Stránka 1 z 3

chová se divně

Napsal: 11 kvě 2012 16:58
od olcit
Prosím o kontrolu logu. PC se zakusuje. Při kontrole combofixem odpírá přístup. Log z rsit se povedl až na čtvrtý pokus.
Logfile of random's system information tool 1.09 (written by random/random)
Run by ota at 2012-05-11 17:52:19
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 74 GB (48%) free of 153 GB
Total RAM: 3036 MB (56% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:52:41, on 11.5.2012
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\VIA\VIAudioi\VDeck\VDECK.EXE
C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
C:\Program Files\ASUS\ATK Media\DMedia.exe
C:\Windows\AsScrPro.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Elantech\ETDCtrl.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\ota\Desktop\RSIT.exe
C:\Program Files\trend micro\ota.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bigseekpro.com/accmeware/{12 ... 7A3766F074}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [AmIcoSinglun] C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [Wireless Console 3] C:\Program Files\ASUS\Wireless Console 3\wcourier.exe
O4 - HKLM\..\Run: [ASUS Screen Saver Protector] C:\Windows\AsScrPro.exe
O4 - HKLM\..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe" -H
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [Sweetpacks Communicator] C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [{9B71D88C-C598-4935-C5D1-43AA4DB90836}] C:\Users\ota\AppData\Roaming\svghost.exe
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\System32\guard32.dll C:\Windows\System32\guard32.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Defragmentation-Service (DfSdkS) - mst software GmbH, Germany - C:\Program Files\Ashampoo\Ashampoo WinOptimizer 8\DfsdkS.exe

--
End of file - 7166 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-09-05 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2012-02-17 325408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2011-05-13 393600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2012-02-17 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
SweetPacks Browser Helper - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2012-02-19 1337648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EEE6C35B-6118-11DC-9C72-001320C79847} - SweetPacks Toolbar for Internet Explorer - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2012-02-19 1337648]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe [2009-03-23 17149952]
"AmIcoSinglun"=C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [2008-10-01 237568]
"HControlUser"=C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [2008-08-18 98304]
"ATKOSD2"=C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [2009-03-04 8392704]
"ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMedia.exe [2008-12-29 159744]
"Wireless Console 3"=C:\Program Files\ASUS\Wireless Console 3\wcourier.exe [2011-12-11 1593344]
"ASUS Screen Saver Protector"=C:\Windows\AsScrPro.exe [2009-09-16 3054136]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2009-03-06 424352]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-02-11 137752]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-02-11 171032]
"Persistence"=C:\Windows\system32\igfxpers.exe [2011-02-11 172568]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"UnlockerAssistant"=C:\Program Files\Unlocker\UnlockerAssistant.exe [2010-07-04 17408]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"SweetIM"=C:\Program Files\SweetIM\Messenger\SweetIM.exe [2012-02-16 114992]
"Sweetpacks Communicator"=C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe [2012-02-26 295728]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240]
"{9B71D88C-C598-4935-C5D1-43AA4DB90836}"=C:\Users\ota\AppData\Roaming\svghost.exe [2009-04-11 70611]

C:\Users\ota\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\System32\guard32.dll C:\Windows\System32\guard32.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-02-11 228864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"EnableLUA"=2

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
"NoDriveTypeAutoRun"=157
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"msacm.siren"=sirenacm.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2012-05-11 17:44:30 ----D---- C:\Program Files\trend micro
2012-05-11 17:44:29 ----D---- C:\rsit
2012-05-11 17:29:57 ----D---- C:\Windows\temp
2012-05-11 17:28:58 ----SHD---- C:\$RECYCLE.BIN
2012-05-11 17:10:24 ----D---- C:\tralala
2012-05-11 14:06:52 ----D---- C:\Users\ota\AppData\Roaming\Raptr
2012-05-11 14:06:52 ----D---- C:\Program Files\Raptr
2012-05-11 14:05:17 ----D---- C:\Users\ota\AppData\Roaming\Azureus
2012-05-11 13:41:59 ----D---- C:\ProgramData\SweetIM
2012-05-11 13:41:59 ----D---- C:\Program Files\SweetIM
2012-05-11 13:41:57 ----D---- C:\ProgramData\Premium
2012-05-11 13:40:17 ----D---- C:\ProgramData\InstallMate
2012-05-05 14:37:06 ----AD---- C:\Windows\rundll16.exe
2012-05-05 14:37:06 ----AD---- C:\Windows\logo1_.exe
2012-04-26 11:26:57 ----D---- C:\Program Files\OpenXML-ODF Translator
2012-04-20 20:26:47 ----D---- C:\ComboFix
2012-04-19 03:19:28 ----A---- C:\Windows\system32\FlashPlayerApp.exe

======List of files/folders modified in the last 1 month======

2012-05-11 17:44:30 ----RD---- C:\Program Files
2012-05-11 17:43:07 ----D---- C:\Windows\System32
2012-05-11 17:43:07 ----D---- C:\Windows\inf
2012-05-11 17:43:07 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-05-11 17:43:02 ----D---- C:\Windows
2012-05-11 17:30:00 ----D---- C:\Qoobox
2012-05-11 17:29:59 ----D---- C:\Windows\system32\drivers
2012-05-11 17:24:40 ----A---- C:\Windows\system.ini
2012-05-11 17:24:37 ----D---- C:\Windows\ERDNT
2012-05-11 17:24:34 ----D---- C:\Windows\system32\drivers\etc
2012-05-11 17:17:17 ----D---- C:\Windows\AppPatch
2012-05-11 17:17:15 ----D---- C:\Program Files\Common Files
2012-05-11 16:45:10 ----D---- C:\Windows\Prefetch
2012-05-11 14:39:14 ----D---- C:\ProgramData\AVAST Software
2012-05-11 14:37:55 ----SHD---- C:\System Volume Information
2012-05-11 13:42:49 ----SHD---- C:\Windows\Installer
2012-05-11 13:42:26 ----SD---- C:\Users\ota\AppData\Roaming\Microsoft
2012-05-11 13:41:59 ----D---- C:\ProgramData
2012-05-10 13:01:15 ----D---- C:\Windows\system32\catroot2
2012-05-05 14:19:24 ----D---- C:\Program Files\CCleaner
2012-05-02 11:35:44 ----D---- C:\Users\ota\AppData\Roaming\Skype
2012-05-01 05:21:08 ----D---- C:\Windows\Microsoft.NET
2012-04-26 11:29:21 ----RSD---- C:\Windows\assembly
2012-04-21 13:16:42 ----D---- C:\temp
2012-04-19 03:19:31 ----D---- C:\Windows\Tasks
2012-04-19 03:19:31 ----D---- C:\Windows\system32\Tasks

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-02-11 329752]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\Windows\System32\DRIVERS\cmderd.sys [2011-10-07 19600]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2011-10-07 488208]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2011-10-07 38616]
R1 GDMnIcpt;GDMnIcpt; \??\C:\Windows\system32\drivers\MiniIcpt.sys [2011-12-11 74456]
R1 HookCentre;HookCentre; \??\C:\Windows\system32\drivers\HookCentre.sys [2011-12-11 39640]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2011-10-07 82400]
R1 StarOpen;StarOpen; C:\Windows\system32\drivers\StarOpen.sys [2006-07-24 5632]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-09-05 1183744]
R3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-09-16 22528]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-09-16 30208]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2009-03-13 140800]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2011-02-11 9036800]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2008-11-03 13880]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E60x86.sys [2009-08-05 48640]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2008-12-24 14392]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2011-07-28 47360]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2008-08-11 1752704]
R3 SRS_PremiumSound_Service;SRS Labs Premium Sound; C:\Windows\system32\drivers\srs_PremiumSound_i386.sys [2009-01-14 230952]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2009-03-20 984064]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-21 508416]
S3 catchme;catchme; \??\C:\Users\ota\AppData\Local\Temp\catchme.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2011-05-13 39272]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 KMWDFILTER;HIDUASDesc; C:\Windows\system32\DRIVERS\KMWDFILTER.sys [2008-10-09 17408]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 netr73;RT73 USB Wireless LAN Card Driver for Vista; C:\Windows\system32\DRIVERS\netr73.sys [2007-05-11 329728]
S3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-02 1010560]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
S4 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-21 88576]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ASLDRService;ASLDR Service; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [2011-12-11 100920]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2011-12-11 94208]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 DfSdkS;Defragmentation-Service; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 8\DfsdkS.exe [2009-08-24 406016]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 1713536]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-05 257696]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2011-05-13 1492840]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]

-----------------EOF-----------------


.......

Ještě log z combofix:
ComboFix 12-05-11.02 - ota 11.05.2012 17:12:27.12.2 - x86
Spuštěný z: c:\users\ota\Desktop\tralala.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\1324866939.bdinstall.bin . . . . nemohl být smazán
c:\programdata\1324869924.bdinstall.bin . . . . nemohl být smazán
c:\programdata\1324870202.bdinstall.bin . . . . nemohl být smazán
c:\programdata\1324983593.bdinstall.bin . . . . nemohl být smazán
c:\users\ota\AppData\Roaming\svghost.exe . . . . nemohl být smazán
.
---- Předchozí spuštění -------
.
c:\programdata\1324866939.bdinstall.bin . . . . nemohl být smazán
c:\programdata\1324869924.bdinstall.bin . . . . nemohl být smazán
c:\programdata\1324870202.bdinstall.bin . . . . nemohl být smazán
c:\programdata\1324983593.bdinstall.bin . . . . nemohl být smazán
c:\users\ota\AppData\Roaming\svghost.exe . . . . nemohl být smazán
.
-- Předchozí spuštění --
.
Nakažená kopie c:\windows\system32\userinit.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\ERDNT\cache\userinit.exe
.
--------
.
Nakažená kopie c:\windows\system32\Drivers\atapi.sys byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\ERDNT\cache\atapi.sys
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-04-11 do 2012-05-11 )))))))))))))))))))))))))))))))
.
.
2012-05-11 15:23 . 2012-05-11 15:25 -------- d-----w- c:\users\ota\AppData\Local\temp
2012-05-11 15:23 . 2012-05-11 15:23 -------- d-----w- c:\users\Public\AppData\Local\temp
2012-05-11 15:23 . 2012-05-11 15:23 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-05-11 12:06 . 2012-05-11 12:10 -------- d-----w- c:\users\ota\AppData\Roaming\Raptr
2012-05-11 12:06 . 2012-05-11 12:10 -------- d-----w- c:\program files\Raptr
2012-05-11 12:05 . 2012-05-11 12:05 -------- d-----w- c:\users\ota\.swt
2012-05-11 12:05 . 2012-05-11 12:50 -------- d-----w- c:\users\ota\AppData\Roaming\Azureus
2012-05-11 11:41 . 2012-05-11 11:42 -------- d-----w- c:\programdata\SweetIM
2012-05-11 11:41 . 2012-05-11 11:42 -------- d-----w- c:\program files\SweetIM
2012-05-11 11:41 . 2012-05-11 11:41 -------- d-----w- c:\programdata\Premium
2012-05-11 11:40 . 2012-05-11 11:42 -------- d-----w- c:\programdata\InstallMate
2012-05-05 12:37 . 2012-05-05 12:37 -------- d---a-w- c:\windows\rundll16.exe
2012-05-05 12:37 . 2012-05-05 12:37 -------- d---a-w- c:\windows\logo1_.exe
2012-04-26 09:26 . 2012-04-26 09:27 -------- d-----w- c:\program files\OpenXML-ODF Translator
2012-04-20 18:26 . 2012-05-11 14:29 -------- d-----w- C:\ComboFix
2012-04-19 03:02 . 2012-04-19 03:02 -------- d-----w- c:\users\ota\AppData\Local\Innovative Solutions
2012-04-19 02:46 . 2012-04-19 02:56 -------- d-----w- c:\users\ota\AppData\Local\eSupport.com
2012-04-19 01:19 . 2012-05-05 16:31 419488 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-04-15 18:15 . 2012-04-19 03:18 -------- d-----w- c:\users\ota\AppData\Local\Unity
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-05-05 16:31 . 2011-07-10 17:29 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-03-30 19:56 . 2012-03-30 19:54 22836409 ----a-w- c:\windows\REGBK02.ZIP
2012-03-20 14:26 . 2012-03-20 14:23 22730834 ----a-w- c:\windows\REGBK01.ZIP
2012-03-06 06:39 . 2012-04-11 05:07 3550080 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-03-06 06:39 . 2012-04-11 05:07 3602816 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-02-29 15:11 . 2012-04-11 05:08 5120 ----a-w- c:\windows\system32\wmi.dll
2012-02-29 15:11 . 2012-04-11 05:08 172032 ----a-w- c:\windows\system32\wintrust.dll
2012-02-29 15:09 . 2012-04-11 05:08 157696 ----a-w- c:\windows\system32\imagehlp.dll
2012-02-29 13:32 . 2012-04-11 05:08 12800 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-02-28 01:18 . 2012-04-11 05:09 1799168 ----a-w- c:\windows\system32\jscript9.dll
2012-02-28 01:11 . 2012-04-11 05:09 1427456 ----a-w- c:\windows\system32\inetcpl.cpl
2012-02-28 01:11 . 2012-04-11 05:09 1127424 ----a-w- c:\windows\system32\wininet.dll
2012-02-28 01:03 . 2012-04-11 05:09 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-02-17 05:21 . 2011-07-10 14:52 472808 ----a-w- c:\windows\system32\deployJava1.dll
2012-02-14 15:45 . 2012-03-14 21:50 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2012-02-14 15:45 . 2012-03-14 21:50 160768 ----a-w- c:\windows\system32\d3d10_1.dll
2012-02-13 14:12 . 2012-03-14 21:50 1172480 ----a-w- c:\windows\system32\d3d10warp.dll
2012-02-13 13:47 . 2012-03-14 21:50 683008 ----a-w- c:\windows\system32\d2d1.dll
2012-02-13 13:44 . 2012-03-14 21:50 1068544 ----a-w- c:\windows\system32\DWrite.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
2012-02-19 12:46 1337648 ----a-r- c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2012-02-19 1337648]
.
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240]
"{9B71D88C-C598-4935-C5D1-43AA4DB90836}"="c:\users\ota\AppData\Roaming\svghost.exe" [2009-04-11 70611]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"="c:\program files\VIA\VIAudioi\VDeck\VDeck.exe" [2009-03-23 17149952]
"AmIcoSinglun"="c:\program files\AmIcoSingLun\AmIcoSinglun.exe" [2008-09-30 237568]
"HControlUser"="c:\program files\ASUS\ATK Hotkey\HControlUser.exe" [2008-08-18 98304]
"ATKOSD2"="c:\program files\ASUS\ATKOSD2\ATKOSD2.exe" [2009-03-04 8392704]
"ATKMEDIA"="c:\program files\ASUS\ATK Media\DMedia.exe" [2008-12-29 159744]
"Wireless Console 3"="c:\program files\ASUS\Wireless Console 3\wcourier.exe" [2011-12-11 1593344]
"ASUS Screen Saver Protector"="c:\windows\AsScrPro.exe" [2009-09-16 3054136]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2009-03-06 424352]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-02-11 137752]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-02-11 171032]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-02-11 172568]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]
"UnlockerAssistant"="c:\program files\Unlocker\UnlockerAssistant.exe" [2010-07-04 17408]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"SweetIM"="c:\program files\SweetIM\Messenger\SweetIM.exe" [2012-02-16 114992]
"Sweetpacks Communicator"="c:\program files\SweetIM\Communicator\SweetPacksUpdateManager.exe" [2012-02-26 295728]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
"EnableLUA"= 2 (0x2)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\guard32.dll c:\windows\System32\guard32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ \0??
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
.
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-05 257696]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
BullGuard_Backup REG_MULTI_SZ BsBackup
.
Obsah adresáře 'Naplánované úlohy'
.
2012-05-11 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-19 16:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
mStart Page = hxxp://www.bigseekpro.com/accmeware/{126C090B- ... 7A3766F074}
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote
TCP: DhcpNameServer = 10.0.0.138
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-05-11 17:24
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
HDAudDeck = c:\program files\VIA\VIAudioi\VDeck\VDeck.exe -r???????????????????????????????????????????????
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-3392861299-2797148891-2402352422-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.Email.1"
.
[HKEY_USERS\S-1-5-21-3392861299-2797148891-2402352422-1000\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{16362ED2-91C9-3176-97EF-4198386EA792}*]
"magokmokmjicfakdogkjpbhjed"=hex:61,61,00,00
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\AUDIODG.EXE
c:\program files\ASUS\ATK Hotkey\ASLDRSrv.exe
c:\program files\ATKGFNEX\GFNEXSrv.exe
c:\windows\system32\WLANExt.exe
c:\program files\Ashampoo\Ashampoo WinOptimizer 8\DfsdkS.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\program files\ASUS\ATK Hotkey\MsgTranAgt.exe
c:\program files\ASUS\ATK Hotkey\HControl.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\system32\conime.exe
c:\program files\ASUS\ATK Hotkey\ATKOSD.exe
c:\program files\ASUS\ATK Hotkey\KBFiltr.exe
c:\program files\ASUS\ATK Hotkey\WDC.exe
c:\windows\system32\igfxsrvc.exe
c:\\?\c:\windows\system32\wbem\WMIADAP.EXE
.
**************************************************************************
.
Celkový čas: 2012-05-11 17:29:52 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-05-11 15:29
ComboFix2.txt 2012-04-20 18:46
ComboFix3.txt 2012-04-06 14:24
.
Před spuštěním: Volných bajtů: 77 522 386 944
Po spuštění: Volných bajtů: 77 392 711 680
.
- - End Of File - - 9D0ABF58264FA14212FD1B3FCF2116F6

Re: chová se divně

Napsal: 11 kvě 2012 18:04
od Rudy
Zkuste CF použít v nouz. režimu. Otevřte poznámkový blok a zkopírujte do něj:
KillAll::

Folder::
c:\users\ota\.swt
c:\programdata\SweetIM
c:\program files\SweetIM

Collect::
c:\users\ota\AppData\Roaming\svghost.exe

Registry::
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"=-
[-HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[-HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[-HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[-HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"{9B71D88C-C598-4935-C5D1-43AA4DB90836}"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SweetIM"=-
"Sweetpacks Communicator"=-

RegLock::
[HKEY_USERS\S-1-5-21-3392861299-2797148891-2402352422-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

Regnull::
[HKEY_USERS\S-1-5-21-3392861299-2797148891-2402352422-1000\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{16362ED2-91C9-3176-97EF-4198386EA792}*]
Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.

Obrázek

Re: chová se divně

Napsal: 11 kvě 2012 19:00
od olcit
Tak jsem to proved. První dva řádky to napsalo -přístup odepřen-
Pak mezi 38. a 39. řádkem byl přístup odepřen k nějakému souboru z registru.

nový log je tady:
ComboFix 12-05-11.03 - ota 11.05.2012 19:28:29.13.2 - x86
Spuštěný z: c:\users\ota\Desktop\bobo.exe
Použité ovládací přepínače :: c:\users\ota\Desktop\CFScript.txt.txt
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\ota\.swt
c:\programdata\1324866939.bdinstall.bin . . . . nemohl být smazán
c:\programdata\1324869924.bdinstall.bin . . . . nemohl být smazán
c:\programdata\1324870202.bdinstall.bin . . . . nemohl být smazán
c:\programdata\1324983593.bdinstall.bin . . . . nemohl být smazán
c:\users\ota\AppData\Roaming\svghost.exe.mwt . . . . nemohl být smazán
.
Nakažená kopie c:\windows\system32\userinit.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\ERDNT\cache\userinit.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-04-11 do 2012-05-11 )))))))))))))))))))))))))))))))
.
.
2012-05-11 17:39 . 2012-05-11 17:41 -------- d-----w- c:\users\ota\AppData\Local\temp
2012-05-11 17:39 . 2012-05-11 17:39 -------- d-----w- c:\users\Public\AppData\Local\temp
2012-05-11 17:39 . 2012-05-11 17:39 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-05-11 16:40 . 2012-05-11 16:40 -------- d---a-w- c:\windows\rundll16.exe
2012-05-11 16:40 . 2012-05-11 16:40 -------- d---a-w- c:\windows\logo1_.exe
2012-05-11 16:03 . 2010-04-05 20:00 221568 ----a-w- c:\windows\system32\drivers\netio.sys
2012-05-11 15:44 . 2012-05-11 15:52 -------- d-----w- c:\program files\trend micro
2012-05-11 15:44 . 2012-05-11 15:45 -------- d-----w- C:\rsit
2012-05-11 15:10 . 2012-05-11 15:30 -------- d-----w- C:\tralala
2012-05-11 12:06 . 2012-05-11 12:10 -------- d-----w- c:\users\ota\AppData\Roaming\Raptr
2012-05-11 12:06 . 2012-05-11 12:10 -------- d-----w- c:\program files\Raptr
2012-05-11 12:05 . 2012-05-11 12:50 -------- d-----w- c:\users\ota\AppData\Roaming\Azureus
2012-05-11 11:41 . 2012-05-11 11:41 -------- d-----w- c:\programdata\Premium
2012-05-11 11:40 . 2012-05-11 11:42 -------- d-----w- c:\programdata\InstallMate
2012-04-26 09:26 . 2012-04-26 09:27 -------- d-----w- c:\program files\OpenXML-ODF Translator
2012-04-20 18:26 . 2012-05-11 14:29 -------- d-----w- C:\ComboFix
2012-04-19 03:02 . 2012-04-19 03:02 -------- d-----w- c:\users\ota\AppData\Local\Innovative Solutions
2012-04-19 02:46 . 2012-04-19 02:56 -------- d-----w- c:\users\ota\AppData\Local\eSupport.com
2012-04-19 01:19 . 2012-05-05 16:31 419488 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-04-15 18:15 . 2012-04-19 03:18 -------- d-----w- c:\users\ota\AppData\Local\Unity
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-05-05 16:31 . 2011-07-10 17:29 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-03-30 19:56 . 2012-03-30 19:54 22836409 ----a-w- c:\windows\REGBK02.ZIP
2012-03-20 14:26 . 2012-03-20 14:23 22730834 ----a-w- c:\windows\REGBK01.ZIP
2012-03-06 06:39 . 2012-04-11 05:07 3550080 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-03-06 06:39 . 2012-04-11 05:07 3602816 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-02-29 15:11 . 2012-04-11 05:08 5120 ----a-w- c:\windows\system32\wmi.dll
2012-02-29 15:11 . 2012-04-11 05:08 172032 ----a-w- c:\windows\system32\wintrust.dll
2012-02-29 15:09 . 2012-04-11 05:08 157696 ----a-w- c:\windows\system32\imagehlp.dll
2012-02-29 13:32 . 2012-04-11 05:08 12800 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-02-28 01:18 . 2012-04-11 05:09 1799168 ----a-w- c:\windows\system32\jscript9.dll
2012-02-28 01:11 . 2012-04-11 05:09 1427456 ----a-w- c:\windows\system32\inetcpl.cpl
2012-02-28 01:11 . 2012-04-11 05:09 1127424 ----a-w- c:\windows\system32\wininet.dll
2012-02-28 01:03 . 2012-04-11 05:09 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-02-17 05:21 . 2011-07-10 14:52 472808 ----a-w- c:\windows\system32\deployJava1.dll
2012-02-14 15:45 . 2012-03-14 21:50 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2012-02-14 15:45 . 2012-03-14 21:50 160768 ----a-w- c:\windows\system32\d3d10_1.dll
2012-02-13 14:12 . 2012-03-14 21:50 1172480 ----a-w- c:\windows\system32\d3d10warp.dll
2012-02-13 13:47 . 2012-03-14 21:50 683008 ----a-w- c:\windows\system32\d2d1.dll
2012-02-13 13:44 . 2012-03-14 21:50 1068544 ----a-w- c:\windows\system32\DWrite.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"="c:\program files\VIA\VIAudioi\VDeck\VDeck.exe" [2009-03-23 17149952]
"AmIcoSinglun"="c:\program files\AmIcoSingLun\AmIcoSinglun.exe" [2008-09-30 237568]
"HControlUser"="c:\program files\ASUS\ATK Hotkey\HControlUser.exe" [2008-08-18 98304]
"ATKOSD2"="c:\program files\ASUS\ATKOSD2\ATKOSD2.exe" [2009-03-04 8392704]
"ATKMEDIA"="c:\program files\ASUS\ATK Media\DMedia.exe" [2008-12-29 159744]
"Wireless Console 3"="c:\program files\ASUS\Wireless Console 3\wcourier.exe" [2011-12-11 1593344]
"ASUS Screen Saver Protector"="c:\windows\AsScrPro.exe" [2009-09-16 3054136]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2009-03-06 424352]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-02-11 137752]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-02-11 171032]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-02-11 172568]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]
"UnlockerAssistant"="c:\program files\Unlocker\UnlockerAssistant.exe" [2010-07-04 17408]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
"EnableLUA"= 2 (0x2)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\guard32.dll c:\windows\System32\guard32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ \0??
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
.
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-05 257696]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
BullGuard_Backup REG_MULTI_SZ BsBackup
.
Obsah adresáře 'Naplánované úlohy'
.
2012-05-11 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-19 16:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
mStart Page = hxxp://www.bigseekpro.com/accmeware/{126C090B- ... 7A3766F074}
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote
TCP: DhcpNameServer = 10.0.0.138
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-05-11 19:40
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
HDAudDeck = c:\program files\VIA\VIAudioi\VDeck\VDeck.exe -r???????????????????????????????????????????????
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\AUDIODG.EXE
c:\program files\ASUS\ATK Hotkey\ASLDRSrv.exe
c:\program files\ATKGFNEX\GFNEXSrv.exe
c:\windows\system32\WLANExt.exe
c:\program files\Ashampoo\Ashampoo WinOptimizer 8\DfsdkS.exe
c:\program files\ASUS\ATK Hotkey\MsgTranAgt.exe
c:\program files\ASUS\ATK Hotkey\HControl.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\servicing\TrustedInstaller.exe
c:\program files\ASUS\ATK Hotkey\ATKOSD.exe
c:\program files\ASUS\ATK Hotkey\KBFiltr.exe
c:\program files\ASUS\ATK Hotkey\WDC.exe
c:\windows\system32\conime.exe
c:\windows\system32\igfxsrvc.exe
c:\\?\c:\windows\system32\wbem\WMIADAP.EXE
.
**************************************************************************
.
Celkový čas: 2012-05-11 19:45:53 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-05-11 17:45
ComboFix2.txt 2012-04-20 18:46
ComboFix3.txt 2012-04-06 14:24
.
Před spuštěním: Volných bajtů: 89 159 462 912
Po spuštění: Volných bajtů: 89 395 601 408
.
- - End Of File - - 393EF8388B463AAAFD2EDA67B4502E37

Re: chová se divně

Napsal: 11 kvě 2012 19:27
od Rudy
Obávám se, že je tam ještě něco skryto. Stáhněte, rozbalte a spusťte TDSSKiller: http://support.kaspersky.com/downloads/ ... killer.zip . Nechte pracovat a po skočení akce sem dejte log.

