Stránka 1 z 3

Security shield - kajakk5

Napsal: 04 čer 2012 11:56
od kajakk5
Dobry den,
cetl jsem, jak jste pomohl odstranit Security shield. Mohl bych poprosit take o pomoc. Kolegyne mne pozadala o radu se svym notebookem. Dle Vasich navodu jinde jsem stahnul RSIT, ulozil na flash, ale v jejim PC jiz nelze spustit. Lze to nejak resit??? Dekuji K.

Re: Security shield - kajakk5

Napsal: 04 čer 2012 12:08
od vyosek
Zdravim, pekne poledne preji a vitam vas u nas na foru :welcome:

:arrow: Prispevek jsem oddelil od puvodniho, at se nam to neplete to kupy - je to takovy zvyk u nas . kazdy uzivatel na ma problem sve tema\thread

:arrow: Prihlaste se do nouzoveho rezimu (restart PC, mackat F8, zvolit Stav nouze s praci v siti)

:arrow: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
  • Ukoncete vsechny programy
  • Pokud pouzivate Win Vista ci W7, kliknete na RogueKiller pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pockejte na dokonceni PreScanu
  • Zvolte moznost Prohledat (scan)
  • Po dokonceni skenu kliknete na Zpráva (Report)- otevre se log, ten sem vlozte

Re: Security shield - kajakk5

Napsal: 04 čer 2012 12:18
od kajakk5
Dekuji za rychlou reakci..
Nize je log:
RogueKiller V7.5.2 [05/30/2012] by Tigzy
mail: tigzyRK<at>gmail<dot>com
Podpora: http://www.geekstogo.com/forum/files/fi ... guekiller/
Operační systém: Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v: Nouzový režim s prací v síti
Uživatel: Alena [Práva správce]
Mód: Kontrola -- Datum: 06/04/2012 13:14:48

¤¤¤ Škodlivé procesy: 1 ¤¤¤
[SUSP PATH] HelpPane.exe -- C:\Windows\helppane.exe -> KILLED [TermProc]

¤¤¤ Záznamy Registrů: 4 ¤¤¤
[SUSP PATH] HKCU\[...]\RunOnce : bpgoejs (C:\Users\Alena\AppData\Local\bpgoejs.exe) -> FOUND
[SUSP PATH] HKUS\S-1-5-21-2570096246-3669228605-2866419763-1000[...]\RunOnce : bpgoejs (C:\Users\Alena\AppData\Local\bpgoejs.exe) -> FOUND
[HJ] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND
[HJ] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND

¤¤¤ Zvláštní soubory / Složky: ¤¤¤
[FAKED] BrSerWdm.sys : c:\windows\system32\drivers\BrSerWdm.sys --> CANNOT FIX
[FAKED] ESM7SK.sys : c:\windows\system32\drivers\ESM7SK.sys --> CANNOT FIX
[FAKED] IPMIDrv.sys : c:\windows\system32\drivers\IPMIDrv.sys --> CANNOT FIX
[FAKED] ohci1394.sys : c:\windows\system32\drivers\ohci1394.sys --> CANNOT FIX
[FAKED] tcpip.sys : c:\windows\system32\drivers\tcpip.sys --> CANNOT FIX
[FAKED] VSTCNXT3.SYS : c:\windows\system32\drivers\VSTCNXT3.SYS --> CANNOT FIX

¤¤¤ Ovladač: [NENAHRÁNO] ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
127.0.0.1 localhost
::1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: TOSHIBA MK8037GSX +++++
--- User ---
[MBR] 0821cfae0aaeb7753a190186e1ce9cc2
[BSP] cf045a7e5e6678033d8fb20384bd1941 : Acer tatooed MBR Code
Partition table:
0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 63 | Size: 9993 Mo
1 - [ACTIVE] FAT16 (0x06) [VISIBLE] Offset (sectors): 20467712 | Size: 33294 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 88653824 | Size: 33030 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: Corsair Flash Voyager USB Device +++++
--- User ---
[MBR] bc677d79056b94e4fbacf23efdac2d54
[BSP] 33a07a59d299ab4ea9f4ab0156f9d86f : Windows XP MBR Code
Partition table:
0 - [ACTIVE] FAT16 (0x06) [VISIBLE] Offset (sectors): 32 | Size: 1919 Mo
User = LL1 ... OK!
Error reading LL2 MBR!

Dokončeno : << RKreport[1].txt >>
RKreport[1].txt

Re: Security shield - kajakk5

Napsal: 04 čer 2012 12:21
od vyosek
:arrow: Spustte znovu RogueKiller
  • Pokud pouzivate Win Vista ci W7, kliknete na RogueKiller pravym a dejte Run As Administrator ci Spustit jako spravce
  • Zvolte moznost Prohledat a pote Smazat a nasledne Zprava - otevre se log, ten sem vlozte
:arrow: Stahnete RKill http://download.bleepingcomputer.com/grinler/rkill.com :arrow: Dejte log z RSIT

:arrow: Stahnete si TDSSKiller http://support.kaspersky.com/downloads/ ... killer.exe
  • Kliknete na volbu Change parametrs
  • V obou oknech (Objects to scan i Additional Option) zakliknete vsechny moznosti - ve vsech ctvereccich musi mit fajecka
  • Kliknete na OK
  • Utilite prikazte, at skenuje - klik na Start Scan
  • Po dokonceni skenu se objevi okno, zkontrolujte, zda-li je vsude moznost Skip
  • Pokud moznost Skip nebude primarne nastavena, prekliknete ji na Skip
  • Pokud mate vsude Skip, kliknete na Continue
  • Na disku, kde mate Windows (obvykle c:\) ve tvaru TDSSKiller.nejaka cisilka _log.txt bude log - jeho obsah sem vlozte

Re: Security shield - kajakk5

Napsal: 04 čer 2012 13:15
od kajakk5
omlouvam se za zdrzeni, ale podarilo se mi zlomit Flash Voyager a musel jsem vse znovu a prehodit na jinou "flesku"
nize tedy uvadim tri logy. - pokusil jsem se barevne odlisit, jestli Vam to pomuze...?

1. log z RogueKiller:
RogueKiller V7.5.2 [05/30/2012] by Tigzy
mail: tigzyRK<at>gmail<dot>com
Podpora: http://www.geekstogo.com/forum/files/fi ... guekiller/
Operační systém: Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v: Nouzový režim s prací v síti
Uživatel: Alena [Práva správce]
Mód: Odebrat -- Datum: 06/04/2012 13:35:42

¤¤¤ Škodlivé procesy: 1 ¤¤¤
[SUSP PATH] RSIT.exe -- C:\Users\Alena\Desktop\RSIT.exe -> KILLED [TermProc]

¤¤¤ Záznamy Registrů: 3 ¤¤¤
[SUSP PATH] HKCU\[...]\RunOnce : bpgoejs (C:\Users\Alena\AppData\Local\bpgoejs.exe) -> DELETED
[HJ] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REPLACED (0)
[HJ] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REPLACED (0)

¤¤¤ Zvláštní soubory / Složky: ¤¤¤
[FAKED] BrSerWdm.sys : c:\windows\system32\drivers\BrSerWdm.sys --> CANNOT FIX
[FAKED] ESM7SK.sys : c:\windows\system32\drivers\ESM7SK.sys --> CANNOT FIX
[FAKED] IPMIDrv.sys : c:\windows\system32\drivers\IPMIDrv.sys --> CANNOT FIX
[FAKED] ohci1394.sys : c:\windows\system32\drivers\ohci1394.sys --> CANNOT FIX
[FAKED] tcpip.sys : c:\windows\system32\drivers\tcpip.sys --> CANNOT FIX
[FAKED] VSTCNXT3.SYS : c:\windows\system32\drivers\VSTCNXT3.SYS --> CANNOT FIX

¤¤¤ Ovladač: [NENAHRÁNO] ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
127.0.0.1 localhost
::1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: TOSHIBA MK8037GSX +++++
--- User ---
[MBR] 0821cfae0aaeb7753a190186e1ce9cc2
[BSP] cf045a7e5e6678033d8fb20384bd1941 : Acer tatooed MBR Code
Partition table:
0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 63 | Size: 9993 Mo
1 - [ACTIVE] FAT16 (0x06) [VISIBLE] Offset (sectors): 20467712 | Size: 33294 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 88653824 | Size: 33030 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: Corsair Flash Voyager USB Device +++++
--- User ---
[MBR] bc677d79056b94e4fbacf23efdac2d54
[BSP] 33a07a59d299ab4ea9f4ab0156f9d86f : Windows XP MBR Code
Partition table:
0 - [ACTIVE] FAT16 (0x06) [VISIBLE] Offset (sectors): 32 | Size: 1919 Mo
User = LL1 ... OK!
Error reading LL2 MBR!

Dokončeno : << RKreport[3].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt[/color]





2. log z RSIT:

Logfile of random's system information tool 1.09 (written by random/random)
Run by Alena at 2012-06-04 13:36:48
Microsoft® Windows Vista™ Home Basic Service Pack 2
System drive C: has 3 GB (8%) free of 33 GB
Total RAM: 1525 MB (65% free)

HijackThis download failed

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Alena\AppData\Roaming\Mozilla\Firefox\Profiles\2ekytp8n.default

prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "wtxpcom@mybrowserbar.com:4.3, youtubedownloader@mybrowserbar.com:4.3, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.16"
prefs.js - "keyword.URL" - "http://search.yahoo.com/search?fr=green ... =937811&p="

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.2.202.235 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFFICE.DLL
nppdf32.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files\Mozilla Firefox\searchplugins\
Cetrumcz_igeared.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
yahoo.xml

C:\Users\Alena\AppData\Roaming\Mozilla\Firefox\Profiles\2ekytp8n.default\extensions\
{800b5000-a755-47e1-992b-48a1c1357f07}
{ea614400-e918-4741-9a97-7a972ff7c30b}

