Stránka 1 z 2

vir neshta

Napsal: 22 říj 2011 15:41
od Treeper
Zdravím,
jak už vyplíva mam také problém s timto virem, použil jsem Combofix a zde je vypis LOGu, mohl by mi někdo poradit jak dál postupovat abych se toho parazita zbavil. DIK

ComboFix 11-10-19.06 - Treeper 21.10.2011 10:00:21.1.2 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.3070.2051 [GMT 2:00]
Spuštěný z: c:\users\Treeper\Desktop\ComboFix.exe
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
* Rezidentní štít AV je zapnutý
.
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Treeper\AppData\Roaming\Microsoft\Internet Explorer\qsTAtsrv.dll
c:\windows\Downloaded Program Files\IDropPTB.dll
c:\windows\security\Database\tmp.edb
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-09-21 do 2011-10-21 )))))))))))))))))))))))))))))))
.
.
2011-10-21 07:19 . 2011-10-21 07:19 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7326B68D-43A6-45BB-9805-A176172AECA4}\offreg.dll
2011-10-21 07:19 . 2011-10-07 03:48 6668624 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7326B68D-43A6-45BB-9805-A176172AECA4}\mpengine.dll
2011-10-17 18:59 . 2011-10-17 18:59 -------- d--h--w- c:\programdata\CanonBJ
2011-10-17 18:59 . 2008-10-09 05:00 69632 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\CNMPP99.DLL
2011-10-17 18:59 . 2008-10-09 05:00 27136 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\CNMPD99.DLL
2011-10-13 05:22 . 2011-10-13 05:22 -------- d-----w- c:\program files\MSXML 4.0
2011-10-10 18:25 . 2011-10-10 18:35 -------- d-----w- c:\programdata\FLEXnet
2011-10-10 18:00 . 2011-10-10 18:00 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2011-10-10 17:54 . 2011-10-10 17:54 -------- d-----w- c:\program files\Microsoft Chart Controls
2011-10-10 17:54 . 2011-10-10 17:54 -------- d-----w- c:\program files\Microsoft WSE
2011-10-10 17:53 . 2011-10-10 18:03 -------- d-----w- c:\users\Treeper\AppData\Local\Autodesk
2011-10-10 17:53 . 2009-03-09 13:27 453456 ----a-w- c:\windows\system32\d3dx10_41.dll
2011-10-10 17:53 . 2009-03-09 13:27 4178264 ----a-w- c:\windows\system32\D3DX9_41.dll
2011-10-10 17:53 . 2009-03-09 13:27 1846632 ----a-w- c:\windows\system32\D3DCompiler_41.dll
2011-10-10 17:52 . 2011-10-10 18:09 -------- d-----w- c:\program files\Autodesk
2011-10-10 17:52 . 2011-10-10 18:09 -------- d-----w- c:\program files\Common Files\Autodesk Shared
2011-10-10 17:44 . 2011-10-10 18:48 -------- d-----w- c:\users\Treeper\AppData\Roaming\Autodesk
2011-10-10 17:44 . 2011-10-10 18:37 -------- d-----w- c:\programdata\Autodesk
2011-10-07 14:55 . 2011-10-07 14:55 -------- d-----w- c:\users\Treeper\AppData\Local\ElevatedDiagnostics
2011-10-07 14:31 . 2004-03-01 21:05 407104 ----a-w- c:\windows\system32\MSHFLXGD.OCX
2011-10-07 14:31 . 2004-02-11 13:37 203976 ----a-w- c:\windows\system32\RICHTX32.OCX
2011-10-07 14:27 . 2002-02-14 09:26 647872 ----a-w- c:\windows\system32\mscomct2.ocx
2011-10-07 14:14 . 2011-10-07 14:32 -------- d-----w- c:\program files\MATLAB71
2011-10-07 14:03 . 2011-10-07 14:38 -------- d-----w- c:\program files\Zrychleni Pocitace
2011-10-07 14:03 . 2011-10-07 14:03 -------- d-----w- c:\program files\Microsoft Silverlight
2011-10-07 14:01 . 2011-10-07 14:36 -------- d-----w- c:\users\Treeper\AppData\Local\OpenCandy
2011-10-07 14:01 . 2011-10-07 14:01 -------- d-----w- c:\users\Treeper\AppData\Roaming\OpenCandy
2011-10-07 14:01 . 2011-10-07 14:01 232512 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2011-10-07 14:00 . 2011-10-07 14:01 -------- d-----w- c:\program files\DAEMON Tools Lite
2011-10-07 14:00 . 2011-10-07 14:11 -------- d-----w- c:\users\Treeper\AppData\Roaming\DAEMON Tools Lite
2011-10-07 14:00 . 2011-10-07 14:00 -------- d-----w- c:\programdata\DAEMON Tools Lite
2011-10-07 11:13 . 2011-10-07 11:13 -------- d-----w- c:\users\Treeper\AppData\Roaming\MathWorks
2011-10-03 20:24 . 2011-10-20 17:24 -------- d-----w- c:\users\Treeper\AppData\Roaming\Canon
2011-10-03 20:23 . 2011-10-03 20:23 -------- d-----w- c:\users\Treeper\AppData\Roaming\ArcSoft
2011-10-03 20:21 . 1996-06-30 22:00 77312 ----a-w- c:\windows\system32\TWAIN_32.DLL
2011-10-03 20:21 . 1995-07-31 11:44 212480 ----a-w- c:\windows\system32\PCDLIB32.DLL
2011-10-03 20:20 . 2011-10-03 20:20 -------- d-----w- c:\program files\ArcSoft
2011-10-03 20:20 . 2001-09-05 03:18 77824 ----a-w- c:\program files\Common Files\InstallShield\Engine\6\Intel 32\ctor.dll
2011-10-03 20:20 . 2001-09-05 03:18 225280 ------w- c:\program files\Common Files\InstallShield\IScript\iscript.dll
2011-10-03 20:20 . 2001-09-05 03:14 176128 ------w- c:\program files\Common Files\InstallShield\Engine\6\Intel 32\iuser.dll
2011-10-03 20:20 . 2001-09-05 03:13 32768 ------w- c:\program files\Common Files\InstallShield\Engine\6\Intel 32\objectps.dll
2011-09-30 17:07 . 2006-10-26 17:56 33104 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\msonpppr.dll
2011-09-30 17:07 . 2006-10-26 17:56 32592 ----a-w- c:\windows\system32\msonpmon.dll
2011-09-30 17:06 . 2011-09-30 17:06 -------- d-----w- c:\program files\Microsoft Works
2011-09-30 17:05 . 2011-09-30 17:05 -------- d-----w- c:\windows\PCHEALTH
2011-09-30 17:04 . 2011-09-30 17:04 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2011-09-30 17:03 . 2011-09-30 17:03 -------- d-----w- c:\users\Treeper\AppData\Local\Microsoft Help
2011-09-30 17:03 . 2011-09-30 17:08 -------- d-----w- c:\programdata\Microsoft Help
2011-09-23 11:38 . 2011-09-23 11:38 -------- d-----w- c:\program files\A4Tech
2011-09-23 11:38 . 2007-05-15 15:31 36864 ----a-w- c:\windows\system32\Amhooker.dll
2011-09-23 11:38 . 2007-05-15 03:41 14336 ----a-w- c:\windows\system32\drivers\Amusbprt.sys
2011-09-23 11:38 . 2007-05-15 03:40 14336 ----a-w- c:\windows\system32\drivers\Amps2prt.sys
2011-09-23 11:38 . 2007-05-15 03:38 9216 ----a-w- c:\windows\system32\drivers\Amfilter.sys
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-08-07 14:46 . 2011-08-07 14:47 512096 ----a-w- c:\windows\system32\drivers\amon.sys
2011-08-07 14:46 . 2011-08-07 14:47 298104 ----a-w- c:\windows\system32\imon.dll
2011-08-07 14:46 . 2011-08-07 14:47 15424 ----a-w- c:\windows\system32\drivers\nod32drv.sys
2011-08-02 13:06 . 2009-07-14 02:05 152576 ----a-w- c:\windows\system32\msclmd.dll
2011-07-30 12:56 . 2011-07-30 12:56 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-07-08 07:29 . 2011-09-17 18:13 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"QIP Internet Guardian"="c:\users\Treeper\AppData\Roaming\QipGuard\QipGuard.exe" [2010-10-25 190928]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
"RESTART_STICKY_NOTES"="c:\windows\System32\StikyNot.exe" [2009-07-14 354304]
"Infium"="c:\program files\QIP Infium\infium.exe" [2010-10-25 5892560]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2011-08-02 4910912]
"PCSpeedUp"="c:\program files\Zrychleni Pocitace\PCSpeedUp.lnk" [2011-10-07 2395]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2011-06-09 10082920]
"nod32kui"="c:\program files\Eset\nod32kui.exe" [2011-08-07 949376]
"UpdateReminder"="c:\program files\Eset\UpdateReminder.exe" [2011-08-07 462848]
"WheelMouse"="c:\program files\A4Tech\Mouse\Amoumain.exe" [2007-05-15 204800]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe [2006-10-23 40048]
Adobe Reader Synchronizer.lnk - c:\program files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe [2006-10-23 734872]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 mitsijm2011;Správce úloh aplikace Autodesk Moldflow Inventor Tool Suite Integration 2011;c:\program files\Autodesk\Inventor 2011\Moldflow\bin\mitsijm.exe [2010-01-23 462336]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 15872]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2011-07-31 1343400]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2011-10-07 232512]
S1 nod32drv;nod32drv;c:\windows\system32\drivers\nod32drv.sys [2011-08-07 15424]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-05-25 2214504]
S3 yukonw7;Ovladač NDIS6.2 Miniport pro řadič Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x86.sys [2009-07-13 311296]
.
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://qip.ru
uDefault_Search_URL = hxxp://search.qip.ru
uSearchAssistant = hxxp://search.qip.ru/ie
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
LSP: c:\windows\system32\imon.dll
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\users\Treeper\AppData\Roaming\Mozilla\Firefox\Profiles\y5hid6ug.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
.
.
------- Asociace souborů -------
.
.scr=AutoCADScriptFile
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2011-10-21 10:09:05
ComboFix-quarantined-files.txt 2011-10-21 08:09
.
Před spuštěním: 8 894 394 368
Po spuštění: 8 687 546 368
.
- - End Of File - - 4DC6CF57D8005FEB89035A7F42467789