Re: chová se divně

Napsal: 12 kvě 2012 01:07
od olcit
no jo asi tam nějaká potvora řádí. Nemužu nainstalovat antivir Microsoft Security Essentials. Vždy zahlásí chybu.
.....................................................
01:50:53.0953 1588 TDSS rootkit removing tool 2.7.34.0 May 2 2012 09:59:18
01:50:54.0421 1588 ============================================================
01:50:54.0421 1588 Current date / time: 2012/05/12 01:50:54.0421
01:50:54.0421 1588 SystemInfo:
01:50:54.0421 1588
01:50:54.0421 1588 OS Version: 6.0.6002 ServicePack: 2.0
01:50:54.0421 1588 Product type: Workstation
01:50:54.0421 1588 ComputerName: OTA-PC
01:50:54.0421 1588 UserName: ota
01:50:54.0421 1588 Windows directory: C:\Windows
01:50:54.0421 1588 System windows directory: C:\Windows
01:50:54.0421 1588 Processor architecture: Intel x86
01:50:54.0421 1588 Number of processors: 2
01:50:54.0421 1588 Page size: 0x1000
01:50:54.0421 1588 Boot type: Normal boot
01:50:54.0421 1588 ============================================================
01:50:55.0061 1588 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
01:50:55.0061 1588 ============================================================
01:50:55.0061 1588 \Device\Harddisk0\DR0:
01:50:55.0061 1588 MBR partitions:
01:50:55.0061 1588 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x1771000, BlocksNum 0x12A17000
01:50:55.0092 1588 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x14188800, BlocksNum 0x112A5800
01:50:55.0092 1588 ============================================================
01:50:55.0139 1588 C: <-> \Device\Harddisk0\DR0\Partition0
01:50:55.0201 1588 D: <-> \Device\Harddisk0\DR0\Partition1
01:50:55.0201 1588 ============================================================
01:50:55.0201 1588 Initialize success
01:50:55.0201 1588 ============================================================
01:51:00.0957 1120 ============================================================
01:51:00.0957 1120 Scan started
01:51:00.0957 1120 Mode: Manual;
01:51:00.0957 1120 ============================================================
01:51:02.0065 1120 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
01:51:02.0081 1120 ACPI - ok
01:51:02.0190 1120 AdobeFlashPlayerUpdateSvc (76d5a3d2a50402a0b9b6ed13c4371e79) C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
01:51:02.0190 1120 AdobeFlashPlayerUpdateSvc - ok
01:51:02.0268 1120 adp94xx (04f0fcac69c7c71a3ac4eb97fafc8303) C:\Windows\system32\drivers\adp94xx.sys
01:51:02.0299 1120 adp94xx - ok
01:51:02.0346 1120 adpahci (60505e0041f7751bdbb80f88bf45c2ce) C:\Windows\system32\drivers\adpahci.sys
01:51:02.0377 1120 adpahci - ok
01:51:02.0393 1120 adpu160m (8a42779b02aec986eab64ecfc98f8bd7) C:\Windows\system32\drivers\adpu160m.sys
01:51:02.0393 1120 adpu160m - ok
01:51:02.0424 1120 adpu320 (241c9e37f8ce45ef51c3de27515ca4e5) C:\Windows\system32\drivers\adpu320.sys
01:51:02.0424 1120 adpu320 - ok
01:51:02.0471 1120 AeLookupSvc (9d1fda9e086ba64e3c93c9de32461bcf) C:\Windows\System32\aelupsvc.dll
01:51:02.0471 1120 AeLookupSvc - ok
01:51:02.0549 1120 AFD (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys
01:51:02.0580 1120 AFD - ok
01:51:02.0642 1120 agp440 (13f9e33747e6b41a3ff305c37db0d360) C:\Windows\system32\drivers\agp440.sys
01:51:02.0642 1120 agp440 - ok
01:51:02.0658 1120 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
01:51:02.0673 1120 aic78xx - ok
01:51:02.0705 1120 ALG (a1545b731579895d8cc44fc0481c1192) C:\Windows\System32\alg.exe
01:51:02.0720 1120 ALG - ok
01:51:02.0736 1120 aliide (9eaef5fc9b8e351afa7e78a6fae91f91) C:\Windows\system32\drivers\aliide.sys
01:51:02.0736 1120 aliide - ok
01:51:02.0798 1120 amdagp (c47344bc706e5f0b9dce369516661578) C:\Windows\system32\drivers\amdagp.sys
01:51:02.0814 1120 amdagp - ok
01:51:02.0829 1120 amdide (9b78a39a4c173fdbc1321e0dd659b34c) C:\Windows\system32\drivers\amdide.sys
01:51:02.0829 1120 amdide - ok
01:51:02.0845 1120 AmdK7 (18f29b49ad23ecee3d2a826c725c8d48) C:\Windows\system32\drivers\amdk7.sys
01:51:02.0861 1120 AmdK7 - ok
01:51:02.0876 1120 AmdK8 (93ae7f7dd54ab986a6f1a1b37be7442d) C:\Windows\system32\drivers\amdk8.sys
01:51:02.0876 1120 AmdK8 - ok
01:51:02.0939 1120 Appinfo (c6d704c7f0434dc791aac37cac4b6e14) C:\Windows\System32\appinfo.dll
01:51:02.0954 1120 Appinfo - ok
01:51:03.0017 1120 arc (5d2888182fb46632511acee92fdad522) C:\Windows\system32\drivers\arc.sys
01:51:03.0017 1120 arc - ok
01:51:03.0063 1120 arcsas (5e2a321bd7c8b3624e41fdec3e244945) C:\Windows\system32\drivers\arcsas.sys
01:51:03.0063 1120 arcsas - ok
01:51:03.0219 1120 ASLDRService (d513efb8bf66fd2401119083abb72da4) C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe
01:51:03.0219 1120 ASLDRService - ok
01:51:03.0251 1120 ASMMAP (7b4d08d2017ac06689d422e06c43f0aa) C:\Program Files\ATKGFNEX\ASMMAP.sys
01:51:03.0251 1120 ASMMAP - ok
01:51:03.0297 1120 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
01:51:03.0297 1120 AsyncMac - ok
01:51:03.0329 1120 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys
01:51:03.0344 1120 atapi - ok
01:51:03.0453 1120 athr (2846f5ee802889d500fcf5cc48b28381) C:\Windows\system32\DRIVERS\athr.sys
01:51:03.0500 1120 athr - ok
01:51:03.0531 1120 ATKGFNEXSrv (4854043ddcd7ae2842b97a081be5c7ae) C:\Program Files\ATKGFNEX\GFNEXSrv.exe
01:51:03.0531 1120 ATKGFNEXSrv - ok
01:51:03.0609 1120 AudioEndpointBuilder (68e2a1a0407a66cf50da0300852424ab) C:\Windows\System32\Audiosrv.dll
01:51:03.0625 1120 AudioEndpointBuilder - ok
01:51:03.0625 1120 Audiosrv (68e2a1a0407a66cf50da0300852424ab) C:\Windows\System32\Audiosrv.dll
01:51:03.0641 1120 Audiosrv - ok
01:51:03.0719 1120 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
01:51:03.0719 1120 Beep - ok
01:51:03.0781 1120 BFE (c789af0f724fda5852fb9a7d3a432381) C:\Windows\System32\bfe.dll
01:51:03.0797 1120 BFE - ok
01:51:03.0906 1120 BITS (93952506c6d67330367f7e7934b6a02f) C:\Windows\system32\qmgr.dll
01:51:03.0937 1120 BITS - ok
01:51:03.0968 1120 blbdrive (d4df28447741fd3d953526e33a617397) C:\Windows\system32\drivers\blbdrive.sys
01:51:03.0984 1120 blbdrive - ok
01:51:03.0999 1120 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys
01:51:03.0999 1120 bowser - ok
01:51:04.0046 1120 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
01:51:04.0046 1120 BrFiltLo - ok
01:51:04.0062 1120 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
01:51:04.0062 1120 BrFiltUp - ok
01:51:04.0093 1120 Browser (a3629a0c4226f9e9c72faaeebc3ad33c) C:\Windows\System32\browser.dll
01:51:04.0093 1120 Browser - ok
01:51:04.0109 1120 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
01:51:04.0124 1120 Brserid - ok
01:51:04.0155 1120 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
01:51:04.0171 1120 BrSerWdm - ok
01:51:04.0374 1120 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
01:51:04.0389 1120 BrUsbMdm - ok
01:51:04.0421 1120 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
01:51:04.0436 1120 BrUsbSer - ok
01:51:04.0483 1120 BthEnum (6d39c954799b63ba866910234cf7d726) C:\Windows\system32\DRIVERS\BthEnum.sys
01:51:04.0483 1120 BthEnum - ok
01:51:04.0545 1120 BTHMODEM (9a966a8e86d1771911ae34a20d11bff3) C:\Windows\system32\DRIVERS\bthmodem.sys
01:51:04.0561 1120 BTHMODEM - ok
01:51:04.0592 1120 BthPan (5904efa25f829bf84ea6fb045134a1d8) C:\Windows\system32\DRIVERS\bthpan.sys
01:51:04.0592 1120 BthPan - ok
01:51:04.0655 1120 BTHPORT (611ff3f2f095c8d4a6d4cfd9dcc09793) C:\Windows\system32\Drivers\BTHport.sys
01:51:04.0686 1120 BTHPORT - ok
01:51:04.0717 1120 BthServ (a4c8377fa4a994e07075107dbe2e3dce) C:\Windows\System32\bthserv.dll
01:51:04.0717 1120 BthServ - ok
01:51:04.0748 1120 BTHUSB (d330803eab2a15caec7f011f1d4cb30e) C:\Windows\system32\Drivers\BTHUSB.sys
01:51:04.0764 1120 BTHUSB - ok
01:51:04.0857 1120 catchme - ok
01:51:04.0904 1120 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
01:51:04.0904 1120 cdfs - ok
01:51:04.0951 1120 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
01:51:04.0967 1120 cdrom - ok
01:51:05.0029 1120 CertPropSvc (312ec3e37a0a1f2006534913e37b4423) C:\Windows\System32\certprop.dll
01:51:05.0045 1120 CertPropSvc - ok
01:51:05.0060 1120 circlass (e5d4133f37219dbcfe102bc61072589d) C:\Windows\system32\drivers\circlass.sys
01:51:05.0076 1120 circlass - ok
01:51:05.0107 1120 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
01:51:05.0123 1120 CLFS - ok
01:51:05.0169 1120 clr_optimization_v2.0.50727_32 (8ee772032e2fe80a924f3b8dd5082194) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
01:51:05.0185 1120 clr_optimization_v2.0.50727_32 - ok
01:51:05.0263 1120 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
01:51:05.0279 1120 clr_optimization_v4.0.30319_32 - ok
01:51:05.0325 1120 CmBatt (99afc3795b58cc478fbbbcdc658fcb56) C:\Windows\system32\DRIVERS\CmBatt.sys
01:51:05.0341 1120 CmBatt - ok
01:51:05.0388 1120 cmderd (1d075a3c34544bc5532e9fcbdbe38d67) C:\Windows\system32\DRIVERS\cmderd.sys
01:51:05.0403 1120 cmderd - ok
01:51:05.0435 1120 cmdGuard (0a2e8cde40d6fd252f4a66558d6cd18d) C:\Windows\system32\DRIVERS\cmdguard.sys
01:51:05.0466 1120 cmdGuard - ok
01:51:05.0481 1120 cmdHlp (beb0da2bf48a8f7ad3c49e893936466c) C:\Windows\system32\DRIVERS\cmdhlp.sys
01:51:05.0481 1120 cmdHlp - ok
01:51:05.0497 1120 cmdide (0ca25e686a4928484e9fdabd168ab629) C:\Windows\system32\drivers\cmdide.sys
01:51:05.0513 1120 cmdide - ok
01:51:05.0528 1120 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\DRIVERS\compbatt.sys
01:51:05.0544 1120 Compbatt - ok
01:51:05.0544 1120 COMSysApp - ok
01:51:05.0575 1120 crcdisk (741e9dff4f42d2d8477d0fc1dc0df871) C:\Windows\system32\drivers\crcdisk.sys
01:51:05.0591 1120 crcdisk - ok
01:51:05.0606 1120 Crusoe (1f07becdca750766a96cda811ba86410) C:\Windows\system32\drivers\crusoe.sys
01:51:05.0622 1120 Crusoe - ok
01:51:05.0684 1120 CryptSvc (fb27772beaf8e1d28ccd825c09da939b) C:\Windows\system32\cryptsvc.dll
01:51:05.0684 1120 CryptSvc - ok
01:51:05.0793 1120 DcomLaunch (3b5b4d53fec14f7476ca29a20cc31ac9) C:\Windows\system32\rpcss.dll
01:51:05.0809 1120 DcomLaunch - ok
01:51:05.0965 1120 DfSdkS (92ae26f2caf4a67e24a0ba6ddf32cc3c) C:\Program Files\Ashampoo\Ashampoo WinOptimizer 8\DfsdkS.exe
01:51:05.0965 1120 DfSdkS - ok
01:51:06.0246 1120 DFSR (2cc3dcfb533a1035b13dcab6160ab38b) C:\Windows\system32\DFSR.exe
01:51:06.0308 1120 DFSR - ok
01:51:06.0449 1120 Dhcp (9028559c132146fb75eb7acf384b086a) C:\Windows\System32\dhcpcsvc.dll
01:51:06.0464 1120 Dhcp - ok
01:51:06.0527 1120 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
01:51:06.0542 1120 disk - ok
01:51:06.0573 1120 Dnscache (57d762f6f5974af0da2be88a3349baaa) C:\Windows\System32\dnsrslvr.dll
01:51:06.0573 1120 Dnscache - ok
01:51:06.0605 1120 dot3svc (324fd74686b1ef5e7c19a8af49e748f6) C:\Windows\System32\dot3svc.dll
01:51:06.0620 1120 dot3svc - ok
01:51:06.0667 1120 DPS (a622e888f8aa2f6b49e9bc466f0e5def) C:\Windows\system32\dps.dll
01:51:06.0667 1120 DPS - ok
01:51:06.0729 1120 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
01:51:06.0729 1120 drmkaud - ok
01:51:06.0792 1120 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
01:51:06.0839 1120 DXGKrnl - ok
01:51:06.0870 1120 E1G60 (5425f74ac0c1dbd96a1e04f17d63f94c) C:\Windows\system32\DRIVERS\E1G60I32.sys
01:51:06.0885 1120 E1G60 - ok
01:51:06.0932 1120 EapHost (c0b95e40d85cd807d614e264248a45b9) C:\Windows\System32\eapsvc.dll
01:51:06.0932 1120 EapHost - ok
01:51:06.0979 1120 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
01:51:06.0995 1120 Ecache - ok
01:51:07.0057 1120 ehRecvr (9be3744d295a7701eb425332014f0797) C:\Windows\ehome\ehRecvr.exe
01:51:07.0073 1120 ehRecvr - ok
01:51:07.0088 1120 ehSched (ad1870c8e5d6dd340c829e6074bf3c3f) C:\Windows\ehome\ehsched.exe
01:51:07.0088 1120 ehSched - ok
01:51:07.0104 1120 ehstart (c27c4ee8926e74aa72efcab24c5242c3) C:\Windows\ehome\ehstart.dll
01:51:07.0104 1120 ehstart - ok
01:51:07.0182 1120 elxstor (23b62471681a124889978f6295b3f4c6) C:\Windows\system32\drivers\elxstor.sys
01:51:07.0213 1120 elxstor - ok
01:51:07.0275 1120 EMDMgmt (4e6b23dfc917ea39306b529b773950f4) C:\Windows\system32\emdmgmt.dll
01:51:07.0291 1120 EMDMgmt - ok
01:51:07.0307 1120 ErrDev (3db974f3935483555d7148663f726c61) C:\Windows\system32\drivers\errdev.sys
01:51:07.0322 1120 ErrDev - ok
01:51:07.0385 1120 ETD (3c1d6b99320c64eb3423e229128d5182) C:\Windows\system32\DRIVERS\ETD.sys
01:51:07.0385 1120 ETD - ok
01:51:07.0416 1120 EventSystem (67058c46504bc12d821f38cf99b7b28f) C:\Windows\system32\es.dll
01:51:07.0431 1120 EventSystem - ok
01:51:07.0478 1120 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
01:51:07.0478 1120 exfat - ok
01:51:07.0525 1120 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
01:51:07.0525 1120 fastfat - ok
01:51:07.0587 1120 fdc (afe1e8b9782a0dd7fb46bbd88e43f89a) C:\Windows\system32\DRIVERS\fdc.sys
01:51:07.0603 1120 fdc - ok
01:51:07.0634 1120 fdPHost (6629b5f0e98151f4afdd87567ea32ba3) C:\Windows\system32\fdPHost.dll
01:51:07.0634 1120 fdPHost - ok
01:51:07.0665 1120 FDResPub (89ed56dce8e47af40892778a5bd31fd2) C:\Windows\system32\fdrespub.dll
01:51:07.0665 1120 FDResPub - ok
01:51:07.0681 1120 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
01:51:07.0681 1120 FileInfo - ok
01:51:07.0681 1120 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
01:51:07.0697 1120 Filetrace - ok
01:51:07.0697 1120 flpydisk (85b7cf99d532820495d68d747fda9ebd) C:\Windows\system32\DRIVERS\flpydisk.sys
01:51:07.0712 1120 flpydisk - ok
01:51:07.0743 1120 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
01:51:07.0743 1120 FltMgr - ok
01:51:07.0853 1120 FontCache (8ce364388c8eca59b14b539179276d44) C:\Windows\system32\FntCache.dll
01:51:07.0884 1120 FontCache - ok
01:51:07.0931 1120 FontCache3.0.0.0 (c7fbdd1ed42f82bfa35167a5c9803ea3) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
01:51:07.0946 1120 FontCache3.0.0.0 - ok
01:51:08.0009 1120 fssfltr (bfaaa92861526bb0adcd01e964ab6609) C:\Windows\system32\DRIVERS\fssfltr.sys
01:51:08.0009 1120 fssfltr - ok
01:51:08.0196 1120 fsssvc (40cdfad174b3d5e80f95dda003c0b97f) C:\Program Files\Windows Live\Family Safety\fsssvc.exe
01:51:08.0258 1120 fsssvc - ok
01:51:08.0367 1120 Fs_Rec (b972a66758577e0bfd1de0f91aaa27b5) C:\Windows\system32\drivers\Fs_Rec.sys
01:51:08.0367 1120 Fs_Rec - ok
01:51:08.0414 1120 gagp30kx (34582a6e6573d54a07ece5fe24a126b5) C:\Windows\system32\drivers\gagp30kx.sys
01:51:08.0414 1120 gagp30kx - ok
01:51:08.0445 1120 GDMnIcpt (5dfba6993b046d3f7df603b485444be3) C:\Windows\system32\drivers\MiniIcpt.sys
01:51:08.0445 1120 GDMnIcpt - ok
01:51:08.0492 1120 gpsvc (cd5d0aeee35dfd4e986a5aa1500a6e66) C:\Windows\System32\gpsvc.dll
01:51:08.0523 1120 gpsvc - ok
01:51:08.0586 1120 HdAudAddService (cb04c744be0a61b1d648faed182c3b59) C:\Windows\system32\drivers\HdAudio.sys
01:51:08.0586 1120 HdAudAddService - ok
01:51:08.0648 1120 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys
01:51:08.0664 1120 HDAudBus - ok
01:51:08.0679 1120 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
01:51:08.0695 1120 HidBth - ok
01:51:08.0695 1120 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys
01:51:08.0711 1120 HidIr - ok
01:51:08.0757 1120 hidserv (84067081f3318162797385e11a8f0582) C:\Windows\System32\hidserv.dll
01:51:08.0773 1120 hidserv - ok
01:51:08.0789 1120 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\Windows\system32\DRIVERS\hidusb.sys
01:51:08.0804 1120 HidUsb - ok
01:51:08.0820 1120 hkmsvc (d8ad255b37da92434c26e4876db7d418) C:\Windows\system32\kmsvc.dll
01:51:08.0835 1120 hkmsvc - ok
01:51:08.0851 1120 HookCentre (7a19e6cb7cddd9d5b5c0c49930628e80) C:\Windows\system32\drivers\HookCentre.sys
01:51:08.0867 1120 HookCentre - ok
01:51:08.0882 1120 HpCISSs (16ee7b23a009e00d835cdb79574a91a6) C:\Windows\system32\drivers\hpcisss.sys
01:51:08.0882 1120 HpCISSs - ok
01:51:08.0929 1120 HTTP (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys
01:51:08.0960 1120 HTTP - ok
01:51:08.0976 1120 i2omp (c6b032d69650985468160fc9937cf5b4) C:\Windows\system32\drivers\i2omp.sys
01:51:08.0991 1120 i2omp - ok
01:51:09.0038 1120 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
01:51:09.0038 1120 i8042prt - ok
01:51:09.0101 1120 iaStor (71ecc07bc7c5e24c3dd01d8a29a24054) C:\Windows\system32\DRIVERS\iaStor.sys
01:51:09.0101 1120 iaStor - ok
01:51:09.0132 1120 iaStorV (54155ea1b0df185878e0fc9ec3ac3a14) C:\Windows\system32\drivers\iastorv.sys
01:51:09.0147 1120 iaStorV - ok
01:51:09.0241 1120 idsvc (98477b08e61945f974ed9fdc4cb6bdab) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
01:51:09.0303 1120 idsvc - ok
01:51:09.0896 1120 igfx (dce0b53570703cce580d066f89ef58cd) C:\Windows\system32\DRIVERS\igdkmd32.sys
01:51:10.0130 1120 igfx - ok
01:51:10.0255 1120 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
01:51:10.0271 1120 iirsp - ok
01:51:10.0317 1120 IKEEXT (9908d8a397b76cd8d31d0d383c5773c9) C:\Windows\System32\ikeext.dll
01:51:10.0349 1120 IKEEXT - ok
01:51:10.0380 1120 inspect (2c03538258729852d55f9f2b8906a8b9) C:\Windows\system32\DRIVERS\inspect.sys
01:51:10.0395 1120 inspect - ok
01:51:10.0442 1120 intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys
01:51:10.0442 1120 intelide - ok
01:51:10.0489 1120 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
01:51:10.0489 1120 intelppm - ok
01:51:10.0520 1120 IPBusEnum (9ac218c6e6105477484c6fdbe7d409a4) C:\Windows\system32\ipbusenum.dll
01:51:10.0520 1120 IPBusEnum - ok
01:51:10.0551 1120 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
01:51:10.0551 1120 IpFilterDriver - ok
01:51:10.0629 1120 iphlpsvc (1998bd97f950680bb55f55a7244679c2) C:\Windows\System32\iphlpsvc.dll
01:51:10.0629 1120 iphlpsvc - ok
01:51:10.0645 1120 IpInIp - ok
01:51:10.0676 1120 IPMIDRV (b25aaf203552b7b3491139d582b39ad1) C:\Windows\system32\drivers\ipmidrv.sys
01:51:10.0676 1120 IPMIDRV - ok
01:51:10.0692 1120 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
01:51:10.0707 1120 IPNAT - ok
01:51:10.0707 1120 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
01:51:10.0723 1120 IRENUM - ok
01:51:10.0739 1120 isapnp (6c70698a3e5c4376c6ab5c7c17fb0614) C:\Windows\system32\drivers\isapnp.sys
01:51:10.0739 1120 isapnp - ok
01:51:10.0801 1120 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
01:51:10.0801 1120 iScsiPrt - ok
01:51:10.0848 1120 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
01:51:10.0863 1120 iteatapi - ok
01:51:10.0879 1120 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
01:51:10.0879 1120 iteraid - ok
01:51:10.0895 1120 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
01:51:10.0910 1120 kbdclass - ok
01:51:10.0926 1120 kbdhid (ede59ec70e25c24581add1fbec7325f7) C:\Windows\system32\DRIVERS\kbdhid.sys
01:51:10.0941 1120 kbdhid - ok
01:51:10.0988 1120 kbfiltr (7f2b8d0b31fb4a797e5786ef124c5a80) C:\Windows\system32\DRIVERS\kbfiltr.sys
01:51:10.0988 1120 kbfiltr - ok
01:51:11.0004 1120 KeyIso (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
01:51:11.0004 1120 KeyIso - ok
01:51:11.0051 1120 KMWDFILTER (566c5fd480fdbce3ba5cf9fbcffaea9a) C:\Windows\system32\DRIVERS\KMWDFILTER.sys
01:51:11.0066 1120 KMWDFILTER - ok
01:51:11.0097 1120 KSecDD (2b2f1638466e8cb091400c9019cc730e) C:\Windows\system32\Drivers\ksecdd.sys
01:51:11.0113 1120 KSecDD - ok
01:51:11.0191 1120 KtmRm (8078f8f8f7a79e2e6b494523a828c585) C:\Windows\system32\msdtckrm.dll
01:51:11.0238 1120 KtmRm - ok
01:51:11.0285 1120 L1E (24abddeb766c8459f9d562eb083b6cb8) C:\Windows\system32\DRIVERS\L1E60x86.sys
01:51:11.0300 1120 L1E - ok
01:51:11.0331 1120 LanmanServer (1bf5eebfd518dd7298434d8c862f825d) C:\Windows\System32\srvsvc.dll
01:51:11.0347 1120 LanmanServer - ok
01:51:11.0394 1120 LanmanWorkstation (1db69705b695b987082c8baec0c6b34f) C:\Windows\System32\wkssvc.dll
01:51:11.0394 1120 LanmanWorkstation - ok
01:51:11.0425 1120 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
01:51:11.0441 1120 lltdio - ok
01:51:11.0472 1120 lltdsvc (2d5a428872f1442631d0959a34abff63) C:\Windows\System32\lltdsvc.dll
01:51:11.0487 1120 lltdsvc - ok
01:51:11.0503 1120 lmhosts (35d40113e4a5b961b6ce5c5857702518) C:\Windows\System32\lmhsvc.dll
01:51:11.0519 1120 lmhosts - ok
01:51:11.0534 1120 LSI_FC (c7e15e82879bf3235b559563d4185365) C:\Windows\system32\drivers\lsi_fc.sys
01:51:11.0550 1120 LSI_FC - ok
01:51:11.0565 1120 LSI_SAS (ee01ebae8c9bf0fa072e0ff68718920a) C:\Windows\system32\drivers\lsi_sas.sys
01:51:11.0565 1120 LSI_SAS - ok
01:51:11.0581 1120 LSI_SCSI (912a04696e9ca30146a62afa1463dd5c) C:\Windows\system32\drivers\lsi_scsi.sys
01:51:11.0597 1120 LSI_SCSI - ok
01:51:11.0612 1120 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
01:51:11.0628 1120 luafv - ok
01:51:11.0659 1120 Mcx2Svc (aef9babb8a506bc4ce0451a64aaded46) C:\Windows\system32\Mcx2Svc.dll
01:51:11.0675 1120 Mcx2Svc - ok
01:51:11.0721 1120 megasas (0001ce609d66632fa17b84705f658879) C:\Windows\system32\drivers\megasas.sys
01:51:11.0721 1120 megasas - ok
01:51:11.0753 1120 MegaSR (c252f32cd9a49dbfc25ecf26ebd51a99) C:\Windows\system32\drivers\megasr.sys
01:51:11.0784 1120 MegaSR - ok
01:51:11.0893 1120 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
01:51:11.0909 1120 Microsoft Office Groove Audit Service - ok
01:51:11.0940 1120 MMCSS (1076ffcffaae8385fd62dfcb25ac4708) C:\Windows\system32\mmcss.dll
01:51:11.0940 1120 MMCSS - ok
01:51:11.0971 1120 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
01:51:11.0971 1120 Modem - ok
01:51:12.0002 1120 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
01:51:12.0002 1120 monitor - ok
01:51:12.0018 1120 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
01:51:12.0018 1120 mouclass - ok
01:51:12.0049 1120 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
01:51:12.0049 1120 mouhid - ok
01:51:12.0065 1120 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
01:51:12.0065 1120 MountMgr - ok
01:51:12.0111 1120 mpio (511d011289755dd9f9a7579fb0b064e6) C:\Windows\system32\drivers\mpio.sys
01:51:12.0111 1120 mpio - ok
01:51:12.0127 1120 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
01:51:12.0127 1120 mpsdrv - ok
01:51:12.0205 1120 MpsSvc (5de62c6e9108f14f6794060a9bdecaec) C:\Windows\system32\mpssvc.dll
01:51:12.0236 1120 MpsSvc - ok
01:51:12.0267 1120 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
01:51:12.0267 1120 Mraid35x - ok
01:51:12.0299 1120 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
01:51:12.0299 1120 MRxDAV - ok
01:51:12.0330 1120 mrxsmb (1e94971c4b446ab2290deb71d01cf0c2) C:\Windows\system32\DRIVERS\mrxsmb.sys
01:51:12.0330 1120 mrxsmb - ok
01:51:12.0361 1120 mrxsmb10 (4fccb34d793b116423209c0f8b7a3b03) C:\Windows\system32\DRIVERS\mrxsmb10.sys
01:51:12.0377 1120 mrxsmb10 - ok
01:51:12.0392 1120 mrxsmb20 (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
01:51:12.0392 1120 mrxsmb20 - ok
01:51:12.0455 1120 msahci (28023e86f17001f7cd9b15a5bc9ae07d) C:\Windows\system32\drivers\msahci.sys
01:51:12.0455 1120 msahci - ok
01:51:12.0470 1120 msdsm (4468b0f385a86ecddaf8d3ca662ec0e7) C:\Windows\system32\drivers\msdsm.sys
01:51:12.0486 1120 msdsm - ok
01:51:12.0501 1120 MSDTC (fd7520cc3a80c5fc8c48852bb24c6ded) C:\Windows\System32\msdtc.exe
01:51:12.0517 1120 MSDTC - ok
01:51:12.0548 1120 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
01:51:12.0548 1120 Msfs - ok
