0168 2104 atapi - ok
19:23:16.0277 2104 athr (8c56e93749ba53a4b645963d3439e01e) C:\Windows\system32\DRIVERS\athrx.sys
19:23:16.0370 2104 athr - ok
19:23:16.0471 2104 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\drivers\bxvbda.sys
19:23:16.0522 2104 b06bdrv - ok
19:23:16.0595 2104 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
19:23:16.0657 2104 b57nd60a - ok
19:23:16.0958 2104 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
19:23:17.0018 2104 Beep - ok
19:23:17.0085 2104 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
19:23:17.0103 2104 blbdrive - ok
19:23:17.0182 2104 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
19:23:17.0207 2104 bowser - ok
19:23:17.0232 2104 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\drivers\BrFiltLo.sys
19:23:17.0253 2104 BrFiltLo - ok
19:23:17.0264 2104 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\drivers\BrFiltUp.sys
19:23:17.0291 2104 BrFiltUp - ok
19:23:17.0325 2104 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
19:23:17.0395 2104 Brserid - ok
19:23:17.0407 2104 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
19:23:17.0446 2104 BrSerWdm - ok
19:23:17.0456 2104 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
19:23:17.0494 2104 BrUsbMdm - ok
19:23:17.0506 2104 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
19:23:17.0525 2104 BrUsbSer - ok
19:23:17.0539 2104 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\drivers\bthmodem.sys
19:23:17.0561 2104 BTHMODEM - ok
19:23:17.0650 2104 Bulk (d8bd549336593ca304b3524ff2f42717) C:\Windows\system32\Drivers\HDJBulk.sys
19:23:17.0727 2104 Bulk - ok
19:23:17.0783 2104 catchme - ok
19:23:17.0858 2104 CAXHWAZL (d1787e11c6a0078ddeaf8cf3ee2ab293) C:\Windows\system32\DRIVERS\CAXHWAZL.sys
19:23:17.0931 2104 CAXHWAZL - ok
19:23:17.0971 2104 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
19:23:18.0038 2104 cdfs - ok
19:23:18.0097 2104 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
19:23:18.0135 2104 cdrom - ok
19:23:18.0206 2104 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\drivers\circlass.sys
19:23:18.0251 2104 circlass - ok
19:23:18.0291 2104 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
19:23:18.0315 2104 CLFS - ok
19:23:18.0406 2104 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
19:23:18.0446 2104 CmBatt - ok
19:23:18.0462 2104 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
19:23:18.0482 2104 cmdide - ok
19:23:18.0517 2104 CNG (d5fea92400f12412b3922087c09da6a5) C:\Windows\system32\Drivers\cng.sys
19:23:18.0573 2104 CNG - ok
19:23:18.0666 2104 CnxtHdAudService (0d23c3312838eea1ed55d5f135bca613) C:\Windows\system32\drivers\CHDRT64.sys
19:23:18.0717 2104 CnxtHdAudService - ok
19:23:18.0761 2104 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
19:23:18.0776 2104 Compbatt - ok
19:23:18.0832 2104 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\DRIVERS\CompositeBus.sys
19:23:18.0873 2104 CompositeBus - ok
19:23:18.0928 2104 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\drivers\crcdisk.sys
19:23:18.0943 2104 crcdisk - ok
19:23:19.0007 2104 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
19:23:19.0067 2104 DfsC - ok
19:23:19.0087 2104 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
19:23:19.0142 2104 discache - ok
19:23:19.0199 2104 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\drivers\disk.sys
19:23:19.0214 2104 Disk - ok
19:23:19.0291 2104 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
19:23:19.0342 2104 drmkaud - ok
19:23:19.0393 2104 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
19:23:19.0430 2104 DXGKrnl - ok
19:23:19.0496 2104 eamonm (13533557d01b88c83110d5cf749f14d7) C:\Windows\system32\DRIVERS\eamonm.sys
19:23:19.0511 2104 eamonm - ok
19:23:19.0641 2104 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\drivers\evbda.sys
19:23:19.0774 2104 ebdrv - ok
19:23:19.0847 2104 ehdrv (e097728129e7b79bf1089d7aef42332b) C:\Windows\system32\DRIVERS\ehdrv.sys
19:23:19.0867 2104 ehdrv - ok
19:23:19.0932 2104 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\drivers\elxstor.sys
19:23:19.0980 2104 elxstor - ok
19:23:20.0009 2104 epfw (198c6fbc30bbd9632ea051203dccf204) C:\Windows\system32\DRIVERS\epfw.sys
19:23:20.0022 2104 epfw - ok