C:\Users\Alena\AppData\Roaming\Mozilla\Firefox\Profiles\2ekytp8n.default\searchplugins\
conduit.xml
icqplugin-1.xml
icqplugin-10.xml
icqplugin-11.xml
icqplugin-12.xml
icqplugin-2.xml
icqplugin-3.xml
icqplugin-4.xml
icqplugin-5.xml
icqplugin-6.xml
icqplugin-7.xml
icqplugin-8.xml
icqplugin-9.xml
icqplugin.gif
icqplugin.src
icqplugin.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D}]
XTTBPos00 Class - C:\PROGRA~1\ICQTOO~1\toolbaru.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar1.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-03-23 59272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3FEE66E-E034-436a-86E4-9690573BEE8A}]
YouTube Downloader Toolbar - C:\Program Files\YouTube Downloader Toolbar\IE\5.8\youtubedownloaderToolbarIE.dll [2012-05-25 1125256]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll []
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll []
{D5D47440-0750-463D-BAEF-A47D02414806}
{F3FEE66E-E034-436a-86E4-9690573BEE8A} - YouTube Downloader Toolbar - C:\Program Files\YouTube Downloader Toolbar\IE\5.8\youtubedownloaderToolbarIE.dll [2012-05-25 1125256]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2007-03-21 174872]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-04-23 4435968]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2006-11-07 159744]
"SetPanel"=C:\Acer\APanel\APanel.cmd []
"WarReg_PopUp"=C:\Acer\WR_PopUp\WarReg_PopUp.exe []
"eRecoveryService"= []
"Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdSync.exe [2006-11-02 215552]
"eDataSecurity Loader"=C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe []
"eAudio"=C:\Acer\Empowering Technology\eAudio\eAudio.exe []
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
"Skytel"=C:\Windows\Skytel.exe [2007-04-13 1822720]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-02-11 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-02-11 166424]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-02-11 133656]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2012-03-26 931200]
""= []
"SearchSettings"=C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe [2012-05-25 992648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acer Tour Reminder]
C:\Acer\AcerTour\Reminder.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ares]
C:\Program Files\Ares\Ares.exe -h []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2012-02-29 17148552]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel]
C:\Windows\Skytel.exe [2007-04-13 1822720]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\T-Mobile Communication Centre]
C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe -autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Empowering Technology Launcher.lnk]
C:\Acer\Empowering Technology\eAPLauncher.exe 9999 []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="eNetHook.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-02-11 204800]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"vidc.XVID"=xvidvfw.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======List of files/folders created in the last 1 month======

2012-06-04 13:33:11 ----DC---- C:\Program Files\trend micro
2012-06-04 13:33:10 ----DC---- C:\rsit
2012-05-29 18:37:02 ----DC---- C:\Users\Alena\AppData\Roaming\MediaMonkey
2012-05-29 18:36:25 ----DC---- C:\ProgramData\MediaMonkey
2012-05-29 18:36:06 ----DC---- C:\Program Files\MediaMonkey
2012-05-27 11:32:45 ----DC---- C:\Program Files\Application Updater
2012-05-27 11:32:44 ----DC---- C:\Program Files\YouTube Downloader Toolbar
2012-05-27 11:32:44 ----DC---- C:\Program Files\Common Files\Spigot
2012-05-19 11:41:05 ----SHDC---- C:\Config.Msi
2012-05-18 19:04:09 ----DC---- C:\ProgramData\Mozilla
2012-05-18 19:04:09 ----DC---- C:\Program Files\Mozilla Maintenance Service
2012-05-09 20:26:27 ----AC---- C:\Windows\system32\drivers\partmgr.sys
2012-05-09 20:26:26 ----AC---- C:\Windows\system32\drivers\tcpipreg.sys
2012-05-09 20:26:26 ----AC---- C:\Windows\system32\drivers\tcpip.sys
2012-05-09 20:26:16 ----AC---- C:\Windows\system32\DWrite.dll
2012-05-09 20:26:16 ----AC---- C:\Windows\system32\d3d10warp.dll
2012-05-09 20:26:16 ----AC---- C:\Windows\system32\d3d10_1core.dll
2012-05-09 20:26:16 ----AC---- C:\Windows\system32\d3d10_1.dll
2012-05-09 20:26:16 ----AC---- C:\Windows\system32\d2d1.dll
2012-05-09 20:25:53 ----AC---- C:\Windows\system32\ntoskrnl.exe
2012-05-09 20:25:53 ----AC---- C:\Windows\system32\ntkrnlpa.exe
2012-05-09 20:25:52 ----AC---- C:\Windows\system32\win32k.sys
2012-05-09 11:52:13 ----DC---- C:\Program Files\Microsoft Silverlight

======List of files/folders modified in the last 1 month======

2012-06-04 13:34:40 ----DC---- C:\Windows\system32\drivers
2012-06-04 13:34:40 ----AC---- C:\Windows\ntbtlog.txt
2012-06-04 13:33:11 ----RDC---- C:\Program Files
2012-06-04 13:13:54 ----AC---- C:\Windows\NeroDigital.ini
2012-06-04 12:54:01 ----DC---- C:\Windows\System32
2012-06-04 12:54:01 ----AC---- C:\Windows\system32\PerfStringBackup.INI
2012-06-04 12:54:00 ----DC---- C:\Windows\inf
2012-06-04 12:53:18 ----DC---- C:\Windows\Temp
2012-06-04 12:53:16 ----DC---- C:\Windows\Prefetch
2012-06-04 12:03:27 ----SHD---- C:\System Volume Information
2012-06-04 11:32:05 ----D---- C:\Windows\rescache
2012-06-03 19:50:34 ----D---- C:\Windows\winsxs
2012-06-03 18:39:01 ----SHDC---- C:\Windows\Installer
2012-06-03 17:23:26 ----DC---- C:\Users\Alena\AppData\Roaming\vlc
2012-05-29 18:36:25 ----HDC---- C:\ProgramData
2012-05-28 20:28:03 ----DC---- C:\Users\Alena\AppData\Roaming\Skype
2012-05-27 19:44:23 ----DC---- C:\Windows\system32\WDI
2012-05-27 11:32:44 ----DC---- C:\Program Files\Common Files
2012-05-23 18:22:01 ----DC---- C:\Windows\system32\catroot2
2012-05-18 19:04:01 ----DC---- C:\Program Files\Mozilla Firefox
2012-05-18 11:38:22 ----DC---- C:\ProgramData\YTD YouTube Downloader & Converter
2012-05-15 21:42:48 ----DC---- C:\Windows\system32\wbem
2012-05-15 21:42:48 ----DC---- C:\Windows
2012-05-15 21:42:13 ----DC---- C:\Windows\system32\config
2012-05-15 21:42:04 ----DC---- C:\Windows\Tasks
2012-05-15 21:42:04 ----DC---- C:\Windows\system32\spool
2012-05-15 21:42:04 ----DC---- C:\Windows\registration
2012-05-15 17:07:01 ----DC---- C:\Users\Alena\AppData\Roaming\Vso
2012-05-14 20:19:26 ----DC---- C:\Users\Alena\AppData\Roaming\dvdcss
2012-05-10 11:50:57 ----DC---- C:\Windows\Microsoft.NET
2012-05-10 11:49:57 ----RSDC---- C:\Windows\assembly
2012-05-10 11:14:10 ----AC---- C:\Windows\system32\mrt.exe
2012-05-10 11:13:59 ----DC---- C:\Windows\system32\catroot
2012-05-10 11:00:00 ----AC---- C:\Windows\win.ini
2012-05-10 10:45:53 ----DC---- C:\Windows\system32\XPSViewer
2012-05-09 11:53:07 ----DC---- C:\Windows\system32\Tasks
2012-05-05 16:29:13 ----AC---- C:\Windows\system32\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2007-03-21 304920]
R3 ApfiltrService;Alps Pointing-device Filter Driver; C:\Windows\system32\DRIVERS\Apfiltr.sys [2006-12-05 140800]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2007-06-19 737280]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2008-01-19 179712]
R3 EMSCR;EMSCR; C:\Windows\system32\DRIVERS\EMS7SK.sys [2007-04-11 67584]
R3 ESDCR;ESDCR; C:\Windows\system32\DRIVERS\ESD7SK.sys [2007-04-11 46592]
R3 ESMCR;ESMCR; C:\Windows\system32\DRIVERS\ESM7SK.sys [2007-04-11 63488]
R3 NTIDrvr;Upper Class Filter Driver; C:\Windows\system32\DRIVERS\NTIDrvr.sys [2007-06-22 6144]
S0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2012-03-20 171064]
S1 DritekPortIO;Dritek General Port I/O; \??\C:\PROGRA~1\LAUNCH~1\DPortIO.sys []
S2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys []
S2 int15;int15; \??\C:\Acer\Empowering Technology\eRecovery\int15.sys []
S2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
S2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-01-30 8704]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\system32\FsUsbExDisk.SYS [2009-03-31 36608]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-03-02 984064]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704]
S3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-03-02 208384]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-04-23 1769952]
S3 IpwP;IPWireless 3G Network Adapter; C:\Windows\system32\DRIVERS\ipw3gnet.sys [2008-10-10 51040]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 NETw3v32;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2006-11-02 1781760]
S3 NETw4v32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw4v32.sys [2007-02-25 2216448]
S3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2012-03-20 74112]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-04-11 15872]
S3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-03-02 660480]
S3 winusb;WinUSB Service; C:\Windows\system32\DRIVERS\winusb.sys [2009-04-11 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

S2 Application Updater;Application Updater; C:\Program Files\Application Updater\ApplicationUpdater.exe [2012-05-25 785344]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S2 eRecoveryService;eRecovery Service; C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe [2007-02-13 53248]
S2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2007-03-21 355096]
S2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2007-01-17 61440]
S2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
S2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-02-15 158856]
S2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-01-30 386560]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-05 257696]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe []
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-05-18 129976]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-11-10 774144]
S3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2012-03-26 214952]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]

-----------------EOF-----------------





3. log z TDSSKiller:

13:54:30.0182 1900 TDSS rootkit removing tool 2.7.36.0 May 21 2012 16:40:16
13:54:30.0198 1900 ============================================================
13:54:30.0198 1900 Current date / time: 2012/06/04 13:54:30.0198
13:54:30.0198 1900 SystemInfo:
13:54:30.0198 1900
13:54:30.0198 1900 OS Version: 6.0.6002 ServicePack: 2.0
13:54:30.0198 1900 Product type: Workstation
13:54:30.0198 1900 ComputerName: ALENA-PC
13:54:30.0198 1900 UserName: Alena
13:54:30.0198 1900 Windows directory: C:\Windows
13:54:30.0198 1900 System windows directory: C:\Windows
13:54:30.0198 1900 Processor architecture: Intel x86
13:54:30.0198 1900 Number of processors: 1
13:54:30.0198 1900 Page size: 0x1000
13:54:30.0198 1900 Boot type: Safe boot with network
13:54:30.0198 1900 ============================================================
13:54:30.0791 1900 Drive \Device\Harddisk0\DR0 - Size: 0x12A1F16000 (74.53 Gb), SectorSize: 0x200, Cylinders: 0x2601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
13:54:30.0791 1900 Drive \Device\Harddisk1\DR8 - Size: 0x76D00000 (1.86 Gb), SectorSize: 0x200, Cylinders: 0xF2, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
13:54:30.0791 1900 ============================================================
13:54:30.0791 1900 \Device\Harddisk0\DR0:
13:54:30.0791 1900 MBR partitions:
13:54:30.0791 1900 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x6, StartLBA 0x1385000, BlocksNum 0x4107000
13:54:30.0791 1900 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x548C000, BlocksNum 0x4083000
13:54:30.0791 1900 \Device\Harddisk1\DR8:
13:54:30.0791 1900 MBR partitions:
13:54:30.0791 1900 \Device\Harddisk1\DR8\Partition0: MBR, Type 0x6, StartLBA 0x3E0, BlocksNum 0x3B5C20
13:54:30.0791 1900 ============================================================
13:54:30.0869 1900 C: <-> \Device\Harddisk0\DR0\Partition0
13:54:30.0947 1900 D: <-> \Device\Harddisk0\DR0\Partition1
13:54:30.0947 1900 ============================================================
13:54:30.0947 1900 Initialize success
13:54:30.0947 1900 ============================================================
13:54:50.0119 1712 ============================================================
13:54:50.0119 1712 Scan started
13:54:50.0119 1712 Mode: Manual; SigCheck; TDLFS;
13:54:50.0119 1712 ============================================================
13:54:50.0759 1712 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
13:54:50.0915 1712 ACPI - ok
13:54:51.0055 1712 AdobeFlashPlayerUpdateSvc (76d5a3d2a50402a0b9b6ed13c4371e79) C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
13:54:51.0087 1712 AdobeFlashPlayerUpdateSvc - ok
13:54:51.0165 1712 adp94xx (2edc5bbac6c651ece337bde8ed97c9fb) C:\Windows\system32\drivers\adp94xx.sys
13:54:51.0305 1712 adp94xx - ok
13:54:51.0367 1712 adpahci (b84088ca3cdca97da44a984c6ce1ccad) C:\Windows\system32\drivers\adpahci.sys
13:54:51.0399 1712 adpahci - ok
13:54:51.0430 1712 adpu160m (7880c67bccc27c86fd05aa2afb5ea469) C:\Windows\system32\drivers\adpu160m.sys
13:54:51.0461 1712 adpu160m - ok
13:54:51.0492 1712 adpu320 (9ae713f8e30efc2abccd84904333df4d) C:\Windows\system32\drivers\adpu320.sys
13:54:51.0508 1712 adpu320 - ok
13:54:51.0586 1712 AeLookupSvc (9d1fda9e086ba64e3c93c9de32461bcf) C:\Windows\System32\aelupsvc.dll
13:54:51.0820 1712 AeLookupSvc - ok
13:54:51.0898 1712 AFD (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys
13:54:51.0976 1712 AFD - ok
13:54:52.0054 1712 agp440 (ef23439cdd587f64c2c1b8825cead7d8) C:\Windows\system32\drivers\agp440.sys
13:54:52.0069 1712 agp440 - ok
13:54:52.0101 1712 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
13:54:52.0116 1712 aic78xx - ok
13:54:52.0163 1712 ALG (a1545b731579895d8cc44fc0481c1192) C:\Windows\System32\alg.exe
13:54:52.0366 1712 ALG - ok
13:54:52.0397 1712 aliide (90395b64600ebb4552e26e178c94b2e4) C:\Windows\system32\drivers\aliide.sys
13:54:52.0413 1712 aliide - ok
13:54:52.0459 1712 amdagp (2b13e304c9dfdfa5eb582f6a149fa2c7) C:\Windows\system32\drivers\amdagp.sys
13:54:52.0459 1712 amdagp - ok
13:54:52.0506 1712 amdide (0577df1d323fe75a739c787893d300ea) C:\Windows\system32\drivers\amdide.sys
13:54:52.0522 1712 amdide - ok
13:54:52.0553 1712 AmdK7 (dc487885bcef9f28eece6fac0e5ddfc5) C:\Windows\system32\drivers\amdk7.sys
13:54:52.0771 1712 AmdK7 - ok
13:54:52.0803 1712 AmdK8 (0ca0071da4315b00fc1328ca86b425da) C:\Windows\system32\drivers\amdk8.sys
13:54:52.0912 1712 AmdK8 - ok
13:54:52.0959 1712 ApfiltrService (18bff317bdb10c64a35e1ca85f1ec051) C:\Windows\system32\DRIVERS\Apfiltr.sys
13:54:53.0052 1712 ApfiltrService - ok
13:54:53.0115 1712 Appinfo (c6d704c7f0434dc791aac37cac4b6e14) C:\Windows\System32\appinfo.dll
13:54:53.0193 1712 Appinfo - ok
13:54:53.0380 1712 Application Updater (ba916091087e6be21d3c30eec71ed338) C:\Program Files\Application Updater\ApplicationUpdater.exe
13:54:53.0442 1712 Application Updater - ok
13:54:53.0473 1712 arc (5f673180268bb1fdb69c99b6619fe379) C:\Windows\system32\drivers\arc.sys
13:54:53.0489 1712 arc - ok
13:54:53.0567 1712 arcsas (957f7540b5e7f602e44648c7de5a1c05) C:\Windows\system32\drivers\arcsas.sys
13:54:53.0583 1712 arcsas - ok
13:54:53.0661 1712 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
13:54:53.0707 1712 AsyncMac - ok
13:54:53.0754 1712 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys
13:54:53.0770 1712 atapi - ok
13:54:53.0895 1712 athr (b0c272def210b149c0bfa0d85600ce4b) C:\Windows\system32\DRIVERS\athr.sys
13:54:53.0988 1712 athr - ok
13:54:54.0097 1712 AudioEndpointBuilder (68e2a1a0407a66cf50da0300852424ab) C:\Windows\System32\Audiosrv.dll
13:54:54.0129 1712 AudioEndpointBuilder - ok
13:54:54.0144 1712 Audiosrv (68e2a1a0407a66cf50da0300852424ab) C:\Windows\System32\Audiosrv.dll
13:54:54.0175 1712 Audiosrv - ok
13:54:54.0253 1712 b57nd60x (502f1c30bd50b32d00ce4dcaecc3d3c7) C:\Windows\system32\DRIVERS\b57nd60x.sys
13:54:54.0331 1712 b57nd60x - ok
13:54:54.0409 1712 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
13:54:54.0472 1712 Beep - ok
13:54:54.0597 1712 BITS (93952506c6d67330367f7e7934b6a02f) C:\Windows\System32\qmgr.dll
13:54:54.0706 1712 BITS - ok
13:54:54.0721 1712 blbdrive - ok
13:54:54.0753 1712 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys
13:54:54.0815 1712 bowser - ok
13:54:54.0877 1712 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
13:54:54.0924 1712 BrFiltLo - ok
13:54:54.0971 1712 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
13:54:55.0033 1712 BrFiltUp - ok
13:54:55.0096 1712 Browser (a3629a0c4226f9e9c72faaeebc3ad33c) C:\Windows\System32\browser.dll
13:54:55.0174 1712 Browser - ok
13:54:55.0252 1712 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
13:54:55.0345 1712 Brserid - ok
13:54:55.0377 1712 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
13:54:55.0439 1712 BrSerWdm - ok
13:54:55.0470 1712 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
13:54:55.0533 1712 BrUsbMdm - ok
13:54:55.0564 1712 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
13:54:55.0626 1712 BrUsbSer - ok
13:54:55.0657 1712 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys
13:54:55.0735 1712 BTHMODEM - ok
13:54:55.0829 1712 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
13:54:55.0891 1712 cdfs - ok
13:54:55.0938 1712 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
13:54:55.0985 1712 cdrom - ok
13:54:56.0047 1712 CertPropSvc (312ec3e37a0a1f2006534913e37b4423) C:\Windows\System32\certprop.dll
13:54:56.0094 1712 CertPropSvc - ok
13:54:56.0125 1712 circlass (da8e0afc7baa226c538ef53ac2f90897) C:\Windows\system32\drivers\circlass.sys
13:54:56.0203 1712 circlass - ok
13:54:56.0266 1712 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
13:54:56.0297 1712 CLFS - ok
13:54:56.0359 1712 clr_optimization_v2.0.50727_32 (8ee772032e2fe80a924f3b8dd5082194) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:54:56.0391 1712 clr_optimization_v2.0.50727_32 - ok
13:54:56.0484 1712 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:54:56.0547 1712 clr_optimization_v4.0.30319_32 - ok
13:54:56.0656 1712 CLTNetCnService - ok
13:54:56.0734 1712 CmBatt (99afc3795b58cc478fbbbcdc658fcb56) C:\Windows\system32\DRIVERS\CmBatt.sys
13:54:56.0796 1712 CmBatt - ok
13:54:56.0843 1712 cmdide (45201046c776ffdaf3fc8a0029c581c8) C:\Windows\system32\drivers\cmdide.sys
13:54:56.0859 1712 cmdide - ok
13:54:56.0905 1712 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\DRIVERS\compbatt.sys
13:54:56.0921 1712 Compbatt - ok
13:54:56.0937 1712 COMSysApp - ok
13:54:56.0952 1712 crcdisk (2a213ae086bbec5e937553c7d9a2b22c) C:\Windows\system32\drivers\crcdisk.sys
13:54:56.0968 1712 crcdisk - ok
13:54:56.0999 1712 Crusoe (22a7f883508176489f559ee745b5bf5d) C:\Windows\system32\drivers\crusoe.sys
13:54:57.0077 1712 Crusoe - ok
13:54:57.0155 1712 CryptSvc (fb27772beaf8e1d28ccd825c09da939b) C:\Windows\system32\cryptsvc.dll
13:54:57.0202 1712 CryptSvc - ok
13:54:57.0295 1712 DcomLaunch (3b5b4d53fec14f7476ca29a20cc31ac9) C:\Windows\system32\rpcss.dll
13:54:57.0405 1712 DcomLaunch - ok
13:54:57.0451 1712 DfsC (622c41a07ca7e6dd91770f50d532cb6c) C:\Windows\system32\Drivers\dfsc.sys
13:54:57.0514 1712 DfsC - ok
13:54:57.0717 1712 DFSR (2cc3dcfb533a1035b13dcab6160ab38b) C:\Windows\system32\DFSR.exe
13:54:57.0935 1712 DFSR - ok
13:54:58.0169 1712 Dhcp (9028559c132146fb75eb7acf384b086a) C:\Windows\System32\dhcpcsvc.dll
13:54:58.0231 1712 Dhcp - ok
13:54:58.0325 1712 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
13:54:58.0341 1712 disk - ok
13:54:58.0419 1712 Dnscache (57d762f6f5974af0da2be88a3349baaa) C:\Windows\System32\dnsrslvr.dll
13:54:58.0465 1712 Dnscache - ok
13:54:58.0528 1712 dot3svc (324fd74686b1ef5e7c19a8af49e748f6) C:\Windows\System32\dot3svc.dll
13:54:58.0575 1712 dot3svc - ok
13:54:58.0637 1712 DPS (a622e888f8aa2f6b49e9bc466f0e5def) C:\Windows\system32\dps.dll
13:54:58.0684 1712 DPS - ok
13:54:58.0731 1712 DritekPortIO - ok
13:54:58.0809 1712 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