01:51:12.0595 1120 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
01:51:12.0611 1120 msisadrv - ok
01:51:12.0642 1120 MSiSCSI (85466c0757a23d9a9aecdc0755203cb2) C:\Windows\system32\iscsiexe.dll
01:51:12.0642 1120 MSiSCSI - ok
01:51:12.0673 1120 msiserver - ok
01:51:12.0704 1120 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
01:51:12.0704 1120 MSKSSRV - ok
01:51:12.0720 1120 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
01:51:12.0720 1120 MSPCLOCK - ok
01:51:12.0735 1120 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
01:51:12.0735 1120 MSPQM - ok
01:51:12.0767 1120 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
01:51:12.0782 1120 MsRPC - ok
01:51:12.0798 1120 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
01:51:12.0798 1120 mssmbios - ok
01:51:12.0829 1120 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
01:51:12.0845 1120 MSTEE - ok
01:51:12.0907 1120 MTsensor (bb16693616427eac1a436e106ea8d318) C:\Windows\system32\DRIVERS\ATKACPI.sys
01:51:12.0907 1120 MTsensor - ok
01:51:12.0938 1120 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
01:51:12.0954 1120 Mup - ok
01:51:12.0985 1120 napagent (e4eaf0c5c1b41b5c83386cf212ca9584) C:\Windows\system32\qagentRT.dll
01:51:13.0016 1120 napagent - ok
01:51:13.0063 1120 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
01:51:13.0063 1120 NativeWifiP - ok
01:51:13.0188 1120 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
01:51:13.0188 1120 NDIS - ok
01:51:13.0235 1120 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
01:51:13.0235 1120 NdisTapi - ok
01:51:13.0250 1120 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
01:51:13.0266 1120 Ndisuio - ok
01:51:13.0313 1120 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
01:51:13.0313 1120 NdisWan - ok
01:51:13.0344 1120 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
01:51:13.0344 1120 NDProxy - ok
01:51:13.0359 1120 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
01:51:13.0359 1120 NetBIOS - ok
01:51:13.0422 1120 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
01:51:13.0422 1120 netbt - ok
01:51:13.0453 1120 Netlogon (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
01:51:13.0453 1120 Netlogon - ok
01:51:13.0515 1120 Netman (c8052711daecc48b982434c5116ca401) C:\Windows\System32\netman.dll
01:51:13.0531 1120 Netman - ok
01:51:13.0547 1120 netprofm (2ef3bbe22e5a5acd1428ee387a0d0172) C:\Windows\System32\netprofm.dll
01:51:13.0578 1120 netprofm - ok
01:51:13.0640 1120 netr73 (91d44aa2a61006136da32118a179bf12) C:\Windows\system32\DRIVERS\netr73.sys
01:51:13.0656 1120 netr73 - ok
01:51:13.0718 1120 NetTcpPortSharing (d6c4e4a39a36029ac0813d476fbd0248) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
01:51:13.0734 1120 NetTcpPortSharing - ok
01:51:13.0749 1120 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
01:51:13.0765 1120 nfrd960 - ok
01:51:13.0796 1120 NlaSvc (2997b15415f9bbe05b5a4c1c85e0c6a2) C:\Windows\System32\nlasvc.dll
01:51:13.0796 1120 NlaSvc - ok
01:51:13.0843 1120 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
01:51:13.0859 1120 Npfs - ok
01:51:13.0874 1120 nsi (8bb86f0c7eea2bded6fe095d0b4ca9bd) C:\Windows\system32\nsisvc.dll
01:51:13.0874 1120 nsi - ok
01:51:13.0890 1120 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
01:51:13.0905 1120 nsiproxy - ok
01:51:13.0983 1120 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
01:51:14.0015 1120 Ntfs - ok
01:51:14.0046 1120 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
01:51:14.0046 1120 ntrigdigi - ok
01:51:14.0046 1120 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
01:51:14.0061 1120 Null - ok
01:51:14.0077 1120 nvraid (2edf9e7751554b42cbb60116de727101) C:\Windows\system32\drivers\nvraid.sys
01:51:14.0077 1120 nvraid - ok
01:51:14.0108 1120 nvstor (abed0c09758d1d97db0042dbb2688177) C:\Windows\system32\drivers\nvstor.sys
01:51:14.0108 1120 nvstor - ok
01:51:14.0124 1120 nv_agp (18bbdf913916b71bd54575bdb6eeac0b) C:\Windows\system32\drivers\nv_agp.sys
01:51:14.0139 1120 nv_agp - ok
01:51:14.0139 1120 NwlnkFlt - ok
01:51:14.0155 1120 NwlnkFwd - ok
01:51:14.0249 1120 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
01:51:14.0280 1120 odserv - ok
01:51:14.0295 1120 ohci1394 (790e27c3db53410b40ff9ef2fd10a1d9) C:\Windows\system32\DRIVERS\ohci1394.sys
01:51:14.0295 1120 ohci1394 - ok
01:51:14.0327 1120 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
01:51:14.0327 1120 ose - ok
01:51:14.0373 1120 p2pimsvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
01:51:14.0405 1120 p2pimsvc - ok
01:51:14.0420 1120 p2psvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
01:51:14.0436 1120 p2psvc - ok
01:51:14.0483 1120 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys
01:51:14.0498 1120 Parport - ok
01:51:14.0529 1120 partmgr (57389fa59a36d96b3eb09d0cb91e9cdc) C:\Windows\system32\drivers\partmgr.sys
01:51:14.0529 1120 partmgr - ok
01:51:14.0545 1120 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys
01:51:14.0561 1120 Parvdm - ok
01:51:14.0576 1120 PcaSvc (c6276ad11f4bb49b58aa1ed88537f14a) C:\Windows\System32\pcasvc.dll
01:51:14.0592 1120 PcaSvc - ok
01:51:14.0623 1120 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
01:51:14.0639 1120 pci - ok
01:51:14.0654 1120 pciide (fc175f5ddab666d7f4d17449a547626f) C:\Windows\system32\drivers\pciide.sys
01:51:14.0654 1120 pciide - ok
01:51:14.0670 1120 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
01:51:14.0685 1120 pcmcia - ok
01:51:14.0732 1120 pcouffin (5b6c11de7e839c05248ced8825470fef) C:\Windows\system32\Drivers\pcouffin.sys
01:51:14.0732 1120 pcouffin - ok
01:51:14.0810 1120 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
01:51:14.0888 1120 PEAUTH - ok
01:51:15.0122 1120 pla (b1689df169143f57053f795390c99db3) C:\Windows\system32\pla.dll
01:51:15.0169 1120 pla - ok
01:51:15.0278 1120 PlugPlay (c5e7f8a996ec0a82d508fd9064a5569e) C:\Windows\system32\umpnpmgr.dll
01:51:15.0294 1120 PlugPlay - ok
01:51:15.0341 1120 PNRPAutoReg (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
01:51:15.0341 1120 PNRPAutoReg - ok
01:51:15.0356 1120 PNRPsvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
01:51:15.0372 1120 PNRPsvc - ok
01:51:15.0434 1120 PolicyAgent (d0494460421a03cd5225cca0059aa146) C:\Windows\System32\ipsecsvc.dll
01:51:15.0450 1120 PolicyAgent - ok
01:51:15.0497 1120 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
01:51:15.0512 1120 PptpMiniport - ok
01:51:15.0543 1120 Processor (2027293619dd0f047c584cf2e7df4ffd) C:\Windows\system32\drivers\processr.sys
01:51:15.0543 1120 Processor - ok
01:51:15.0575 1120 ProfSvc (0508faa222d28835310b7bfca7a77346) C:\Windows\system32\profsvc.dll
01:51:15.0575 1120 ProfSvc - ok
01:51:15.0590 1120 ProtectedStorage (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
01:51:15.0590 1120 ProtectedStorage - ok
01:51:15.0621 1120 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
01:51:15.0621 1120 PSched - ok
01:51:15.0731 1120 ql2300 (0a6db55afb7820c99aa1f3a1d270f4f6) C:\Windows\system32\drivers\ql2300.sys
01:51:15.0793 1120 ql2300 - ok
01:51:15.0809 1120 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
01:51:15.0824 1120 ql40xx - ok
01:51:15.0855 1120 QWAVE (e9ecae663f47e6cb43962d18ab18890f) C:\Windows\system32\qwave.dll
01:51:15.0887 1120 QWAVE - ok
01:51:15.0887 1120 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
01:51:15.0902 1120 QWAVEdrv - ok
01:51:15.0918 1120 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
01:51:15.0933 1120 RasAcd - ok
01:51:15.0949 1120 RasAuto (f6a452eb4ceadbb51c9e0ee6b3ecef0f) C:\Windows\System32\rasauto.dll
01:51:15.0949 1120 RasAuto - ok
01:51:15.0965 1120 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
01:51:15.0980 1120 Rasl2tp - ok
01:51:16.0011 1120 RasMan (75d47445d70ca6f9f894b032fbc64fcf) C:\Windows\System32\rasmans.dll
01:51:16.0027 1120 RasMan - ok
01:51:16.0043 1120 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
01:51:16.0058 1120 RasPppoe - ok
01:51:16.0074 1120 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
01:51:16.0074 1120 RasSstp - ok
01:51:16.0152 1120 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
01:51:16.0152 1120 rdbss - ok
01:51:16.0183 1120 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
01:51:16.0183 1120 RDPCDD - ok
01:51:16.0214 1120 rdpdr (fbc0bacd9c3d7f6956853f64a66e252d) C:\Windows\system32\drivers\rdpdr.sys
01:51:16.0230 1120 rdpdr - ok
01:51:16.0230 1120 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
01:51:16.0245 1120 RDPENCDD - ok
01:51:16.0370 1120 RDPWD (79c6df8477250f5c54f7c5ae1d6b814e) C:\Windows\system32\drivers\RDPWD.sys
01:51:16.0386 1120 RDPWD - ok
01:51:16.0417 1120 RemoteAccess (bcdd6b4804d06b1f7ebf29e53a57ece9) C:\Windows\System32\mprdim.dll
01:51:16.0417 1120 RemoteAccess - ok
01:51:16.0448 1120 RemoteRegistry (9e6894ea18daff37b63e1005f83ae4ab) C:\Windows\system32\regsvc.dll
01:51:16.0448 1120 RemoteRegistry - ok
01:51:16.0511 1120 RFCOMM (6482707f9f4da0ecbab43b2e0398a101) C:\Windows\system32\DRIVERS\rfcomm.sys
01:51:16.0526 1120 RFCOMM - ok
01:51:16.0542 1120 RpcLocator (5123f83cbc4349d065534eeb6bbdc42b) C:\Windows\system32\locator.exe
01:51:16.0542 1120 RpcLocator - ok
01:51:16.0589 1120 RpcSs (3b5b4d53fec14f7476ca29a20cc31ac9) C:\Windows\System32\rpcss.dll
01:51:16.0620 1120 RpcSs - ok
01:51:16.0651 1120 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
01:51:16.0651 1120 rspndr - ok
01:51:16.0682 1120 SamSs (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
01:51:16.0698 1120 SamSs - ok
01:51:16.0713 1120 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
01:51:16.0729 1120 sbp2port - ok
01:51:16.0760 1120 SCardSvr (77b7a11a0c3d78d3386398fbbea1b632) C:\Windows\System32\SCardSvr.dll
01:51:16.0760 1120 SCardSvr - ok
01:51:16.0807 1120 Schedule (1a58069db21d05eb2ab58ee5753ebe8d) C:\Windows\system32\schedsvc.dll
01:51:16.0823 1120 Schedule - ok
01:51:16.0869 1120 SCPolicySvc (312ec3e37a0a1f2006534913e37b4423) C:\Windows\System32\certprop.dll
01:51:16.0869 1120 SCPolicySvc - ok
01:51:16.0916 1120 sdbus (126ea89bcc413ee45e3004fb0764888f) C:\Windows\system32\DRIVERS\sdbus.sys
01:51:16.0932 1120 sdbus - ok
01:51:16.0963 1120 SDRSVC (716313d9f6b0529d03f726d5aaf6f191) C:\Windows\System32\SDRSVC.dll
01:51:16.0979 1120 SDRSVC - ok
01:51:16.0994 1120 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
01:51:16.0994 1120 secdrv - ok
01:51:17.0010 1120 seclogon (fd5199d4d8a521005e4b5ee7fe00fa9b) C:\Windows\system32\seclogon.dll
01:51:17.0010 1120 seclogon - ok
01:51:17.0041 1120 SENS (a9bbab5759771e523f55563d6cbe140f) C:\Windows\system32\sens.dll
01:51:17.0041 1120 SENS - ok
01:51:17.0057 1120 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys
01:51:17.0072 1120 Serenum - ok
01:51:17.0088 1120 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys
01:51:17.0088 1120 Serial - ok
01:51:17.0103 1120 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
01:51:17.0119 1120 sermouse - ok
01:51:17.0150 1120 SessionEnv (d2193326f729b163125610dbf3e17d57) C:\Windows\system32\sessenv.dll
01:51:17.0166 1120 SessionEnv - ok
01:51:17.0166 1120 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\drivers\sffdisk.sys
01:51:17.0181 1120 sffdisk - ok
01:51:17.0197 1120 sffp_mmc (e95d451f7ea3e583aec75f3b3ee42dc5) C:\Windows\system32\drivers\sffp_mmc.sys
01:51:17.0197 1120 sffp_mmc - ok
01:51:17.0228 1120 sffp_sd (3d0ea348784b7ac9ea9bd9f317980979) C:\Windows\system32\drivers\sffp_sd.sys
01:51:17.0228 1120 sffp_sd - ok
01:51:17.0244 1120 sfloppy (c33bfbd6e9e41fcd9ffef9729e9faed6) C:\Windows\system32\DRIVERS\sfloppy.sys
01:51:17.0259 1120 sfloppy - ok
01:51:17.0306 1120 SharedAccess (e1499bd0ff76b1b2fbbf1af339d91165) C:\Windows\System32\ipnathlp.dll
01:51:17.0337 1120 SharedAccess - ok
01:51:17.0400 1120 ShellHWDetection (c7230fbee14437716701c15be02c27b8) C:\Windows\System32\shsvcs.dll
01:51:17.0400 1120 ShellHWDetection - ok
01:51:17.0431 1120 sisagp (1d76624a09a054f682d746b924e2dbc3) C:\Windows\system32\drivers\sisagp.sys
01:51:17.0431 1120 sisagp - ok
01:51:17.0462 1120 SiSRaid2 (43cb7aa756c7db280d01da9b676cfde2) C:\Windows\system32\drivers\sisraid2.sys
01:51:17.0462 1120 SiSRaid2 - ok
01:51:17.0478 1120 SiSRaid4 (a99c6c8b0baa970d8aa59ddc50b57f94) C:\Windows\system32\drivers\sisraid4.sys
01:51:17.0493 1120 SiSRaid4 - ok
01:51:17.0665 1120 slsvc (862bb4cbc05d80c5b45be430e5ef872f) C:\Windows\system32\SLsvc.exe
01:51:17.0712 1120 slsvc - ok
01:51:18.0055 1120 SLUINotify (6edc422215cd78aa8a9cde6b30abbd35) C:\Windows\system32\SLUINotify.dll
01:51:18.0055 1120 SLUINotify - ok
01:51:18.0117 1120 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
01:51:18.0133 1120 Smb - ok
01:51:18.0227 1120 smserial (c8a58fc905c9184fa70e37f71060c64d) C:\Windows\system32\DRIVERS\smserial.sys
01:51:18.0289 1120 smserial - ok
01:51:18.0305 1120 SNMPTRAP (2a146a055b4401c16ee62d18b8e2a032) C:\Windows\System32\snmptrap.exe
01:51:18.0320 1120 SNMPTRAP - ok
01:51:18.0429 1120 SNP2UVC (060f51141b20b8156804446a04ab8b2a) C:\Windows\system32\DRIVERS\snp2uvc.sys
01:51:18.0492 1120 SNP2UVC - ok
01:51:18.0601 1120 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
01:51:18.0601 1120 spldr - ok
01:51:18.0648 1120 Spooler (8554097e5136c3bf9f69fe578a1b35f4) C:\Windows\System32\spoolsv.exe
01:51:18.0648 1120 Spooler - ok
01:51:18.0710 1120 SRS_PremiumSound_Service (43e8e8238ff52a807d5c17f1ae5cc49c) C:\Windows\system32\drivers\srs_PremiumSound_i386.sys
01:51:18.0710 1120 SRS_PremiumSound_Service - ok
01:51:18.0741 1120 srv (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys
01:51:18.0773 1120 srv - ok
01:51:18.0804 1120 srv2 (ff33aff99564b1aa534f58868cbe41ef) C:\Windows\system32\DRIVERS\srv2.sys
01:51:18.0819 1120 srv2 - ok
01:51:18.0835 1120 srvnet (7605c0e1d01a08f3ecd743f38b834a44) C:\Windows\system32\DRIVERS\srvnet.sys
01:51:18.0835 1120 srvnet - ok
01:51:18.0866 1120 SSDPSRV (03d50b37234967433a5ea5ba72bc0b62) C:\Windows\System32\ssdpsrv.dll
01:51:18.0882 1120 SSDPSRV - ok
01:51:18.0929 1120 SstpSvc (6f1a32e7b7b30f004d9a20afadb14944) C:\Windows\system32\sstpsvc.dll
01:51:18.0944 1120 SstpSvc - ok
01:51:19.0007 1120 StarOpen (306521935042fc0a6988d528643619b3) C:\Windows\system32\drivers\StarOpen.sys
01:51:19.0007 1120 StarOpen - ok
01:51:19.0209 1120 stisvc (5de7d67e49b88f5f07f3e53c4b92a352) C:\Windows\System32\wiaservc.dll
01:51:19.0209 1120 stisvc - ok
01:51:19.0272 1120 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
01:51:19.0287 1120 swenum - ok
01:51:19.0319 1120 swprv (f21fd248040681cca1fb6c9a03aaa93d) C:\Windows\System32\swprv.dll
01:51:19.0350 1120 swprv - ok
01:51:19.0365 1120 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
01:51:19.0365 1120 Symc8xx - ok
01:51:19.0381 1120 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
01:51:19.0397 1120 Sym_hi - ok
01:51:19.0412 1120 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
01:51:19.0412 1120 Sym_u3 - ok
01:51:19.0475 1120 SysMain (9a51b04e9886aa4ee90093586b0ba88d) C:\Windows\system32\sysmain.dll
01:51:19.0506 1120 SysMain - ok
01:51:19.0537 1120 TabletInputService (2dca225eae15f42c0933e998ee0231c3) C:\Windows\System32\TabSvc.dll
01:51:19.0537 1120 TabletInputService - ok
01:51:19.0584 1120 TapiSrv (d7673e4b38ce21ee54c59eeeb65e2483) C:\Windows\System32\tapisrv.dll
01:51:19.0599 1120 TapiSrv - ok
01:51:19.0615 1120 TBS (cb05822cd9cc6c688168e113c603dbe7) C:\Windows\System32\tbssvc.dll
01:51:19.0631 1120 TBS - ok
01:51:19.0693 1120 Tcpip (16731b631f28f63cd9f4cb60940e7ddd) C:\Windows\system32\drivers\tcpip.sys
01:51:19.0740 1120 Tcpip - ok
01:51:19.0755 1120 Tcpip6 (16731b631f28f63cd9f4cb60940e7ddd) C:\Windows\system32\DRIVERS\tcpip.sys
01:51:19.0771 1120 Tcpip6 - ok
01:51:19.0787 1120 tcpipreg (3fc13f09af9be487c7b4fac4070a036c) C:\Windows\system32\drivers\tcpipreg.sys
01:51:19.0802 1120 tcpipreg - ok
01:51:19.0833 1120 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
01:51:19.0833 1120 TDPIPE - ok
01:51:19.0865 1120 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
01:51:19.0865 1120 TDTCP - ok
01:51:19.0896 1120 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
01:51:19.0911 1120 tdx - ok
01:51:19.0943 1120 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
01:51:19.0943 1120 TermDD - ok
01:51:20.0005 1120 TermService (bb95da09bef6e7a131bff3ba5032090d) C:\Windows\System32\termsrv.dll
01:51:20.0021 1120 TermService - ok
01:51:20.0083 1120 Themes (c7230fbee14437716701c15be02c27b8) C:\Windows\system32\shsvcs.dll
01:51:20.0099 1120 Themes - ok
01:51:20.0130 1120 THREADORDER (1076ffcffaae8385fd62dfcb25ac4708) C:\Windows\system32\mmcss.dll
01:51:20.0145 1120 THREADORDER - ok
01:51:20.0208 1120 TrkWks (ec74e77d0eb004bd3a809b5f8fb8c2ce) C:\Windows\System32\trkwks.dll
01:51:20.0208 1120 TrkWks - ok
01:51:20.0239 1120 TrustedInstaller (97d9d6a04e3ad9b6c626b9931db78dba) C:\Windows\servicing\TrustedInstaller.exe
01:51:20.0255 1120 TrustedInstaller - ok
01:51:20.0286 1120 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
01:51:20.0301 1120 tssecsrv - ok
01:51:20.0317 1120 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
01:51:20.0333 1120 tunmp - ok
01:51:20.0348 1120 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys
01:51:20.0364 1120 tunnel - ok
01:51:20.0379 1120 uagp35 (7d33c4db2ce363c8518d2dfcf533941f) C:\Windows\system32\drivers\uagp35.sys
01:51:20.0379 1120 uagp35 - ok
01:51:20.0442 1120 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
01:51:20.0442 1120 udfs - ok
01:51:20.0489 1120 UI0Detect (ecef404f62863755951e09c802c94ad5) C:\Windows\system32\UI0Detect.exe
01:51:20.0489 1120 UI0Detect - ok
01:51:20.0551 1120 uliagpkx (b0acfdc9e4af279e9116c03e014b2b27) C:\Windows\system32\drivers\uliagpkx.sys
01:51:20.0567 1120 uliagpkx - ok
01:51:20.0582 1120 uliahci (9224bb254f591de4ca8d572a5f0d635c) C:\Windows\system32\drivers\uliahci.sys
01:51:20.0598 1120 uliahci - ok
01:51:20.0613 1120 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
01:51:20.0629 1120 UlSata - ok
01:51:20.0645 1120 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
01:51:20.0645 1120 ulsata2 - ok
01:51:20.0676 1120 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
01:51:20.0676 1120 umbus - ok
01:51:20.0707 1120 upnphost (68308183f4ae0be7bf8ecd07cb297999) C:\Windows\System32\upnphost.dll
01:51:20.0723 1120 upnphost - ok
01:51:20.0785 1120 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
01:51:20.0785 1120 usbccgp - ok
01:51:20.0816 1120 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
01:51:20.0816 1120 usbcir - ok
01:51:20.0879 1120 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
01:51:20.0894 1120 usbehci - ok
01:51:20.0925 1120 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
01:51:20.0925 1120 usbhub - ok
01:51:20.0941 1120 usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys
01:51:20.0957 1120 usbohci - ok
01:51:20.0988 1120 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys
01:51:20.0988 1120 usbprint - ok
01:51:21.0035 1120 usbscan (a508c9bd8724980512136b039bba65e9) C:\Windows\system32\DRIVERS\usbscan.sys
01:51:21.0050 1120 usbscan - ok
01:51:21.0066 1120 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
01:51:21.0081 1120 USBSTOR - ok
01:51:21.0097 1120 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
01:51:21.0113 1120 usbuhci - ok
01:51:21.0175 1120 usbvideo (e67998e8f14cb0627a769f6530bcb352) C:\Windows\system32\Drivers\usbvideo.sys
01:51:21.0191 1120 usbvideo - ok
01:51:21.0222 1120 UxSms (1509e705f3ac1d474c92454a5c2dd81f) C:\Windows\System32\uxsms.dll
01:51:21.0222 1120 UxSms - ok
01:51:21.0253 1120 vds (cd88d1b7776dc17a119049742ec07eb4) C:\Windows\System32\vds.exe
01:51:21.0284 1120 vds - ok
01:51:21.0300 1120 vga (87b06e1f30b749a114f74622d013f8d4) C:\Windows\system32\DRIVERS\vgapnp.sys
01:51:21.0300 1120 vga - ok
01:51:21.0331 1120 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
01:51:21.0331 1120 VgaSave - ok
01:51:21.0378 1120 viaagp (5d7159def58a800d5781ba3a879627bc) C:\Windows\system32\drivers\viaagp.sys
01:51:21.0393 1120 viaagp - ok
01:51:21.0425 1120 ViaC7 (c4f3a691b5bad343e6249bd8c2d45dee) C:\Windows\system32\drivers\viac7.sys
01:51:21.0440 1120 ViaC7 - ok
01:51:21.0518 1120 VIAHdAudAddService (6970bc9f9316d3a61d8e0dfd0f2d4cec) C:\Windows\system32\drivers\viahduaa.sys
01:51:21.0549 1120 VIAHdAudAddService - ok
01:51:21.0581 1120 viaide (aadf5587a4063f52c2c3fed7887426fc) C:\Windows\system32\drivers\viaide.sys
01:51:21.0581 1120 viaide - ok
01:51:21.0612 1120 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
01:51:21.0612 1120 volmgr - ok
01:51:21.0643 1120 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
01:51:21.0659 1120 volmgrx - ok
01:51:21.0705 1120 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
01:51:21.0705 1120 volsnap - ok
01:51:21.0752 1120 vsmraid (587253e09325e6bf226b299774b728a9) C:\Windows\system32\drivers\vsmraid.sys
01:51:21.0752 1120 vsmraid - ok
01:51:21.0815 1120 VSS (db3d19f850c6eb32bdcb9bc0836acddb) C:\Windows\system32\vssvc.exe
01:51:21.0861 1120 VSS - ok
01:51:21.0924 1120 W32Time (96ea68b9eb310a69c25ebb0282b2b9de) C:\Windows\system32\w32time.dll
01:51:21.0924 1120 W32Time - ok
01:51:21.0971 1120 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
01:51:21.0971 1120 WacomPen - ok
01:51:22.0002 1120 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
01:51:22.0017 1120 Wanarp - ok
01:51:22.0017 1120 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
01:51:22.0017 1120 Wanarpv6 - ok
01:51:22.0049 1120 wcncsvc (a3cd60fd826381b49f03832590e069af) C:\Windows\System32\wcncsvc.dll
01:51:22.0080 1120 wcncsvc - ok
01:51:22.0111 1120 WcsPlugInService (11bcb7afcdd7aadacb5746f544d3a9c7) C:\Windows\System32\WcsPlugInService.dll
01:51:22.0127 1120 WcsPlugInService - ok
01:51:22.0142 1120 Wd (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys
01:51:22.0158 1120 Wd - ok
01:51:22.0220 1120 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
01:51:22.0220 1120 Wdf01000 - ok
01:51:22.0251 1120 WdiServiceHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\Windows\system32\wdi.dll
01:51:22.0267 1120 WdiServiceHost - ok
01:51:22.0267 1120 WdiSystemHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\Windows\system32\wdi.dll
01:51:22.0283 1120 WdiSystemHost - ok
01:51:22.0314 1120 WebClient (04c37d8107320312fbae09926103d5e2) C:\Windows\System32\webclnt.dll
01:51:22.0329 1120 WebClient - ok
01:51:22.0361 1120 Wecsvc (ae3736e7e8892241c23e4ebbb7453b60) C:\Windows\system32\wecsvc.dll
01:51:22.0361 1120 Wecsvc - ok
01:51:22.0392 1120 wercplsupport (670ff720071ed741206d69bd995ea453) C:\Windows\System32\wercplsupport.dll
01:51:22.0392 1120 wercplsupport - ok
01:51:22.0423 1120 WerSvc (32b88481d3b326da6deb07b1d03481e7) C:\Windows\System32\WerSvc.dll
01:51:22.0423 1120 WerSvc - ok
01:51:22.0517 1120 WinDefend (4575aa12561c5648483403541d0d7f2b) C:\Program Files\Windows Defender\mpsvc.dll
01:51:22.0517 1120 WinDefend - ok
01:51:22.0532 1120 WinHttpAutoProxySvc - ok
01:51:22.0579 1120 Winmgmt (6b2a1d0e80110e3d04e6863c6e62fd8a) C:\Windows\system32\wbem\WMIsvc.dll
01:51:22.0579 1120 Winmgmt - ok
01:51:22.0673 1120 WinRM (7cfe68bdc065e55aa5e8421607037511) C:\Windows\system32\WsmSvc.dll
01:51:22.0735 1120 WinRM - ok