19:23:20.0113 2104 EpfwLWF (56de463f517710a8aa44eef82c35b3c9) C:\Windows\system32\DRIVERS\EpfwLWF.sys
19:23:20.0123 2104 EpfwLWF - ok
19:23:20.0167 2104 epfwwfp (710b0442bb2f99278d7b8e02a8849c11) C:\Windows\system32\DRIVERS\epfwwfp.sys
19:23:20.0179 2104 epfwwfp - ok
19:23:20.0215 2104 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
19:23:20.0254 2104 ErrDev - ok
19:23:20.0314 2104 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
19:23:20.0379 2104 exfat - ok
19:23:20.0427 2104 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
19:23:20.0486 2104 fastfat - ok
19:23:20.0515 2104 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\drivers\fdc.sys
19:23:20.0556 2104 fdc - ok
19:23:20.0583 2104 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
19:23:20.0597 2104 FileInfo - ok
19:23:20.0614 2104 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
19:23:20.0672 2104 Filetrace - ok
19:23:20.0737 2104 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\drivers\flpydisk.sys
19:23:20.0760 2104 flpydisk - ok
19:23:20.0831 2104 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
19:23:20.0851 2104 FltMgr - ok
19:23:20.0878 2104 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
19:23:20.0894 2104 FsDepends - ok
19:23:20.0905 2104 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
19:23:20.0940 2104 Fs_Rec - ok
19:23:21.0001 2104 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
19:23:21.0022 2104 fvevol - ok
19:23:21.0068 2104 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\drivers\gagp30kx.sys
19:23:21.0083 2104 gagp30kx - ok
19:23:21.0152 2104 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
19:23:21.0172 2104 GEARAspiWDM - ok
19:23:21.0191 2104 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
19:23:21.0242 2104 hcw85cir - ok
19:23:21.0292 2104 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
19:23:21.0332 2104 HdAudAddService - ok
19:23:21.0356 2104 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\DRIVERS\HDAudBus.sys
19:23:21.0393 2104 HDAudBus - ok
19:23:21.0471 2104 HDJMidi (f10b45171f7e8618e0868f3a0c9efe84) C:\Windows\system32\DRIVERS\HDJMidi.sys
19:23:21.0507 2104 HDJMidi - ok
19:23:21.0564 2104 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\drivers\HidBatt.sys
19:23:21.0597 2104 HidBatt - ok
19:23:21.0609 2104 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\drivers\hidbth.sys
19:23:21.0634 2104 HidBth - ok
19:23:21.0662 2104 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\drivers\hidir.sys
19:23:21.0711 2104 HidIr - ok
19:23:21.0784 2104 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
19:23:21.0814 2104 HidUsb - ok
19:23:21.0900 2104 HpqKbFiltr (9af482d058be59cc28bce52e7c4b747c) C:\Windows\system32\DRIVERS\HpqKbFiltr.sys
19:23:21.0952 2104 HpqKbFiltr - ok
19:23:21.0973 2104 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
19:23:21.0989 2104 HpSAMD - ok
19:23:22.0095 2104 HSF_DPV (26c5d00321937e49b6bc91029947d094) C:\Windows\system32\DRIVERS\CAX_DPV.sys
19:23:22.0179 2104 HSF_DPV - ok
19:23:22.0362 2104 HssDrv (a60c877e1cd3aa2e4e5ccd8af305c0f1) C:\Windows\system32\DRIVERS\HssDrv.sys
19:23:22.0383 2104 HssDrv - ok
19:23:22.0521 2104 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
19:23:22.0636 2104 HTTP - ok
19:23:22.0660 2104 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
19:23:22.0674 2104 hwpolicy - ok
19:23:22.0716 2104 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys
19:23:22.0749 2104 i8042prt - ok
19:23:22.0830 2104 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
19:23:22.0863 2104 iaStorV - ok
19:23:22.0936 2104 IDMWFP (137d5454ec0008e45cf26be0dde1eb77) C:\Windows\system32\DRIVERS\idmwfp.sys
19:23:22.0960 2104 IDMWFP - ok
19:23:23.0278 2104 igfx (c6238c6abd6ac99f5d152da4e9439a3d) C:\Windows\system32\DRIVERS\igdkmd64.sys
19:23:23.0650 2104 igfx - ok
19:23:23.0757 2104 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\drivers\iirsp.sys
19:23:23.0782 2104 iirsp - ok
19:23:23.0848 2104 IntcHdmiAddService (d485d3bd3e2179aa86853a182f70699f) C:\Windows\system32\drivers\IntcHdmi.sys
19:23:23.0887 2104 IntcHdmiAddService - ok
19:23:23.0916 2104 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
19:23:23.0931 2104 intelide - ok
19:23:23.0983 2104 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
19:23:24.0036 2104 intelppm - ok
19:23:24.0062 2104 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:23:24.0104 2104 IpFilterDriver - ok
19:23:24.0131 2104 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
19:23:24.0150 2104 IPMIDRV - ok
19:23:24.0160 2104 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
19:23:24.0221 2104 IPNAT - ok
19:23:24.0294 2104 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
19:23:24.0329 2104 IRENUM - ok
19:23:24.0354 2104 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
19:23:24.0367 2104 isapnp - ok
19:23:24.0399 2104 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
19:23:24.0418 2104 iScsiPrt - ok
19:23:24.0447 2104 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
19:23:24.0460 2104 kbdclass - ok
19:23:24.0511 2104 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys
19:23:24.0553 2104 kbdhid - ok
19:23:24.0586 2104 KSecDD (ccd53b5bd33ce0c889e830d839c8b66e) C:\Windows\system32\Drivers\ksecdd.sys
19:23:24.0600 2104 KSecDD - ok
19:23:24.0626 2104 KSecPkg (9ff918a261752c12639e8ad4208d2c2f) C:\Windows\system32\Drivers\ksecpkg.sys
19:23:24.0642 2104 KSecPkg - ok
19:23:24.0658 2104 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
19:23:24.0713 2104 ksthunk - ok
19:23:24.0810 2104 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
19:23:24.0902 2104 lltdio - ok
19:23:24.0957 2104 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\drivers\lsi_fc.sys
19:23:24.0985 2104 LSI_FC - ok
19:23:25.0000 2104 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys
19:23:25.0021 2104 LSI_SAS - ok
19:23:25.0042 2104 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\drivers\lsi_sas2.sys
19:23:25.0056 2104 LSI_SAS2 - ok
19:23:25.0080 2104 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\drivers\lsi_scsi.sys
19:23:25.0095 2104 LSI_SCSI - ok
19:23:25.0149 2104 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
19:23:25.0241 2104 luafv - ok
19:23:25.0272 2104 LVPr2M64 - ok
19:23:25.0337 2104 mdmxsdk (e4f44ec214b3e381e1fc844a02926666) C:\Windows\system32\DRIVERS\mdmxsdk.sys
19:23:25.0369 2104 mdmxsdk - ok
19:23:25.0392 2104 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\drivers\megasas.sys
19:23:25.0417 2104 megasas - ok
19:23:25.0472 2104 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\drivers\MegaSR.sys
19:23:25.0500 2104 MegaSR - ok
19:23:25.0552 2104 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
19:23:25.0647 2104 Modem - ok
19:23:25.0700 2104 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
19:23:25.0749 2104 monitor - ok
19:23:25.0775 2104 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
19:23:25.0794 2104 mouclass - ok
19:23:25.0816 2104 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
19:23:25.0849 2104 mouhid - ok
19:23:25.0877 2104 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
19:23:25.0892 2104 mountmgr - ok
19:23:25.0920 2104 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
19:23:25.0939 2104 mpio - ok
19:23:25.0959 2104 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
19:23:26.0020 2104 mpsdrv - ok
19:23:26.0045 2104 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
19:23:26.0087 2104 MRxDAV - ok
19:23:26.0132 2104 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
19:23:26.0178 2104 mrxsmb - ok
19:23:26.0226 2104 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:23:26.0262 2104 mrxsmb10 - ok
19:23:26.0281 2104 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:23:26.0301 2104 mrxsmb20 - ok
19:23:26.0319 2104 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
19:23:26.0335 2104 msahci - ok
19:23:26.0356 2104 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
19:23:26.0373 2104 msdsm - ok
19:23:26.0425 2104 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
19:23:26.0499 2104 Msfs - ok
19:23:26.0514 2104 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
19:23:26.0570 2104 mshidkmdf - ok
19:23:26.0596 2104 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
19:23:26.0609 2104 msisadrv - ok
19:23:26.0656 2104 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
19:23:26.0698 2104 MSKSSRV - ok
19:23:26.0721 2104 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
19:23:26.0771 2104 MSPCLOCK - ok
19:23:26.0781 2104 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
19:23:26.0831 2104 MSPQM - ok
19:23:26.0867 2104 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
19:23:26.0901 2104 MsRPC - ok
19:23:26.0921 2104 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys
19:23:26.0935 2104 mssmbios - ok
19:23:27.0059 2104 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
19:23:27.0130 2104 MSTEE - ok
19:23:27.0148 2104 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\drivers\MTConfig.sys
19:23:27.0174 2104 MTConfig - ok
19:23:27.0202 2104 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
19:23:27.0216 2104 Mup - ok
19:23:27.0290 2104 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
19:23:27.0337 2104 NativeWifiP - ok
19:23:27.0446 2104 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
19:23:27.0483 2104 NDIS - ok
19:23:27.0534 2104 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
19:23:27.0600 2104 NdisCap - ok
19:23:27.0644 2104 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
19:23:27.0702 2104 NdisTapi - ok
19:23:27.0763 2104 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
19:23:27.0830 2104 Ndisuio - ok
19:23:27.0855 2104 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
19:23:27.0916 2104 NdisWan - ok
19:23:27.0935 2104 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
19:23:27.0976 2104 NDProxy - ok
19:23:28.0031 2104 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
19:23:28.0094 2104 NetBIOS - ok
19:23:28.0122 2104 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
19:23:28.0167 2104 NetBT - ok
19:23:28.0227 2104 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\drivers\nfrd960.sys
19:23:28.0252 2104 nfrd960 - ok
19:23:28.0331 2104 nmwcd (88f2f2cb9faee2e14bccf384f4c88061) C:\Windows\system32\drivers\ccdcmbx64.sys
19:23:28.0426 2104 nmwcd - ok
19:23:28.0452 2104 nmwcdc (31c1fac4ae14fb2f8771c59ba3f90bad) C:\Windows\system32\drivers\ccdcmbox64.sys
19:23:28.0502 2104 nmwcdc - ok
19:23:28.0527 2104 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
19:23:28.0584 2104 Npfs - ok
19:23:28.0609 2104 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
19:23:28.0665 2104 nsiproxy - ok
19:23:28.0745 2104 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
19:23:28.0799 2104 Ntfs - ok
19:23:28.0832 2104 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
19:23:28.0880 2104 Null - ok
19:23:28.0954 2104 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
19:23:28.0972 2104 nvraid - ok
19:23:29.0025 2104 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
19:23:29.0043 2104 nvstor - ok
19:23:29.0099 2104 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
19:23:29.0119 2104 nv_agp - ok
19:23:29.0136 2104 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
19:23:29.0172 2104 ohci1394 - ok
19:23:29.0249 2104 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\drivers\parport.sys
19:23:29.0280 2104 Parport - ok
19:23:29.0301 2104 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys
19:23:29.0320 2104 partmgr - ok
19:23:29.0392 2104 pccsmcfd (bc0018c2d29f655188a0ed3fa94fdb24) C:\Windows\system32\DRIVERS\pccsmcfdx64.sys
19:23:29.0438 2104 pccsmcfd - ok
19:23:29.0467 2104 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
19:23:29.0488 2104 pci - ok
19:23:29.0514 2104 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
19:23:29.0530 2104 pciide - ok
19:23:29.0558 2104 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\drivers\pcmcia.sys
19:23:29.0577 2104 pcmcia - ok
19:23:29.0608 2104 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
19:23:29.0622 2104 pcw - ok
19:23:29.0654 2104 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
19:23:29.0739 2104 PEAUTH - ok
19:23:29.0814 2104 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
19:23:29.0870 2104 PptpMiniport - ok
19:23:29.0895 2104 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\drivers\processr.sys
19:23:29.0922 2104 Processor - ok
19:23:30.0021 2104 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
19:23:30.0078 2104 Psched - ok
19:23:30.0174 2104 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\drivers\ql2300.sys
19:23:30.0257 2104 ql2300 - ok
19:23:30.0273 2104 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\drivers\ql40xx.sys
19:23:30.0292 2104 ql40xx - ok
19:23:30.0315 2104 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
19:23:30.0357 2104 QWAVEdrv - ok
19:23:30.0377 2104 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
19:23:30.0444 2104 RasAcd - ok
19:23:30.0503 2104 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
19:23:30.0563 2104 RasAgileVpn - ok
19:23:30.0591 2104 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
19:23:30.0658 2104 Rasl2tp - ok
19:23:30.0688 2104 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
19:23:30.0740 2104 RasPppoe - ok
19:23:30.0794 2104 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
19:23:30.0842 2104 RasSstp - ok
19:23:30.0862 2104 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
19:23:30.0928 2104 rdbss - ok
19:23:30.0947 2104 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\drivers\rdpbus.sys
19:23:30.0979 2104 rdpbus - ok
19:23:31.0031 2104 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
19:23:31.0091 2104 RDPCDD - ok
19:23:31.0119 2104 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
19:23:31.0163 2104 RDPENCDD - ok
19:23:31.0207 2104 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
19:23:31.0259 2104 RDPREFMP - ok
19:23:31.0294 2104 RDPWD (15b66c206b5cb095bab980553f38ed23) C:\Windows\system32\drivers\RDPWD.sys
19:23:31.0356 2104 RDPWD - ok
19:23:31.0412 2104 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
19:23:31.0441 2104 rdyboost - ok
19:23:31.0510 2104 Revoflt (9c3ac71a9934b884fac567a8807e9c4d) C:\Windows\system32\DRIVERS\revoflt.sys
19:23:31.0522 2104 Revoflt - ok
19:23:31.0609 2104 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
19:23:31.0678 2104 rspndr - ok
19:23:31.0717 2104 RSUSBSTOR (2db8116d52b19216812c4e6d5d837810) C:\Windows\system32\Drivers\RtsUStor.sys
19:23:31.0735 2104 RSUSBSTOR - ok
19:23:31.0778 2104 RTL8167 (91296f0b2653281b2f11e0fce56aa427) C:\Windows\system32\DRIVERS\Rt64win7.sys
19:23:31.0799 2104 RTL8167 - ok
19:23:31.0808 2104 RtsUIR - ok
19:23:31.0831 2104 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
19:23:31.0848 2104 sbp2port - ok
19:23:31.0873 2104 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
19:23:31.0931 2104 scfilter - ok
19:23:31.0985 2104 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
19:23:32.0061 2104 secdrv - ok
19:23:32.0098 2104 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\drivers\serenum.sys
19:23:32.0131 2104 Serenum - ok
19:23:32.0207 2104 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\drivers\serial.sys
19:23:32.0243 2104 Serial - ok
19:23:32.0255 2104 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\drivers\sermouse.sys
19:23:32.0291 2104 sermouse - ok
19:23:32.0339 2104 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
19:23:32.0360 2104 sffdisk - ok
19:23:32.0415 2104 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
19:23:32.0451 2104 sffp_mmc - ok
19:23:32.0464 2104 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
19:23:32.0529 2104 sffp_sd - ok
19:23:32.0562 2104 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\drivers\sfloppy.sys
19:23:32.0604 2104 sfloppy - ok
19:23:32.0680 2104 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\drivers\SiSRaid2.sys
19:23:32.0696 2104 SiSRaid2 - ok
19:23:32.0718 2104 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\drivers\sisraid4.sys
19:23:32.0736 2104 SiSRaid4 - ok
19:23:32.0767 2104 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
19:23:32.0838 2104 Smb - ok
19:23:32.0879 2104 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
19:23:32.0895 2104 spldr - ok
19:23:33.0004 2104 sptd (602884696850c86434530790b110e8eb) C:\Windows\system32\Drivers\sptd.sys
19:23:33.0005 2104 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: 602884696850c86434530790b110e8eb
19:23:33.0010 2104 sptd ( LockedFile.Multi.Generic ) - warning
19:23:33.0011 2104 sptd - detected LockedFile.Multi.Generic (1)
19:23:33.0061 2104 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
19:23:33.0122 2104 srv - ok
19:23:33.0161 2104 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
19:23:33.0234 2104 srv2 - ok
19:23:33.0325 2104 SrvHsfHDA (0c4540311e11664b245a263e1154cef8) C:\Windows\system32\DRIVERS\VSTAZL6.SYS
19:23:33.0358 2104 SrvHsfHDA - ok
19:23:33.0438 2104 SrvHsfV92 (02071d207a9858fbe3a48cbfd59c4a04) C:\Windows\system32\DRIVERS\VSTDPV6.SYS
19:23:33.0538 2104 SrvHsfV92 - ok
19:23:33.0586 2104 SrvHsfWinac (18e40c245dbfaf36fd0134a7ef2df396) C:\Windows\system32\DRIVERS\VSTCNXT6.SYS
19:23:33.0642 2104 SrvHsfWinac - ok
19:23:33.0682 2104 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
19:23:33.0729 2104 srvnet - ok
19:23:33.0800 2104 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\drivers\stexstor.sys
19:23:33.0818 2104 stexstor - ok
19:23:33.0846 2104 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys
19:23:33.0867 2104 swenum - ok
19:23:33.0914 2104 SynTP (bcf305959b53b200ceb2ad25ad22f8a7) C:\Windows\system32\DRIVERS\SynTP.sys
19:23:33.0941 2104 SynTP - ok
19:23:34.0002 2104 taphss (f33fdc72298df4bf9813a55d21f4eb31) C:\Windows\system32\DRIVERS\taphss.sys
19:23:34.0031 2104 taphss - ok
19:23:34.0173 2104 Tcpip (f0e98c00a09fdf791525829a1d14240f) C:\Windows\system32\drivers\tcpip.sys
19:23:34.0240 2104 Tcpip - ok
19:23:34.0351 2104 TCPIP6 (f0e98c00a09fdf791525829a1d14240f) C:\Windows\system32\DRIVERS\tcpip.sys
19:23:34.0431 2104 TCPIP6 - ok
19:23:34.0510 2104 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
19:23:34.0603 2104 tcpipreg - ok
19:23:34.0638 2104 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
19:23:34.0709 2104 TDPIPE - ok
19:23:34.0720 2104 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys
19:23:34.0771 2104 TDTCP - ok
19:23:34.0821 2104 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
19:23:34.0890 2104 tdx - ok
19:23:34.0911 2104 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\DRIVERS\termdd.sys
19:23:34.0932 2104 TermDD - ok
19:23:34.0963 2104 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
19:23:35.0026 2104 tssecsrv - ok
19:23:35.0073 2104 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
19:23:35.0124 2104 TsUsbFlt - ok
19:23:35.0148 2104 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys
19:23:35.0181 2104 TsUsbGD - ok
19:23:35.0246 2104 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
19:23:35.0302 2104 tunnel - ok
19:23:35.0313 2104 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\drivers\uagp35.sys
19:23:35.0329 2104 uagp35 - ok
19:23:35.0362 2104 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
19:23:35.0423 2104 udfs - ok
19:23:35.0491 2104 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
19:23:35.0507 2104 uliagpkx - ok
19:23:35.0561 2104 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys
19:23:35.0602 2104 umbus - ok
19:23:35.0616 2104 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\drivers\umpass.sys
19:23:35.0646 2104 UmPass - ok
19:23:35.0728 2104 upperdev (fbd861e69e1f583bec906fcd04e4f84e) C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys
19:23:35.0789 2104 upperdev - ok
19:23:35.0880 2104 usbaudio (82e8f44688e6fac57b5b7c6fc7adbc2a) C:\Windows\system32\drivers\usbaudio.sys
19:23:35.0904 2104 usbaudio - ok
19:23:35.0957 2104 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
19:23:35.0994 2104 usbccgp - ok
19:23:36.0004 2104 USBCCID - ok
19:23:36.0080 2104 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
19:23:36.0114 2104 usbcir - ok
19:23:36.0157 2104 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\DRIVERS\usbehci.sys
19:23:36.0177 2104 usbehci - ok
19:23:36.0239 2104 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
19:23:36.0271 2104 usbhub - ok
19:23:36.0307 2104 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
19:23:36.0359 2104 usbohci - ok
19:23:36.0426 2104 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
19:23:36.0470 2104 usbprint - ok
19:23:36.0503 2104 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys
19:23:36.0532 2104 usbscan - ok
19:23:36.0616 2104 usbser (4acee387fa8fd39f83564fcd2fc234f2) C:\Windows\system32\drivers\usbser.sys
19:23:36.0667 2104 usbser - ok
19:23:36.0690 2104 UsbserFilt (0fbb0080b287bbcbf5c7076e3d74a35c) C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys
19:23:36.0750 2104 UsbserFilt - ok
19:23:36.0796 2104 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:23:36.0848 2104 USBSTOR - ok
19:23:36.0885 2104 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\DRIVERS\usbuhci.sys
19:23:36.0923 2104 usbuhci - ok
19:23:37.0016 2104 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\system32\Drivers\usbvideo.sys
19:23:37.0062 2104 usbvideo - ok
19:23:37.0150 2104 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
19:23:37.0174 2104 vdrvroot - ok
19:23:37.0235 2104 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
19:23:37.0268 2104 vga - ok
19:23:37.0295 2104 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
19:23:37.0365 2104 VgaSave - ok
19:23:37.0393 2104 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
19:23:37.0413 2104 vhdmp - ok
19:23:37.0437 2104 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
19:23:37.0452 2104 viaide - ok
19:23:37.0473 2104 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
19:23:37.0487 2104 volmgr - ok
19:23:37.0521 2104 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
19:23:37.0556 2104 volmgrx - ok
19:23:37.0571 2104 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
19:23:37.0590 2104 volsnap - ok
19:23:37.0667 2104 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\drivers\vsmraid.sys
19:23:37.0698 2104 vsmraid - ok
19:23:37.0722 2104 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys
19:23:37.0765 2104 vwifibus - ok
19:23:37.0787 2104 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
19:23:37.0820 2104 vwififlt - ok
19:23:37.0864 2104 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys
19:23:37.0905 2104 vwifimp - ok
19:23:37.0937 2104 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\drivers\wacompen.sys
19:23:37.0981 2104 WacomPen - ok
19:23:38.0038 2104 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
19:23:38.0097 2104 WANARP - ok
19:23:38.0117 2104 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
19:23:38.0164 2104 Wanarpv6 - ok
19:23:38.0209 2104 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\drivers\wd.sys
19:23:38.0225 2104 Wd - ok
19:23:38.0267 2104 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
19:23:38.0306 2104 Wdf01000 - ok
19:23:38.0377 2104 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
19:23:38.0433 2104 WfpLwf - ok
19:23:38.0457 2104 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
19:23:38.0472 2104 WIMMount - ok
19:23:38.0552 2104 winachsf (a6ea7a3fc4b00f48535b506db1e86efd) C:\Windows\system32\DRIVERS\CAX_CNXT.sys
19:23:38.0594 2104 winachsf - ok
19:23:38.0700 2104 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
19:23:38.0754 2104 WinUsb - ok
19:23:38.0799 2104 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\DRIVERS\wmiacpi.sys
19:23:38.0816 2104 WmiAcpi - ok
19:23:38.0896 2104 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
19:23:38.0945 2104 ws2ifsl - ok
19:23:38.0987 2104 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
19:23:39.0060 2104 WudfPf - ok
19:23:39.0095 2104 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
19:23:39.0152 2104 WUDFRd - ok
19:23:39.0238 2104 XAudio (e8f3fa126a06f8e7088f63757112a186) C:\Windows\system32\DRIVERS\XAudio64.sys
19:23:39.0277 2104 XAudio - ok
19:23:39.0471 2104 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC} (74983addca2d9618512c088d856d6615) C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\000.fcl
19:23:39.0488 2104 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC} - ok
19:23:39.0508 2104 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
19:23:39.0617 2104 \Device\Harddisk0\DR0 - ok
19:23:39.0619 2104 Boot (0x1200) (467418b258a57b047c787a85a529433c) \Device\Harddisk0\DR0\Partition0
19:23:39.0620 2104 \Device\Harddisk0\DR0\Partition0 - ok
19:23:39.0654 2104 Boot (0x1200) (5d5e097eb5751f4f55682c46efb98f75) \Device\Harddisk0\DR0\Partition1
19:23:39.0655 2104 \Device\Harddisk0\DR0\Partition1 - ok
19:23:39.0656 2104 ============================================================
19:23:39.0656 2104 Scan finished
19:23:39.0656 2104 ============================================================
19:23:39.0663 2884 Detected object count: 1
19:23:39.0663 2884 Actual detected object count: 1
19:24:11.0209 2884 sptd ( LockedFile.Multi.Generic ) - skipped by user
19:24:11.0210 2884 sptd ( LockedFile.Multi.Generic ) - User select action: Skip