13:54:58.0855 1712 drmkaud - ok
13:54:58.0949 1712 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
13:54:58.0996 1712 DXGKrnl - ok
13:54:59.0074 1712 E1G60 (f88fb26547fd2ce6d0a5af2985892c48) C:\Windows\system32\DRIVERS\E1G60I32.sys
13:54:59.0136 1712 E1G60 - ok
13:54:59.0152 1712 eamonm - ok
13:54:59.0214 1712 EapHost (c0b95e40d85cd807d614e264248a45b9) C:\Windows\System32\eapsvc.dll
13:54:59.0261 1712 EapHost - ok
13:54:59.0339 1712 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
13:54:59.0355 1712 Ecache - ok
13:54:59.0417 1712 elxstor (e8f3f21a71720c84bcf423b80028359f) C:\Windows\system32\drivers\elxstor.sys
13:54:59.0448 1712 elxstor - ok
13:54:59.0542 1712 EMDMgmt (4e6b23dfc917ea39306b529b773950f4) C:\Windows\system32\emdmgmt.dll
13:54:59.0651 1712 EMDMgmt - ok
13:54:59.0682 1712 EMSCR (fc37a2212b56663bbabef748266a58c7) C:\Windows\system32\DRIVERS\EMS7SK.sys
13:54:59.0745 1712 EMSCR - ok
13:54:59.0854 1712 eRecoveryService (3d184410ef5ee017e186ac96181b3ff8) C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
13:54:59.0885 1712 eRecoveryService ( UnsignedFile.Multi.Generic ) - warning
13:54:59.0885 1712 eRecoveryService - detected UnsignedFile.Multi.Generic (1)
13:54:59.0932 1712 ESDCR (a498240d0e1f0b27702e3df77b0c6e56) C:\Windows\system32\DRIVERS\ESD7SK.sys
13:54:59.0979 1712 ESDCR - ok
13:55:00.0025 1712 ESMCR (ce6e1032802ee415955721a208a86718) C:\Windows\system32\DRIVERS\ESM7SK.sys
13:55:00.0088 1712 ESMCR - ok
13:55:00.0166 1712 EventSystem (67058c46504bc12d821f38cf99b7b28f) C:\Windows\system32\es.dll
13:55:00.0197 1712 EventSystem - ok
13:55:00.0259 1712 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
13:55:00.0291 1712 exfat - ok
13:55:00.0353 1712 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
13:55:00.0415 1712 fastfat - ok
13:55:00.0478 1712 fdc (63bdada84951b9c03e641800e176898a) C:\Windows\system32\DRIVERS\fdc.sys
13:55:00.0571 1712 fdc - ok
13:55:00.0603 1712 fdPHost (6629b5f0e98151f4afdd87567ea32ba3) C:\Windows\system32\fdPHost.dll
13:55:00.0649 1712 fdPHost - ok
13:55:00.0696 1712 FDResPub (89ed56dce8e47af40892778a5bd31fd2) C:\Windows\system32\fdrespub.dll
13:55:00.0759 1712 FDResPub - ok
13:55:00.0805 1712 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
13:55:00.0821 1712 FileInfo - ok
13:55:00.0868 1712 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
13:55:00.0930 1712 Filetrace - ok
13:55:00.0977 1712 flpydisk (6603957eff5ec62d25075ea8ac27de68) C:\Windows\system32\DRIVERS\flpydisk.sys
13:55:01.0039 1712 flpydisk - ok
13:55:01.0102 1712 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
13:55:01.0117 1712 FltMgr - ok
13:55:01.0273 1712 FontCache (8ce364388c8eca59b14b539179276d44) C:\Windows\system32\FntCache.dll
13:55:01.0429 1712 FontCache - ok
13:55:01.0523 1712 FontCache3.0.0.0 (c7fbdd1ed42f82bfa35167a5c9803ea3) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
13:55:01.0539 1712 FontCache3.0.0.0 - ok
13:55:01.0585 1712 FsUsbExDisk (790a4ca68f44be35967b3df61f3e4675) C:\Windows\system32\FsUsbExDisk.SYS
13:55:01.0617 1712 FsUsbExDisk ( UnsignedFile.Multi.Generic ) - warning
13:55:01.0632 1712 FsUsbExDisk - detected UnsignedFile.Multi.Generic (1)
13:55:01.0663 1712 Fs_Rec (b972a66758577e0bfd1de0f91aaa27b5) C:\Windows\system32\drivers\Fs_Rec.sys
13:55:01.0726 1712 Fs_Rec - ok
13:55:01.0773 1712 gagp30kx (4e1cd0a45c50a8882616cae5bf82f3c5) C:\Windows\system32\drivers\gagp30kx.sys
13:55:01.0788 1712 gagp30kx - ok
13:55:01.0897 1712 gpsvc (cd5d0aeee35dfd4e986a5aa1500a6e66) C:\Windows\System32\gpsvc.dll
13:55:02.0069 1712 gpsvc - ok
13:55:02.0116 1712 gusvc - ok
13:55:02.0209 1712 HdAudAddService (cb04c744be0a61b1d648faed182c3b59) C:\Windows\system32\drivers\HdAudio.sys
13:55:02.0272 1712 HdAudAddService - ok
13:55:02.0365 1712 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys
13:55:02.0412 1712 HDAudBus - ok
13:55:02.0459 1712 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
13:55:02.0506 1712 HidBth - ok
13:55:02.0537 1712 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys
13:55:02.0599 1712 HidIr - ok
13:55:02.0677 1712 hidserv (84067081f3318162797385e11a8f0582) C:\Windows\system32\hidserv.dll
13:55:02.0740 1712 hidserv - ok
13:55:02.0787 1712 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\Windows\system32\DRIVERS\hidusb.sys
13:55:02.0833 1712 HidUsb - ok
13:55:02.0911 1712 hkmsvc (d8ad255b37da92434c26e4876db7d418) C:\Windows\system32\kmsvc.dll
13:55:02.0974 1712 hkmsvc - ok
13:55:03.0036 1712 HpCISSs (df353b401001246853763c4b7aaa6f50) C:\Windows\system32\drivers\hpcisss.sys
13:55:03.0067 1712 HpCISSs - ok
13:55:03.0130 1712 HSFHWAZL (46d67209550973257601a533e2ac5785) C:\Windows\system32\DRIVERS\VSTAZL3.SYS
13:55:03.0192 1712 HSFHWAZL - ok
13:55:03.0286 1712 HSF_DPV (347385d69c15e3d045aa1cb46e4cb86d) C:\Windows\system32\DRIVERS\HSX_DPV.sys
13:55:03.0442 1712 HSF_DPV - ok
13:55:03.0473 1712 HSXHWAZL (919337d853703267da203e79a0ac1f2b) C:\Windows\system32\DRIVERS\HSXHWAZL.sys
13:55:03.0520 1712 HSXHWAZL - ok
13:55:03.0598 1712 HTTP (0eeeca26c8d4bde2a4664db058a81937) C:\Windows\system32\drivers\HTTP.sys
13:55:03.0676 1712 HTTP - ok
13:55:03.0723 1712 i2omp (324c2152ff2c61abae92d09f3cca4d63) C:\Windows\system32\drivers\i2omp.sys
13:55:03.0754 1712 i2omp - ok
13:55:03.0832 1712 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
13:55:03.0879 1712 i8042prt - ok
13:55:04.0019 1712 IAANTMON (ae38a12f79a4980ddb88f36514f8a1da) C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
13:55:04.0206 1712 IAANTMON - ok
13:55:04.0393 1712 ialm (9378d57e2b96c0a185d844770ad49948) C:\Windows\system32\DRIVERS\igdkmd32.sys
13:55:04.0612 1712 ialm - ok
13:55:04.0783 1712 iaStor (997e8f5939f2d12cd9f2e6b395724c16) C:\Windows\system32\DRIVERS\iaStor.sys
13:55:04.0815 1712 iaStor - ok
13:55:04.0877 1712 iaStorV (c957bf4b5d80b46c5017bf0101e6c906) C:\Windows\system32\drivers\iastorv.sys
13:55:04.0893 1712 iaStorV - ok
13:55:05.0033 1712 IDriverT (1cf03c69b49acb70c722df92755c0c8c) C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
13:55:05.0033 1712 IDriverT ( UnsignedFile.Multi.Generic ) - warning
13:55:05.0033 1712 IDriverT - detected UnsignedFile.Multi.Generic (1)
13:55:05.0220 1712 idsvc (98477b08e61945f974ed9fdc4cb6bdab) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
13:55:05.0283 1712 idsvc - ok
13:55:05.0595 1712 igfx (9378d57e2b96c0a185d844770ad49948) C:\Windows\system32\DRIVERS\igdkmd32.sys
13:55:05.0704 1712 igfx - ok
13:55:05.0891 1712 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
13:55:05.0907 1712 iirsp - ok
13:55:06.0016 1712 IKEEXT (9908d8a397b76cd8d31d0d383c5773c9) C:\Windows\System32\ikeext.dll
13:55:06.0094 1712 IKEEXT - ok
13:55:06.0234 1712 int15 - ok
13:55:06.0390 1712 IntcAzAudAddService (389f5d4859f4300d52ead838f1a17131) C:\Windows\system32\drivers\RTKVHDA.sys
13:55:06.0531 1712 IntcAzAudAddService - ok
13:55:06.0624 1712 intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys
13:55:06.0624 1712 intelide - ok
13:55:06.0655 1712 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
13:55:06.0702 1712 intelppm - ok
13:55:06.0765 1712 IPBusEnum (9ac218c6e6105477484c6fdbe7d409a4) C:\Windows\system32\ipbusenum.dll
13:55:06.0827 1712 IPBusEnum - ok
13:55:06.0889 1712 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:55:06.0936 1712 IpFilterDriver - ok
13:55:06.0952 1712 IpInIp - ok
13:55:06.0999 1712 IPMIDRV (40f34f8aba2a015d780e4b09138b6c17) C:\Windows\system32\drivers\ipmidrv.sys
13:55:07.0061 1712 IPMIDRV - ok
13:55:07.0108 1712 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
13:55:07.0155 1712 IPNAT - ok
13:55:07.0217 1712 IpwP (d3f6df74534cfdccf49803e739acaea0) C:\Windows\system32\DRIVERS\ipw3gnet.sys
13:55:07.0279 1712 IpwP - ok
13:55:07.0311 1712 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
13:55:07.0342 1712 IRENUM - ok
13:55:07.0404 1712 isapnp (350fca7e73cf65bcef43fae1e4e91293) C:\Windows\system32\drivers\isapnp.sys
13:55:07.0404 1712 isapnp - ok
13:55:07.0498 1712 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
13:55:07.0513 1712 iScsiPrt - ok
13:55:07.0545 1712 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
13:55:07.0560 1712 iteatapi - ok
13:55:07.0576 1712 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
13:55:07.0591 1712 iteraid - ok
13:55:07.0654 1712 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
13:55:07.0685 1712 kbdclass - ok
13:55:07.0732 1712 kbdhid (ede59ec70e25c24581add1fbec7325f7) C:\Windows\system32\DRIVERS\kbdhid.sys
13:55:07.0763 1712 kbdhid - ok
13:55:07.0810 1712 KeyIso (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
13:55:07.0872 1712 KeyIso - ok
13:55:07.0935 1712 KSecDD (2b2f1638466e8cb091400c9019cc730e) C:\Windows\system32\Drivers\ksecdd.sys
13:55:07.0997 1712 KSecDD - ok
13:55:08.0075 1712 KtmRm (8078f8f8f7a79e2e6b494523a828c585) C:\Windows\system32\msdtckrm.dll
13:55:08.0137 1712 KtmRm - ok
13:55:08.0200 1712 LanmanServer (1bf5eebfd518dd7298434d8c862f825d) C:\Windows\system32\srvsvc.dll
13:55:08.0262 1712 LanmanServer - ok
13:55:08.0325 1712 LanmanWorkstation (1db69705b695b987082c8baec0c6b34f) C:\Windows\System32\wkssvc.dll
13:55:08.0356 1712 LanmanWorkstation - ok
13:55:08.0465 1712 LightScribeService (793ff718477345cd5d232c50bed1e452) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
13:55:08.0481 1712 LightScribeService ( UnsignedFile.Multi.Generic ) - warning
13:55:08.0481 1712 LightScribeService - detected UnsignedFile.Multi.Generic (1)
13:55:08.0512 1712 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
13:55:08.0574 1712 lltdio - ok
13:55:08.0621 1712 lltdsvc (2d5a428872f1442631d0959a34abff63) C:\Windows\System32\lltdsvc.dll
13:55:08.0668 1712 lltdsvc - ok
13:55:08.0715 1712 lmhosts (35d40113e4a5b961b6ce5c5857702518) C:\Windows\System32\lmhsvc.dll
13:55:08.0808 1712 lmhosts - ok
13:55:08.0871 1712 LSI_FC (a2262fb9f28935e862b4db46438c80d2) C:\Windows\system32\drivers\lsi_fc.sys
13:55:08.0886 1712 LSI_FC - ok
13:55:08.0917 1712 LSI_SAS (30d73327d390f72a62f32c103daf1d6d) C:\Windows\system32\drivers\lsi_sas.sys