01:51:22.0797 1120 Wlansvc (c008405e4feeb069e30da1d823910234) C:\Windows\System32\wlansvc.dll
01:51:22.0829 1120 Wlansvc - ok
01:51:22.0875 1120 wlcrasvc (6067acef367e79914af628fa1e9b5330) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
01:51:22.0875 1120 wlcrasvc - ok
01:51:23.0016 1120 wlidsvc (fb01d4ae207b9efdbabfc55dc95c7e31) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
01:51:23.0078 1120 wlidsvc - ok
01:51:23.0187 1120 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\DRIVERS\wmiacpi.sys
01:51:23.0203 1120 WmiAcpi - ok
01:51:23.0250 1120 wmiApSrv (43be3875207dcb62a85c8c49970b66cc) C:\Windows\system32\wbem\WmiApSrv.exe
01:51:23.0250 1120 wmiApSrv - ok
01:51:23.0359 1120 WMPNetworkSvc (3978704576a121a9204f8cc49a301a9b) C:\Program Files\Windows Media Player\wmpnetwk.exe
01:51:23.0375 1120 WMPNetworkSvc - ok
01:51:23.0453 1120 WPCSvc (cfc5a04558f5070cee3e3a7809f3ff52) C:\Windows\System32\wpcsvc.dll
01:51:23.0453 1120 WPCSvc - ok
01:51:23.0484 1120 WPDBusEnum (801fbdb89d472b3c467eb112a0fc9246) C:\Windows\system32\wpdbusenum.dll
01:51:23.0484 1120 WPDBusEnum - ok
01:51:23.0562 1120 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys
01:51:23.0577 1120 WpdUsb - ok
01:51:23.0687 1120 WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
01:51:23.0733 1120 WPFFontCache_v0400 - ok
01:51:23.0780 1120 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
01:51:23.0780 1120 ws2ifsl - ok
01:51:23.0843 1120 wscsvc (1ca6c40261ddc0425987980d0cd2aaab) C:\Windows\system32\wscsvc.dll
01:51:23.0858 1120 wscsvc - ok
01:51:23.0858 1120 WSearch - ok
01:51:24.0030 1120 wuauserv (6298277b73c77fa99106b271a7525163) C:\Windows\system32\wuaueng.dll
01:51:24.0092 1120 wuauserv - ok
01:51:24.0233 1120 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
01:51:24.0248 1120 WUDFRd - ok
01:51:24.0279 1120 wudfsvc (575a4190d989f64732119e4114045a4f) C:\Windows\System32\WUDFSvc.dll
01:51:24.0295 1120 wudfsvc - ok
01:51:24.0342 1120 yukonwlh (7d1f3b131d503ef43ee594b5a2b9b427) C:\Windows\system32\DRIVERS\yk60x86.sys
01:51:24.0342 1120 yukonwlh - ok
01:51:24.0404 1120 MBR (0x1B8) (64b1e91c5c6c2157642651010728f90f) \Device\Harddisk0\DR0
01:51:24.0467 1120 \Device\Harddisk0\DR0 - ok
01:51:24.0467 1120 Boot (0x1200) (0e8a4c23db97a562b5430dfa2f319019) \Device\Harddisk0\DR0\Partition0
01:51:24.0482 1120 \Device\Harddisk0\DR0\Partition0 - ok
01:51:24.0513 1120 Boot (0x1200) (669bb553ac0c2696b8e566a6b5390fc6) \Device\Harddisk0\DR0\Partition1
01:51:24.0513 1120 \Device\Harddisk0\DR0\Partition1 - ok
01:51:24.0513 1120 ============================================================
01:51:24.0513 1120 Scan finished
01:51:24.0513 1120 ============================================================
01:51:24.0545 2468 Detected object count: 0
01:51:24.0545 2468 Actual detected object count: 0
01:51:42.0032 2888 ============================================================
01:51:42.0032 2888 Scan started
01:51:42.0032 2888 Mode: Manual;
01:51:42.0032 2888 ============================================================
01:51:42.0329 2888 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
01:51:42.0329 2888 ACPI - ok
01:51:42.0407 2888 AdobeFlashPlayerUpdateSvc (76d5a3d2a50402a0b9b6ed13c4371e79) C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
01:51:42.0407 2888 AdobeFlashPlayerUpdateSvc - ok
01:51:42.0469 2888 adp94xx (04f0fcac69c7c71a3ac4eb97fafc8303) C:\Windows\system32\drivers\adp94xx.sys
01:51:42.0485 2888 adp94xx - ok
01:51:42.0500 2888 adpahci (60505e0041f7751bdbb80f88bf45c2ce) C:\Windows\system32\drivers\adpahci.sys
01:51:42.0516 2888 adpahci - ok
01:51:42.0531 2888 adpu160m (8a42779b02aec986eab64ecfc98f8bd7) C:\Windows\system32\drivers\adpu160m.sys
01:51:42.0547 2888 adpu160m - ok
01:51:42.0563 2888 adpu320 (241c9e37f8ce45ef51c3de27515ca4e5) C:\Windows\system32\drivers\adpu320.sys
01:51:42.0578 2888 adpu320 - ok
01:51:42.0594 2888 AeLookupSvc (9d1fda9e086ba64e3c93c9de32461bcf) C:\Windows\System32\aelupsvc.dll
01:51:42.0594 2888 AeLookupSvc - ok
01:51:42.0641 2888 AFD (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys
01:51:42.0656 2888 AFD - ok
01:51:42.0672 2888 agp440 (13f9e33747e6b41a3ff305c37db0d360) C:\Windows\system32\drivers\agp440.sys
01:51:42.0687 2888 agp440 - ok
01:51:42.0703 2888 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
01:51:42.0703 2888 aic78xx - ok
01:51:42.0734 2888 ALG (a1545b731579895d8cc44fc0481c1192) C:\Windows\System32\alg.exe
01:51:42.0734 2888 ALG - ok
01:51:42.0750 2888 aliide (9eaef5fc9b8e351afa7e78a6fae91f91) C:\Windows\system32\drivers\aliide.sys
01:51:42.0750 2888 aliide - ok
01:51:42.0781 2888 amdagp (c47344bc706e5f0b9dce369516661578) C:\Windows\system32\drivers\amdagp.sys
01:51:42.0781 2888 amdagp - ok
01:51:42.0797 2888 amdide (9b78a39a4c173fdbc1321e0dd659b34c) C:\Windows\system32\drivers\amdide.sys
01:51:42.0812 2888 amdide - ok
01:51:42.0828 2888 AmdK7 (18f29b49ad23ecee3d2a826c725c8d48) C:\Windows\system32\drivers\amdk7.sys
01:51:42.0828 2888 AmdK7 - ok
01:51:42.0843 2888 AmdK8 (93ae7f7dd54ab986a6f1a1b37be7442d) C:\Windows\system32\drivers\amdk8.sys
01:51:42.0843 2888 AmdK8 - ok
01:51:42.0875 2888 Appinfo (c6d704c7f0434dc791aac37cac4b6e14) C:\Windows\System32\appinfo.dll
01:51:42.0875 2888 Appinfo - ok
01:51:42.0906 2888 arc (5d2888182fb46632511acee92fdad522) C:\Windows\system32\drivers\arc.sys
01:51:42.0906 2888 arc - ok
01:51:42.0937 2888 arcsas (5e2a321bd7c8b3624e41fdec3e244945) C:\Windows\system32\drivers\arcsas.sys
01:51:42.0937 2888 arcsas - ok
01:51:43.0015 2888 ASLDRService (d513efb8bf66fd2401119083abb72da4) C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe
01:51:43.0031 2888 ASLDRService - ok
01:51:43.0062 2888 ASMMAP (7b4d08d2017ac06689d422e06c43f0aa) C:\Program Files\ATKGFNEX\ASMMAP.sys
01:51:43.0062 2888 ASMMAP - ok
01:51:43.0077 2888 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
01:51:43.0077 2888 AsyncMac - ok
01:51:43.0124 2888 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys
01:51:43.0124 2888 atapi - ok
01:51:43.0202 2888 athr (2846f5ee802889d500fcf5cc48b28381) C:\Windows\system32\DRIVERS\athr.sys
01:51:43.0218 2888 athr - ok
01:51:43.0233 2888 ATKGFNEXSrv (4854043ddcd7ae2842b97a081be5c7ae) C:\Program Files\ATKGFNEX\GFNEXSrv.exe
01:51:43.0233 2888 ATKGFNEXSrv - ok
01:51:43.0280 2888 AudioEndpointBuilder (68e2a1a0407a66cf50da0300852424ab) C:\Windows\System32\Audiosrv.dll
01:51:43.0280 2888 AudioEndpointBuilder - ok
01:51:43.0296 2888 Audiosrv (68e2a1a0407a66cf50da0300852424ab) C:\Windows\System32\Audiosrv.dll
01:51:43.0296 2888 Audiosrv - ok
01:51:43.0343 2888 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
01:51:43.0343 2888 Beep - ok
01:51:43.0389 2888 BFE (c789af0f724fda5852fb9a7d3a432381) C:\Windows\System32\bfe.dll
01:51:43.0405 2888 BFE - ok
01:51:43.0467 2888 BITS (93952506c6d67330367f7e7934b6a02f) C:\Windows\system32\qmgr.dll
01:51:43.0499 2888 BITS - ok
01:51:43.0514 2888 blbdrive (d4df28447741fd3d953526e33a617397) C:\Windows\system32\drivers\blbdrive.sys
01:51:43.0514 2888 blbdrive - ok
01:51:43.0545 2888 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys
01:51:43.0545 2888 bowser - ok
01:51:43.0561 2888 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
01:51:43.0561 2888 BrFiltLo - ok
01:51:43.0577 2888 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
01:51:43.0577 2888 BrFiltUp - ok
01:51:43.0608 2888 Browser (a3629a0c4226f9e9c72faaeebc3ad33c) C:\Windows\System32\browser.dll
01:51:43.0623 2888 Browser - ok
01:51:43.0639 2888 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
01:51:43.0639 2888 Brserid - ok
01:51:43.0670 2888 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
01:51:43.0670 2888 BrSerWdm - ok
01:51:43.0670 2888 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
01:51:43.0686 2888 BrUsbMdm - ok
01:51:43.0686 2888 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
01:51:43.0701 2888 BrUsbSer - ok
01:51:43.0717 2888 BthEnum (6d39c954799b63ba866910234cf7d726) C:\Windows\system32\DRIVERS\BthEnum.sys
01:51:43.0717 2888 BthEnum - ok
01:51:43.0748 2888 BTHMODEM (9a966a8e86d1771911ae34a20d11bff3) C:\Windows\system32\DRIVERS\bthmodem.sys
01:51:43.0748 2888 BTHMODEM - ok
01:51:43.0779 2888 BthPan (5904efa25f829bf84ea6fb045134a1d8) C:\Windows\system32\DRIVERS\bthpan.sys
01:51:43.0779 2888 BthPan - ok
01:51:43.0826 2888 BTHPORT (611ff3f2f095c8d4a6d4cfd9dcc09793) C:\Windows\system32\Drivers\BTHport.sys
01:51:43.0842 2888 BTHPORT - ok
01:51:43.0873 2888 BthServ (a4c8377fa4a994e07075107dbe2e3dce) C:\Windows\System32\bthserv.dll
01:51:43.0873 2888 BthServ - ok
01:51:43.0904 2888 BTHUSB (d330803eab2a15caec7f011f1d4cb30e) C:\Windows\system32\Drivers\BTHUSB.sys
01:51:43.0920 2888 BTHUSB - ok
01:51:43.0967 2888 catchme - ok
01:51:43.0998 2888 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
01:51:43.0998 2888 cdfs - ok
01:51:44.0029 2888 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
01:51:44.0029 2888 cdrom - ok
01:51:44.0060 2888 CertPropSvc (312ec3e37a0a1f2006534913e37b4423) C:\Windows\System32\certprop.dll
01:51:44.0076 2888 CertPropSvc - ok
01:51:44.0091 2888 circlass (e5d4133f37219dbcfe102bc61072589d) C:\Windows\system32\drivers\circlass.sys
01:51:44.0091 2888 circlass - ok
01:51:44.0123 2888 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
01:51:44.0138 2888 CLFS - ok
01:51:44.0185 2888 clr_optimization_v2.0.50727_32 (8ee772032e2fe80a924f3b8dd5082194) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
01:51:44.0185 2888 clr_optimization_v2.0.50727_32 - ok
01:51:44.0232 2888 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
01:51:44.0232 2888 clr_optimization_v4.0.30319_32 - ok
01:51:44.0263 2888 CmBatt (99afc3795b58cc478fbbbcdc658fcb56) C:\Windows\system32\DRIVERS\CmBatt.sys
01:51:44.0279 2888 CmBatt - ok
01:51:44.0294 2888 cmderd (1d075a3c34544bc5532e9fcbdbe38d67) C:\Windows\system32\DRIVERS\cmderd.sys
01:51:44.0294 2888 cmderd - ok
01:51:44.0341 2888 cmdGuard (0a2e8cde40d6fd252f4a66558d6cd18d) C:\Windows\system32\DRIVERS\cmdguard.sys
01:51:44.0341 2888 cmdGuard - ok
01:51:44.0357 2888 cmdHlp (beb0da2bf48a8f7ad3c49e893936466c) C:\Windows\system32\DRIVERS\cmdhlp.sys
01:51:44.0372 2888 cmdHlp - ok
01:51:44.0388 2888 cmdide (0ca25e686a4928484e9fdabd168ab629) C:\Windows\system32\drivers\cmdide.sys
01:51:44.0388 2888 cmdide - ok
01:51:44.0403 2888 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\DRIVERS\compbatt.sys
01:51:44.0403 2888 Compbatt - ok
01:51:44.0419 2888 COMSysApp - ok
01:51:44.0419 2888 crcdisk (741e9dff4f42d2d8477d0fc1dc0df871) C:\Windows\system32\drivers\crcdisk.sys
01:51:44.0435 2888 crcdisk - ok
01:51:44.0450 2888 Crusoe (1f07becdca750766a96cda811ba86410) C:\Windows\system32\drivers\crusoe.sys
01:51:44.0450 2888 Crusoe - ok
01:51:44.0497 2888 CryptSvc (fb27772beaf8e1d28ccd825c09da939b) C:\Windows\system32\cryptsvc.dll
01:51:44.0497 2888 CryptSvc - ok
01:51:44.0591 2888 DcomLaunch (3b5b4d53fec14f7476ca29a20cc31ac9) C:\Windows\system32\rpcss.dll
01:51:44.0622 2888 DcomLaunch - ok
01:51:44.0700 2888 DfSdkS (92ae26f2caf4a67e24a0ba6ddf32cc3c) C:\Program Files\Ashampoo\Ashampoo WinOptimizer 8\DfsdkS.exe
01:51:44.0700 2888 DfSdkS - ok
01:51:44.0825 2888 DFSR (2cc3dcfb533a1035b13dcab6160ab38b) C:\Windows\system32\DFSR.exe
01:51:44.0840 2888 DFSR - ok
01:51:44.0949 2888 Dhcp (9028559c132146fb75eb7acf384b086a) C:\Windows\System32\dhcpcsvc.dll
01:51:44.0949 2888 Dhcp - ok
01:51:44.0981 2888 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
01:51:44.0996 2888 disk - ok
01:51:45.0027 2888 Dnscache (57d762f6f5974af0da2be88a3349baaa) C:\Windows\System32\dnsrslvr.dll
01:51:45.0027 2888 Dnscache - ok
01:51:45.0059 2888 dot3svc (324fd74686b1ef5e7c19a8af49e748f6) C:\Windows\System32\dot3svc.dll
01:51:45.0059 2888 dot3svc - ok
01:51:45.0105 2888 DPS (a622e888f8aa2f6b49e9bc466f0e5def) C:\Windows\system32\dps.dll
01:51:45.0105 2888 DPS - ok
01:51:45.0121 2888 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
01:51:45.0137 2888 drmkaud - ok
01:51:45.0183 2888 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
01:51:45.0183 2888 DXGKrnl - ok
01:51:45.0230 2888 E1G60 (5425f74ac0c1dbd96a1e04f17d63f94c) C:\Windows\system32\DRIVERS\E1G60I32.sys
01:51:45.0230 2888 E1G60 - ok
01:51:45.0246 2888 EapHost (c0b95e40d85cd807d614e264248a45b9) C:\Windows\System32\eapsvc.dll
01:51:45.0261 2888 EapHost - ok
01:51:45.0277 2888 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
01:51:45.0293 2888 Ecache - ok
01:51:45.0339 2888 ehRecvr (9be3744d295a7701eb425332014f0797) C:\Windows\ehome\ehRecvr.exe
01:51:45.0339 2888 ehRecvr - ok
01:51:45.0355 2888 ehSched (ad1870c8e5d6dd340c829e6074bf3c3f) C:\Windows\ehome\ehsched.exe
01:51:45.0355 2888 ehSched - ok
01:51:45.0386 2888 ehstart (c27c4ee8926e74aa72efcab24c5242c3) C:\Windows\ehome\ehstart.dll
01:51:45.0386 2888 ehstart - ok
01:51:45.0433 2888 elxstor (23b62471681a124889978f6295b3f4c6) C:\Windows\system32\drivers\elxstor.sys
01:51:45.0433 2888 elxstor - ok
01:51:45.0495 2888 EMDMgmt (4e6b23dfc917ea39306b529b773950f4) C:\Windows\system32\emdmgmt.dll
01:51:45.0511 2888 EMDMgmt - ok
01:51:45.0542 2888 ErrDev (3db974f3935483555d7148663f726c61) C:\Windows\system32\drivers\errdev.sys
01:51:45.0558 2888 ErrDev - ok
01:51:45.0589 2888 ETD (3c1d6b99320c64eb3423e229128d5182) C:\Windows\system32\DRIVERS\ETD.sys
01:51:45.0589 2888 ETD - ok
01:51:45.0620 2888 EventSystem (67058c46504bc12d821f38cf99b7b28f) C:\Windows\system32\es.dll
01:51:45.0620 2888 EventSystem - ok
01:51:45.0667 2888 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
01:51:45.0667 2888 exfat - ok
01:51:45.0698 2888 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
01:51:45.0714 2888 fastfat - ok
01:51:45.0745 2888 fdc (afe1e8b9782a0dd7fb46bbd88e43f89a) C:\Windows\system32\DRIVERS\fdc.sys
01:51:45.0745 2888 fdc - ok
01:51:45.0761 2888 fdPHost (6629b5f0e98151f4afdd87567ea32ba3) C:\Windows\system32\fdPHost.dll
01:51:45.0776 2888 fdPHost - ok
01:51:45.0792 2888 FDResPub (89ed56dce8e47af40892778a5bd31fd2) C:\Windows\system32\fdrespub.dll
01:51:45.0792 2888 FDResPub - ok
01:51:45.0807 2888 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
01:51:45.0807 2888 FileInfo - ok
01:51:45.0823 2888 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
01:51:45.0823 2888 Filetrace - ok
01:51:45.0823 2888 flpydisk (85b7cf99d532820495d68d747fda9ebd) C:\Windows\system32\DRIVERS\flpydisk.sys
01:51:45.0839 2888 flpydisk - ok
01:51:45.0885 2888 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
01:51:45.0901 2888 FltMgr - ok
01:51:45.0979 2888 FontCache (8ce364388c8eca59b14b539179276d44) C:\Windows\system32\FntCache.dll
01:51:45.0979 2888 FontCache - ok
01:51:46.0026 2888 FontCache3.0.0.0 (c7fbdd1ed42f82bfa35167a5c9803ea3) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
01:51:46.0041 2888 FontCache3.0.0.0 - ok
01:51:46.0057 2888 fssfltr (bfaaa92861526bb0adcd01e964ab6609) C:\Windows\system32\DRIVERS\fssfltr.sys
01:51:46.0057 2888 fssfltr - ok
01:51:46.0213 2888 fsssvc (40cdfad174b3d5e80f95dda003c0b97f) C:\Program Files\Windows Live\Family Safety\fsssvc.exe
01:51:46.0244 2888 fsssvc - ok
01:51:46.0353 2888 Fs_Rec (b972a66758577e0bfd1de0f91aaa27b5) C:\Windows\system32\drivers\Fs_Rec.sys
01:51:46.0369 2888 Fs_Rec - ok
01:51:46.0385 2888 gagp30kx (34582a6e6573d54a07ece5fe24a126b5) C:\Windows\system32\drivers\gagp30kx.sys
01:51:46.0400 2888 gagp30kx - ok
01:51:46.0431 2888 GDMnIcpt (5dfba6993b046d3f7df603b485444be3) C:\Windows\system32\drivers\MiniIcpt.sys
01:51:46.0431 2888 GDMnIcpt - ok
01:51:46.0494 2888 gpsvc (cd5d0aeee35dfd4e986a5aa1500a6e66) C:\Windows\System32\gpsvc.dll
01:51:46.0494 2888 gpsvc - ok
01:51:46.0541 2888 HdAudAddService (cb04c744be0a61b1d648faed182c3b59) C:\Windows\system32\drivers\HdAudio.sys
01:51:46.0541 2888 HdAudAddService - ok
01:51:46.0587 2888 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys
01:51:46.0603 2888 HDAudBus - ok
01:51:46.0619 2888 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
01:51:46.0619 2888 HidBth - ok
01:51:46.0634 2888 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys
01:51:46.0650 2888 HidIr - ok
01:51:46.0681 2888 hidserv (84067081f3318162797385e11a8f0582) C:\Windows\System32\hidserv.dll
01:51:46.0681 2888 hidserv - ok
01:51:46.0697 2888 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\Windows\system32\DRIVERS\hidusb.sys
01:51:46.0697 2888 HidUsb - ok
01:51:46.0712 2888 hkmsvc (d8ad255b37da92434c26e4876db7d418) C:\Windows\system32\kmsvc.dll
01:51:46.0728 2888 hkmsvc - ok
01:51:46.0743 2888 HookCentre (7a19e6cb7cddd9d5b5c0c49930628e80) C:\Windows\system32\drivers\HookCentre.sys
01:51:46.0759 2888 HookCentre - ok
01:51:46.0775 2888 HpCISSs (16ee7b23a009e00d835cdb79574a91a6) C:\Windows\system32\drivers\hpcisss.sys
01:51:46.0775 2888 HpCISSs - ok
01:51:46.0821 2888 HTTP (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys
01:51:46.0837 2888 HTTP - ok
01:51:46.0837 2888 i2omp (c6b032d69650985468160fc9937cf5b4) C:\Windows\system32\drivers\i2omp.sys
01:51:46.0853 2888 i2omp - ok
01:51:46.0884 2888 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
01:51:46.0884 2888 i8042prt - ok
01:51:46.0931 2888 iaStor (71ecc07bc7c5e24c3dd01d8a29a24054) C:\Windows\system32\DRIVERS\iaStor.sys
01:51:46.0931 2888 iaStor - ok
01:51:46.0962 2888 iaStorV (54155ea1b0df185878e0fc9ec3ac3a14) C:\Windows\system32\drivers\iastorv.sys
01:51:46.0962 2888 iaStorV - ok
01:51:47.0071 2888 idsvc (98477b08e61945f974ed9fdc4cb6bdab) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
01:51:47.0087 2888 idsvc - ok
01:51:47.0570 2888 igfx (dce0b53570703cce580d066f89ef58cd) C:\Windows\system32\DRIVERS\igdkmd32.sys
01:51:47.0664 2888 igfx - ok
01:51:47.0789 2888 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
01:51:47.0789 2888 iirsp - ok
01:51:47.0851 2888 IKEEXT (9908d8a397b76cd8d31d0d383c5773c9) C:\Windows\System32\ikeext.dll
01:51:47.0867 2888 IKEEXT - ok
01:51:47.0913 2888 inspect (2c03538258729852d55f9f2b8906a8b9) C:\Windows\system32\DRIVERS\inspect.sys
01:51:47.0913 2888 inspect - ok
01:51:47.0929 2888 intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys
01:51:47.0929 2888 intelide - ok
01:51:47.0960 2888 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
01:51:47.0960 2888 intelppm - ok
01:51:47.0991 2888 IPBusEnum (9ac218c6e6105477484c6fdbe7d409a4) C:\Windows\system32\ipbusenum.dll
01:51:48.0007 2888 IPBusEnum - ok
01:51:48.0023 2888 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
01:51:48.0038 2888 IpFilterDriver - ok
01:51:48.0069 2888 iphlpsvc (1998bd97f950680bb55f55a7244679c2) C:\Windows\System32\iphlpsvc.dll
01:51:48.0069 2888 iphlpsvc - ok
01:51:48.0085 2888 IpInIp - ok
01:51:48.0116 2888 IPMIDRV (b25aaf203552b7b3491139d582b39ad1) C:\Windows\system32\drivers\ipmidrv.sys
01:51:48.0116 2888 IPMIDRV - ok
01:51:48.0147 2888 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
01:51:48.0163 2888 IPNAT - ok
01:51:48.0163 2888 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
01:51:48.0179 2888 IRENUM - ok
01:51:48.0194 2888 isapnp (6c70698a3e5c4376c6ab5c7c17fb0614) C:\Windows\system32\drivers\isapnp.sys
01:51:48.0194 2888 isapnp - ok
01:51:48.0225 2888 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
01:51:48.0241 2888 iScsiPrt - ok
01:51:48.0257 2888 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
01:51:48.0257 2888 iteatapi - ok
01:51:48.0272 2888 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
01:51:48.0272 2888 iteraid - ok
01:51:48.0288 2888 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
01:51:48.0288 2888 kbdclass - ok
01:51:48.0319 2888 kbdhid (ede59ec70e25c24581add1fbec7325f7) C:\Windows\system32\DRIVERS\kbdhid.sys
01:51:48.0319 2888 kbdhid - ok
01:51:48.0350 2888 kbfiltr (7f2b8d0b31fb4a797e5786ef124c5a80) C:\Windows\system32\DRIVERS\kbfiltr.sys
01:51:48.0350 2888 kbfiltr - ok
01:51:48.0381 2888 KeyIso (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
01:51:48.0381 2888 KeyIso - ok
01:51:48.0428 2888 KMWDFILTER (566c5fd480fdbce3ba5cf9fbcffaea9a) C:\Windows\system32\DRIVERS\KMWDFILTER.sys
01:51:48.0428 2888 KMWDFILTER - ok
01:51:48.0459 2888 KSecDD (2b2f1638466e8cb091400c9019cc730e) C:\Windows\system32\Drivers\ksecdd.sys
01:51:48.0459 2888 KSecDD - ok
01:51:48.0522 2888 KtmRm (8078f8f8f7a79e2e6b494523a828c585) C:\Windows\system32\msdtckrm.dll
01:51:48.0522 2888 KtmRm - ok
01:51:48.0553 2888 L1E (24abddeb766c8459f9d562eb083b6cb8) C:\Windows\system32\DRIVERS\L1E60x86.sys
01:51:48.0569 2888 L1E - ok
01:51:48.0584 2888 LanmanServer (1bf5eebfd518dd7298434d8c862f825d) C:\Windows\System32\srvsvc.dll
01:51:48.0600 2888 LanmanServer - ok
01:51:48.0631 2888 LanmanWorkstation (1db69705b695b987082c8baec0c6b34f) C:\Windows\System32\wkssvc.dll
01:51:48.0647 2888 LanmanWorkstation - ok
01:51:48.0678 2888 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
01:51:48.0678 2888 lltdio - ok
01:51:48.0725 2888 lltdsvc (2d5a428872f1442631d0959a34abff63) C:\Windows\System32\lltdsvc.dll
01:51:48.0725 2888 lltdsvc - ok
01:51:48.0756 2888 lmhosts (35d40113e4a5b961b6ce5c5857702518) C:\Windows\System32\lmhsvc.dll
01:51:48.0756 2888 lmhosts - ok
01:51:48.0787 2888 LSI_FC (c7e15e82879bf3235b559563d4185365) C:\Windows\system32\drivers\lsi_fc.sys
01:51:48.0803 2888 LSI_FC - ok
01:51:48.0818 2888 LSI_SAS (ee01ebae8c9bf0fa072e0ff68718920a) C:\Windows\system32\drivers\lsi_sas.sys
01:51:48.0834 2888 LSI_SAS - ok
01:51:48.0849 2888 LSI_SCSI (912a04696e9ca30146a62afa1463dd5c) C:\Windows\system32\drivers\lsi_scsi.sys
01:51:48.0849 2888 LSI_SCSI - ok
01:51:48.0881 2888 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
01:51:48.0881 2888 luafv - ok
01:51:48.0912 2888 Mcx2Svc (aef9babb8a506bc4ce0451a64aaded46) C:\Windows\system32\Mcx2Svc.dll
01:51:48.0927 2888 Mcx2Svc - ok
01:51:48.0943 2888 megasas (0001ce609d66632fa17b84705f658879) C:\Windows\system32\drivers\megasas.sys
01:51:48.0943 2888 megasas - ok
01:51:48.0974 2888 MegaSR (c252f32cd9a49dbfc25ecf26ebd51a99) C:\Windows\system32\drivers\megasr.sys
01:51:48.0990 2888 MegaSR - ok
01:51:49.0068 2888 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
01:51:49.0068 2888 Microsoft Office Groove Audit Service - ok
01:51:49.0099 2888 MMCSS (1076ffcffaae8385fd62dfcb25ac4708) C:\Windows\system32\mmcss.dll
01:51:49.0115 2888 MMCSS - ok
01:51:49.0146 2888 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
01:51:49.0146 2888 Modem - ok
01:51:49.0177 2888 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
01:51:49.0177 2888 monitor - ok
01:51:49.0193 2888 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
01:51:49.0208 2888 mouclass - ok
01:51:49.0224 2888 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
01:51:49.0224 2888 mouhid - ok
01:51:49.0239 2888 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
01:51:49.0255 2888 MountMgr - ok
01:51:49.0271 2888 mpio (511d011289755dd9f9a7579fb0b064e6) C:\Windows\system32\drivers\mpio.sys
01:51:49.0286 2888 mpio - ok
01:51:49.0302 2888 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
01:51:49.0302 2888 mpsdrv - ok
01:51:49.0349 2888 MpsSvc (5de62c6e9108f14f6794060a9bdecaec) C:\Windows\system32\mpssvc.dll
01:51:49.0349 2888 MpsSvc - ok
01:51:49.0411 2888 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
01:51:49.0411 2888 Mraid35x - ok

Re: chová se divně

Napsal: 12 kvě 2012 01:08
od olcit
01:51:49.0442 2888 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
01:51:49.0442 2888 MRxDAV - ok
01:51:49.0489 2888 mrxsmb (1e94971c4b446ab2290deb71d01cf0c2) C:\Windows\system32\DRIVERS\mrxsmb.sys
01:51:49.0489 2888 mrxsmb - ok
01:51:49.0520 2888 mrxsmb10 (4fccb34d793b116423209c0f8b7a3b03) C:\Windows\system32\DRIVERS\mrxsmb10.sys
01:51:49.0520 2888 mrxsmb10 - ok
01:51:49.0551 2888 mrxsmb20 (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
01:51:49.0551 2888 mrxsmb20 - ok
01:51:49.0583 2888 msahci (28023e86f17001f7cd9b15a5bc9ae07d) C:\Windows\system32\drivers\msahci.sys
01:51:49.0583 2888 msahci - ok
01:51:49.0614 2888 msdsm (4468b0f385a86ecddaf8d3ca662ec0e7) C:\Windows\system32\drivers\msdsm.sys
01:51:49.0614 2888 msdsm - ok
01:51:49.0645 2888 MSDTC (fd7520cc3a80c5fc8c48852bb24c6ded) C:\Windows\System32\msdtc.exe
01:51:49.0645 2888 MSDTC - ok
01:51:49.0676 2888 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
01:51:49.0676 2888 Msfs - ok
01:51:49.0692 2888 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
01:51:49.0692 2888 msisadrv - ok
01:51:49.0723 2888 MSiSCSI (85466c0757a23d9a9aecdc0755203cb2) C:\Windows\system32\iscsiexe.dll
01:51:49.0739 2888 MSiSCSI - ok
01:51:49.0739 2888 msiserver - ok
01:51:49.0754 2888 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
01:51:49.0754 2888 MSKSSRV - ok
01:51:49.0770 2888 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
01:51:49.0770 2888 MSPCLOCK - ok
01:51:49.0785 2888 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
01:51:49.0801 2888 MSPQM - ok
01:51:49.0832 2888 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
01:51:49.0832 2888 MsRPC - ok
01:51:49.0848 2888 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
01:51:49.0848 2888 mssmbios - ok
01:51:49.0879 2888 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
01:51:49.0879 2888 MSTEE - ok
01:51:49.0895 2888 MTsensor (bb16693616427eac1a436e106ea8d318) C:\Windows\system32\DRIVERS\ATKACPI.sys
01:51:49.0910 2888 MTsensor - ok
01:51:49.0926 2888 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
01:51:49.0926 2888 Mup - ok
01:51:49.0973 2888 napagent (e4eaf0c5c1b41b5c83386cf212ca9584) C:\Windows\system32\qagentRT.dll
01:51:49.0988 2888 napagent - ok
01:51:50.0019 2888 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
01:51:50.0035 2888 NativeWifiP - ok
01:51:50.0082 2888 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
01:51:50.0082 2888 NDIS - ok
01:51:50.0097 2888 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
01:51:50.0113 2888 NdisTapi - ok
01:51:50.0129 2888 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
01:51:50.0129 2888 Ndisuio - ok
01:51:50.0144 2888 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
01:51:50.0160 2888 NdisWan - ok
01:51:50.0160 2888 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
01:51:50.0175 2888 NDProxy - ok
01:51:50.0175 2888 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
01:51:50.0191 2888 NetBIOS - ok
01:51:50.0222 2888 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
01:51:50.0222 2888 netbt - ok
01:51:50.0238 2888 Netlogon (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
01:51:50.0253 2888 Netlogon - ok
01:51:50.0285 2888 Netman (c8052711daecc48b982434c5116ca401) C:\Windows\System32\netman.dll
01:51:50.0285 2888 Netman - ok
01:51:50.0316 2888 netprofm (2ef3bbe22e5a5acd1428ee387a0d0172) C:\Windows\System32\netprofm.dll
01:51:50.0316 2888 netprofm - ok
01:51:50.0363 2888 netr73 (91d44aa2a61006136da32118a179bf12) C:\Windows\system32\DRIVERS\netr73.sys
01:51:50.0363 2888 netr73 - ok
01:51:50.0409 2888 NetTcpPortSharing (d6c4e4a39a36029ac0813d476fbd0248) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
01:51:50.0425 2888 NetTcpPortSharing - ok
01:51:50.0441 2888 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
01:51:50.0456 2888 nfrd960 - ok
01:51:50.0487 2888 NlaSvc (2997b15415f9bbe05b5a4c1c85e0c6a2) C:\Windows\System32\nlasvc.dll
01:51:50.0503 2888 NlaSvc - ok
01:51:50.0534 2888 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
01:51:50.0534 2888 Npfs - ok
01:51:50.0550 2888 nsi (8bb86f0c7eea2bded6fe095d0b4ca9bd) C:\Windows\system32\nsisvc.dll
01:51:50.0550 2888 nsi - ok
01:51:50.0581 2888 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
01:51:50.0581 2888 nsiproxy - ok
01:51:50.0659 2888 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
01:51:50.0675 2888 Ntfs - ok
01:51:50.0706 2888 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
01:51:50.0706 2888 ntrigdigi - ok
01:51:50.0721 2888 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
01:51:50.0737 2888 Null - ok
01:51:50.0753 2888 nvraid (2edf9e7751554b42cbb60116de727101) C:\Windows\system32\drivers\nvraid.sys
01:51:50.0753 2888 nvraid - ok
01:51:50.0768 2888 nvstor (abed0c09758d1d97db0042dbb2688177) C:\Windows\system32\drivers\nvstor.sys
01:51:50.0784 2888 nvstor - ok
01:51:50.0799 2888 nv_agp (18bbdf913916b71bd54575bdb6eeac0b) C:\Windows\system32\drivers\nv_agp.sys
01:51:50.0815 2888 nv_agp - ok
01:51:50.0815 2888 NwlnkFlt - ok
01:51:50.0815 2888 NwlnkFwd - ok
01:51:50.0924 2888 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
01:51:50.0924 2888 odserv - ok
01:51:50.0955 2888 ohci1394 (790e27c3db53410b40ff9ef2fd10a1d9) C:\Windows\system32\DRIVERS\ohci1394.sys
01:51:50.0955 2888 ohci1394 - ok
01:51:50.0987 2888 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
01:51:50.0987 2888 ose - ok
01:51:51.0049 2888 p2pimsvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
01:51:51.0065 2888 p2pimsvc - ok
01:51:51.0080 2888 p2psvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
01:51:51.0096 2888 p2psvc - ok
01:51:51.0127 2888 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys
01:51:51.0127 2888 Parport - ok
01:51:51.0158 2888 partmgr (57389fa59a36d96b3eb09d0cb91e9cdc) C:\Windows\system32\drivers\partmgr.sys
01:51:51.0174 2888 partmgr - ok
01:51:51.0174 2888 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys
01:51:51.0189 2888 Parvdm - ok
01:51:51.0205 2888 PcaSvc (c6276ad11f4bb49b58aa1ed88537f14a) C:\Windows\System32\pcasvc.dll
01:51:51.0221 2888 PcaSvc - ok
01:51:51.0252 2888 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
01:51:51.0252 2888 pci - ok
01:51:51.0267 2888 pciide (fc175f5ddab666d7f4d17449a547626f) C:\Windows\system32\drivers\pciide.sys
01:51:51.0283 2888 pciide - ok
01:51:51.0314 2888 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
01:51:51.0314 2888 pcmcia - ok
01:51:51.0345 2888 pcouffin (5b6c11de7e839c05248ced8825470fef) C:\Windows\system32\Drivers\pcouffin.sys
01:51:51.0345 2888 pcouffin - ok
01:51:51.0408 2888 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
01:51:51.0408 2888 PEAUTH - ok
01:51:51.0517 2888 pla (b1689df169143f57053f795390c99db3) C:\Windows\system32\pla.dll
01:51:51.0533 2888 pla - ok
01:51:51.0642 2888 PlugPlay (c5e7f8a996ec0a82d508fd9064a5569e) C:\Windows\system32\umpnpmgr.dll
01:51:51.0657 2888 PlugPlay - ok
01:51:51.0689 2888 PNRPAutoReg (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
01:51:51.0704 2888 PNRPAutoReg - ok
01:51:51.0704 2888 PNRPsvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
01:51:51.0720 2888 PNRPsvc - ok
01:51:51.0751 2888 PolicyAgent (d0494460421a03cd5225cca0059aa146) C:\Windows\System32\ipsecsvc.dll
01:51:51.0751 2888 PolicyAgent - ok
01:51:51.0813 2888 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
01:51:51.0813 2888 PptpMiniport - ok
01:51:51.0845 2888 Processor (2027293619dd0f047c584cf2e7df4ffd) C:\Windows\system32\drivers\processr.sys
01:51:51.0845 2888 Processor - ok
01:51:51.0876 2888 ProfSvc (0508faa222d28835310b7bfca7a77346) C:\Windows\system32\profsvc.dll
01:51:51.0876 2888 ProfSvc - ok
01:51:51.0907 2888 ProtectedStorage (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
01:51:51.0907 2888 ProtectedStorage - ok
01:51:51.0938 2888 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
01:51:51.0938 2888 PSched - ok
01:51:52.0016 2888 ql2300 (0a6db55afb7820c99aa1f3a1d270f4f6) C:\Windows\system32\drivers\ql2300.sys
01:51:52.0032 2888 ql2300 - ok
01:51:52.0063 2888 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
01:51:52.0063 2888 ql40xx - ok
01:51:52.0094 2888 QWAVE (e9ecae663f47e6cb43962d18ab18890f) C:\Windows\system32\qwave.dll
01:51:52.0110 2888 QWAVE - ok
01:51:52.0125 2888 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
01:51:52.0125 2888 QWAVEdrv - ok
01:51:52.0157 2888 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
01:51:52.0157 2888 RasAcd - ok
01:51:52.0172 2888 RasAuto (f6a452eb4ceadbb51c9e0ee6b3ecef0f) C:\Windows\System32\rasauto.dll
01:51:52.0188 2888 RasAuto - ok
01:51:52.0203 2888 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
01:51:52.0203 2888 Rasl2tp - ok
01:51:52.0235 2888 RasMan (75d47445d70ca6f9f894b032fbc64fcf) C:\Windows\System32\rasmans.dll
01:51:52.0250 2888 RasMan - ok
01:51:52.0266 2888 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
01:51:52.0281 2888 RasPppoe - ok
01:51:52.0281 2888 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
01:51:52.0297 2888 RasSstp - ok
01:51:52.0344 2888 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
01:51:52.0359 2888 rdbss - ok
01:51:52.0375 2888 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
01:51:52.0391 2888 RDPCDD - ok
01:51:52.0422 2888 rdpdr (fbc0bacd9c3d7f6956853f64a66e252d) C:\Windows\system32\drivers\rdpdr.sys
01:51:52.0422 2888 rdpdr - ok
01:51:52.0437 2888 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
01:51:52.0437 2888 RDPENCDD - ok
01:51:52.0469 2888 RDPWD (79c6df8477250f5c54f7c5ae1d6b814e) C:\Windows\system32\drivers\RDPWD.sys
01:51:52.0484 2888 RDPWD - ok
01:51:52.0500 2888 RemoteAccess (bcdd6b4804d06b1f7ebf29e53a57ece9) C:\Windows\System32\mprdim.dll
01:51:52.0515 2888 RemoteAccess - ok
01:51:52.0531 2888 RemoteRegistry (9e6894ea18daff37b63e1005f83ae4ab) C:\Windows\system32\regsvc.dll
01:51:52.0547 2888 RemoteRegistry - ok
01:51:52.0562 2888 RFCOMM (6482707f9f4da0ecbab43b2e0398a101) C:\Windows\system32\DRIVERS\rfcomm.sys
01:51:52.0578 2888 RFCOMM - ok
01:51:52.0593 2888 RpcLocator (5123f83cbc4349d065534eeb6bbdc42b) C:\Windows\system32\locator.exe
01:51:52.0609 2888 RpcLocator - ok
01:51:52.0656 2888 RpcSs (3b5b4d53fec14f7476ca29a20cc31ac9) C:\Windows\System32\rpcss.dll
01:51:52.0671 2888 RpcSs - ok
01:51:52.0703 2888 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
01:51:52.0703 2888 rspndr - ok
01:51:52.0734 2888 SamSs (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
01:51:52.0734 2888 SamSs - ok
01:51:52.0765 2888 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
01:51:52.0765 2888 sbp2port - ok
01:51:52.0796 2888 SCardSvr (77b7a11a0c3d78d3386398fbbea1b632) C:\Windows\System32\SCardSvr.dll
01:51:52.0812 2888 SCardSvr - ok
01:51:52.0859 2888 Schedule (1a58069db21d05eb2ab58ee5753ebe8d) C:\Windows\system32\schedsvc.dll
01:51:52.0874 2888 Schedule - ok
01:51:52.0921 2888 SCPolicySvc (312ec3e37a0a1f2006534913e37b4423) C:\Windows\System32\certprop.dll
01:51:52.0921 2888 SCPolicySvc - ok
01:51:52.0952 2888 sdbus (126ea89bcc413ee45e3004fb0764888f) C:\Windows\system32\DRIVERS\sdbus.sys
01:51:52.0968 2888 sdbus - ok
01:51:52.0999 2888 SDRSVC (716313d9f6b0529d03f726d5aaf6f191) C:\Windows\System32\SDRSVC.dll
01:51:52.0999 2888 SDRSVC - ok
01:51:53.0015 2888 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
01:51:53.0015 2888 secdrv - ok
01:51:53.0030 2888 seclogon (fd5199d4d8a521005e4b5ee7fe00fa9b) C:\Windows\system32\seclogon.dll
01:51:53.0030 2888 seclogon - ok
01:51:53.0046 2888 SENS (a9bbab5759771e523f55563d6cbe140f) C:\Windows\system32\sens.dll
01:51:53.0061 2888 SENS - ok
01:51:53.0077 2888 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys
01:51:53.0077 2888 Serenum - ok
01:51:53.0093 2888 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys
01:51:53.0108 2888 Serial - ok
01:51:53.0124 2888 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
01:51:53.0124 2888 sermouse - ok
01:51:53.0171 2888 SessionEnv (d2193326f729b163125610dbf3e17d57) C:\Windows\system32\sessenv.dll
01:51:53.0171 2888 SessionEnv - ok
01:51:53.0186 2888 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\drivers\sffdisk.sys
01:51:53.0186 2888 sffdisk - ok
01:51:53.0202 2888 sffp_mmc (e95d451f7ea3e583aec75f3b3ee42dc5) C:\Windows\system32\drivers\sffp_mmc.sys
01:51:53.0217 2888 sffp_mmc - ok
01:51:53.0233 2888 sffp_sd (3d0ea348784b7ac9ea9bd9f317980979) C:\Windows\system32\drivers\sffp_sd.sys
01:51:53.0233 2888 sffp_sd - ok
01:51:53.0264 2888 sfloppy (c33bfbd6e9e41fcd9ffef9729e9faed6) C:\Windows\system32\DRIVERS\sfloppy.sys
01:51:53.0264 2888 sfloppy - ok
01:51:53.0295 2888 SharedAccess (e1499bd0ff76b1b2fbbf1af339d91165) C:\Windows\System32\ipnathlp.dll
01:51:53.0311 2888 SharedAccess - ok
01:51:53.0342 2888 ShellHWDetection (c7230fbee14437716701c15be02c27b8) C:\Windows\System32\shsvcs.dll
01:51:53.0342 2888 ShellHWDetection - ok
01:51:53.0373 2888 sisagp (1d76624a09a054f682d746b924e2dbc3) C:\Windows\system32\drivers\sisagp.sys
01:51:53.0373 2888 sisagp - ok
01:51:53.0389 2888 SiSRaid2 (43cb7aa756c7db280d01da9b676cfde2) C:\Windows\system32\drivers\sisraid2.sys
01:51:53.0389 2888 SiSRaid2 - ok
01:51:53.0405 2888 SiSRaid4 (a99c6c8b0baa970d8aa59ddc50b57f94) C:\Windows\system32\drivers\sisraid4.sys
01:51:53.0405 2888 SiSRaid4 - ok
01:51:53.0576 2888 slsvc (862bb4cbc05d80c5b45be430e5ef872f) C:\Windows\system32\SLsvc.exe
01:51:53.0607 2888 slsvc - ok
01:51:53.0701 2888 SLUINotify (6edc422215cd78aa8a9cde6b30abbd35) C:\Windows\system32\SLUINotify.dll
01:51:53.0717 2888 SLUINotify - ok
01:51:53.0763 2888 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
01:51:53.0763 2888 Smb - ok
01:51:53.0841 2888 smserial (c8a58fc905c9184fa70e37f71060c64d) C:\Windows\system32\DRIVERS\smserial.sys
01:51:53.0857 2888 smserial - ok
01:51:53.0888 2888 SNMPTRAP (2a146a055b4401c16ee62d18b8e2a032) C:\Windows\System32\snmptrap.exe
01:51:53.0904 2888 SNMPTRAP - ok
01:51:53.0997 2888 SNP2UVC (060f51141b20b8156804446a04ab8b2a) C:\Windows\system32\DRIVERS\snp2uvc.sys
01:51:54.0013 2888 SNP2UVC - ok
01:51:54.0107 2888 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
01:51:54.0107 2888 spldr - ok
01:51:54.0153 2888 Spooler (8554097e5136c3bf9f69fe578a1b35f4) C:\Windows\System32\spoolsv.exe
01:51:54.0153 2888 Spooler - ok
01:51:54.0185 2888 SRS_PremiumSound_Service (43e8e8238ff52a807d5c17f1ae5cc49c) C:\Windows\system32\drivers\srs_PremiumSound_i386.sys
01:51:54.0200 2888 SRS_PremiumSound_Service - ok
01:51:54.0231 2888 srv (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys
01:51:54.0247 2888 srv - ok
01:51:54.0278 2888 srv2 (ff33aff99564b1aa534f58868cbe41ef) C:\Windows\system32\DRIVERS\srv2.sys
01:51:54.0278 2888 srv2 - ok
01:51:54.0294 2888 srvnet (7605c0e1d01a08f3ecd743f38b834a44) C:\Windows\system32\DRIVERS\srvnet.sys
01:51:54.0294 2888 srvnet - ok
01:51:54.0325 2888 SSDPSRV (03d50b37234967433a5ea5ba72bc0b62) C:\Windows\System32\ssdpsrv.dll
01:51:54.0325 2888 SSDPSRV - ok
01:51:54.0356 2888 SstpSvc (6f1a32e7b7b30f004d9a20afadb14944) C:\Windows\system32\sstpsvc.dll
01:51:54.0356 2888 SstpSvc - ok
01:51:54.0387 2888 StarOpen (306521935042fc0a6988d528643619b3) C:\Windows\system32\drivers\StarOpen.sys
01:51:54.0387 2888 StarOpen - ok
01:51:54.0419 2888 stisvc (5de7d67e49b88f5f07f3e53c4b92a352) C:\Windows\System32\wiaservc.dll
01:51:54.0434 2888 stisvc - ok
01:51:54.0465 2888 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
01:51:54.0465 2888 swenum - ok
01:51:54.0497 2888 swprv (f21fd248040681cca1fb6c9a03aaa93d) C:\Windows\System32\swprv.dll
01:51:54.0512 2888 swprv - ok
01:51:54.0528 2888 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
01:51:54.0528 2888 Symc8xx - ok
01:51:54.0543 2888 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
01:51:54.0543 2888 Sym_hi - ok
01:51:54.0559 2888 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
01:51:54.0575 2888 Sym_u3 - ok
01:51:54.0606 2888 SysMain (9a51b04e9886aa4ee90093586b0ba88d) C:\Windows\system32\sysmain.dll
01:51:54.0621 2888 SysMain - ok
01:51:54.0653 2888 TabletInputService (2dca225eae15f42c0933e998ee0231c3) C:\Windows\System32\TabSvc.dll
01:51:54.0653 2888 TabletInputService - ok
01:51:54.0699 2888 TapiSrv (d7673e4b38ce21ee54c59eeeb65e2483) C:\Windows\System32\tapisrv.dll
01:51:54.0699 2888 TapiSrv - ok
01:51:54.0715 2888 TBS (cb05822cd9cc6c688168e113c603dbe7) C:\Windows\System32\tbssvc.dll
01:51:54.0731 2888 TBS - ok
01:51:54.0809 2888 Tcpip (16731b631f28f63cd9f4cb60940e7ddd) C:\Windows\system32\drivers\tcpip.sys
01:51:54.0809 2888 Tcpip - ok
01:51:54.0824 2888 Tcpip6 (16731b631f28f63cd9f4cb60940e7ddd) C:\Windows\system32\DRIVERS\tcpip.sys
01:51:54.0840 2888 Tcpip6 - ok
01:51:54.0871 2888 tcpipreg (3fc13f09af9be487c7b4fac4070a036c) C:\Windows\system32\drivers\tcpipreg.sys
01:51:54.0871 2888 tcpipreg - ok
01:51:54.0902 2888 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
01:51:54.0918 2888 TDPIPE - ok
01:51:54.0918 2888 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
01:51:54.0933 2888 TDTCP - ok
01:51:54.0949 2888 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
01:51:54.0965 2888 tdx - ok
01:51:54.0996 2888 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
01:51:54.0996 2888 TermDD - ok
01:51:55.0043 2888 TermService (bb95da09bef6e7a131bff3ba5032090d) C:\Windows\System32\termsrv.dll
01:51:55.0058 2888 TermService - ok
01:51:55.0089 2888 Themes (c7230fbee14437716701c15be02c27b8) C:\Windows\system32\shsvcs.dll
01:51:55.0089 2888 Themes - ok
01:51:55.0121 2888 THREADORDER (1076ffcffaae8385fd62dfcb25ac4708) C:\Windows\system32\mmcss.dll
01:51:55.0136 2888 THREADORDER - ok
01:51:55.0152 2888 TrkWks (ec74e77d0eb004bd3a809b5f8fb8c2ce) C:\Windows\System32\trkwks.dll
01:51:55.0167 2888 TrkWks - ok
01:51:55.0199 2888 TrustedInstaller (97d9d6a04e3ad9b6c626b9931db78dba) C:\Windows\servicing\TrustedInstaller.exe
01:51:55.0199 2888 TrustedInstaller - ok
01:51:55.0230 2888 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
01:51:55.0245 2888 tssecsrv - ok
01:51:55.0245 2888 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
01:51:55.0261 2888 tunmp - ok
01:51:55.0292 2888 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys
01:51:55.0292 2888 tunnel - ok
01:51:55.0308 2888 uagp35 (7d33c4db2ce363c8518d2dfcf533941f) C:\Windows\system32\drivers\uagp35.sys
01:51:55.0308 2888 uagp35 - ok
01:51:55.0339 2888 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
01:51:55.0355 2888 udfs - ok
01:51:55.0386 2888 UI0Detect (ecef404f62863755951e09c802c94ad5) C:\Windows\system32\UI0Detect.exe
01:51:55.0386 2888 UI0Detect - ok
01:51:55.0417 2888 uliagpkx (b0acfdc9e4af279e9116c03e014b2b27) C:\Windows\system32\drivers\uliagpkx.sys
01:51:55.0417 2888 uliagpkx - ok
01:51:55.0448 2888 uliahci (9224bb254f591de4ca8d572a5f0d635c) C:\Windows\system32\drivers\uliahci.sys
01:51:55.0448 2888 uliahci - ok
01:51:55.0464 2888 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
01:51:55.0464 2888 UlSata - ok
01:51:55.0495 2888 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
01:51:55.0495 2888 ulsata2 - ok
01:51:55.0511 2888 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
01:51:55.0526 2888 umbus - ok
01:51:55.0542 2888 upnphost (68308183f4ae0be7bf8ecd07cb297999) C:\Windows\System32\upnphost.dll
01:51:55.0557 2888 upnphost - ok
01:51:55.0589 2888 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
01:51:55.0604 2888 usbccgp - ok
01:51:55.0620 2888 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
01:51:55.0620 2888 usbcir - ok
01:51:55.0651 2888 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
01:51:55.0651 2888 usbehci - ok
01:51:55.0667 2888 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
01:51:55.0682 2888 usbhub - ok
01:51:55.0698 2888 usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys
01:51:55.0698 2888 usbohci - ok
01:51:55.0729 2888 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys
01:51:55.0729 2888 usbprint - ok
01:51:55.0760 2888 usbscan (a508c9bd8724980512136b039bba65e9) C:\Windows\system32\DRIVERS\usbscan.sys
01:51:55.0776 2888 usbscan - ok
01:51:55.0807 2888 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
01:51:55.0807 2888 USBSTOR - ok
01:51:55.0823 2888 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
01:51:55.0823 2888 usbuhci - ok
01:51:55.0854 2888 usbvideo (e67998e8f14cb0627a769f6530bcb352) C:\Windows\system32\Drivers\usbvideo.sys
01:51:55.0854 2888 usbvideo - ok
01:51:55.0901 2888 UxSms (1509e705f3ac1d474c92454a5c2dd81f) C:\Windows\System32\uxsms.dll
01:51:55.0901 2888 UxSms - ok
01:51:55.0932 2888 vds (cd88d1b7776dc17a119049742ec07eb4) C:\Windows\System32\vds.exe
01:51:55.0947 2888 vds - ok
01:51:55.0963 2888 vga (87b06e1f30b749a114f74622d013f8d4) C:\Windows\system32\DRIVERS\vgapnp.sys
01:51:55.0963 2888 vga - ok
01:51:55.0979 2888 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
01:51:55.0994 2888 VgaSave - ok
01:51:56.0010 2888 viaagp (5d7159def58a800d5781ba3a879627bc) C:\Windows\system32\drivers\viaagp.sys
01:51:56.0010 2888 viaagp - ok
01:51:56.0025 2888 ViaC7 (c4f3a691b5bad343e6249bd8c2d45dee) C:\Windows\system32\drivers\viac7.sys
01:51:56.0041 2888 ViaC7 - ok
01:51:56.0103 2888 VIAHdAudAddService (6970bc9f9316d3a61d8e0dfd0f2d4cec) C:\Windows\system32\drivers\viahduaa.sys
01:51:56.0119 2888 VIAHdAudAddService - ok
01:51:56.0135 2888 viaide (aadf5587a4063f52c2c3fed7887426fc) C:\Windows\system32\drivers\viaide.sys
01:51:56.0135 2888 viaide - ok
01:51:56.0150 2888 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
01:51:56.0166 2888 volmgr - ok
01:51:56.0197 2888 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
01:51:56.0197 2888 volmgrx - ok
01:51:56.0244 2888 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
01:51:56.0244 2888 volsnap - ok
01:51:56.0275 2888 vsmraid (587253e09325e6bf226b299774b728a9) C:\Windows\system32\drivers\vsmraid.sys
01:51:56.0291 2888 vsmraid - ok
01:51:56.0337 2888 VSS (db3d19f850c6eb32bdcb9bc0836acddb) C:\Windows\system32\vssvc.exe
01:51:56.0353 2888 VSS - ok
01:51:56.0400 2888 W32Time (96ea68b9eb310a69c25ebb0282b2b9de) C:\Windows\system32\w32time.dll
01:51:56.0415 2888 W32Time - ok
01:51:56.0447 2888 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
01:51:56.0462 2888 WacomPen - ok
01:51:56.0478 2888 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
01:51:56.0493 2888 Wanarp - ok
01:51:56.0493 2888 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
01:51:56.0493 2888 Wanarpv6 - ok
01:51:56.0525 2888 wcncsvc (a3cd60fd826381b49f03832590e069af) C:\Windows\System32\wcncsvc.dll
01:51:56.0540 2888 wcncsvc - ok
01:51:56.0571 2888 WcsPlugInService (11bcb7afcdd7aadacb5746f544d3a9c7) C:\Windows\System32\WcsPlugInService.dll
01:51:56.0571 2888 WcsPlugInService - ok
01:51:56.0603 2888 Wd (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys
01:51:56.0603 2888 Wd - ok
01:51:56.0649 2888 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
01:51:56.0665 2888 Wdf01000 - ok
01:51:56.0681 2888 WdiServiceHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\Windows\system32\wdi.dll
01:51:56.0681 2888 WdiServiceHost - ok
01:51:56.0696 2888 WdiSystemHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\Windows\system32\wdi.dll
01:51:56.0696 2888 WdiSystemHost - ok
01:51:56.0727 2888 WebClient (04c37d8107320312fbae09926103d5e2) C:\Windows\System32\webclnt.dll
01:51:56.0743 2888 WebClient - ok
01:51:56.0774 2888 Wecsvc (ae3736e7e8892241c23e4ebbb7453b60) C:\Windows\system32\wecsvc.dll
01:51:56.0774 2888 Wecsvc - ok
01:51:56.0821 2888 wercplsupport (670ff720071ed741206d69bd995ea453) C:\Windows\System32\wercplsupport.dll
01:51:56.0821 2888 wercplsupport - ok
01:51:56.0852 2888 WerSvc (32b88481d3b326da6deb07b1d03481e7) C:\Windows\System32\WerSvc.dll
01:51:56.0852 2888 WerSvc - ok
01:51:56.0930 2888 WinDefend (4575aa12561c5648483403541d0d7f2b) C:\Program Files\Windows Defender\mpsvc.dll
01:51:56.0946 2888 WinDefend - ok
01:51:56.0946 2888 WinHttpAutoProxySvc - ok
01:51:57.0008 2888 Winmgmt (6b2a1d0e80110e3d04e6863c6e62fd8a) C:\Windows\system32\wbem\WMIsvc.dll
01:51:57.0008 2888 Winmgmt - ok
01:51:57.0086 2888 WinRM (7cfe68bdc065e55aa5e8421607037511) C:\Windows\system32\WsmSvc.dll
01:51:57.0102 2888 WinRM - ok
01:51:57.0164 2888 Wlansvc (c008405e4feeb069e30da1d823910234) C:\Windows\System32\wlansvc.dll
01:51:57.0180 2888 Wlansvc - ok
01:51:57.0227 2888 wlcrasvc (6067acef367e79914af628fa1e9b5330) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
01:51:57.0227 2888 wlcrasvc - ok
01:51:57.0351 2888 wlidsvc (fb01d4ae207b9efdbabfc55dc95c7e31) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
01:51:57.0367 2888 wlidsvc - ok
01:51:57.0476 2888 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\DRIVERS\wmiacpi.sys
01:51:57.0476 2888 WmiAcpi - ok
01:51:57.0523 2888 wmiApSrv (43be3875207dcb62a85c8c49970b66cc) C:\Windows\system32\wbem\WmiApSrv.exe
01:51:57.0539 2888 wmiApSrv - ok
01:51:57.0648 2888 WMPNetworkSvc (3978704576a121a9204f8cc49a301a9b) C:\Program Files\Windows Media Player\wmpnetwk.exe
01:51:57.0648 2888 WMPNetworkSvc - ok
01:51:57.0679 2888 WPCSvc (cfc5a04558f5070cee3e3a7809f3ff52) C:\Windows\System32\wpcsvc.dll
01:51:57.0695 2888 WPCSvc - ok
01:51:57.0726 2888 WPDBusEnum (801fbdb89d472b3c467eb112a0fc9246) C:\Windows\system32\wpdbusenum.dll
01:51:57.0726 2888 WPDBusEnum - ok
01:51:57.0773 2888 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys
01:51:57.0788 2888 WpdUsb - ok
01:51:57.0882 2888 WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
01:51:57.0882 2888 WPFFontCache_v0400 - ok
01:51:57.0913 2888 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
01:51:57.0929 2888 ws2ifsl - ok
01:51:57.0944 2888 wscsvc (1ca6c40261ddc0425987980d0cd2aaab) C:\Windows\system32\wscsvc.dll
01:51:57.0960 2888 wscsvc - ok
01:51:57.0960 2888 WSearch - ok
01:51:58.0085 2888 wuauserv (6298277b73c77fa99106b271a7525163) C:\Windows\system32\wuaueng.dll
01:51:58.0116 2888 wuauserv - ok
01:51:58.0241 2888 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
01:51:58.0241 2888 WUDFRd - ok
01:51:58.0287 2888 wudfsvc (575a4190d989f64732119e4114045a4f) C:\Windows\System32\WUDFSvc.dll
01:51:58.0287 2888 wudfsvc - ok
01:51:58.0319 2888 yukonwlh (7d1f3b131d503ef43ee594b5a2b9b427) C:\Windows\system32\DRIVERS\yk60x86.sys
01:51:58.0319 2888 yukonwlh - ok
01:51:58.0381 2888 MBR (0x1B8) (64b1e91c5c6c2157642651010728f90f) \Device\Harddisk0\DR0
01:51:58.0443 2888 \Device\Harddisk0\DR0 - ok
01:51:58.0443 2888 Boot (0x1200) (0e8a4c23db97a562b5430dfa2f319019) \Device\Harddisk0\DR0\Partition0
01:51:58.0459 2888 \Device\Harddisk0\DR0\Partition0 - ok
01:51:58.0475 2888 Boot (0x1200) (669bb553ac0c2696b8e566a6b5390fc6) \Device\Harddisk0\DR0\Partition1
01:51:58.0475 2888 \Device\Harddisk0\DR0\Partition1 - ok
01:51:58.0475 2888 ============================================================
01:51:58.0475 2888 Scan finished
01:51:58.0475 2888 ============================================================
01:51:58.0490 2824 Detected object count: 0
01:51:58.0490 2824 Actual detected object count: 0
01:58:08.0474 0788 ============================================================
01:58:08.0474 0788 Scan started
01:58:08.0474 0788 Mode: Manual;
01:58:08.0474 0788 ============================================================
01:58:08.0911 0788 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
01:58:08.0911 0788 ACPI - ok
01:58:08.0989 0788 AdobeFlashPlayerUpdateSvc (76d5a3d2a50402a0b9b6ed13c4371e79) C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
01:58:08.0989 0788 AdobeFlashPlayerUpdateSvc - ok
01:58:09.0036 0788 adp94xx (04f0fcac69c7c71a3ac4eb97fafc8303) C:\Windows\system32\drivers\adp94xx.sys
01:58:09.0052 0788 adp94xx - ok
01:58:09.0083 0788 adpahci (60505e0041f7751bdbb80f88bf45c2ce) C:\Windows\system32\drivers\adpahci.sys
01:58:09.0098 0788 adpahci - ok
01:58:09.0130 0788 adpu160m (8a42779b02aec986eab64ecfc98f8bd7) C:\Windows\system32\drivers\adpu160m.sys
01:58:09.0130 0788 adpu160m - ok
01:58:09.0161 0788 adpu320 (241c9e37f8ce45ef51c3de27515ca4e5) C:\Windows\system32\drivers\adpu320.sys
01:58:09.0161 0788 adpu320 - ok
01:58:09.0192 0788 AeLookupSvc (9d1fda9e086ba64e3c93c9de32461bcf) C:\Windows\System32\aelupsvc.dll
01:58:09.0192 0788 AeLookupSvc - ok
01:58:09.0239 0788 AFD (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys
01:58:09.0239 0788 AFD - ok
01:58:09.0270 0788 agp440 (13f9e33747e6b41a3ff305c37db0d360) C:\Windows\system32\drivers\agp440.sys
01:58:09.0270 0788 agp440 - ok
01:58:09.0301 0788 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
01:58:09.0301 0788 aic78xx - ok
01:58:09.0332 0788 ALG (a1545b731579895d8cc44fc0481c1192) C:\Windows\System32\alg.exe
01:58:09.0348 0788 ALG - ok
01:58:09.0364 0788 aliide (9eaef5fc9b8e351afa7e78a6fae91f91) C:\Windows\system32\drivers\aliide.sys
01:58:09.0364 0788 aliide - ok
01:58:09.0395 0788 amdagp (c47344bc706e5f0b9dce369516661578) C:\Windows\system32\drivers\amdagp.sys
01:58:09.0395 0788 amdagp - ok
01:58:09.0410 0788 amdide (9b78a39a4c173fdbc1321e0dd659b34c) C:\Windows\system32\drivers\amdide.sys
01:58:09.0410 0788 amdide - ok
01:58:09.0426 0788 AmdK7 (18f29b49ad23ecee3d2a826c725c8d48) C:\Windows\system32\drivers\amdk7.sys
01:58:09.0426 0788 AmdK7 - ok
01:58:09.0442 0788 AmdK8 (93ae7f7dd54ab986a6f1a1b37be7442d) C:\Windows\system32\drivers\amdk8.sys
01:58:09.0442 0788 AmdK8 - ok
01:58:09.0488 0788 Appinfo (c6d704c7f0434dc791aac37cac4b6e14) C:\Windows\System32\appinfo.dll
01:58:09.0488 0788 Appinfo - ok
01:58:09.0504 0788 arc (5d2888182fb46632511acee92fdad522) C:\Windows\system32\drivers\arc.sys
01:58:09.0520 0788 arc - ok
01:58:09.0535 0788 arcsas (5e2a321bd7c8b3624e41fdec3e244945) C:\Windows\system32\drivers\arcsas.sys
01:58:09.0535 0788 arcsas - ok
01:58:09.0660 0788 ASLDRService (d513efb8bf66fd2401119083abb72da4) C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe
01:58:09.0660 0788 ASLDRService - ok
01:58:09.0707 0788 ASMMAP (7b4d08d2017ac06689d422e06c43f0aa) C:\Program Files\ATKGFNEX\ASMMAP.sys
01:58:09.0707 0788 ASMMAP - ok
01:58:09.0722 0788 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
01:58:09.0738 0788 AsyncMac - ok
01:58:09.0769 0788 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys
01:58:09.0769 0788 atapi - ok
01:58:09.0832 0788 athr (2846f5ee802889d500fcf5cc48b28381) C:\Windows\system32\DRIVERS\athr.sys
01:58:09.0847 0788 athr - ok
01:58:09.0894 0788 ATKGFNEXSrv (4854043ddcd7ae2842b97a081be5c7ae) C:\Program Files\ATKGFNEX\GFNEXSrv.exe
01:58:09.0894 0788 ATKGFNEXSrv - ok
01:58:09.0956 0788 AudioEndpointBuilder (68e2a1a0407a66cf50da0300852424ab) C:\Windows\System32\Audiosrv.dll
01:58:09.0956 0788 AudioEndpointBuilder - ok
01:58:09.0956 0788 Audiosrv (68e2a1a0407a66cf50da0300852424ab) C:\Windows\System32\Audiosrv.dll
01:58:09.0972 0788 Audiosrv - ok
01:58:10.0019 0788 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
01:58:10.0034 0788 Beep - ok
01:58:10.0081 0788 BFE (c789af0f724fda5852fb9a7d3a432381) C:\Windows\System32\bfe.dll
01:58:10.0081 0788 BFE - ok
01:58:10.0144 0788 BITS (93952506c6d67330367f7e7934b6a02f) C:\Windows\system32\qmgr.dll
01:58:10.0190 0788 BITS - ok
01:58:10.0222 0788 blbdrive (d4df28447741fd3d953526e33a617397) C:\Windows\system32\drivers\blbdrive.sys
01:58:10.0222 0788 blbdrive - ok
01:58:10.0253 0788 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys
01:58:10.0253 0788 bowser - ok
01:58:10.0268 0788 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
01:58:10.0284 0788 BrFiltLo - ok
01:58:10.0315 0788 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
01:58:10.0315 0788 BrFiltUp - ok
01:58:10.0346 0788 Browser (a3629a0c4226f9e9c72faaeebc3ad33c) C:\Windows\System32\browser.dll
01:58:10.0362 0788 Browser - ok
01:58:10.0393 0788 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
01:58:10.0393 0788 Brserid - ok
01:58:10.0424 0788 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
01:58:10.0424 0788 BrSerWdm - ok
01:58:10.0456 0788 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
01:58:10.0456 0788 BrUsbMdm - ok
01:58:10.0487 0788 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
01:58:10.0487 0788 BrUsbSer - ok
01:58:10.0502 0788 BthEnum (6d39c954799b63ba866910234cf7d726) C:\Windows\system32\DRIVERS\BthEnum.sys
01:58:10.0502 0788 BthEnum - ok
01:58:10.0534 0788 BTHMODEM (9a966a8e86d1771911ae34a20d11bff3) C:\Windows\system32\DRIVERS\bthmodem.sys
01:58:10.0534 0788 BTHMODEM - ok
01:58:10.0565 0788 BthPan (5904efa25f829bf84ea6fb045134a1d8) C:\Windows\system32\DRIVERS\bthpan.sys
01:58:10.0565 0788 BthPan - ok
01:58:10.0612 0788 BTHPORT (611ff3f2f095c8d4a6d4cfd9dcc09793) C:\Windows\system32\Drivers\BTHport.sys
01:58:10.0612 0788 BTHPORT - ok
01:58:10.0658 0788 BthServ (a4c8377fa4a994e07075107dbe2e3dce) C:\Windows\System32\bthserv.dll
01:58:10.0674 0788 BthServ - ok
01:58:10.0705 0788 BTHUSB (d330803eab2a15caec7f011f1d4cb30e) C:\Windows\system32\Drivers\BTHUSB.sys
01:58:10.0705 0788 BTHUSB - ok
01:58:10.0752 0788 catchme - ok
01:58:10.0783 0788 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
01:58:10.0783 0788 cdfs - ok
01:58:10.0799 0788 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
01:58:10.0814 0788 cdrom - ok
01:58:10.0861 0788 CertPropSvc (312ec3e37a0a1f2006534913e37b4423) C:\Windows\System32\certprop.dll
01:58:10.0877 0788 CertPropSvc - ok
01:58:10.0892 0788 circlass (e5d4133f37219dbcfe102bc61072589d) C:\Windows\system32\drivers\circlass.sys
01:58:10.0892 0788 circlass - ok
01:58:10.0924 0788 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
01:58:10.0939 0788 CLFS - ok
01:58:10.0986 0788 clr_optimization_v2.0.50727_32 (8ee772032e2fe80a924f3b8dd5082194) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
01:58:10.0986 0788 clr_optimization_v2.0.50727_32 - ok
01:58:11.0048 0788 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
01:58:11.0048 0788 clr_optimization_v4.0.30319_32 - ok
01:58:11.0080 0788 CmBatt (99afc3795b58cc478fbbbcdc658fcb56) C:\Windows\system32\DRIVERS\CmBatt.sys
01:58:11.0080 0788 CmBatt - ok
01:58:11.0111 0788 cmderd (1d075a3c34544bc5532e9fcbdbe38d67) C:\Windows\system32\DRIVERS\cmderd.sys
01:58:11.0111 0788 cmderd - ok
01:58:11.0142 0788 cmdGuard (0a2e8cde40d6fd252f4a66558d6cd18d) C:\Windows\system32\DRIVERS\cmdguard.sys
01:58:11.0158 0788 cmdGuard - ok
01:58:11.0173 0788 cmdHlp (beb0da2bf48a8f7ad3c49e893936466c) C:\Windows\system32\DRIVERS\cmdhlp.sys
01:58:11.0173 0788 cmdHlp - ok
01:58:11.0189 0788 cmdide (0ca25e686a4928484e9fdabd168ab629) C:\Windows\system32\drivers\cmdide.sys
01:58:11.0204 0788 cmdide - ok
01:58:11.0220 0788 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\DRIVERS\compbatt.sys
01:58:11.0220 0788 Compbatt - ok
01:58:11.0220 0788 COMSysApp - ok
01:58:11.0236 0788 crcdisk (741e9dff4f42d2d8477d0fc1dc0df871) C:\Windows\system32\drivers\crcdisk.sys
01:58:11.0236 0788 crcdisk - ok
01:58:11.0267 0788 Crusoe (1f07becdca750766a96cda811ba86410) C:\Windows\system32\drivers\crusoe.sys
01:58:11.0282 0788 Crusoe - ok
01:58:11.0314 0788 CryptSvc (fb27772beaf8e1d28ccd825c09da939b) C:\Windows\system32\cryptsvc.dll
01:58:11.0329 0788 CryptSvc - ok
01:58:11.0423 0788 DcomLaunch (3b5b4d53fec14f7476ca29a20cc31ac9) C:\Windows\system32\rpcss.dll
01:58:11.0438 0788 DcomLaunch - ok
01:58:11.0532 0788 DfSdkS (92ae26f2caf4a67e24a0ba6ddf32cc3c) C:\Program Files\Ashampoo\Ashampoo WinOptimizer 8\DfsdkS.exe
01:58:11.0548 0788 DfSdkS - ok
01:58:11.0672 0788 DFSR (2cc3dcfb533a1035b13dcab6160ab38b) C:\Windows\system32\DFSR.exe
01:58:11.0704 0788 DFSR - ok
01:58:11.0844 0788 Dhcp (9028559c132146fb75eb7acf384b086a) C:\Windows\System32\dhcpcsvc.dll
01:58:11.0844 0788 Dhcp - ok
01:58:11.0891 0788 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
01:58:11.0891 0788 disk - ok
01:58:11.0922 0788 Dnscache (57d762f6f5974af0da2be88a3349baaa) C:\Windows\System32\dnsrslvr.dll
01:58:11.0922 0788 Dnscache - ok
01:58:11.0953 0788 dot3svc (324fd74686b1ef5e7c19a8af49e748f6) C:\Windows\System32\dot3svc.dll
01:58:11.0969 0788 dot3svc - ok
01:58:12.0000 0788 DPS (a622e888f8aa2f6b49e9bc466f0e5def) C:\Windows\system32\dps.dll
01:58:12.0000 0788 DPS - ok
01:58:12.0031 0788 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
01:58:12.0031 0788 drmkaud - ok
01:58:12.0078 0788 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
01:58:12.0094 0788 DXGKrnl - ok
01:58:12.0109 0788 E1G60 (5425f74ac0c1dbd96a1e04f17d63f94c) C:\Windows\system32\DRIVERS\E1G60I32.sys
01:58:12.0125 0788 E1G60 - ok
01:58:12.0140 0788 EapHost (c0b95e40d85cd807d614e264248a45b9) C:\Windows\System32\eapsvc.dll
01:58:12.0140 0788 EapHost - ok
01:58:12.0187 0788 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
01:58:12.0187 0788 Ecache - ok
01:58:12.0234 0788 ehRecvr (9be3744d295a7701eb425332014f0797) C:\Windows\ehome\ehRecvr.exe
01:58:12.0234 0788 ehRecvr - ok
01:58:12.0265 0788 ehSched (ad1870c8e5d6dd340c829e6074bf3c3f) C:\Windows\ehome\ehsched.exe
01:58:12.0265 0788 ehSched - ok
01:58:12.0265 0788 ehstart (c27c4ee8926e74aa72efcab24c5242c3) C:\Windows\ehome\ehstart.dll
01:58:12.0281 0788 ehstart - ok
01:58:12.0312 0788 elxstor (23b62471681a124889978f6295b3f4c6) C:\Windows\system32\drivers\elxstor.sys
01:58:12.0328 0788 elxstor - ok
01:58:12.0390 0788 EMDMgmt (4e6b23dfc917ea39306b529b773950f4) C:\Windows\system32\emdmgmt.dll
01:58:12.0406 0788 EMDMgmt - ok
01:58:12.0437 0788 ErrDev (3db974f3935483555d7148663f726c61) C:\Windows\system32\drivers\errdev.sys
01:58:12.0437 0788 ErrDev - ok
01:58:12.0468 0788 ETD (3c1d6b99320c64eb3423e229128d5182) C:\Windows\system32\DRIVERS\ETD.sys
01:58:12.0468 0788 ETD - ok
01:58:12.0515 0788 EventSystem (67058c46504bc12d821f38cf99b7b28f) C:\Windows\system32\es.dll
01:58:12.0515 0788 EventSystem - ok
01:58:12.0546 0788 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
01:58:12.0562 0788 exfat - ok
01:58:12.0593 0788 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
01:58:12.0593 0788 fastfat - ok
01:58:12.0624 0788 fdc (afe1e8b9782a0dd7fb46bbd88e43f89a) C:\Windows\system32\DRIVERS\fdc.sys
01:58:12.0640 0788 fdc - ok
01:58:12.0671 0788 fdPHost (6629b5f0e98151f4afdd87567ea32ba3) C:\Windows\system32\fdPHost.dll
01:58:12.0671 0788 fdPHost - ok
01:58:12.0686 0788 FDResPub (89ed56dce8e47af40892778a5bd31fd2) C:\Windows\system32\fdrespub.dll
01:58:12.0686 0788 FDResPub - ok
01:58:12.0702 0788 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
01:58:12.0702 0788 FileInfo - ok
01:58:12.0718 0788 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
01:58:12.0718 0788 Filetrace - ok
01:58:12.0718 0788 flpydisk (85b7cf99d532820495d68d747fda9ebd) C:\Windows\system32\DRIVERS\flpydisk.sys
01:58:12.0733 0788 flpydisk - ok
01:58:12.0780 0788 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
01:58:12.0796 0788 FltMgr - ok
01:58:12.0858 0788 FontCache (8ce364388c8eca59b14b539179276d44) C:\Windows\system32\FntCache.dll
01:58:12.0874 0788 FontCache - ok
01:58:12.0936 0788 FontCache3.0.0.0 (c7fbdd1ed42f82bfa35167a5c9803ea3) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
01:58:12.0936 0788 FontCache3.0.0.0 - ok
01:58:12.0967 0788 fssfltr (bfaaa92861526bb0adcd01e964ab6609) C:\Windows\system32\DRIVERS\fssfltr.sys
01:58:12.0967 0788 fssfltr - ok
01:58:13.0123 0788 fsssvc (40cdfad174b3d5e80f95dda003c0b97f) C:\Program Files\Windows Live\Family Safety\fsssvc.exe
01:58:13.0154 0788 fsssvc - ok
01:58:13.0264 0788 Fs_Rec (b972a66758577e0bfd1de0f91aaa27b5) C:\Windows\system32\drivers\Fs_Rec.sys
01:58:13.0264 0788 Fs_Rec - ok
01:58:13.0295 0788 gagp30kx (34582a6e6573d54a07ece5fe24a126b5) C:\Windows\system32\drivers\gagp30kx.sys
01:58:13.0295 0788 gagp30kx - ok
01:58:13.0326 0788 GDMnIcpt (5dfba6993b046d3f7df603b485444be3) C:\Windows\system32\drivers\MiniIcpt.sys
01:58:13.0342 0788 GDMnIcpt - ok
01:58:13.0388 0788 gpsvc (cd5d0aeee35dfd4e986a5aa1500a6e66) C:\Windows\System32\gpsvc.dll
01:58:13.0404 0788 gpsvc - ok
01:58:13.0435 0788 HdAudAddService (cb04c744be0a61b1d648faed182c3b59) C:\Windows\system32\drivers\HdAudio.sys
01:58:13.0451 0788 HdAudAddService - ok
01:58:13.0482 0788 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys
01:58:13.0498 0788 HDAudBus - ok
01:58:13.0513 0788 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
01:58:13.0529 0788 HidBth - ok
01:58:13.0544 0788 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys
01:58:13.0544 0788 HidIr - ok
01:58:13.0576 0788 hidserv (84067081f3318162797385e11a8f0582) C:\Windows\System32\hidserv.dll
01:58:13.0576 0788 hidserv - ok
01:58:13.0622 0788 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\Windows\system32\DRIVERS\hidusb.sys
01:58:13.0622 0788 HidUsb - ok
01:58:13.0654 0788 hkmsvc (d8ad255b37da92434c26e4876db7d418) C:\Windows\system32\kmsvc.dll
01:58:13.0654 0788 hkmsvc - ok
01:58:13.0685 0788 HookCentre (7a19e6cb7cddd9d5b5c0c49930628e80) C:\Windows\system32\drivers\HookCentre.sys
01:58:13.0685 0788 HookCentre - ok
01:58:13.0716 0788 HpCISSs (16ee7b23a009e00d835cdb79574a91a6) C:\Windows\system32\drivers\hpcisss.sys
01:58:13.0716 0788 HpCISSs - ok
01:58:13.0763 0788 HTTP (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys
01:58:13.0763 0788 HTTP - ok
01:58:13.0778 0788 i2omp (c6b032d69650985468160fc9937cf5b4) C:\Windows\system32\drivers\i2omp.sys
01:58:13.0778 0788 i2omp - ok
01:58:13.0825 0788 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
01:58:13.0825 0788 i8042prt - ok
01:58:13.0856 0788 iaStor (71ecc07bc7c5e24c3dd01d8a29a24054) C:\Windows\system32\DRIVERS\iaStor.sys
01:58:13.0872 0788 iaStor - ok
01:58:13.0888 0788 iaStorV (54155ea1b0df185878e0fc9ec3ac3a14) C:\Windows\system32\drivers\iastorv.sys
01:58:13.0903 0788 iaStorV - ok
01:58:13.0997 0788 idsvc (98477b08e61945f974ed9fdc4cb6bdab) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
01:58:14.0012 0788 idsvc - ok
01:58:14.0449 0788 igfx (dce0b53570703cce580d066f89ef58cd) C:\Windows\system32\DRIVERS\igdkmd32.sys
01:58:14.0527 0788 igfx - ok
01:58:14.0652 0788 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
01:58:14.0652 0788 iirsp - ok
01:58:14.0683 0788 IKEEXT (9908d8a397b76cd8d31d0d383c5773c9) C:\Windows\System32\ikeext.dll
01:58:14.0699 0788 IKEEXT - ok
01:58:14.0730 0788 inspect (2c03538258729852d55f9f2b8906a8b9) C:\Windows\system32\DRIVERS\inspect.sys
01:58:14.0730 0788 inspect - ok
01:58:14.0746 0788 intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys
01:58:14.0761 0788 intelide - ok
01:58:14.0777 0788 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
01:58:14.0777 0788 intelppm - ok
01:58:14.0808 0788 IPBusEnum (9ac218c6e6105477484c6fdbe7d409a4) C:\Windows\system32\ipbusenum.dll
01:58:14.0808 0788 IPBusEnum - ok
01:58:14.0839 0788 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
01:58:14.0839 0788 IpFilterDriver - ok
01:58:14.0870 0788 iphlpsvc (1998bd97f950680bb55f55a7244679c2) C:\Windows\System32\iphlpsvc.dll
01:58:14.0886 0788 iphlpsvc - ok
01:58:14.0886 0788 IpInIp - ok
01:58:14.0917 0788 IPMIDRV (b25aaf203552b7b3491139d582b39ad1) C:\Windows\system32\drivers\ipmidrv.sys
01:58:14.0917 0788 IPMIDRV - ok
01:58:14.0933 0788 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
01:58:14.0948 0788 IPNAT - ok
01:58:14.0964 0788 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
01:58:14.0964 0788 IRENUM - ok
01:58:14.0980 0788 isapnp (6c70698a3e5c4376c6ab5c7c17fb0614) C:\Windows\system32\drivers\isapnp.sys
01:58:14.0980 0788 isapnp - ok
01:58:15.0011 0788 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
01:58:15.0026 0788 iScsiPrt - ok
01:58:15.0042 0788 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
01:58:15.0042 0788 iteatapi - ok
01:58:15.0058 0788 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
01:58:15.0058 0788 iteraid - ok
01:58:15.0073 0788 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
01:58:15.0089 0788 kbdclass - ok
01:58:15.0104 0788 kbdhid (ede59ec70e25c24581add1fbec7325f7) C:\Windows\system32\DRIVERS\kbdhid.sys
01:58:15.0120 0788 kbdhid - ok
01:58:15.0136 0788 kbfiltr (7f2b8d0b31fb4a797e5786ef124c5a80) C:\Windows\system32\DRIVERS\kbfiltr.sys
01:58:15.0136 0788 kbfiltr - ok
01:58:15.0151 0788 KeyIso (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
01:58:15.0167 0788 KeyIso - ok
01:58:15.0182 0788 KMWDFILTER (566c5fd480fdbce3ba5cf9fbcffaea9a) C:\Windows\system32\DRIVERS\KMWDFILTER.sys
01:58:15.0198 0788 KMWDFILTER - ok
01:58:15.0229 0788 KSecDD (2b2f1638466e8cb091400c9019cc730e) C:\Windows\system32\Drivers\ksecdd.sys
01:58:15.0229 0788 KSecDD - ok
01:58:15.0260 0788 KtmRm (8078f8f8f7a79e2e6b494523a828c585) C:\Windows\system32\msdtckrm.dll
01:58:15.0276 0788 KtmRm - ok
01:58:15.0292 0788 L1E (24abddeb766c8459f9d562eb083b6cb8) C:\Windows\system32\DRIVERS\L1E60x86.sys
01:58:15.0292 0788 L1E - ok
01:58:15.0323 0788 LanmanServer (1bf5eebfd518dd7298434d8c862f825d) C:\Windows\System32\srvsvc.dll
01:58:15.0323 0788 LanmanServer - ok
01:58:15.0370 0788 LanmanWorkstation (1db69705b695b987082c8baec0c6b34f) C:\Windows\System32\wkssvc.dll
01:58:15.0370 0788 LanmanWorkstation - ok
01:58:15.0416 0788 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
01:58:15.0416 0788 lltdio - ok
01:58:15.0448 0788 lltdsvc (2d5a428872f1442631d0959a34abff63) C:\Windows\System32\lltdsvc.dll
01:58:15.0448 0788 lltdsvc - ok
01:58:15.0479 0788 lmhosts (35d40113e4a5b961b6ce5c5857702518) C:\Windows\System32\lmhsvc.dll
01:58:15.0479 0788 lmhosts - ok
01:58:15.0510 0788 LSI_FC (c7e15e82879bf3235b559563d4185365) C:\Windows\system32\drivers\lsi_fc.sys
01:58:15.0510 0788 LSI_FC - ok
01:58:15.0526 0788 LSI_SAS (ee01ebae8c9bf0fa072e0ff68718920a) C:\Windows\system32\drivers\lsi_sas.sys
01:58:15.0526 0788 LSI_SAS - ok
01:58:15.0541 0788 LSI_SCSI (912a04696e9ca30146a62afa1463dd5c) C:\Windows\system32\drivers\lsi_scsi.sys
01:58:15.0557 0788 LSI_SCSI - ok
01:58:15.0572 0788 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
01:58:15.0572 0788 luafv - ok
01:58:15.0619 0788 Mcx2Svc (aef9babb8a506bc4ce0451a64aaded46) C:\Windows\system32\Mcx2Svc.dll
01:58:15.0619 0788 Mcx2Svc - ok
01:58:15.0635 0788 megasas (0001ce609d66632fa17b84705f658879) C:\Windows\system32\drivers\megasas.sys
01:58:15.0650 0788 megasas - ok
01:58:15.0682 0788 MegaSR (c252f32cd9a49dbfc25ecf26ebd51a99) C:\Windows\system32\drivers\megasr.sys
01:58:15.0682 0788 MegaSR - ok
01:58:15.0760 0788 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
01:58:15.0775 0788 Microsoft Office Groove Audit Service - ok
01:58:15.0806 0788 MMCSS (1076ffcffaae8385fd62dfcb25ac4708) C:\Windows\system32\mmcss.dll
01:58:15.0806 0788 MMCSS - ok
01:58:15.0838 0788 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
01:58:15.0838 0788 Modem - ok
01:58:15.0869 0788 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
01:58:15.0869 0788 monitor - ok
01:58:15.0884 0788 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
01:58:15.0884 0788 mouclass - ok
01:58:15.0900 0788 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
01:58:15.0900 0788 mouhid - ok
01:58:15.0931 0788 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
01:58:15.0931 0788 MountMgr - ok
01:58:15.0962 0788 mpio (511d011289755dd9f9a7579fb0b064e6) C:\Windows\system32\drivers\mpio.sys
01:58:15.0962 0788 mpio - ok
01:58:15.0978 0788 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
01:58:15.0978 0788 mpsdrv - ok
01:58:16.0025 0788 MpsSvc (5de62c6e9108f14f6794060a9bdecaec) C:\Windows\system32\mpssvc.dll
01:58:16.0025 0788 MpsSvc - ok
01:58:16.0040 0788 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
01:58:16.0040 0788 Mraid35x - ok
01:58:16.0087 0788 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
01:58:16.0087 0788 MRxDAV - ok
01:58:16.0118 0788 mrxsmb (1e94971c4b446ab2290deb71d01cf0c2) C:\Windows\system32\DRIVERS\mrxsmb.sys
01:58:16.0118 0788 mrxsmb - ok
01:58:16.0150 0788 mrxsmb10 (4fccb34d793b116423209c0f8b7a3b03) C:\Windows\system32\DRIVERS\mrxsmb10.sys
01:58:16.0165 0788 mrxsmb10 - ok
01:58:16.0181 0788 mrxsmb20 (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
01:58:16.0181 0788 mrxsmb20 - ok
01:58:16.0212 0788 msahci (28023e86f17001f7cd9b15a5bc9ae07d) C:\Windows\system32\drivers\msahci.sys
01:58:16.0212 0788 msahci - ok
01:58:16.0228 0788 msdsm (4468b0f385a86ecddaf8d3ca662ec0e7) C:\Windows\system32\drivers\msdsm.sys
01:58:16.0243 0788 msdsm - ok
01:58:16.0274 0788 MSDTC (fd7520cc3a80c5fc8c48852bb24c6ded) C:\Windows\System32\msdtc.exe
01:58:16.0274 0788 MSDTC - ok
01:58:16.0306 0788 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
01:58:16.0306 0788 Msfs - ok
01:58:16.0321 0788 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
01:58:16.0321 0788 msisadrv - ok
01:58:16.0368 0788 MSiSCSI (85466c0757a23d9a9aecdc0755203cb2) C:\Windows\system32\iscsiexe.dll
01:58:16.0368 0788 MSiSCSI - ok
01:58:16.0368 0788 msiserver - ok
01:58:16.0384 0788 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
01:58:16.0399 0788 MSKSSRV - ok
01:58:16.0399 0788 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
01:58:16.0399 0788 MSPCLOCK - ok
01:58:16.0430 0788 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
01:58:16.0430 0788 MSPQM - ok
01:58:16.0462 0788 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
01:58:16.0477 0788 MsRPC - ok
01:58:16.0477 0788 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
01:58:16.0493 0788 mssmbios - ok
01:58:16.0508 0788 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
01:58:16.0508 0788 MSTEE - ok
01:58:16.0540 0788 MTsensor (bb16693616427eac1a436e106ea8d318) C:\Windows\system32\DRIVERS\ATKACPI.sys
01:58:16.0540 0788 MTsensor - ok
01:58:16.0555 0788 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
01:58:16.0571 0788 Mup - ok
01:58:16.0586 0788 napagent (e4eaf0c5c1b41b5c83386cf212ca9584) C:\Windows\system32\qagentRT.dll
01:58:16.0618 0788 napagent - ok
01:58:16.0649 0788 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
01:58:16.0649 0788 NativeWifiP - ok
01:58:16.0696 0788 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
01:58:16.0711 0788 NDIS - ok
01:58:16.0742 0788 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
01:58:16.0742 0788 NdisTapi - ok
01:58:16.0758 0788 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
01:58:16.0758 0788 Ndisuio - ok
01:58:16.0789 0788 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
01:58:16.0789 0788 NdisWan - ok

Re: chová se divně

Napsal: 12 kvě 2012 01:09
od olcit
01:58:16.0805 0788 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
01:58:16.0820 0788 NDProxy - ok
01:58:16.0836 0788 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
01:58:16.0852 0788 NetBIOS - ok
01:58:16.0883 0788 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
01:58:16.0898 0788 netbt - ok
01:58:16.0914 0788 Netlogon (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
01:58:16.0914 0788 Netlogon - ok
01:58:16.0961 0788 Netman (c8052711daecc48b982434c5116ca401) C:\Windows\System32\netman.dll
01:58:16.0976 0788 Netman - ok
01:58:16.0992 0788 netprofm (2ef3bbe22e5a5acd1428ee387a0d0172) C:\Windows\System32\netprofm.dll
01:58:16.0992 0788 netprofm - ok
01:58:17.0039 0788 netr73 (91d44aa2a61006136da32118a179bf12) C:\Windows\system32\DRIVERS\netr73.sys
01:58:17.0054 0788 netr73 - ok
01:58:17.0101 0788 NetTcpPortSharing (d6c4e4a39a36029ac0813d476fbd0248) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
01:58:17.0117 0788 NetTcpPortSharing - ok
01:58:17.0132 0788 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
01:58:17.0148 0788 nfrd960 - ok
01:58:17.0179 0788 NlaSvc (2997b15415f9bbe05b5a4c1c85e0c6a2) C:\Windows\System32\nlasvc.dll
01:58:17.0195 0788 NlaSvc - ok
01:58:17.0226 0788 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
01:58:17.0226 0788 Npfs - ok
01:58:17.0242 0788 nsi (8bb86f0c7eea2bded6fe095d0b4ca9bd) C:\Windows\system32\nsisvc.dll
01:58:17.0242 0788 nsi - ok
01:58:17.0273 0788 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
01:58:17.0273 0788 nsiproxy - ok
01:58:17.0351 0788 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
01:58:17.0366 0788 Ntfs - ok
01:58:17.0398 0788 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
01:58:17.0398 0788 ntrigdigi - ok
01:58:17.0413 0788 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
01:58:17.0429 0788 Null - ok
01:58:17.0444 0788 nvraid (2edf9e7751554b42cbb60116de727101) C:\Windows\system32\drivers\nvraid.sys
01:58:17.0460 0788 nvraid - ok
01:58:17.0476 0788 nvstor (abed0c09758d1d97db0042dbb2688177) C:\Windows\system32\drivers\nvstor.sys
01:58:17.0491 0788 nvstor - ok
01:58:17.0507 0788 nv_agp (18bbdf913916b71bd54575bdb6eeac0b) C:\Windows\system32\drivers\nv_agp.sys
01:58:17.0507 0788 nv_agp - ok
01:58:17.0507 0788 NwlnkFlt - ok
01:58:17.0522 0788 NwlnkFwd - ok
01:58:17.0632 0788 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
01:58:17.0632 0788 odserv - ok
01:58:17.0647 0788 ohci1394 (790e27c3db53410b40ff9ef2fd10a1d9) C:\Windows\system32\DRIVERS\ohci1394.sys
01:58:17.0663 0788 ohci1394 - ok
01:58:17.0694 0788 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
01:58:17.0694 0788 ose - ok
01:58:17.0756 0788 p2pimsvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
01:58:17.0772 0788 p2pimsvc - ok
01:58:17.0788 0788 p2psvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
01:58:17.0788 0788 p2psvc - ok
01:58:17.0834 0788 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys
01:58:17.0834 0788 Parport - ok
01:58:17.0866 0788 partmgr (57389fa59a36d96b3eb09d0cb91e9cdc) C:\Windows\system32\drivers\partmgr.sys
01:58:17.0866 0788 partmgr - ok
01:58:17.0881 0788 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys
01:58:17.0881 0788 Parvdm - ok
01:58:17.0912 0788 PcaSvc (c6276ad11f4bb49b58aa1ed88537f14a) C:\Windows\System32\pcasvc.dll
01:58:17.0928 0788 PcaSvc - ok
01:58:17.0959 0788 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
01:58:17.0959 0788 pci - ok
01:58:17.0975 0788 pciide (fc175f5ddab666d7f4d17449a547626f) C:\Windows\system32\drivers\pciide.sys
01:58:17.0975 0788 pciide - ok
01:58:18.0006 0788 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
01:58:18.0022 0788 pcmcia - ok
01:58:18.0053 0788 pcouffin (5b6c11de7e839c05248ced8825470fef) C:\Windows\system32\Drivers\pcouffin.sys
01:58:18.0053 0788 pcouffin - ok
01:58:18.0100 0788 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
01:58:18.0115 0788 PEAUTH - ok
01:58:18.0209 0788 pla (b1689df169143f57053f795390c99db3) C:\Windows\system32\pla.dll
01:58:18.0240 0788 pla - ok
01:58:18.0349 0788 PlugPlay (c5e7f8a996ec0a82d508fd9064a5569e) C:\Windows\system32\umpnpmgr.dll
01:58:18.0349 0788 PlugPlay - ok
01:58:18.0396 0788 PNRPAutoReg (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
01:58:18.0396 0788 PNRPAutoReg - ok
01:58:18.0412 0788 PNRPsvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
01:58:18.0427 0788 PNRPsvc - ok
01:58:18.0474 0788 PolicyAgent (d0494460421a03cd5225cca0059aa146) C:\Windows\System32\ipsecsvc.dll
01:58:18.0490 0788 PolicyAgent - ok
01:58:18.0536 0788 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
01:58:18.0536 0788 PptpMiniport - ok
01:58:18.0568 0788 Processor (2027293619dd0f047c584cf2e7df4ffd) C:\Windows\system32\drivers\processr.sys
01:58:18.0583 0788 Processor - ok
01:58:18.0614 0788 ProfSvc (0508faa222d28835310b7bfca7a77346) C:\Windows\system32\profsvc.dll
01:58:18.0614 0788 ProfSvc - ok
01:58:18.0646 0788 ProtectedStorage (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
01:58:18.0646 0788 ProtectedStorage - ok
01:58:18.0677 0788 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
01:58:18.0677 0788 PSched - ok
01:58:18.0755 0788 ql2300 (0a6db55afb7820c99aa1f3a1d270f4f6) C:\Windows\system32\drivers\ql2300.sys
01:58:18.0770 0788 ql2300 - ok
01:58:18.0786 0788 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
01:58:18.0802 0788 ql40xx - ok
01:58:18.0833 0788 QWAVE (e9ecae663f47e6cb43962d18ab18890f) C:\Windows\system32\qwave.dll
01:58:18.0833 0788 QWAVE - ok
01:58:18.0864 0788 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
01:58:18.0864 0788 QWAVEdrv - ok
01:58:18.0880 0788 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
01:58:18.0895 0788 RasAcd - ok
01:58:18.0895 0788 RasAuto (f6a452eb4ceadbb51c9e0ee6b3ecef0f) C:\Windows\System32\rasauto.dll
01:58:18.0911 0788 RasAuto - ok
01:58:18.0926 0788 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
01:58:18.0926 0788 Rasl2tp - ok
01:58:18.0973 0788 RasMan (75d47445d70ca6f9f894b032fbc64fcf) C:\Windows\System32\rasmans.dll
01:58:18.0973 0788 RasMan - ok
01:58:19.0004 0788 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
01:58:19.0004 0788 RasPppoe - ok
01:58:19.0020 0788 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
01:58:19.0020 0788 RasSstp - ok
01:58:19.0067 0788 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
01:58:19.0067 0788 rdbss - ok
01:58:19.0098 0788 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
01:58:19.0098 0788 RDPCDD - ok
01:58:19.0129 0788 rdpdr (fbc0bacd9c3d7f6956853f64a66e252d) C:\Windows\system32\drivers\rdpdr.sys
01:58:19.0129 0788 rdpdr - ok
01:58:19.0129 0788 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
01:58:19.0145 0788 RDPENCDD - ok
01:58:19.0192 0788 RDPWD (79c6df8477250f5c54f7c5ae1d6b814e) C:\Windows\system32\drivers\RDPWD.sys
01:58:19.0192 0788 RDPWD - ok
01:58:19.0223 0788 RemoteAccess (bcdd6b4804d06b1f7ebf29e53a57ece9) C:\Windows\System32\mprdim.dll
01:58:19.0223 0788 RemoteAccess - ok
01:58:19.0254 0788 RemoteRegistry (9e6894ea18daff37b63e1005f83ae4ab) C:\Windows\system32\regsvc.dll
01:58:19.0254 0788 RemoteRegistry - ok
01:58:19.0285 0788 RFCOMM (6482707f9f4da0ecbab43b2e0398a101) C:\Windows\system32\DRIVERS\rfcomm.sys
01:58:19.0285 0788 RFCOMM - ok
01:58:19.0301 0788 RpcLocator (5123f83cbc4349d065534eeb6bbdc42b) C:\Windows\system32\locator.exe
01:58:19.0316 0788 RpcLocator - ok
01:58:19.0363 0788 RpcSs (3b5b4d53fec14f7476ca29a20cc31ac9) C:\Windows\System32\rpcss.dll
01:58:19.0379 0788 RpcSs - ok
01:58:19.0410 0788 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
01:58:19.0410 0788 rspndr - ok
01:58:19.0426 0788 SamSs (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
01:58:19.0441 0788 SamSs - ok
01:58:19.0457 0788 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
01:58:19.0472 0788 sbp2port - ok
01:58:19.0504 0788 SCardSvr (77b7a11a0c3d78d3386398fbbea1b632) C:\Windows\System32\SCardSvr.dll
01:58:19.0519 0788 SCardSvr - ok
01:58:19.0582 0788 Schedule (1a58069db21d05eb2ab58ee5753ebe8d) C:\Windows\system32\schedsvc.dll
01:58:19.0582 0788 Schedule - ok
01:58:19.0628 0788 SCPolicySvc (312ec3e37a0a1f2006534913e37b4423) C:\Windows\System32\certprop.dll
01:58:19.0628 0788 SCPolicySvc - ok
01:58:19.0660 0788 sdbus (126ea89bcc413ee45e3004fb0764888f) C:\Windows\system32\DRIVERS\sdbus.sys
01:58:19.0660 0788 sdbus - ok
01:58:19.0706 0788 SDRSVC (716313d9f6b0529d03f726d5aaf6f191) C:\Windows\System32\SDRSVC.dll
01:58:19.0706 0788 SDRSVC - ok
01:58:19.0722 0788 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
01:58:19.0722 0788 secdrv - ok
01:58:19.0722 0788 seclogon (fd5199d4d8a521005e4b5ee7fe00fa9b) C:\Windows\system32\seclogon.dll
01:58:19.0738 0788 seclogon - ok
01:58:19.0753 0788 SENS (a9bbab5759771e523f55563d6cbe140f) C:\Windows\system32\sens.dll
01:58:19.0753 0788 SENS - ok
01:58:19.0769 0788 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys
01:58:19.0784 0788 Serenum - ok
01:58:19.0800 0788 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys
01:58:19.0800 0788 Serial - ok
01:58:19.0816 0788 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
01:58:19.0831 0788 sermouse - ok
01:58:19.0862 0788 SessionEnv (d2193326f729b163125610dbf3e17d57) C:\Windows\system32\sessenv.dll
01:58:19.0878 0788 SessionEnv - ok
01:58:19.0878 0788 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\drivers\sffdisk.sys
01:58:19.0878 0788 sffdisk - ok
01:58:19.0894 0788 sffp_mmc (e95d451f7ea3e583aec75f3b3ee42dc5) C:\Windows\system32\drivers\sffp_mmc.sys
01:58:19.0894 0788 sffp_mmc - ok
01:58:19.0909 0788 sffp_sd (3d0ea348784b7ac9ea9bd9f317980979) C:\Windows\system32\drivers\sffp_sd.sys
01:58:19.0925 0788 sffp_sd - ok
01:58:19.0940 0788 sfloppy (c33bfbd6e9e41fcd9ffef9729e9faed6) C:\Windows\system32\DRIVERS\sfloppy.sys
01:58:19.0940 0788 sfloppy - ok
01:58:19.0987 0788 SharedAccess (e1499bd0ff76b1b2fbbf1af339d91165) C:\Windows\System32\ipnathlp.dll
01:58:19.0987 0788 SharedAccess - ok
01:58:20.0018 0788 ShellHWDetection (c7230fbee14437716701c15be02c27b8) C:\Windows\System32\shsvcs.dll
01:58:20.0018 0788 ShellHWDetection - ok
01:58:20.0050 0788 sisagp (1d76624a09a054f682d746b924e2dbc3) C:\Windows\system32\drivers\sisagp.sys
01:58:20.0050 0788 sisagp - ok
01:58:20.0065 0788 SiSRaid2 (43cb7aa756c7db280d01da9b676cfde2) C:\Windows\system32\drivers\sisraid2.sys
01:58:20.0065 0788 SiSRaid2 - ok
01:58:20.0081 0788 SiSRaid4 (a99c6c8b0baa970d8aa59ddc50b57f94) C:\Windows\system32\drivers\sisraid4.sys
01:58:20.0081 0788 SiSRaid4 - ok
01:58:20.0362 0788 slsvc (862bb4cbc05d80c5b45be430e5ef872f) C:\Windows\system32\SLsvc.exe
01:58:20.0408 0788 slsvc - ok
01:58:20.0533 0788 SLUINotify (6edc422215cd78aa8a9cde6b30abbd35) C:\Windows\system32\SLUINotify.dll
01:58:20.0533 0788 SLUINotify - ok
01:58:20.0596 0788 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
01:58:20.0611 0788 Smb - ok
01:58:20.0689 0788 smserial (c8a58fc905c9184fa70e37f71060c64d) C:\Windows\system32\DRIVERS\smserial.sys
01:58:20.0705 0788 smserial - ok
01:58:20.0736 0788 SNMPTRAP (2a146a055b4401c16ee62d18b8e2a032) C:\Windows\System32\snmptrap.exe
01:58:20.0752 0788 SNMPTRAP - ok
01:58:20.0845 0788 SNP2UVC (060f51141b20b8156804446a04ab8b2a) C:\Windows\system32\DRIVERS\snp2uvc.sys
01:58:20.0876 0788 SNP2UVC - ok
01:58:21.0001 0788 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
01:58:21.0001 0788 spldr - ok
01:58:21.0032 0788 Spooler (8554097e5136c3bf9f69fe578a1b35f4) C:\Windows\System32\spoolsv.exe
01:58:21.0048 0788 Spooler - ok
01:58:21.0079 0788 SRS_PremiumSound_Service (43e8e8238ff52a807d5c17f1ae5cc49c) C:\Windows\system32\drivers\srs_PremiumSound_i386.sys
01:58:21.0095 0788 SRS_PremiumSound_Service - ok
01:58:21.0126 0788 srv (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys
01:58:21.0142 0788 srv - ok
01:58:21.0173 0788 srv2 (ff33aff99564b1aa534f58868cbe41ef) C:\Windows\system32\DRIVERS\srv2.sys
01:58:21.0173 0788 srv2 - ok
01:58:21.0204 0788 srvnet (7605c0e1d01a08f3ecd743f38b834a44) C:\Windows\system32\DRIVERS\srvnet.sys
01:58:21.0204 0788 srvnet - ok
01:58:21.0235 0788 SSDPSRV (03d50b37234967433a5ea5ba72bc0b62) C:\Windows\System32\ssdpsrv.dll
01:58:21.0251 0788 SSDPSRV - ok
01:58:21.0266 0788 SstpSvc (6f1a32e7b7b30f004d9a20afadb14944) C:\Windows\system32\sstpsvc.dll
01:58:21.0282 0788 SstpSvc - ok
01:58:21.0298 0788 StarOpen (306521935042fc0a6988d528643619b3) C:\Windows\system32\drivers\StarOpen.sys
01:58:21.0298 0788 StarOpen - ok
01:58:21.0344 0788 stisvc (5de7d67e49b88f5f07f3e53c4b92a352) C:\Windows\System32\wiaservc.dll
01:58:21.0360 0788 stisvc - ok
01:58:21.0376 0788 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
01:58:21.0391 0788 swenum - ok
01:58:21.0422 0788 swprv (f21fd248040681cca1fb6c9a03aaa93d) C:\Windows\System32\swprv.dll
01:58:21.0438 0788 swprv - ok
01:58:21.0454 0788 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
01:58:21.0454 0788 Symc8xx - ok
01:58:21.0485 0788 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
01:58:21.0485 0788 Sym_hi - ok
01:58:21.0500 0788 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
01:58:21.0516 0788 Sym_u3 - ok
01:58:21.0578 0788 SysMain (9a51b04e9886aa4ee90093586b0ba88d) C:\Windows\system32\sysmain.dll
01:58:21.0594 0788 SysMain - ok
01:58:21.0625 0788 TabletInputService (2dca225eae15f42c0933e998ee0231c3) C:\Windows\System32\TabSvc.dll
01:58:21.0641 0788 TabletInputService - ok
01:58:21.0672 0788 TapiSrv (d7673e4b38ce21ee54c59eeeb65e2483) C:\Windows\System32\tapisrv.dll
01:58:21.0688 0788 TapiSrv - ok
01:58:21.0703 0788 TBS (cb05822cd9cc6c688168e113c603dbe7) C:\Windows\System32\tbssvc.dll
01:58:21.0703 0788 TBS - ok
01:58:21.0781 0788 Tcpip (16731b631f28f63cd9f4cb60940e7ddd) C:\Windows\system32\drivers\tcpip.sys
01:58:21.0797 0788 Tcpip - ok
01:58:21.0812 0788 Tcpip6 (16731b631f28f63cd9f4cb60940e7ddd) C:\Windows\system32\DRIVERS\tcpip.sys
01:58:21.0828 0788 Tcpip6 - ok
01:58:21.0844 0788 tcpipreg (3fc13f09af9be487c7b4fac4070a036c) C:\Windows\system32\drivers\tcpipreg.sys
01:58:21.0859 0788 tcpipreg - ok
01:58:21.0890 0788 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
01:58:21.0890 0788 TDPIPE - ok
01:58:21.0906 0788 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
01:58:21.0906 0788 TDTCP - ok
01:58:21.0937 0788 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
01:58:21.0937 0788 tdx - ok
01:58:21.0968 0788 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
01:58:21.0968 0788 TermDD - ok
01:58:22.0031 0788 TermService (bb95da09bef6e7a131bff3ba5032090d) C:\Windows\System32\termsrv.dll
01:58:22.0046 0788 TermService - ok
01:58:22.0078 0788 Themes (c7230fbee14437716701c15be02c27b8) C:\Windows\system32\shsvcs.dll
01:58:22.0078 0788 Themes - ok
01:58:22.0124 0788 THREADORDER (1076ffcffaae8385fd62dfcb25ac4708) C:\Windows\system32\mmcss.dll
01:58:22.0124 0788 THREADORDER - ok
01:58:22.0156 0788 TrkWks (ec74e77d0eb004bd3a809b5f8fb8c2ce) C:\Windows\System32\trkwks.dll
01:58:22.0171 0788 TrkWks - ok
01:58:22.0202 0788 TrustedInstaller (97d9d6a04e3ad9b6c626b9931db78dba) C:\Windows\servicing\TrustedInstaller.exe
01:58:22.0202 0788 TrustedInstaller - ok
01:58:22.0234 0788 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
01:58:22.0234 0788 tssecsrv - ok
01:58:22.0249 0788 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
01:58:22.0249 0788 tunmp - ok
01:58:22.0280 0788 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys
01:58:22.0280 0788 tunnel - ok
01:58:22.0296 0788 uagp35 (7d33c4db2ce363c8518d2dfcf533941f) C:\Windows\system32\drivers\uagp35.sys
01:58:22.0312 0788 uagp35 - ok
01:58:22.0343 0788 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
01:58:22.0343 0788 udfs - ok
01:58:22.0374 0788 UI0Detect (ecef404f62863755951e09c802c94ad5) C:\Windows\system32\UI0Detect.exe
01:58:22.0390 0788 UI0Detect - ok
01:58:22.0405 0788 uliagpkx (b0acfdc9e4af279e9116c03e014b2b27) C:\Windows\system32\drivers\uliagpkx.sys
01:58:22.0421 0788 uliagpkx - ok
01:58:22.0436 0788 uliahci (9224bb254f591de4ca8d572a5f0d635c) C:\Windows\system32\drivers\uliahci.sys
01:58:22.0452 0788 uliahci - ok
01:58:22.0468 0788 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
01:58:22.0483 0788 UlSata - ok
01:58:22.0499 0788 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
01:58:22.0499 0788 ulsata2 - ok
01:58:22.0530 0788 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
01:58:22.0530 0788 umbus - ok
01:58:22.0561 0788 upnphost (68308183f4ae0be7bf8ecd07cb297999) C:\Windows\System32\upnphost.dll
01:58:22.0577 0788 upnphost - ok
01:58:22.0624 0788 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
01:58:22.0624 0788 usbccgp - ok
01:58:22.0639 0788 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
01:58:22.0639 0788 usbcir - ok
01:58:22.0670 0788 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
01:58:22.0670 0788 usbehci - ok
01:58:22.0702 0788 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
01:58:22.0702 0788 usbhub - ok
01:58:22.0717 0788 usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys
01:58:22.0717 0788 usbohci - ok
01:58:22.0748 0788 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys
01:58:22.0748 0788 usbprint - ok
01:58:22.0780 0788 usbscan (a508c9bd8724980512136b039bba65e9) C:\Windows\system32\DRIVERS\usbscan.sys
01:58:22.0795 0788 usbscan - ok
01:58:22.0826 0788 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
01:58:22.0826 0788 USBSTOR - ok
01:58:22.0842 0788 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
01:58:22.0842 0788 usbuhci - ok
01:58:22.0873 0788 usbvideo (e67998e8f14cb0627a769f6530bcb352) C:\Windows\system32\Drivers\usbvideo.sys
01:58:22.0873 0788 usbvideo - ok
01:58:22.0920 0788 UxSms (1509e705f3ac1d474c92454a5c2dd81f) C:\Windows\System32\uxsms.dll
01:58:22.0920 0788 UxSms - ok
01:58:22.0951 0788 vds (cd88d1b7776dc17a119049742ec07eb4) C:\Windows\System32\vds.exe
01:58:22.0967 0788 vds - ok
01:58:22.0982 0788 vga (87b06e1f30b749a114f74622d013f8d4) C:\Windows\system32\DRIVERS\vgapnp.sys
01:58:22.0998 0788 vga - ok
01:58:23.0014 0788 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
01:58:23.0014 0788 VgaSave - ok
01:58:23.0029 0788 viaagp (5d7159def58a800d5781ba3a879627bc) C:\Windows\system32\drivers\viaagp.sys
01:58:23.0029 0788 viaagp - ok
01:58:23.0076 0788 ViaC7 (c4f3a691b5bad343e6249bd8c2d45dee) C:\Windows\system32\drivers\viac7.sys
01:58:23.0076 0788 ViaC7 - ok
01:58:23.0138 0788 VIAHdAudAddService (6970bc9f9316d3a61d8e0dfd0f2d4cec) C:\Windows\system32\drivers\viahduaa.sys
01:58:23.0154 0788 VIAHdAudAddService - ok
01:58:23.0185 0788 viaide (aadf5587a4063f52c2c3fed7887426fc) C:\Windows\system32\drivers\viaide.sys
01:58:23.0185 0788 viaide - ok
01:58:23.0201 0788 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
01:58:23.0201 0788 volmgr - ok
01:58:23.0232 0788 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
01:58:23.0248 0788 volmgrx - ok
01:58:23.0279 0788 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
01:58:23.0294 0788 volsnap - ok
01:58:23.0310 0788 vsmraid (587253e09325e6bf226b299774b728a9) C:\Windows\system32\drivers\vsmraid.sys
01:58:23.0310 0788 vsmraid - ok
01:58:23.0404 0788 VSS (db3d19f850c6eb32bdcb9bc0836acddb) C:\Windows\system32\vssvc.exe
01:58:23.0419 0788 VSS - ok
01:58:23.0450 0788 W32Time (96ea68b9eb310a69c25ebb0282b2b9de) C:\Windows\system32\w32time.dll
01:58:23.0466 0788 W32Time - ok
01:58:23.0513 0788 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
01:58:23.0513 0788 WacomPen - ok
01:58:23.0528 0788 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
01:58:23.0544 0788 Wanarp - ok
01:58:23.0544 0788 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
01:58:23.0544 0788 Wanarpv6 - ok
01:58:23.0591 0788 wcncsvc (a3cd60fd826381b49f03832590e069af) C:\Windows\System32\wcncsvc.dll
01:58:23.0591 0788 wcncsvc - ok
01:58:23.0622 0788 WcsPlugInService (11bcb7afcdd7aadacb5746f544d3a9c7) C:\Windows\System32\WcsPlugInService.dll
01:58:23.0622 0788 WcsPlugInService - ok
01:58:23.0653 0788 Wd (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys
01:58:23.0653 0788 Wd - ok
01:58:23.0700 0788 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
01:58:23.0700 0788 Wdf01000 - ok
01:58:23.0716 0788 WdiServiceHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\Windows\system32\wdi.dll
01:58:23.0731 0788 WdiServiceHost - ok
01:58:23.0731 0788 WdiSystemHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\Windows\system32\wdi.dll
01:58:23.0747 0788 WdiSystemHost - ok
01:58:23.0778 0788 WebClient (04c37d8107320312fbae09926103d5e2) C:\Windows\System32\webclnt.dll
01:58:23.0794 0788 WebClient - ok
01:58:23.0825 0788 Wecsvc (ae3736e7e8892241c23e4ebbb7453b60) C:\Windows\system32\wecsvc.dll
01:58:23.0840 0788 Wecsvc - ok
01:58:23.0872 0788 wercplsupport (670ff720071ed741206d69bd995ea453) C:\Windows\System32\wercplsupport.dll
01:58:23.0872 0788 wercplsupport - ok
01:58:23.0903 0788 WerSvc (32b88481d3b326da6deb07b1d03481e7) C:\Windows\System32\WerSvc.dll
01:58:23.0903 0788 WerSvc - ok
01:58:23.0996 0788 WinDefend (4575aa12561c5648483403541d0d7f2b) C:\Program Files\Windows Defender\mpsvc.dll
01:58:23.0996 0788 WinDefend - ok
01:58:24.0012 0788 WinHttpAutoProxySvc - ok
01:58:24.0074 0788 Winmgmt (6b2a1d0e80110e3d04e6863c6e62fd8a) C:\Windows\system32\wbem\WMIsvc.dll
01:58:24.0074 0788 Winmgmt - ok
01:58:24.0168 0788 WinRM (7cfe68bdc065e55aa5e8421607037511) C:\Windows\system32\WsmSvc.dll
01:58:24.0184 0788 WinRM - ok
01:58:24.0246 0788 Wlansvc (c008405e4feeb069e30da1d823910234) C:\Windows\System32\wlansvc.dll
01:58:24.0262 0788 Wlansvc - ok
01:58:24.0324 0788 wlcrasvc (6067acef367e79914af628fa1e9b5330) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
01:58:24.0324 0788 wlcrasvc - ok
01:58:24.0464 0788 wlidsvc (fb01d4ae207b9efdbabfc55dc95c7e31) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
01:58:24.0496 0788 wlidsvc - ok
01:58:24.0620 0788 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\DRIVERS\wmiacpi.sys
01:58:24.0620 0788 WmiAcpi - ok
01:58:24.0683 0788 wmiApSrv (43be3875207dcb62a85c8c49970b66cc) C:\Windows\system32\wbem\WmiApSrv.exe
01:58:24.0683 0788 wmiApSrv - ok
01:58:24.0808 0788 WMPNetworkSvc (3978704576a121a9204f8cc49a301a9b) C:\Program Files\Windows Media Player\wmpnetwk.exe
01:58:24.0823 0788 WMPNetworkSvc - ok
01:58:24.0854 0788 WPCSvc (cfc5a04558f5070cee3e3a7809f3ff52) C:\Windows\System32\wpcsvc.dll
01:58:24.0870 0788 WPCSvc - ok
01:58:24.0901 0788 WPDBusEnum (801fbdb89d472b3c467eb112a0fc9246) C:\Windows\system32\wpdbusenum.dll
01:58:24.0917 0788 WPDBusEnum - ok
01:58:24.0979 0788 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys
01:58:24.0979 0788 WpdUsb - ok
01:58:25.0104 0788 WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
01:58:25.0120 0788 WPFFontCache_v0400 - ok
01:58:25.0135 0788 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
01:58:25.0135 0788 ws2ifsl - ok
01:58:25.0166 0788 wscsvc (1ca6c40261ddc0425987980d0cd2aaab) C:\Windows\system32\wscsvc.dll
01:58:25.0182 0788 wscsvc - ok
01:58:25.0182 0788 WSearch - ok
01:58:25.0322 0788 wuauserv (6298277b73c77fa99106b271a7525163) C:\Windows\system32\wuaueng.dll
01:58:25.0354 0788 wuauserv - ok
01:58:25.0463 0788 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
01:58:25.0478 0788 WUDFRd - ok
01:58:25.0510 0788 wudfsvc (575a4190d989f64732119e4114045a4f) C:\Windows\System32\WUDFSvc.dll
01:58:25.0525 0788 wudfsvc - ok
01:58:25.0556 0788 yukonwlh (7d1f3b131d503ef43ee594b5a2b9b427) C:\Windows\system32\DRIVERS\yk60x86.sys
01:58:25.0556 0788 yukonwlh - ok
01:58:25.0603 0788 MBR (0x1B8) (64b1e91c5c6c2157642651010728f90f) \Device\Harddisk0\DR0
01:58:25.0666 0788 \Device\Harddisk0\DR0 - ok
01:58:25.0666 0788 Boot (0x1200) (0e8a4c23db97a562b5430dfa2f319019) \Device\Harddisk0\DR0\Partition0
01:58:25.0666 0788 \Device\Harddisk0\DR0\Partition0 - ok
01:58:25.0697 0788 Boot (0x1200) (669bb553ac0c2696b8e566a6b5390fc6) \Device\Harddisk0\DR0\Partition1
01:58:25.0697 0788 \Device\Harddisk0\DR0\Partition1 - ok
01:58:25.0697 0788 ============================================================
01:58:25.0697 0788 Scan finished
01:58:25.0697 0788 ============================================================
01:58:25.0712 2144 Detected object count: 0
01:58:25.0712 2144 Actual detected object count: 0

Re: chová se divně

Napsal: 12 kvě 2012 10:29
od Rudy
Něco tam je, ale není to MBR Rootkit. Sken je čistý. Zkuste ještě sken AVPTool: http://forum.viry.cz/viewtopic.php?f=29&t=58179 a dejte log.

Re: chová se divně

Napsal: 13 kvě 2012 04:57
od olcit
Je tu něco špatně. Ten log je tak obrovský, že ho sem vubec nemužu zkopírovat. Musel bych ho rozdělit asi tak na patnáct dílů. Co s tím?
Jako dokument txt. má velikost 83 Mb. To je hrůza.

Re: chová se divně

Napsal: 13 kvě 2012 10:18
od Rudy
To je. :D Někam ho upněte a dejte odkaz.

Re: chová se divně

Napsal: 13 kvě 2012 11:13
od olcit
jejda, tak to mě vubec nenapadlo. Je to uložený tady:
http://www.uloz.to/xSqig3w/olc-txt

Re: chová se divně

Napsal: 13 kvě 2012 16:11
od Rudy
Toto není ten správný log. Ten, co potřebuji vidět, vypadá asi takto:
Status: Deleted (events: 1)
9.3.2012 21:33:32 Deleted virus EICAR-Test-File C:\Documents and Settings\uzivatelo\AppData\Local\Temp\Av-test.txt High
Status: Detected (events: 4)
10.3.2012 00:34:51 Detected Trojan program Trojan.Win32.Agent.rexm C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1Y5BLTMH\upgrade[1].cab//upgrade.exe//data0002 High
10.3.2012 00:35:21 Detected Trojan program Trojan.Win32.Agent.rexm C:\Windows\System32\config\systemprofile\AppData\Local\Temporary Internet Files\Content.IE5\1Y5BLTMH\upgrade[1].cab//upgrade.exe//data0002 High
10.3.2012 00:36:38 Detected Trojan program Trojan.Win32.Agent.rexm C:\Windows\System32\config\systemprofile\Local Settings\Microsoft\Windows\Temporary Internet Files\Content.IE5\1Y5BLTMH\upgrade[1].cab//upgrade.exe//data0002 High
10.3.2012 00:36:54 Detected Trojan program Trojan.Win32.Agent.rexm C:\Windows\System32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\1Y5BLTMH\upgrade[1].cab//upgrade.exe//data0002 High

Re: chová se divně

Napsal: 13 kvě 2012 16:26
od olcit
Já vim, jsem kopyto! Bylo mi trochu divný, že je tak velkej. Udělal jsem to podle návodu a vyskočil jen tento. Jdu pátrat po tom pravém.

Re: chová se divně

Napsal: 13 kvě 2012 16:29
od Rudy
OK.

Re: chová se divně

Napsal: 13 kvě 2012 23:48
od olcit
Tak já už si nevim rady. Skenoval jsem to už 3x přesně podle návodu a nikdy se mi nepovedlo udělat ten log. Vždycky se zaseknu o toho kroku, kdy mam kliknout na tlačítko SAVE. To je totiž šedé a nereaguje. Není nějaká jiná cesta?