Re: vir neshta

Napsal: 22 říj 2011 16:47
od Rudy
Několik položek CF smazal, zbytek logu vypadá čistý. Stále máte problém?

Re: vir neshta

Napsal: 22 říj 2011 17:48
od Treeper
mohl bych poprosit o vysvětlení co jsou CF položky a jak se jich zbavit, co se týče téhle problematiky, jsem amater. Děkuji

Re: vir neshta

Napsal: 22 říj 2011 18:23
od Rudy
ComboFix (CF) smazal:

c:\users\Treeper\AppData\Roaming\Microsoft\Internet Explorer\qsTAtsrv.dll
c:\windows\Downloaded Program Files\IDropPTB.dll
c:\windows\security\Database\tmp.edb

a případné jejich registry klíče. Ničeho se zbavovat nemusíte, provedl to za vás ComboFix, který jste spustil.

Re: vir neshta

Napsal: 27 říj 2011 10:49
od Treeper
opět vytahuju tohle téma , virus se zase objevil, nějaké rady???

Re: vir neshta

Napsal: 27 říj 2011 16:22
od Rudy
Udělejte sken AVPTool: http://www.viry.cz/forum/viewtopic.php?f=29&t=58179 a dejte log.

Re: vir neshta

Napsal: 24 lis 2011 21:27
od Treeper
tak virus mám stále, chtěl bych se zeptat zda reinstalem win bych ho smazal????

Re: vir neshta

Napsal: 24 lis 2011 21:51
od Rudy
Samotným reinstalem ne, musel byste formátovat.

Re: vir neshta

Napsal: 25 lis 2011 23:06
od Treeper
Tak jsem udělal reinstal s formatem 2 oddilu, jeden oddil se zalohou jsem neformátoval a ten parchant stále drží, mohl by mi někdo pls poradit jak se ho zbavit Děkuji za rady

Re: vir neshta

Napsal: 26 lis 2011 11:10
od Rudy
Pak musíte před formatem ještě zrušit partition, znovu vytvořit a pak formatovat.