13:55:08.0933 1712 LSI_SAS - ok
13:55:08.0995 1712 LSI_SCSI (e1e36fefd45849a95f1ab81de0159fe3) C:\Windows\system32\drivers\lsi_scsi.sys
13:55:08.0995 1712 LSI_SCSI - ok
13:55:09.0058 1712 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
13:55:09.0073 1712 luafv - ok
13:55:09.0198 1712 MDM (11f714f85530a2bd134074dc30e99fca) C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
13:55:09.0214 1712 MDM - ok
13:55:09.0276 1712 mdmxsdk (0cea2d0d3fa284b85ed5b68365114f76) C:\Windows\system32\DRIVERS\mdmxsdk.sys
13:55:09.0307 1712 mdmxsdk - ok
13:55:09.0339 1712 megasas (d153b14fc6598eae8422a2037553adce) C:\Windows\system32\drivers\megasas.sys
13:55:09.0339 1712 megasas - ok
13:55:09.0401 1712 MMCSS (1076ffcffaae8385fd62dfcb25ac4708) C:\Windows\system32\mmcss.dll
13:55:09.0448 1712 MMCSS - ok
13:55:09.0495 1712 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
13:55:09.0541 1712 Modem - ok
13:55:09.0604 1712 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
13:55:09.0666 1712 monitor - ok
13:55:09.0697 1712 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
13:55:09.0713 1712 mouclass - ok
13:55:09.0760 1712 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
13:55:09.0807 1712 mouhid - ok
13:55:09.0853 1712 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
13:55:09.0869 1712 MountMgr - ok
13:55:09.0947 1712 MozillaMaintenance (96aa8ba23142cc8e2b30f3cae0c80254) C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
13:55:09.0963 1712 MozillaMaintenance - ok
13:55:10.0041 1712 MpFilter (d993bea500e7382dc4e760bf4f35efcb) C:\Windows\system32\DRIVERS\MpFilter.sys
13:55:10.0072 1712 MpFilter - ok
13:55:10.0119 1712 mpio (583a41f26278d9e0ea548163d6139397) C:\Windows\system32\drivers\mpio.sys
13:55:10.0134 1712 mpio - ok
13:55:10.0166 1712 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
13:55:10.0212 1712 mpsdrv - ok
13:55:10.0244 1712 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
13:55:10.0259 1712 Mraid35x - ok
13:55:10.0322 1712 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
13:55:10.0368 1712 MRxDAV - ok
13:55:10.0431 1712 mrxsmb (1e94971c4b446ab2290deb71d01cf0c2) C:\Windows\system32\DRIVERS\mrxsmb.sys
13:55:10.0478 1712 mrxsmb - ok
13:55:10.0524 1712 mrxsmb10 (4fccb34d793b116423209c0f8b7a3b03) C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:55:10.0571 1712 mrxsmb10 - ok
13:55:10.0618 1712 mrxsmb20 (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:55:10.0649 1712 mrxsmb20 - ok
13:55:10.0696 1712 msahci (742aed7939e734c36b7e8d6228ce26b7) C:\Windows\system32\drivers\msahci.sys
13:55:10.0712 1712 msahci - ok
13:55:10.0727 1712 msdsm (3fc82a2ae4cc149165a94699183d3028) C:\Windows\system32\drivers\msdsm.sys
13:55:10.0743 1712 msdsm - ok
13:55:10.0805 1712 MSDTC (fd7520cc3a80c5fc8c48852bb24c6ded) C:\Windows\System32\msdtc.exe
13:55:10.0852 1712 MSDTC - ok
13:55:10.0899 1712 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
13:55:10.0946 1712 Msfs - ok
13:55:10.0992 1712 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
13:55:11.0008 1712 msisadrv - ok
13:55:11.0070 1712 MSiSCSI (85466c0757a23d9a9aecdc0755203cb2) C:\Windows\system32\iscsiexe.dll
13:55:11.0133 1712 MSiSCSI - ok
13:55:11.0133 1712 msiserver - ok
13:55:11.0180 1712 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
13:55:11.0242 1712 MSKSSRV - ok
13:55:11.0289 1712 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
13:55:11.0320 1712 MSPCLOCK - ok
13:55:11.0336 1712 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
13:55:11.0398 1712 MSPQM - ok
13:55:11.0492 1712 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
13:55:11.0507 1712 MsRPC - ok
13:55:11.0554 1712 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
13:55:11.0570 1712 mssmbios - ok
13:55:11.0601 1712 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
13:55:11.0632 1712 MSTEE - ok
13:55:11.0663 1712 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
13:55:11.0679 1712 Mup - ok
13:55:11.0741 1712 napagent (e4eaf0c5c1b41b5c83386cf212ca9584) C:\Windows\system32\qagentRT.dll
13:55:11.0772 1712 napagent - ok
13:55:11.0835 1712 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
13:55:11.0866 1712 NativeWifiP - ok
13:55:12.0053 1712 NBService (87a00faedd703d8d2bdcb29ce5eeea6b) C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
13:55:12.0147 1712 NBService ( UnsignedFile.Multi.Generic ) - warning
13:55:12.0147 1712 NBService - detected UnsignedFile.Multi.Generic (1)
13:55:12.0225 1712 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
13:55:12.0272 1712 NDIS - ok
13:55:12.0303 1712 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
13:55:12.0365 1712 NdisTapi - ok
13:55:12.0412 1712 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
13:55:12.0474 1712 Ndisuio - ok
13:55:12.0521 1712 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
13:55:12.0552 1712 NdisWan - ok
13:55:12.0615 1712 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
13:55:12.0630 1712 NDProxy - ok
13:55:12.0662 1712 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
13:55:12.0724 1712 NetBIOS - ok
13:55:12.0771 1712 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
13:55:12.0802 1712 netbt - ok
13:55:12.0849 1712 Netlogon (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
13:55:12.0864 1712 Netlogon - ok
13:55:12.0927 1712 Netman (c8052711daecc48b982434c5116ca401) C:\Windows\System32\netman.dll
13:55:12.0989 1712 Netman - ok
13:55:13.0052 1712 netprofm (2ef3bbe22e5a5acd1428ee387a0d0172) C:\Windows\System32\netprofm.dll
13:55:13.0114 1712 netprofm - ok
13:55:13.0254 1712 NetTcpPortSharing (d6c4e4a39a36029ac0813d476fbd0248) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
13:55:13.0270 1712 NetTcpPortSharing - ok
13:55:13.0473 1712 NETw3v32 (a15f219208843a5a210c8cb391384453) C:\Windows\system32\DRIVERS\NETw3v32.sys
13:55:13.0691 1712 NETw3v32 - ok
13:55:13.0878 1712 NETw4v32 (1d73499a6664b4da05d750ff83fdb274) C:\Windows\system32\DRIVERS\NETw4v32.sys
13:55:14.0081 1712 NETw4v32 - ok
13:55:14.0284 1712 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
13:55:14.0300 1712 nfrd960 - ok
13:55:14.0378 1712 NisDrv (b52f26bade7d7e4a79706e3fd91834cd) C:\Windows\system32\DRIVERS\NisDrvWFP.sys
13:55:14.0393 1712 NisDrv - ok
13:55:14.0565 1712 NisSrv (290c0d4c4889398797f8df3be00b9698) C:\Program Files\Microsoft Security Client\NisSrv.exe
13:55:14.0580 1712 NisSrv - ok
13:55:14.0643 1712 NlaSvc (2997b15415f9bbe05b5a4c1c85e0c6a2) C:\Windows\System32\nlasvc.dll
13:55:14.0721 1712 NlaSvc - ok
13:55:14.0752 1712 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
13:55:14.0799 1712 Npfs - ok
13:55:14.0846 1712 nsi (8bb86f0c7eea2bded6fe095d0b4ca9bd) C:\Windows\system32\nsisvc.dll
13:55:14.0877 1712 nsi - ok
13:55:14.0939 1712 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
13:55:14.0970 1712 nsiproxy - ok
13:55:15.0111 1712 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
13:55:15.0173 1712 Ntfs - ok
13:55:15.0220 1712 NTIDrvr (7f1c1f78d709c4a54cbb46ede7e0b48d) C:\Windows\system32\DRIVERS\NTIDrvr.sys
13:55:15.0236 1712 NTIDrvr ( UnsignedFile.Multi.Generic ) - warning
13:55:15.0236 1712 NTIDrvr - detected UnsignedFile.Multi.Generic (1)
13:55:15.0267 1712 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
13:55:15.0329 1712 ntrigdigi - ok
13:55:15.0392 1712 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
13:55:15.0423 1712 Null - ok
13:55:15.0454 1712 nvraid (e69e946f80c1c31c53003bfbf50cbb7c) C:\Windows\system32\drivers\nvraid.sys
13:55:15.0485 1712 nvraid - ok
13:55:15.0501 1712 nvstor (9e0ba19a28c498a6d323d065db76dffc) C:\Windows\system32\drivers\nvstor.sys
13:55:15.0516 1712 nvstor - ok
13:55:15.0563 1712 nv_agp (07c186427eb8fcc3d8d7927187f260f7) C:\Windows\system32\drivers\nv_agp.sys
13:55:15.0579 1712 nv_agp - ok
13:55:15.0579 1712 NwlnkFlt - ok
13:55:15.0610 1712 NwlnkFwd - ok
13:55:15.0626 1712 ohci1394 (be32da025a0be1878f0ee8d6d9386cd5) C:\Windows\system32\drivers\ohci1394.sys
13:55:15.0704 1712 ohci1394 - ok
13:55:15.0860 1712 ose (7a56cf3e3f12e8af599963b16f50fb6a) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:55:15.0875 1712 ose - ok
13:55:15.0984 1712 p2pimsvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
13:55:16.0094 1712 p2pimsvc - ok
13:55:16.0109 1712 p2psvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
13:55:16.0140 1712 p2psvc - ok
13:55:16.0203 1712 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys
13:55:16.0265 1712 Parport - ok
13:55:16.0328 1712 partmgr (b9c2b89f08670e159f7181891e449cd9) C:\Windows\system32\drivers\partmgr.sys
13:55:16.0359 1712 partmgr - ok
13:55:16.0390 1712 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys
13:55:16.0468 1712 Parvdm - ok
13:55:16.0499 1712 PcaSvc (c6276ad11f4bb49b58aa1ed88537f14a) C:\Windows\System32\pcasvc.dll
13:55:16.0562 1712 PcaSvc - ok
13:55:16.0608 1712 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
13:55:16.0624 1712 pci - ok
13:55:16.0686 1712 pciide (3b1901e401473e03eb8c874271e50c26) C:\Windows\system32\drivers\pciide.sys
13:55:16.0702 1712 pciide - ok
13:55:16.0733 1712 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
13:55:16.0749 1712 pcmcia - ok
13:55:16.0874 1712 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
13:55:16.0983 1712 PEAUTH - ok
13:55:17.0170 1712 pla (b1689df169143f57053f795390c99db3) C:\Windows\system32\pla.dll
13:55:17.0310 1712 pla - ok
13:55:17.0513 1712 PlugPlay (c5e7f8a996ec0a82d508fd9064a5569e) C:\Windows\system32\umpnpmgr.dll
13:55:17.0576 1712 PlugPlay - ok
13:55:17.0669 1712 PNRPAutoReg (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
13:55:17.0732 1712 PNRPAutoReg - ok
13:55:17.0747 1712 PNRPsvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
13:55:17.0794 1712 PNRPsvc - ok
13:55:17.0872 1712 PolicyAgent (d0494460421a03cd5225cca0059aa146) C:\Windows\System32\ipsecsvc.dll
13:55:17.0966 1712 PolicyAgent - ok
13:55:18.0059 1712 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
13:55:18.0122 1712 PptpMiniport - ok
13:55:18.0153 1712 Processor (0e3cef5d28b40cf273281d620c50700a) C:\Windows\system32\drivers\processr.sys
13:55:18.0231 1712 Processor - ok
13:55:18.0278 1712 ProfSvc (0508faa222d28835310b7bfca7a77346) C:\Windows\system32\profsvc.dll
13:55:18.0309 1712 ProfSvc - ok
13:55:18.0340 1712 ProtectedStorage (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
13:55:18.0356 1712 ProtectedStorage - ok
13:55:18.0418 1712 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
13:55:18.0449 1712 PSched - ok
13:55:18.0590 1712 ql2300 (ccdac889326317792480c0a67156a1ec) C:\Windows\system32\drivers\ql2300.sys
13:55:18.0652 1712 ql2300 - ok
13:55:18.0699 1712 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
13:55:18.0714 1712 ql40xx - ok
13:55:18.0792 1712 QWAVE (e9ecae663f47e6cb43962d18ab18890f) C:\Windows\system32\qwave.dll
13:55:18.0824 1712 QWAVE - ok
13:55:18.0870 1712 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
13:55:18.0917 1712 QWAVEdrv - ok
13:55:19.0011 1712 RapiMgr (70dbdab246c18b78e2200d6401d038be) C:\Windows\WindowsMobile\rapimgr.dll
13:55:19.0073 1712 RapiMgr - ok
13:55:19.0120 1712 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
13:55:19.0182 1712 RasAcd - ok
13:55:19.0229 1712 RasAuto (f6a452eb4ceadbb51c9e0ee6b3ecef0f) C:\Windows\System32\rasauto.dll
13:55:19.0276 1712 RasAuto - ok
13:55:19.0338 1712 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
13:55:19.0401 1712 Rasl2tp - ok
13:55:19.0479 1712 RasMan (75d47445d70ca6f9f894b032fbc64fcf) C:\Windows\System32\rasmans.dll
13:55:19.0494 1712 RasMan - ok
13:55:19.0557 1712 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
13:55:19.0572 1712 RasPppoe - ok
13:55:19.0604 1712 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
13:55:19.0619 1712 RasSstp - ok
13:55:19.0682 1712 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
13:55:19.0697 1712 rdbss - ok
13:55:19.0744 1712 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
13:55:19.0806 1712 RDPCDD - ok
13:55:19.0853 1712 rdpdr (e8bd98d46f2ed77132ba927fccb47d8b) C:\Windows\system32\drivers\rdpdr.sys
13:55:19.0931 1712 rdpdr - ok
13:55:19.0947 1712 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
13:55:19.0978 1712 RDPENCDD - ok
13:55:20.0056 1712 RDPWD (79c6df8477250f5c54f7c5ae1d6b814e) C:\Windows\system32\drivers\RDPWD.sys
13:55:20.0087 1712 RDPWD - ok
13:55:20.0134 1712 RemoteAccess (bcdd6b4804d06b1f7ebf29e53a57ece9) C:\Windows\System32\mprdim.dll
13:55:20.0212 1712 RemoteAccess - ok
13:55:20.0259 1712 RemoteRegistry (9e6894ea18daff37b63e1005f83ae4ab) C:\Windows\system32\regsvc.dll
13:55:20.0321 1712 RemoteRegistry - ok
13:55:20.0368 1712 RpcLocator (5123f83cbc4349d065534eeb6bbdc42b) C:\Windows\system32\locator.exe
13:55:20.0430 1712 RpcLocator - ok
13:55:20.0524 1712 RpcSs (3b5b4d53fec14f7476ca29a20cc31ac9) C:\Windows\system32\rpcss.dll
13:55:20.0571 1712 RpcSs - ok
13:55:20.0633 1712 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
13:55:20.0664 1712 rspndr - ok
13:55:20.0696 1712 SamSs (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
13:55:20.0727 1712 SamSs - ok
13:55:20.0774 1712 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
13:55:20.0789 1712 sbp2port - ok
13:55:20.0867 1712 SCardSvr (77b7a11a0c3d78d3386398fbbea1b632) C:\Windows\System32\SCardSvr.dll
13:55:20.0883 1712 SCardSvr - ok
13:55:20.0992 1712 Schedule (1a58069db21d05eb2ab58ee5753ebe8d) C:\Windows\system32\schedsvc.dll
13:55:21.0101 1712 Schedule - ok
13:55:21.0148 1712 SCPolicySvc (312ec3e37a0a1f2006534913e37b4423) C:\Windows\System32\certprop.dll
13:55:21.0179 1712 SCPolicySvc - ok
13:55:21.0226 1712 sdbus (8f36b54688c31eed4580129040c6a3d3) C:\Windows\system32\DRIVERS\sdbus.sys
13:55:21.0242 1712 sdbus - ok
13:55:21.0304 1712 SDRSVC (716313d9f6b0529d03f726d5aaf6f191) C:\Windows\System32\SDRSVC.dll
13:55:21.0351 1712 SDRSVC - ok
13:55:21.0398 1712 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
13:55:21.0476 1712 secdrv - ok
13:55:21.0522 1712 seclogon (fd5199d4d8a521005e4b5ee7fe00fa9b) C:\Windows\system32\seclogon.dll
13:55:21.0569 1712 seclogon - ok
13:55:21.0585 1712 SENS (a9bbab5759771e523f55563d6cbe140f) C:\Windows\System32\sens.dll
13:55:21.0632 1712 SENS - ok
13:55:21.0678 1712 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys
13:55:21.0741 1712 Serenum - ok
13:55:21.0772 1712 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys
13:55:21.0834 1712 Serial - ok
13:55:21.0866 1712 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
13:55:21.0912 1712 sermouse - ok
13:55:21.0975 1712 SessionEnv (d2193326f729b163125610dbf3e17d57) C:\Windows\system32\sessenv.dll
13:55:22.0022 1712 SessionEnv - ok
13:55:22.0068 1712 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\DRIVERS\sffdisk.sys
13:55:22.0100 1712 sffdisk - ok
13:55:22.0131 1712 sffp_mmc (8fd08a310645fe872eeec6e08c6bf3ee) C:\Windows\system32\drivers\sffp_mmc.sys
13:55:22.0193 1712 sffp_mmc - ok
13:55:22.0256 1712 sffp_sd (9f66a46c55d6f1ccabc79bb7afccc545) C:\Windows\system32\DRIVERS\sffp_sd.sys
13:55:22.0287 1712 sffp_sd - ok
13:55:22.0318 1712 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys
13:55:22.0380 1712 sfloppy - ok
13:55:22.0443 1712 ShellHWDetection (c7230fbee14437716701c15be02c27b8) C:\Windows\System32\shsvcs.dll
13:55:22.0505 1712 ShellHWDetection - ok
13:55:22.0521 1712 sisagp (d2a595d6eebeeaf4334f8e50efbc9931) C:\Windows\system32\drivers\sisagp.sys
13:55:22.0536 1712 sisagp - ok
13:55:22.0568 1712 SiSRaid2 (cedd6f4e7d84e9f98b34b3fe988373aa) C:\Windows\system32\drivers\sisraid2.sys
13:55:22.0583 1712 SiSRaid2 - ok
13:55:22.0614 1712 SiSRaid4 (df843c528c4f69d12ce41ce462e973a7) C:\Windows\system32\drivers\sisraid4.sys
13:55:22.0630 1712 SiSRaid4 - ok
13:55:22.0724 1712 SkypeUpdate (db0405d9aad62f0762e0876ac142b7e1) C:\Program Files\Skype\Updater\Updater.exe
13:55:22.0739 1712 SkypeUpdate - ok
13:55:23.0051 1712 slsvc (862bb4cbc05d80c5b45be430e5ef872f) C:\Windows\system32\SLsvc.exe
13:55:23.0301 1712 slsvc - ok
13:55:23.0472 1712 SLUINotify (6edc422215cd78aa8a9cde6b30abbd35) C:\Windows\system32\SLUINotify.dll
13:55:23.0535 1712 SLUINotify - ok
13:55:23.0628 1712 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
13:55:23.0660 1712 Smb - ok
13:55:23.0706 1712 SNMPTRAP (2a146a055b4401c16ee62d18b8e2a032) C:\Windows\System32\snmptrap.exe
13:55:23.0722 1712 SNMPTRAP - ok
13:55:23.0769 1712 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
13:55:23.0784 1712 spldr - ok
13:55:23.0847 1712 Spooler (8554097e5136c3bf9f69fe578a1b35f4) C:\Windows\System32\spoolsv.exe
13:55:23.0925 1712 Spooler - ok
13:55:24.0003 1712 srv (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys
13:55:24.0065 1712 srv - ok
13:55:24.0143 1712 srv2 (ff33aff99564b1aa534f58868cbe41ef) C:\Windows\system32\DRIVERS\srv2.sys
13:55:24.0190 1712 srv2 - ok
13:55:24.0237 1712 srvnet (7605c0e1d01a08f3ecd743f38b834a44) C:\Windows\system32\DRIVERS\srvnet.sys
13:55:24.0284 1712 srvnet - ok
13:55:24.0346 1712 SSDPSRV (03d50b37234967433a5ea5ba72bc0b62) C:\Windows\System32\ssdpsrv.dll
13:55:24.0393 1712 SSDPSRV - ok
13:55:24.0471 1712 SstpSvc (6f1a32e7b7b30f004d9a20afadb14944) C:\Windows\system32\sstpsvc.dll
13:55:24.0502 1712 SstpSvc - ok
13:55:24.0596 1712 stisvc (5de7d67e49b88f5f07f3e53c4b92a352) C:\Windows\System32\wiaservc.dll
13:55:24.0658 1712 stisvc - ok
13:55:24.0705 1712 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
13:55:24.0720 1712 swenum - ok
13:55:24.0798 1712 swprv (f21fd248040681cca1fb6c9a03aaa93d) C:\Windows\System32\swprv.dll
13:55:24.0845 1712 swprv - ok
13:55:24.0908 1712 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
13:55:24.0908 1712 Symc8xx - ok
13:55:24.0939 1712 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
13:55:24.0954 1712 Sym_hi - ok
13:55:24.0986 1712 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
13:55:25.0001 1712 Sym_u3 - ok
13:55:25.0095 1712 SysMain (9a51b04e9886aa4ee90093586b0ba88d) C:\Windows\system32\sysmain.dll
13:55:25.0157 1712 SysMain - ok
13:55:25.0235 1712 TabletInputService (2dca225eae15f42c0933e998ee0231c3) C:\Windows\System32\TabSvc.dll
13:55:25.0282 1712 TabletInputService - ok
13:55:25.0344 1712 TapiSrv (d7673e4b38ce21ee54c59eeeb65e2483) C:\Windows\System32\tapisrv.dll
13:55:25.0391 1712 TapiSrv - ok
13:55:25.0422 1712 TBS (cb05822cd9cc6c688168e113c603dbe7) C:\Windows\System32\tbssvc.dll
13:55:25.0469 1712 TBS - ok
13:55:25.0578 1712 Tcpip (ee7e10bed85c312c1d5d30c435bdda9f) C:\Windows\system32\drivers\tcpip.sys
13:55:25.0641 1712 Tcpip - ok
13:55:25.0656 1712 Tcpip6 (ee7e10bed85c312c1d5d30c435bdda9f) C:\Windows\system32\DRIVERS\tcpip.sys
13:55:25.0734 1712 Tcpip6 - ok
13:55:25.0781 1712 tcpipreg (2c2d4cff5e09c73908f9b5af49a51365) C:\Windows\system32\drivers\tcpipreg.sys
13:55:25.0828 1712 tcpipreg - ok
13:55:25.0875 1712 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
13:55:25.0906 1712 TDPIPE - ok
13:55:25.0937 1712 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
13:55:25.0968 1712 TDTCP - ok
13:55:26.0015 1712 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
13:55:26.0046 1712 tdx - ok
13:55:26.0093 1712 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
13:55:26.0109 1712 TermDD - ok
13:55:26.0187 1712 TermService (bb95da09bef6e7a131bff3ba5032090d) C:\Windows\System32\termsrv.dll
13:55:26.0249 1712 TermService - ok
13:55:26.0343 1712 Themes (c7230fbee14437716701c15be02c27b8) C:\Windows\system32\shsvcs.dll
13:55:26.0358 1712 Themes - ok
13:55:26.0405 1712 THREADORDER (1076ffcffaae8385fd62dfcb25ac4708) C:\Windows\system32\mmcss.dll
13:55:26.0436 1712 THREADORDER - ok
13:55:26.0468 1712 TrkWks (ec74e77d0eb004bd3a809b5f8fb8c2ce) C:\Windows\System32\trkwks.dll
13:55:26.0514 1712 TrkWks - ok
13:55:26.0592 1712 TrustedInstaller (97d9d6a04e3ad9b6c626b9931db78dba) C:\Windows\servicing\TrustedInstaller.exe
13:55:26.0655 1712 TrustedInstaller - ok
13:55:26.0702 1712 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
13:55:26.0748 1712 tssecsrv - ok