Re: vir neshta

Napsal: 26 lis 2011 13:45
od Treeper
no ted uz je pozde, muzete mi poradit jak se toho viru zbavit softwarove ?? DIK

Re: vir neshta

Napsal: 26 lis 2011 17:23
od Rudy
Pokud to půjde, zajisté. Zkuste TDSSKiller: http://support.kaspersky.com/downloads/ ... killer.zip . Rozbalte na plochu, spusťte a nechte pracovat. Pak dejte log.

Re: vir neshta

Napsal: 26 lis 2011 18:39
od Treeper
tak tady to je

18:24:30.0319 3968 TDSS rootkit removing tool 2.6.21.0 Nov 24 2011 12:32:44
18:24:30.0615 3968 ============================================================
18:24:30.0615 3968 Current date / time: 2011/11/26 18:24:30.0615
18:24:30.0615 3968 SystemInfo:
18:24:30.0615 3968
18:24:30.0615 3968 OS Version: 6.1.7600 ServicePack: 0.0
18:24:30.0615 3968 Product type: Workstation
18:24:30.0615 3968 ComputerName: TREEPER-PC
18:24:30.0615 3968 UserName: Treeper
18:24:30.0615 3968 Windows directory: C:\Windows
18:24:30.0615 3968 System windows directory: C:\Windows
18:24:30.0615 3968 Processor architecture: Intel x86
18:24:30.0615 3968 Number of processors: 2
18:24:30.0615 3968 Page size: 0x1000
18:24:30.0615 3968 Boot type: Normal boot
18:24:30.0615 3968 ============================================================
18:24:35.0919 3968 Initialize success
18:24:37.0838 1324 ============================================================
18:24:37.0838 1324 Scan started
18:24:37.0838 1324 Mode: Manual;
18:24:37.0838 1324 ============================================================
18:24:38.0914 1324 1394ohci (6d2aca41739bfe8cb86ee8e85f29697d) C:\Windows\system32\DRIVERS\1394ohci.sys
18:24:38.0914 1324 1394ohci - ok
18:24:38.0946 1324 ACPI (f0e07d144c8685b8774bc32fc8da4df0) C:\Windows\system32\DRIVERS\ACPI.sys
18:24:38.0946 1324 ACPI - ok
18:24:38.0961 1324 AcpiPmi (98d81ca942d19f7d9153b095162ac013) C:\Windows\system32\DRIVERS\acpipmi.sys
18:24:38.0961 1324 AcpiPmi - ok
18:24:38.0992 1324 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
18:24:38.0992 1324 adp94xx - ok
18:24:39.0008 1324 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
18:24:39.0008 1324 adpahci - ok
18:24:39.0024 1324 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
18:24:39.0024 1324 adpu320 - ok
18:24:39.0070 1324 AFD (0db7a48388d54d154ebec120461a0fcd) C:\Windows\system32\drivers\afd.sys
18:24:39.0070 1324 AFD - ok
18:24:39.0086 1324 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\DRIVERS\agp440.sys
18:24:39.0086 1324 agp440 - ok
18:24:39.0102 1324 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
18:24:39.0102 1324 aic78xx - ok
18:24:39.0148 1324 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\DRIVERS\aliide.sys
18:24:39.0148 1324 aliide - ok
18:24:39.0164 1324 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\DRIVERS\amdagp.sys
18:24:39.0164 1324 amdagp - ok
18:24:39.0195 1324 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\DRIVERS\amdide.sys
18:24:39.0195 1324 amdide - ok
18:24:39.0211 1324 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
18:24:39.0211 1324 AmdK8 - ok
18:24:39.0226 1324 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
18:24:39.0226 1324 AmdPPM - ok
18:24:39.0258 1324 amdsata (2101a86c25c154f8314b24ef49d7fbc2) C:\Windows\system32\DRIVERS\amdsata.sys
18:24:39.0258 1324 amdsata - ok
18:24:39.0273 1324 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
18:24:39.0273 1324 amdsbs - ok
18:24:39.0304 1324 amdxata (b81c2b5616f6420a9941ea093a92b150) C:\Windows\system32\DRIVERS\amdxata.sys
18:24:39.0304 1324 amdxata - ok
18:24:39.0320 1324 AppID (feb834c02ce1e84b6a38f953ca067706) C:\Windows\system32\drivers\appid.sys
18:24:39.0320 1324 AppID - ok
18:24:39.0382 1324 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
18:24:39.0382 1324 arc - ok
18:24:39.0398 1324 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
18:24:39.0398 1324 arcsas - ok
18:24:39.0429 1324 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
18:24:39.0429 1324 AsyncMac - ok
18:24:39.0445 1324 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\DRIVERS\atapi.sys
18:24:39.0445 1324 atapi - ok
18:24:39.0492 1324 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
18:24:39.0492 1324 b06bdrv - ok
18:24:39.0523 1324 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
18:24:39.0523 1324 b57nd60x - ok
18:24:39.0554 1324 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
18:24:39.0554 1324 Beep - ok
18:24:39.0585 1324 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
18:24:39.0585 1324 blbdrive - ok
18:24:39.0616 1324 bowser (9a5c671b7fbae4865149bb11f59b91b2) C:\Windows\system32\DRIVERS\bowser.sys
18:24:39.0616 1324 bowser - ok
18:24:39.0632 1324 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
18:24:39.0632 1324 BrFiltLo - ok
18:24:39.0663 1324 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
18:24:39.0663 1324 BrFiltUp - ok
18:24:39.0679 1324 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
18:24:39.0679 1324 Brserid - ok
18:24:39.0694 1324 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
18:24:39.0694 1324 BrSerWdm - ok
18:24:39.0710 1324 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
18:24:39.0710 1324 BrUsbMdm - ok
18:24:39.0726 1324 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
18:24:39.0726 1324 BrUsbSer - ok
18:24:39.0757 1324 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
18:24:39.0757 1324 BTHMODEM - ok
18:24:39.0772 1324 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
18:24:39.0772 1324 cdfs - ok
18:24:39.0788 1324 cdrom (ba6e70aa0e6091bc39de29477d866a77) C:\Windows\system32\DRIVERS\cdrom.sys
18:24:39.0788 1324 cdrom - ok
18:24:39.0819 1324 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
18:24:39.0819 1324 circlass - ok
18:24:39.0850 1324 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
18:24:39.0850 1324 CLFS - ok
18:24:39.0866 1324 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
18:24:39.0866 1324 CmBatt - ok
18:24:39.0882 1324 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\DRIVERS\cmdide.sys
18:24:39.0882 1324 cmdide - ok
18:24:39.0897 1324 CNG (1b675691ed940766149c93e8f4488d68) C:\Windows\system32\Drivers\cng.sys
18:24:39.0897 1324 CNG - ok
18:24:39.0913 1324 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
18:24:39.0913 1324 Compbatt - ok
18:24:39.0928 1324 CompositeBus (f1724ba27e97d627f808fb0ba77a28a6) C:\Windows\system32\DRIVERS\CompositeBus.sys
18:24:39.0928 1324 CompositeBus - ok
18:24:39.0960 1324 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
18:24:39.0960 1324 crcdisk - ok
18:24:40.0022 1324 CSC (27c9490bdd0ae48911ab8cf1932591ed) C:\Windows\system32\drivers\csc.sys
18:24:40.0022 1324 CSC - ok
18:24:40.0053 1324 DfsC (83d1ecea8faae75604c0fa49ac7ad996) C:\Windows\system32\Drivers\dfsc.sys
18:24:40.0069 1324 DfsC - ok
18:24:40.0069 1324 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
18:24:40.0069 1324 discache - ok
18:24:40.0131 1324 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
18:24:40.0131 1324 Disk - ok
18:24:40.0178 1324 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
18:24:40.0178 1324 drmkaud - ok
18:24:40.0225 1324 DXGKrnl (1679a4669326cb1a67cc95658d273234) C:\Windows\System32\drivers\dxgkrnl.sys
18:24:40.0240 1324 DXGKrnl - ok
18:24:40.0287 1324 eamonm (04238864710460c5682e260207d06192) C:\Windows\system32\DRIVERS\eamonm.sys
18:24:40.0287 1324 eamonm - ok
18:24:40.0381 1324 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
18:24:40.0396 1324 ebdrv - ok
18:24:40.0459 1324 ehdrv (deff87f04ab5f6dd5edf2b80853bbe10) C:\Windows\system32\DRIVERS\ehdrv.sys
18:24:40.0459 1324 ehdrv - ok
18:24:40.0506 1324 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
18:24:40.0521 1324 elxstor - ok
18:24:40.0537 1324 epfwwfpr (f39c91795ebdb9ecbeb5a388ff2841fe) C:\Windows\system32\DRIVERS\epfwwfpr.sys
18:24:40.0537 1324 epfwwfpr - ok
18:24:40.0552 1324 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\DRIVERS\errdev.sys
18:24:40.0552 1324 ErrDev - ok
18:24:40.0599 1324 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
18:24:40.0599 1324 exfat - ok
18:24:40.0615 1324 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
18:24:40.0615 1324 fastfat - ok
18:24:40.0630 1324 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
18:24:40.0630 1324 fdc - ok
18:24:40.0662 1324 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
18:24:40.0662 1324 FileInfo - ok
18:24:40.0677 1324 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
18:24:40.0677 1324 Filetrace - ok
18:24:40.0708 1324 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
18:24:40.0708 1324 flpydisk - ok
18:24:40.0724 1324 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
18:24:40.0740 1324 FltMgr - ok
18:24:40.0755 1324 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
18:24:40.0755 1324 FsDepends - ok
18:24:40.0771 1324 Fs_Rec (a574b4360e438977038aae4bf60d79a2) C:\Windows\system32\drivers\Fs_Rec.sys
18:24:40.0771 1324 Fs_Rec - ok
18:24:40.0802 1324 fvevol (dafbd9fe39197495aed6d51f3b85b5d2) C:\Windows\system32\DRIVERS\fvevol.sys
18:24:40.0802 1324 fvevol - ok
18:24:40.0818 1324 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
18:24:40.0818 1324 gagp30kx - ok
18:24:40.0833 1324 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
18:24:40.0833 1324 hcw85cir - ok
18:24:40.0880 1324 HdAudAddService (3530cad25deba7dc7de8bb51632cbc5f) C:\Windows\system32\drivers\HdAudio.sys
18:24:40.0880 1324 HdAudAddService - ok
18:24:40.0896 1324 HDAudBus (717a2207fd6f13ad3e664c7d5a43c7bf) C:\Windows\system32\DRIVERS\HDAudBus.sys
18:24:40.0896 1324 HDAudBus - ok
18:24:40.0927 1324 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
18:24:40.0927 1324 HidBatt - ok
18:24:40.0927 1324 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
18:24:40.0942 1324 HidBth - ok
18:24:40.0958 1324 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
18:24:40.0958 1324 HidIr - ok
18:24:40.0989 1324 HidUsb (25072fb35ac90b25f9e4e3bacf774102) C:\Windows\system32\DRIVERS\hidusb.sys
18:24:40.0989 1324 HidUsb - ok
18:24:41.0020 1324 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\DRIVERS\HpSAMD.sys
18:24:41.0020 1324 HpSAMD - ok
18:24:41.0052 1324 HTTP (c531c7fd9e8b62021112787c4e2c5a5a) C:\Windows\system32\drivers\HTTP.sys
18:24:41.0052 1324 HTTP - ok
18:24:41.0067 1324 hwpolicy (8305f33cde89ad6c7a0763ed0b5a8d42) C:\Windows\system32\drivers\hwpolicy.sys
18:24:41.0067 1324 hwpolicy - ok
18:24:41.0083 1324 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\DRIVERS\i8042prt.sys
18:24:41.0083 1324 i8042prt - ok
18:24:41.0098 1324 iaStorV (934af4d7c5f457b9f0743f4299b77b67) C:\Windows\system32\DRIVERS\iaStorV.sys
18:24:41.0098 1324 iaStorV - ok
18:24:41.0114 1324 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
18:24:41.0114 1324 iirsp - ok
18:24:41.0161 1324 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\DRIVERS\intelide.sys
18:24:41.0161 1324 intelide - ok
18:24:41.0176 1324 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
18:24:41.0176 1324 intelppm - ok
18:24:41.0192 1324 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:24:41.0192 1324 IpFilterDriver - ok
18:24:41.0208 1324 IPMIDRV (e4454b6c37d7ffd5649611f6496308a7) C:\Windows\system32\DRIVERS\IPMIDrv.sys
18:24:41.0208 1324 IPMIDRV - ok
18:24:41.0239 1324 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
18:24:41.0239 1324 IPNAT - ok
18:24:41.0270 1324 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
18:24:41.0270 1324 IRENUM - ok
18:24:41.0286 1324 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\DRIVERS\isapnp.sys
18:24:41.0286 1324 isapnp - ok
18:24:41.0332 1324 iScsiPrt (ed46c223ae46c6866ab77cdc41c404b7) C:\Windows\system32\DRIVERS\msiscsi.sys
18:24:41.0332 1324 iScsiPrt - ok
18:24:41.0364 1324 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\DRIVERS\kbdclass.sys
18:24:41.0364 1324 kbdclass - ok
18:24:41.0364 1324 kbdhid (3d9f0ebf350edcfd6498057301455964) C:\Windows\system32\DRIVERS\kbdhid.sys
18:24:41.0364 1324 kbdhid - ok
18:24:41.0395 1324 KSecDD (e36a061ec11b373826905b21be10948f) C:\Windows\system32\Drivers\ksecdd.sys
18:24:41.0395 1324 KSecDD - ok
18:24:41.0442 1324 KSecPkg (365c6154bbbc5377173f1ca7bfb6cc59) C:\Windows\system32\Drivers\ksecpkg.sys
18:24:41.0442 1324 KSecPkg - ok
18:24:41.0473 1324 lltdio (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
18:24:41.0473 1324 lltdio - ok
18:24:41.0504 1324 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
18:24:41.0520 1324 LSI_FC - ok
18:24:41.0520 1324 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
18:24:41.0520 1324 LSI_SAS - ok
18:24:41.0551 1324 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
18:24:41.0551 1324 LSI_SAS2 - ok
18:24:41.0566 1324 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
18:24:41.0566 1324 LSI_SCSI - ok
18:24:41.0598 1324 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
18:24:41.0598 1324 luafv - ok
18:24:41.0613 1324 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
18:24:41.0613 1324 megasas - ok
18:24:41.0644 1324 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
18:24:41.0644 1324 MegaSR - ok
18:24:41.0660 1324 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
18:24:41.0660 1324 Modem - ok
18:24:41.0676 1324 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
18:24:41.0676 1324 monitor - ok
18:24:41.0707 1324 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\DRIVERS\mouclass.sys
18:24:41.0707 1324 mouclass - ok
18:24:41.0722 1324 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
18:24:41.0738 1324 mouhid - ok
18:24:41.0738 1324 mountmgr (921c18727c5920d6c0300736646931c2) C:\Windows\system32\drivers\mountmgr.sys
18:24:41.0738 1324 mountmgr - ok
18:24:41.0769 1324 mpio (2af5997438c55fb79d33d015c30e1974) C:\Windows\system32\DRIVERS\mpio.sys
18:24:41.0785 1324 mpio - ok
18:24:41.0785 1324 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
18:24:41.0800 1324 mpsdrv - ok
18:24:41.0816 1324 MRxDAV (b1be47008d20e43da3adc37c24cdb89d) C:\Windows\system32\drivers\mrxdav.sys
18:24:41.0816 1324 MRxDAV - ok
18:24:41.0847 1324 mrxsmb (ca7570e42522e24324a12161db14ec02) C:\Windows\system32\DRIVERS\mrxsmb.sys
18:24:41.0847 1324 mrxsmb - ok
18:24:41.0863 1324 mrxsmb10 (f965c3ab2b2ae5c378f4562486e35051) C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:24:41.0863 1324 mrxsmb10 - ok
18:24:41.0894 1324 mrxsmb20 (25c38264a3c72594dd21d355d70d7a5d) C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:24:41.0894 1324 mrxsmb20 - ok
18:24:41.0925 1324 msahci (4326d168944123f38dd3b2d9c37a0b12) C:\Windows\system32\DRIVERS\msahci.sys
18:24:41.0925 1324 msahci - ok
18:24:41.0925 1324 msdsm (455029c7174a2dbb03dba8a0d8bddd9a) C:\Windows\system32\DRIVERS\msdsm.sys
18:24:41.0925 1324 msdsm - ok
18:24:41.0956 1324 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
18:24:41.0956 1324 Msfs - ok
18:24:41.0988 1324 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
18:24:41.0988 1324 mshidkmdf - ok
18:24:42.0003 1324 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\DRIVERS\msisadrv.sys
18:24:42.0003 1324 msisadrv - ok
18:24:42.0034 1324 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
18:24:42.0034 1324 MSKSSRV - ok
18:24:42.0034 1324 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
18:24:42.0034 1324 MSPCLOCK - ok
18:24:42.0050 1324 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
18:24:42.0050 1324 MSPQM - ok
18:24:42.0066 1324 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
18:24:42.0066 1324 MsRPC - ok
18:24:42.0097 1324 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\DRIVERS\mssmbios.sys
18:24:42.0097 1324 mssmbios - ok
18:24:42.0097 1324 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
18:24:42.0097 1324 MSTEE - ok
18:24:42.0128 1324 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
18:24:42.0128 1324 MTConfig - ok
18:24:42.0144 1324 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
18:24:42.0144 1324 Mup - ok
18:24:42.0190 1324 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
18:24:42.0190 1324 NativeWifiP - ok
18:24:42.0206 1324 NDIS (23759d175a0a9baaf04d05047bc135a8) C:\Windows\system32\drivers\ndis.sys
18:24:42.0222 1324 NDIS - ok
18:24:42.0237 1324 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
18:24:42.0237 1324 NdisCap - ok
18:24:42.0268 1324 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
18:24:42.0268 1324 NdisTapi - ok
18:24:42.0268 1324 Ndisuio (b30ae7f2b6d7e343b0df32e6c08fce75) C:\Windows\system32\DRIVERS\ndisuio.sys
18:24:42.0284 1324 Ndisuio - ok
18:24:42.0300 1324 NdisWan (267c415eadcbe53c9ca873dee39cf3a4) C:\Windows\system32\DRIVERS\ndiswan.sys
18:24:42.0300 1324 NdisWan - ok
18:24:42.0300 1324 NDProxy (af7e7c63dcef3f8772726f86039d6eb4) C:\Windows\system32\drivers\NDProxy.sys
18:24:42.0300 1324 NDProxy - ok
18:24:42.0315 1324 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
18:24:42.0315 1324 NetBIOS - ok
18:24:42.0346 1324 NetBT (dd52a733bf4ca5af84562a5e2f963b91) C:\Windows\system32\DRIVERS\netbt.sys
18:24:42.0346 1324 NetBT - ok
18:24:42.0409 1324 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
18:24:42.0409 1324 nfrd960 - ok
18:24:42.0440 1324 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
18:24:42.0440 1324 Npfs - ok
18:24:42.0456 1324 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
18:24:42.0456 1324 nsiproxy - ok
18:24:42.0502 1324 Ntfs (3795dcd21f740ee799fb7223234215af) C:\Windows\system32\drivers\Ntfs.sys
18:24:42.0518 1324 Ntfs - ok
18:24:42.0549 1324 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
18:24:42.0549 1324 Null - ok
18:24:42.0612 1324 NVHDA (96c27791d5ae5c77e37c61b15112e38d) C:\Windows\system32\drivers\nvhda32v.sys
18:24:42.0612 1324 NVHDA - ok
18:24:42.0908 1324 nvlddmkm (f11e671d2ae221ed21573c923b1a87da) C:\Windows\system32\DRIVERS\nvlddmkm.sys
18:24:42.0986 1324 nvlddmkm - ok
18:24:43.0017 1324 nvraid (3f3d04b1d08d43c16ea7963954ec768d) C:\Windows\system32\DRIVERS\nvraid.sys
18:24:43.0017 1324 nvraid - ok
18:24:43.0033 1324 nvstor (c99f251a5de63c6f129cf71933aced0f) C:\Windows\system32\DRIVERS\nvstor.sys
18:24:43.0033 1324 nvstor - ok
18:24:43.0048 1324 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\DRIVERS\nv_agp.sys
18:24:43.0048 1324 nv_agp - ok
18:24:43.0064 1324 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\DRIVERS\ohci1394.sys
18:24:43.0064 1324 ohci1394 - ok
18:24:43.0111 1324 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
18:24:43.0111 1324 Parport - ok
18:24:43.0142 1324 partmgr (ff4218952b51de44fe910953a3e686b9) C:\Windows\system32\drivers\partmgr.sys
18:24:43.0142 1324 partmgr - ok
18:24:43.0142 1324 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
18:24:43.0142 1324 Parvdm - ok
18:24:43.0173 1324 pci (c858cb77c577780ecc456a892e7e7d0f) C:\Windows\system32\DRIVERS\pci.sys
18:24:43.0173 1324 pci - ok
18:24:43.0204 1324 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\DRIVERS\pciide.sys
18:24:43.0204 1324 pciide - ok
18:24:43.0236 1324 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
18:24:43.0236 1324 pcmcia - ok
18:24:43.0251 1324 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
18:24:43.0251 1324 pcw - ok
18:24:43.0298 1324 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
18:24:43.0298 1324 PEAUTH - ok
18:24:43.0376 1324 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
18:24:43.0376 1324 PptpMiniport - ok
18:24:43.0392 1324 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
18:24:43.0392 1324 Processor - ok
18:24:43.0438 1324 Psched (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
18:24:43.0438 1324 Psched - ok
18:24:43.0501 1324 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
18:24:43.0501 1324 ql2300 - ok
18:24:43.0532 1324 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
18:24:43.0532 1324 ql40xx - ok
18:24:43.0548 1324 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
18:24:43.0548 1324 QWAVEdrv - ok
18:24:43.0548 1324 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
18:24:43.0548 1324 RasAcd - ok
18:24:43.0579 1324 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
18:24:43.0579 1324 RasAgileVpn - ok
18:24:43.0610 1324 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
18:24:43.0610 1324 Rasl2tp - ok
18:24:43.0641 1324 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
18:24:43.0641 1324 RasPppoe - ok
18:24:43.0672 1324 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
18:24:43.0672 1324 RasSstp - ok
18:24:43.0704 1324 rdbss (835d7e81bf517a3b72384bdcc85e1ce6) C:\Windows\system32\DRIVERS\rdbss.sys
18:24:43.0704 1324 rdbss - ok
18:24:43.0719 1324 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
18:24:43.0719 1324 rdpbus - ok
18:24:43.0719 1324 RDPCDD (1e016846895b15a99f9a176a05029075) C:\Windows\system32\DRIVERS\RDPCDD.sys
18:24:43.0735 1324 RDPCDD - ok
18:24:43.0766 1324 RDPDR (c5ff95883ffef704d50c40d21cfb3ab5) C:\Windows\system32\drivers\rdpdr.sys
18:24:43.0766 1324 RDPDR - ok
18:24:43.0782 1324 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
18:24:43.0782 1324 RDPENCDD - ok
18:24:43.0797 1324 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
18:24:43.0797 1324 RDPREFMP - ok
18:24:43.0844 1324 RDPWD (801371ba9782282892d00aadb08ee367) C:\Windows\system32\drivers\RDPWD.sys
18:24:43.0844 1324 RDPWD - ok
18:24:43.0860 1324 rdyboost (4ea225bf1cf05e158853f30a99ca29a7) C:\Windows\system32\drivers\rdyboost.sys
18:24:43.0860 1324 rdyboost - ok
18:24:43.0906 1324 rspndr (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
18:24:43.0906 1324 rspndr - ok
18:24:43.0938 1324 s3cap (5423d8437051e89dd34749f242c98648) C:\Windows\system32\DRIVERS\vms3cap.sys
18:24:43.0938 1324 s3cap - ok
18:24:43.0953 1324 sbp2port (34ee0c44b724e3e4ce2eff29126de5b5) C:\Windows\system32\DRIVERS\sbp2port.sys
18:24:43.0953 1324 sbp2port - ok
18:24:44.0016 1324 scfilter (a95c54b2ac3cc9c73fcdf9e51a1d6b51) C:\Windows\system32\DRIVERS\scfilter.sys
18:24:44.0016 1324 scfilter - ok
18:24:44.0047 1324 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
18:24:44.0047 1324 secdrv - ok
18:24:44.0078 1324 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
18:24:44.0078 1324 Serenum - ok
18:24:44.0109 1324 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
18:24:44.0109 1324 Serial - ok
18:24:44.0109 1324 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
18:24:44.0109 1324 sermouse - ok
18:24:44.0156 1324 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\DRIVERS\sffdisk.sys
18:24:44.0156 1324 sffdisk - ok
18:24:44.0156 1324 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\DRIVERS\sffp_mmc.sys
18:24:44.0172 1324 sffp_mmc - ok
18:24:44.0187 1324 sffp_sd (4f1e5b0fe7c8050668dbfade8999aefb) C:\Windows\system32\DRIVERS\sffp_sd.sys
18:24:44.0187 1324 sffp_sd - ok
18:24:44.0203 1324 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
18:24:44.0203 1324 sfloppy - ok
18:24:44.0250 1324 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\DRIVERS\sisagp.sys
18:24:44.0250 1324 sisagp - ok
18:24:44.0250 1324 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
18:24:44.0250 1324 SiSRaid2 - ok
18:24:44.0281 1324 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
18:24:44.0281 1324 SiSRaid4 - ok
18:24:44.0312 1324 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
18:24:44.0312 1324 Smb - ok
18:24:44.0343 1324 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
18:24:44.0359 1324 spldr - ok
18:24:44.0390 1324 srv (c4a027b8c0bd3fc0699f41fa5e9e0c87) C:\Windows\system32\DRIVERS\srv.sys
18:24:44.0390 1324 srv - ok
18:24:44.0437 1324 srv2 (414bb592cad8a79649d01f9d94318fb3) C:\Windows\system32\DRIVERS\srv2.sys
18:24:44.0437 1324 srv2 - ok
18:24:44.0484 1324 srvnet (ff207d67700aa18242aaf985d3e7d8f4) C:\Windows\system32\DRIVERS\srvnet.sys
18:24:44.0484 1324 srvnet - ok
18:24:44.0530 1324 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
18:24:44.0530 1324 stexstor - ok
18:24:44.0577 1324 storflt (957e346ca948668f2496a6ccf6ff82cc) C:\Windows\system32\DRIVERS\vmstorfl.sys
18:24:44.0577 1324 storflt - ok
18:24:44.0593 1324 storvsc (d5751969dc3e4b88bf482ac8ec9fe019) C:\Windows\system32\DRIVERS\storvsc.sys
18:24:44.0593 1324 storvsc - ok
18:24:44.0608 1324 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\DRIVERS\swenum.sys
18:24:44.0608 1324 swenum - ok
18:24:44.0671 1324 Tcpip (56c198ac82efa622dd93e9e43575f79c) C:\Windows\system32\drivers\tcpip.sys
18:24:44.0686 1324 Tcpip - ok
18:24:44.0749 1324 TCPIP6 (56c198ac82efa622dd93e9e43575f79c) C:\Windows\system32\DRIVERS\tcpip.sys
18:24:44.0764 1324 TCPIP6 - ok
18:24:44.0796 1324 tcpipreg (e64444523add154f86567c469bc0b17f) C:\Windows\system32\drivers\tcpipreg.sys
18:24:44.0796 1324 tcpipreg - ok
18:24:44.0796 1324 TDPIPE (1875c1490d99e70e449e3afae9fcbadf) C:\Windows\system32\drivers\tdpipe.sys
18:24:44.0811 1324 TDPIPE - ok
18:24:44.0827 1324 TDTCP (7551e91ea999ee9a8e9c331d5a9c31f3) C:\Windows\system32\drivers\tdtcp.sys
18:24:44.0827 1324 TDTCP - ok
18:24:44.0842 1324 tdx (cb39e896a2a83702d1737bfd402b3542) C:\Windows\system32\DRIVERS\tdx.sys
18:24:44.0842 1324 tdx - ok
18:24:44.0874 1324 TermDD (c36f41ee20e6999dbf4b0425963268a5) C:\Windows\system32\DRIVERS\termdd.sys
18:24:44.0874 1324 TermDD - ok
18:24:44.0920 1324 tssecsrv (98ae6fa07d12cb4ec5cf4a9bfa5f4242) C:\Windows\system32\DRIVERS\tssecsrv.sys
18:24:44.0920 1324 tssecsrv - ok
18:24:44.0952 1324 tunnel (3e461d890a97f9d4c168f5fda36e1d00) C:\Windows\system32\DRIVERS\tunnel.sys
18:24:44.0952 1324 tunnel - ok
18:24:44.0983 1324 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
18:24:44.0983 1324 uagp35 - ok
18:24:44.0998 1324 udfs (09cc3e16f8e5ee7168e01cf8fcbe061a) C:\Windows\system32\DRIVERS\udfs.sys
18:24:44.0998 1324 udfs - ok
18:24:45.0030 1324 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\DRIVERS\uliagpkx.sys
18:24:45.0030 1324 uliagpkx - ok
18:24:45.0061 1324 umbus (049b3a50b3d646baeeee9eec9b0668dc) C:\Windows\system32\DRIVERS\umbus.sys
18:24:45.0061 1324 umbus - ok
18:24:45.0076 1324 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
18:24:45.0076 1324 UmPass - ok
18:24:45.0108 1324 usbccgp (8455c4ed038efd09e99327f9d2d48ffa) C:\Windows\system32\DRIVERS\usbccgp.sys
18:24:45.0108 1324 usbccgp - ok
18:24:45.0139 1324 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\DRIVERS\usbcir.sys
18:24:45.0139 1324 usbcir - ok
18:24:45.0154 1324 usbehci (1c333bfd60f2fed2c7ad5daf533cb742) C:\Windows\system32\DRIVERS\usbehci.sys
18:24:45.0154 1324 usbehci - ok
18:24:45.0170 1324 usbhub (ee6ef93ccfa94fae8c6ab298273d8ae2) C:\Windows\system32\DRIVERS\usbhub.sys
18:24:45.0170 1324 usbhub - ok
18:24:45.0186 1324 usbohci (a6fb7957ea7afb1165991e54ce934b74) C:\Windows\system32\DRIVERS\usbohci.sys
18:24:45.0186 1324 usbohci - ok
18:24:45.0201 1324 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
18:24:45.0201 1324 usbprint - ok
18:24:45.0232 1324 USBSTOR (d8889d56e0d27e57ed4591837fe71d27) C:\Windows\system32\DRIVERS\USBSTOR.SYS
18:24:45.0232 1324 USBSTOR - ok
18:24:45.0232 1324 usbuhci (78780c3ebce17405b1ccd07a3a8a7d72) C:\Windows\system32\DRIVERS\usbuhci.sys
18:24:45.0232 1324 usbuhci - ok
18:24:45.0279 1324 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\DRIVERS\vdrvroot.sys
18:24:45.0279 1324 vdrvroot - ok
18:24:45.0295 1324 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
18:24:45.0295 1324 vga - ok
18:24:45.0326 1324 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
18:24:45.0326 1324 VgaSave - ok
18:24:45.0342 1324 vhdmp (3be6e1f3a4f1afec8cee0d7883f93583) C:\Windows\system32\DRIVERS\vhdmp.sys
18:24:45.0342 1324 vhdmp - ok
18:24:45.0373 1324 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\DRIVERS\viaagp.sys
18:24:45.0373 1324 viaagp - ok
18:24:45.0388 1324 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
18:24:45.0388 1324 ViaC7 - ok
18:24:45.0420 1324 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\DRIVERS\viaide.sys
18:24:45.0420 1324 viaide - ok
18:24:45.0451 1324 vmbus (379b349f65f453d2a6e75ea6b7448e49) C:\Windows\system32\DRIVERS\vmbus.sys
18:24:45.0451 1324 vmbus - ok
18:24:45.0482 1324 VMBusHID (ec2bbab4b84d0738c6c83d2234dc36fe) C:\Windows\system32\DRIVERS\VMBusHID.sys
18:24:45.0482 1324 VMBusHID - ok
18:24:45.0513 1324 volmgr (384e5a2aa49934295171e499f86ba6f3) C:\Windows\system32\DRIVERS\volmgr.sys
18:24:45.0513 1324 volmgr - ok
18:24:45.0544 1324 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
18:24:45.0544 1324 volmgrx - ok
18:24:45.0576 1324 volsnap (58df9d2481a56edde167e51b334d44fd) C:\Windows\system32\DRIVERS\volsnap.sys
18:24:45.0591 1324 volsnap - ok
18:24:45.0622 1324 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
18:24:45.0622 1324 vsmraid - ok
18:24:45.0638 1324 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\System32\drivers\vwifibus.sys
18:24:45.0638 1324 vwifibus - ok
18:24:45.0654 1324 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
18:24:45.0654 1324 WacomPen - ok
18:24:45.0669 1324 WANARP (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys
18:24:45.0669 1324 WANARP - ok
18:24:45.0685 1324 Wanarpv6 (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys
18:24:45.0685 1324 Wanarpv6 - ok
18:24:45.0716 1324 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
18:24:45.0716 1324 Wd - ok
18:24:45.0732 1324 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
18:24:45.0732 1324 Wdf01000 - ok
18:24:45.0778 1324 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
18:24:45.0778 1324 WfpLwf - ok
18:24:45.0794 1324 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
18:24:45.0794 1324 WIMMount - ok
18:24:45.0825 1324 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\DRIVERS\wmiacpi.sys
18:24:45.0825 1324 WmiAcpi - ok
18:24:45.0856 1324 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
18:24:45.0856 1324 ws2ifsl - ok
18:24:45.0903 1324 WudfPf (6f9b6c0c93232cff47d0f72d6db1d21e) C:\Windows\system32\drivers\WudfPf.sys
18:24:45.0903 1324 WudfPf - ok
18:24:45.0934 1324 WUDFRd (f91ff1e51fca30b3c3981db7d5924252) C:\Windows\system32\DRIVERS\WUDFRd.sys
18:24:45.0934 1324 WUDFRd - ok
18:24:45.0981 1324 yukonw7 (b07c5b7efdf936ff93d4f540938725be) C:\Windows\system32\DRIVERS\yk62x86.sys
18:24:45.0997 1324 yukonw7 - ok
18:24:46.0012 1324 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
18:24:46.0028 1324 \Device\Harddisk0\DR0 - ok
18:24:46.0044 1324 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk1\DR1
18:24:46.0044 1324 \Device\Harddisk1\DR1 - ok
18:24:46.0044 1324 MBR (0x1B8) (180dbde3af7ea48b3db3ac27b1ddf401) \Device\Harddisk2\DR2
18:24:46.0106 1324 \Device\Harddisk2\DR2 - ok
18:24:46.0122 1324 Boot (0x1200) (496b0aab943320f185caf6051ed9303c) \Device\Harddisk0\DR0\Partition0
18:24:46.0122 1324 \Device\Harddisk0\DR0\Partition0 - ok
18:24:46.0122 1324 Boot (0x1200) (45887a290f66eb35c7c79884258ae7e0) \Device\Harddisk0\DR0\Partition1
18:24:46.0137 1324 \Device\Harddisk0\DR0\Partition1 - ok
18:24:46.0137 1324 Boot (0x1200) (97a30057d0be58ed9e0ba32731cdde4b) \Device\Harddisk0\DR0\Partition2
18:24:46.0137 1324 \Device\Harddisk0\DR0\Partition2 - ok
18:24:46.0168 1324 Boot (0x1200) (a736f7e76dcad76391e814d041947905) \Device\Harddisk0\DR0\Partition3
18:24:46.0168 1324 \Device\Harddisk0\DR0\Partition3 - ok
18:24:46.0168 1324 Boot (0x1200) (369fc0725b41e8db684501d657366448) \Device\Harddisk1\DR1\Partition0
18:24:46.0168 1324 \Device\Harddisk1\DR1\Partition0 - ok
18:24:46.0168 1324 Boot (0x1200) (b56c24b4e515c84a2e801a8c6ff35087) \Device\Harddisk2\DR2\Partition0
18:24:46.0184 1324 \Device\Harddisk2\DR2\Partition0 - ok
18:24:46.0184 1324 ============================================================
18:24:46.0184 1324 Scan finished
18:24:46.0184 1324 ============================================================
18:24:46.0184 2864 Detected object count: 0
18:24:46.0184 2864 Actual detected object count: 0

Re: vir neshta

Napsal: 26 lis 2011 19:03
od Rudy
Toto je čisté. Jsem blázen, kde může být, když jste reinstaloval systém. Jediné, co tam zbylo z toho původního, je právě to, co jsme teď prověřili, tedy MBR. Kde se podle antiviru nachází?

Re: vir neshta

Napsal: 26 lis 2011 19:27
od Treeper
no mam 2 pevné disky jeden rozdělen na oddíly C, E, F , druhy v celku jako D a ještě externí disk , oddíly C a F jsem formátoval při instalaci, ale dost instalačních souboru jsem měl pravě i na tom přenosném disku, myslel jsem si že ten virus se drží jen na C a má schopnost ty .exe jen oznamovat jako vir, ale teď jsem zkusil najet na ten externí disk a zase se objevil, a na tom druhem disku D jsem měl zálohu dat a taky mi NOD některé soubory označil jako zavirované