13:55:26.0811 1712 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
13:55:26.0858 1712 tunmp - ok
13:55:26.0936 1712 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys
13:55:26.0967 1712 tunnel - ok
13:55:27.0014 1712 uagp35 (c3ade15414120033a36c0f293d4a4121) C:\Windows\system32\drivers\uagp35.sys
13:55:27.0029 1712 uagp35 - ok
13:55:27.0092 1712 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
13:55:27.0123 1712 udfs - ok
13:55:27.0170 1712 UI0Detect (ecef404f62863755951e09c802c94ad5) C:\Windows\system32\UI0Detect.exe
13:55:27.0232 1712 UI0Detect - ok
13:55:27.0263 1712 uliagpkx (75e6890ebfce0841d3291b02e7a8bdb0) C:\Windows\system32\drivers\uliagpkx.sys
13:55:27.0279 1712 uliagpkx - ok
13:55:27.0341 1712 uliahci (3cd4ea35a6221b85dcc25daa46313f8d) C:\Windows\system32\drivers\uliahci.sys
13:55:27.0357 1712 uliahci - ok
13:55:27.0404 1712 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
13:55:27.0419 1712 UlSata - ok
13:55:27.0435 1712 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
13:55:27.0466 1712 ulsata2 - ok
13:55:27.0513 1712 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
13:55:27.0575 1712 umbus - ok
13:55:27.0622 1712 upnphost (68308183f4ae0be7bf8ecd07cb297999) C:\Windows\System32\upnphost.dll
13:55:27.0669 1712 upnphost - ok
13:55:27.0731 1712 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
13:55:27.0778 1712 usbccgp - ok
13:55:27.0825 1712 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
13:55:27.0934 1712 usbcir - ok
13:55:27.0996 1712 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
13:55:28.0028 1712 usbehci - ok
13:55:28.0090 1712 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
13:55:28.0152 1712 usbhub - ok
13:55:28.0199 1712 usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys
13:55:28.0277 1712 usbohci - ok
13:55:28.0308 1712 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys
13:55:28.0355 1712 usbprint - ok
13:55:28.0402 1712 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:55:28.0433 1712 USBSTOR - ok
13:55:28.0496 1712 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
13:55:28.0527 1712 usbuhci - ok
13:55:28.0558 1712 usb_rndisx (35c9095fa7076466afbfc5b9ec4b779e) C:\Windows\system32\DRIVERS\usb8023x.sys
13:55:28.0620 1712 usb_rndisx - ok
13:55:28.0683 1712 UxSms (1509e705f3ac1d474c92454a5c2dd81f) C:\Windows\System32\uxsms.dll
13:55:28.0730 1712 UxSms - ok
13:55:28.0792 1712 vds (cd88d1b7776dc17a119049742ec07eb4) C:\Windows\System32\vds.exe
13:55:28.0839 1712 vds - ok
13:55:28.0886 1712 vga (7d92be0028ecdedec74617009084b5ef) C:\Windows\system32\DRIVERS\vgapnp.sys
13:55:28.0964 1712 vga - ok
13:55:29.0010 1712 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
13:55:29.0042 1712 VgaSave - ok
13:55:29.0073 1712 viaagp (045d9961e591cf0674a920b6ba3ba5cb) C:\Windows\system32\drivers\viaagp.sys
13:55:29.0088 1712 viaagp - ok
13:55:29.0120 1712 ViaC7 (56a4de5f02f2e88182b0981119b4dd98) C:\Windows\system32\drivers\viac7.sys
13:55:29.0182 1712 ViaC7 - ok
13:55:29.0213 1712 viaide (fd2e3175fcada350c7ab4521dca187ec) C:\Windows\system32\drivers\viaide.sys
13:55:29.0229 1712 viaide - ok
13:55:29.0291 1712 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
13:55:29.0291 1712 volmgr - ok
13:55:29.0369 1712 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
13:55:29.0400 1712 volmgrx - ok
13:55:29.0463 1712 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
13:55:29.0478 1712 volsnap - ok
13:55:29.0541 1712 vsmraid (d984439746d42b30fc65a4c3546c6829) C:\Windows\system32\drivers\vsmraid.sys
13:55:29.0556 1712 vsmraid - ok
13:55:29.0681 1712 VSS (db3d19f850c6eb32bdcb9bc0836acddb) C:\Windows\system32\vssvc.exe
13:55:29.0806 1712 VSS - ok
13:55:29.0900 1712 W32Time (96ea68b9eb310a69c25ebb0282b2b9de) C:\Windows\system32\w32time.dll
13:55:29.0931 1712 W32Time - ok
13:55:30.0024 1712 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
13:55:30.0102 1712 WacomPen - ok
13:55:30.0149 1712 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
13:55:30.0180 1712 Wanarp - ok
13:55:30.0180 1712 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
13:55:30.0227 1712 Wanarpv6 - ok
13:55:30.0336 1712 WcesComm (779f9c90d3fe9c70b6ffd8ef035f3e83) C:\Windows\WindowsMobile\wcescomm.dll
13:55:30.0383 1712 WcesComm - ok
13:55:30.0477 1712 wcncsvc (a3cd60fd826381b49f03832590e069af) C:\Windows\System32\wcncsvc.dll
13:55:30.0508 1712 wcncsvc - ok
13:55:30.0555 1712 WcsPlugInService (11bcb7afcdd7aadacb5746f544d3a9c7) C:\Windows\System32\WcsPlugInService.dll
13:55:30.0586 1712 WcsPlugInService - ok
13:55:30.0617 1712 Wd (afc5ad65b991c1e205cf25cfdbf7a6f4) C:\Windows\system32\drivers\wd.sys
13:55:30.0648 1712 Wd - ok
13:55:30.0726 1712 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys
13:55:30.0758 1712 Wdf01000 - ok
13:55:30.0804 1712 WdiServiceHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\Windows\system32\wdi.dll
13:55:30.0898 1712 WdiServiceHost - ok
13:55:30.0898 1712 WdiSystemHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\Windows\system32\wdi.dll
13:55:30.0929 1712 WdiSystemHost - ok
13:55:30.0992 1712 WebClient (04c37d8107320312fbae09926103d5e2) C:\Windows\System32\webclnt.dll
13:55:31.0038 1712 WebClient - ok
13:55:31.0101 1712 Wecsvc (ae3736e7e8892241c23e4ebbb7453b60) C:\Windows\system32\wecsvc.dll
13:55:31.0148 1712 Wecsvc - ok
13:55:31.0179 1712 wercplsupport (670ff720071ed741206d69bd995ea453) C:\Windows\System32\wercplsupport.dll
13:55:31.0241 1712 wercplsupport - ok
13:55:31.0288 1712 WerSvc (32b88481d3b326da6deb07b1d03481e7) C:\Windows\System32\WerSvc.dll
13:55:31.0335 1712 WerSvc - ok
13:55:31.0413 1712 winachsf (3344b5c3209e538291398ff12f895155) C:\Windows\system32\DRIVERS\HSX_CNXT.sys
13:55:31.0475 1712 winachsf - ok
13:55:31.0491 1712 WinHttpAutoProxySvc - ok
13:55:31.0553 1712 Winmgmt (6b2a1d0e80110e3d04e6863c6e62fd8a) C:\Windows\system32\wbem\WMIsvc.dll
13:55:31.0600 1712 Winmgmt - ok
13:55:31.0756 1712 WinRM (7cfe68bdc065e55aa5e8421607037511) C:\Windows\system32\WsmSvc.dll
13:55:31.0881 1712 WinRM - ok
13:55:31.0974 1712 winusb (676f4b665bdd8053eaa53ac1695b8074) C:\Windows\system32\DRIVERS\winusb.sys
13:55:31.0990 1712 winusb - ok
13:55:32.0084 1712 Wlansvc (c008405e4feeb069e30da1d823910234) C:\Windows\System32\wlansvc.dll
13:55:32.0208 1712 Wlansvc - ok
13:55:32.0255 1712 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\DRIVERS\wmiacpi.sys
13:55:32.0286 1712 WmiAcpi - ok
13:55:32.0396 1712 wmiApSrv (43be3875207dcb62a85c8c49970b66cc) C:\Windows\system32\wbem\WmiApSrv.exe
13:55:32.0411 1712 wmiApSrv - ok
13:55:32.0567 1712 WMPNetworkSvc (3978704576a121a9204f8cc49a301a9b) C:\Program Files\Windows Media Player\wmpnetwk.exe
13:55:32.0708 1712 WMPNetworkSvc - ok
13:55:32.0770 1712 WPCSvc (cfc5a04558f5070cee3e3a7809f3ff52) C:\Windows\System32\wpcsvc.dll
13:55:32.0817 1712 WPCSvc - ok
13:55:32.0864 1712 WPDBusEnum (801fbdb89d472b3c467eb112a0fc9246) C:\Windows\system32\wpdbusenum.dll
13:55:32.0942 1712 WPDBusEnum - ok
13:55:33.0051 1712 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys
13:55:33.0082 1712 WpdUsb - ok
13:55:33.0269 1712 WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
13:55:33.0332 1712 WPFFontCache_v0400 - ok
13:55:33.0363 1712 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
13:55:33.0410 1712 ws2ifsl - ok
13:55:33.0425 1712 WSearch - ok
13:55:33.0644 1712 wuauserv (6298277b73c77fa99106b271a7525163) C:\Windows\system32\wuaueng.dll
13:55:33.0784 1712 wuauserv - ok
13:55:33.0987 1712 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
13:55:34.0034 1712 WUDFRd - ok
13:55:34.0080 1712 wudfsvc (575a4190d989f64732119e4114045a4f) C:\Windows\System32\WUDFSvc.dll
13:55:34.0127 1712 wudfsvc - ok
13:55:34.0190 1712 XAudio (2e579520e114a9ca309f13bf40ad8292) C:\Windows\system32\DRIVERS\xaudio.sys
13:55:34.0205 1712 XAudio - ok
13:55:34.0268 1712 XAudioService (f82fc2c30a19442b95ae554215837c46) C:\Windows\system32\DRIVERS\xaudio.exe
13:55:34.0330 1712 XAudioService - ok
13:55:34.0392 1712 MBR (0x1B8) (a863475757cc50891aa8458c415e4b25) \Device\Harddisk0\DR0
13:55:38.0277 1712 \Device\Harddisk0\DR0 - ok
13:55:38.0292 1712 MBR (0x1B8) (ddae9d649db12f6aff24483f2c298989) \Device\Harddisk1\DR8
13:55:38.0526 1712 \Device\Harddisk1\DR8 - ok
13:55:38.0558 1712 Boot (0x1200) (a6955117298c4673fb2e15a0a1dda9ff) \Device\Harddisk0\DR0\Partition0
13:55:38.0558 1712 \Device\Harddisk0\DR0\Partition0 - ok
13:55:38.0589 1712 Boot (0x1200) (49de3365f9db7c47f5b9a42c012eb9ad) \Device\Harddisk0\DR0\Partition1
13:55:38.0589 1712 \Device\Harddisk0\DR0\Partition1 - ok
13:55:38.0604 1712 Boot (0x1200) (6dbb2dded123d2cd821e3d9a557ec6ed) \Device\Harddisk1\DR8\Partition0
13:55:38.0604 1712 \Device\Harddisk1\DR8\Partition0 - ok
13:55:38.0604 1712 ============================================================
13:55:38.0604 1712 Scan finished
13:55:38.0604 1712 ============================================================
13:55:38.0636 1488 Detected object count: 6
13:55:38.0636 1488 Actual detected object count: 6
13:57:02.0564 1488 eRecoveryService ( UnsignedFile.Multi.Generic ) - skipped by user
13:57:02.0564 1488 eRecoveryService ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:57:02.0564 1488 FsUsbExDisk ( UnsignedFile.Multi.Generic ) - skipped by user
13:57:02.0564 1488 FsUsbExDisk ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:57:02.0564 1488 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
13:57:02.0564 1488 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:57:02.0564 1488 LightScribeService ( UnsignedFile.Multi.Generic ) - skipped by user
13:57:02.0564 1488 LightScribeService ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:57:02.0595 1488 NBService ( UnsignedFile.Multi.Generic ) - skipped by user
13:57:02.0595 1488 NBService ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:57:02.0595 1488 NTIDrvr ( UnsignedFile.Multi.Generic ) - skipped by user
13:57:02.0595 1488 NTIDrvr ( UnsignedFile.Multi.Generic ) - User select action: Skip

Re: Security shield - kajakk5

Napsal: 04 čer 2012 13:27
od vyosek
:arrow: Ja si to z tech barvicek odstranil, to se nedalo cist :D

:arrow: Pokud je vice logu, tak bud kazdy zvlast do samostatneho prispveku nebo mezi nimi udelat vetsi mezeru

:arrow: Dejte mi chvili, nez to projdu a napisu dalsi postup :)

Re: Security shield - kajakk5

Napsal: 04 čer 2012 13:29
od vyosek
:arrow: Odinstalujte SearchSettings a Aplication Updater od Spigotu

:arrow: Doporucuji odinstalovat (pokud nepouzivate) toolbary (listy prohlizecu) v Přidat nebo odebrat programy

:arrow: Poprosim o log z DDS PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
:arrow: Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe
  • Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
  • Pokud mate Win XP spustte pod uctem Spravce\Administratora
  • Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
  • Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
  • Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
  • Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
  • Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
  • Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
  • Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix

Re: Security shield - kajakk5

Napsal: 04 čer 2012 13:40
od kajakk5
diky..
bohuzel SearchSettings a Aplication Updater od Spigotu ani toolbary se v pridat, odebrat programy nezobrazuji, mam restartovat a spustit v beznem rezimu??

Muzu odinstalace vyse uvedeneho preskocit a zacit s DDS??

Dik K.

Re: Security shield - kajakk5

Napsal: 04 čer 2012 13:45
od vyosek
Ano, preskocte na DDS, ja to pak vezmu skriptem :wink:

Re: Security shield - kajakk5

Napsal: 04 čer 2012 13:51
od kajakk5
posilam i kdyz nezazipovane...


.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-09-30.01)
.
Microsoft® Windows Vista™ Home Basic
Boot Device: \Device\HarddiskVolume2
Install Date: 21.11.2007 20:12:46
System Uptime: 4.6.2012 13:12:31 (1 hours ago)
.
Motherboard: Acer | | Acadia
Processor: Intel(R) Celeron(R) M CPU 530 @ 1.73GHz | U1 | 1729/133mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 33 GiB total, 2,604 GiB free.
D: is FIXED (NTFS) - 32 GiB total, 21,074 GiB free.
E: is CDROM ()
F: is Removable
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
.
==== Image File Execution Options =============
.
.
==== Installed Programs ======================
.
18 Wheels of Steel Pedal to the Metal
Acer GridVista
Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742)
Adobe Flash Player 11 Plugin
Adobe Reader 8 - Czech
Adobe Reader 8.1.2 Security Update 1 (KB403742)
ALPS Touch Pad Driver
ConvertXtoDVD 3.7.3.190b
HDAUDIO Soft Data Fax Modem with SmartCP
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Intel(R) Graphics Media Accelerator Driver
Intel(R) Matrix Storage Manager
Java Auto Updater
Java(TM) 6 Update 22
Java(TM) 7 Update 3
LightScribe 1.4.142.1
MediaMonkey 4.0
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Client Profile CSY Language Pack
Microsoft Antimalware Service CS-CZ Language Pack
Microsoft Office File Validation Add-In
Microsoft Office Professional Edition 2003
Microsoft Security Client
Microsoft Security Client CS-CZ Language Pack
Microsoft Security Essentials
Microsoft Visual C++ 2005 Redistributable
Microsoft Works
Mozilla Firefox 12.0 (x86 cs)
Mozilla Maintenance Service
MPEG2 Codec(libmpeg2/mad)
Nero 7 Ultra Edition
PttM 1.07 Czech patch
Realtek High Definition Audio Driver
Sada Compatibility Pack pro systém Office 2007
Security Update for CAPICOM (KB931906)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile CSY Language Pack (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile CSY Language Pack (KB2518870)
Skype™ 5.8
Total Commander (Remove or Repair)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Visual C++ 9.0 CRT (x86) WinSXS MSM
Visual C++ 9.0 OpenMP (x86) WinSXS MSM
VLC media player 2.0.1
Windows Media Player Firefox Plugin
WinRAR
Yahoo! Toolbar
YouTube Downloader Toolbar v5.8
YTD YouTube Downloader & Converter 3.6
.
==== End Of File ===========================

Re: Security shield - kajakk5

Napsal: 04 čer 2012 13:53
od vyosek
Poprosim jeste o log dds.txt a nasledne pak ComboFix

Re: Security shield - kajakk5

Napsal: 04 čer 2012 14:03
od kajakk5
nevim, kam se uklada ten dds.txt, kdyz jsem ho dal vyhledat nebylo nic nalezeno...jak dál?

Re: Security shield - kajakk5

Napsal: 04 čer 2012 14:06
od vyosek
Mel jste DDS nastavene takto
Obrázek[/URL]

Pripadne jej udelejte znovu prosim

Re: Security shield - kajakk5

Napsal: 04 čer 2012 14:08
od kajakk5
nastaveno spravne, zkousel jsem nekolikrat, ani skoro nedobehne a zmizi... bez logu. porad pracuji v nouzovem rezimu..

Re: Security shield - kajakk5

Napsal: 04 čer 2012 14:09
od vyosek
tak udelejte primo ComboFix :wink: