Stránka 1 z 2

Trojský kůň PSW.Agent a Generic27.AKPW

Napsal: 23 srp 2012 13:00
od Spid3r
Vážené dámy, vážení pánové,

AVG 2012 mi ukazuje přesně toto: http://2i.cz/47e55872a1 a ať dělám, co dělám, viry nejdou smazat, přesunout do truhly ani podobně. HDD jsem dal do jiného PC a projel Avastem, bohužel bez úspěchu.

Přikládám tedy log a žádám Vás o pomoc.

Předem děkuji a klaním se lidem, kteří se v logu dokáží vyznat.

Logfile of random's system information tool 1.09 (written by random/random)
Run by Ing. Karel Mikeš at 2012-08-23 13:57:50
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 38 GB (53%) free of 73 GB
Total RAM: 1022 MB (32% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:58:13, on 23.8.2012
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\AVG\AVG2012\avgtray.exe
C:\Program Files\AVG Secure Search\vprot.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\AVG\AVG2012\avgfws.exe
C:\Program Files\AVG\AVG2012\avgwdsvc.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\AVG\AVG2012\avgnsx.exe
C:\Program Files\AVG\AVG2012\avgemcx.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG2012\avgrsx.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\AVG\AVG2012\avgcsrvx.exe
C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
C:\Program Files\AVG\AVG2012\avgidsagent.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\AVG\AVG2012\avgcsrvx.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Ing. Karel Mikeš\Plocha\RSIT.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\Ing. Karel Mikeš.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://uk.rd.yahoo.com/customize/ycomp/ ... .yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://cs.intl.acer.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://cs.intl.acer.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://cs.intl.acer.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://uk.rd.yahoo.com/customize/ycomp/ ... .yahoo.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://global.acer.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AVG Do Not Track - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - C:\Program Files\AVG\AVG2012\avgdtiex.dll
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\11.0.0.10\AVG Secure Search_toolbar.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\WINDOWS\system32\eDStoolbar.dll
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\11.0.0.10\AVG Secure Search_toolbar.dll
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
O4 - HKLM\..\Run: [AVG_TRAY] "C:\Program Files\AVG\AVG2012\avgtray.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: AVG Do Not Track - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - C:\Program Files\AVG\AVG2012\avgdtiex.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\11.0.2\ViProtocol.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgfws.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: eLock Service (eLockService) - - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe

--
End of file - 8442 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\Mozilla\Firefox\Profiles\gm2i7nz4.default

prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "keyword.URL" - "http://isearch.avg.com/search?cid=%7Bed ... &sap=ku&q="

"{F53C93F1-07D5-430c-86D4-C9531B27DFAF}"=C:\Program Files\AVG\AVG2012\Firefox\DoNotTrack\
"avg@toolbar"=C:\Documents and Settings\All Users\Data aplikací\AVG Secure Search\11.0.0.10\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.3.300.271 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_271.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin]
"Description"=
"Path"=C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\11.0.2\\npsitesafety.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files\Mozilla Firefox\searchplugins\
avg-secure-search.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\Mozilla\Firefox\Profiles\gm2i7nz4.default\extensions\
avg@toolbar
toolbar@ask.com

C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\Mozilla\Firefox\Profiles\gm2i7nz4.default\searchplugins\
askcom.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31332EEF-CB9F-458F-AFEB-D30E9A66B6BA}]
AVG Do Not Track - C:\Program Files\AVG\AVG2012\avgdtiex.dll [2012-06-13 937592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG Security Toolbar - C:\Program Files\AVG Secure Search\11.0.0.10\AVG Secure Search_toolbar.dll [2012-08-17 2069088]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - Acer eDataSecurity Management - C:\WINDOWS\system32\eDStoolbar.dll [2007-05-28 106496]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG Security Toolbar - C:\Program Files\AVG Secure Search\11.0.0.10\AVG Secure Search_toolbar.dll [2012-08-17 2069088]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-09-07 1015808]
"SynTPStart"=C:\Program Files\Synaptics\SynTP\SynTPStart.exe [2007-09-07 102400]
"AVG_TRAY"=C:\Program Files\AVG\AVG2012\avgtray.exe [2012-04-05 2587008]
"vProt"=C:\Program Files\AVG Secure Search\vprot.exe [2012-08-17 1118304]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-18 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acer ePresentation HPD]
C:\Acer\Empowering Technology\ePresentation\ePresentation.exe [2007-03-02 208896]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2007-03-08 40048]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AzMixerSel]
C:\Program Files\Realtek\InstallShield\AzMixerSel.exe [2005-06-11 53248]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Boot]
C:\Acer\Empowering Technology\ePower\Boot.exe [2006-03-15 579584]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eDataSecurity Loader]
C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe [2007-05-28 342528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eLockMonitor]
C:\Acer\Empowering Technology\eLock\Monitor\LaunchMonitor.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ePower_DMC]
C:\Acer\Empowering Technology\ePower\ePower_DMC.exe [2007-07-04 475136]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eRecoveryService]
C:\Acer\Empowering Technology\eRecovery\eRAgent.exe [2007-07-11 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAAnotif]
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2007-03-21 174872]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]
C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-18 208952]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2007-01-08 52256]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LManager]
C:\PROGRA~1\LAUNCH~1\LManager.exe [2007-10-17 858632]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSPY2002]
C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe [2004-08-18 59392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A]
C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-18 455168]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync]
C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-18 455168]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PLFSetL]
C:\WINDOWS\PLFSetL.exe [2007-07-05 94208]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\preload]
C:\Windows\RUNXMLPL.exe [2007-04-21 20480]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2007-01-08 68640]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2007-05-28 16132608]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WarReg_PopUp]
C:\Acer\WR_PopUp\WarReg_PopUp.exe [2007-02-20 61440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Acer Empowering Technology.lnk]
C:\Acer\EMPOWE~1\ACEREM~1.EXE [2007-07-12 45056]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"vToolbarUpdater11.0.2"=2
"PanService"=2

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2007-10-04 122880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2007-06-05 204800]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe"="C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe:*:Enabled:CyberLink PowerDVD"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\AVG\AVG2012\avgnsx.exe"="C:\Program Files\AVG\AVG2012\avgnsx.exe:*:Enabled:Webový štít"
"C:\Program Files\AVG\AVG2012\avgdiagex.exe"="C:\Program Files\AVG\AVG2012\avgdiagex.exe:*:Enabled:AVG Diagnostika 2012"
"C:\Program Files\AVG\AVG2012\avgmfapx.exe"="C:\Program Files\AVG\AVG2012\avgmfapx.exe:*:Enabled:Instalátor AVG"
"C:\Program Files\AVG\AVG2012\avgemcx.exe"="C:\Program Files\AVG\AVG2012\avgemcx.exe:*:Enabled:Obecná kontrola pošty"
"C:\Program Files\PANDORA.TV\PanService\PandoraService.exe"="C:\Program Files\PANDORA.TV\PanService\PandoraService.exe:*:Enabled:PandoraService"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.scr - open - C:\WINDOWS\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2012-08-23 13:57:51 ----D---- C:\Program Files\trend micro
2012-08-23 13:57:49 ----D---- C:\rsit
2012-08-23 09:06:14 ----D---- C:\WINDOWS\CSC
2012-08-23 09:06:04 ----A---- C:\WINDOWS\ntbtlog.txt
2012-08-19 21:35:37 ----D---- C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\TeamViewer
2012-08-19 21:35:28 ----D---- C:\Program Files\TeamViewer
2012-08-19 19:51:58 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2012-08-18 01:13:15 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2012-08-17 23:10:22 ----D---- C:\Program Files\PANDORA.TV
2012-08-17 23:09:55 ----D---- C:\Program Files\The KMPlayer
2012-08-17 23:09:10 ----D---- C:\Documents and Settings\All Users\Data aplikací\Ask
2012-08-17 20:33:40 ----D---- C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\Adobe
2012-08-17 20:29:04 ----D---- C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\AVG2012
2012-08-17 20:28:18 ----D---- C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\AVG Secure Search
2012-08-17 20:27:18 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVG Secure Search
2012-08-17 20:27:15 ----D---- C:\Program Files\Common Files\AVG Secure Search
2012-08-17 20:27:14 ----D---- C:\Program Files\AVG Secure Search
2012-08-17 20:07:44 ----HD---- C:\$AVG
2012-08-17 20:07:44 ----D---- C:\WINDOWS\system32\drivers\AVG
2012-08-17 20:07:44 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVG2012
2012-08-17 20:07:16 ----D---- C:\Program Files\AVG
2012-08-17 20:00:25 ----HD---- C:\Documents and Settings\All Users\Data aplikací\Common Files
2012-08-17 20:00:25 ----D---- C:\Documents and Settings\All Users\Data aplikací\MFAData
2012-08-17 19:57:18 ----D---- C:\Program Files\7-Zip
2012-08-17 19:32:56 ----D---- C:\Program Files\Common Files\Autodesk Shared
2012-08-17 19:32:56 ----D---- C:\Program Files\Autodesk
2012-08-17 19:03:45 ----D---- C:\WINDOWS\system32\en-US
2012-08-17 18:58:28 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2012-08-17 18:55:14 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2012-08-17 18:55:13 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2012-08-17 18:55:13 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2012-08-17 18:55:11 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2012-08-17 18:55:04 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2012-08-17 18:55:00 ----D---- C:\WINDOWS\Logs
2012-08-17 17:09:18 ----D---- C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\Autodesk
2012-08-17 17:09:18 ----D---- C:\Documents and Settings\All Users\Data aplikací\Autodesk
2012-08-17 17:08:46 ----HDC---- C:\WINDOWS\$NtUninstallKB942288-v3$
2012-08-17 17:08:31 ----N---- C:\WINDOWS\system32\spmsg.dll
2012-08-17 17:08:26 ----HDC---- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
2012-08-17 17:07:04 ----D---- C:\Autodesk
2012-08-17 14:52:47 ----D---- C:\totalcmd
2012-08-17 14:52:47 ----D---- C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\GHISLER
2012-08-17 14:52:47 ----A---- C:\WINDOWS\UC.PIF
2012-08-17 14:52:47 ----A---- C:\WINDOWS\RAR.PIF
2012-08-17 14:52:47 ----A---- C:\WINDOWS\PKZIP.PIF
2012-08-17 14:52:47 ----A---- C:\WINDOWS\PKUNZIP.PIF
2012-08-17 14:52:47 ----A---- C:\WINDOWS\LHA.PIF
2012-08-17 14:52:47 ----A---- C:\WINDOWS\ARJ.PIF
2012-08-17 14:50:15 ----SHD---- C:\RECYCLER
2012-08-17 14:49:22 ----D---- C:\Data
2012-08-17 14:17:22 ----D---- C:\WINDOWS\pss
2012-08-15 23:13:03 ----A---- C:\WINDOWS\UNINST32.EXE
2012-08-15 23:13:03 ----A---- C:\WINDOWS\system32\FILTRCOI.DLL
2012-08-15 23:13:03 ----A---- C:\WINDOWS\system32\drivers\DKbFltr.SYS
2012-08-15 23:12:19 ----A---- C:\WINDOWS\system32\NETw4r32.dll
2012-08-15 23:12:19 ----A---- C:\WINDOWS\system32\NETw4c32.dll
2012-08-15 23:12:19 ----A---- C:\WINDOWS\system32\drivers\NETw4x32.sys
2012-08-15 23:12:17 ----D---- C:\WINDOWS\modem
2012-08-15 23:12:17 ----A---- C:\WINDOWS\system32\UCI32M16.dll
2012-08-15 23:12:17 ----A---- C:\WINDOWS\system32\mdmxsdk.dll
2012-08-15 23:12:17 ----A---- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2012-08-15 23:12:17 ----A---- C:\WINDOWS\system32\drivers\HSFHWAZL.sys
2012-08-15 23:12:17 ----A---- C:\WINDOWS\system32\drivers\HSF_DPV.sys
2012-08-15 23:12:17 ----A---- C:\WINDOWS\system32\drivers\HSF_CNXT.sys
2012-08-15 23:12:00 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll
2012-08-15 23:12:00 ----A---- C:\WINDOWS\system32\ativvaxx.dll
2012-08-15 23:12:00 ----A---- C:\WINDOWS\system32\ativvaxx.dat
2012-08-15 23:12:00 ----A---- C:\WINDOWS\system32\ativva6x.dat
2012-08-15 23:12:00 ----A---- C:\WINDOWS\system32\ativva5x.dat
2012-08-15 23:12:00 ----A---- C:\WINDOWS\system32\atiok3x2.dll
2012-08-15 23:12:00 ----A---- C:\WINDOWS\system32\atioglx2.dll
2012-08-15 23:12:00 ----A---- C:\WINDOWS\system32\atikvmag.dll
2012-08-15 23:12:00 ----A---- C:\WINDOWS\system32\atiicdxx.dat
2012-08-15 23:12:00 ----A---- C:\WINDOWS\system32\ATIDEMGX.dll
2012-08-15 23:12:00 ----A---- C:\WINDOWS\system32\ATIDDC.DLL
2012-08-15 23:12:00 ----A---- C:\WINDOWS\system32\ati2evxx.dll
2012-08-15 23:12:00 ----A---- C:\WINDOWS\system32\ati2edxx.dll
2012-08-15 23:11:59 ----D---- C:\WINDOWS\VGA
2012-08-15 23:11:59 ----A---- C:\WINDOWS\system32\drivers\ati2mtag.sys
2012-08-15 23:11:59 ----A---- C:\WINDOWS\system32\ativcoxx.dll
2012-08-15 23:11:59 ----A---- C:\WINDOWS\system32\atitvo32.dll
2012-08-15 23:11:59 ----A---- C:\WINDOWS\system32\atipdlxx.dll
2012-08-15 23:11:59 ----A---- C:\WINDOWS\system32\atioglxx.dll
2012-08-15 23:11:59 ----A---- C:\WINDOWS\system32\atiiiexx.dll
2012-08-15 23:11:59 ----A---- C:\WINDOWS\system32\ati3duag.dll
2012-08-15 23:11:59 ----A---- C:\WINDOWS\system32\Ati2mdxx.exe
2012-08-15 23:11:59 ----A---- C:\WINDOWS\system32\ati2evxx.exe
2012-08-15 23:11:59 ----A---- C:\WINDOWS\system32\ati2dvag.dll
2012-08-15 23:11:59 ----A---- C:\WINDOWS\system32\ati2cqag.dll
2012-08-15 23:11:50 ----D---- C:\WINDOWS\Lan
2012-08-15 23:11:50 ----A---- C:\WINDOWS\PreLaunch.ini
2012-08-15 23:11:50 ----A---- C:\WINDOWS\PreLaunch.exe
2012-08-15 14:57:32 ----A---- C:\WINDOWS\system32\msonpmon.dll
2012-08-15 14:49:25 ----D---- C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\ATI
2012-08-15 14:49:25 ----D---- C:\Documents and Settings\All Users\Data aplikací\ATI
2012-08-15 14:46:10 ----A---- C:\WINDOWS\setup.INI
2012-08-15 14:45:55 ----D---- C:\Program Files\Launch Manager
2012-08-15 14:45:18 ----A---- C:\WINDOWS\system32\drivers\zntport64.sys
2012-08-15 14:45:18 ----A---- C:\WINDOWS\system32\drivers\zntport.sys
2012-08-15 14:45:18 ----A---- C:\WINDOWS\system32\drivers\TVicPort64.sys
2012-08-15 14:45:18 ----A---- C:\WINDOWS\system32\drivers\TVicPort.sys
2012-08-15 14:45:18 ----A---- C:\WINDOWS\system32\drivers\int15_64.sys
2012-08-15 14:45:18 ----A---- C:\WINDOWS\system32\drivers\int15.sys
2012-08-15 14:44:43 ----A---- C:\WINDOWS\system32\Uninstall_eRecovery.exe
2012-08-15 14:44:43 ----A---- C:\WINDOWS\system32\CheckD2DSystem.exe
2012-08-15 14:44:43 ----A---- C:\WINDOWS\system32\ERUpdateHidden.EXE
2012-08-15 14:44:43 ----A---- C:\WINDOWS\system32\CloseProcessWindow.dll
2012-08-15 14:44:43 ----A---- C:\WINDOWS\system32\ClearEvent.exe
2012-08-15 14:44:43 ----A---- C:\WINDOWS\system32\Acer EULA.txt
2012-08-15 14:44:29 ----D---- C:\Program Files\WinPCap
2012-08-15 14:44:29 ----A---- C:\WINDOWS\system32\pthreadVC.dll
2012-08-15 14:44:29 ----A---- C:\WINDOWS\system32\drivers\npf.sys
2012-08-15 14:44:27 ----A---- C:\WINDOWS\system32\results.txt
2012-08-15 14:44:22 ----A---- C:\WINDOWS\system32\drivers\AegisP.sys
2012-08-15 14:43:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\Intel
2012-08-15 14:43:38 ----A---- C:\WINDOWS\system32\wpcap.dll
2012-08-15 14:43:38 ----A---- C:\WINDOWS\system32\WanPacket.dll
2012-08-15 14:43:38 ----A---- C:\WINDOWS\system32\packet.dll
2012-08-15 14:43:37 ----A---- C:\WINDOWS\system32\WirelessMgr.dll
2012-08-15 14:43:37 ----A---- C:\WINDOWS\system32\acerGina.dll
2012-08-15 14:42:36 ----D---- C:\WINDOWS\Downloaded Installations
2012-08-15 14:41:56 ----A---- C:\WINDOWS\system32\NATTraversal.dll
2012-08-15 14:41:18 ----D---- C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\Thunderbird
2012-08-15 14:41:11 ----A---- C:\WINDOWS\system32\drivers\epm-shd.sys
2012-08-15 14:41:11 ----A---- C:\WINDOWS\system32\drivers\epm-psd.sys
2012-08-15 14:41:11 ----A---- C:\WINDOWS\system32\acpimof.dll
2012-08-15 14:41:10 ----A---- C:\WINDOWS\system32\Epm-Po.dll
2012-08-15 14:40:58 ----D---- C:\Program Files\Mozilla Thunderbird
2012-08-15 14:39:12 ----A---- C:\WINDOWS\system32\eRecUtil.dll
2012-08-15 14:39:10 ----A---- C:\WINDOWS\system32\Acer.Empowering.Windows.Forms_v820.dll
2012-08-15 14:39:06 ----A---- C:\WINDOWS\system32\SysMonitor.exe
2012-08-15 14:39:06 ----A---- C:\WINDOWS\system32\ScrollBarLib.dll
2012-08-15 14:39:06 ----A---- C:\WINDOWS\system32\Interop.Shell32.dll
2012-08-15 14:39:06 ----A---- C:\WINDOWS\system32\Acer.Empowering.Windows.Forms.dll
2012-08-15 14:38:48 ----D---- C:\Acer
2012-08-15 14:38:29 ----D---- C:\Program Files\Yahoo!
2012-08-15 14:37:57 ----A---- C:\WINDOWS\system32\SynTPCo4.dll
2012-08-15 14:37:32 ----A---- C:\WINDOWS\system32\acer.scr
2012-08-15 14:37:29 ----A---- C:\WINDOWS\system32\acer.exe
2012-08-15 14:37:28 ----D---- C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\Macromedia
2012-08-15 14:37:27 ----D---- C:\WINDOWS\ACER
2012-08-15 14:36:55 ----D---- C:\WINDOWS\system32\drivers\x64
2012-08-15 14:36:55 ----D---- C:\WINDOWS\Acer Crystal Eye Webcam
2012-08-15 14:36:55 ----A---- C:\WINDOWS\system32\drivers\snp2uvc.sys
2012-08-15 14:36:55 ----A---- C:\WINDOWS\system32\drivers\sncduvc.sys
2012-08-15 14:36:55 ----A---- C:\WINDOWS\PLFSetL.exe
2012-08-15 14:36:53 ----D---- C:\WINDOWS\system32\x64
2012-08-15 14:36:53 ----A---- C:\WINDOWS\system32\vsnp2uvc.dll
2012-08-15 14:36:53 ----A---- C:\WINDOWS\system32\snp2uvc.sys
2012-08-15 14:36:53 ----A---- C:\WINDOWS\system32\sncduvc.sys
2012-08-15 14:36:53 ----A---- C:\WINDOWS\system32\rsnp2uvc.dll
2012-08-15 14:36:53 ----A---- C:\WINDOWS\system32\PLFSetL.exe
2012-08-15 14:36:53 ----A---- C:\WINDOWS\system32\PidList.ini
2012-08-15 14:36:53 ----A---- C:\WINDOWS\system32\csnp2uvc.dll
2012-08-15 14:36:53 ----A---- C:\WINDOWS\PidList.ini
2012-08-15 14:36:52 ----D---- C:\Program Files\Common Files\snp2uvc
2012-08-15 14:35:58 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2012-08-15 14:35:19 ----D---- C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\Mozilla
2012-08-15 14:34:28 ----D---- C:\Program Files\ATI Technologies
2012-08-15 14:33:42 ----D---- C:\Documents and Settings\All Users\Data aplikací\Mozilla
2012-08-15 14:33:41 ----D---- C:\Program Files\Mozilla Maintenance Service
2012-08-15 14:33:37 ----D---- C:\Program Files\Mozilla Firefox
2012-08-15 14:33:21 ----A---- C:\WINDOWS\system32\hidserv.dll
2012-08-15 14:32:11 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2012-08-15 14:27:07 ----A---- C:\WINDOWS\system32\drivers\btwusb.sys
2012-08-15 14:27:07 ----A---- C:\WINDOWS\system32\drivers\btwhid.sys
2012-08-15 14:27:07 ----A---- C:\WINDOWS\system32\drivers\btwdndis.sys
2012-08-15 14:27:07 ----A---- C:\WINDOWS\system32\drivers\btport.sys
2012-08-15 14:27:07 ----A---- C:\WINDOWS\system32\btw_ci.dll
2012-08-15 14:27:06 ----A---- C:\WINDOWS\system32\drivers\btkrnl.sys
2012-08-15 14:27:06 ----A---- C:\WINDOWS\system32\drivers\btaudio.sys
2012-08-15 14:26:58 ----D---- C:\Program Files\WIDCOMM
2012-08-15 14:23:35 ----ASH---- C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\desktop.ini
2012-08-15 14:23:34 ----D---- C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\InstallShield
2012-08-15 14:23:34 ----D---- C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\Identities
2012-08-15 14:23:33 ----SD---- C:\Documents and Settings\Ing. Karel Mikeš\Data aplikací\Microsoft
2012-08-15 14:16:59 ----A---- C:\WINDOWS\ModemLog_HDAUDIO Soft Data Fax Modem with SmartCP.txt
2012-08-15 14:14:48 ----D---- C:\Program Files\CONEXANT
2012-08-15 14:13:44 ----ASH---- C:\pagefile.sys

======List of files/folders modified in the last 1 month======

2012-08-23 13:57:51 ----D---- C:\Program Files
2012-08-23 13:55:41 ----D---- C:\WINDOWS\Prefetch
2012-08-23 13:49:09 ----D---- C:\WINDOWS\Temp
2012-08-23 13:41:08 ----D---- C:\WINDOWS\system32\CatRoot2
2012-08-23 13:40:54 ----D---- C:\WINDOWS
2012-08-23 13:40:10 ----D---- C:\WINDOWS\system32\drivers
2012-08-23 12:09:19 ----SHD---- C:\System Volume Information
2012-08-20 09:27:02 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-08-20 07:13:05 ----RSHD---- C:\WINDOWS\system32\dllcache
2012-08-20 07:13:00 ----D---- C:\WINDOWS\system32
2012-08-19 19:51:57 ----HD---- C:\WINDOWS\inf
2012-08-18 11:40:24 ----D---- C:\DOCS
2012-08-18 11:06:39 ----RASH---- C:\boot.ini
2012-08-18 11:06:39 ----A---- C:\WINDOWS\win.ini
2012-08-18 11:06:39 ----A---- C:\WINDOWS\system.ini
2012-08-18 01:13:25 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2012-08-18 01:13:16 ----SD---- C:\WINDOWS\Tasks
2012-08-18 00:36:23 ----D---- C:\WINDOWS\security
2012-08-17 20:29:23 ----SHD---- C:\WINDOWS\Installer
2012-08-17 20:27:15 ----D---- C:\Program Files\Common Files
2012-08-17 19:53:38 ----D---- C:\WINDOWS\Microsoft.NET
2012-08-17 19:53:37 ----RSD---- C:\WINDOWS\assembly
2012-08-17 19:34:24 ----RSD---- C:\WINDOWS\Fonts
2012-08-17 19:32:35 ----D---- C:\WINDOWS\system32\DirectX
2012-08-17 19:06:28 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-08-17 19:05:52 ----D---- C:\WINDOWS\system32\cs-CZ
2012-08-17 19:05:12 ----D---- C:\WINDOWS\WinSxS
2012-08-17 18:54:04 ----D---- C:\Program Files\Internet Explorer
2012-08-17 17:09:03 ----A---- C:\WINDOWS\imsins.BAK
2012-08-17 17:09:02 ----D---- C:\WINDOWS\system32\mui
2012-08-17 14:32:05 ----D---- C:\Program Files\Common Files\Symantec Shared
2012-08-17 14:31:24 ----D---- C:\Documents and Settings\All Users\Data aplikací\Symantec
2012-08-17 14:15:15 ----D---- C:\ELEMENTS
2012-08-15 23:12:29 ----D---- C:\BOOK
2012-08-15 23:11:41 ----RD---- C:\WINDOWS\Web
2012-08-15 23:11:40 ----D---- C:\WINDOWS\tiinst
2012-08-15 23:11:01 ----D---- C:\WINDOWS\system32\wbem
2012-08-15 23:10:59 ----D---- C:\WINDOWS\system32\usmt
2012-08-15 23:10:59 ----D---- C:\WINDOWS\system32\URTTemp
2012-08-15 23:10:59 ----D---- C:\WINDOWS\system32\spool
2012-08-15 23:10:59 ----D---- C:\WINDOWS\system32\Setup
2012-08-15 23:10:59 ----D---- C:\WINDOWS\system32\RTCOM
2012-08-15 23:10:58 ----D---- C:\WINDOWS\system32\Restore
2012-08-15 23:10:58 ----D---- C:\WINDOWS\system32\ras
2012-08-15 23:10:58 ----D---- C:\WINDOWS\system32\oobe
2012-08-15 23:10:57 ----D---- C:\WINDOWS\system32\oem
2012-08-15 23:10:47 ----D---- C:\WINDOWS\system32\npp
2012-08-15 23:10:47 ----D---- C:\WINDOWS\system32\MsDtc
2012-08-15 23:10:47 ----D---- C:\WINDOWS\system32\Macromed
2012-08-15 23:10:46 ----D---- C:\WINDOWS\system32\IME
2012-08-15 23:10:46 ----D---- C:\WINDOWS\system32\icsxml
2012-08-15 23:10:46 ----D---- C:\WINDOWS\system32\ias
2012-08-15 23:10:45 ----DC---- C:\WINDOWS\system32\DRVSTORE
2012-08-15 23:10:42 ----D---- C:\WINDOWS\system32\drivers\etc
2012-08-15 23:09:58 ----D---- C:\WINDOWS\system32\CSY
2012-08-15 23:09:55 ----D---- C:\WINDOWS\system32\Com
2012-08-15 23:09:54 ----D---- C:\WINDOWS\system32\1033
2012-08-15 23:09:54 ----D---- C:\WINDOWS\system32\1029
2012-08-15 23:09:54 ----D---- C:\WINDOWS\system
2012-08-15 23:09:54 ----D---- C:\WINDOWS\srchasst
2012-08-15 23:09:52 ----D---- C:\WINDOWS\Resources
2012-08-15 23:09:51 ----D---- C:\WINDOWS\repair
2012-08-15 23:09:50 ----D---- C:\WINDOWS\PeerNet
2012-08-15 23:09:44 ----RD---- C:\WINDOWS\Offline Web Pages
2012-08-15 23:09:44 ----D---- C:\WINDOWS\pchealth
2012-08-15 23:09:44 ----D---- C:\WINDOWS\msapps
2012-08-15 23:09:44 ----D---- C:\WINDOWS\msagent
2012-08-15 23:09:31 ----D---- C:\WINDOWS\Media
2012-08-15 23:09:31 ----D---- C:\WINDOWS\java
2012-08-15 23:09:10 ----D---- C:\WINDOWS\ime
2012-08-15 23:09:01 ----D---- C:\WINDOWS\Help
2012-08-15 23:08:43 ----D---- C:\WINDOWS\ehome
2012-08-15 23:08:36 ----SD---- C:\WINDOWS\Downloaded Program Files
2012-08-15 23:08:36 ----D---- C:\WINDOWS\Driver Cache
2012-08-15 23:08:36 ----D---- C:\WINDOWS\Debug
2012-08-15 23:08:36 ----D---- C:\WINDOWS\Cursors
2012-08-15 23:08:10 ----D---- C:\WINDOWS\AppPatch
2012-08-15 23:08:09 ----HDC---- C:\WINDOWS\$NtUninstallKB936357$
2012-08-15 23:08:09 ----HDC---- C:\WINDOWS\$NtUninstallKB935840$
2012-08-15 23:08:09 ----HDC---- C:\WINDOWS\$NtUninstallKB935839$
2012-08-15 23:08:09 ----HDC---- C:\WINDOWS\$NtUninstallKB935448$
2012-08-15 23:08:09 ----HDC---- C:\WINDOWS\$NtUninstallKB933566$
2012-08-15 23:08:09 ----D---- C:\WINDOWS\addins
2012-08-15 23:08:07 ----HDC---- C:\WINDOWS\$NtUninstallKB932168$
2012-08-15 23:08:07 ----HDC---- C:\WINDOWS\$NtUninstallKB931784$
2012-08-15 23:08:06 ----HDC---- C:\WINDOWS\$NtUninstallKB931768$
2012-08-15 23:08:05 ----HDC---- C:\WINDOWS\$NtUninstallKB931261$
2012-08-15 23:08:05 ----HDC---- C:\WINDOWS\$NtUninstallKB930916$
2012-08-15 23:08:05 ----HDC---- C:\WINDOWS\$NtUninstallKB930178$
2012-08-15 23:08:05 ----HDC---- C:\WINDOWS\$NtUninstallKB929338$
2012-08-15 23:08:04 ----HDC---- C:\WINDOWS\$NtUninstallKB929123$
2012-08-15 23:08:04 ----HDC---- C:\WINDOWS\$NtUninstallKB927891$
2012-08-15 23:08:04 ----HDC---- C:\WINDOWS\$NtUninstallKB925902$
2012-08-15 23:08:04 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$
2012-08-15 23:08:04 ----HDC---- C:\WINDOWS\$NtUninstallKB918005$
2012-08-15 23:08:04 ----HDC---- C:\WINDOWS\$NtUninstallKB914642$
2012-08-15 23:08:04 ----HDC---- C:\WINDOWS\$NtUninstallKB912945$
2012-08-15 23:08:04 ----HDC---- C:\WINDOWS\$NtUninstallKB909667$
2012-08-15 23:08:03 ----HDC---- C:\WINDOWS\$NtUninstallKB896256$
2012-08-15 23:08:03 ----HDC---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
2012-08-15 23:08:03 ----HDC---- C:\WINDOWS\$NtUninstallKB885855$
2012-08-15 23:08:03 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2012-08-15 23:08:02 ----HD---- C:\WINDOWS\$hf_mig$
2012-08-15 23:07:59 ----D---- C:\VALUEADD
2012-08-15 23:07:58 ----D---- C:\TEM
2012-08-15 23:07:58 ----D---- C:\sysinfo
2012-08-15 23:07:57 ----D---- C:\SUPPORT
2012-08-15 23:07:57 ----D---- C:\Program Files\xerox
2012-08-15 23:07:57 ----D---- C:\Program Files\Windows NT
2012-08-15 23:07:56 ----D---- C:\Program Files\Windows Media Player
2012-08-15 23:07:54 ----D---- C:\Program Files\Synaptics
2012-08-15 23:07:48 ----D---- C:\Program Files\Realtek
2012-08-15 23:07:48 ----D---- C:\Program Files\Outlook Express
2012-08-15 23:07:48 ----D---- C:\Program Files\Online Services
2012-08-15 23:07:46 ----D---- C:\Program Files\NewTech Infosystems
2012-08-15 23:07:43 ----D---- C:\Program Files\NetMeeting
2012-08-15 23:07:43 ----D---- C:\Program Files\MSN Gaming Zone
2012-08-15 23:07:43 ----D---- C:\Program Files\Movie Maker
2012-08-15 23:07:42 ----D---- C:\Program Files\Microsoft.NET
2012-08-15 23:07:42 ----D---- C:\Program Files\Microsoft Works
2012-08-15 23:07:41 ----D---- C:\Program Files\Microsoft Visual Studio
2012-08-15 23:07:30 ----D---- C:\Program Files\Microsoft SQL Server
2012-08-15 23:07:27 ----D---- C:\Program Files\Microsoft Small Business
2012-08-15 23:07:24 ----D---- C:\Program Files\Microsoft Office
2012-08-15 23:06:43 ----D---- C:\Program Files\microsoft frontpage
2012-08-15 23:06:43 ----D---- C:\Program Files\Messenger
2012-08-15 23:06:17 ----D---- C:\Program Files\Common Files\System
2012-08-15 23:06:01 ----D---- C:\Program Files\Common Files\SpeechEngines
2012-08-15 23:06:01 ----D---- C:\Program Files\Common Files\Services
2012-08-15 23:06:01 ----D---- C:\Program Files\Common Files\ODBC
2012-08-15 23:06:01 ----D---- C:\Program Files\Common Files\NewTech Infosystems
2012-08-15 23:06:00 ----D---- C:\Program Files\Common Files\muvee Technologies
2012-08-15 23:06:00 ----D---- C:\Program Files\Common Files\MSSoap
2012-08-15 23:05:47 ----D---- C:\Program Files\Common Files\LightScribe
2012-08-15 23:05:47 ----D---- C:\Program Files\Common Files\InstallShield
2012-08-15 23:05:46 ----D---- C:\Program Files\Common Files\DESIGNER
2012-08-15 23:05:46 ----D---- C:\Program Files\Common Files\Adobe
2012-08-15 23:05:46 ----D---- C:\Program Files\Broadcom
2012-08-15 23:05:32 ----D---- C:\Program Files\Adobe
2012-08-15 23:05:32 ----D---- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
2012-08-15 23:04:56 ----RHD---- C:\MSOCache
2012-08-15 23:04:56 ----D---- C:\I386
2012-08-15 23:04:09 ----D---- C:\DOTNETFX
2012-08-15 23:04:03 ----D---- C:\Documents and Settings\All Users\Data aplikací\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
2012-08-15 14:57:39 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2012-08-15 14:55:59 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-08-15 14:55:47 ----D---- C:\WINDOWS\SHELLNEW
2012-08-15 14:49:27 ----D---- C:\WINDOWS\system32\config
2012-08-15 14:48:55 ----D---- C:\Program Files\Acer Inc
2012-08-15 14:46:06 ----D---- C:\WINDOWS\system32\ReinstallBackups
2012-08-15 14:45:17 ----HD---- C:\Program Files\InstallShield Installation Information
2012-08-15 14:43:55 ----D---- C:\Program Files\Intel
2012-08-15 14:39:54 ----D---- C:\Program Files\CyberLink
2012-08-15 14:36:55 ----D---- C:\WINDOWS\twain_32
2012-08-15 14:30:53 ----D---- C:\WINDOWS\SoftwareDistribution
2012-08-15 14:27:08 ----SD---- C:\WINDOWS\system32\Microsoft
2012-08-15 14:26:19 ----A---- C:\WINDOWS\OEWABLog.txt
2012-08-15 14:23:32 ----D---- C:\Documents and Settings
2012-08-15 14:22:06 ----A---- C:\WINDOWS\setuplog.txt
2012-08-15 14:17:18 ----D---- C:\WINDOWS\Registration
2012-08-15 14:16:50 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2012-08-15 14:16:46 ----D---- C:\WINDOWS\system32\CatRoot

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 agp440;Filtr Intel sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agp440.sys [2004-08-03 42368]
R0 agpCPQ;Filtr Compaq sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2004-08-03 44928]
R0 alim1541;Filtr ALI sběrnice AGP; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2004-08-03 42752]
R0 amdagp;Ovladač filtru AMD portu AGP; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2004-08-03 43008]
R0 AVGIDSHX;AVGIDSHX; C:\WINDOWS\system32\DRIVERS\avgidshx.sys [2012-04-19 24896]
R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\WINDOWS\system32\DRIVERS\avgrkx86.sys [2012-01-31 31952]
R0 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-08-17 13952]
R0 gagp30kx;Filtr Microsoft Generic AGPv3.0 pro procesorovou platformu K8; C:\WINDOWS\system32\DRIVERS\gagp30kx.sys [2004-08-03 46464]
R0 iaStor;Intel AHCI Controller; C:\WINDOWS\system32\DRIVERS\iaStor.sys [2007-03-21 304920]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2004-08-18 61056]
R0 sisagp;Filtr SIS sběrnice AGP ; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2004-08-03 41088]
R0 UBHelper;UBHelper; C:\WINDOWS\system32\drivers\UBHelper.sys [2006-08-28 13952]
R0 viaagp;Filtr VIA sběrnice AGP ; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2004-08-03 42240]
R1 Avgldx86;AVG AVI Loader Driver; C:\WINDOWS\system32\DRIVERS\avgldx86.sys [2012-02-22 235216]
R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\WINDOWS\system32\DRIVERS\avgmfx86.sys [2011-12-23 41040]
R1 Avgtdix;AVG TDI Driver; C:\WINDOWS\system32\DRIVERS\avgtdix.sys [2012-03-19 301248]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-18 39936]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2004-08-03 8832]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.6.0.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2012-08-15 21425]
R2 EpmPsd;Acer EPM Power Scheme Driver; \??\C:\WINDOWS\system32\drivers\epm-psd.sys []
R2 EpmShd;Acer EPM System Hardware Driver; \??\C:\WINDOWS\system32\drivers\epm-shd.sys []
R2 int15;int15; \??\C:\WINDOWS\system32\drivers\int15.sys []
R2 irda;Protokol IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2004-08-03 87424]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 s24trans;WLAN Transport; C:\WINDOWS\system32\DRIVERS\s24trans.sys [2007-02-21 12416]
R2 tvicport;tvicport; \??\C:\WINDOWS\system32\drivers\tvicport.sys []
R2 zntport;zntport; \??\C:\WINDOWS\system32\drivers\zntport.sys []
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2007-10-04 2456576]
R3 Avgfwdx;Avgfwdx; C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2012-01-12 30944]
R3 AVGIDSDriver;AVGIDSDriver; C:\WINDOWS\system32\DRIVERS\avgidsdriverx.sys [2011-12-23 139856]
R3 AVGIDSFilter;AVGIDSFilter; C:\WINDOWS\system32\DRIVERS\avgidsfilterx.sys [2011-12-23 24144]
R3 AVGIDSShim;AVGIDSShim; C:\WINDOWS\system32\DRIVERS\avgidsshimx.sys [2011-12-23 17232]
R3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2007-02-16 160256]
R3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys [2007-03-23 539072]
R3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys [2007-03-23 37424]
R3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2007-03-31 876384]
R3 DKbFltr;Dritek Keyboard Filter Driver; C:\WINDOWS\system32\DRIVERS\DKbFltr.sys [2006-01-20 17408]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 HSF_DPV;HSF_DPV; C:\WINDOWS\system32\DRIVERS\HSF_DPV.sys [2006-12-22 988800]
R3 HSFHWAZL;HSFHWAZL; C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys [2006-12-22 209664]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-05-30 4424192]
R3 NETw4x32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows XP 32 Bit; C:\WINDOWS\system32\DRIVERS\NETw4x32.sys [2007-04-30 2206976]
R3 NSCIRDA;NSC Infrared Device Driver; C:\WINDOWS\system32\DRIVERS\nscirda.sys [2004-08-03 28672]
R3 NTIDrvr;Upper Class Filter Driver; C:\WINDOWS\system32\DRIVERS\NTIDrvr.sys [2007-08-14 6144]
R3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2004-08-18 67584]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [2007-10-01 1769984]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2007-09-07 215904]
R3 tifm21;tifm21; C:\WINDOWS\system32\drivers\tifm21.sys [2007-05-02 290816]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2006-04-19 20608]
R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2006-12-22 730112]
R3 xcpip;Ovladač protokolu TCP/IP; C:\WINDOWS\system32\drivers\xcpip.sys []
R3 xpsec;Ovladač IPSEC; C:\WINDOWS\system32\drivers\xpsec.sys []
S3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2004-08-18 60800]
S3 Avgfwfd;AVG network filter service; C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2012-01-12 30944]
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2007-03-23 149123]
S3 btwhid;btwhid; C:\WINDOWS\system32\DRIVERS\btwhid.sys [2007-03-31 55352]
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2007-03-23 67960]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
S3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\fetnd5.sys [2001-08-17 27165]
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
S3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2007-06-05 5761728]
S3 int15.sys;int15.sys; \??\C:\Acer\Empowering Technology\eRecovery\int15.sys []
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-03 10880]
S3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2004-08-18 61824]
S3 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2005-11-02 32512]
S3 psdfilter;psdfilter; \??\C:\WINDOWS\system32\Drivers\psdfilter.sys []
S3 psdvdisk;psdvdisk; \??\C:\WINDOWS\system32\Drivers\psdvdisk.sys []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-03 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-03 15360]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2004-08-03 78464]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2007-10-04 487424]
R2 avgfws;AVG Firewall; C:\Program Files\AVG\AVG2012\avgfws.exe [2012-06-13 2321560]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG2012\avgidsagent.exe [2012-07-04 5160568]
R2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG2012\avgwdsvc.exe [2012-02-14 193288]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2007-04-01 273256]
R2 eLockService;eLock Service; C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe [2007-03-01 24576]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2007-02-21 643072]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2007-03-21 355096]
R2 Irmon;Sledování infračerveného přenosu; C:\WINDOWS\system32\svchost.exe [2004-08-18 14336]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2007-01-17 61440]
R2 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2006-04-14 28933976]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2007-02-21 327680]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2007-01-08 171040]
R2 S24EventMonitor;Intel(R) PROSet/Wireless Service; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [2007-02-21 983040]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2004-08-18 268288]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-18 250056]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-07-14 113120]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2005-11-02 86016]
S3 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2006-04-14 87840]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 PanService;PandoraService; C:\Program Files\PANDORA.TV\PanService\PandoraService.exe [2012-06-22 625816]
S4 SQLBrowser;SQL Server Browser; C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2006-04-14 240416]
S4 vToolbarUpdater11.0.2;vToolbarUpdater11.0.2; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\11.0.2\ToolbarUpdater.exe [2012-08-17 934496]

-----------------EOF-----------------

Re: Trojský kůň PSW.Agent a Generic27.AKPW

Napsal: 23 srp 2012 13:17
od vyosek
Zdravim a pekny den preji :)

:arrow: Trvate na antiviru avg ? U nas neni moc obliben - vyssi zatez systemu, slabsi detekce. Ja bych byl pro zmenu, ale vy rozhodnete

:arrow: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller ... llerV8.exe
  • Ukoncete vsechny programy
  • Pokud pouzivate Win Vista ci W7, kliknete na RogueKiller pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pockejte na dokonceni PreScanu
  • Zvolte moznost Prohledat (scan)
  • Po dokonceni skenu kliknete na Zpráva (Report)- otevre se log, ten sem vlozte
  • Detailni postup vc. obrazku mate zde http://forum.viry.cz/viewtopic.php?f=24&t=120452

Re: Trojský kůň PSW.Agent a Generic27.AKPW

Napsal: 23 srp 2012 13:28
od Spid3r
Vám teké přeji pěkný den,

AVG mám zakoupené, proto se mi ho nechce nikterak měnit. Pokud to ovšem nebude úplně nutné.

K tomu RogueKillerovi: Nabídlo mi to stáhnout aktuální verzi, což jsem udělal, ale ta při zapínání spadla s nějakou neznámou chybou. Verze, na kterou odkazujete ve Vašem postu, jde dobře.

Přikládám log:

RogueKiller V8.0.0 [08/21/2012] by Tigzy
mail: tigzyRK<at>gmail<dot>com
Podpora: http://www.geekstogo.com/forum/files/fi ... guekiller/
Operační systém: Windows XP (5.1.2600 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : Ing. Karel Mikeš [Práva správce]
Mód : Kontrola -- Datum : 08/23/2012 14:23:48

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 2 ¤¤¤
[HJ SMENU] HKCU\[...]\Advanced : Start_ShowRecentDocs (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ Zvláštní soubory / Složky: ¤¤¤
[Faked.Drv][FILE] atapi.sys : C:\WINDOWS\system32\drivers\atapi.sys --> NELZE OPRAVIT

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Nákaza : Root.MBR ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\WINDOWS\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: TOSHIBA MK1646GSX +++++
--- User ---
[MBR] 79faed481160b34cb630dd83c8132e07
[BSP] afd663b62beb710eabd66cab9e298a9d : Acer tatooed MBR Code
Partition table:
0 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 63 | Size: 6000 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 12289725 | Size: 73045 Mo
2 - [XXXXXX] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 161887005 | Size: 73578 Mo
User = LL1 ... OK!
User != LL2 ... KO!
--- LL2 ---
[MBR] 444772c94aff4da58b5f0aa61ea2d6ec
[BSP] 12813ee8900625402af34754571accfc : Whistler/Sinowal MBR Code!
Partition table:
0 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 63 | Size: 6000 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 12289725 | Size: 73045 Mo
2 - [XXXXXX] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 161887005 | Size: 73578 Mo

Dokončeno : << RKreport[1].txt >>
RKreport[1].txt

Re: Trojský kůň PSW.Agent a Generic27.AKPW

Napsal: 23 srp 2012 13:38
od vyosek
:arrow: Dekuji za zpravu ohledne RK - je to nova verze, jeste se testuje, ta v tematu je v poradku - predam problem autorovi

:arrow: Stahnete MBRScan http://eric71.geekstogo.com/tools/MbrScan.exe
  • Ulozte nejlepe na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na MBRScan pravym a dejte Run As Administrator ci Spustit jako spravce
  • Kliknete na Report
  • Po chvilce se objevi log do souboru MBRScan.txt, ten sem vlozte
:arrow: Stahnete si TDSSKiller http://support.kaspersky.com/downloads/ ... killer.exe
  • Kliknete na volbu Change parametrs
  • V obou oknech (Objects to scan i Additional Option) zakliknete vsechny moznosti - ve vsech ctvereccich musi mit fajecka
  • Kliknete na OK
  • Utilite prikazte, at skenuje - klik na Start Scan
  • Po dokonceni skenu se objevi okno, zkontrolujte, zda-li je vsude moznost Skip
  • Pokud moznost Skip nebude primarne nastavena, prekliknete ji na Skip
  • Pokud mate vsude Skip, kliknete na Continue
  • Na disku, kde mate Windows (obvykle c:\) ve tvaru TDSSKiller.nejaka cisilka _log.txt bude log - jeho obsah sem vlozte

Re: Trojský kůň PSW.Agent a Generic27.AKPW

Napsal: 23 srp 2012 14:03
od Spid3r
Log z MBRScan:
MBRScan v1.1.1

OS : Windows XP Home Service Pack 2 (32 bit)
PROCESSOR : x86 Family 6 Model 15 Stepping 13, GenuineIntel
BOOT : Normal Boot
DATE : 2012/08/23 (ISO 8601) at 15:01:58
________________________________________________________________________________

DISK : Device\Harddisk0\DR0 __TOSHIBA MK1646GSX (LB113J)
BUS_TYPE : (0x03) P-ATA
USE_PIO : YES
MAX_TRANSFER : 128 Kb
ALIGNMENT_MASK : word aligned
________________________________________________________________________________

Device\Harddisk0\DR0 149.1 Go [Fixed] ==> Unknown MBR Code

MBR_MD5 : 444772C94AFF4DA58B5F0AA61EA2D6EC
MBR_SHA1 : A3C3947076204E834268E42607C91C3C793CC686

Device\Harddisk0\Partition1 5.86 Go 0x12 Diagnostic
Device\Harddisk0\Partition2 71.33 Go 0x07 NTFS / HPFS __ BOOTABLE __
Device\Harddisk0\Partition3 71.85 Go 0x0C FAT32 [LBA]
________________________________________________________________________________

############################### Additional scan ################################

DRIVER : C:\WINDOWS\system32\drivers\xpsec.sys => Invisible on the disk
ADDRESS : 0xADCBA000
SIZE : 76.0 Ko

DRIVER : C:\WINDOWS\system32\drivers\xcpip.sys => Invisible on the disk
ADDRESS : 0xADC62000
SIZE : 352.0 Ko

SystemStartOptions : NOEXECUTE=OPTIN FASTDETECT

________________________________________________________________________________

_______MBR \Device\Harddisk0\DR0

0x00000000 33 C0 8E D8 8E C0 8E D0 BC 00 7C BE 1A 7C BF 00 3À.Ø.À.м.|¾.|¿.
0x00000010 06 B9 E6 01 50 57 FC F3 A4 CB BE A4 07 B1 04 90 .¹æ.PWüó¤Ë¾¤.±..
0x00000020 80 3C 80 74 0D 38 2C 0F 85 C0 00 83 C6 10 E2 F0 .<.t.8,..À..Æ.âð
0x00000030 CD 18 66 8B 44 08 8B 14 89 E3 B9 01 00 E8 64 00 Í.f.D....ã¹..èd.
0x00000040 73 0C 8B 4C 02 B8 01 02 CD 13 0F 82 B8 00 B9 55 s..L.¸..Í...¸.¹U
0x00000050 AA 2B 0E FE 7D 0F 85 CF 00 66 B8 00 00 00 00 66 ª+.þ}..Ï.f¸....f
0x00000060 39 44 08 72 08 66 8B 44 08 66 03 44 0C 83 C6 10 9D.r.f.D.f.D..Æ.
0x00000070 81 FE E4 07 72 E9 66 09 C0 74 1E B9 09 00 81 C3 .þä.réf.Àt.¹...Ã
0x00000080 00 02 E8 1F 00 72 12 89 DE 81 C6 0C 02 8D 54 F4 ..è..r..Þ.Æ...Tô
0x00000090 66 81 3C 75 2F F3 A4 74 05 EA 00 7C 00 00 89 DE f.<u/ó¤t.ê.|...Þ
0x000000A0 FF D2 EB F5 66 60 B2 80 BB AA 55 B4 41 CD 13 73 .Òëõf`².»ªU´AÍ.s
0x000000B0 04 F9 66 61 C3 81 FB 55 AA 75 F6 F6 C1 01 74 F1 .ùfaÃ.ûUªuööÁ.tñ
0x000000C0 66 61 66 60 6A 00 6A 00 66 50 06 53 51 6A 10 B4 faf`j.j.fP.SQj.´
0x000000D0 42 89 E6 CD 13 61 66 61 C3 5E AC 08 C0 74 FC 56 B.æÍ.afaÃ^¬.ÀtüV
0x000000E0 1E BB 07 00 B4 0E CD 10 1F EB EE E8 EB FF 49 6E .»..´.Í..ëîèë.In
0x000000F0 76 61 6C 69 64 20 70 61 72 74 69 74 69 6F 6E 20 valid partition
0x00000100 74 61 62 6C 65 00 E8 D0 FF 45 72 72 6F 72 20 6C table.èÐ.Error l
0x00000110 6F 61 64 69 6E 67 20 6F 70 65 72 61 74 69 6E 67 oading operating
0x00000120 20 73 79 73 74 65 6D 00 E8 AE FF 4D 69 73 73 69 system.è®.Missi
0x00000130 6E 67 20 6F 70 65 72 61 74 69 6E 67 20 73 79 73 ng operating sys
0x00000140 74 65 6D 00 00 00 00 00 00 00 00 00 00 00 00 00 tem.............
0x00000150 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000160 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000170 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000180 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000190 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001A0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001B0 00 00 00 00 00 00 00 00 FD 34 FE 34 00 00 00 01 ........ý4þ4....
0x000001C0 01 00 12 FE BF FC 3F 00 00 00 7E 86 BB 00 80 00 ...þ¿ü?...~.»...
0x000001D0 81 FD 07 FE FF FF BD 86 BB 00 60 AC EA 08 00 00 .ý.þ..½.».`¬ê...
0x000001E0 C1 FF 0C FE FF FF 1D 33 A6 09 A4 57 FB 08 00 00 Á..þ...3¦.¤Wû...
0x000001F0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 55 AA ..............Uª



Log z TDSS:

14:56:40.0453 2932 TDSS rootkit removing tool 2.8.7.0 Aug 20 2012 17:30:03
14:56:42.0640 2932 ============================================================
14:56:42.0640 2932 Current date / time: 2012/08/23 14:56:42.0640
14:56:42.0640 2932 SystemInfo:
14:56:42.0640 2932
14:56:42.0640 2932 OS Version: 5.1.2600 ServicePack: 2.0
14:56:42.0640 2932 Product type: Workstation
14:56:42.0640 2932 ComputerName: ACER-109CD108E4
14:56:42.0656 2932 UserName: Ing. Karel Mikeš
14:56:42.0656 2932 Windows directory: C:\WINDOWS
14:56:42.0656 2932 System windows directory: C:\WINDOWS
14:56:42.0656 2932 Processor architecture: Intel x86
14:56:42.0656 2932 Number of processors: 2
14:56:42.0656 2932 Page size: 0x1000
14:56:42.0656 2932 Boot type: Normal boot
14:56:42.0656 2932 ============================================================
14:56:45.0750 2932 BG loaded
14:56:46.0578 2932 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x000000A4
14:56:46.0671 2932 ============================================================
14:56:46.0671 2932 \Device\Harddisk0\DR0:
14:56:46.0687 2932 MBR partitions:
14:56:46.0687 2932 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0xBB86BD, BlocksNum 0x8EAAC60
14:56:46.0687 2932 \Device\Harddisk0\DR0\Partition2: MBR, Type 0xC, StartLBA 0x9A6331D, BlocksNum 0x8FB57A4
14:56:46.0687 2932 ============================================================
14:56:47.0343 2932 C: <-> \Device\Harddisk0\DR0\Partition1
14:56:47.0359 2932 D: <-> \Device\Harddisk0\DR0\Partition2
14:56:47.0406 2932 ============================================================
14:56:47.0406 2932 Initialize success
14:56:47.0406 2932 ============================================================
14:58:33.0703 5108 ============================================================
14:58:33.0703 5108 Scan started
14:58:33.0703 5108 Mode: Manual; SigCheck; TDLFS;
14:58:33.0703 5108 ============================================================
14:58:34.0125 5108 ================ Scan system memory ========================
14:58:37.0125 5108 System memory ( MEM:Backdoor.Win32.Sinowal.d ) - infected
14:58:37.0125 5108 System memory - detected MEM:Backdoor.Win32.Sinowal.d (0)
14:58:37.0125 5108 ================ Scan services =============================
14:58:37.0359 5108 Abiosdsk - ok
14:58:37.0375 5108 [ 6ABB91494FE6C59089B9336452AB2EA3 ] abp480n5 C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
14:58:37.0468 5108 abp480n5 - ok
14:58:37.0484 5108 [ FA2FBCDA96D2385F773B059FE5A125A6 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
14:58:37.0593 5108 ACPI - ok
14:58:37.0609 5108 [ AFDFF022A01F0B11C776F0860C3B282F ] ACPIEC C:\WINDOWS\system32\DRIVERS\ACPIEC.sys
14:58:37.0703 5108 ACPIEC - ok
14:58:37.0765 5108 [ A9D3B95E8466BD58EEB8A1154654E162 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
14:58:37.0781 5108 AdobeFlashPlayerUpdateSvc - ok
14:58:37.0796 5108 [ 9A11864873DA202C996558B2106B0BBC ] adpu160m C:\WINDOWS\system32\DRIVERS\adpu160m.sys
14:58:37.0890 5108 adpu160m - ok
14:58:37.0921 5108 [ 841F385C6CFAF66B58FBD898722BB4F0 ] aec C:\WINDOWS\system32\drivers\aec.sys
14:58:38.0015 5108 aec - ok
14:58:38.0046 5108 [ 375EB0B97E3950ADEF3633C27A82438B ] AegisP C:\WINDOWS\system32\DRIVERS\AegisP.sys
14:58:38.0046 5108 AegisP ( UnsignedFile.Multi.Generic ) - warning
14:58:38.0046 5108 AegisP - detected UnsignedFile.Multi.Generic (1)
14:58:38.0062 5108 [ 5AC495F4CB807B2B98AD2AD591E6D92E ] AFD C:\WINDOWS\System32\drivers\afd.sys
14:58:38.0609 5108 AFD - ok
14:58:38.0625 5108 [ 2C428FA0C3E3A01ED93C9B2A27D8D4BB ] agp440 C:\WINDOWS\system32\DRIVERS\agp440.sys
14:58:38.0796 5108 agp440 - ok
14:58:38.0875 5108 [ 67288B07D6ABA6C1267B626E67BC56FD ] agpCPQ C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
14:58:39.0015 5108 agpCPQ - ok
14:58:39.0031 5108 [ C23EA9B5F46C7F7910DB3EAB648FF013 ] Aha154x C:\WINDOWS\system32\DRIVERS\aha154x.sys
14:58:39.0125 5108 Aha154x - ok
14:58:39.0140 5108 [ 19DD0FB48B0C18892F70E2E7D61A1529 ] aic78u2 C:\WINDOWS\system32\DRIVERS\aic78u2.sys
14:58:39.0265 5108 aic78u2 - ok
14:58:39.0281 5108 [ B7FE594A7468AA0132DEB03FB8E34326 ] aic78xx C:\WINDOWS\system32\DRIVERS\aic78xx.sys
14:58:39.0375 5108 aic78xx - ok
14:58:39.0437 5108 [ 026DDAA7E6F8D49DF82C7A98BAE5D0D1 ] Alerter C:\WINDOWS\system32\alrsvc.dll
14:58:39.0546 5108 Alerter - ok
14:58:39.0546 5108 [ B3F690BF43F93A012A52F28F234FAA1B ] ALG C:\WINDOWS\System32\alg.exe
14:58:39.0593 5108 ALG - ok
14:58:39.0609 5108 [ 1140AB9938809700B46BB88E46D72A96 ] AliIde C:\WINDOWS\system32\DRIVERS\aliide.sys
14:58:39.0718 5108 AliIde - ok
14:58:39.0718 5108 [ F312B7CEF21EFF52FA23056B9D815FAD ] alim1541 C:\WINDOWS\system32\DRIVERS\alim1541.sys
14:58:39.0812 5108 alim1541 - ok
14:58:39.0828 5108 [ 675C16A3C1F8482F85EE4A97FC0DDE3D ] amdagp C:\WINDOWS\system32\DRIVERS\amdagp.sys
14:58:39.0921 5108 amdagp - ok
14:58:39.0921 5108 [ 79F5ADD8D24BD6893F2903A3E2F3FAD6 ] amsint C:\WINDOWS\system32\DRIVERS\amsint.sys
14:58:39.0968 5108 amsint - ok
14:58:40.0000 5108 [ 421184F91EAE5C6E78E653C6B32AAE84 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
14:58:40.0031 5108 AppMgmt - ok
14:58:40.0062 5108 [ F0D692B0BFFB46E30EB3CEA168BBC49F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys
14:58:40.0156 5108 Arp1394 - ok
14:58:40.0171 5108 [ 62D318E9A0C8FC9B780008E724283707 ] asc C:\WINDOWS\system32\DRIVERS\asc.sys
14:58:40.0265 5108 asc - ok
14:58:40.0265 5108 [ 69EB0CC7714B32896CCBFD5EDCBEA447 ] asc3350p C:\WINDOWS\system32\DRIVERS\asc3350p.sys
14:58:40.0312 5108 asc3350p - ok
14:58:40.0312 5108 [ 5D8DE112AA0254B907861E9E9C31D597 ] asc3550 C:\WINDOWS\system32\DRIVERS\asc3550.sys
14:58:40.0421 5108 asc3550 - ok
14:58:40.0765 5108 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
14:58:40.0796 5108 aspnet_state - ok
14:58:40.0828 5108 [ 02000ABF34AF4C218C35D257024807D6 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
14:58:40.0921 5108 AsyncMac - ok
14:58:40.0968 5108 [ CDFE4411A69C224BD1D11B2DA92DAC51 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
14:58:41.0093 5108 atapi - ok
14:58:41.0093 5108 Atdisk - ok
14:58:41.0156 5108 [ 55C649966C7DC3103CC30EA55ED94B7A ] Ati HotKey Poller C:\WINDOWS\system32\Ati2evxx.exe
14:58:41.0218 5108 Ati HotKey Poller - ok
14:58:41.0312 5108 [ 44B7C4AA916DB5C995105704BEE85966 ] ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
14:58:41.0375 5108 ati2mtag - ok
14:58:41.0437 5108 [ EC88DA854AB7D7752EC8BE11A741BB7F ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
14:58:41.0546 5108 Atmarpc - ok
14:58:41.0578 5108 [ 40D78F514C8588EF12EC718D2AF0FC4E ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
14:58:41.0671 5108 AudioSrv - ok
14:58:41.0687 5108 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
14:58:41.0781 5108 audstub - ok
14:58:41.0843 5108 [ 8BE661C16FBF84A73BCEC84B6B4A9DB5 ] Avgfwdx C:\WINDOWS\system32\DRIVERS\avgfwdx.sys
14:58:41.0843 5108 Avgfwdx - ok
14:58:41.0859 5108 [ 8BE661C16FBF84A73BCEC84B6B4A9DB5 ] Avgfwfd C:\WINDOWS\system32\DRIVERS\avgfwdx.sys
14:58:41.0859 5108 Avgfwfd - ok
14:58:42.0078 5108 [ BD5D11CEDBCDE4FA97D2387E7069B1FF ] avgfws C:\Program Files\AVG\AVG2012\avgfws.exe
14:58:42.0187 5108 avgfws - ok
14:58:42.0359 5108 [ D67719BCFDE5798F5C30D14EFED3BCAF ] AVGIDSAgent C:\Program Files\AVG\AVG2012\avgidsagent.exe
14:58:42.0609 5108 AVGIDSAgent - ok
14:58:42.0656 5108 [ 1074F787080068C71303B61FAE7E7CA4 ] AVGIDSDriver C:\WINDOWS\system32\DRIVERS\avgidsdriverx.sys
14:58:42.0671 5108 AVGIDSDriver - ok
14:58:42.0687 5108 [ 61A7E0B02F82CFF3DB2445BBE50B3589 ] AVGIDSFilter C:\WINDOWS\system32\DRIVERS\avgidsfilterx.sys
14:58:42.0687 5108 AVGIDSFilter - ok
14:58:42.0703 5108 [ D63D83659EEDF60B3A3E620281A888E5 ] AVGIDSHX C:\WINDOWS\system32\DRIVERS\avgidshx.sys
14:58:42.0703 5108 AVGIDSHX - ok
14:58:42.0718 5108 [ BAF975B72062F53D327788E99D64197E ] AVGIDSShim C:\WINDOWS\system32\DRIVERS\avgidsshimx.sys
14:58:42.0734 5108 AVGIDSShim - ok
14:58:42.0750 5108 [ DDA6A2A18841E4C9172BB85958B8D948 ] Avgldx86 C:\WINDOWS\system32\DRIVERS\avgldx86.sys
14:58:42.0765 5108 Avgldx86 - ok
14:58:42.0765 5108 [ CCDD61545AAEA265977E4B1EFDC74E8C ] Avgmfx86 C:\WINDOWS\system32\DRIVERS\avgmfx86.sys
14:58:42.0781 5108 Avgmfx86 - ok
14:58:42.0796 5108 [ 1FD90B28D2C3100BF4500199C8AD6358 ] Avgrkx86 C:\WINDOWS\system32\DRIVERS\avgrkx86.sys
14:58:42.0796 5108 Avgrkx86 - ok
14:58:42.0828 5108 [ 1263F2554ACE925C237A40B4C568D815 ] Avgtdix C:\WINDOWS\system32\DRIVERS\avgtdix.sys
14:58:42.0843 5108 Avgtdix - ok
14:58:42.0875 5108 [ EA1145DEBCD508FD25BD1E95C4346929 ] avgwd C:\Program Files\AVG\AVG2012\avgwdsvc.exe
14:58:42.0906 5108 avgwd - ok
14:58:42.0921 5108 [ F96038AA1EC4013A93D2420FC689D1E9 ] b57w2k C:\WINDOWS\system32\DRIVERS\b57xp32.sys
14:58:42.0937 5108 b57w2k - ok
14:58:42.0953 5108 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
14:58:43.0062 5108 Beep - ok
14:58:43.0125 5108 [ E774A26610EC92674273486612C11CFC ] BITS C:\WINDOWS\system32\qmgr.dll
14:58:43.0250 5108 BITS - ok
14:58:43.0281 5108 [ F219E27E88107A50544153898DD8178E ] Browser C:\WINDOWS\System32\browser.dll
14:58:43.0375 5108 Browser - ok
14:58:43.0406 5108 [ ECDC40CC54603C711E1A7A1C9255184A ] btaudio C:\WINDOWS\system32\drivers\btaudio.sys
14:58:43.0437 5108 btaudio - ok
14:58:43.0468 5108 [ 58A49BD10E08D3D4333A60DEDCB1CED8 ] BTDriver C:\WINDOWS\system32\DRIVERS\btport.sys
14:58:43.0468 5108 BTDriver - ok
14:58:43.0531 5108 [ 885B6D0F826A216EEE4C3AD883809012 ] BTKRNL C:\WINDOWS\system32\DRIVERS\btkrnl.sys
14:58:43.0562 5108 BTKRNL - ok
14:58:43.0656 5108 [ 49E9ED37FAEC5E8C03E81FD73D3884D6 ] btwdins C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
14:58:43.0671 5108 btwdins - ok
14:58:43.0703 5108 [ B1D350F3F13CF340FCE93912D2BA1EBF ] BTWDNDIS C:\WINDOWS\system32\DRIVERS\btwdndis.sys
14:58:43.0718 5108 BTWDNDIS - ok
14:58:43.0750 5108 [ E48668B4A6A5CF68B33AECAD18EE8E1E ] btwhid C:\WINDOWS\system32\DRIVERS\btwhid.sys
14:58:43.0765 5108 btwhid - ok
14:58:43.0765 5108 [ 57E91E9925976BBC98984EEBAAF1D84C ] BTWUSB C:\WINDOWS\system32\Drivers\btwusb.sys
14:58:43.0781 5108 BTWUSB - ok
14:58:43.0828 5108 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
14:58:43.0937 5108 cbidf - ok
14:58:43.0937 5108 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
14:58:44.0046 5108 cbidf2k - ok
14:58:44.0062 5108 [ 6163ED60B684BAB19D3352AB22FC48B2 ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
14:58:44.0156 5108 CCDECODE - ok
14:58:44.0156 5108 [ F3EC03299634490E97BBCE94CD2954C7 ] cd20xrnt C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
14:58:44.0203 5108 cd20xrnt - ok
14:58:44.0218 5108 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
14:58:44.0312 5108 Cdaudio - ok
14:58:44.0343 5108 [ CD7D5152DF32B47F4E36F710B35AAE02 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
14:58:44.0437 5108 Cdfs - ok
14:58:44.0453 5108 [ AF9C19B3100FE010496B1A27181FBF72 ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
14:58:44.0562 5108 Cdrom - ok
14:58:44.0562 5108 Changer - ok
14:58:44.0640 5108 [ 9E21229E04E1D301BB40222FE4641CB2 ] CiSvc C:\WINDOWS\system32\cisvc.exe
14:58:44.0734 5108 CiSvc - ok
14:58:44.0750 5108 [ D3DC45553C8025338E08A60E95B1B91D ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
14:58:44.0828 5108 ClipSrv - ok
14:58:44.0890 5108 [ 3C4D595E7F9B747325AEF28B4ADCAAE5 ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:58:44.0937 5108 clr_optimization_v2.0.50727_32 - ok
14:58:44.0968 5108 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:58:45.0015 5108 clr_optimization_v4.0.30319_32 - ok
14:58:45.0062 5108 CLTNetCnService - ok
14:58:45.0093 5108 [ 4266BE808F85826AEDF3C64C1E240203 ] CmBatt C:\WINDOWS\system32\DRIVERS\CmBatt.sys
14:58:45.0187 5108 CmBatt - ok
14:58:45.0203 5108 [ 964D0F042ACA51D5644779EB9D9EE40F ] CmdIde C:\WINDOWS\system32\DRIVERS\cmdide.sys
14:58:45.0296 5108 CmdIde - ok
14:58:45.0312 5108 [ DF1B1A24BF52D0EBC01ED4ECE8979F50 ] Compbatt C:\WINDOWS\system32\DRIVERS\compbatt.sys
14:58:45.0406 5108 Compbatt - ok
14:58:45.0421 5108 COMSysApp - ok
14:58:45.0437 5108 [ 3EE529119EED34CD212A215E8C40D4B6 ] Cpqarray C:\WINDOWS\system32\DRIVERS\cpqarray.sys
14:58:45.0531 5108 Cpqarray - ok
14:58:45.0562 5108 [ 70D2A1756F4B2067658A186C963FCABD ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
14:58:45.0656 5108 CryptSvc - ok
14:58:45.0671 5108 [ E550E7418984B65A78299D248F0A7F36 ] dac2w2k C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
14:58:45.0781 5108 dac2w2k - ok
14:58:45.0781 5108 [ 683789CAA3864EB46125AE86FF677D34 ] dac960nt C:\WINDOWS\system32\DRIVERS\dac960nt.sys
14:58:45.0875 5108 dac960nt - ok
14:58:45.0921 5108 [ C72C15EE57E248C66E57C76CAB086CF2 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
14:58:46.0046 5108 DcomLaunch - ok
14:58:46.0078 5108 [ 562830EFB7CF367FB773FEA5256E67C8 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
14:58:46.0171 5108 Dhcp - ok
14:58:46.0187 5108 [ 00CA44E4534865F8A3B64F7C0984BFF0 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
14:58:46.0281 5108 Disk - ok
14:58:46.0312 5108 [ 060DB81DFB79C8244EB65D10B6C7873F ] DKbFltr C:\WINDOWS\system32\DRIVERS\DKbFltr.sys
14:58:46.0312 5108 DKbFltr - ok
14:58:46.0328 5108 dmadmin - ok
14:58:46.0359 5108 [ E1968EDEC81C430108FEB23AB07BDB14 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
14:58:46.0468 5108 dmboot - ok
14:58:46.0515 5108 [ 1B1520A82E396E46B9AE9FA6B03FF6C6 ] dmio C:\WINDOWS\system32\drivers\dmio.sys
14:58:46.0609 5108 dmio - ok
14:58:46.0609 5108 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
14:58:46.0703 5108 dmload - ok
14:58:46.0718 5108 [ 7B3CA72885923EB947221F17F3E3AC59 ] dmserver C:\WINDOWS\System32\dmserver.dll
14:58:46.0812 5108 dmserver - ok
14:58:46.0843 5108 [ A6F881284AC1150E37D9AE47FF601267 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
14:58:46.0953 5108 DMusic - ok
14:58:46.0984 5108 [ F605B3F5674D67587C4B6C9E92A3E025 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
14:58:47.0078 5108 Dnscache - ok
14:58:47.0093 5108 [ 40F3B93B4E5B0126F2F5C0A7A5E22660 ] dpti2o C:\WINDOWS\system32\DRIVERS\dpti2o.sys
14:58:47.0187 5108 dpti2o - ok
14:58:47.0203 5108 [ 1ED4DBBAE9F5D558DBBA4CC450E3EB2E ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
14:58:47.0296 5108 drmkaud - ok
14:58:47.0375 5108 [ D33EC04D1F0B5F388DE86CCC3333A59F ] eLockService C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
14:58:47.0390 5108 eLockService ( UnsignedFile.Multi.Generic ) - warning
14:58:47.0390 5108 eLockService - detected UnsignedFile.Multi.Generic (1)
14:58:47.0406 5108 [ D68564FCFBDFC04280CDBBB37CF7EF7F ] EpmPsd C:\WINDOWS\system32\drivers\epm-psd.sys
14:58:47.0421 5108 EpmPsd ( UnsignedFile.Multi.Generic ) - warning
14:58:47.0421 5108 EpmPsd - detected UnsignedFile.Multi.Generic (1)
14:58:47.0484 5108 [ 2D0C4A7077F6C68449479F5444C580A7 ] EpmShd C:\WINDOWS\system32\drivers\epm-shd.sys
14:58:47.0546 5108 EpmShd ( UnsignedFile.Multi.Generic ) - warning
14:58:47.0546 5108 EpmShd - detected UnsignedFile.Multi.Generic (1)
14:58:47.0625 5108 [ D6F7428B201E33BC80066B47144CB568 ] ERSvc C:\WINDOWS\System32\ersvc.dll
14:58:47.0718 5108 ERSvc - ok
14:58:47.0765 5108 [ 6E401E61F952FBBF708AFBECEFAFAE81 ] Eventlog C:\WINDOWS\system32\services.exe
14:58:47.0937 5108 Eventlog - ok
14:58:47.0968 5108 [ 972378B907070F64932A87C90A035487 ] EventSystem C:\WINDOWS\system32\es.dll
14:58:48.0078 5108 EventSystem - ok
14:58:48.0328 5108 [ 4C6FA3FD55087B7C35707068723A1710 ] EvtEng C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
14:58:48.0375 5108 EvtEng ( UnsignedFile.Multi.Generic ) - warning
14:58:48.0375 5108 EvtEng - detected UnsignedFile.Multi.Generic (1)
14:58:48.0421 5108 [ 3117F595E9615E04F05A54FC15A03B20 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
14:58:48.0546 5108 Fastfat - ok
14:58:48.0593 5108 [ 8BA76BD2A943F642F267A296A15776D2 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
14:58:48.0718 5108 FastUserSwitchingCompatibility - ok
14:58:48.0796 5108 [ 98328A1049627B72E5770BE009DB6C0A ] Fax C:\WINDOWS\system32\fxssvc.exe
14:58:48.0921 5108 Fax - ok
14:58:48.0953 5108 [ CED2E8396A8838E59D8FD529C680E02C ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys
14:58:49.0062 5108 Fdc - ok
14:58:49.0109 5108 [ E9648254056BCE81A85380C0C3647DC4 ] FETNDIS C:\WINDOWS\system32\DRIVERS\fetnd5.sys
14:58:49.0234 5108 FETNDIS - ok
14:58:49.0250 5108 [ 266DAB58619B17BDF37FABBD48D875CA ] Fips C:\WINDOWS\system32\drivers\Fips.sys
14:58:49.0406 5108 Fips - ok
14:58:49.0437 5108 [ 0DD1DE43115B93F4D85E889D7A86F548 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
14:58:49.0546 5108 Flpydisk - ok
14:58:49.0562 5108 [ 157754F0DF355A9E0A6F54721914F9C6 ] FltMgr C:\WINDOWS\system32\DRIVERS\fltMgr.sys
14:58:49.0656 5108 FltMgr - ok
14:58:49.0703 5108 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
14:58:49.0828 5108 Fs_Rec - ok
14:58:49.0921 5108 [ 4E664D8541DB4A66B73A24257E322E1F ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
14:58:50.0015 5108 Ftdisk - ok
14:58:50.0015 5108 [ 4216CD545E5C30807B560C5DCAA812E6 ] gagp30kx C:\WINDOWS\system32\DRIVERS\gagp30kx.sys
14:58:50.0109 5108 gagp30kx - ok
14:58:50.0171 5108 [ C0F1D4A21DE5A415DF8170616703DEBF ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
14:58:50.0296 5108 Gpc - ok
14:58:50.0343 5108 [ 3FCC124B6E08EE0E9351F717DD136939 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
14:58:50.0375 5108 HDAudBus - ok
14:58:50.0453 5108 [ F59152272782FED8A8197FA788287F68 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
14:58:50.0546 5108 helpsvc - ok
14:58:50.0578 5108 [ D2DCF769E5A70027058AD5BE1F9B55BF ] HidServ C:\WINDOWS\System32\hidserv.dll
14:58:50.0656 5108 HidServ - ok
14:58:50.0703 5108 [ 1DE6783B918F540149AA69943BDFEBA8 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
14:58:50.0796 5108 HidUsb - ok
14:58:50.0953 5108 [ B028377DEA0546A5FCFBA928A8AEFAE0 ] hpn C:\WINDOWS\system32\DRIVERS\hpn.sys
14:58:51.0046 5108 hpn - ok
14:58:51.0093 5108 [ 6A5C4732D6803F84E2987EDD8E4359CE ] HSFHWAZL C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys
14:58:51.0125 5108 HSFHWAZL - ok
14:58:51.0281 5108 [ 21C31273C6CC4826E74BE8AE3B09D4A8 ] HSF_DPV C:\WINDOWS\system32\DRIVERS\HSF_DPV.sys
14:58:51.0406 5108 HSF_DPV - ok
14:58:51.0515 5108 [ C19B522A9AE0BBC3293397F3055E80A1 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
14:58:51.0625 5108 HTTP - ok
14:58:51.0703 5108 [ DA826826C5C9116F47E0CD0CA8CC7C11 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
14:58:51.0796 5108 HTTPFilter - ok
14:58:51.0843 5108 [ 8F09F91B5C91363B77BCD15599570F2C ] i2omgmt C:\WINDOWS\system32\drivers\i2omgmt.sys
14:58:51.0953 5108 i2omgmt - ok
14:58:51.0984 5108 [ ED6BF9E441FDEA13292A6D30A64A24C3 ] i2omp C:\WINDOWS\system32\DRIVERS\i2omp.sys
14:58:52.0093 5108 i2omp - ok
14:58:52.0125 5108 [ 0F42DE9909B5DBF2C48DD1A79D491AF5 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
14:58:52.0265 5108 i8042prt - ok
14:58:52.0343 5108 [ AE38A12F79A4980DDB88F36514F8A1DA ] IAANTMON C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
14:58:52.0359 5108 IAANTMON - ok
14:58:52.0593 5108 [ 12C7F8D581C4A9F126F5F8F5683A1C29 ] ialm C:\WINDOWS\system32\DRIVERS\igxpmp32.sys
14:58:52.0796 5108 ialm - ok
14:58:52.0828 5108 [ 997E8F5939F2D12CD9F2E6B395724C16 ] iaStor C:\WINDOWS\system32\DRIVERS\iaStor.sys
14:58:52.0828 5108 iaStor - ok
14:58:52.0890 5108 [ DAF66902F08796F9C694901660E5A64A ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
14:58:52.0890 5108 IDriverT ( UnsignedFile.Multi.Generic ) - warning
14:58:52.0890 5108 IDriverT - detected UnsignedFile.Multi.Generic (1)
14:58:52.0921 5108 [ F8AA320C6A0409C0380E5D8A99D76EC6 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
14:58:53.0015 5108 Imapi - ok
14:58:53.0062 5108 [ CF9D286B34CB4912F3B28B4972D5CB33 ] ImapiService C:\WINDOWS\system32\imapi.exe
14:58:53.0140 5108 ImapiService - ok
14:58:53.0156 5108 [ 4A40E045FAEE58631FD8D91AFC620719 ] ini910u C:\WINDOWS\system32\DRIVERS\ini910u.sys
14:58:53.0265 5108 ini910u - ok
14:58:53.0312 5108 [ F8F75594C17FE7BCE1B4045BB7199868 ] int15 C:\WINDOWS\system32\drivers\int15.sys
14:58:53.0312 5108 int15 - ok
14:58:53.0390 5108 [ 4D8D5B1C895EA0F2A721B98A7CE198F1 ] int15.sys C:\Acer\Empowering Technology\eRecovery\int15.sys
14:58:53.0593 5108 int15.sys ( UnsignedFile.Multi.Generic ) - warning
14:58:53.0593 5108 int15.sys - detected UnsignedFile.Multi.Generic (1)
14:58:53.0765 5108 [ B45A576AD280DD4F605F58B24CDAAFE1 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys
14:58:53.0890 5108 IntcAzAudAddService - ok
14:58:53.0921 5108 [ EF4FDA4841001A4B98C411797DB8894A ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys
14:58:54.0015 5108 IntelIde - ok
14:58:54.0062 5108 [ 10A3AC0F0DF720AD3C3FD13861D50EB9 ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
14:58:54.0156 5108 intelppm - ok
14:58:54.0171 5108 [ 4448006B6BC60E6C027932CFC38D6855 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
14:58:54.0281 5108 Ip6Fw - ok
14:58:54.0281 5108 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
14:58:54.0375 5108 IpFilterDriver - ok
14:58:54.0390 5108 [ E1EC7F5DA720B640CD8FB8424F1B14BB ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
14:58:54.0484 5108 IpInIp - ok
14:58:54.0500 5108 [ B5A8E215AC29D24D60B4D1250EF05ACE ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
14:58:54.0609 5108 IpNat - ok
14:58:54.0625 5108 [ 64537AA5C003A6AFEEE1DF819062D0D1 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
14:58:54.0734 5108 IPSec - ok
14:58:54.0750 5108 [ 86C204836FEEC22510D434982D4221B8 ] irda C:\WINDOWS\system32\DRIVERS\irda.sys
14:58:54.0796 5108 irda - ok
14:58:54.0812 5108 [ 50708DAA1B1CBB7D6AC1CF8F56A24410 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
14:58:54.0875 5108 IRENUM - ok
14:58:54.0906 5108 [ 8656793679EC90A2A0629DF38884AB80 ] Irmon C:\WINDOWS\System32\irmon.dll
14:58:54.0921 5108 Irmon - ok
14:58:54.0953 5108 [ 1091528512E4DD7ED5FDDCC4DF1C53D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
14:58:55.0046 5108 isapnp - ok
14:58:55.0062 5108 [ 6F877BF8DC01A550CD666F3BEDB2213C ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
14:58:55.0156 5108 Kbdclass - ok
14:58:55.0171 5108 [ D93CAD07C5683DB066B0B2D2D3790EAD ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
14:58:55.0265 5108 kmixer - ok
14:58:55.0281 5108 [ EB7FFE87FD367EA8FCA0506F74A87FBB ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
14:58:55.0375 5108 KSecDD - ok
14:58:55.0421 5108 [ 6D6BDD68B775986577C48A8DF961A05C ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
14:58:55.0515 5108 lanmanserver - ok
14:58:55.0562 5108 [ 69B0569AAE33F0D5057CA0E8577AAF07 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
14:58:55.0671 5108 lanmanworkstation - ok
14:58:55.0671 5108 lbrtfdc - ok
14:58:55.0765 5108 [ 793FF718477345CD5D232C50BED1E452 ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe
14:58:55.0781 5108 LightScribeService ( UnsignedFile.Multi.Generic ) - warning
14:58:55.0781 5108 LightScribeService - detected UnsignedFile.Multi.Generic (1)
14:58:55.0812 5108 [ F9EE6D2AAB0690B34AE35BA9921A1414 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
14:58:56.0125 5108 LmHosts - ok
14:58:56.0156 5108 [ 0CEA2D0D3FA284B85ED5B68365114F76 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
14:58:56.0171 5108 mdmxsdk - ok
14:58:56.0203 5108 [ 8B2FCBD881879B55BE40B41F12FFC431 ] Messenger C:\WINDOWS\System32\msgsvc.dll
14:58:56.0296 5108 Messenger - ok
14:58:56.0312 5108 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
14:58:56.0421 5108 mnmdd - ok
14:58:56.0453 5108 [ 7D137132D6A9B41EF800E59A771ED48C ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
14:58:56.0531 5108 mnmsrvc - ok
14:58:56.0578 5108 [ 60210DEB037846AFE521EBF349964F6B ] Modem C:\WINDOWS\system32\drivers\Modem.sys
14:58:56.0687 5108 Modem - ok
14:58:56.0703 5108 [ B160EC94114715675509115986400FD9 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
14:58:56.0812 5108 Mouclass - ok
14:58:56.0843 5108 [ BB269EBA740737AB749B214D568B6812 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
14:58:56.0937 5108 mouhid - ok
14:58:56.0953 5108 [ 65653F3B4477F3C63E68A9659F85EE2E ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
14:58:57.0062 5108 MountMgr - ok
14:58:57.0109 5108 [ 46297FA8E30A6007F14118FC2B942FBC ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
14:58:57.0109 5108 MozillaMaintenance - ok
14:58:57.0125 5108 [ 3F4BB95E5A44F3BE34824E8E7CAF0737 ] mraid35x C:\WINDOWS\system32\DRIVERS\mraid35x.sys
14:58:57.0218 5108 mraid35x - ok
14:58:57.0234 5108 [ 46EDCC8F2DB2F322C24F48785CB46366 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
14:58:57.0328 5108 MRxDAV - ok
14:58:57.0359 5108 [ 1FD607FC67F7F7C633C3DA65BFC53D18 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
14:58:57.0484 5108 MRxSmb - ok
14:58:57.0515 5108 [ 944A24032AED84C59455B981F6CA1C1A ] MSDTC C:\WINDOWS\system32\msdtc.exe
14:58:57.0625 5108 MSDTC - ok
14:58:57.0640 5108 [ 561B3A4333CA2DBDBA28B5B956822519 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
14:58:57.0765 5108 Msfs - ok
14:58:57.0765 5108 MSIServer - ok
14:58:57.0796 5108 [ AE431A8DD3C1D0D0610CDBAC16057AD0 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
14:58:57.0875 5108 MSKSSRV - ok
14:58:57.0890 5108 [ 13E75FEF9DFEB08EEDED9D0246E1F448 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
14:58:57.0984 5108 MSPCLOCK - ok
14:58:57.0984 5108 [ 1988A33FF19242576C3D0EF9CE785DA7 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
14:58:58.0078 5108 MSPQM - ok
14:58:58.0109 5108 [ 469541F8BFD2B32659D5D463A6714BCE ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
14:58:58.0203 5108 mssmbios - ok
14:58:58.0265 5108 MSSQL$MSSMLBIZ - ok
14:58:58.0328 5108 [ ADAF062116B4E6D96E44D26486A87AF6 ] MSSQLServerADHelper C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe
14:58:58.0343 5108 MSSQLServerADHelper - ok
14:58:58.0343 5108 [ BF13612142995096AB084F2DB7F40F77 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
14:58:58.0453 5108 MSTEE - ok
14:58:58.0468 5108 [ 82035E0F41C2DD05AE41D27FE6CF7DE1 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
14:58:58.0562 5108 Mup - ok
14:58:58.0593 5108 [ 5C8DC6429C43DC6177C1FA5B76290D1A ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
14:58:58.0687 5108 NABTSFEC - ok
14:58:58.0718 5108 [ 558635D3AF1C7546D26067D5D9B6959E ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
14:58:58.0828 5108 NDIS - ok
14:58:58.0828 5108 [ 520CE427A8B298F54112857BCF6BDE15 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys
14:58:58.0953 5108 NdisIP - ok
14:58:58.0968 5108 [ 08D43BBDACDF23F34D79E44ED35C1B4C ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
14:58:59.0062 5108 NdisTapi - ok
14:58:59.0078 5108 [ 34D6CD56409DA9A7ED573E1C90A308BF ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
14:58:59.0156 5108 Ndisuio - ok
14:58:59.0171 5108 [ 0B90E255A9490166AB368CD55A529893 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
14:58:59.0265 5108 NdisWan - ok
14:58:59.0281 5108 [ 59FC3FB44D2669BC144FD87826BB571F ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
14:58:59.0390 5108 NDProxy - ok
14:58:59.0406 5108 [ 3A2ACA8FC1D7786902CA434998D7CEB4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
14:58:59.0500 5108 NetBIOS - ok
14:58:59.0515 5108 [ 0C80E410CD2F47134407EE7DD19CC86B ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
14:58:59.0625 5108 NetBT - ok
14:58:59.0656 5108 [ 818053225BF4AAC5F0F718001E492F70 ] NetDDE C:\WINDOWS\system32\netdde.exe
14:58:59.0750 5108 NetDDE - ok
14:58:59.0750 5108 [ 818053225BF4AAC5F0F718001E492F70 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
14:58:59.0843 5108 NetDDEdsdm - ok
14:58:59.0890 5108 [ 82A362FE1D4980B71B588D9C10748511 ] Netlogon C:\WINDOWS\system32\lsass.exe
14:59:00.0000 5108 Netlogon - ok
14:59:00.0015 5108 [ AF342D2781225A8769686E0D47E3123E ] Netman C:\WINDOWS\System32\netman.dll
14:59:00.0125 5108 Netman - ok
14:59:00.0156 5108 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:59:00.0171 5108 NetTcpPortSharing - ok
14:59:00.0281 5108 [ 18B2D3E11ED7A3C898ADE6A6692B6929 ] NETw4x32 C:\WINDOWS\system32\DRIVERS\NETw4x32.sys
14:59:00.0375 5108 NETw4x32 - ok
14:59:00.0390 5108 [ 5C5C53DB4FEF16CF87B9911C7E8C6FBC ] NIC1394 C:\WINDOWS\system32\DRIVERS\nic1394.sys
14:59:00.0484 5108 NIC1394 - ok
14:59:00.0531 5108 [ 64C078BD4EFD441C3F159EDC5EA4420A ] Nla C:\WINDOWS\System32\mswsock.dll
14:59:00.0625 5108 Nla - ok
14:59:00.0656 5108 [ D21FEE8DB254BA762656878168AC1DB6 ] NPF C:\WINDOWS\system32\drivers\npf.sys
14:59:00.0671 5108 NPF ( UnsignedFile.Multi.Generic ) - warning
14:59:00.0671 5108 NPF - detected UnsignedFile.Multi.Generic (1)
14:59:00.0687 5108 [ 4F601BCB8F64EA3AC0994F98FED03F8E ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
14:59:00.0796 5108 Npfs - ok
14:59:00.0812 5108 [ 6216798D29C3BA9D0D6F40BBBAB694A5 ] NSCIRDA C:\WINDOWS\system32\DRIVERS\nscirda.sys
14:59:00.0859 5108 NSCIRDA - ok
14:59:00.0875 5108 [ 19A811EF5F1ED5C926A028CE107FF1AF ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
14:59:00.0921 5108 Ntfs - ok
14:59:00.0937 5108 [ 7F1C1F78D709C4A54CBB46EDE7E0B48D ] NTIDrvr C:\WINDOWS\system32\DRIVERS\NTIDrvr.sys
14:59:00.0937 5108 NTIDrvr ( UnsignedFile.Multi.Generic ) - warning
14:59:00.0937 5108 NTIDrvr - detected UnsignedFile.Multi.Generic (1)
14:59:00.0968 5108 [ 82A362FE1D4980B71B588D9C10748511 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
14:59:01.0078 5108 NtLmSsp - ok
14:59:01.0171 5108 [ D8D2B13BA93AE830B1A637DF571D1195 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
14:59:01.0312 5108 NtmsSvc - ok
14:59:01.0328 5108 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
14:59:01.0437 5108 Null - ok
14:59:01.0468 5108 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
14:59:01.0578 5108 NwlnkFlt - ok
14:59:01.0578 5108 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
14:59:01.0671 5108 NwlnkFwd - ok
14:59:01.0812 5108 [ 84DE1DD996B48B05ACE31AD015FA108A ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
14:59:01.0828 5108 odserv - ok
14:59:01.0859 5108 [ 0951DB8E5823EA366B0E408D71E1BA2A ] ohci1394 C:\WINDOWS\system32\DRIVERS\ohci1394.sys
14:59:01.0968 5108 ohci1394 - ok
14:59:01.0984 5108 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:59:02.0000 5108 ose - ok
14:59:02.0078 5108 [ 01907300EB52206B06FACB9608F369A9 ] PanService C:\Program Files\PANDORA.TV\PanService\PandoraService.exe
14:59:02.0093 5108 PanService - ok
14:59:02.0125 5108 [ 76A18CAA2FEFB28A4CED38D76837E86E ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
14:59:02.0234 5108 Parport - ok
14:59:02.0250 5108 [ 3334430C29DC338092F79C38EF7B4CD0 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
14:59:02.0328 5108 PartMgr - ok
14:59:02.0343 5108 [ 1FAE19D0457176318BBA4A8795656EBC ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
14:59:02.0437 5108 ParVdm - ok
14:59:02.0453 5108 [ B7979F37BB7B9DF2230046134955E6E7 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
14:59:02.0546 5108 PCI - ok
14:59:02.0562 5108 PCIDump - ok
14:59:02.0593 5108 [ 2DA4EC85E0EA7A45C6B2A05820492D5A ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
14:59:02.0671 5108 PCIIde - ok
14:59:02.0687 5108 [ 90505755634407D4EF4C6DEA60FC1DF9 ] Pcmcia C:\WINDOWS\system32\DRIVERS\pcmcia.sys
14:59:02.0781 5108 Pcmcia - ok
14:59:02.0781 5108 PDCOMP - ok
14:59:02.0796 5108 PDFRAME - ok
14:59:02.0812 5108 PDRELI - ok
14:59:02.0812 5108 PDRFRAME - ok
14:59:02.0828 5108 [ 6C14B9C19BA84F73D3A86DBA11133101 ] perc2 C:\WINDOWS\system32\DRIVERS\perc2.sys
14:59:02.0906 5108 perc2 - ok
14:59:02.0921 5108 [ F50F7C27F131AFE7BEBA13E14A3B9416 ] perc2hib C:\WINDOWS\system32\DRIVERS\perc2hib.sys
14:59:03.0015 5108 perc2hib - ok
14:59:03.0093 5108 [ 6E401E61F952FBBF708AFBECEFAFAE81 ] PlugPlay C:\WINDOWS\system32\services.exe
14:59:03.0187 5108 PlugPlay - ok
14:59:03.0187 5108 [ 82A362FE1D4980B71B588D9C10748511 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
14:59:03.0281 5108 PolicyAgent - ok
14:59:03.0296 5108 [ 1C5CC65AAC0783C344F16353E60B72AC ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
14:59:03.0390 5108 PptpMiniport - ok
14:59:03.0390 5108 [ 9A10E4FD13824823DA50D4758BD0A645 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
14:59:03.0484 5108 Processor - ok
14:59:03.0500 5108 [ 82A362FE1D4980B71B588D9C10748511 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
14:59:03.0578 5108 ProtectedStorage - ok
14:59:03.0609 5108 [ 48671F327553DCF1D27F6197F622A668 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
14:59:03.0718 5108 PSched - ok
14:59:03.0734 5108 [ 32338659E9DA79055406F2157CD0E1DF ] psdfilter C:\WINDOWS\system32\Drivers\psdfilter.sys
14:59:03.0750 5108 psdfilter ( UnsignedFile.Multi.Generic ) - warning
14:59:03.0750 5108 psdfilter - detected UnsignedFile.Multi.Generic (1)
14:59:03.0765 5108 [ 4C7947014674DF40B7AF52342A9157D0 ] psdvdisk C:\WINDOWS\system32\Drivers\psdvdisk.sys
14:59:03.0781 5108 psdvdisk ( UnsignedFile.Multi.Generic ) - warning
14:59:03.0781 5108 psdvdisk - detected UnsignedFile.Multi.Generic (1)
14:59:03.0781 5108 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
14:59:03.0875 5108 Ptilink - ok
14:59:03.0890 5108 [ 0A63FB54039EB5662433CABA3B26DBA7 ] ql1080 C:\WINDOWS\system32\DRIVERS\ql1080.sys
14:59:04.0000 5108 ql1080 - ok
14:59:04.0015 5108 [ 6503449E1D43A0FF0201AD5CB1B8C706 ] Ql10wnt C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
14:59:04.0109 5108 Ql10wnt - ok
14:59:04.0109 5108 [ 156ED0EF20C15114CA097A34A30D8A01 ] ql12160 C:\WINDOWS\system32\DRIVERS\ql12160.sys
14:59:04.0203 5108 ql12160 - ok
14:59:04.0218 5108 [ 70F016BEBDE6D29E864C1230A07CC5E6 ] ql1240 C:\WINDOWS\system32\DRIVERS\ql1240.sys
14:59:04.0296 5108 ql1240 - ok
14:59:04.0312 5108 [ 907F0AEEA6BC451011611E732BD31FCF ] ql1280 C:\WINDOWS\system32\DRIVERS\ql1280.sys
14:59:04.0390 5108 ql1280 - ok
14:59:04.0421 5108 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
14:59:04.0515 5108 RasAcd - ok
14:59:04.0546 5108 [ E68B6F9A726A444059705AB43B5656D1 ] RasAuto C:\WINDOWS\System32\rasauto.dll
14:59:04.0625 5108 RasAuto - ok
14:59:04.0640 5108 [ 0207D26DDF796A193CCD9F83047BB5FC ] Rasirda C:\WINDOWS\system32\DRIVERS\rasirda.sys
14:59:04.0718 5108 Rasirda - ok
14:59:04.0718 5108 [ 98FAEB4A4DCF812BA1C6FCA4AA3E115C ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
14:59:04.0812 5108 Rasl2tp - ok
14:59:04.0843 5108 [ 6E519D777C91E90592403C9F981FDF03 ] RasMan C:\WINDOWS\System32\rasmans.dll
14:59:04.0921 5108 RasMan - ok
14:59:04.0953 5108 [ 7306EEED8895454CBED4669BE9F79FAA ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
14:59:05.0062 5108 RasPppoe - ok
14:59:05.0078 5108 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
14:59:05.0171 5108 Raspti - ok
14:59:05.0203 5108 [ 29D66245ADBA878FFF574CD66ABD2884 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
14:59:05.0296 5108 Rdbss - ok
14:59:05.0312 5108 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
14:59:05.0406 5108 RDPCDD - ok
14:59:05.0453 5108 [ A2CAE2C60BC37E0751EF9DDA7CEAF4AD ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
14:59:05.0546 5108 rdpdr - ok
14:59:05.0593 5108 [ D4F5643D7714EF499AE9527FDCD50894 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
14:59:05.0703 5108 RDPWD - ok
14:59:05.0750 5108 [ 125ACF258DA9633F748131A0E0185AF3 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
14:59:05.0843 5108 RDSessMgr - ok
14:59:05.0875 5108 [ ABA13D33E1F888C9A68599A48A8840D6 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
14:59:05.0968 5108 redbook - ok
14:59:06.0000 5108 [ 8AC155995F5D10FC0D3AD949A1A68075 ] RegSrvc C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
14:59:06.0015 5108 RegSrvc ( UnsignedFile.Multi.Generic ) - warning
14:59:06.0015 5108 RegSrvc - detected UnsignedFile.Multi.Generic (1)
14:59:06.0062 5108 [ EB5E1A601E5A1908A87E4D5A41803D98 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
14:59:06.0156 5108 RemoteAccess - ok
14:59:06.0203 5108 [ 5B21208FCF8970BB61FE98E19D828714 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
14:59:06.0296 5108 RemoteRegistry - ok
14:59:06.0328 5108 [ 2AF094B1CE4725E4551F38FDA2348637 ] RichVideo C:\Program Files\CyberLink\Shared Files\RichVideo.exe
14:59:06.0359 5108 RichVideo ( UnsignedFile.Multi.Generic ) - warning
14:59:06.0359 5108 RichVideo - detected UnsignedFile.Multi.Generic (1)
14:59:06.0406 5108 [ 67C607857CCD6EBFFE768DAD5B2CA239 ] rpcapd C:\Program Files\WinPcap\rpcapd.exe
14:59:06.0421 5108 rpcapd ( UnsignedFile.Multi.Generic ) - warning
14:59:06.0421 5108 rpcapd - detected UnsignedFile.Multi.Generic (1)
14:59:06.0453 5108 [ C8A3B668985D61249F2DC71716C58DE8 ] RpcLocator C:\WINDOWS\system32\locator.exe
14:59:06.0562 5108 RpcLocator - ok
14:59:06.0593 5108 [ C72C15EE57E248C66E57C76CAB086CF2 ] RpcSs C:\WINDOWS\system32\rpcss.dll
14:59:06.0703 5108 RpcSs - ok
14:59:06.0734 5108 [ 09AB2E71E58B078038E3BFDBA7FFC984 ] RSVP C:\WINDOWS\system32\rsvp.exe
14:59:06.0812 5108 RSVP - ok
14:59:06.0859 5108 [ 131D50F081D2E29EBD1365B21F6B9736 ] S24EventMonitor C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
14:59:06.0921 5108 S24EventMonitor ( UnsignedFile.Multi.Generic ) - warning
14:59:06.0921 5108 S24EventMonitor - detected UnsignedFile.Multi.Generic (1)
14:59:06.0953 5108 [ E2C6ABCBEFB1D44F6AAEB1CD5D6062D4 ] s24trans C:\WINDOWS\system32\DRIVERS\s24trans.sys
14:59:06.0953 5108 s24trans ( UnsignedFile.Multi.Generic ) - warning
14:59:06.0953 5108 s24trans - detected UnsignedFile.Multi.Generic (1)
14:59:06.0968 5108 [ 82A362FE1D4980B71B588D9C10748511 ] SamSs C:\WINDOWS\system32\lsass.exe
14:59:07.0062 5108 SamSs - ok
14:59:07.0078 5108 [ C177354E995CC1AA1F767BCD9980434A ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
14:59:07.0187 5108 SCardSvr - ok
14:59:07.0234 5108 [ 29AC93307C6182DBE336BCA314947F28 ] Schedule C:\WINDOWS\system32\schedsvc.dll
14:59:07.0312 5108 Schedule - ok
14:59:07.0343 5108 [ 02FC71B020EC8700EE8A46C58BC6F276 ] sdbus C:\WINDOWS\system32\DRIVERS\sdbus.sys
14:59:07.0421 5108 sdbus - ok
14:59:07.0453 5108 [ D26E26EA516450AF9D072635C60387F4 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
14:59:07.0515 5108 Secdrv - ok
14:59:07.0531 5108 [ C76CB8A133374FAC6805F83FF7B7DA03 ] seclogon C:\WINDOWS\System32\seclogon.dll
14:59:07.0640 5108 seclogon - ok
14:59:07.0656 5108 [ 220AD85BA9C5B3011296354011B901CC ] SENS C:\WINDOWS\system32\sens.dll
14:59:07.0734 5108 SENS - ok
14:59:07.0765 5108 [ C1DDBC85251551A840212999DA3D95F3 ] Serial C:\WINDOWS\system32\drivers\Serial.sys
14:59:07.0859 5108 Serial - ok
14:59:07.0906 5108 [ 0D13B6DF6E9E101013A7AFB0CE629FE0 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
14:59:08.0015 5108 Sfloppy - ok
14:59:08.0062 5108 [ 6A93501BCDEBF159109429B022C0FF83 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
14:59:08.0156 5108 SharedAccess - ok
14:59:08.0171 5108 [ 8BA76BD2A943F642F267A296A15776D2 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
14:59:08.0265 5108 ShellHWDetection - ok
14:59:08.0265 5108 Simbad - ok
14:59:08.0296 5108 [ 732D859B286DA692119F286B21A2A114 ] sisagp C:\WINDOWS\system32\DRIVERS\sisagp.sys
14:59:08.0390 5108 sisagp - ok
14:59:08.0421 5108 [ 5CAEED86821FA2C6139E32E9E05CCDC9 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys
14:59:08.0515 5108 SLIP - ok
14:59:08.0656 5108 [ 0302BC619D4A723317E7F8EB0C362BD3 ] SNP2UVC C:\WINDOWS\system32\DRIVERS\snp2uvc.sys
14:59:08.0750 5108 SNP2UVC - ok
14:59:08.0781 5108 [ 83C0F71F86D3BDAF915685F3D568B20E ] Sparrow C:\WINDOWS\system32\DRIVERS\sparrow.sys
14:59:08.0828 5108 Sparrow - ok
14:59:08.0859 5108 [ 8E186B8F23295D1E42C573B82B80D548 ] splitter C:\WINDOWS\system32\drivers\splitter.sys
14:59:08.0953 5108 splitter - ok
14:59:09.0000 5108 [ 21B6FAA88044A41640E03EBB68BE93E8 ] Spooler C:\WINDOWS\system32\spoolsv.exe
14:59:09.0093 5108 Spooler - ok
14:59:09.0125 5108 [ 5673E79BBB62A4C35B10D821FF1B4ACA ] SQLBrowser C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
14:59:09.0125 5108 SQLBrowser - ok
14:59:09.0156 5108 [ 9263C8898732E2B890F7E954E7729AB7 ] SQLWriter C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
14:59:09.0171 5108 SQLWriter - ok
14:59:09.0171 5108 [ A74035EA526DB97D9D50D2143A55F5CF ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
14:59:09.0234 5108 sr - ok
14:59:09.0250 5108 [ 3CD57F31A64D32FDB28918B16D1E6AAC ] srservice C:\WINDOWS\system32\srsvc.dll
14:59:09.0312 5108 srservice - ok
14:59:09.0359 5108 [ 20B7E396720353E4117D64D9DCB926CA ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
14:59:09.0437 5108 Srv - ok
14:59:09.0468 5108 [ 88C28F53F53438DAFCD95E99C837C61E ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
14:59:09.0515 5108 SSDPSRV - ok
14:59:09.0578 5108 [ 0645CCDDDD27F96EEA3534C1DEF736D9 ] stisvc C:\WINDOWS\system32\wiaservc.dll
14:59:09.0671 5108 stisvc - ok
14:59:09.0703 5108 [ 284C57DF5DC7ABCA656BC2B96A667AFB ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys
14:59:09.0781 5108 streamip - ok
14:59:09.0812 5108 [ 03C1BAE4766E2450219D20B993D6E046 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
14:59:09.0890 5108 swenum - ok
14:59:09.0906 5108 [ 94ABC808FC4B6D7D2BBF42B85E25BB4D ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
14:59:10.0015 5108 swmidi - ok
14:59:10.0015 5108 SwPrv - ok
14:59:10.0031 5108 [ 1FF3217614018630D0A6758630FC698C ] symc810 C:\WINDOWS\system32\DRIVERS\symc810.sys
14:59:10.0109 5108 symc810 - ok
14:59:10.0125 5108 [ 070E001D95CF725186EF8B20335F933C ] symc8xx C:\WINDOWS\system32\DRIVERS\symc8xx.sys
14:59:10.0234 5108 symc8xx - ok
14:59:10.0250 5108 [ 80AC1C4ABBE2DF3B738BF15517A51F2C ] sym_hi C:\WINDOWS\system32\DRIVERS\sym_hi.sys
14:59:10.0328 5108 sym_hi - ok
14:59:10.0328 5108 [ BF4FAB949A382A8E105F46EBB4937058 ] sym_u3 C:\WINDOWS\system32\DRIVERS\sym_u3.sys
14:59:10.0421 5108 sym_u3 - ok
14:59:10.0484 5108 [ CC5DA243CFDAC58FC0408F7CE24084C5 ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys
14:59:10.0515 5108 SynTP - ok
14:59:10.0531 5108 [ 650AD082D46BAC0E64C9C0E0928492FD ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
14:59:10.0625 5108 sysaudio - ok
14:59:10.0671 5108 [ D9C9ECFF4904E6151525C533AEEDF8F4 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
14:59:10.0781 5108 SysmonLog - ok
14:59:10.0812 5108 [ 37162D29CD61519E6F5EA0DE99786FF6 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
14:59:10.0906 5108 TapiSrv - ok
14:59:10.0937 5108 [ 9F4B36614A0FC234525BA224957DE55C ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
14:59:11.0031 5108 Tcpip - ok
14:59:11.0062 5108 [ 38D437CF2D98965F239B0ABCD66DCB0F ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
14:59:11.0187 5108 TDPIPE - ok
14:59:11.0218 5108 [ ED0580AF02502D00AD8C4C066B156BE9 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
14:59:11.0312 5108 TDTCP - ok
14:59:11.0328 5108 [ A540A99C281D933F3D69D55E48727F47 ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
14:59:11.0421 5108 TermDD - ok
14:59:11.0453 5108 [ 2F5919F2F6EE7A845893D9C3AA2BC56A ] TermService C:\WINDOWS\System32\termsrv.dll
14:59:11.0578 5108 TermService - ok
14:59:11.0609 5108 [ 8BA76BD2A943F642F267A296A15776D2 ] Themes C:\WINDOWS\System32\shsvcs.dll
14:59:11.0703 5108 Themes - ok
14:59:11.0734 5108 [ 78213F01CE781F93180BEF5EB5B3AD81 ] tifm21 C:\WINDOWS\system32\drivers\tifm21.sys
14:59:11.0765 5108 tifm21 - ok
14:59:11.0781 5108 [ 535C2FB97336BAFA509F4783DD1E5746 ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
14:59:11.0843 5108 TlntSvr - ok
14:59:11.0859 5108 [ FD4FD7D6FDA5C019ED86025D7BE1510F ] TosIde C:\WINDOWS\system32\DRIVERS\toside.sys
14:59:11.0953 5108 TosIde - ok
14:59:12.0000 5108 [ 4DCE17221B1A87FB47E36842F3E38753 ] TrkWks C:\WINDOWS\system32\trkwks.dll
14:59:12.0078 5108 TrkWks - ok
14:59:12.0125 5108 [ 97DD70FECA64FB4F63DE7BB7E66A80B1 ] tvicport C:\WINDOWS\system32\drivers\tvicport.sys
14:59:12.0125 5108 tvicport ( UnsignedFile.Multi.Generic ) - warning
14:59:12.0125 5108 tvicport - detected UnsignedFile.Multi.Generic (1)
14:59:12.0156 5108 [ E0C67BE430C6DE490D6CCAECFA071F9E ] UBHelper C:\WINDOWS\system32\drivers\UBHelper.sys
14:59:12.0171 5108 UBHelper ( UnsignedFile.Multi.Generic ) - warning
14:59:12.0171 5108 UBHelper - detected UnsignedFile.Multi.Generic (1)
14:59:12.0187 5108 [ 12F70256F140CD7D52C58C7048FDE657 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
14:59:12.0281 5108 Udfs - ok
14:59:12.0281 5108 [ 1B698A51CD528D8DA4FFAED66DFC51B9 ] ultra C:\WINDOWS\system32\DRIVERS\ultra.sys
14:59:12.0328 5108 ultra - ok
14:59:12.0359 5108 [ CED744117E91BDC0BEB810F7D8608183 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
14:59:12.0421 5108 Update - ok
14:59:12.0437 5108 [ 0C0C2C77C6B52181369594F2AA36AF40 ] upnphost C:\WINDOWS\System32\upnphost.dll
14:59:12.0468 5108 upnphost - ok
14:59:12.0500 5108 [ 6148A3BA4D9CC628357FC92014FEA30E ] UPS C:\WINDOWS\System32\ups.exe
14:59:12.0593 5108 UPS - ok
14:59:12.0625 5108 [ BFFD9F120CC63BCBAA3D840F3EEF9F79 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
14:59:12.0703 5108 usbccgp - ok
14:59:12.0718 5108 [ B0D7020386C7187EF9C5A9643F289CD3 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
14:59:12.0734 5108 usbehci - ok
14:59:12.0781 5108 [ ACE960E54148821E8E48F5D191562C28 ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
14:59:12.0796 5108 usbhub - ok
14:59:12.0812 5108 [ 6CD7B22193718F1D17A47A1CD6D37E75 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
14:59:12.0921 5108 USBSTOR - ok
14:59:12.0937 5108 [ FF6E4FDEB82DC228EFA490336409C6BD ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
14:59:12.0968 5108 usbuhci - ok
14:59:12.0968 5108 [ 8968FF3973A883C49E8B564200F565B9 ] usbvideo C:\WINDOWS\system32\Drivers\usbvideo.sys
14:59:13.0062 5108 usbvideo - ok
14:59:13.0093 5108 [ 8A60EDD72B4EA5AEA8202DAF0E427925 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
14:59:13.0187 5108 VgaSave - ok
14:59:13.0203 5108 [ D92E7C8A30CFD14D8E15B5F7F032151B ] viaagp C:\WINDOWS\system32\DRIVERS\viaagp.sys
14:59:13.0296 5108 viaagp - ok
14:59:13.0359 5108 [ 59CB1338AD3654417BEA49636457F65D ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
14:59:13.0468 5108 ViaIde - ok
14:59:13.0484 5108 [ CD8CCE067F7E9CBD762C00BDDDECAA34 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
14:59:13.0578 5108 VolSnap - ok
14:59:13.0609 5108 [ 043539881667BB37B07524032D6FFC3E ] VSS C:\WINDOWS\System32\vssvc.exe
14:59:13.0687 5108 VSS - ok
14:59:13.0765 5108 [ 3B142C409909FB05215A3DC5C8EC0EB0 ] vToolbarUpdater11.0.2 C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\11.0.2\ToolbarUpdater.exe
14:59:13.0796 5108 vToolbarUpdater11.0.2 - ok
14:59:13.0828 5108 [ 2CEEBB402187AE56B585701F3D191FB3 ] W32Time C:\WINDOWS\system32\w32time.dll
14:59:13.0937 5108 W32Time - ok
14:59:13.0968 5108 [ 984EF0B9788ABF89974CFED4BFBAACBC ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
14:59:14.0062 5108 Wanarp - ok
14:59:14.0062 5108 WDICA - ok
14:59:14.0109 5108 [ 2797F33EBF50466020C430EE4F037933 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
14:59:14.0203 5108 wdmaud - ok
14:59:14.0234 5108 [ 3791ADF1D3466AC6B4B662D3F79CBFEC ] WebClient C:\WINDOWS\System32\webclnt.dll
14:59:14.0328 5108 WebClient - ok
14:59:14.0359 5108 [ 307D248F97835B6879BDD361086924FE ] winachsf C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
14:59:14.0406 5108 winachsf - ok
14:59:14.0484 5108 [ E12084EA622BDF2262C637BEF15DD85C ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
14:59:14.0578 5108 winmgmt - ok
14:59:14.0640 5108 [ E02E913B3841717A890A644EE167B9A5 ] WmdmPmSN C:\WINDOWS\system32\mspmsnsv.dll
14:59:14.0734 5108 WmdmPmSN - ok
14:59:14.0765 5108 [ 0CDC4A0C6B820FAD99FB4CA74CD0C476 ] Wmi C:\WINDOWS\System32\advapi32.dll
14:59:14.0859 5108 Wmi - ok
14:59:14.0875 5108 [ AE2C8544E747C20062DB27456EA2D67A ] WmiAcpi C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
14:59:15.0000 5108 WmiAcpi - ok
14:59:15.0031 5108 [ BCD21B989F0FD4ACE78287FC01B4693D ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
14:59:15.0109 5108 WmiApSrv - ok
14:59:15.0218 5108 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
14:59:15.0250 5108 WPFFontCache_v0400 - ok
14:59:15.0312 5108 [ 4ADED1ADEF25041D9827F9A79C0FDA13 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
14:59:15.0421 5108 wscsvc - ok
14:59:15.0453 5108 [ D5842484F05E12121C511AA93F6439EC ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
14:59:15.0578 5108 WSTCODEC - ok
14:59:15.0671 5108 [ 21F5169CA14E0B25C757644456F637DF ] wuauserv C:\WINDOWS\system32\wuauserv.dll
14:59:15.0765 5108 wuauserv - ok
14:59:15.0796 5108 [ 325CEDEF696EF4B649DDCD3968D085C9 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
14:59:15.0890 5108 WZCSVC - ok
14:59:15.0906 5108 xcpip - ok
14:59:15.0968 5108 [ 9B835D4C64860B155A1701D5092EC9E4 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
14:59:16.0062 5108 xmlprov - ok
14:59:16.0078 5108 xpsec - ok
14:59:16.0109 5108 [ 40AC8590CC9006DBB99FFCB37879D4C6 ] zntport C:\WINDOWS\system32\drivers\zntport.sys
14:59:16.0125 5108 zntport ( UnsignedFile.Multi.Generic ) - warning
14:59:16.0125 5108 zntport - detected UnsignedFile.Multi.Generic (1)
14:59:16.0218 5108 ================ Scan global ===============================
14:59:16.0250 5108 [ F642F3368D2839798DA79E7BA9218481 ] C:\WINDOWS\system32\basesrv.dll
14:59:16.0281 5108 [ 5869828D4A83BA8F9519630C40044C87 ] C:\WINDOWS\system32\winsrv.dll
14:59:16.0312 5108 [ 5869828D4A83BA8F9519630C40044C87 ] C:\WINDOWS\system32\winsrv.dll
14:59:16.0343 5108 [ 6E401E61F952FBBF708AFBECEFAFAE81 ] C:\WINDOWS\system32\services.exe
14:59:16.0343 5108 [Global] - ok
14:59:16.0343 5108 ================ Scan MBR ==================================
14:59:16.0359 5108 [ 1FD04AB709CBA1DAC89F3074AB6F9420 ] \Device\Harddisk0\DR0
14:59:16.0359 5108 \Device\Harddisk0\DR0 ( Rootkit.Boot.Sinowal.b ) - infected
14:59:16.0359 5108 \Device\Harddisk0\DR0 - detected Rootkit.Boot.Sinowal.b (0)
14:59:16.0453 5108 ================ Scan VBR ==================================
14:59:16.0484 5108 [ EA7891A15338D5D96A5C6E0178A7E3A4 ] \Device\Harddisk0\DR0\Partition1
14:59:16.0484 5108 \Device\Harddisk0\DR0\Partition1 - ok
14:59:16.0515 5108 [ 74A7C5DC33FAAF4CED75D2A915371B77 ] \Device\Harddisk0\DR0\Partition2
14:59:16.0515 5108 \Device\Harddisk0\DR0\Partition2 - ok
14:59:16.0515 5108 ================ Scan active images ========================
14:59:16.0531 5108 [ 10A3AC0F0DF720AD3C3FD13861D50EB9 ] C:\WINDOWS\system32\drivers\intelppm.sys
14:59:16.0531 5108 C:\WINDOWS\system32\drivers\intelppm.sys - ok
14:59:16.0546 5108 [ AE2C8544E747C20062DB27456EA2D67A ] C:\WINDOWS\system32\drivers\wmiacpi.sys
14:59:16.0546 5108 C:\WINDOWS\system32\drivers\wmiacpi.sys - ok
14:59:16.0578 5108 [ D5A9D123F5ED7C9965A481BD20CF66D8 ] C:\WINDOWS\system32\drivers\videoprt.sys
14:59:16.0578 5108 C:\WINDOWS\system32\drivers\videoprt.sys - ok
14:59:16.0593 5108 [ 44B7C4AA916DB5C995105704BEE85966 ] C:\WINDOWS\system32\drivers\ati2mtag.sys
14:59:16.0593 5108 C:\WINDOWS\system32\drivers\ati2mtag.sys - ok
14:59:16.0593 5108 [ 6A6E905B6761EDF5BC5245A335950B3D ] C:\WINDOWS\system32\drivers\usbport.sys
14:59:16.0593 5108 C:\WINDOWS\system32\drivers\usbport.sys - ok
14:59:16.0609 5108 [ B0D7020386C7187EF9C5A9643F289CD3 ] C:\WINDOWS\system32\drivers\usbehci.sys
14:59:16.0609 5108 C:\WINDOWS\system32\drivers\usbehci.sys - ok
14:59:16.0625 5108 [ FF6E4FDEB82DC228EFA490336409C6BD ] C:\WINDOWS\system32\drivers\usbuhci.sys
14:59:16.0625 5108 C:\WINDOWS\system32\drivers\usbuhci.sys - ok
14:59:16.0625 5108 [ F96038AA1EC4013A93D2420FC689D1E9 ] C:\WINDOWS\system32\drivers\b57xp32.sys
14:59:16.0625 5108 C:\WINDOWS\system32\drivers\b57xp32.sys - ok
14:59:16.0640 5108 [ 3FCC124B6E08EE0E9351F717DD136939 ] C:\WINDOWS\system32\drivers\Hdaudbus.sys
14:59:16.0640 5108 C:\WINDOWS\system32\drivers\Hdaudbus.sys - ok
14:59:16.0656 5108 [ 18B2D3E11ED7A3C898ADE6A6692B6929 ] C:\WINDOWS\system32\drivers\NETw4x32.sys
14:59:16.0656 5108 C:\WINDOWS\system32\drivers\NETw4x32.sys - ok
14:59:16.0656 5108 [ 02FC71B020EC8700EE8A46C58BC6F276 ] C:\WINDOWS\system32\drivers\sdbus.sys
14:59:16.0656 5108 C:\WINDOWS\system32\drivers\sdbus.sys - ok
14:59:16.0671 5108 [ 78213F01CE781F93180BEF5EB5B3AD81 ] C:\WINDOWS\system32\drivers\tifm21.sys
14:59:16.0671 5108 C:\WINDOWS\system32\drivers\tifm21.sys - ok
14:59:16.0671 5108 [ 4266BE808F85826AEDF3C64C1E240203 ] C:\WINDOWS\system32\drivers\CmBatt.sys
14:59:16.0671 5108 C:\WINDOWS\system32\drivers\CmBatt.sys - ok
14:59:16.0687 5108 [ 060DB81DFB79C8244EB65D10B6C7873F ] C:\WINDOWS\system32\drivers\DKbFltr.SYS
14:59:16.0687 5108 C:\WINDOWS\system32\drivers\DKbFltr.SYS - ok
14:59:16.0703 5108 [ 0F42DE9909B5DBF2C48DD1A79D491AF5 ] C:\WINDOWS\system32\drivers\i8042prt.sys
14:59:16.0703 5108 C:\WINDOWS\system32\drivers\i8042prt.sys - ok
14:59:16.0703 5108 [ 6F877BF8DC01A550CD666F3BEDB2213C ] C:\WINDOWS\system32\drivers\kbdclass.sys
14:59:16.0703 5108 C:\WINDOWS\system32\drivers\kbdclass.sys - ok
14:59:16.0718 5108 [ 596EB39B50D6EBD9B734DC4AE0544693 ] C:\WINDOWS\system32\drivers\usbd.sys
14:59:16.0718 5108 C:\WINDOWS\system32\drivers\usbd.sys - ok
14:59:16.0734 5108 [ CC5DA243CFDAC58FC0408F7CE24084C5 ] C:\WINDOWS\system32\drivers\SynTP.sys
14:59:16.0734 5108 C:\WINDOWS\system32\drivers\SynTP.sys - ok
14:59:16.0734 5108 [ F8AA320C6A0409C0380E5D8A99D76EC6 ] C:\WINDOWS\system32\drivers\imapi.sys
14:59:16.0734 5108 C:\WINDOWS\system32\drivers\imapi.sys - ok
14:59:16.0734 5108 [ 50708DAA1B1CBB7D6AC1CF8F56A24410 ] C:\WINDOWS\system32\drivers\irenum.sys
14:59:16.0734 5108 C:\WINDOWS\system32\drivers\irenum.sys - ok
14:59:16.0750 5108 [ B160EC94114715675509115986400FD9 ] C:\WINDOWS\system32\drivers\mouclass.sys
14:59:16.0750 5108 C:\WINDOWS\system32\drivers\mouclass.sys - ok
14:59:16.0750 5108 [ 6216798D29C3BA9D0D6F40BBBAB694A5 ] C:\WINDOWS\system32\drivers\nscirda.sys
14:59:16.0750 5108 C:\WINDOWS\system32\drivers\nscirda.sys - ok
14:59:16.0765 5108 [ AF9C19B3100FE010496B1A27181FBF72 ] C:\WINDOWS\system32\drivers\cdrom.sys
14:59:16.0765 5108 C:\WINDOWS\system32\drivers\cdrom.sys - ok
14:59:16.0765 5108 [ E0C67BE430C6DE490D6CCAECFA071F9E ] C:\WINDOWS\system32\drivers\UBHelper.sys
14:59:16.0765 5108 C:\WINDOWS\system32\drivers\UBHelper.sys - ok
14:59:16.0765 5108 [ B9540E258F952650DE8DEC68719A5C97 ] C:\WINDOWS\system32\drivers\ks.sys
14:59:16.0765 5108 C:\WINDOWS\system32\drivers\ks.sys - ok
14:59:16.0781 5108 [ 7F1C1F78D709C4A54CBB46EDE7E0B48D ] C:\WINDOWS\system32\drivers\NTIDrvr.sys
14:59:16.0781 5108 C:\WINDOWS\system32\drivers\NTIDrvr.sys - ok
14:59:16.0781 5108 [ ABA13D33E1F888C9A68599A48A8840D6 ] C:\WINDOWS\system32\drivers\redbook.sys
14:59:16.0781 5108 C:\WINDOWS\system32\drivers\redbook.sys - ok
14:59:16.0781 5108 [ D9F724AA26C010A217C97606B160ED68 ] C:\WINDOWS\system32\drivers\audstub.sys
14:59:16.0781 5108 C:\WINDOWS\system32\drivers\audstub.sys - ok
14:59:16.0796 5108 [ 8BE661C16FBF84A73BCEC84B6B4A9DB5 ] C:\WINDOWS\system32\drivers\avgfwdx.sys
14:59:16.0796 5108 C:\WINDOWS\system32\drivers\avgfwdx.sys - ok
14:59:16.0796 5108 [ 885B6D0F826A216EEE4C3AD883809012 ] C:\WINDOWS\system32\drivers\btkrnl.sys
14:59:16.0796 5108 C:\WINDOWS\system32\drivers\btkrnl.sys - ok
14:59:16.0812 5108 [ 6891B74AB9A016064E82A419388D0601 ] C:\WINDOWS\system32\drivers\tdi.sys
14:59:16.0812 5108 C:\WINDOWS\system32\drivers\tdi.sys - ok
14:59:16.0812 5108 [ 08D43BBDACDF23F34D79E44ED35C1B4C ] C:\WINDOWS\system32\drivers\ndistapi.sys
14:59:16.0812 5108 C:\WINDOWS\system32\drivers\ndistapi.sys - ok
14:59:16.0812 5108 [ 0B90E255A9490166AB368CD55A529893 ] C:\WINDOWS\system32\drivers\ndiswan.sys
14:59:16.0812 5108 C:\WINDOWS\system32\drivers\ndiswan.sys - ok
14:59:16.0828 5108 [ 0207D26DDF796A193CCD9F83047BB5FC ] C:\WINDOWS\system32\drivers\rasirda.sys
14:59:16.0828 5108 C:\WINDOWS\system32\drivers\rasirda.sys - ok
14:59:16.0828 5108 [ 98FAEB4A4DCF812BA1C6FCA4AA3E115C ] C:\WINDOWS\system32\drivers\rasl2tp.sys
14:59:16.0828 5108 C:\WINDOWS\system32\drivers\rasl2tp.sys - ok
14:59:16.0828 5108 [ 7306EEED8895454CBED4669BE9F79FAA ] C:\WINDOWS\system32\drivers\raspppoe.sys
14:59:16.0828 5108 C:\WINDOWS\system32\drivers\raspppoe.sys - ok
14:59:16.0843 5108 [ C0F1D4A21DE5A415DF8170616703DEBF ] C:\WINDOWS\system32\drivers\msgpc.sys
14:59:16.0843 5108 C:\WINDOWS\system32\drivers\msgpc.sys - ok
14:59:16.0843 5108 [ 48671F327553DCF1D27F6197F622A668 ] C:\WINDOWS\system32\drivers\psched.sys
14:59:16.0843 5108 C:\WINDOWS\system32\drivers\psched.sys - ok
14:59:16.0859 5108 [ 1C5CC65AAC0783C344F16353E60B72AC ] C:\WINDOWS\system32\drivers\raspptp.sys
14:59:16.0859 5108 C:\WINDOWS\system32\drivers\raspptp.sys - ok
14:59:16.0859 5108 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] C:\WINDOWS\system32\drivers\ptilink.sys
14:59:16.0859 5108 C:\WINDOWS\system32\drivers\ptilink.sys - ok
14:59:16.0859 5108 [ FDBB1D60066FCFBB7452FD8F9829B242 ] C:\WINDOWS\system32\drivers\raspti.sys
14:59:16.0859 5108 C:\WINDOWS\system32\drivers\raspti.sys - ok
14:59:16.0875 5108 [ A2CAE2C60BC37E0751EF9DDA7CEAF4AD ] C:\WINDOWS\system32\drivers\rdpdr.sys
14:59:16.0875 5108 C:\WINDOWS\system32\drivers\rdpdr.sys - ok
14:59:16.0875 5108 [ 03C1BAE4766E2450219D20B993D6E046 ] C:\WINDOWS\system32\drivers\swenum.sys
14:59:16.0875 5108 C:\WINDOWS\system32\drivers\swenum.sys - ok
14:59:16.0875 5108 [ A540A99C281D933F3D69D55E48727F47 ] C:\WINDOWS\system32\drivers\termdd.sys
14:59:16.0875 5108 C:\WINDOWS\system32\drivers\termdd.sys - ok
14:59:16.0890 5108 [ CED744117E91BDC0BEB810F7D8608183 ] C:\WINDOWS\system32\drivers\update.sys
14:59:16.0890 5108 C:\WINDOWS\system32\drivers\update.sys - ok
14:59:16.0890 5108 [ 469541F8BFD2B32659D5D463A6714BCE ] C:\WINDOWS\system32\drivers\mssmbios.sys
14:59:16.0890 5108 C:\WINDOWS\system32\drivers\mssmbios.sys - ok
14:59:16.0906 5108 [ 58A49BD10E08D3D4333A60DEDCB1CED8 ] C:\WINDOWS\system32\drivers\btport.sys
14:59:16.0906 5108 C:\WINDOWS\system32\drivers\btport.sys - ok
14:59:16.0906 5108 [ FF86422268DE771D571E123EB7092C6A ] C:\WINDOWS\system32\drivers\drmk.sys
14:59:16.0906 5108 C:\WINDOWS\system32\drivers\drmk.sys - ok
14:59:16.0906 5108 [ BC6B2BC69C1E009443E8B1FE2DB96101 ] C:\WINDOWS\system32\drivers\portcls.sys
14:59:16.0906 5108 C:\WINDOWS\system32\drivers\portcls.sys - ok
14:59:16.0921 5108 [ ECDC40CC54603C711E1A7A1C9255184A ] C:\WINDOWS\system32\drivers\btaudio.sys
14:59:16.0921 5108 C:\WINDOWS\system32\drivers\btaudio.sys - ok
14:59:16.0921 5108 [ 59FC3FB44D2669BC144FD87826BB571F ] C:\WINDOWS\system32\drivers\ndproxy.sys
14:59:16.0921 5108 C:\WINDOWS\system32\drivers\ndproxy.sys - ok
14:59:16.0937 5108 [ ACE960E54148821E8E48F5D191562C28 ] C:\WINDOWS\system32\drivers\usbhub.sys
14:59:16.0937 5108 C:\WINDOWS\system32\drivers\usbhub.sys - ok
14:59:16.0937 5108 [ B45A576AD280DD4F605F58B24CDAAFE1 ] C:\WINDOWS\system32\drivers\RtkHDAud.sys
14:59:16.0937 5108 C:\WINDOWS\system32\drivers\RtkHDAud.sys - ok
14:59:16.0937 5108 [ 6A5C4732D6803F84E2987EDD8E4359CE ] C:\WINDOWS\system32\drivers\HSFHWAZL.sys
14:59:16.0937 5108 C:\WINDOWS\system32\drivers\HSFHWAZL.sys - ok
14:59:16.0953 5108 [ 21C31273C6CC4826E74BE8AE3B09D4A8 ] C:\WINDOWS\system32\drivers\HSF_DPV.sys
14:59:16.0953 5108 C:\WINDOWS\system32\drivers\HSF_DPV.sys - ok
14:59:16.0953 5108 [ 307D248F97835B6879BDD361086924FE ] C:\WINDOWS\system32\drivers\HSF_CNXT.sys
14:59:16.0953 5108 C:\WINDOWS\system32\drivers\HSF_CNXT.sys - ok
14:59:16.0953 5108 [ 60210DEB037846AFE521EBF349964F6B ] C:\WINDOWS\system32\drivers\modem.sys
14:59:16.0953 5108 C:\WINDOWS\system32\drivers\modem.sys - ok
14:59:16.0968 5108 [ CED2E8396A8838E59D8FD529C680E02C ] C:\WINDOWS\system32\drivers\fdc.sys
14:59:16.0968 5108 C:\WINDOWS\system32\drivers\fdc.sys - ok
14:59:16.0968 5108 [ CCDD61545AAEA265977E4B1EFDC74E8C ] C:\WINDOWS\system32\drivers\avgmfx86.sys
14:59:16.0968 5108 C:\WINDOWS\system32\drivers\avgmfx86.sys - ok
14:59:16.0984 5108 [ C1B486A7658353D33A10CC15211A873B ] C:\WINDOWS\system32\drivers\cdaudio.sys
14:59:16.0984 5108 C:\WINDOWS\system32\drivers\cdaudio.sys - ok
14:59:16.0984 5108 [ 0DD1DE43115B93F4D85E889D7A86F548 ] C:\WINDOWS\system32\drivers\flpydisk.sys
14:59:16.0984 5108 C:\WINDOWS\system32\drivers\flpydisk.sys - ok
14:59:16.0984 5108 [ 8F09F91B5C91363B77BCD15599570F2C ] C:\WINDOWS\system32\drivers\i2omgmt.sys
14:59:16.0984 5108 C:\WINDOWS\system32\drivers\i2omgmt.sys - ok
14:59:17.0000 5108 [ 0D13B6DF6E9E101013A7AFB0CE629FE0 ] C:\WINDOWS\system32\drivers\sfloppy.sys
14:59:17.0000 5108 C:\WINDOWS\system32\drivers\sfloppy.sys - ok
14:59:17.0000 5108 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] C:\WINDOWS\system32\drivers\fs_rec.sys
14:59:17.0000 5108 C:\WINDOWS\system32\drivers\fs_rec.sys - ok
14:59:17.0015 5108 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] C:\WINDOWS\system32\drivers\null.sys
14:59:17.0015 5108 C:\WINDOWS\system32\drivers\null.sys - ok
14:59:17.0015 5108 [ DA1F27D85E0D1525F6621372E7B685E9 ] C:\WINDOWS\system32\drivers\beep.sys
14:59:17.0031 5108 C:\WINDOWS\system32\drivers\beep.sys - ok
14:59:17.0031 5108 [ 8A60EDD72B4EA5AEA8202DAF0E427925 ] C:\WINDOWS\system32\drivers\vga.sys
14:59:17.0031 5108 C:\WINDOWS\system32\drivers\vga.sys - ok
14:59:17.0046 5108 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] C:\WINDOWS\system32\drivers\mnmdd.sys
14:59:17.0046 5108 C:\WINDOWS\system32\drivers\mnmdd.sys - ok
14:59:17.0046 5108 [ 4912D5B403614CE99C28420F75353332 ] C:\WINDOWS\system32\drivers\rdpcdd.sys
14:59:17.0046 5108 C:\WINDOWS\system32\drivers\rdpcdd.sys - ok
14:59:17.0062 5108 [ 561B3A4333CA2DBDBA28B5B956822519 ] C:\WINDOWS\system32\drivers\msfs.sys
14:59:17.0062 5108 C:\WINDOWS\system32\drivers\msfs.sys - ok
14:59:17.0062 5108 [ 64537AA5C003A6AFEEE1DF819062D0D1 ] C:\WINDOWS\system32\drivers\ipsec.sys
14:59:17.0062 5108 C:\WINDOWS\system32\drivers\ipsec.sys - ok
14:59:17.0078 5108 [ 4F601BCB8F64EA3AC0994F98FED03F8E ] C:\WINDOWS\system32\drivers\npfs.sys
14:59:17.0078 5108 C:\WINDOWS\system32\drivers\npfs.sys - ok
14:59:17.0078 5108 [ FE0D99D6F31E4FAD8159F690D68DED9C ] C:\WINDOWS\system32\drivers\rasacd.sys
14:59:17.0078 5108 C:\WINDOWS\system32\drivers\rasacd.sys - ok
14:59:17.0093 5108 [ 9F4B36614A0FC234525BA224957DE55C ] C:\WINDOWS\system32\drivers\tcpip.sys
14:59:17.0093 5108 C:\WINDOWS\system32\drivers\tcpip.sys - ok
14:59:17.0093 5108 [ 1263F2554ACE925C237A40B4C568D815 ] C:\WINDOWS\system32\drivers\avgtdix.sys
14:59:17.0093 5108 C:\WINDOWS\system32\drivers\avgtdix.sys - ok
14:59:17.0093 5108 [ B5A8E215AC29D24D60B4D1250EF05ACE ] C:\WINDOWS\system32\drivers\ipnat.sys
14:59:17.0093 5108 C:\WINDOWS\system32\drivers\ipnat.sys - ok
14:59:17.0109 5108 [ 0C80E410CD2F47134407EE7DD19CC86B ] C:\WINDOWS\system32\drivers\netbt.sys
14:59:17.0109 5108 C:\WINDOWS\system32\drivers\netbt.sys - ok
14:59:17.0109 5108 [ 5AC495F4CB807B2B98AD2AD591E6D92E ] C:\WINDOWS\system32\drivers\afd.sys
14:59:17.0109 5108 C:\WINDOWS\system32\drivers\afd.sys - ok
14:59:17.0125 5108 [ 3A2ACA8FC1D7786902CA434998D7CEB4 ] C:\WINDOWS\system32\drivers\netbios.sys
14:59:17.0125 5108 C:\WINDOWS\system32\drivers\netbios.sys - ok
14:59:17.0125 5108 [ 9A10E4FD13824823DA50D4758BD0A645 ] C:\WINDOWS\system32\drivers\processr.sys
14:59:17.0125 5108 C:\WINDOWS\system32\drivers\processr.sys - ok
14:59:17.0125 5108 [ 29D66245ADBA878FFF574CD66ABD2884 ] C:\WINDOWS\system32\drivers\rdbss.sys
14:59:17.0125 5108 C:\WINDOWS\system32\drivers\rdbss.sys - ok
14:59:17.0140 5108 [ 1FD607FC67F7F7C633C3DA65BFC53D18 ] C:\WINDOWS\system32\drivers\mrxsmb.sys
14:59:17.0140 5108 C:\WINDOWS\system32\drivers\mrxsmb.sys - ok
14:59:17.0140 5108 [ DDA6A2A18841E4C9172BB85958B8D948 ] C:\WINDOWS\system32\drivers\avgldx86.sys
14:59:17.0140 5108 C:\WINDOWS\system32\drivers\avgldx86.sys - ok
14:59:17.0140 5108 [ 266DAB58619B17BDF37FABBD48D875CA ] C:\WINDOWS\system32\drivers\fips.sys
14:59:17.0156 5108 C:\WINDOWS\system32\drivers\fips.sys - ok
14:59:17.0156 5108 [ D5DBD4BDB329C8CA55B925D721C1B42E ] C:\WINDOWS\system32\drivers\stream.sys
14:59:17.0156 5108 C:\WINDOWS\system32\drivers\stream.sys - ok
14:59:17.0156 5108 [ 0057F29323C393A35903B4C5DAF9A144 ] C:\WINDOWS\system32\drivers\sncduvc.sys
14:59:17.0156 5108 C:\WINDOWS\system32\drivers\sncduvc.sys - ok
14:59:17.0171 5108 [ 0302BC619D4A723317E7F8EB0C362BD3 ] C:\WINDOWS\system32\drivers\snp2uvc.sys
14:59:17.0171 5108 C:\WINDOWS\system32\drivers\snp2uvc.sys - ok
14:59:17.0171 5108 [ 984EF0B9788ABF89974CFED4BFBAACBC ] C:\WINDOWS\system32\drivers\wanarp.sys
14:59:17.0171 5108 C:\WINDOWS\system32\drivers\wanarp.sys - ok
14:59:17.0171 5108 [ 04B69D49D7FC3358A372E97DB6D39447 ] C:\WINDOWS\system32\smss.exe
14:59:17.0171 5108 C:\WINDOWS\system32\smss.exe - ok
14:59:17.0187 5108 [ 24B856F2FA9CBA678E067B398EAC1BED ] C:\WINDOWS\system32\ntdll.dll
14:59:17.0187 5108 C:\WINDOWS\system32\ntdll.dll - ok
14:59:17.0187 5108 [ CEA8636EC12F062C1ED8A7CB4E75324F ] C:\WINDOWS\system32\autochk.exe
14:59:17.0187 5108 C:\WINDOWS\system32\autochk.exe - ok
14:59:17.0187 5108 [ 3117F595E9615E04F05A54FC15A03B20 ] C:\WINDOWS\system32\drivers\fastfat.sys
14:59:17.0187 5108 C:\WINDOWS\system32\drivers\fastfat.sys - ok
14:59:17.0203 5108 [ AE679416B37D9712E14D895CA35E8681 ] C:\PROGRA~1\AVG\AVG2012\avgrsx.exe
14:59:17.0203 5108 C:\PROGRA~1\AVG\AVG2012\avgrsx.exe - ok
14:59:17.0203 5108 [ 93312F83FD4D5C38CEE8AA1265C061EE ] C:\Program Files\AVG\AVG2012\avgsysx.dll
14:59:17.0203 5108 C:\Program Files\AVG\AVG2012\avgsysx.dll - ok
14:59:17.0218 5108 [ 91DC97F9DA3E2B59049D410870935C78 ] C:\Program Files\AVG\AVG2012\avgntopensslx.dll
14:59:17.0218 5108 C:\Program Files\AVG\AVG2012\avgntopensslx.dll - ok
14:59:17.0218 5108 [ 25CD97F030AE70AF458FF6AB0B7E9B2E ] C:\Program Files\AVG\AVG2012\avglogx.dll
14:59:17.0218 5108 C:\Program Files\AVG\AVG2012\avglogx.dll - ok
14:59:17.0218 5108 [ CD7D5152DF32B47F4E36F710B35AAE02 ] C:\WINDOWS\system32\drivers\cdfs.sys
14:59:17.0218 5108 C:\WINDOWS\system32\drivers\cdfs.sys - ok
14:59:17.0234 5108 [ 465B379791643F69B77A3B67708C5B55 ] C:\WINDOWS\system32\btwicons.dll
14:59:17.0234 5108 C:\WINDOWS\system32\btwicons.dll - ok
14:59:17.0234 5108 [ 029A8C889519E38198E21B1574ADCE0D ] C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
14:59:17.0234 5108 C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe - ok
14:59:17.0234 5108 [ 376EC4615F3DB21F1D5A99E7A73EE232 ] C:\WINDOWS\system32\WidcommSdk.dll
14:59:17.0234 5108 C:\WINDOWS\system32\WidcommSdk.dll - ok
14:59:17.0250 5108 [ B653949DB738EFD1C9F873D22C64039B ] C:\WINDOWS\system32\bthcrp.dll
14:59:17.0250 5108 C:\WINDOWS\system32\bthcrp.dll - ok
14:59:17.0250 5108 [ 50612D80EFDCEC2B5D60096CC96341DD ] C:\WINDOWS\system32\btosif.dll
14:59:17.0250 5108 C:\WINDOWS\system32\btosif.dll - ok
14:59:17.0250 5108 [ 03C7B71249B08CE1F0392B75DF9BF53B ] C:\WINDOWS\system32\wbtapi.dll
14:59:17.0250 5108 C:\WINDOWS\system32\wbtapi.dll - ok
14:59:17.0265 5108 [ A9247F3336AAA9D59AD90CB84E72FDBE ] C:\Program Files\WIDCOMM\Bluetooth Software\BTKeyInd.dll
14:59:17.0265 5108 C:\Program Files\WIDCOMM\Bluetooth Software\BTKeyInd.dll - ok
14:59:17.0265 5108 [ 836F7960362FF95C5D49E40B891F2CFC ] C:\WINDOWS\system32\userinit.exe
14:59:17.0265 5108 C:\WINDOWS\system32\userinit.exe - ok
14:59:17.0281 5108 [ F182F6A041747F5AEE9FDF16A849B789 ] C:\WINDOWS\ime\imkr6_1\imekrcic.dll
14:59:17.0281 5108 C:\WINDOWS\ime\imkr6_1\imekrcic.dll - ok
14:59:17.0281 5108 [ 8A85ECD269DAE8EDF134FA0341688198 ] C:\WINDOWS\ime\SPTIP.dll

Re: Trojský kůň PSW.Agent a Generic27.AKPW

Napsal: 23 srp 2012 14:04
od Spid3r
14:59:17.0281 5108 C:\WINDOWS\ime\SPTIP.dll - ok
14:59:17.0281 5108 [ 59E54C2697C0B4C127D44D19D41BF2BC ] C:\WINDOWS\system32\davclnt.dll
14:59:17.0281 5108 C:\WINDOWS\system32\davclnt.dll - ok
14:59:17.0296 5108 [ A5BAA91475167161DEA02BA3C4CA4F59 ] C:\WINDOWS\system32\ctfmon.exe
14:59:17.0296 5108 C:\WINDOWS\system32\ctfmon.exe - ok
14:59:17.0296 5108 [ 1BCD6FD806FAE40FD37BA88D1DA1367C ] C:\WINDOWS\system32\drprov.dll
14:59:17.0296 5108 C:\WINDOWS\system32\drprov.dll - ok
14:59:17.0296 5108 [ 3A9462110C8E6FDAB54A367681D06C80 ] C:\WINDOWS\system32\fxsmon.dll
14:59:17.0296 5108 C:\WINDOWS\system32\fxsmon.dll - ok
14:59:17.0312 5108 [ 8066FF5677DC47B4AF5C677F88E6322E ] C:\WINDOWS\system32\netrap.dll
14:59:17.0312 5108 C:\WINDOWS\system32\netrap.dll - ok
14:59:17.0312 5108 [ E02B3193F8978F5A891448F712EB0089 ] C:\WINDOWS\system32\msls31.dll
14:59:17.0312 5108 C:\WINDOWS\system32\msls31.dll - ok
14:59:17.0328 5108 [ F77883F3FBAF4FFD6852075EE7C0E416 ] C:\WINDOWS\system32\ntlanman.dll
14:59:17.0328 5108 C:\WINDOWS\system32\ntlanman.dll - ok
14:59:17.0328 5108 [ 7A5A1E5E9A41E8E3CBDE7EEB672A0CC0 ] C:\WINDOWS\system32\atmfd.dll
14:59:17.0328 5108 C:\WINDOWS\system32\atmfd.dll - ok
14:59:17.0328 5108 [ 01A5E45D38D52E4076D67D3B00EAE2FB ] C:\WINDOWS\system32\pstorec.dll
14:59:17.0328 5108 C:\WINDOWS\system32\pstorec.dll - ok
14:59:17.0343 5108 [ 05E04940BB3693CD7692D76DA546375E ] C:\WINDOWS\system32\cnbjmon.dll
14:59:17.0343 5108 C:\WINDOWS\system32\cnbjmon.dll - ok
14:59:17.0343 5108 [ 972378B907070F64932A87C90A035487 ] C:\WINDOWS\system32\es.dll
14:59:17.0343 5108 C:\WINDOWS\system32\es.dll - ok
14:59:17.0343 5108 [ 6E894867B991EC9579E1A52F0A7F5644 ] C:\WINDOWS\system32\mshtml.dll
14:59:17.0343 5108 C:\WINDOWS\system32\mshtml.dll - ok
14:59:17.0359 5108 [ 20C4F62F5FEFC0ADB0AD54CEACF3CE41 ] C:\WINDOWS\system32\fxsevent.dll
14:59:17.0359 5108 C:\WINDOWS\system32\fxsevent.dll - ok
14:59:17.0359 5108 [ 6AFAD3B0576473578A221C54CACE7822 ] C:\WINDOWS\system32\pjlmon.dll
14:59:17.0359 5108 C:\WINDOWS\system32\pjlmon.dll - ok
14:59:17.0375 5108 [ 763DE5266639C75550706299A8E3047B ] C:\WINDOWS\system32\inetpp.dll
14:59:17.0375 5108 C:\WINDOWS\system32\inetpp.dll - ok
14:59:17.0375 5108 [ 1C9152391A88F590A659E08617E69AA6 ] C:\WINDOWS\system32\jscript.dll
14:59:17.0375 5108 C:\WINDOWS\system32\jscript.dll - ok
14:59:17.0375 5108 [ 4293F5F4A7405D7D8A5D428855C9C274 ] C:\WINDOWS\system32\localspl.dll
14:59:17.0375 5108 C:\WINDOWS\system32\localspl.dll - ok
14:59:17.0390 5108 [ B04DB1F0B2652FCBCCC5FD0C46579F0F ] C:\WINDOWS\system32\mscoree.dll
14:59:17.0390 5108 C:\WINDOWS\system32\mscoree.dll - ok
14:59:17.0390 5108 [ 2E70B299CF9732C1A66F2403BBF3539B ] C:\WINDOWS\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfcm90u.dll
14:59:17.0390 5108 C:\WINDOWS\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfcm90u.dll - ok
14:59:17.0406 5108 [ C23A84D7AB99678B2F1A52080280E4ED ] C:\WINDOWS\system32\kernel32.dll
14:59:17.0406 5108 C:\WINDOWS\system32\kernel32.dll - ok
14:59:17.0406 5108 [ 8D1FDFF78416067041FC66D2010C3B11 ] C:\WINDOWS\system32\msvfw32.dll
14:59:17.0406 5108 C:\WINDOWS\system32\msvfw32.dll - ok
14:59:17.0421 5108 [ 7B5E0A4CD56E0288CA380B02BE626C1B ] C:\WINDOWS\system32\netui0.dll
14:59:17.0421 5108 C:\WINDOWS\system32\netui0.dll - ok
14:59:17.0421 5108 [ 88F382E821FA0DABEBF6663D6C0758F6 ] C:\WINDOWS\system32\netui1.dll
14:59:17.0421 5108 C:\WINDOWS\system32\netui1.dll - ok
14:59:17.0421 5108 [ 2E4CD086D04A29036FA12BE4A693F7BF ] C:\WINDOWS\system32\spoolss.dll
14:59:17.0421 5108 C:\WINDOWS\system32\spoolss.dll - ok
14:59:17.0437 5108 [ F1D1C9378F85ED346C10AD497ADA9C7A ] C:\WINDOWS\system32\wshcs.dll
14:59:17.0437 5108 C:\WINDOWS\system32\wshcs.dll - ok
14:59:17.0437 5108 [ 9545B3CFEEEEBE726F8BAD19480AF259 ] C:\WINDOWS\system32\tcpmon.dll
14:59:17.0437 5108 C:\WINDOWS\system32\tcpmon.dll - ok
14:59:17.0437 5108 [ 656664ED49DE7A43855E16818A711CEF ] C:\WINDOWS\system32\wshext.dll
14:59:17.0437 5108 C:\WINDOWS\system32\wshext.dll - ok
14:59:17.0453 5108 [ A92E91A5B245E4C7A808C0A1DE4233CD ] C:\WINDOWS\system32\usbmon.dll
14:59:17.0453 5108 C:\WINDOWS\system32\usbmon.dll - ok
14:59:17.0453 5108 [ 02971C5A9E4CCD508CCF4533EAC9C3D0 ] C:\WINDOWS\system32\win32spl.dll
14:59:17.0453 5108 C:\WINDOWS\system32\win32spl.dll - ok
14:59:17.0453 5108 [ BB1CD0F02F1C752C810D5B66FD96AC7A ] C:\WINDOWS\system32\BtMmHook.dll
14:59:17.0453 5108 C:\WINDOWS\system32\BtMmHook.dll - ok
14:59:17.0468 5108 [ AC52E0E1FCBA1C276725F73A55CD8AE5 ] C:\WINDOWS\system32\btrez.dll
14:59:17.0468 5108 C:\WINDOWS\system32\btrez.dll - ok
14:59:17.0468 5108 [ 6005D67F3CCDE118DB2224C90D7C5AFD ] C:\WINDOWS\system32\btwhidcs.dll
14:59:17.0468 5108 C:\WINDOWS\system32\btwhidcs.dll - ok
14:59:17.0484 5108 [ B9B3F6D8B8F1E0029C58B304632A729B ] C:\WINDOWS\system32\msonpmon.dll
14:59:17.0484 5108 C:\WINDOWS\system32\msonpmon.dll - ok
14:59:17.0484 5108 [ 00000000000000000000000000000000 ] C:\Documents and Settings\Ing. Karel Mikeš\Plocha\avast_free_antivirus_setup.exe
14:59:17.0484 5108 C:\Documents and Settings\Ing. Karel Mikeš\Plocha\avast_free_antivirus_setup.exe - ok
14:59:17.0484 5108 [ F348280907B38FDBDB3CEF55D456E149 ] C:\WINDOWS\system32\spool\prtprocs\w32x86\msonpppr.dll
14:59:17.0484 5108 C:\WINDOWS\system32\spool\prtprocs\w32x86\msonpppr.dll - ok
14:59:17.0500 5108 [ E0EC2A613A3B94BE87041F283FAB772F ] C:\WINDOWS\system32\ntoskrnl.exe
14:59:17.0500 5108 C:\WINDOWS\system32\ntoskrnl.exe - ok
14:59:17.0500 5108 [ 5CA2E2BA624D6F2C7A581C91E70394CB ] C:\WINDOWS\system32\sfcfiles.dll
14:59:17.0500 5108 C:\WINDOWS\system32\sfcfiles.dll - ok
14:59:17.0500 5108 [ 0CDC4A0C6B820FAD99FB4CA74CD0C476 ] C:\WINDOWS\system32\advapi32.dll
14:59:17.0500 5108 C:\WINDOWS\system32\advapi32.dll - ok
14:59:17.0515 5108 [ 31C8F1D88871132DACA8262CC30E3DDC ] C:\WINDOWS\system32\comdlg32.dll
14:59:17.0515 5108 C:\WINDOWS\system32\comdlg32.dll - ok
14:59:17.0515 5108 [ DDA5B86B77DE46BBE829B03A2AF5C2E9 ] C:\WINDOWS\system32\gdi32.dll
14:59:17.0515 5108 C:\WINDOWS\system32\gdi32.dll - ok
14:59:17.0531 5108 [ 1063D8D06835AAC0360BF6FC82D53E26 ] C:\WINDOWS\system32\imagehlp.dll
14:59:17.0531 5108 C:\WINDOWS\system32\imagehlp.dll - ok
14:59:17.0531 5108 [ 464325F6C822FD26A44E54E0DC9F144F ] C:\WINDOWS\system32\lz32.dll
14:59:17.0531 5108 C:\WINDOWS\system32\lz32.dll - ok
14:59:17.0531 5108 [ 7FE54C063DDA8EF226846510852E6B1B ] C:\WINDOWS\system32\ole32.dll
14:59:17.0531 5108 C:\WINDOWS\system32\ole32.dll - ok
14:59:17.0546 5108 [ DB6130116362BC1EF5CE70DEFFA92CAC ] C:\WINDOWS\system32\oleaut32.dll
14:59:17.0546 5108 C:\WINDOWS\system32\oleaut32.dll - ok
14:59:17.0546 5108 [ 096860F57EF5291B909A2BA55051B489 ] C:\WINDOWS\system32\olecli32.dll
14:59:17.0546 5108 C:\WINDOWS\system32\olecli32.dll - ok
14:59:17.0562 5108 [ CCB46059673ED22D8ECF74C086003E98 ] C:\WINDOWS\system32\olecnv32.dll
14:59:17.0562 5108 C:\WINDOWS\system32\olecnv32.dll - ok
14:59:17.0562 5108 [ 7AA979318F9F59EC3F9C04043210B6DE ] C:\WINDOWS\system32\olesvr32.dll
14:59:17.0562 5108 C:\WINDOWS\system32\olesvr32.dll - ok
14:59:17.0562 5108 [ E1C61CEA7B8C70DCB0B8E83E4A86524B ] C:\WINDOWS\system32\olethk32.dll
14:59:17.0562 5108 C:\WINDOWS\system32\olethk32.dll - ok
14:59:17.0578 5108 [ F0DC396DE971A9A23C780DD8D0EFBF1A ] C:\WINDOWS\system32\rpcrt4.dll
14:59:17.0578 5108 C:\WINDOWS\system32\rpcrt4.dll - ok
14:59:17.0578 5108 [ AA69A61B70E6116DB6DCD4DCE6FB5A83 ] C:\WINDOWS\system32\shell32.dll
14:59:17.0578 5108 C:\WINDOWS\system32\shell32.dll - ok
14:59:17.0578 5108 [ 2693986EA694ACC77C65D6EE853002F9 ] C:\WINDOWS\system32\url.dll
14:59:17.0578 5108 C:\WINDOWS\system32\url.dll - ok
14:59:17.0593 5108 [ 24AAB1232CD361FC43D5D2AF3EE4D901 ] C:\WINDOWS\system32\urlmon.dll
14:59:17.0593 5108 C:\WINDOWS\system32\urlmon.dll - ok
14:59:17.0593 5108 [ 43240B12D220F30C7C75EA69B2E806B0 ] C:\WINDOWS\system32\user32.dll
14:59:17.0593 5108 C:\WINDOWS\system32\user32.dll - ok
14:59:17.0609 5108 [ E472BDA53A4DCD2142143AF9FD25C99A ] C:\WINDOWS\system32\version.dll
14:59:17.0609 5108 C:\WINDOWS\system32\version.dll - ok
14:59:17.0609 5108 [ 5A3872496FB8BAA611F1174B56C8D627 ] C:\WINDOWS\system32\wininet.dll
14:59:17.0609 5108 C:\WINDOWS\system32\wininet.dll - ok
14:59:17.0609 5108 [ 86FD541EA30251ADCA771251C49EF0E4 ] C:\WINDOWS\system32\wldap32.dll
14:59:17.0609 5108 C:\WINDOWS\system32\wldap32.dll - ok
14:59:17.0625 5108 [ 876C658C44F2BF4AF050E5534A9F066F ] C:\WINDOWS\system32\comctl32.dll
14:59:17.0625 5108 C:\WINDOWS\system32\comctl32.dll - ok
14:59:17.0625 5108 [ 9B3607CC966E245D66D5F7AEEEB120B3 ] C:\WINDOWS\system32\shlwapi.dll
14:59:17.0625 5108 C:\WINDOWS\system32\shlwapi.dll - ok
14:59:17.0640 5108 [ 91CC3E4CCDBBF8E224182C76C87E454F ] C:\WINDOWS\system32\msvcrt.dll
14:59:17.0640 5108 C:\WINDOWS\system32\msvcrt.dll - ok
14:59:17.0640 5108 [ 47F5733A51EECC78F9B2DA3F9EE6D8B7 ] C:\WINDOWS\system32\mpr.dll
14:59:17.0640 5108 C:\WINDOWS\system32\mpr.dll - ok
14:59:17.0640 5108 [ B331B952A1F0220D4826BC0DFB3D800B ] C:\WINDOWS\system32\ntvdm.exe
14:59:17.0640 5108 C:\WINDOWS\system32\ntvdm.exe - ok
14:59:17.0656 5108 [ 359F1E3793C8AA947601C0B5A167851C ] C:\WINDOWS\system32\shdocvw.dll
14:59:17.0656 5108 C:\WINDOWS\system32\shdocvw.dll - ok
14:59:17.0656 5108 [ 525B15EC81CC0E73D0AC6C4F8C94A743 ] C:\WINDOWS\system32\wow32.dll
14:59:17.0656 5108 C:\WINDOWS\system32\wow32.dll - ok
14:59:17.0656 5108 [ 6BDB36E60A2514A5A1927BDECAA9911E ] C:\WINDOWS\system32\crypt32.dll
14:59:17.0656 5108 C:\WINDOWS\system32\crypt32.dll - ok
14:59:17.0671 5108 [ DE58BE5500A9105127F3995C8C30F547 ] C:\WINDOWS\system32\apphelp.dll
14:59:17.0671 5108 C:\WINDOWS\system32\apphelp.dll - ok
14:59:17.0671 5108 [ 618B52C1DAABAF5A738B532C3858B14A ] C:\WINDOWS\system32\userenv.dll
14:59:17.0671 5108 C:\WINDOWS\system32\userenv.dll - ok
14:59:17.0687 5108 [ 1AC3D5212669F95800E8BE8BF2408E0E ] C:\WINDOWS\system32\cryptui.dll
14:59:17.0687 5108 C:\WINDOWS\system32\cryptui.dll - ok
14:59:17.0687 5108 [ 6EEBFFB5C24C88863A509533D9E25525 ] C:\WINDOWS\system32\msasn1.dll
14:59:17.0687 5108 C:\WINDOWS\system32\msasn1.dll - ok
14:59:17.0687 5108 [ 50A18E377DE034C4B6FBD5233B603794 ] C:\WINDOWS\system32\netapi32.dll
14:59:17.0687 5108 C:\WINDOWS\system32\netapi32.dll - ok
14:59:17.0703 5108 [ D1F434EA13285D09C82140BF39D9FE78 ] C:\WINDOWS\system32\wintrust.dll
14:59:17.0703 5108 C:\WINDOWS\system32\wintrust.dll - ok
14:59:17.0703 5108 [ F642F3368D2839798DA79E7BA9218481 ] C:\WINDOWS\system32\basesrv.dll
14:59:17.0703 5108 C:\WINDOWS\system32\basesrv.dll - ok
14:59:17.0703 5108 [ ED0BB61F31DA099F6ABD48025156601B ] C:\WINDOWS\system32\csrsrv.dll
14:59:17.0703 5108 C:\WINDOWS\system32\csrsrv.dll - ok
14:59:17.0718 5108 [ 490E6E57E54FAF5F23F658EA188405A1 ] C:\WINDOWS\system32\csrss.exe
14:59:17.0718 5108 C:\WINDOWS\system32\csrss.exe - ok
14:59:17.0718 5108 [ 5869828D4A83BA8F9519630C40044C87 ] C:\WINDOWS\system32\winsrv.dll
14:59:17.0718 5108 C:\WINDOWS\system32\winsrv.dll - ok
14:59:17.0718 5108 [ BFE8DC7AAE7CB1C86243D77B340DC304 ] C:\WINDOWS\system32\lpk.dll
14:59:17.0718 5108 C:\WINDOWS\system32\lpk.dll - ok
14:59:17.0734 5108 [ 55765F2465DF04C8C83D81EF056039E1 ] C:\WINDOWS\system32\ntkrnlpa.exe
14:59:17.0734 5108 C:\WINDOWS\system32\ntkrnlpa.exe - ok
14:59:17.0734 5108 [ E28340F6CB7BAC3EACDA9C74A0BE42BE ] C:\WINDOWS\system32\usp10.dll
14:59:17.0734 5108 C:\WINDOWS\system32\usp10.dll - ok
14:59:17.0734 5108 [ CCB5449E9BF1BA2B2CB7D0A0C7E34E65 ] C:\WINDOWS\system32\HdAProp.dll
14:59:17.0734 5108 C:\WINDOWS\system32\HdAProp.dll - ok
14:59:17.0750 5108 [ 9C3B2302B60FB0EFB13BC880A5E3E93E ] C:\WINDOWS\system32\HdAShCut.exe
14:59:17.0750 5108 C:\WINDOWS\system32\HdAShCut.exe - ok
14:59:17.0750 5108 [ 25FA7A6A8E081EAC69CABFD13297A5D0 ] C:\WINDOWS\system32\HdAudRes.dll
14:59:17.0750 5108 C:\WINDOWS\system32\HdAudRes.dll - ok
14:59:17.0765 5108 [ 076E94A766345C4518C587F481F2EA37 ] C:\WINDOWS\system32\sqlncli.dll
14:59:17.0765 5108 C:\WINDOWS\system32\sqlncli.dll - ok
14:59:17.0765 5108 [ C686934B723A49E4ADCCC66254D4BB3B ] C:\WINDOWS\system32\nddeapi.dll
14:59:17.0765 5108 C:\WINDOWS\system32\nddeapi.dll - ok
14:59:17.0765 5108 [ 354B33931AA885C40F80EB75302E1B8F ] C:\WINDOWS\system32\profmap.dll
14:59:17.0765 5108 C:\WINDOWS\system32\profmap.dll - ok
14:59:17.0781 5108 [ FBF21330B53F92C17F4FF5F7B0C23BDB ] C:\WINDOWS\system32\psapi.dll
14:59:17.0781 5108 C:\WINDOWS\system32\psapi.dll - ok
14:59:17.0781 5108 [ A8330491A4DF77B0AF39F9AE78B0347D ] C:\WINDOWS\system32\regapi.dll
14:59:17.0781 5108 C:\WINDOWS\system32\regapi.dll - ok
14:59:17.0781 5108 [ 7BC93F007B9E095A35B20BEC5EEE86C0 ] C:\WINDOWS\system32\secur32.dll
14:59:17.0781 5108 C:\WINDOWS\system32\secur32.dll - ok
14:59:17.0796 5108 [ 16DBA3C4C38B72AE88F3E7A6B4BF82F1 ] C:\WINDOWS\system32\setupapi.dll
14:59:17.0796 5108 C:\WINDOWS\system32\setupapi.dll - ok
14:59:17.0812 5108 [ 2413635113361E54B62F0C40E4E4DAE6 ] C:\WINDOWS\system32\imm32.dll
14:59:17.0812 5108 C:\WINDOWS\system32\imm32.dll - ok
14:59:17.0812 5108 [ DCF3ABC0EF6493A8931F3FBFFF410FC8 ] C:\WINDOWS\system32\winsta.dll
14:59:17.0812 5108 C:\WINDOWS\system32\winsta.dll - ok
14:59:17.0812 5108 [ C2B86666FC44B48903AD6016D15A23DF ] C:\WINDOWS\system32\ws2help.dll
14:59:17.0812 5108 C:\WINDOWS\system32\ws2help.dll - ok
14:59:17.0828 5108 [ 382E9B87F1282E697C67AF84E34E35E2 ] C:\WINDOWS\system32\ws2_32.dll
14:59:17.0828 5108 C:\WINDOWS\system32\ws2_32.dll - ok
14:59:17.0828 5108 [ 36E68E02AF2206FC4A8C73CAEABE1FB0 ] C:\WINDOWS\system32\kbdcz.dll
14:59:17.0828 5108 C:\WINDOWS\system32\kbdcz.dll - ok
14:59:17.0828 5108 [ 56C5B179FE3308B655EB6208C3256FEC ] C:\WINDOWS\system32\kbdus.dll
14:59:17.0828 5108 C:\WINDOWS\system32\kbdus.dll - ok
14:59:17.0843 5108 [ 1FC0A99C167479B04325861ACAD465F8 ] C:\WINDOWS\system32\msgina.dll
14:59:17.0843 5108 C:\WINDOWS\system32\msgina.dll - ok
14:59:17.0843 5108 [ 99DBD95B8EB2CB87C21F17D59F2215BA ] C:\WINDOWS\system32\odbc32.dll
14:59:17.0843 5108 C:\WINDOWS\system32\odbc32.dll - ok
14:59:17.0859 5108 [ 5D63F6807E4948750B52F8D82B5C5514 ] C:\WINDOWS\system32\sxs.dll
14:59:17.0859 5108 C:\WINDOWS\system32\sxs.dll - ok
14:59:17.0859 5108 [ 82CDCB14C304B458529A05BB6C803B45 ] C:\WINDOWS\system32\odbcint.dll
14:59:17.0859 5108 C:\WINDOWS\system32\odbcint.dll - ok
14:59:17.0875 5108 [ 6E401E61F952FBBF708AFBECEFAFAE81 ] C:\WINDOWS\system32\services.exe
14:59:17.0875 5108 C:\WINDOWS\system32\services.exe - ok
14:59:17.0875 5108 [ 6CC2D21488333133AE0C9F44F6051CB7 ] C:\WINDOWS\system32\sfc.dll
14:59:17.0875 5108 C:\WINDOWS\system32\sfc.dll - ok
14:59:17.0890 5108 [ E9AF00964DA9B8838E850F12229DF9A4 ] C:\WINDOWS\system32\sfc_os.dll
14:59:17.0890 5108 C:\WINDOWS\system32\sfc_os.dll - ok
14:59:17.0890 5108 [ 8BA76BD2A943F642F267A296A15776D2 ] C:\WINDOWS\system32\shsvcs.dll
14:59:17.0890 5108 C:\WINDOWS\system32\shsvcs.dll - ok
14:59:17.0890 5108 [ 82A362FE1D4980B71B588D9C10748511 ] C:\WINDOWS\system32\lsass.exe
14:59:17.0890 5108 C:\WINDOWS\system32\lsass.exe - ok
14:59:17.0906 5108 [ 9AB820D13F6D6391E04EA0DF572893F6 ] C:\WINDOWS\system32\scesrv.dll
14:59:17.0906 5108 C:\WINDOWS\system32\scesrv.dll - ok
14:59:17.0906 5108 [ A39EBFD9BBE21A060B7F01997D955924 ] C:\WINDOWS\system32\umpnpmgr.dll
14:59:17.0906 5108 C:\WINDOWS\system32\umpnpmgr.dll - ok
14:59:17.0906 5108 [ 527FC50CCB2FD088A458C69134A5A1FF ] C:\WINDOWS\system32\lsasrv.dll
14:59:17.0906 5108 C:\WINDOWS\system32\lsasrv.dll - ok
14:59:17.0921 5108 [ 247A0EA0C4C2A5A10D98A604CB736ABC ] C:\WINDOWS\system32\ncobjapi.dll
14:59:17.0921 5108 C:\WINDOWS\system32\ncobjapi.dll - ok
14:59:17.0921 5108 [ 90B7EA55552782AE944E1212BFCB82ED ] C:\WINDOWS\system32\samsrv.dll
14:59:17.0921 5108 C:\WINDOWS\system32\samsrv.dll - ok
14:59:17.0937 5108 [ 5056AA8BB37FEAAA3D46F388FEE083AF ] C:\WINDOWS\AppPatch\AcGenral.dll
14:59:17.0937 5108 C:\WINDOWS\AppPatch\AcGenral.dll - ok
14:59:17.0937 5108 [ FE8E85A1D8F080C5901DD6FE102E675F ] C:\WINDOWS\system32\cryptdll.dll
14:59:17.0937 5108 C:\WINDOWS\system32\cryptdll.dll - ok
14:59:17.0953 5108 [ 3313C68CF5B43DCA01509773B6B43DEF ] C:\WINDOWS\system32\msvcp60.dll
14:59:17.0953 5108 C:\WINDOWS\system32\msvcp60.dll - ok
14:59:17.0953 5108 [ 64427059B1811EFD9FAF0A4749D8C96A ] C:\WINDOWS\system32\shimeng.dll
14:59:17.0953 5108 C:\WINDOWS\system32\shimeng.dll - ok
14:59:17.0953 5108 [ CAEFC013964F57072B8096187419D6C0 ] C:\WINDOWS\system32\dnsapi.dll
14:59:17.0953 5108 C:\WINDOWS\system32\dnsapi.dll - ok
14:59:17.0968 5108 [ 2A88F0CBCA405859D5282D0C86311FD7 ] C:\WINDOWS\system32\msacm32.dll
14:59:17.0968 5108 C:\WINDOWS\system32\msacm32.dll - ok
14:59:17.0968 5108 [ 9630BD8135940FF6DAEA76472C06178C ] C:\WINDOWS\system32\ntdsapi.dll
14:59:17.0968 5108 C:\WINDOWS\system32\ntdsapi.dll - ok
14:59:17.0968 5108 [ 55C37415668D1F46AAC7617D7ECE35ED ] C:\WINDOWS\system32\samlib.dll
14:59:17.0968 5108 C:\WINDOWS\system32\samlib.dll - ok
14:59:17.0984 5108 [ 0D3C98F2D11978D67DD4102471CFBFAC ] C:\WINDOWS\system32\uxtheme.dll
14:59:17.0984 5108 C:\WINDOWS\system32\uxtheme.dll - ok
14:59:17.0984 5108 [ 4B9FDD69AE4FD774E5F2F70C2BC540ED ] C:\WINDOWS\system32\winmm.dll
14:59:17.0984 5108 C:\WINDOWS\system32\winmm.dll - ok
14:59:17.0984 5108 [ A6E01C674DF87BA767F6D72873F9C9F5 ] C:\WINDOWS\system32\kerberos.dll
14:59:17.0984 5108 C:\WINDOWS\system32\kerberos.dll - ok
14:59:18.0000 5108 [ 4F3348D753FC2C6D46300F65D77B840B ] C:\WINDOWS\system32\msprivs.dll
14:59:18.0000 5108 C:\WINDOWS\system32\msprivs.dll - ok
14:59:18.0000 5108 [ 8C3B94EE342503E871E0C0F72C376AF0 ] C:\WINDOWS\system32\msv1_0.dll
14:59:18.0000 5108 C:\WINDOWS\system32\msv1_0.dll - ok
14:59:18.0015 5108 [ D034F835F083D1F20CAFB63CFB15EF02 ] C:\WINDOWS\system32\schannel.dll
14:59:18.0015 5108 C:\WINDOWS\system32\schannel.dll - ok
14:59:18.0015 5108 [ 43CDE44202CFEFC9A1D4B39200617CD6 ] C:\WINDOWS\system32\iphlpapi.dll
14:59:18.0015 5108 C:\WINDOWS\system32\iphlpapi.dll - ok
14:59:18.0015 5108 [ 2591CADAEF7D2242039255028E577688 ] C:\WINDOWS\system32\netlogon.dll
14:59:18.0015 5108 C:\WINDOWS\system32\netlogon.dll - ok
14:59:18.0031 5108 [ 26ACBD865F8CFF730F1791C4D0854352 ] C:\WINDOWS\system32\rsaenh.dll
14:59:18.0031 5108 C:\WINDOWS\system32\rsaenh.dll - ok
14:59:18.0031 5108 [ 07119058D451CB7EA4317BCFDA8599A6 ] C:\WINDOWS\system32\scecli.dll
14:59:18.0031 5108 C:\WINDOWS\system32\scecli.dll - ok
14:59:18.0031 5108 [ 2CEEBB402187AE56B585701F3D191FB3 ] C:\WINDOWS\system32\w32time.dll
14:59:18.0031 5108 C:\WINDOWS\system32\w32time.dll - ok
14:59:18.0046 5108 [ 36A876E71D71EC0DD06CBD53E744C2B4 ] C:\WINDOWS\system32\wdigest.dll
14:59:18.0046 5108 C:\WINDOWS\system32\wdigest.dll - ok
14:59:18.0046 5108 [ B79F1AB8754DD2CCF24A716005637C6D ] C:\WINDOWS\system32\wtsapi32.dll
14:59:18.0046 5108 C:\WINDOWS\system32\wtsapi32.dll - ok
14:59:18.0046 5108 [ 62479909FC474E4AFB57741F3FF3F39D ] C:\WINDOWS\system32\ntmarta.dll
14:59:18.0046 5108 C:\WINDOWS\system32\ntmarta.dll - ok
14:59:18.0062 5108 [ 134B95A1D8FAFD74A68E4B2116DEFA7D ] C:\WINDOWS\system32\powrprof.dll
14:59:18.0062 5108 C:\WINDOWS\system32\powrprof.dll - ok
14:59:18.0062 5108 [ C72C15EE57E248C66E57C76CAB086CF2 ] C:\WINDOWS\system32\rpcss.dll
14:59:18.0062 5108 C:\WINDOWS\system32\rpcss.dll - ok
14:59:18.0078 5108 [ DFBA2915B0BF58ABB288CD4C9318CB3F ] C:\WINDOWS\system32\svchost.exe
14:59:18.0078 5108 C:\WINDOWS\system32\svchost.exe - ok
14:59:18.0078 5108 [ 44FFE27BFA2CA81BCF8F938236AA3601 ] C:\WINDOWS\system32\xpsp2res.dll
14:59:18.0078 5108 C:\WINDOWS\system32\xpsp2res.dll - ok
14:59:18.0093 5108 [ 64C078BD4EFD441C3F159EDC5EA4420A ] C:\WINDOWS\system32\mswsock.dll
14:59:18.0093 5108 C:\WINDOWS\system32\mswsock.dll - ok
14:59:18.0093 5108 [ AD2E8119C400D3A9002ABE9EB4EF238F ] C:\WINDOWS\system32\clbcatq.dll
14:59:18.0093 5108 C:\WINDOWS\system32\clbcatq.dll - ok
14:59:18.0109 5108 [ FAABA83BE47C5B15F620FAA53267A9B8 ] C:\WINDOWS\system32\hnetcfg.dll
14:59:18.0109 5108 C:\WINDOWS\system32\hnetcfg.dll - ok
14:59:18.0109 5108 [ B75F372796170EBD15DF35AE9963BFB8 ] C:\WINDOWS\system32\wshtcpip.dll
14:59:18.0109 5108 C:\WINDOWS\system32\wshtcpip.dll - ok
14:59:18.0125 5108 [ B44F68274AB7B8A54E9AD74AFF0EFAAC ] C:\WINDOWS\system32\comres.dll
14:59:18.0125 5108 C:\WINDOWS\system32\comres.dll - ok
14:59:18.0125 5108 [ D7B6BC808EBE3C9E509C9F7BADA1287F ] C:\WINDOWS\system32\winrnr.dll
14:59:18.0125 5108 C:\WINDOWS\system32\winrnr.dll - ok
14:59:18.0140 5108 [ 630A1012AF129918D2E2D70727D69351 ] C:\WINDOWS\system32\rasadhlp.dll
14:59:18.0140 5108 C:\WINDOWS\system32\rasadhlp.dll - ok
14:59:18.0140 5108 [ 1319F5D5C01277318BD66214A81F0DA3 ] C:\WINDOWS\system32\rtutils.dll
14:59:18.0140 5108 C:\WINDOWS\system32\rtutils.dll - ok
14:59:18.0156 5108 [ 7C260AB0F09D2D493A008ADC9943702C ] C:\WINDOWS\system32\esent.dll
14:59:18.0156 5108 C:\WINDOWS\system32\esent.dll - ok
14:59:18.0156 5108 [ 0161D9CF2097EFC0B00CE473647F8DEB ] C:\WINDOWS\system32\activeds.dll
14:59:18.0156 5108 C:\WINDOWS\system32\activeds.dll - ok
14:59:18.0171 5108 [ C3F03BE6927FC9107886E48F8A415231 ] C:\WINDOWS\system32\adsldpc.dll
14:59:18.0171 5108 C:\WINDOWS\system32\adsldpc.dll - ok
14:59:18.0171 5108 [ BA92B89B30E85999C63FD0088C5CBADA ] C:\WINDOWS\system32\atl.dll
14:59:18.0171 5108 C:\WINDOWS\system32\atl.dll - ok
14:59:18.0171 5108 [ E25A7DF3F422A5E0B775159EF4C7BA7F ] C:\WINDOWS\system32\mprapi.dll
14:59:18.0171 5108 C:\WINDOWS\system32\mprapi.dll - ok
14:59:18.0187 5108 [ 6CC5C55DDC6DC2FF6D00145AF3937BD9 ] C:\WINDOWS\system32\rasapi32.dll
14:59:18.0187 5108 C:\WINDOWS\system32\rasapi32.dll - ok
14:59:18.0187 5108 [ 87C120A6B7C3844F6DE4FEA7DEFAC3AE ] C:\WINDOWS\system32\rasman.dll
14:59:18.0187 5108 C:\WINDOWS\system32\rasman.dll - ok
14:59:18.0187 5108 [ 42FB536264BCA3E3821F9D83B73475F0 ] C:\WINDOWS\system32\riched20.dll
14:59:18.0187 5108 C:\WINDOWS\system32\riched20.dll - ok
14:59:18.0203 5108 [ 8CAD9E3669E56A8B77D83B4CBB1C78BD ] C:\WINDOWS\system32\tapi32.dll
14:59:18.0203 5108 C:\WINDOWS\system32\tapi32.dll - ok
14:59:18.0203 5108 [ 38E2364EA6F352A359AD143E6EBEA9B0 ] C:\WINDOWS\system32\netshell.dll
14:59:18.0203 5108 C:\WINDOWS\system32\netshell.dll - ok
14:59:18.0203 5108 [ C1002A55BBA6D708618DC0A6F542C768 ] C:\WINDOWS\system32\wshirda.dll
14:59:18.0203 5108 C:\WINDOWS\system32\wshirda.dll - ok
14:59:18.0218 5108 [ B848D125E938AA2B16FCCEC482B23463 ] C:\WINDOWS\system32\credui.dll
14:59:18.0218 5108 C:\WINDOWS\system32\credui.dll - ok
14:59:18.0218 5108 [ BC80D7A3346DC441653A100A01169CDA ] C:\WINDOWS\system32\wbem\wbemcomn.dll
14:59:18.0218 5108 C:\WINDOWS\system32\wbem\wbemcomn.dll - ok
14:59:18.0234 5108 [ 3F23E87F1B9E1512CCF58D1E9E73718C ] C:\WINDOWS\system32\wbem\wbemprox.dll
14:59:18.0234 5108 C:\WINDOWS\system32\wbem\wbemprox.dll - ok
14:59:18.0234 5108 [ 964F9AF4468CE8F50509BC3B9A05247B ] C:\WINDOWS\system32\ati2dvag.dll
14:59:18.0234 5108 C:\WINDOWS\system32\ati2dvag.dll - ok
14:59:18.0234 5108 [ 40D78F514C8588EF12EC718D2AF0FC4E ] C:\WINDOWS\system32\audiosrv.dll
14:59:18.0234 5108 C:\WINDOWS\system32\audiosrv.dll - ok
14:59:18.0250 5108 [ 87B1DCA5BD697F1A64154AB766D5BAAF ] C:\WINDOWS\system32\ati2cqag.dll
14:59:18.0250 5108 C:\WINDOWS\system32\ati2cqag.dll - ok
14:59:18.0250 5108 [ 040196E339034FD83CFA2234F09C4E02 ] C:\WINDOWS\system32\ati3duag.dll
14:59:18.0250 5108 C:\WINDOWS\system32\ati3duag.dll - ok
14:59:18.0250 5108 [ D56FB46C09A88BB10F94EDDCB0E25E23 ] C:\WINDOWS\system32\atikvmag.dll
14:59:18.0250 5108 C:\WINDOWS\system32\atikvmag.dll - ok
14:59:18.0265 5108 [ 41448296748E8689AC07528F5E9E59FD ] C:\WINDOWS\system32\atiok3x2.dll
14:59:18.0265 5108 C:\WINDOWS\system32\atiok3x2.dll - ok
14:59:18.0265 5108 [ 1BD2076C717CB48967D5078EC9650891 ] C:\WINDOWS\system32\vga.dll
14:59:18.0265 5108 C:\WINDOWS\system32\vga.dll - ok
14:59:18.0265 5108 [ 6CEE54B028FF9C0EC9629C93C52DAC69 ] C:\WINDOWS\system32\ativvaxx.dll
14:59:18.0265 5108 C:\WINDOWS\system32\ativvaxx.dll - ok
14:59:18.0281 5108 [ 221C29AE1B4CC61D11D8B27DE78B2307 ] C:\WINDOWS\system32\winlogon.exe
14:59:18.0281 5108 C:\WINDOWS\system32\winlogon.exe - ok
14:59:18.0281 5108 [ B2370507BF7228B0238709885C628728 ] C:\WINDOWS\system32\authz.dll
14:59:18.0281 5108 C:\WINDOWS\system32\authz.dll - ok
14:59:18.0296 5108 [ F76B3003366A205E05AFC0D034C7D3E9 ] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
14:59:18.0296 5108 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll - ok
14:59:18.0296 5108 [ EC73E8ECC1F25C2C219C4ED136EBBB44 ] C:\WINDOWS\system32\msapsspc.dll
14:59:18.0296 5108 C:\WINDOWS\system32\msapsspc.dll - ok
14:59:18.0296 5108 [ CB0031D8C8E7ACB21F96E28DD4C27959 ] C:\WINDOWS\system32\digest.dll
14:59:18.0296 5108 C:\WINDOWS\system32\digest.dll - ok
14:59:18.0312 5108 [ E53EC6558EFBA350BCD23A2D1E602E05 ] C:\WINDOWS\system32\msnsspc.dll
14:59:18.0312 5108 C:\WINDOWS\system32\msnsspc.dll - ok
14:59:18.0312 5108 [ 12F369513123ACFF55886EF411960136 ] C:\WINDOWS\system32\winscard.dll
14:59:18.0312 5108 C:\WINDOWS\system32\winscard.dll - ok
14:59:18.0328 5108 [ 55C649966C7DC3103CC30EA55ED94B7A ] C:\WINDOWS\system32\ati2evxx.exe
14:59:18.0328 5108 C:\WINDOWS\system32\ati2evxx.exe - ok
14:59:18.0328 5108 [ 4D3E8B43B117AF50358DBEEAB367B0A2 ] C:\WINDOWS\system32\oleacc.dll
14:59:18.0328 5108 C:\WINDOWS\system32\oleacc.dll - ok
14:59:18.0328 5108 [ 8D8A5F708910C961A42A86AA393692B9 ] C:\WINDOWS\system32\oleaccrc.dll
14:59:18.0328 5108 C:\WINDOWS\system32\oleaccrc.dll - ok
14:59:18.0343 5108 [ 67E605837840C521BB69074F55F866C3 ] C:\WINDOWS\system32\MSCTF.dll
14:59:18.0343 5108 C:\WINDOWS\system32\MSCTF.dll - ok
14:59:18.0343 5108 [ D1EF8A82D7BED1EC56C8791C495EC74F ] C:\WINDOWS\system32\cfgmgr32.dll
14:59:18.0343 5108 C:\WINDOWS\system32\cfgmgr32.dll - ok
14:59:18.0343 5108 [ 3E8ECDBADCCDF9AA52EE12B516AE98B5 ] C:\WINDOWS\system32\logonui.exe
14:59:18.0343 5108 C:\WINDOWS\system32\logonui.exe - ok
14:59:18.0359 5108 [ 6EB66066D5C0175320CFEA0A4C74C88F ] C:\WINDOWS\system32\eventlog.dll
14:59:18.0359 5108 C:\WINDOWS\system32\eventlog.dll - ok
14:59:18.0359 5108 [ 8C4B37F5284C2E5AB45ED9489CCF78D8 ] C:\WINDOWS\system32\ati2edxx.dll
14:59:18.0359 5108 C:\WINDOWS\system32\ati2edxx.dll - ok
14:59:18.0375 5108 [ 9B85CCCC70F19AFAC434FB6CBB351289 ] C:\WINDOWS\system32\duser.dll
14:59:18.0375 5108 C:\WINDOWS\system32\duser.dll - ok
14:59:18.0375 5108 [ C2ADF3FC0F5010D1B0D31BB678370ADE ] C:\WINDOWS\system32\netevent.dll
14:59:18.0375 5108 C:\WINDOWS\system32\netevent.dll - ok
14:59:18.0375 5108 [ 0908640414275657B4C58F65DF53213B ] C:\WINDOWS\system32\ati2evxx.dll
14:59:18.0375 5108 C:\WINDOWS\system32\ati2evxx.dll - ok
14:59:18.0390 5108 [ 227163195E9495BD99C915EF5F42445C ] C:\WINDOWS\system32\msimg32.dll
14:59:18.0390 5108 C:\WINDOWS\system32\msimg32.dll - ok
14:59:18.0390 5108 [ A59D40E1E12E37CA8B08227437A9CA2A ] C:\WINDOWS\system32\atipdlxx.dll
14:59:18.0390 5108 C:\WINDOWS\system32\atipdlxx.dll - ok
14:59:18.0390 5108 [ 2F5919F2F6EE7A845893D9C3AA2BC56A ] C:\WINDOWS\system32\termsrv.dll
14:59:18.0390 5108 C:\WINDOWS\system32\termsrv.dll - ok
14:59:18.0406 5108 [ 49E9ED37FAEC5E8C03E81FD73D3884D6 ] C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
14:59:18.0406 5108 C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe - ok
14:59:18.0406 5108 [ 36B7CD28481085AADA7F1515915C18CA ] C:\WINDOWS\system32\cscdll.dll
14:59:18.0406 5108 C:\WINDOWS\system32\cscdll.dll - ok
14:59:18.0421 5108 [ 4B388FEE5BA36D08D073E5EC7ACDC997 ] C:\WINDOWS\system32\hid.dll
14:59:18.0421 5108 C:\WINDOWS\system32\hid.dll - ok
14:59:18.0421 5108 [ 69ABCC7245D98F31DEF317A53D547657 ] C:\WINDOWS\system32\icaapi.dll
14:59:18.0421 5108 C:\WINDOWS\system32\icaapi.dll - ok
14:59:18.0421 5108 [ E92607D447A180F15EEA3843367DA4C7 ] C:\WINDOWS\system32\shgina.dll
14:59:18.0421 5108 C:\WINDOWS\system32\shgina.dll - ok
14:59:18.0437 5108 [ 131D50F081D2E29EBD1365B21F6B9736 ] C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
14:59:18.0437 5108 C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe - ok
14:59:18.0437 5108 [ B3FF8C662EBABC6D42689F09FD4EF521 ] C:\WINDOWS\system32\mstlsapi.dll
14:59:18.0437 5108 C:\WINDOWS\system32\mstlsapi.dll - ok
14:59:18.0437 5108 [ C30BFC4B8739522ACE6174A204D5A087 ] C:\WINDOWS\system32\wlnotify.dll
14:59:18.0437 5108 C:\WINDOWS\system32\wlnotify.dll - ok
14:59:18.0453 5108 [ 11ADD8816D61A6025844EB5123EC92D3 ] C:\Program Files\Intel\Wireless\Bin\Libeay32.dll
14:59:18.0453 5108 C:\Program Files\Intel\Wireless\Bin\Libeay32.dll - ok
14:59:18.0453 5108 [ 03D99216594CA1061CC3E197EF7BEAC7 ] C:\Program Files\Intel\Wireless\Bin\TraceAPI.dll
14:59:18.0453 5108 C:\Program Files\Intel\Wireless\Bin\TraceAPI.dll - ok
14:59:18.0468 5108 [ A543FC88A320A0758A55BE03789EAF7C ] C:\WINDOWS\system32\wsock32.dll
14:59:18.0468 5108 C:\WINDOWS\system32\wsock32.dll - ok
14:59:18.0468 5108 [ 9FD027A1F15521052F648A0DD282B298 ] C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll
14:59:18.0468 5108 C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll - ok
14:59:18.0468 5108 [ BBF5780BEB99A84DE110DCF51C047420 ] C:\Program Files\Intel\Wireless\Bin\IntStngs.dll
14:59:18.0468 5108 C:\Program Files\Intel\Wireless\Bin\IntStngs.dll - ok
14:59:18.0484 5108 [ B47AEE3FE8D6036B1F7B04C2417D639C ] C:\Program Files\Intel\Wireless\Bin\iWMSProv.dll
14:59:18.0484 5108 C:\Program Files\Intel\Wireless\Bin\iWMSProv.dll - ok
14:59:18.0484 5108 [ 058F744EADE8D38AD2CDD667B2DCD5E7 ] C:\WINDOWS\system32\netcfgx.dll
14:59:18.0484 5108 C:\WINDOWS\system32\netcfgx.dll - ok
14:59:18.0484 5108 [ 2144E0A2E64E78076966B4A7BAD10443 ] C:\WINDOWS\system32\clusapi.dll
14:59:18.0484 5108 C:\WINDOWS\system32\clusapi.dll - ok
14:59:18.0500 5108 [ 562830EFB7CF367FB773FEA5256E67C8 ] C:\WINDOWS\system32\dhcpcsvc.dll
14:59:18.0500 5108 C:\WINDOWS\system32\dhcpcsvc.dll - ok
14:59:18.0500 5108 [ F9EE6D2AAB0690B34AE35BA9921A1414 ] C:\WINDOWS\system32\lmhsvc.dll
14:59:18.0500 5108 C:\WINDOWS\system32\lmhsvc.dll - ok
14:59:18.0500 5108 [ E07FCCE974F48D9743D01BD5F22E66B8 ] C:\WINDOWS\system32\rdpdd.dll
14:59:18.0500 5108 C:\WINDOWS\system32\rdpdd.dll - ok
14:59:18.0515 5108 [ A541F73FB5CB72B57CE90BF349363D6C ] C:\WINDOWS\system32\rdpwsx.dll
14:59:18.0515 5108 C:\WINDOWS\system32\rdpwsx.dll - ok
14:59:18.0515 5108 [ 1E40DA866C950671A2F1FD20B0B2A8C4 ] C:\WINDOWS\system32\tsddd.dll
14:59:18.0515 5108 C:\WINDOWS\system32\tsddd.dll - ok
14:59:18.0531 5108 [ C9CAF0BBEC706375E753CB3914388EE0 ] C:\Program Files\Common Files\System\ado\msado15.dll
14:59:18.0531 5108 C:\Program Files\Common Files\System\ado\msado15.dll - ok
14:59:18.0531 5108 [ D9E2D4F58DF0AEE4A090D37463D84AFA ] C:\WINDOWS\system32\bt2k_ins.dll
14:59:18.0531 5108 C:\WINDOWS\system32\bt2k_ins.dll - ok
14:59:18.0531 5108 [ F605B3F5674D67587C4B6C9E92A3E025 ] C:\WINDOWS\system32\dnsrslvr.dll
14:59:18.0531 5108 C:\WINDOWS\system32\dnsrslvr.dll - ok
14:59:18.0546 5108 [ 325CEDEF696EF4B649DDCD3968D085C9 ] C:\WINDOWS\system32\wzcsvc.dll
14:59:18.0546 5108 C:\WINDOWS\system32\wzcsvc.dll - ok
14:59:18.0546 5108 [ 8656793679EC90A2A0629DF38884AB80 ] C:\WINDOWS\system32\irmon.dll
14:59:18.0546 5108 C:\WINDOWS\system32\irmon.dll - ok
14:59:18.0546 5108 [ 0F75449B3B8B66D9651E54396810FF61 ] C:\WINDOWS\system32\msdart.dll
14:59:18.0546 5108 C:\WINDOWS\system32\msdart.dll - ok
14:59:18.0562 5108 [ D1A454AFF01F7184C1A32079D5A7D0CE ] C:\WINDOWS\system32\wmi.dll
14:59:18.0562 5108 C:\WINDOWS\system32\wmi.dll - ok
14:59:18.0562 5108 [ 97F5BE808F922DEFF4AF6E53F8104DA7 ] C:\Program Files\Common Files\System\Ole DB\oledb32.dll
14:59:18.0562 5108 C:\Program Files\Common Files\System\Ole DB\oledb32.dll - ok
14:59:18.0578 5108 [ F982FE0E10A2C8A9AD32ECB657BDBD26 ] C:\WINDOWS\system32\rastls.dll
14:59:18.0578 5108 C:\WINDOWS\system32\rastls.dll - ok
14:59:18.0578 5108 [ 52FD4C06499F8B5E687F28049E9E186B ] C:\Program Files\Common Files\System\Ole DB\oledb32r.dll
14:59:18.0578 5108 C:\Program Files\Common Files\System\Ole DB\oledb32r.dll - ok
14:59:18.0578 5108 [ 3A304B1792EDC522E14C1940A647711D ] C:\WINDOWS\system32\mlang.dll
14:59:18.0578 5108 C:\WINDOWS\system32\mlang.dll - ok
14:59:18.0593 5108 [ 95F38E460B6D20E80D082229D12F72DA ] C:\Program Files\Common Files\System\Ole DB\msdasql.dll
14:59:18.0593 5108 C:\Program Files\Common Files\System\Ole DB\msdasql.dll - ok
14:59:18.0593 5108 [ 0737EC5BDE7EB394F2C5A2ADA7E08E5F ] C:\Program Files\Common Files\System\Ole DB\msdatl3.dll
14:59:18.0593 5108 C:\Program Files\Common Files\System\Ole DB\msdatl3.dll - ok
14:59:18.0609 5108 [ 4E7CF2B2D978F1F077CD3E9FF1FDB7D5 ] C:\WINDOWS\system32\raschap.dll
14:59:18.0609 5108 C:\WINDOWS\system32\raschap.dll - ok
14:59:18.0609 5108 [ 54CFC5CCD3A4F94362F39C3C4B87044F ] C:\Program Files\Common Files\System\Ole DB\msdasqlr.dll
14:59:18.0609 5108 C:\Program Files\Common Files\System\Ole DB\msdasqlr.dll - ok
14:59:18.0609 5108 [ DC752DC6BD9E8988E541F048C6D0DC0D ] C:\WINDOWS\system32\xmlprovi.dll
14:59:18.0609 5108 C:\WINDOWS\system32\xmlprovi.dll - ok
14:59:18.0625 5108 [ 8843E15CAB1C270AB862B626EF06A956 ] C:\WINDOWS\system32\mswstr10.dll
14:59:18.0625 5108 C:\WINDOWS\system32\mswstr10.dll - ok
14:59:18.0625 5108 [ 26FA42318E4D4A06985509892C416F54 ] C:\WINDOWS\system32\mswdat10.dll
14:59:18.0625 5108 C:\WINDOWS\system32\mswdat10.dll - ok
14:59:18.0640 5108 [ 6CDFD3E50BCF69EDD7522BCC978E84E7 ] C:\WINDOWS\system32\wzcsapi.dll
14:59:18.0640 5108 C:\WINDOWS\system32\wzcsapi.dll - ok
14:59:18.0640 5108 [ AF342D2781225A8769686E0D47E3123E ] C:\WINDOWS\system32\netman.dll
14:59:18.0640 5108 C:\WINDOWS\system32\netman.dll - ok
14:59:18.0640 5108 [ D32C1D39332B30E91E172713A4AE6DDF ] C:\WINDOWS\system32\comsvcs.dll
14:59:18.0640 5108 C:\WINDOWS\system32\comsvcs.dll - ok
14:59:18.0656 5108 [ 57F1E544A27CF584E124E18944D74F58 ] C:\WINDOWS\system32\mtxclu.dll
14:59:18.0656 5108 C:\WINDOWS\system32\mtxclu.dll - ok
14:59:18.0656 5108 [ 9E6FE6129619598F5738D62D5F68A039 ] C:\WINDOWS\system32\colbact.dll
14:59:18.0656 5108 C:\WINDOWS\system32\colbact.dll - ok
14:59:18.0671 5108 [ 99177EFA708439BE1DA02B389BEDFF17 ] C:\WINDOWS\system32\odbcjt32.dll
14:59:18.0671 5108 C:\WINDOWS\system32\odbcjt32.dll - ok
14:59:18.0671 5108 [ F43DBBBD943C01D975778B8874ABDAD5 ] C:\WINDOWS\system32\resutils.dll
14:59:18.0671 5108 C:\WINDOWS\system32\resutils.dll - ok
14:59:18.0671 5108 [ B18F2248EA6C9C362D02BEF72594CB93 ] C:\WINDOWS\system32\msjet40.dll
14:59:18.0671 5108 C:\WINDOWS\system32\msjet40.dll - ok
14:59:18.0687 5108 [ 7A5E1ECF5056B2CBF35CD153175EF5CF ] C:\WINDOWS\system32\odbcji32.dll
14:59:18.0687 5108 C:\WINDOWS\system32\odbcji32.dll - ok
14:59:18.0687 5108 [ C438DDAFBCB23F53EC5C1A4497356B80 ] C:\WINDOWS\system32\msjter40.dll
14:59:18.0687 5108 C:\WINDOWS\system32\msjter40.dll - ok
14:59:18.0687 5108 [ 518E1C19782578EF2DC9E5B1BD282E74 ] C:\WINDOWS\system32\msjint40.dll
14:59:18.0687 5108 C:\WINDOWS\system32\msjint40.dll - ok
14:59:18.0703 5108 [ 83B80F0BC46ACAE673CB5FB7954A39C6 ] C:\Program Files\Common Files\System\msadc\msadce.dll
14:59:18.0703 5108 C:\Program Files\Common Files\System\msadc\msadce.dll - ok
14:59:18.0703 5108 [ E92EF3CD4CD3DFC1E9E9AF3095F5F9D9 ] C:\WINDOWS\system32\odbccp32.dll
14:59:18.0703 5108 C:\WINDOWS\system32\odbccp32.dll - ok
14:59:18.0718 5108 [ C600F6023CF1175381197B2D70E5693F ] C:\Program Files\Common Files\System\msadc\msadcer.dll
14:59:18.0718 5108 C:\Program Files\Common Files\System\msadc\msadcer.dll - ok
14:59:18.0718 5108 [ 8F2097E8B174F38178570C611464935F ] C:\WINDOWS\system32\atl71.dll
14:59:18.0718 5108 C:\WINDOWS\system32\atl71.dll - ok
14:59:18.0718 5108 [ 29AC93307C6182DBE336BCA314947F28 ] C:\WINDOWS\system32\schedsvc.dll
14:59:18.0718 5108 C:\WINDOWS\system32\schedsvc.dll - ok
14:59:18.0734 5108 [ 9CC4E25B84458207E4120645298A614C ] C:\WINDOWS\system32\msidle.dll
14:59:18.0734 5108 C:\WINDOWS\system32\msidle.dll - ok
14:59:18.0734 5108 [ 21B6FAA88044A41640E03EBB68BE93E8 ] C:\WINDOWS\system32\spoolsv.exe
14:59:18.0734 5108 C:\WINDOWS\system32\spoolsv.exe - ok
14:59:18.0734 5108 [ 46297F66729FA6DDB70B3859232A52D3 ] C:\WINDOWS\system32\cscui.dll
14:59:18.0734 5108 C:\WINDOWS\system32\cscui.dll - ok
14:59:18.0750 5108 [ 69B0569AAE33F0D5057CA0E8577AAF07 ] C:\WINDOWS\system32\wkssvc.dll
14:59:18.0750 5108 C:\WINDOWS\system32\wkssvc.dll - ok
14:59:18.0750 5108 [ 53114D57AB73A406AC7F602227781A99 ] C:\WINDOWS\explorer.exe
14:59:18.0750 5108 C:\WINDOWS\explorer.exe - ok
14:59:18.0750 5108 [ A07BCFC144C672C3D96C2CA0DBACCAB8 ] C:\WINDOWS\system32\dpcdll.dll
14:59:18.0750 5108 C:\WINDOWS\system32\dpcdll.dll - ok
14:59:18.0765 5108 [ 63C6146FE8CCD2CBA0C6F283E35B46D2 ] C:\WINDOWS\system32\browseui.dll
14:59:18.0765 5108 C:\WINDOWS\system32\browseui.dll - ok
14:59:18.0765 5108 [ B356DD67178B22A8C2FBD47316CCB43B ] C:\WINDOWS\system32\midimap.dll
14:59:18.0765 5108 C:\WINDOWS\system32\midimap.dll - ok
14:59:18.0765 5108 [ BEA26F76B3A46E5E0C6A5081046B8280 ] C:\WINDOWS\system32\themeui.dll
14:59:18.0765 5108 C:\WINDOWS\system32\themeui.dll - ok
14:59:18.0781 5108 [ 835113FA5B05C0C48C7D0716320E7DA7 ] C:\WINDOWS\system32\actxprxy.dll
14:59:18.0781 5108 C:\WINDOWS\system32\actxprxy.dll - ok
14:59:18.0781 5108 [ 152F9FAFA23511BF0EC975EB879F43C6 ] C:\WINDOWS\system32\MSIMTF.dll
14:59:18.0781 5108 C:\WINDOWS\system32\MSIMTF.dll - ok
14:59:18.0796 5108 [ 565FDF3854E8CC0EFDE2D542163B91D4 ] C:\WINDOWS\system32\msutb.dll
14:59:18.0796 5108 C:\WINDOWS\system32\msutb.dll - ok
14:59:18.0796 5108 [ EE1F842DB2AE412136643B0814D770A6 ] C:\WINDOWS\system32\linkinfo.dll
14:59:18.0796 5108 C:\WINDOWS\system32\linkinfo.dll - ok
14:59:18.0796 5108 [ C159EE0E584730DDC23D74781F92F798 ] C:\WINDOWS\system32\ntshrui.dll
14:59:18.0796 5108 C:\WINDOWS\system32\ntshrui.dll - ok
14:59:18.0812 5108 [ C143959D0C808353BC0FCB1F177B11CB ] C:\WINDOWS\system32\shdoclc.dll
14:59:18.0812 5108 C:\WINDOWS\system32\shdoclc.dll - ok
14:59:18.0812 5108 [ A46FFD2EDFD264B33FC8D666823FD417 ] C:\WINDOWS\system32\mydocs.dll
14:59:18.0812 5108 C:\WINDOWS\system32\mydocs.dll - ok
14:59:18.0812 5108 [ 81374647938879E6B5DCFC602C6A8A30 ] C:\WINDOWS\system32\mfc42.dll
14:59:18.0812 5108 C:\WINDOWS\system32\mfc42.dll - ok
14:59:18.0828 5108 [ C0B677971967E6807F280A0D184DD533 ] C:\WINDOWS\system32\mfc42loc.dll
14:59:18.0828 5108 C:\WINDOWS\system32\mfc42loc.dll - ok
14:59:18.0828 5108 [ 8F4653B6A7C9790A5A016BD5AF8065DB ] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
14:59:18.0828 5108 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe - ok
14:59:18.0843 5108 [ 3757DE74402D10B488E071E732A91A62 ] C:\WINDOWS\system32\moricons.dll
14:59:18.0843 5108 C:\WINDOWS\system32\moricons.dll - ok
14:59:18.0843 5108 [ 43EEFC84A67CD22C5FF60CB08794D11D ] C:\WINDOWS\system32\stobject.dll
14:59:18.0843 5108 C:\WINDOWS\system32\stobject.dll - ok
14:59:18.0843 5108 [ 7668071C692B4FF1BF77765D4648049C ] C:\WINDOWS\system32\webcheck.dll
14:59:18.0843 5108 C:\WINDOWS\system32\webcheck.dll - ok
14:59:18.0859 5108 [ 9A1A488A3FBA380D6E69B1CA637BF3E2 ] C:\WINDOWS\system32\batmeter.dll
14:59:18.0859 5108 C:\WINDOWS\system32\batmeter.dll - ok
14:59:18.0859 5108 [ 9C5AFB54B7EDFE5237C6380565FC879A ] C:\WINDOWS\system32\SynCOM.dll
14:59:18.0859 5108 C:\WINDOWS\system32\SynCOM.dll - ok
14:59:18.0859 5108 [ 11B5F9991711382150A11987E887998C ] C:\Program Files\Synaptics\SynTP\SynZMetr.exe
14:59:18.0859 5108 C:\Program Files\Synaptics\SynTP\SynZMetr.exe - ok
14:59:18.0875 5108 [ 55D5310AF043236E884564AC6DE775DF ] C:\WINDOWS\system32\SynTPAPI.dll
14:59:18.0875 5108 C:\WINDOWS\system32\SynTPAPI.dll - ok
14:59:18.0875 5108 [ F80B68FAB0D98D84EF53A116BC6D006B ] C:\Program Files\Synaptics\SynTP\SynMood.exe
14:59:18.0875 5108 C:\Program Files\Synaptics\SynTP\SynMood.exe - ok
14:59:18.0875 5108 [ AD88B3DD262DFC48B88739731E42011D ] C:\WINDOWS\system32\msxml3.dll
14:59:18.0875 5108 C:\WINDOWS\system32\msxml3.dll - ok
14:59:18.0890 5108 [ 92393A08BC2B04842ACC087C09396A65 ] C:\WINDOWS\system32\winhttp.dll
14:59:18.0890 5108 C:\WINDOWS\system32\winhttp.dll - ok
14:59:18.0890 5108 [ 055309C927DEF2F09305ED0F3065CF66 ] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\msvcr80.dll
14:59:18.0890 5108 C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\msvcr80.dll - ok
14:59:18.0906 5108 [ CC2CFD223B1A6CE92B505811F521801A ] C:\WINDOWS\system32\msxml3r.dll
14:59:18.0906 5108 C:\WINDOWS\system32\msxml3r.dll - ok
14:59:18.0906 5108 [ C601A02CB2218539B0A502FEF85E71F7 ] C:\WINDOWS\system32\sensapi.dll
14:59:18.0906 5108 C:\WINDOWS\system32\sensapi.dll - ok
14:59:18.0921 5108 [ B2EEE3DEE31F50E082E9C720A6D7757D ] C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcp90.dll
14:59:18.0921 5108 C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcp90.dll - ok
14:59:18.0921 5108 [ 7538050656FE5D63CB4B80349DD1CFE3 ] C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcr90.dll
14:59:18.0921 5108 C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcr90.dll - ok
14:59:18.0937 5108 [ 423069307FB726E51E2A66F1C3F738FE ] C:\WINDOWS\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfc90u.dll
14:59:18.0937 5108 C:\WINDOWS\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfc90u.dll - ok
14:59:18.0937 5108 [ 317C54DCAB9EE29CD4B9F55D197A90D1 ] C:\WINDOWS\system32\msisip.dll
14:59:18.0937 5108 C:\WINDOWS\system32\msisip.dll - ok
14:59:18.0953 5108 [ 8C22083ED515DC94D575438662F0BE6A ] C:\WINDOWS\system32\msi.dll
14:59:18.0953 5108 C:\WINDOWS\system32\msi.dll - ok
14:59:18.0953 5108 [ B02A99F527ACA02B3F2711FC29A95935 ] C:\WINDOWS\system32\AcSignIcon.dll
14:59:18.0953 5108 C:\WINDOWS\system32\AcSignIcon.dll - ok
14:59:18.0968 5108 [ 1BCE2C02487972FF0D5E6702D79E7A75 ] C:\Program Files\7-Zip\7zFM.exe
14:59:18.0968 5108 C:\Program Files\7-Zip\7zFM.exe - ok
14:59:18.0968 5108 [ 6143EC5FE54DB6AD0551546F49C62EAE ] C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll
14:59:18.0968 5108 C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll - ok
14:59:18.0968 5108 [ 2E0E95F2732B594C26C2214AF17C3ED6 ] C:\Program Files\AVG Secure Search\11.0.0.10\AVG Secure Search_toolbar.dll
14:59:18.0968 5108 C:\Program Files\AVG Secure Search\11.0.0.10\AVG Secure Search_toolbar.dll - ok
14:59:18.0984 5108 [ DA3FAF7101D8192C759C053B7B2BC0D9 ] C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\11.0.2\SiteSafety.dll
14:59:18.0984 5108 C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\11.0.2\SiteSafety.dll - ok
14:59:18.0984 5108 [ F3D89178658C5A6E5615F0ECA2989F57 ] C:\WINDOWS\system32\dbghelp.dll
14:59:18.0984 5108 C:\WINDOWS\system32\dbghelp.dll - ok
14:59:18.0984 5108 [ 831F69C822D0FD91C5022E0A4985019C ] C:\Program Files\AVG Secure Search\vprot.exe
14:59:18.0984 5108 C:\Program Files\AVG Secure Search\vprot.exe - ok
14:59:19.0000 5108 [ 2D936701BC077FD6F49579B1E3FDAEAD ] C:\WINDOWS\system32\drivers\xpsec.sys
14:59:19.0000 5108 C:\WINDOWS\system32\drivers\xpsec.sys - ok
14:59:19.0000 5108 [ E2C78D19572AACC2062A00F01503807E ] C:\Program Files\AVG\AVG2012\avgcfgx.dll
14:59:19.0000 5108 C:\Program Files\AVG\AVG2012\avgcfgx.dll - ok
14:59:19.0015 5108 [ 17D469C94763642CD58FF8C98C12CA6F ] C:\Program Files\AVG\AVG2012\avgdecider.dll
14:59:19.0015 5108 C:\Program Files\AVG\AVG2012\avgdecider.dll - ok
14:59:19.0015 5108 [ 8B9D6D070113CFD8E20793768AFA26FC ] C:\Program Files\AVG\AVG2012\avglngx.dll
14:59:19.0015 5108 C:\Program Files\AVG\AVG2012\avglngx.dll - ok
14:59:19.0015 5108 [ B496B116F621223357DEFE4508B0987E ] C:\Program Files\AVG\AVG2012\avgsrmx.dll
14:59:19.0015 5108 C:\Program Files\AVG\AVG2012\avgsrmx.dll - ok
14:59:19.0031 5108 [ 8D01FA11124811ED06E876E5DDE70039 ] C:\Program Files\AVG\AVG2012\avgcertx.dll
14:59:19.0031 5108 C:\Program Files\AVG\AVG2012\avgcertx.dll - ok
14:59:19.0031 5108 [ 60732ECEC8AEF0A05FE36E661AA1C99C ] C:\Program Files\AVG\AVG2012\avgclitx.dll
14:59:19.0031 5108 C:\Program Files\AVG\AVG2012\avgclitx.dll - ok
14:59:19.0046 5108 [ B2E9DB5E5F4091FCDA0C9249C1E3F974 ] C:\Program Files\AVG\AVG2012\avgidpmx.dll
14:59:19.0046 5108 C:\Program Files\AVG\AVG2012\avgidpmx.dll - ok
14:59:19.0046 5108 [ C77ACC3B8ACFEC421D9EB8240E7FF0B3 ] C:\Program Files\AVG\AVG2012\avgidpsdkx.dll
14:59:19.0046 5108 C:\Program Files\AVG\AVG2012\avgidpsdkx.dll - ok
14:59:19.0046 5108 [ 14AA79C4A5A1B6F038D4AB79082B999E ] C:\WINDOWS\system32\drivers\xcpip.sys
14:59:19.0046 5108 C:\WINDOWS\system32\drivers\xcpip.sys - ok
14:59:19.0062 5108 [ 59976670B8E8402EDCE18896A02145BB ] C:\Program Files\AVG\AVG2012\avgabout.dll
14:59:19.0062 5108 C:\Program Files\AVG\AVG2012\avgabout.dll - ok
14:59:19.0062 5108 [ BE897F865582A30F7D552B3FECF9B24A ] C:\Program Files\AVG\AVG2012\avgapps.dll
14:59:19.0062 5108 C:\Program Files\AVG\AVG2012\avgapps.dll - ok
14:59:19.0062 5108 [ ADFA73BBBED712CFA273FF65B6A8571B ] C:\Program Files\AVG\AVG2012\avgpostinstx.dll
14:59:19.0062 5108 C:\Program Files\AVG\AVG2012\avgpostinstx.dll - ok
14:59:19.0078 5108 [ 80956486306D1F546EDC1DD7FAE87F62 ] C:\Program Files\AVG\AVG2012\avgtray.exe
14:59:19.0078 5108 C:\Program Files\AVG\AVG2012\avgtray.exe - ok
14:59:19.0078 5108 [ 0A527DA865EA7E91CABFACE9A9279022 ] C:\Program Files\AVG\AVG2012\avgui.exe
14:59:19.0078 5108 C:\Program Files\AVG\AVG2012\avgui.exe - ok
14:59:19.0093 5108 [ A054D2CD9FB1DC4E5904E3B88B55B2E2 ] C:\Program Files\AVG\AVG2012\avguires.dll
14:59:19.0093 5108 C:\Program Files\AVG\AVG2012\avguires.dll - ok
14:59:19.0093 5108 [ D14719188E4E94265C159E318A30EA72 ] C:\PROGRA~1\AVG\AVG2012\avgchjwx.dll
14:59:19.0093 5108 C:\PROGRA~1\AVG\AVG2012\avgchjwx.dll - ok
14:59:19.0093 5108 [ 11790A73767FBC981BA961D2231907E2 ] C:\PROGRA~1\AVG\AVG2012\avgcclix.dll
14:59:19.0093 5108 C:\PROGRA~1\AVG\AVG2012\avgcclix.dll - ok
14:59:19.0109 5108 [ FE97D0343ACFDEBDD578FC67CC91FA87 ] C:\WINDOWS\system32\drivers\dxapi.sys
14:59:19.0109 5108 C:\WINDOWS\system32\drivers\dxapi.sys - ok
14:59:19.0109 5108 [ C9BF2F12C4E6C12F8A85FBA4B6BC6208 ] C:\WINDOWS\system32\watchdog.sys
14:59:19.0109 5108 C:\WINDOWS\system32\watchdog.sys - ok
14:59:19.0109 5108 [ 6BF9F668422633B3BEE393DF9C29FC77 ] C:\WINDOWS\system32\win32k.sys
14:59:19.0125 5108 C:\WINDOWS\system32\win32k.sys - ok
14:59:19.0125 5108 [ D3DAC8432110AAD0B02A58B4459AB835 ] C:\WINDOWS\system32\drivers\dxg.sys
14:59:19.0125 5108 C:\WINDOWS\system32\drivers\dxg.sys - ok
14:59:19.0125 5108 [ A73F5D6705B1D820C19B18782E176EFD ] C:\WINDOWS\system32\drivers\dxgthk.sys
14:59:19.0125 5108 C:\WINDOWS\system32\drivers\dxgthk.sys - ok
14:59:19.0140 5108 [ 93B9E2450B9E5D7F650C72B6E05FD81E ] C:\WINDOWS\system32\MSCTFIME.IME
14:59:19.0140 5108 C:\WINDOWS\system32\MSCTFIME.IME - ok
14:59:19.0140 5108 [ 375EB0B97E3950ADEF3633C27A82438B ] C:\WINDOWS\system32\drivers\AegisP.sys
14:59:19.0140 5108 C:\WINDOWS\system32\drivers\AegisP.sys - ok
14:59:19.0140 5108 [ 86C204836FEEC22510D434982D4221B8 ] C:\WINDOWS\system32\drivers\irda.sys
14:59:19.0140 5108 C:\WINDOWS\system32\drivers\irda.sys - ok
14:59:19.0156 5108 [ E2C6ABCBEFB1D44F6AAEB1CD5D6062D4 ] C:\WINDOWS\system32\drivers\s24trans.sys
14:59:19.0156 5108 C:\WINDOWS\system32\drivers\s24trans.sys - ok
14:59:19.0156 5108 [ BDAB541C731D3AC59F623B88142036B7 ] C:\WINDOWS\system32\winspool.drv
14:59:19.0156 5108 C:\WINDOWS\system32\winspool.drv - ok
14:59:19.0171 5108 [ 34D6CD56409DA9A7ED573E1C90A308BF ] C:\WINDOWS\system32\drivers\ndisuio.sys
14:59:19.0171 5108 C:\WINDOWS\system32\drivers\ndisuio.sys - ok
14:59:19.0171 5108 [ 46EDCC8F2DB2F322C24F48785CB46366 ] C:\WINDOWS\system32\drivers\mrxdav.sys
14:59:19.0171 5108 C:\WINDOWS\system32\drivers\mrxdav.sys - ok
14:59:19.0187 5108 [ 3791ADF1D3466AC6B4B662D3F79CBFEC ] C:\WINDOWS\system32\webclnt.dll
14:59:19.0187 5108 C:\WINDOWS\system32\webclnt.dll - ok
14:59:19.0187 5108 [ 812D645AEB941C63AD33BA98DB31697C ] C:\WINDOWS\system32\wdmaud.drv
14:59:19.0187 5108 C:\WINDOWS\system32\wdmaud.drv - ok
14:59:19.0203 5108 [ 2797F33EBF50466020C430EE4F037933 ] C:\WINDOWS\system32\drivers\wdmaud.sys
14:59:19.0203 5108 C:\WINDOWS\system32\drivers\wdmaud.sys - ok
14:59:19.0218 5108 [ 650AD082D46BAC0E64C9C0E0928492FD ] C:\WINDOWS\system32\drivers\sysaudio.sys
14:59:19.0218 5108 C:\WINDOWS\system32\drivers\sysaudio.sys - ok
14:59:19.0218 5108 [ 841F385C6CFAF66B58FBD898722BB4F0 ] C:\WINDOWS\system32\drivers\aec.sys
14:59:19.0218 5108 C:\WINDOWS\system32\drivers\aec.sys - ok
14:59:19.0234 5108 [ 8E186B8F23295D1E42C573B82B80D548 ] C:\WINDOWS\system32\drivers\splitter.sys
14:59:19.0234 5108 C:\WINDOWS\system32\drivers\splitter.sys - ok
14:59:19.0234 5108 [ 94ABC808FC4B6D7D2BBF42B85E25BB4D ] C:\WINDOWS\system32\drivers\swmidi.sys
14:59:19.0234 5108 C:\WINDOWS\system32\drivers\swmidi.sys - ok
14:59:19.0234 5108 [ A6F881284AC1150E37D9AE47FF601267 ] C:\WINDOWS\system32\drivers\DMusic.sys
14:59:19.0234 5108 C:\WINDOWS\system32\drivers\DMusic.sys - ok
14:59:19.0250 5108 [ D93CAD07C5683DB066B0B2D2D3790EAD ] C:\WINDOWS\system32\drivers\kmixer.sys
14:59:19.0250 5108 C:\WINDOWS\system32\drivers\kmixer.sys - ok
14:59:19.0250 5108 [ 1ED4DBBAE9F5D558DBBA4CC450E3EB2E ] C:\WINDOWS\system32\drivers\drmkaud.sys
14:59:19.0250 5108 C:\WINDOWS\system32\drivers\drmkaud.sys - ok
14:59:19.0265 5108 [ 58A0D4A0DB5FB76438A38F30E666B212 ] C:\WINDOWS\system32\msacm32.drv
14:59:19.0265 5108 C:\WINDOWS\system32\msacm32.drv - ok
14:59:19.0265 5108 [ 0A31324EFBE679E5B52102D123DE4DF8 ] C:\WINDOWS\system32\desk.cpl
14:59:19.0265 5108 C:\WINDOWS\system32\desk.cpl - ok
14:59:19.0265 5108 [ 4E5BE66CD70D52637589E9C3E2C1696D ] C:\WINDOWS\system32\cmd.exe
14:59:19.0265 5108 C:\WINDOWS\system32\cmd.exe - ok
14:59:19.0281 5108 [ 509FC425705937F3BE30DED93F7582F7 ] C:\WINDOWS\system32\cryptnet.dll
14:59:19.0281 5108 C:\WINDOWS\system32\cryptnet.dll - ok
14:59:19.0281 5108 [ F50E7561E78B58DF4203FF68B12253AE ] C:\WINDOWS\system32\cabinet.dll
14:59:19.0281 5108 C:\WINDOWS\system32\cabinet.dll - ok
14:59:19.0281 5108 [ ED0580AF02502D00AD8C4C066B156BE9 ] C:\WINDOWS\system32\drivers\tdtcp.sys
14:59:19.0281 5108 C:\WINDOWS\system32\drivers\tdtcp.sys - ok
14:59:19.0296 5108 [ D4F5643D7714EF499AE9527FDCD50894 ] C:\WINDOWS\system32\drivers\rdpwd.sys
14:59:19.0296 5108 C:\WINDOWS\system32\drivers\rdpwd.sys - ok
14:59:19.0296 5108 [ C1DDBC85251551A840212999DA3D95F3 ] C:\WINDOWS\system32\drivers\serial.sys
14:59:19.0296 5108 C:\WINDOWS\system32\drivers\serial.sys - ok
14:59:19.0312 5108 [ BD5D11CEDBCDE4FA97D2387E7069B1FF ] C:\Program Files\AVG\AVG2012\avgfws.exe
14:59:19.0312 5108 C:\Program Files\AVG\AVG2012\avgfws.exe - ok
14:59:19.0312 5108 [ 8DF600506EC7B5BD6D1A362D81366428 ] C:\WINDOWS\system32\snmpapi.dll
14:59:19.0312 5108 C:\WINDOWS\system32\snmpapi.dll - ok
14:59:19.0312 5108 [ BAF975B72062F53D327788E99D64197E ] C:\WINDOWS\system32\drivers\avgidsshimx.sys
14:59:19.0312 5108 C:\WINDOWS\system32\drivers\avgidsshimx.sys - ok
14:59:19.0328 5108 [ EA1145DEBCD508FD25BD1E95C4346929 ] C:\Program Files\AVG\AVG2012\avgwdsvc.exe
14:59:19.0328 5108 C:\Program Files\AVG\AVG2012\avgwdsvc.exe - ok
14:59:19.0328 5108 [ C5A75EB48E2344ABDC162BDA79E16841 ] C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:59:19.0328 5108 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe - ok
14:59:19.0328 5108 [ E5F7C30EDF0892667933BE879F067D67 ] C:\WINDOWS\system32\msvcr100_clr0400.dll
14:59:19.0328 5108 C:\WINDOWS\system32\msvcr100_clr0400.dll - ok
14:59:19.0343 5108 [ AC633C7D40C63A197649955A512AD7BD ] C:\Program Files\AVG\AVG2012\avgwd.dll
14:59:19.0343 5108 C:\Program Files\AVG\AVG2012\avgwd.dll - ok
14:59:19.0343 5108 [ FCF1A9C3FB29786946302B4470952D85 ] C:\Program Files\AVG\AVG2012\avgcslx.dll
14:59:19.0343 5108 C:\Program Files\AVG\AVG2012\avgcslx.dll - ok
14:59:19.0359 5108 [ 70D2A1756F4B2067658A186C963FCABD ] C:\WINDOWS\system32\cryptsvc.dll
14:59:19.0359 5108 C:\WINDOWS\system32\cryptsvc.dll - ok
14:59:19.0359 5108 [ 3067A1DF068DCEE90922590EDD24F12F ] C:\WINDOWS\system32\certcli.dll
14:59:19.0359 5108 C:\WINDOWS\system32\certcli.dll - ok
14:59:19.0359 5108 [ D68564FCFBDFC04280CDBBB37CF7EF7F ] C:\WINDOWS\system32\drivers\epm-psd.sys
14:59:19.0359 5108 C:\WINDOWS\system32\drivers\epm-psd.sys - ok
14:59:19.0375 5108 [ 2D0C4A7077F6C68449479F5444C580A7 ] C:\WINDOWS\system32\drivers\epm-shd.sys
14:59:19.0375 5108 C:\WINDOWS\system32\drivers\epm-shd.sys - ok
14:59:19.0375 5108 [ 7B3CA72885923EB947221F17F3E3AC59 ] C:\WINDOWS\system32\dmserver.dll
14:59:19.0375 5108 C:\WINDOWS\system32\dmserver.dll - ok
14:59:19.0375 5108 [ D6F7428B201E33BC80066B47144CB568 ] C:\WINDOWS\system32\ersvc.dll
14:59:19.0375 5108 C:\WINDOWS\system32\ersvc.dll - ok
14:59:19.0390 5108 [ AFF2E23E4E867140F07ABADC9E29ACDC ] C:\Program Files\AVG\AVG2012\avgopensslx.dll
14:59:19.0390 5108 C:\Program Files\AVG\AVG2012\avgopensslx.dll - ok
14:59:19.0390 5108 [ 4C6FA3FD55087B7C35707068723A1710 ] C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
14:59:19.0390 5108 C:\Program Files\Intel\Wireless\Bin\EvtEng.exe - ok
14:59:19.0406 5108 [ FC2E10BD1E84408AEFE7F52A5B574D4D ] C:\Program Files\Intel\Wireless\Bin\PfMgrApi.dll
14:59:19.0406 5108 C:\Program Files\Intel\Wireless\Bin\PfMgrApi.dll - ok
14:59:19.0406 5108 [ BB491E2B952E763A891887582D1A6288 ] C:\WINDOWS\system32\inetmib1.dll
14:59:19.0406 5108 C:\WINDOWS\system32\inetmib1.dll - ok
14:59:19.0406 5108 [ 13085FDD224995130B0A92E7E697F149 ] C:\Program Files\Intel\Wireless\Bin\DbEngine.dll
14:59:19.0406 5108 C:\Program Files\Intel\Wireless\Bin\DbEngine.dll - ok
14:59:19.0421 5108 [ 4BD5F133FD7DE5C508B313B73C74AB87 ] C:\Program Files\Intel\Wireless\Bin\MurocApi.dll
14:59:19.0421 5108 C:\Program Files\Intel\Wireless\Bin\MurocApi.dll - ok
14:59:19.0421 5108 [ B0D081E7CD1D60CF63317ADC6E8535C7 ] C:\Program Files\Intel\Wireless\Bin\S24MUDLL.dll
14:59:19.0421 5108 C:\Program Files\Intel\Wireless\Bin\S24MUDLL.dll - ok
14:59:19.0437 5108 [ 780FD8B7F1ADB9B867C9A1635CE7183C ] C:\WINDOWS\system32\icmp.dll
14:59:19.0437 5108 C:\WINDOWS\system32\icmp.dll - ok
14:59:19.0437 5108 [ F59152272782FED8A8197FA788287F68 ] C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll
14:59:19.0437 5108 C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll - ok
14:59:19.0437 5108 [ B642E645D7A790E0FA41E16C6C4234E6 ] C:\Program Files\AVG\AVG2012\avgwdwsc.dll
14:59:19.0437 5108 C:\Program Files\AVG\AVG2012\avgwdwsc.dll - ok
14:59:19.0453 5108 [ D2DCF769E5A70027058AD5BE1F9B55BF ] C:\WINDOWS\system32\hidserv.dll
14:59:19.0453 5108 C:\WINDOWS\system32\hidserv.dll - ok
14:59:19.0453 5108 [ AE38A12F79A4980DDB88F36514F8A1DA ] C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
14:59:19.0453 5108 C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe - ok
14:59:19.0468 5108 [ A800036D0E071CBE08C144E110A71A35 ] C:\Program Files\Intel\Intel Matrix Storage Manager\ISDI.dll
14:59:19.0468 5108 C:\Program Files\Intel\Intel Matrix Storage Manager\ISDI.dll - ok
14:59:19.0468 5108 [ B09C638B3AD925CDFBFCD411BAAB223A ] C:\Program Files\AVG\AVG2012\avgcorex.dll
14:59:19.0468 5108 C:\Program Files\AVG\AVG2012\avgcorex.dll - ok
14:59:19.0468 5108 [ CFFA12ED3E3211C184CE3883B27FF9BC ] C:\Program Files\Intel\Intel Matrix Storage Manager\PlugInRAID_CSY.dll
14:59:19.0468 5108 C:\Program Files\Intel\Intel Matrix Storage Manager\PlugInRAID_CSY.dll - ok
14:59:19.0484 5108 [ F8F75594C17FE7BCE1B4045BB7199868 ] C:\WINDOWS\system32\drivers\int15.sys
14:59:19.0484 5108 C:\WINDOWS\system32\drivers\int15.sys - ok
14:59:19.0484 5108 [ 6D6BDD68B775986577C48A8DF961A05C ] C:\WINDOWS\system32\srvsvc.dll
14:59:19.0484 5108 C:\WINDOWS\system32\srvsvc.dll - ok
14:59:19.0484 5108 [ 793FF718477345CD5D232C50BED1E452 ] C:\Program Files\Common Files\LightScribe\LSSrvc.exe
14:59:19.0484 5108 C:\Program Files\Common Files\LightScribe\LSSrvc.exe - ok
14:59:19.0500 5108 [ D905050080DB4CCC3EB09AD24DE6BD67 ] C:\WINDOWS\system32\netmsg.dll
14:59:19.0500 5108 C:\WINDOWS\system32\netmsg.dll - ok
14:59:19.0500 5108 [ D7EB32B51B7472FBEE86BFA47B3C4BC5 ] C:\Program Files\Common Files\LightScribe\LSSProxy.dll
14:59:19.0500 5108 C:\Program Files\Common Files\LightScribe\LSSProxy.dll - ok
14:59:19.0500 5108 [ 0EE266A90D43E82A07CF33755D6DE1CC ] C:\Program Files\Common Files\LightScribe\LSLog.dll
14:59:19.0500 5108 C:\Program Files\Common Files\LightScribe\LSLog.dll - ok
14:59:19.0515 5108 [ 20B7E396720353E4117D64D9DCB926CA ] C:\WINDOWS\system32\drivers\srv.sys
14:59:19.0515 5108 C:\WINDOWS\system32\drivers\srv.sys - ok
14:59:19.0515 5108 [ F33A2734000FC6D3DBAE2E1337E2BB1F ] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\msvcp80.dll
14:59:19.0515 5108 C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\msvcp80.dll - ok
14:59:19.0531 5108 [ 0CEA2D0D3FA284B85ED5B68365114F76 ] C:\WINDOWS\system32\drivers\mdmxsdk.sys
14:59:19.0531 5108 C:\WINDOWS\system32\drivers\mdmxsdk.sys - ok
14:59:19.0531 5108 [ FAB5650F32677320A5056A9A540F36C9 ] C:\Program Files\AVG\AVG2012\avgnsx.exe
14:59:19.0531 5108 C:\Program Files\AVG\AVG2012\avgnsx.exe - ok
14:59:19.0546 5108 [ 615DEE3AC438468536B004678F3BA72E ] C:\Program Files\AVG\AVG2012\avgxpl.dll
14:59:19.0546 5108 C:\Program Files\AVG\AVG2012\avgxpl.dll - ok
14:59:19.0546 5108 [ 9CE7E61E07EBD3CCF05055CC3FBC0C19 ] C:\Program Files\AVG\AVG2012\avgemcx.exe
14:59:19.0546 5108 C:\Program Files\AVG\AVG2012\avgemcx.exe - ok
14:59:19.0562 5108 [ A5675206B80C4127BC687DCCA9A57212 ] C:\Program Files\AVG\AVG2012\avgntsqlitex.dll
14:59:19.0562 5108 C:\Program Files\AVG\AVG2012\avgntsqlitex.dll - ok
14:59:19.0562 5108 [ 22C111245FC78C4D3261E208B9712AC5 ] C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
14:59:19.0562 5108 C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe - ok
14:59:19.0562 5108 [ EB4A30EAC3B3C304EAC8A10970E3402E ] C:\Program Files\AVG\AVG2012\avgsched.dll
14:59:19.0562 5108 C:\Program Files\AVG\AVG2012\avgsched.dll - ok
14:59:19.0578 5108 [ 43425FD0BD73B0930E77AE2E35ED8F7A ] C:\Program Files\AVG\AVG2012\avgamx.dll
14:59:19.0578 5108 C:\Program Files\AVG\AVG2012\avgamx.dll - ok

14:59:19.0578 5108 [ DCB679EA4BA802DBA775A7E32BA88302 ] C:\Program Files\AVG\AVG2012\avgameh.dll
14:59:19.0578 5108 C:\Program Files\AVG\AVG2012\avgameh.dll - ok
14:59:19.0593 5108 [ 08B098B89C5F5968BDA67EC58855B309 ] C:\Program Files\AVG\AVG2012\avgamnot.dll
14:59:19.0593 5108 C:\Program Files\AVG\AVG2012\avgamnot.dll - ok
14:59:19.0593 5108 [ E111CED19D6A9FF9BBA5C219D0C5A3CE ] C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\opends60.dll
14:59:19.0593 5108 C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\opends60.dll - ok
14:59:19.0593 5108 [ 7B193BA3F0245D5867B71AD1CF631474 ] C:\Program Files\Microsoft SQL Server\90\Shared\instapi.dll
14:59:19.0593 5108 C:\Program Files\Microsoft SQL Server\90\Shared\instapi.dll - ok
14:59:19.0625 5108 [ 6A61BD99355204595C70BDD15783A805 ] C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\SQLBOOT.dll
14:59:19.0625 5108 C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\SQLBOOT.dll - ok
14:59:19.0625 5108 [ EF96F80F89D24316CBB158ACFA794FA8 ] C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\Resources\1033\sqlevn70.rll
14:59:19.0625 5108 C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\Resources\1033\sqlevn70.rll - ok
14:59:19.0625 5108 [ 030B997EB7DE1ADA071FE5D6EFCF3ED3 ] C:\WINDOWS\system32\ipsecsvc.dll
14:59:19.0625 5108 C:\WINDOWS\system32\ipsecsvc.dll - ok
14:59:19.0640 5108 [ 8AC155995F5D10FC0D3AD949A1A68075 ] C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
14:59:19.0640 5108 C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe - ok
14:59:19.0640 5108 [ 0E62ED8FE41443EB21C67DA215EF29F0 ] C:\WINDOWS\system32\oakley.dll
14:59:19.0640 5108 C:\WINDOWS\system32\oakley.dll - ok
14:59:19.0656 5108 [ ECC96985954185DFCF455FBBB8037A1B ] C:\Program Files\AVG\AVG2012\avgcsrvx.exe
14:59:19.0656 5108 C:\Program Files\AVG\AVG2012\avgcsrvx.exe - ok
14:59:19.0656 5108 [ 5B21208FCF8970BB61FE98E19D828714 ] C:\WINDOWS\system32\regsvc.dll
14:59:19.0656 5108 C:\WINDOWS\system32\regsvc.dll - ok
14:59:19.0656 5108 [ 3D253A2D2648777AFE6AEAAA50B3B139 ] C:\WINDOWS\system32\winipsec.dll
14:59:19.0656 5108 C:\WINDOWS\system32\winipsec.dll - ok
14:59:19.0671 5108 [ 2AF094B1CE4725E4551F38FDA2348637 ] C:\Program Files\CyberLink\Shared Files\RichVideo.exe
14:59:19.0671 5108 C:\Program Files\CyberLink\Shared Files\RichVideo.exe - ok
14:59:19.0671 5108 [ 3466855DE825F86C484A3454AD090967 ] C:\Program Files\AVG\AVG2012\avgchclx.dll
14:59:19.0671 5108 C:\Program Files\AVG\AVG2012\avgchclx.dll - ok
14:59:19.0687 5108 [ 183A46179FDC11B6B9AE655BE81C76DA ] C:\WINDOWS\system32\pstorsvc.dll
14:59:19.0687 5108 C:\WINDOWS\system32\pstorsvc.dll - ok
14:59:19.0687 5108 [ C76CB8A133374FAC6805F83FF7B7DA03 ] C:\WINDOWS\system32\seclogon.dll
14:59:19.0687 5108 C:\WINDOWS\system32\seclogon.dll - ok
14:59:19.0687 5108 [ 23519ECBDBB26AB19DD03CC4AA14D9C6 ] C:\WINDOWS\system32\psbase.dll
14:59:19.0687 5108 C:\WINDOWS\system32\psbase.dll - ok
14:59:19.0703 5108 [ 220AD85BA9C5B3011296354011B901CC ] C:\WINDOWS\system32\sens.dll
14:59:19.0703 5108 C:\WINDOWS\system32\sens.dll - ok
14:59:19.0703 5108 [ 3CD57F31A64D32FDB28918B16D1E6AAC ] C:\WINDOWS\system32\srsvc.dll
14:59:19.0703 5108 C:\WINDOWS\system32\srsvc.dll - ok
14:59:19.0703 5108 [ CACD2C63A79268D131EA37E85524CC44 ] C:\WINDOWS\system32\dssenh.dll
14:59:19.0703 5108 C:\WINDOWS\system32\dssenh.dll - ok
14:59:19.0718 5108 [ 0645CCDDDD27F96EEA3534C1DEF736D9 ] C:\WINDOWS\system32\wiaservc.dll
14:59:19.0718 5108 C:\WINDOWS\system32\wiaservc.dll - ok
14:59:19.0718 5108 [ 84E3249B984160849979E291D45846B9 ] C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlos.dll
14:59:19.0718 5108 C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlos.dll - ok
14:59:19.0734 5108 [ 97DD70FECA64FB4F63DE7BB7E66A80B1 ] C:\WINDOWS\system32\drivers\TVicPort.sys
14:59:19.0734 5108 C:\WINDOWS\system32\drivers\TVicPort.sys - ok
14:59:19.0734 5108 [ 37162D29CD61519E6F5EA0DE99786FF6 ] C:\WINDOWS\system32\tapisrv.dll
14:59:19.0734 5108 C:\WINDOWS\system32\tapisrv.dll - ok
14:59:19.0734 5108 [ BCB7B2576BF0FCA695D7DB4DA3DAA8F3 ] C:\WINDOWS\system32\mscms.dll
14:59:19.0734 5108 C:\WINDOWS\system32\mscms.dll - ok
14:59:19.0734 5108 [ 4DCE17221B1A87FB47E36842F3E38753 ] C:\WINDOWS\system32\trkwks.dll
14:59:19.0734 5108 C:\WINDOWS\system32\trkwks.dll - ok
14:59:19.0750 5108 [ BCD21B989F0FD4ACE78287FC01B4693D ] C:\WINDOWS\system32\wbem\wmiapsrv.exe
14:59:19.0750 5108 C:\WINDOWS\system32\wbem\wmiapsrv.exe - ok
14:59:19.0750 5108 [ E12084EA622BDF2262C637BEF15DD85C ] C:\WINDOWS\system32\wbem\wmisvc.dll
14:59:19.0750 5108 C:\WINDOWS\system32\wbem\wmisvc.dll - ok
14:59:19.0765 5108 [ 9C8E1A06256FA7BB5D952EDF240AF5C0 ] C:\WINDOWS\system32\loadperf.dll
14:59:19.0765 5108 C:\WINDOWS\system32\loadperf.dll - ok
14:59:19.0765 5108 [ F6BE3DDAEE084BEBB550EABF40E18E42 ] C:\WINDOWS\system32\wiavusd.dll
14:59:19.0765 5108 C:\WINDOWS\system32\wiavusd.dll - ok
14:59:19.0781 5108 [ AAD12FB4AFD57AF5200DA0EE6ABB2B2A ] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\GdiPlus.dll
14:59:19.0781 5108 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\GdiPlus.dll - ok
14:59:19.0781 5108 [ E9F4DE03C690CFE7B1BCA36D985FFB8C ] C:\WINDOWS\system32\wbem\wmiapres.dll
14:59:19.0781 5108 C:\WINDOWS\system32\wbem\wmiapres.dll - ok
14:59:19.0781 5108 [ 83BA5E873164A3711B44052F58C8FE9F ] C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
14:59:19.0781 5108 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll - ok
14:59:19.0796 5108 [ 40AC8590CC9006DBB99FFCB37879D4C6 ] C:\WINDOWS\system32\drivers\zntport.sys
14:59:19.0796 5108 C:\WINDOWS\system32\drivers\zntport.sys - ok
14:59:19.0796 5108 [ 61A7E0B02F82CFF3DB2445BBE50B3589 ] C:\WINDOWS\system32\drivers\avgidsfilterx.sys
14:59:19.0796 5108 C:\WINDOWS\system32\drivers\avgidsfilterx.sys - ok
14:59:19.0812 5108 [ B7DCBC1FD649252182CB0018A5735770 ] C:\WINDOWS\system32\security.dll
14:59:19.0812 5108 C:\WINDOWS\system32\security.dll - ok
14:59:19.0812 5108 [ 7B7EE0BE462654A8830D15CFA954AC4A ] C:\WINDOWS\system32\vssapi.dll
14:59:19.0812 5108 C:\WINDOWS\system32\vssapi.dll - ok
14:59:19.0812 5108 [ 860B28B3C4B052293226563A0AFC0763 ] C:\WINDOWS\system32\shfolder.dll
14:59:19.0812 5108 C:\WINDOWS\system32\shfolder.dll - ok
14:59:19.0828 5108 [ 21F5169CA14E0B25C757644456F637DF ] C:\WINDOWS\system32\wuauserv.dll
14:59:19.0828 5108 C:\WINDOWS\system32\wuauserv.dll - ok
14:59:19.0828 5108 [ D6730AE698DE4B62077A1091E906FC35 ] C:\WINDOWS\system32\wuaueng.dll
14:59:19.0828 5108 C:\WINDOWS\system32\wuaueng.dll - ok
14:59:19.0828 5108 [ 1074F787080068C71303B61FAE7E7CA4 ] C:\WINDOWS\system32\drivers\avgidsdriverx.sys
14:59:19.0828 5108 C:\WINDOWS\system32\drivers\avgidsdriverx.sys - ok
14:59:19.0843 5108 [ D33EC04D1F0B5F388DE86CCC3333A59F ] C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
14:59:19.0843 5108 C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe - ok
14:59:19.0843 5108 [ 93A2AAE5B4344C702C41E15F06A01F24 ] C:\WINDOWS\system32\advpack.dll
14:59:19.0843 5108 C:\WINDOWS\system32\advpack.dll - ok
14:59:19.0859 5108 [ FC56AD7E70F257F1192D8D232E1A191E ] C:\WINDOWS\system32\mspatcha.dll
14:59:19.0859 5108 C:\WINDOWS\system32\mspatcha.dll - ok
14:59:19.0859 5108 [ 7C87A5FB95777E4132B11FC3D92CAAF5 ] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll
14:59:19.0859 5108 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll - ok
14:59:19.0859 5108 [ 86F1895AE8C5E8B17D99ECE768A70732 ] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\msvcr71.dll
14:59:19.0859 5108 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\msvcr71.dll - ok
14:59:19.0875 5108 [ ED43BE380ED2059E4A96A5CEA1A30195 ] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
14:59:19.0875 5108 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll - ok
14:59:19.0875 5108 [ BF5E31EFE72F9407A0CF51ECE5E3C287 ] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
14:59:19.0875 5108 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll - ok
14:59:19.0890 5108 [ 88E6F0DF785DAAA8BC3CA5BD6AFAAA4E ] C:\WINDOWS\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_2a47cf87\mscorlib.dll
14:59:19.0890 5108 C:\WINDOWS\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_2a47cf87\mscorlib.dll - ok
14:59:19.0890 5108 [ 4C2BB0E88229D59C276D7EA31951EB5B ] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
14:59:19.0890 5108 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll - ok
14:59:19.0906 5108 [ 81C81D2375E82CF33DB187A555378F8E ] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
14:59:19.0906 5108 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll - ok
14:59:19.0906 5108 [ FE5E4AC47CA1E25052009AA50CCA4190 ] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\diasymreader.dll
14:59:19.0906 5108 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\diasymreader.dll - ok
14:59:19.0921 5108 [ 0716C52D0A75F8A3CDB120875F523A43 ] C:\WINDOWS\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
14:59:19.0921 5108 C:\WINDOWS\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll - ok
14:59:19.0921 5108 [ 962EF40FC6B7FEC17393AD7A028DEBCE ] C:\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
14:59:19.0921 5108 C:\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll - ok
14:59:19.0937 5108 [ C5A2155E27F1E00B629ECA9FED6AC841 ] C:\DOCUME~1\ING~1.KAR\LOCALS~1\Temp\29B05383-8B1E-4AFA-82A2-8D6AB6D8B843.exe
14:59:19.0937 5108 C:\DOCUME~1\ING~1.KAR\LOCALS~1\Temp\29B05383-8B1E-4AFA-82A2-8D6AB6D8B843.exe - ok
14:59:19.0937 5108 [ 1EA4164BB71E18ED175B3DAFEB132EE0 ] C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_55ca2cf6\System.dll
14:59:19.0937 5108 C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_55ca2cf6\System.dll - ok
14:59:19.0953 5108 [ 63A74C673205EBE19336EAE2BA83EE7F ] C:\Acer\Empowering Technology\eLock\Service\eLock.Serv.Main.dll
14:59:19.0953 5108 C:\Acer\Empowering Technology\eLock\Service\eLock.Serv.Main.dll - ok
14:59:19.0953 5108 [ 3B8EEAA6F354B0CE8DC9D7225115BE12 ] C:\Acer\Empowering Technology\eLock\Service\eLock.Serv.Interface.dll
14:59:19.0953 5108 C:\Acer\Empowering Technology\eLock\Service\eLock.Serv.Interface.dll - ok
14:59:19.0968 5108 [ 1E1B73FC9C17EFFE04F5676A40C82026 ] C:\WINDOWS\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
14:59:19.0968 5108 C:\WINDOWS\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll - ok
14:59:19.0968 5108 [ 1C23611B0418109609E48261E37208AF ] C:\Acer\Empowering Technology\eLock\Service\eLock.Serv.Library.dll
14:59:19.0968 5108 C:\Acer\Empowering Technology\eLock\Service\eLock.Serv.Library.dll - ok
14:59:19.0984 5108 [ EED2120454E74AA5C257947986B4D068 ] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
14:59:19.0984 5108 C:\Program Files\Synaptics\SynTP\SynTPStart.exe - ok
14:59:20.0000 5108 [ 98328A1049627B72E5770BE009DB6C0A ] C:\WINDOWS\system32\fxssvc.exe
14:59:20.0000 5108 C:\WINDOWS\system32\fxssvc.exe - ok
14:59:20.0000 5108 [ A1F34BD1FDB397059B38EE86E6D1CA7C ] C:\WINDOWS\system32\upnp.dll
14:59:20.0000 5108 C:\WINDOWS\system32\upnp.dll - ok
14:59:20.0000 5108 [ 5C98408E620A2AAC7894108769138676 ] C:\WINDOWS\system32\ssdpapi.dll
14:59:20.0000 5108 C:\WINDOWS\system32\ssdpapi.dll - ok
14:59:20.0046 5108 [ 960B8A08D1B273B066BF9BF542CB1102 ] C:\WINDOWS\system32\fxstiff.dll
14:59:20.0046 5108 C:\WINDOWS\system32\fxstiff.dll - ok
14:59:20.0046 5108 [ 1264F787E46DC572FA274CA09B446E01 ] C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
14:59:20.0046 5108 C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL - ok
14:59:20.0046 5108 [ 6A3AB0DEEDD6D527BF443E68D60EBDF7 ] C:\WINDOWS\system32\fxsapi.dll
14:59:20.0046 5108 C:\WINDOWS\system32\fxsapi.dll - ok
14:59:20.0062 5108 [ 6B560D98B52CF2AF84FA64C8594C0A6B ] C:\WINDOWS\system32\wbem\wbemcore.dll
14:59:20.0062 5108 C:\WINDOWS\system32\wbem\wbemcore.dll - ok
14:59:20.0062 5108 [ B7CE9694077C622D471CE963951CE605 ] C:\Program Files\WIDCOMM\Bluetooth Software\BtBalloon.dll
14:59:20.0062 5108 C:\Program Files\WIDCOMM\Bluetooth Software\BtBalloon.dll - ok
14:59:20.0078 5108 [ 235B8D0E1DC80CCB93165B839157B6A0 ] C:\WINDOWS\system32\wbem\esscli.dll
14:59:20.0078 5108 C:\WINDOWS\system32\wbem\esscli.dll - ok
14:59:20.0093 5108 [ C372F827ECC796AFDA0F904AF58CA045 ] C:\WINDOWS\system32\wbem\fastprox.dll
14:59:20.0093 5108 C:\WINDOWS\system32\wbem\fastprox.dll - ok
14:59:20.0093 5108 [ F14D2C0D1D9EC31976AEA8A35CA6076F ] C:\WINDOWS\system32\wbem\wbemsvc.dll
14:59:20.0093 5108 C:\WINDOWS\system32\wbem\wbemsvc.dll - ok
14:59:20.0093 5108 [ D67719BCFDE5798F5C30D14EFED3BCAF ] C:\Program Files\AVG\AVG2012\avgidsagent.exe
14:59:20.0093 5108 C:\Program Files\AVG\AVG2012\avgidsagent.exe - ok
14:59:20.0109 5108 [ 6A93501BCDEBF159109429B022C0FF83 ] C:\WINDOWS\system32\ipnathlp.dll
14:59:20.0109 5108 C:\WINDOWS\system32\ipnathlp.dll - ok
14:59:20.0109 5108 [ 2A8681AEA24003040CA7D677BE9F1702 ] C:\WINDOWS\system32\drivers\71408569.sys
14:59:20.0109 5108 C:\WINDOWS\system32\drivers\71408569.sys - ok
14:59:20.0125 5108 [ 7FF592649D1E189E8E3927A6FF143C91 ] C:\WINDOWS\system32\fxst30.dll
14:59:20.0125 5108 C:\WINDOWS\system32\fxst30.dll - ok
14:59:20.0125 5108 [ 9036AFD87BDF3D7A8FD0C3E40449E8C0 ] C:\WINDOWS\system32\fxsroute.dll
14:59:20.0125 5108 C:\WINDOWS\system32\fxsroute.dll - ok
14:59:20.0125 5108 [ 4ADED1ADEF25041D9827F9A79C0FDA13 ] C:\WINDOWS\system32\wscsvc.dll
14:59:20.0125 5108 C:\WINDOWS\system32\wscsvc.dll - ok
14:59:20.0140 5108 [ 1BF7099758D85D794486297F35C579DA ] C:\WINDOWS\system32\unimdm.tsp
14:59:20.0140 5108 C:\WINDOWS\system32\unimdm.tsp - ok
14:59:20.0140 5108 [ D83C0D0AE14A0183D31C19BEAEBF43F9 ] C:\WINDOWS\system32\uniplat.dll
14:59:20.0140 5108 C:\WINDOWS\system32\uniplat.dll - ok
14:59:20.0156 5108 [ 7ECFDF734C710FFF1D020D3242AA796A ] C:\WINDOWS\system32\wbem\wmiutils.dll
14:59:20.0156 5108 C:\WINDOWS\system32\wbem\wmiutils.dll - ok
14:59:20.0156 5108 [ 081032BC69C6D6465FAC20EA06E0C63D ] C:\WINDOWS\system32\unimdmat.dll
14:59:20.0156 5108 C:\WINDOWS\system32\unimdmat.dll - ok
14:59:20.0156 5108 [ CCA4E0B8D567D580090DBA134403C1B8 ] C:\WINDOWS\system32\modemui.dll
14:59:20.0156 5108 C:\WINDOWS\system32\modemui.dll - ok
14:59:20.0171 5108 [ 4093CA50A8329FC0438FA8E2900A4E1C ] C:\WINDOWS\system32\kmddsp.tsp
14:59:20.0171 5108 C:\WINDOWS\system32\kmddsp.tsp - ok
14:59:20.0171 5108 [ 0809388EB4E7AE2065B0FF1B1ABAF58A ] C:\WINDOWS\system32\wbem\repdrvfs.dll
14:59:20.0171 5108 C:\WINDOWS\system32\wbem\repdrvfs.dll - ok
14:59:20.0187 5108 [ DDA5F753FFAB100A600477AFDF83FE7E ] C:\WINDOWS\system32\ndptsp.tsp
14:59:20.0187 5108 C:\WINDOWS\system32\ndptsp.tsp - ok
14:59:20.0187 5108 [ 8216E66FA663EC6A67A881314E1535F5 ] C:\WINDOWS\system32\ipconf.tsp
14:59:20.0187 5108 C:\WINDOWS\system32\ipconf.tsp - ok
14:59:20.0187 5108 [ 1D90579421EC335278825851491684E3 ] C:\WINDOWS\system32\h323.tsp
14:59:20.0187 5108 C:\WINDOWS\system32\h323.tsp - ok
14:59:20.0203 5108 [ D83B2827B75AAF00338C0F29FE6BA22A ] C:\WINDOWS\system32\wbem\wmiprvsd.dll
14:59:20.0203 5108 C:\WINDOWS\system32\wbem\wmiprvsd.dll - ok
14:59:20.0203 5108 [ 5A721AFCF3FABC59B24710CCE927627E ] C:\WINDOWS\system32\hidphone.tsp
14:59:20.0203 5108 C:\WINDOWS\system32\hidphone.tsp - ok
14:59:20.0203 5108 [ 43949C22325695D0E8E30B790DD06FDB ] C:\WINDOWS\system32\wbem\wbemess.dll
14:59:20.0203 5108 C:\WINDOWS\system32\wbem\wbemess.dll - ok
14:59:20.0218 5108 [ FC2DC3A419DE61099467534344ECC29E ] C:\WINDOWS\system32\wuapi.dll
14:59:20.0218 5108 C:\WINDOWS\system32\wuapi.dll - ok
14:59:20.0218 5108 [ 6B7895EE9CF76D59A25A5D4415DC5619 ] C:\WINDOWS\system32\wbem\ncprov.dll
14:59:20.0218 5108 C:\WINDOWS\system32\wbem\ncprov.dll - ok
14:59:20.0218 5108 [ 5AF95DF694BD86DB74BBD88FB5AC7193 ] C:\WINDOWS\system32\wbem\wbemcons.dll
14:59:20.0218 5108 C:\WINDOWS\system32\wbem\wbemcons.dll - ok
14:59:20.0234 5108 [ C19B522A9AE0BBC3293397F3055E80A1 ] C:\WINDOWS\system32\drivers\http.sys
14:59:20.0234 5108 C:\WINDOWS\system32\drivers\http.sys - ok
14:59:20.0234 5108 [ 88C28F53F53438DAFCD95E99C837C61E ] C:\WINDOWS\system32\ssdpsrv.dll
14:59:20.0234 5108 C:\WINDOWS\system32\ssdpsrv.dll - ok
14:59:20.0250 5108 [ CF9D286B34CB4912F3B28B4972D5CB33 ] C:\WINDOWS\system32\imapi.exe
14:59:20.0250 5108 C:\WINDOWS\system32\imapi.exe - ok
14:59:20.0250 5108 [ B4AF3DC7830EFEA4E50847CF225BB7DB ] C:\Program Files\Intel\Intel Matrix Storage Manager\PlugInRAID.pin
14:59:20.0250 5108 C:\Program Files\Intel\Intel Matrix Storage Manager\PlugInRAID.pin - ok
14:59:20.0265 5108 [ 47CCD1175116A3CD2062239B092799CE ] C:\WINDOWS\system32\rasdlg.dll
14:59:20.0265 5108 C:\WINDOWS\system32\rasdlg.dll - ok
14:59:20.0265 5108 [ EF897DDCD9E269B83F03F328698AAE7A ] C:\WINDOWS\system32\wbem\wmiprvse.exe
14:59:20.0265 5108 C:\WINDOWS\system32\wbem\wmiprvse.exe - ok
14:59:20.0281 5108 [ 46828F2E7B4D68B706BFEBC1964A7D1A ] C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizM.dll
14:59:20.0281 5108 C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizM.dll - ok
14:59:20.0281 5108 [ 09C6750143ED0C22A5083FC5C1C90999 ] C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizD.dll
14:59:20.0281 5108 C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizD.dll - ok
14:59:20.0296 5108 [ 6AA1422C89E2C4ADACFD5B826C5E1044 ] C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizR.dll
14:59:20.0296 5108 C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizR.dll - ok
14:59:20.0296 5108 [ 5500031928B9D15B0A8987ED80EAE952 ] C:\WINDOWS\system32\wbem\cimwin32.dll
14:59:20.0296 5108 C:\WINDOWS\system32\wbem\cimwin32.dll - ok
14:59:20.0312 5108 [ B3F690BF43F93A012A52F28F234FAA1B ] C:\WINDOWS\system32\alg.exe
14:59:20.0312 5108 C:\WINDOWS\system32\alg.exe - ok
14:59:20.0312 5108 [ B7A75960A62C52495C0F2F9846C48353 ] C:\Program Files\Intel\Intel Matrix Storage Manager\RaidWizCnG.dll
14:59:20.0312 5108 C:\Program Files\Intel\Intel Matrix Storage Manager\RaidWizCnG.dll - ok
14:59:20.0328 5108 [ 66E323AA1E41CF0F67723928B250202F ] C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizC.dll
14:59:20.0328 5108 C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizC.dll - ok
14:59:20.0328 5108 [ 45C89B8F297CD56F84C1084D868A855C ] C:\WINDOWS\system32\wbem\framedyn.dll
14:59:20.0328 5108 C:\WINDOWS\system32\wbem\framedyn.dll - ok
14:59:20.0343 5108 [ 01DAAF5B3C8627B158C3FB8D6AC01EB3 ] C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizCFE.dll
14:59:20.0343 5108 C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizCFE.dll - ok
14:59:20.0343 5108 [ D927A791361822EC6F506A7222373031 ] C:\WINDOWS\system32\fxsst.dll
14:59:20.0343 5108 C:\WINDOWS\system32\fxsst.dll - ok
14:59:20.0343 5108 [ 3F677172F23FC17283D9BCE4B42E3F65 ] C:\Program Files\Mozilla Firefox\firefox.exe
14:59:20.0343 5108 C:\Program Files\Mozilla Firefox\firefox.exe - ok
14:59:20.0359 5108 [ 67EC459E42D3081DD8FD34356F7CAFC1 ] C:\Program Files\Mozilla Firefox\msvcr100.dll
14:59:20.0359 5108 C:\Program Files\Mozilla Firefox\msvcr100.dll - ok
14:59:20.0359 5108 [ 4009ACA971C4D4E5FA8891B076917069 ] C:\Program Files\Mozilla Firefox\mozglue.dll
14:59:20.0359 5108 C:\Program Files\Mozilla Firefox\mozglue.dll - ok
14:59:20.0359 5108 [ D7CB45BEAD7FF63B8D82ABBFB9D74102 ] C:\Program Files\Mozilla Firefox\nspr4.dll
14:59:20.0359 5108 C:\Program Files\Mozilla Firefox\nspr4.dll - ok
14:59:20.0375 5108 [ 476F7D54970AEA25DEA456825C64D733 ] C:\Program Files\Mozilla Firefox\plc4.dll
14:59:20.0375 5108 C:\Program Files\Mozilla Firefox\plc4.dll - ok
14:59:20.0375 5108 [ 5127CDC241D32568DD458CB0D1C4CEA1 ] C:\Program Files\Mozilla Firefox\plds4.dll
14:59:20.0375 5108 C:\Program Files\Mozilla Firefox\plds4.dll - ok
14:59:20.0390 5108 [ D44761290B0861C8DF045CDE34EB0705 ] C:\Program Files\Mozilla Firefox\mozalloc.dll
14:59:20.0390 5108 C:\Program Files\Mozilla Firefox\mozalloc.dll - ok
14:59:20.0390 5108 [ FDE476CFA50F0E1C3CA7B732334B5C3A ] C:\Program Files\Mozilla Firefox\mozsqlite3.dll
14:59:20.0390 5108 C:\Program Files\Mozilla Firefox\mozsqlite3.dll - ok
14:59:20.0390 5108 [ 80D6B31FA7618B97CA9A0112B7CBB0EA ] C:\Program Files\Mozilla Firefox\nssutil3.dll
14:59:20.0390 5108 C:\Program Files\Mozilla Firefox\nssutil3.dll - ok
14:59:20.0406 5108 [ DD74FB796F5D9A2BF5B4F24201429AB8 ] C:\Program Files\Mozilla Firefox\softokn3.dll
14:59:20.0406 5108 C:\Program Files\Mozilla Firefox\softokn3.dll - ok
14:59:20.0406 5108 [ 714E3F17D0E2E23354F15FD01B4F4EA8 ] C:\Program Files\Mozilla Firefox\nss3.dll
14:59:20.0406 5108 C:\Program Files\Mozilla Firefox\nss3.dll - ok

Re: Trojský kůň PSW.Agent a Generic27.AKPW

Napsal: 23 srp 2012 14:05
od Spid3r
14:59:20.0406 5108 [ A5A40243D737326E61D296ABD4C8AECE ] C:\Program Files\Mozilla Firefox\ssl3.dll
14:59:20.0406 5108 C:\Program Files\Mozilla Firefox\ssl3.dll - ok
14:59:20.0421 5108 [ 0FCE648F8031872F7B8049F13FA0EDC4 ] C:\Program Files\Mozilla Firefox\mozjs.dll
14:59:20.0421 5108 C:\Program Files\Mozilla Firefox\mozjs.dll - ok
14:59:20.0421 5108 [ BA6DB597377C3D29128AA201E1D94297 ] C:\Program Files\Mozilla Firefox\smime3.dll
14:59:20.0421 5108 C:\Program Files\Mozilla Firefox\smime3.dll - ok
14:59:20.0437 5108 [ 0BDD5B8AC394DE23EDBBF8998CBBE2A7 ] C:\Program Files\Mozilla Firefox\xul.dll
14:59:20.0437 5108 C:\Program Files\Mozilla Firefox\xul.dll - ok
14:59:20.0437 5108 [ BE005B2321B30219B43986C713ED31A0 ] C:\Program Files\Mozilla Firefox\gkmedias.dll
14:59:20.0437 5108 C:\Program Files\Mozilla Firefox\gkmedias.dll - ok
14:59:20.0437 5108 [ 03E9314004F504A14A61C3D364B62F66 ] C:\Program Files\Mozilla Firefox\msvcp100.dll
14:59:20.0437 5108 C:\Program Files\Mozilla Firefox\msvcp100.dll - ok
14:59:20.0453 5108 [ A24CDF378DF91A4304A1F3E7247BD513 ] C:\Program Files\Mozilla Firefox\xpcom.dll
14:59:20.0453 5108 C:\Program Files\Mozilla Firefox\xpcom.dll - ok
14:59:20.0453 5108 [ 6D3CE6A1FE3BE6D51A90C3AEF6D545AC ] C:\Program Files\Mozilla Firefox\components\browsercomps.dll
14:59:20.0453 5108 C:\Program Files\Mozilla Firefox\components\browsercomps.dll - ok
14:59:20.0453 5108 [ F4ED458C1356CF3FB172EF6EBAF2A5CE ] C:\WINDOWS\system32\feclient.dll
14:59:20.0453 5108 C:\WINDOWS\system32\feclient.dll - ok
14:59:20.0468 5108 [ EEFF5623465B383677699A06070BECEA ] C:\Program Files\Mozilla Firefox\nssdbm3.dll
14:59:20.0468 5108 C:\Program Files\Mozilla Firefox\nssdbm3.dll - ok
14:59:20.0468 5108 [ 7AD79EBF2915BB6C9B821932D8D90879 ] C:\Program Files\Mozilla Firefox\freebl3.dll
14:59:20.0468 5108 C:\Program Files\Mozilla Firefox\freebl3.dll - ok
14:59:20.0484 5108 [ F661ECDDF6B287683139F4BD365478CB ] C:\Program Files\Mozilla Firefox\nssckbi.dll
14:59:20.0484 5108 C:\Program Files\Mozilla Firefox\nssckbi.dll - ok
14:59:20.0484 5108 [ 4B01D7940E20E81D535D9B03283BFDCE ] C:\WINDOWS\system32\t2embed.dll
14:59:20.0484 5108 C:\WINDOWS\system32\t2embed.dll - ok
14:59:20.0484 5108 [ 56955341EBAE3CCADD343B14B9F0464B ] C:\WINDOWS\system32\avifil32.dll
14:59:20.0484 5108 C:\WINDOWS\system32\avifil32.dll - ok
14:59:20.0500 5108 [ DA32253CB23DE90D7232D2F95D6378C0 ] C:\WINDOWS\system32\perfos.dll
14:59:20.0500 5108 C:\WINDOWS\system32\perfos.dll - ok
14:59:20.0500 5108 [ E9F9CD3C7F2E56505A0AC166580120E3 ] C:\WINDOWS\system32\wuauclt.exe
14:59:20.0500 5108 C:\WINDOWS\system32\wuauclt.exe - ok
14:59:20.0500 5108 [ 9308C4ED0FA1C5FC296DC5A341B027DB ] C:\WINDOWS\system32\wuaucpl.cpl
14:59:20.0500 5108 C:\WINDOWS\system32\wuaucpl.cpl - ok
14:59:20.0515 5108 [ 6E519D777C91E90592403C9F981FDF03 ] C:\WINDOWS\system32\rasmans.dll
14:59:20.0515 5108 C:\WINDOWS\system32\rasmans.dll - ok
14:59:20.0515 5108 [ 6CABF467773EFF9A6CD5AE62BE57B4C1 ] C:\WINDOWS\system32\rastapi.dll
14:59:20.0515 5108 C:\WINDOWS\system32\rastapi.dll - ok
14:59:20.0531 5108 [ A06AB1550658A19E871A6FD7FF1C2CDB ] C:\Program Files\Mozilla Firefox\plugin-container.exe
14:59:20.0531 5108 C:\Program Files\Mozilla Firefox\plugin-container.exe - ok
14:59:20.0531 5108 [ 4B417FC4B0F257C4E3DDB5BE42378ADC ] C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\11.0.2\npsitesafety.dll
14:59:20.0531 5108 C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\11.0.2\npsitesafety.dll - ok
14:59:20.0531 5108 [ 6A1A6BA94D67062028A6E2DD0D37D9B3 ] C:\WINDOWS\system32\rasppp.dll
14:59:20.0531 5108 C:\WINDOWS\system32\rasppp.dll - ok
14:59:20.0546 5108 [ 25C835512507558BD4E9522A8BB1447B ] C:\WINDOWS\system32\ntlsapi.dll
14:59:20.0546 5108 C:\WINDOWS\system32\ntlsapi.dll - ok
14:59:20.0546 5108 [ CBD5DB25F3451935FF2A01FCC83EF892 ] C:\WINDOWS\system32\wups.dll
14:59:20.0546 5108 C:\WINDOWS\system32\wups.dll - ok
14:59:20.0546 5108 [ 99B4B884FE9A878B4822F7F326C90CE1 ] C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_271.dll
14:59:20.0562 5108 C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_271.dll - ok
14:59:20.0562 5108 [ 8ECC475F5BAD26DB85943F888D62E364 ] C:\WINDOWS\system32\dsound.dll
14:59:20.0562 5108 C:\WINDOWS\system32\dsound.dll - ok
14:59:20.0562 5108 [ 0654F266F6E482B8E896A6ACD197DE2F ] C:\WINDOWS\system32\mapi32.dll
14:59:20.0562 5108 C:\WINDOWS\system32\mapi32.dll - ok
14:59:20.0578 5108 [ 82BFF112D46003CDBAC71FAB78FC54AD ] C:\Program Files\Common Files\System\MSMAPI\1029\MSMAPI32.DLL
14:59:20.0578 5108 C:\Program Files\Common Files\System\MSMAPI\1029\MSMAPI32.DLL - ok
14:59:20.0578 5108 [ F43D94430FD80AEE9FB522B9041EB261 ] C:\Program Files\Microsoft Office\Office12\OLMAPI32.DLL
14:59:20.0578 5108 C:\Program Files\Microsoft Office\Office12\OLMAPI32.DLL - ok
14:59:20.0578 5108 [ 95ED6750E1AAA9735EC1A5A56F960CC5 ] C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSO.DLL
14:59:20.0578 5108 C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSO.DLL - ok
14:59:20.0593 5108 [ EB8A523A1DEB6FD6F14D5FDDEDAB5C9D ] C:\Program Files\Microsoft Office\Office12\1029\MAPIR.DLL
14:59:20.0593 5108 C:\Program Files\Microsoft Office\Office12\1029\MAPIR.DLL - ok
14:59:20.0593 5108 [ C6CC76BDE13E3A2C2275BD44C590D158 ] C:\Program Files\Common Files\Microsoft Shared\OFFICE12\RICHED20.DLL
14:59:20.0593 5108 C:\Program Files\Common Files\Microsoft Shared\OFFICE12\RICHED20.DLL - ok
14:59:20.0609 5108 ============================================================
14:59:20.0609 5108 Scan finished
14:59:20.0609 5108 ============================================================
14:59:20.0734 5060 Detected object count: 22
14:59:20.0734 5060 Actual detected object count: 22
15:00:05.0812 5060 System memory ( MEM:Backdoor.Win32.Sinowal.d ) - skipped by user
15:00:05.0812 5060 System memory ( MEM:Backdoor.Win32.Sinowal.d ) - User select action: Skip
15:00:05.0812 5060 AegisP ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0812 5060 AegisP ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0828 5060 eLockService ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0828 5060 eLockService ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0828 5060 EpmPsd ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0828 5060 EpmPsd ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0843 5060 EpmShd ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0843 5060 EpmShd ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0859 5060 EvtEng ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0859 5060 EvtEng ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0875 5060 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0875 5060 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0875 5060 int15.sys ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0875 5060 int15.sys ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0875 5060 LightScribeService ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0875 5060 LightScribeService ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0875 5060 NPF ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0875 5060 NPF ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0875 5060 NTIDrvr ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0875 5060 NTIDrvr ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0875 5060 psdfilter ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0875 5060 psdfilter ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0890 5060 psdvdisk ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0890 5060 psdvdisk ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0890 5060 RegSrvc ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0890 5060 RegSrvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0890 5060 RichVideo ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0890 5060 RichVideo ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0906 5060 rpcapd ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0906 5060 rpcapd ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0906 5060 S24EventMonitor ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0906 5060 S24EventMonitor ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0906 5060 s24trans ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0906 5060 s24trans ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0921 5060 tvicport ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0921 5060 tvicport ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0921 5060 UBHelper ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0921 5060 UBHelper ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0921 5060 zntport ( UnsignedFile.Multi.Generic ) - skipped by user
15:00:05.0921 5060 zntport ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:00:05.0921 5060 \Device\Harddisk0\DR0 ( Rootkit.Boot.Sinowal.b ) - skipped by user
15:00:05.0921 5060 \Device\Harddisk0\DR0 ( Rootkit.Boot.Sinowal.b ) - User select action: Skip
15:00:09.0406 2804 Deinitialize success

Re: Trojský kůň PSW.Agent a Generic27.AKPW

Napsal: 23 srp 2012 16:00
od vyosek
:arrow: Spustte znovu TDSS, u polozek MEM:Backdoor.Win32.Sinowal.d a Rootkit.Boot.Sinowal.b by mela byt predvolena moznost Cure, tu tam nechte a TDSS provede leceni, restart a da log, ten mi sem vlozte

Re: Trojský kůň PSW.Agent a Generic27.AKPW

Napsal: 23 srp 2012 16:41
od Spid3r
Bohužel, TDSS mi nazobrazil bídl pouze Rootkit.Boot.Sinowal.b. Zanechal jsem CURE a nechal, ať dělá, co umí.
Nyní Rootkit.Boot.Sinowal.b už neukazuje. Ale ty ostatní dva také ne.

LOG:
17:29:37.0140 1992 TDSS rootkit removing tool 2.8.7.0 Aug 20 2012 17:30:03
17:29:38.0875 1992 ============================================================
17:29:38.0875 1992 Current date / time: 2012/08/23 17:29:38.0875
17:29:38.0875 1992 SystemInfo:
17:29:38.0875 1992
17:29:38.0875 1992 OS Version: 5.1.2600 ServicePack: 2.0
17:29:38.0875 1992 Product type: Workstation
17:29:39.0125 1992 ComputerName: ACER-109CD108E4
17:29:39.0328 1992 UserName: Ing. Karel Mikeš
17:29:39.0328 1992 Windows directory: C:\WINDOWS
17:29:39.0328 1992 System windows directory: C:\WINDOWS
17:29:39.0328 1992 Processor architecture: Intel x86
17:29:39.0328 1992 Number of processors: 2
17:29:39.0328 1992 Page size: 0x1000
17:29:39.0328 1992 Boot type: Normal boot
17:29:39.0328 1992 ============================================================
17:29:40.0765 1992 BG loaded
17:29:41.0625 1992 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
17:29:41.0625 1992 ============================================================
17:29:41.0625 1992 \Device\Harddisk0\DR0:
17:29:41.0625 1992 MBR partitions:
17:29:41.0640 1992 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0xBB86BD, BlocksNum 0x8EAAC60
17:29:41.0640 1992 \Device\Harddisk0\DR0\Partition2: MBR, Type 0xC, StartLBA 0x9A6331D, BlocksNum 0x8FB57A4
17:29:41.0640 1992 ============================================================
17:29:41.0718 1992 C: <-> \Device\Harddisk0\DR0\Partition1
17:29:41.0734 1992 D: <-> \Device\Harddisk0\DR0\Partition2
17:29:41.0750 1992 ============================================================
17:29:41.0750 1992 Initialize success
17:29:41.0750 1992 ============================================================
17:31:48.0406 2620 ============================================================
17:31:48.0406 2620 Scan started
17:31:48.0406 2620 Mode: Manual; SigCheck; TDLFS;
17:31:48.0406 2620 ============================================================
17:31:48.0640 2620 ================ Scan system memory ========================
17:31:48.0640 2620 System memory - ok
17:31:48.0640 2620 ================ Scan services =============================
17:31:48.0828 2620 Abiosdsk - ok
17:31:48.0843 2620 [ 6ABB91494FE6C59089B9336452AB2EA3 ] abp480n5 C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
17:31:49.0078 2620 abp480n5 - ok
17:31:49.0109 2620 [ FA2FBCDA96D2385F773B059FE5A125A6 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
17:31:49.0203 2620 ACPI - ok
17:31:49.0218 2620 [ AFDFF022A01F0B11C776F0860C3B282F ] ACPIEC C:\WINDOWS\system32\DRIVERS\ACPIEC.sys
17:31:49.0312 2620 ACPIEC - ok
17:31:49.0375 2620 [ A9D3B95E8466BD58EEB8A1154654E162 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
17:31:49.0406 2620 AdobeFlashPlayerUpdateSvc - ok
17:31:49.0437 2620 [ 9A11864873DA202C996558B2106B0BBC ] adpu160m C:\WINDOWS\system32\DRIVERS\adpu160m.sys
17:31:49.0531 2620 adpu160m - ok
17:31:49.0546 2620 [ 841F385C6CFAF66B58FBD898722BB4F0 ] aec C:\WINDOWS\system32\drivers\aec.sys
17:31:49.0640 2620 aec - ok
17:31:49.0687 2620 [ 375EB0B97E3950ADEF3633C27A82438B ] AegisP C:\WINDOWS\system32\DRIVERS\AegisP.sys
17:31:49.0687 2620 AegisP ( UnsignedFile.Multi.Generic ) - warning
17:31:49.0687 2620 AegisP - detected UnsignedFile.Multi.Generic (1)
17:31:49.0703 2620 [ 5AC495F4CB807B2B98AD2AD591E6D92E ] AFD C:\WINDOWS\System32\drivers\afd.sys
17:31:49.0812 2620 AFD - ok
17:31:49.0828 2620 [ 2C428FA0C3E3A01ED93C9B2A27D8D4BB ] agp440 C:\WINDOWS\system32\DRIVERS\agp440.sys
17:31:49.0953 2620 agp440 - ok
17:31:49.0953 2620 [ 67288B07D6ABA6C1267B626E67BC56FD ] agpCPQ C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
17:31:50.0046 2620 agpCPQ - ok
17:31:50.0062 2620 [ C23EA9B5F46C7F7910DB3EAB648FF013 ] Aha154x C:\WINDOWS\system32\DRIVERS\aha154x.sys
17:31:50.0109 2620 Aha154x - ok
17:31:50.0125 2620 [ 19DD0FB48B0C18892F70E2E7D61A1529 ] aic78u2 C:\WINDOWS\system32\DRIVERS\aic78u2.sys
17:31:50.0218 2620 aic78u2 - ok
17:31:50.0234 2620 [ B7FE594A7468AA0132DEB03FB8E34326 ] aic78xx C:\WINDOWS\system32\DRIVERS\aic78xx.sys
17:31:50.0328 2620 aic78xx - ok
17:31:50.0343 2620 [ 026DDAA7E6F8D49DF82C7A98BAE5D0D1 ] Alerter C:\WINDOWS\system32\alrsvc.dll
17:31:50.0437 2620 Alerter - ok
17:31:50.0468 2620 [ B3F690BF43F93A012A52F28F234FAA1B ] ALG C:\WINDOWS\System32\alg.exe
17:31:50.0515 2620 ALG - ok
17:31:50.0562 2620 [ 1140AB9938809700B46BB88E46D72A96 ] AliIde C:\WINDOWS\system32\DRIVERS\aliide.sys
17:31:50.0656 2620 AliIde - ok
17:31:50.0671 2620 [ F312B7CEF21EFF52FA23056B9D815FAD ] alim1541 C:\WINDOWS\system32\DRIVERS\alim1541.sys
17:31:50.0765 2620 alim1541 - ok
17:31:50.0781 2620 [ 675C16A3C1F8482F85EE4A97FC0DDE3D ] amdagp C:\WINDOWS\system32\DRIVERS\amdagp.sys
17:31:50.0875 2620 amdagp - ok
17:31:50.0875 2620 [ 79F5ADD8D24BD6893F2903A3E2F3FAD6 ] amsint C:\WINDOWS\system32\DRIVERS\amsint.sys
17:31:50.0921 2620 amsint - ok
17:31:50.0953 2620 [ 421184F91EAE5C6E78E653C6B32AAE84 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
17:31:51.0031 2620 AppMgmt - ok
17:31:51.0046 2620 [ F0D692B0BFFB46E30EB3CEA168BBC49F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys
17:31:51.0156 2620 Arp1394 - ok
17:31:51.0171 2620 [ 62D318E9A0C8FC9B780008E724283707 ] asc C:\WINDOWS\system32\DRIVERS\asc.sys
17:31:51.0265 2620 asc - ok
17:31:51.0281 2620 [ 69EB0CC7714B32896CCBFD5EDCBEA447 ] asc3350p C:\WINDOWS\system32\DRIVERS\asc3350p.sys
17:31:51.0328 2620 asc3350p - ok
17:31:51.0328 2620 [ 5D8DE112AA0254B907861E9E9C31D597 ] asc3550 C:\WINDOWS\system32\DRIVERS\asc3550.sys
17:31:51.0437 2620 asc3550 - ok
17:31:51.0531 2620 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
17:31:51.0546 2620 aspnet_state - ok
17:31:51.0578 2620 [ 02000ABF34AF4C218C35D257024807D6 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
17:31:51.0687 2620 AsyncMac - ok
17:31:51.0718 2620 [ CDFE4411A69C224BD1D11B2DA92DAC51 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
17:31:51.0828 2620 atapi - ok
17:31:51.0843 2620 Atdisk - ok
17:31:51.0906 2620 [ 55C649966C7DC3103CC30EA55ED94B7A ] Ati HotKey Poller C:\WINDOWS\system32\Ati2evxx.exe
17:31:51.0953 2620 Ati HotKey Poller - ok
17:31:52.0046 2620 [ 44B7C4AA916DB5C995105704BEE85966 ] ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
17:31:52.0171 2620 ati2mtag - ok
17:31:52.0218 2620 [ EC88DA854AB7D7752EC8BE11A741BB7F ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
17:31:52.0312 2620 Atmarpc - ok
17:31:52.0359 2620 [ 40D78F514C8588EF12EC718D2AF0FC4E ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
17:31:52.0468 2620 AudioSrv - ok
17:31:52.0484 2620 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
17:31:52.0578 2620 audstub - ok
17:31:52.0609 2620 [ 8BE661C16FBF84A73BCEC84B6B4A9DB5 ] Avgfwdx C:\WINDOWS\system32\DRIVERS\avgfwdx.sys
17:31:52.0625 2620 Avgfwdx - ok
17:31:52.0625 2620 [ 8BE661C16FBF84A73BCEC84B6B4A9DB5 ] Avgfwfd C:\WINDOWS\system32\DRIVERS\avgfwdx.sys
17:31:52.0625 2620 Avgfwfd - ok
17:31:52.0765 2620 [ BD5D11CEDBCDE4FA97D2387E7069B1FF ] avgfws C:\Program Files\AVG\AVG2012\avgfws.exe
17:31:52.0859 2620 avgfws - ok
17:31:53.0031 2620 [ D67719BCFDE5798F5C30D14EFED3BCAF ] AVGIDSAgent C:\Program Files\AVG\AVG2012\avgidsagent.exe
17:31:53.0187 2620 AVGIDSAgent - ok
17:31:53.0250 2620 [ 1074F787080068C71303B61FAE7E7CA4 ] AVGIDSDriver C:\WINDOWS\system32\DRIVERS\avgidsdriverx.sys
17:31:53.0265 2620 AVGIDSDriver - ok
17:31:53.0296 2620 [ 61A7E0B02F82CFF3DB2445BBE50B3589 ] AVGIDSFilter C:\WINDOWS\system32\DRIVERS\avgidsfilterx.sys
17:31:53.0312 2620 AVGIDSFilter - ok
17:31:53.0328 2620 [ D63D83659EEDF60B3A3E620281A888E5 ] AVGIDSHX C:\WINDOWS\system32\DRIVERS\avgidshx.sys
17:31:53.0343 2620 AVGIDSHX - ok
17:31:53.0343 2620 [ BAF975B72062F53D327788E99D64197E ] AVGIDSShim C:\WINDOWS\system32\DRIVERS\avgidsshimx.sys
17:31:53.0359 2620 AVGIDSShim - ok
17:31:53.0375 2620 [ DDA6A2A18841E4C9172BB85958B8D948 ] Avgldx86 C:\WINDOWS\system32\DRIVERS\avgldx86.sys
17:31:53.0421 2620 Avgldx86 - ok
17:31:53.0421 2620 [ CCDD61545AAEA265977E4B1EFDC74E8C ] Avgmfx86 C:\WINDOWS\system32\DRIVERS\avgmfx86.sys
17:31:53.0437 2620 Avgmfx86 - ok
17:31:53.0437 2620 [ 1FD90B28D2C3100BF4500199C8AD6358 ] Avgrkx86 C:\WINDOWS\system32\DRIVERS\avgrkx86.sys
17:31:53.0453 2620 Avgrkx86 - ok
17:31:53.0484 2620 [ 1263F2554ACE925C237A40B4C568D815 ] Avgtdix C:\WINDOWS\system32\DRIVERS\avgtdix.sys
17:31:53.0500 2620 Avgtdix - ok
17:31:53.0531 2620 [ EA1145DEBCD508FD25BD1E95C4346929 ] avgwd C:\Program Files\AVG\AVG2012\avgwdsvc.exe
17:31:53.0531 2620 avgwd - ok
17:31:53.0562 2620 [ F96038AA1EC4013A93D2420FC689D1E9 ] b57w2k C:\WINDOWS\system32\DRIVERS\b57xp32.sys
17:31:53.0625 2620 b57w2k - ok
17:31:53.0656 2620 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
17:31:53.0781 2620 Beep - ok
17:31:53.0828 2620 [ E774A26610EC92674273486612C11CFC ] BITS C:\WINDOWS\system32\qmgr.dll
17:31:53.0984 2620 BITS - ok
17:31:54.0015 2620 [ F219E27E88107A50544153898DD8178E ] Browser C:\WINDOWS\System32\browser.dll
17:31:54.0125 2620 Browser - ok
17:31:54.0171 2620 [ ECDC40CC54603C711E1A7A1C9255184A ] btaudio C:\WINDOWS\system32\drivers\btaudio.sys
17:31:54.0218 2620 btaudio - ok
17:31:54.0234 2620 [ 58A49BD10E08D3D4333A60DEDCB1CED8 ] BTDriver C:\WINDOWS\system32\DRIVERS\btport.sys
17:31:54.0250 2620 BTDriver - ok
17:31:54.0296 2620 [ 885B6D0F826A216EEE4C3AD883809012 ] BTKRNL C:\WINDOWS\system32\DRIVERS\btkrnl.sys
17:31:54.0343 2620 BTKRNL - ok
17:31:54.0421 2620 [ 49E9ED37FAEC5E8C03E81FD73D3884D6 ] btwdins C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
17:31:54.0437 2620 btwdins - ok
17:31:54.0468 2620 [ B1D350F3F13CF340FCE93912D2BA1EBF ] BTWDNDIS C:\WINDOWS\system32\DRIVERS\btwdndis.sys
17:31:54.0500 2620 BTWDNDIS - ok
17:31:54.0515 2620 [ E48668B4A6A5CF68B33AECAD18EE8E1E ] btwhid C:\WINDOWS\system32\DRIVERS\btwhid.sys
17:31:54.0531 2620 btwhid - ok
17:31:54.0546 2620 [ 57E91E9925976BBC98984EEBAAF1D84C ] BTWUSB C:\WINDOWS\system32\Drivers\btwusb.sys
17:31:54.0609 2620 BTWUSB - ok
17:31:54.0656 2620 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
17:31:54.0765 2620 cbidf - ok
17:31:54.0765 2620 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
17:31:54.0859 2620 cbidf2k - ok
17:31:54.0875 2620 [ 6163ED60B684BAB19D3352AB22FC48B2 ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
17:31:54.0968 2620 CCDECODE - ok
17:31:54.0984 2620 [ F3EC03299634490E97BBCE94CD2954C7 ] cd20xrnt C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
17:31:55.0031 2620 cd20xrnt - ok
17:31:55.0046 2620 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
17:31:55.0156 2620 Cdaudio - ok
17:31:55.0171 2620 [ CD7D5152DF32B47F4E36F710B35AAE02 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
17:31:55.0281 2620 Cdfs - ok
17:31:55.0281 2620 [ AF9C19B3100FE010496B1A27181FBF72 ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
17:31:55.0390 2620 Cdrom - ok
17:31:55.0390 2620 Changer - ok
17:31:55.0437 2620 [ 9E21229E04E1D301BB40222FE4641CB2 ] CiSvc C:\WINDOWS\system32\cisvc.exe
17:31:55.0531 2620 CiSvc - ok
17:31:55.0546 2620 [ D3DC45553C8025338E08A60E95B1B91D ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
17:31:55.0656 2620 ClipSrv - ok
17:31:55.0718 2620 [ 3C4D595E7F9B747325AEF28B4ADCAAE5 ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
17:31:55.0765 2620 clr_optimization_v2.0.50727_32 - ok
17:31:55.0796 2620 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
17:31:55.0843 2620 clr_optimization_v4.0.30319_32 - ok
17:31:55.0921 2620 CLTNetCnService - ok
17:31:55.0953 2620 [ 4266BE808F85826AEDF3C64C1E240203 ] CmBatt C:\WINDOWS\system32\DRIVERS\CmBatt.sys
17:31:56.0062 2620 CmBatt - ok
17:31:56.0078 2620 [ 964D0F042ACA51D5644779EB9D9EE40F ] CmdIde C:\WINDOWS\system32\DRIVERS\cmdide.sys
17:31:56.0187 2620 CmdIde - ok
17:31:56.0203 2620 [ DF1B1A24BF52D0EBC01ED4ECE8979F50 ] Compbatt C:\WINDOWS\system32\DRIVERS\compbatt.sys
17:31:56.0312 2620 Compbatt - ok
17:31:56.0312 2620 COMSysApp - ok
17:31:56.0328 2620 [ 3EE529119EED34CD212A215E8C40D4B6 ] Cpqarray C:\WINDOWS\system32\DRIVERS\cpqarray.sys
17:31:56.0421 2620 Cpqarray - ok
17:31:56.0468 2620 [ 70D2A1756F4B2067658A186C963FCABD ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
17:31:56.0562 2620 CryptSvc - ok
17:31:56.0593 2620 [ E550E7418984B65A78299D248F0A7F36 ] dac2w2k C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
17:31:56.0703 2620 dac2w2k - ok
17:31:56.0734 2620 [ 683789CAA3864EB46125AE86FF677D34 ] dac960nt C:\WINDOWS\system32\DRIVERS\dac960nt.sys
17:31:56.0812 2620 dac960nt - ok
17:31:56.0859 2620 [ C72C15EE57E248C66E57C76CAB086CF2 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
17:31:56.0984 2620 DcomLaunch - ok
17:31:57.0015 2620 [ 562830EFB7CF367FB773FEA5256E67C8 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
17:31:57.0109 2620 Dhcp - ok
17:31:57.0125 2620 [ 00CA44E4534865F8A3B64F7C0984BFF0 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
17:31:57.0218 2620 Disk - ok
17:31:57.0250 2620 [ 060DB81DFB79C8244EB65D10B6C7873F ] DKbFltr C:\WINDOWS\system32\DRIVERS\DKbFltr.sys
17:31:57.0296 2620 DKbFltr - ok
17:31:57.0296 2620 dmadmin - ok
17:31:57.0359 2620 [ E1968EDEC81C430108FEB23AB07BDB14 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
17:31:57.0468 2620 dmboot - ok
17:31:57.0500 2620 [ 1B1520A82E396E46B9AE9FA6B03FF6C6 ] dmio C:\WINDOWS\system32\drivers\dmio.sys
17:31:57.0593 2620 dmio - ok
17:31:57.0593 2620 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
17:31:57.0703 2620 dmload - ok
17:31:57.0734 2620 [ 7B3CA72885923EB947221F17F3E3AC59 ] dmserver C:\WINDOWS\System32\dmserver.dll
17:31:57.0828 2620 dmserver - ok
17:31:57.0843 2620 [ A6F881284AC1150E37D9AE47FF601267 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
17:31:57.0953 2620 DMusic - ok
17:31:57.0968 2620 [ F605B3F5674D67587C4B6C9E92A3E025 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
17:31:58.0078 2620 Dnscache - ok
17:31:58.0109 2620 [ 40F3B93B4E5B0126F2F5C0A7A5E22660 ] dpti2o C:\WINDOWS\system32\DRIVERS\dpti2o.sys
17:31:58.0187 2620 dpti2o - ok
17:31:58.0203 2620 [ 1ED4DBBAE9F5D558DBBA4CC450E3EB2E ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
17:31:58.0312 2620 drmkaud - ok
17:31:58.0375 2620 [ D33EC04D1F0B5F388DE86CCC3333A59F ] eLockService C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
17:31:58.0390 2620 eLockService ( UnsignedFile.Multi.Generic ) - warning
17:31:58.0390 2620 eLockService - detected UnsignedFile.Multi.Generic (1)
17:31:58.0390 2620 [ D68564FCFBDFC04280CDBBB37CF7EF7F ] EpmPsd C:\WINDOWS\system32\drivers\epm-psd.sys
17:31:58.0421 2620 EpmPsd ( UnsignedFile.Multi.Generic ) - warning
17:31:58.0421 2620 EpmPsd - detected UnsignedFile.Multi.Generic (1)
17:31:58.0468 2620 [ 2D0C4A7077F6C68449479F5444C580A7 ] EpmShd C:\WINDOWS\system32\drivers\epm-shd.sys
17:31:58.0484 2620 EpmShd ( UnsignedFile.Multi.Generic ) - warning
17:31:58.0484 2620 EpmShd - detected UnsignedFile.Multi.Generic (1)
17:31:58.0531 2620 [ D6F7428B201E33BC80066B47144CB568 ] ERSvc C:\WINDOWS\System32\ersvc.dll
17:31:58.0609 2620 ERSvc - ok
17:31:58.0656 2620 [ 6E401E61F952FBBF708AFBECEFAFAE81 ] Eventlog C:\WINDOWS\system32\services.exe
17:31:58.0765 2620 Eventlog - ok
17:31:58.0796 2620 [ 972378B907070F64932A87C90A035487 ] EventSystem C:\WINDOWS\system32\es.dll
17:31:58.0921 2620 EventSystem - ok
17:31:58.0984 2620 [ 4C6FA3FD55087B7C35707068723A1710 ] EvtEng C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
17:31:59.0000 2620 EvtEng ( UnsignedFile.Multi.Generic ) - warning
17:31:59.0000 2620 EvtEng - detected UnsignedFile.Multi.Generic (1)
17:31:59.0046 2620 [ 3117F595E9615E04F05A54FC15A03B20 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
17:31:59.0171 2620 Fastfat - ok
17:31:59.0203 2620 [ 8BA76BD2A943F642F267A296A15776D2 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
17:31:59.0296 2620 FastUserSwitchingCompatibility - ok
17:31:59.0343 2620 [ 98328A1049627B72E5770BE009DB6C0A ] Fax C:\WINDOWS\system32\fxssvc.exe
17:31:59.0437 2620 Fax - ok
17:31:59.0453 2620 [ CED2E8396A8838E59D8FD529C680E02C ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys
17:31:59.0562 2620 Fdc - ok
17:31:59.0609 2620 [ E9648254056BCE81A85380C0C3647DC4 ] FETNDIS C:\WINDOWS\system32\DRIVERS\fetnd5.sys
17:31:59.0703 2620 FETNDIS - ok
17:31:59.0718 2620 [ 266DAB58619B17BDF37FABBD48D875CA ] Fips C:\WINDOWS\system32\drivers\Fips.sys
17:31:59.0812 2620 Fips - ok
17:31:59.0828 2620 [ 0DD1DE43115B93F4D85E889D7A86F548 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
17:31:59.0921 2620 Flpydisk - ok
17:31:59.0937 2620 [ 157754F0DF355A9E0A6F54721914F9C6 ] FltMgr C:\WINDOWS\system32\DRIVERS\fltMgr.sys
17:32:00.0046 2620 FltMgr - ok
17:32:00.0062 2620 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
17:32:00.0156 2620 Fs_Rec - ok
17:32:00.0187 2620 [ 4E664D8541DB4A66B73A24257E322E1F ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
17:32:00.0265 2620 Ftdisk - ok
17:32:00.0281 2620 [ 4216CD545E5C30807B560C5DCAA812E6 ] gagp30kx C:\WINDOWS\system32\DRIVERS\gagp30kx.sys
17:32:00.0406 2620 gagp30kx - ok
17:32:00.0421 2620 [ C0F1D4A21DE5A415DF8170616703DEBF ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
17:32:00.0515 2620 Gpc - ok
17:32:00.0515 2620 [ 3FCC124B6E08EE0E9351F717DD136939 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
17:32:00.0578 2620 HDAudBus - ok
17:32:00.0640 2620 [ F59152272782FED8A8197FA788287F68 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
17:32:00.0750 2620 helpsvc - ok
17:32:00.0781 2620 [ D2DCF769E5A70027058AD5BE1F9B55BF ] HidServ C:\WINDOWS\System32\hidserv.dll
17:32:00.0875 2620 HidServ - ok
17:32:00.0921 2620 [ 1DE6783B918F540149AA69943BDFEBA8 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
17:32:01.0031 2620 HidUsb - ok
17:32:01.0062 2620 [ B028377DEA0546A5FCFBA928A8AEFAE0 ] hpn C:\WINDOWS\system32\DRIVERS\hpn.sys
17:32:01.0140 2620 hpn - ok
17:32:01.0187 2620 [ 6A5C4732D6803F84E2987EDD8E4359CE ] HSFHWAZL C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys
17:32:01.0218 2620 HSFHWAZL - ok
17:32:01.0265 2620 [ 21C31273C6CC4826E74BE8AE3B09D4A8 ] HSF_DPV C:\WINDOWS\system32\DRIVERS\HSF_DPV.sys
17:32:01.0343 2620 HSF_DPV - ok
17:32:01.0375 2620 [ C19B522A9AE0BBC3293397F3055E80A1 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
17:32:01.0484 2620 HTTP - ok
17:32:01.0515 2620 [ DA826826C5C9116F47E0CD0CA8CC7C11 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
17:32:01.0609 2620 HTTPFilter - ok
17:32:01.0656 2620 [ 8F09F91B5C91363B77BCD15599570F2C ] i2omgmt C:\WINDOWS\system32\drivers\i2omgmt.sys
17:32:01.0750 2620 i2omgmt - ok
17:32:01.0781 2620 [ ED6BF9E441FDEA13292A6D30A64A24C3 ] i2omp C:\WINDOWS\system32\DRIVERS\i2omp.sys
17:32:01.0875 2620 i2omp - ok
17:32:01.0906 2620 [ 0F42DE9909B5DBF2C48DD1A79D491AF5 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
17:32:02.0000 2620 i8042prt - ok
17:32:02.0078 2620 [ AE38A12F79A4980DDB88F36514F8A1DA ] IAANTMON C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
17:32:02.0093 2620 IAANTMON - ok
17:32:02.0281 2620 [ 12C7F8D581C4A9F126F5F8F5683A1C29 ] ialm C:\WINDOWS\system32\DRIVERS\igxpmp32.sys
17:32:02.0640 2620 ialm - ok
17:32:02.0687 2620 [ 997E8F5939F2D12CD9F2E6B395724C16 ] iaStor C:\WINDOWS\system32\DRIVERS\iaStor.sys
17:32:02.0703 2620 iaStor - ok
17:32:02.0765 2620 [ DAF66902F08796F9C694901660E5A64A ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
17:32:02.0765 2620 IDriverT ( UnsignedFile.Multi.Generic ) - warning
17:32:02.0765 2620 IDriverT - detected UnsignedFile.Multi.Generic (1)
17:32:02.0796 2620 [ F8AA320C6A0409C0380E5D8A99D76EC6 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
17:32:02.0906 2620 Imapi - ok
17:32:02.0937 2620 [ CF9D286B34CB4912F3B28B4972D5CB33 ] ImapiService C:\WINDOWS\system32\imapi.exe
17:32:03.0031 2620 ImapiService - ok
17:32:03.0062 2620 [ 4A40E045FAEE58631FD8D91AFC620719 ] ini910u C:\WINDOWS\system32\DRIVERS\ini910u.sys
17:32:03.0171 2620 ini910u - ok
17:32:03.0218 2620 [ F8F75594C17FE7BCE1B4045BB7199868 ] int15 C:\WINDOWS\system32\drivers\int15.sys
17:32:03.0218 2620 int15 - ok
17:32:03.0296 2620 [ 4D8D5B1C895EA0F2A721B98A7CE198F1 ] int15.sys C:\Acer\Empowering Technology\eRecovery\int15.sys
17:32:03.0312 2620 int15.sys ( UnsignedFile.Multi.Generic ) - warning
17:32:03.0312 2620 int15.sys - detected UnsignedFile.Multi.Generic (1)
17:32:03.0484 2620 [ B45A576AD280DD4F605F58B24CDAAFE1 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys
17:32:03.0812 2620 IntcAzAudAddService - ok
17:32:03.0828 2620 [ EF4FDA4841001A4B98C411797DB8894A ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys
17:32:03.0937 2620 IntelIde - ok
17:32:03.0968 2620 [ 10A3AC0F0DF720AD3C3FD13861D50EB9 ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
17:32:04.0062 2620 intelppm - ok
17:32:04.0078 2620 [ 4448006B6BC60E6C027932CFC38D6855 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
17:32:04.0187 2620 Ip6Fw - ok
17:32:04.0187 2620 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
17:32:04.0281 2620 IpFilterDriver - ok
17:32:04.0281 2620 [ E1EC7F5DA720B640CD8FB8424F1B14BB ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
17:32:04.0375 2620 IpInIp - ok
17:32:04.0406 2620 [ B5A8E215AC29D24D60B4D1250EF05ACE ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
17:32:04.0531 2620 IpNat - ok
17:32:04.0546 2620 [ 64537AA5C003A6AFEEE1DF819062D0D1 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
17:32:04.0656 2620 IPSec - ok
17:32:04.0671 2620 [ 86C204836FEEC22510D434982D4221B8 ] irda C:\WINDOWS\system32\DRIVERS\irda.sys
17:32:04.0718 2620 irda - ok
17:32:04.0734 2620 [ 50708DAA1B1CBB7D6AC1CF8F56A24410 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
17:32:04.0781 2620 IRENUM - ok
17:32:04.0812 2620 [ 8656793679EC90A2A0629DF38884AB80 ] Irmon C:\WINDOWS\System32\irmon.dll
17:32:04.0843 2620 Irmon - ok
17:32:04.0875 2620 [ 1091528512E4DD7ED5FDDCC4DF1C53D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
17:32:04.0968 2620 isapnp - ok
17:32:04.0984 2620 [ 6F877BF8DC01A550CD666F3BEDB2213C ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
17:32:05.0093 2620 Kbdclass - ok
17:32:05.0125 2620 [ D93CAD07C5683DB066B0B2D2D3790EAD ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
17:32:05.0203 2620 kmixer - ok
17:32:05.0218 2620 [ EB7FFE87FD367EA8FCA0506F74A87FBB ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
17:32:05.0328 2620 KSecDD - ok
17:32:05.0359 2620 [ 6D6BDD68B775986577C48A8DF961A05C ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
17:32:05.0453 2620 lanmanserver - ok
17:32:05.0484 2620 [ 69B0569AAE33F0D5057CA0E8577AAF07 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
17:32:05.0578 2620 lanmanworkstation - ok
17:32:05.0578 2620 lbrtfdc - ok
17:32:05.0687 2620 [ 793FF718477345CD5D232C50BED1E452 ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe
17:32:05.0718 2620 LightScribeService ( UnsignedFile.Multi.Generic ) - warning
17:32:05.0718 2620 LightScribeService - detected UnsignedFile.Multi.Generic (1)
17:32:05.0750 2620 [ F9EE6D2AAB0690B34AE35BA9921A1414 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
17:32:05.0843 2620 LmHosts - ok
17:32:05.0875 2620 [ 0CEA2D0D3FA284B85ED5B68365114F76 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
17:32:05.0906 2620 mdmxsdk - ok
17:32:05.0953 2620 [ 8B2FCBD881879B55BE40B41F12FFC431 ] Messenger C:\WINDOWS\System32\msgsvc.dll
17:32:06.0062 2620 Messenger - ok
17:32:06.0078 2620 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
17:32:06.0187 2620 mnmdd - ok
17:32:06.0203 2620 [ 7D137132D6A9B41EF800E59A771ED48C ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
17:32:06.0296 2620 mnmsrvc - ok
17:32:06.0328 2620 [ 60210DEB037846AFE521EBF349964F6B ] Modem C:\WINDOWS\system32\drivers\Modem.sys
17:32:06.0406 2620 Modem - ok
17:32:06.0421 2620 [ B160EC94114715675509115986400FD9 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
17:32:06.0531 2620 Mouclass - ok
17:32:06.0562 2620 [ BB269EBA740737AB749B214D568B6812 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
17:32:06.0656 2620 mouhid - ok
17:32:06.0671 2620 [ 65653F3B4477F3C63E68A9659F85EE2E ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
17:32:06.0781 2620 MountMgr - ok
17:32:06.0812 2620 [ 46297FA8E30A6007F14118FC2B942FBC ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
17:32:06.0828 2620 MozillaMaintenance - ok
17:32:06.0843 2620 [ 3F4BB95E5A44F3BE34824E8E7CAF0737 ] mraid35x C:\WINDOWS\system32\DRIVERS\mraid35x.sys
17:32:06.0937 2620 mraid35x - ok
17:32:06.0937 2620 [ 46EDCC8F2DB2F322C24F48785CB46366 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
17:32:07.0031 2620 MRxDAV - ok
17:32:07.0062 2620 [ 1FD607FC67F7F7C633C3DA65BFC53D18 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
17:32:07.0187 2620 MRxSmb - ok
17:32:07.0218 2620 [ 944A24032AED84C59455B981F6CA1C1A ] MSDTC C:\WINDOWS\system32\msdtc.exe
17:32:07.0312 2620 MSDTC - ok
17:32:07.0328 2620 [ 561B3A4333CA2DBDBA28B5B956822519 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
17:32:07.0421 2620 Msfs - ok
17:32:07.0437 2620 MSIServer - ok
17:32:07.0453 2620 [ AE431A8DD3C1D0D0610CDBAC16057AD0 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
17:32:07.0562 2620 MSKSSRV - ok
17:32:07.0562 2620 [ 13E75FEF9DFEB08EEDED9D0246E1F448 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
17:32:07.0656 2620 MSPCLOCK - ok
17:32:07.0656 2620 [ 1988A33FF19242576C3D0EF9CE785DA7 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
17:32:07.0750 2620 MSPQM - ok
17:32:07.0781 2620 [ 469541F8BFD2B32659D5D463A6714BCE ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
17:32:07.0875 2620 mssmbios - ok
17:32:07.0921 2620 MSSQL$MSSMLBIZ - ok
17:32:07.0953 2620 [ ADAF062116B4E6D96E44D26486A87AF6 ] MSSQLServerADHelper C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe
17:32:07.0968 2620 MSSQLServerADHelper - ok
17:32:07.0968 2620 [ BF13612142995096AB084F2DB7F40F77 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
17:32:08.0078 2620 MSTEE - ok
17:32:08.0093 2620 [ 82035E0F41C2DD05AE41D27FE6CF7DE1 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
17:32:08.0187 2620 Mup - ok
17:32:08.0218 2620 [ 5C8DC6429C43DC6177C1FA5B76290D1A ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
17:32:08.0296 2620 NABTSFEC - ok
17:32:08.0328 2620 [ 558635D3AF1C7546D26067D5D9B6959E ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
17:32:08.0437 2620 NDIS - ok
17:32:08.0437 2620 [ 520CE427A8B298F54112857BCF6BDE15 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys
17:32:08.0546 2620 NdisIP - ok
17:32:08.0578 2620 [ 08D43BBDACDF23F34D79E44ED35C1B4C ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
17:32:08.0656 2620 NdisTapi - ok
17:32:08.0687 2620 [ 34D6CD56409DA9A7ED573E1C90A308BF ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
17:32:08.0765 2620 Ndisuio - ok
17:32:08.0796 2620 [ 0B90E255A9490166AB368CD55A529893 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
17:32:08.0906 2620 NdisWan - ok
17:32:08.0921 2620 [ 59FC3FB44D2669BC144FD87826BB571F ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
17:32:09.0031 2620 NDProxy - ok
17:32:09.0062 2620 [ 3A2ACA8FC1D7786902CA434998D7CEB4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
17:32:09.0156 2620 NetBIOS - ok
17:32:09.0171 2620 [ 0C80E410CD2F47134407EE7DD19CC86B ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
17:32:09.0265 2620 NetBT - ok
17:32:09.0296 2620 [ 818053225BF4AAC5F0F718001E492F70 ] NetDDE C:\WINDOWS\system32\netdde.exe
17:32:09.0390 2620 NetDDE - ok
17:32:09.0390 2620 [ 818053225BF4AAC5F0F718001E492F70 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
17:32:09.0484 2620 NetDDEdsdm - ok
17:32:09.0515 2620 [ 82A362FE1D4980B71B588D9C10748511 ] Netlogon C:\WINDOWS\system32\lsass.exe
17:32:09.0625 2620 Netlogon - ok
17:32:09.0640 2620 [ AF342D2781225A8769686E0D47E3123E ] Netman C:\WINDOWS\System32\netman.dll
17:32:09.0734 2620 Netman - ok
17:32:09.0765 2620 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
17:32:09.0781 2620 NetTcpPortSharing - ok
17:32:09.0890 2620 [ 18B2D3E11ED7A3C898ADE6A6692B6929 ] NETw4x32 C:\WINDOWS\system32\DRIVERS\NETw4x32.sys
17:32:10.0046 2620 NETw4x32 - ok
17:32:10.0078 2620 [ 5C5C53DB4FEF16CF87B9911C7E8C6FBC ] NIC1394 C:\WINDOWS\system32\DRIVERS\nic1394.sys
17:32:10.0171 2620 NIC1394 - ok
17:32:10.0218 2620 [ 64C078BD4EFD441C3F159EDC5EA4420A ] Nla C:\WINDOWS\System32\mswsock.dll
17:32:10.0312 2620 Nla - ok
17:32:10.0343 2620 [ D21FEE8DB254BA762656878168AC1DB6 ] NPF C:\WINDOWS\system32\drivers\npf.sys
17:32:10.0359 2620 NPF ( UnsignedFile.Multi.Generic ) - warning
17:32:10.0359 2620 NPF - detected UnsignedFile.Multi.Generic (1)
17:32:10.0390 2620 [ 4F601BCB8F64EA3AC0994F98FED03F8E ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
17:32:10.0484 2620 Npfs - ok
17:32:10.0500 2620 [ 6216798D29C3BA9D0D6F40BBBAB694A5 ] NSCIRDA C:\WINDOWS\system32\DRIVERS\nscirda.sys
17:32:10.0546 2620 NSCIRDA - ok
17:32:10.0609 2620 [ 19A811EF5F1ED5C926A028CE107FF1AF ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
17:32:10.0687 2620 Ntfs - ok
17:32:10.0703 2620 [ 7F1C1F78D709C4A54CBB46EDE7E0B48D ] NTIDrvr C:\WINDOWS\system32\DRIVERS\NTIDrvr.sys
17:32:10.0703 2620 NTIDrvr ( UnsignedFile.Multi.Generic ) - warning
17:32:10.0703 2620 NTIDrvr - detected UnsignedFile.Multi.Generic (1)
17:32:10.0734 2620 [ 82A362FE1D4980B71B588D9C10748511 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
17:32:10.0828 2620 NtLmSsp - ok
17:32:10.0859 2620 [ D8D2B13BA93AE830B1A637DF571D1195 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
17:32:10.0968 2620 NtmsSvc - ok
17:32:11.0000 2620 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
17:32:11.0093 2620 Null - ok
17:32:11.0125 2620 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
17:32:11.0234 2620 NwlnkFlt - ok
17:32:11.0234 2620 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
17:32:11.0328 2620 NwlnkFwd - ok
17:32:11.0421 2620 [ 84DE1DD996B48B05ACE31AD015FA108A ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
17:32:11.0453 2620 odserv - ok
17:32:11.0468 2620 [ 0951DB8E5823EA366B0E408D71E1BA2A ] ohci1394 C:\WINDOWS\system32\DRIVERS\ohci1394.sys
17:32:11.0578 2620 ohci1394 - ok
17:32:11.0609 2620 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
17:32:11.0625 2620 ose - ok
17:32:11.0687 2620 [ 01907300EB52206B06FACB9608F369A9 ] PanService C:\Program Files\PANDORA.TV\PanService\PandoraService.exe
17:32:11.0718 2620 PanService - ok
17:32:11.0750 2620 [ 76A18CAA2FEFB28A4CED38D76837E86E ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
17:32:11.0843 2620 Parport - ok
17:32:11.0859 2620 [ 3334430C29DC338092F79C38EF7B4CD0 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
17:32:11.0937 2620 PartMgr - ok
17:32:11.0953 2620 [ 1FAE19D0457176318BBA4A8795656EBC ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
17:32:12.0031 2620 ParVdm - ok
17:32:12.0046 2620 [ B7979F37BB7B9DF2230046134955E6E7 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
17:32:12.0140 2620 PCI - ok
17:32:12.0140 2620 PCIDump - ok
17:32:12.0156 2620 [ 2DA4EC85E0EA7A45C6B2A05820492D5A ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
17:32:12.0234 2620 PCIIde - ok
17:32:12.0265 2620 [ 90505755634407D4EF4C6DEA60FC1DF9 ] Pcmcia C:\WINDOWS\system32\DRIVERS\pcmcia.sys
17:32:12.0375 2620 Pcmcia - ok
17:32:12.0375 2620 PDCOMP - ok
17:32:12.0406 2620 PDFRAME - ok
17:32:12.0421 2620 PDRELI - ok
17:32:12.0437 2620 PDRFRAME - ok
17:32:12.0468 2620 [ 6C14B9C19BA84F73D3A86DBA11133101 ] perc2 C:\WINDOWS\system32\DRIVERS\perc2.sys
17:32:12.0562 2620 perc2 - ok
17:32:12.0578 2620 [ F50F7C27F131AFE7BEBA13E14A3B9416 ] perc2hib C:\WINDOWS\system32\DRIVERS\perc2hib.sys
17:32:12.0671 2620 perc2hib - ok
17:32:12.0750 2620 [ 6E401E61F952FBBF708AFBECEFAFAE81 ] PlugPlay C:\WINDOWS\system32\services.exe
17:32:12.0843 2620 PlugPlay - ok
17:32:12.0843 2620 [ 82A362FE1D4980B71B588D9C10748511 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
17:32:12.0937 2620 PolicyAgent - ok
17:32:12.0968 2620 [ 1C5CC65AAC0783C344F16353E60B72AC ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
17:32:13.0046 2620 PptpMiniport - ok
17:32:13.0062 2620 [ 9A10E4FD13824823DA50D4758BD0A645 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
17:32:13.0156 2620 Processor - ok
17:32:13.0171 2620 [ 82A362FE1D4980B71B588D9C10748511 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
17:32:13.0250 2620 ProtectedStorage - ok
17:32:13.0281 2620 [ 48671F327553DCF1D27F6197F622A668 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
17:32:13.0390 2620 PSched - ok
17:32:13.0421 2620 [ 32338659E9DA79055406F2157CD0E1DF ] psdfilter C:\WINDOWS\system32\Drivers\psdfilter.sys
17:32:13.0421 2620 psdfilter ( UnsignedFile.Multi.Generic ) - warning
17:32:13.0421 2620 psdfilter - detected UnsignedFile.Multi.Generic (1)
17:32:13.0437 2620 [ 4C7947014674DF40B7AF52342A9157D0 ] psdvdisk C:\WINDOWS\system32\Drivers\psdvdisk.sys
17:32:13.0437 2620 psdvdisk ( UnsignedFile.Multi.Generic ) - warning
17:32:13.0437 2620 psdvdisk - detected UnsignedFile.Multi.Generic (1)
17:32:13.0453 2620 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
17:32:13.0546 2620 Ptilink - ok
17:32:13.0562 2620 [ 0A63FB54039EB5662433CABA3B26DBA7 ] ql1080 C:\WINDOWS\system32\DRIVERS\ql1080.sys
17:32:13.0671 2620 ql1080 - ok
17:32:13.0671 2620 [ 6503449E1D43A0FF0201AD5CB1B8C706 ] Ql10wnt C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
17:32:13.0781 2620 Ql10wnt - ok
17:32:13.0781 2620 [ 156ED0EF20C15114CA097A34A30D8A01 ] ql12160 C:\WINDOWS\system32\DRIVERS\ql12160.sys
17:32:13.0890 2620 ql12160 - ok
17:32:13.0890 2620 [ 70F016BEBDE6D29E864C1230A07CC5E6 ] ql1240 C:\WINDOWS\system32\DRIVERS\ql1240.sys
17:32:13.0984 2620 ql1240 - ok
17:32:13.0984 2620 [ 907F0AEEA6BC451011611E732BD31FCF ] ql1280 C:\WINDOWS\system32\DRIVERS\ql1280.sys
17:32:14.0078 2620 ql1280 - ok
17:32:14.0093 2620 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
17:32:14.0203 2620 RasAcd - ok
17:32:14.0234 2620 [ E68B6F9A726A444059705AB43B5656D1 ] RasAuto C:\WINDOWS\System32\rasauto.dll
17:32:14.0328 2620 RasAuto - ok
17:32:14.0359 2620 [ 0207D26DDF796A193CCD9F83047BB5FC ] Rasirda C:\WINDOWS\system32\DRIVERS\rasirda.sys
17:32:14.0406 2620 Rasirda - ok
17:32:14.0406 2620 [ 98FAEB4A4DCF812BA1C6FCA4AA3E115C ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
17:32:14.0500 2620 Rasl2tp - ok
17:32:14.0515 2620 [ 6E519D777C91E90592403C9F981FDF03 ] RasMan C:\WINDOWS\System32\rasmans.dll
17:32:14.0609 2620 RasMan - ok
17:32:14.0609 2620 [ 7306EEED8895454CBED4669BE9F79FAA ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
17:32:14.0703 2620 RasPppoe - ok
17:32:14.0734 2620 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
17:32:14.0828 2620 Raspti - ok
17:32:14.0859 2620 [ 29D66245ADBA878FFF574CD66ABD2884 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
17:32:14.0968 2620 Rdbss - ok
17:32:15.0000 2620 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
17:32:15.0078 2620 RDPCDD - ok
17:32:15.0109 2620 [ A2CAE2C60BC37E0751EF9DDA7CEAF4AD ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
17:32:15.0218 2620 rdpdr - ok
17:32:15.0250 2620 [ D4F5643D7714EF499AE9527FDCD50894 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
17:32:15.0343 2620 RDPWD - ok
17:32:15.0375 2620 [ 125ACF258DA9633F748131A0E0185AF3 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
17:32:15.0468 2620 RDSessMgr - ok
17:32:15.0484 2620 [ ABA13D33E1F888C9A68599A48A8840D6 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
17:32:15.0578 2620 redbook - ok
17:32:15.0625 2620 [ 8AC155995F5D10FC0D3AD949A1A68075 ] RegSrvc C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
17:32:15.0640 2620 RegSrvc ( UnsignedFile.Multi.Generic ) - warning
17:32:15.0640 2620 RegSrvc - detected UnsignedFile.Multi.Generic (1)
17:32:15.0687 2620 [ EB5E1A601E5A1908A87E4D5A41803D98 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
17:32:15.0781 2620 RemoteAccess - ok
17:32:15.0812 2620 [ 5B21208FCF8970BB61FE98E19D828714 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
17:32:15.0906 2620 RemoteRegistry - ok
17:32:15.0921 2620 [ 2AF094B1CE4725E4551F38FDA2348637 ] RichVideo C:\Program Files\CyberLink\Shared Files\RichVideo.exe
17:32:15.0953 2620 RichVideo ( UnsignedFile.Multi.Generic ) - warning
17:32:15.0953 2620 RichVideo - detected UnsignedFile.Multi.Generic (1)
17:32:16.0000 2620 [ 67C607857CCD6EBFFE768DAD5B2CA239 ] rpcapd C:\Program Files\WinPcap\rpcapd.exe
17:32:16.0000 2620 rpcapd ( UnsignedFile.Multi.Generic ) - warning
17:32:16.0000 2620 rpcapd - detected UnsignedFile.Multi.Generic (1)
17:32:16.0031 2620 [ C8A3B668985D61249F2DC71716C58DE8 ] RpcLocator C:\WINDOWS\system32\locator.exe
17:32:16.0125 2620 RpcLocator - ok
17:32:16.0156 2620 [ C72C15EE57E248C66E57C76CAB086CF2 ] RpcSs C:\WINDOWS\system32\rpcss.dll
17:32:16.0250 2620 RpcSs - ok
17:32:16.0296 2620 [ 09AB2E71E58B078038E3BFDBA7FFC984 ] RSVP C:\WINDOWS\system32\rsvp.exe
17:32:16.0390 2620 RSVP - ok
17:32:16.0453 2620 [ 131D50F081D2E29EBD1365B21F6B9736 ] S24EventMonitor C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
17:32:16.0500 2620 S24EventMonitor ( UnsignedFile.Multi.Generic ) - warning
17:32:16.0500 2620 S24EventMonitor - detected UnsignedFile.Multi.Generic (1)
17:32:16.0546 2620 [ E2C6ABCBEFB1D44F6AAEB1CD5D6062D4 ] s24trans C:\WINDOWS\system32\DRIVERS\s24trans.sys
17:32:16.0546 2620 s24trans ( UnsignedFile.Multi.Generic ) - warning
17:32:16.0546 2620 s24trans - detected UnsignedFile.Multi.Generic (1)
17:32:16.0578 2620 [ 82A362FE1D4980B71B588D9C10748511 ] SamSs C:\WINDOWS\system32\lsass.exe
17:32:16.0671 2620 SamSs - ok
17:32:16.0703 2620 [ C177354E995CC1AA1F767BCD9980434A ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
17:32:16.0796 2620 SCardSvr - ok
17:32:16.0828 2620 [ 29AC93307C6182DBE336BCA314947F28 ] Schedule C:\WINDOWS\system32\schedsvc.dll
17:32:16.0921 2620 Schedule - ok
17:32:16.0937 2620 [ 02FC71B020EC8700EE8A46C58BC6F276 ] sdbus C:\WINDOWS\system32\DRIVERS\sdbus.sys
17:32:17.0031 2620 sdbus - ok
17:32:17.0046 2620 [ D26E26EA516450AF9D072635C60387F4 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
17:32:17.0109 2620 Secdrv - ok
17:32:17.0125 2620 [ C76CB8A133374FAC6805F83FF7B7DA03 ] seclogon C:\WINDOWS\System32\seclogon.dll
17:32:17.0218 2620 seclogon - ok
17:32:17.0250 2620 [ 220AD85BA9C5B3011296354011B901CC ] SENS C:\WINDOWS\system32\sens.dll
17:32:17.0328 2620 SENS - ok
17:32:17.0375 2620 [ C1DDBC85251551A840212999DA3D95F3 ] Serial C:\WINDOWS\system32\drivers\Serial.sys
17:32:17.0468 2620 Serial - ok
17:32:17.0515 2620 [ 0D13B6DF6E9E101013A7AFB0CE629FE0 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
17:32:17.0593 2620 Sfloppy - ok
17:32:17.0640 2620 [ 6A93501BCDEBF159109429B022C0FF83 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
17:32:17.0734 2620 SharedAccess - ok
17:32:17.0750 2620 [ 8BA76BD2A943F642F267A296A15776D2 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
17:32:17.0843 2620 ShellHWDetection - ok
17:32:17.0843 2620 Simbad - ok
17:32:17.0890 2620 [ 732D859B286DA692119F286B21A2A114 ] sisagp C:\WINDOWS\system32\DRIVERS\sisagp.sys
17:32:17.0984 2620 sisagp - ok
17:32:18.0000 2620 [ 5CAEED86821FA2C6139E32E9E05CCDC9 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys
17:32:18.0093 2620 SLIP - ok
17:32:18.0187 2620 [ 0302BC619D4A723317E7F8EB0C362BD3 ] SNP2UVC C:\WINDOWS\system32\DRIVERS\snp2uvc.sys
17:32:18.0312 2620 SNP2UVC - ok
17:32:18.0343 2620 [ 83C0F71F86D3BDAF915685F3D568B20E ] Sparrow C:\WINDOWS\system32\DRIVERS\sparrow.sys
17:32:18.0390 2620 Sparrow - ok
17:32:18.0421 2620 [ 8E186B8F23295D1E42C573B82B80D548 ] splitter C:\WINDOWS\system32\drivers\splitter.sys
17:32:18.0515 2620 splitter - ok
17:32:18.0546 2620 [ 21B6FAA88044A41640E03EBB68BE93E8 ] Spooler C:\WINDOWS\system32\spoolsv.exe
17:32:18.0640 2620 Spooler - ok
17:32:18.0671 2620 [ 5673E79BBB62A4C35B10D821FF1B4ACA ] SQLBrowser C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
17:32:18.0687 2620 SQLBrowser - ok
17:32:18.0703 2620 [ 9263C8898732E2B890F7E954E7729AB7 ] SQLWriter C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
17:32:18.0703 2620 SQLWriter - ok
17:32:18.0734 2620 [ A74035EA526DB97D9D50D2143A55F5CF ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
17:32:18.0796 2620 sr - ok
17:32:18.0828 2620 [ 3CD57F31A64D32FDB28918B16D1E6AAC ] srservice C:\WINDOWS\system32\srsvc.dll
17:32:18.0890 2620 srservice - ok
17:32:18.0921 2620 [ 20B7E396720353E4117D64D9DCB926CA ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
17:32:19.0015 2620 Srv - ok
17:32:19.0046 2620 [ 88C28F53F53438DAFCD95E99C837C61E ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
17:32:19.0093 2620 SSDPSRV - ok
17:32:19.0125 2620 [ 0645CCDDDD27F96EEA3534C1DEF736D9 ] stisvc C:\WINDOWS\system32\wiaservc.dll
17:32:19.0218 2620 stisvc - ok
17:32:19.0234 2620 [ 284C57DF5DC7ABCA656BC2B96A667AFB ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys
17:32:19.0328 2620 streamip - ok
17:32:19.0343 2620 [ 03C1BAE4766E2450219D20B993D6E046 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
17:32:19.0437 2620 swenum - ok
17:32:19.0453 2620 [ 94ABC808FC4B6D7D2BBF42B85E25BB4D ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
17:32:19.0531 2620 swmidi - ok
17:32:19.0546 2620 SwPrv - ok
17:32:19.0562 2620 [ 1FF3217614018630D0A6758630FC698C ] symc810 C:\WINDOWS\system32\DRIVERS\symc810.sys
17:32:19.0671 2620 symc810 - ok
17:32:19.0703 2620 [ 070E001D95CF725186EF8B20335F933C ] symc8xx C:\WINDOWS\system32\DRIVERS\symc8xx.sys
17:32:19.0796 2620 symc8xx - ok
17:32:19.0812 2620 [ 80AC1C4ABBE2DF3B738BF15517A51F2C ] sym_hi C:\WINDOWS\system32\DRIVERS\sym_hi.sys
17:32:19.0921 2620 sym_hi - ok
17:32:19.0921 2620 [ BF4FAB949A382A8E105F46EBB4937058 ] sym_u3 C:\WINDOWS\system32\DRIVERS\sym_u3.sys
17:32:20.0015 2620 sym_u3 - ok
17:32:20.0046 2620 [ CC5DA243CFDAC58FC0408F7CE24084C5 ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys
17:32:20.0078 2620 SynTP - ok
17:32:20.0109 2620 [ 650AD082D46BAC0E64C9C0E0928492FD ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
17:32:20.0187 2620 sysaudio - ok
17:32:20.0218 2620 [ D9C9ECFF4904E6151525C533AEEDF8F4 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
17:32:20.0312 2620 SysmonLog - ok
17:32:20.0328 2620 [ 37162D29CD61519E6F5EA0DE99786FF6 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
17:32:20.0421 2620 TapiSrv - ok
17:32:20.0453 2620 [ 9F4B36614A0FC234525BA224957DE55C ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
17:32:20.0562 2620 Tcpip - ok
17:32:20.0593 2620 [ 38D437CF2D98965F239B0ABCD66DCB0F ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
17:32:20.0687 2620 TDPIPE - ok
17:32:20.0718 2620 [ ED0580AF02502D00AD8C4C066B156BE9 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
17:32:20.0812 2620 TDTCP - ok
17:32:20.0843 2620 [ A540A99C281D933F3D69D55E48727F47 ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
17:32:20.0937 2620 TermDD - ok
17:32:20.0968 2620 [ 2F5919F2F6EE7A845893D9C3AA2BC56A ] TermService C:\WINDOWS\System32\termsrv.dll
17:32:21.0062 2620 TermService - ok
17:32:21.0078 2620 [ 8BA76BD2A943F642F267A296A15776D2 ] Themes C:\WINDOWS\System32\shsvcs.dll
17:32:21.0171 2620 Themes - ok
17:32:21.0187 2620 [ 78213F01CE781F93180BEF5EB5B3AD81 ] tifm21 C:\WINDOWS\system32\drivers\tifm21.sys
17:32:21.0234 2620 tifm21 - ok
17:32:21.0250 2620 [ 535C2FB97336BAFA509F4783DD1E5746 ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
17:32:21.0328 2620 TlntSvr - ok
17:32:21.0343 2620 [ FD4FD7D6FDA5C019ED86025D7BE1510F ] TosIde C:\WINDOWS\system32\DRIVERS\toside.sys
17:32:21.0437 2620 TosIde - ok
17:32:21.0468 2620 [ 4DCE17221B1A87FB47E36842F3E38753 ] TrkWks C:\WINDOWS\system32\trkwks.dll
17:32:21.0562 2620 TrkWks - ok
17:32:21.0609 2620 [ 97DD70FECA64FB4F63DE7BB7E66A80B1 ] tvicport C:\WINDOWS\system32\drivers\tvicport.sys
17:32:21.0609 2620 tvicport ( UnsignedFile.Multi.Generic ) - warning
17:32:21.0609 2620 tvicport - detected UnsignedFile.Multi.Generic (1)
17:32:21.0656 2620 [ E0C67BE430C6DE490D6CCAECFA071F9E ] UBHelper C:\WINDOWS\system32\drivers\UBHelper.sys
17:32:21.0656 2620 UBHelper ( UnsignedFile.Multi.Generic ) - warning
17:32:21.0656 2620 UBHelper - detected UnsignedFile.Multi.Generic (1)
17:32:21.0687 2620 [ 12F70256F140CD7D52C58C7048FDE657 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
17:32:21.0765 2620 Udfs - ok
17:32:21.0781 2620 [ 1B698A51CD528D8DA4FFAED66DFC51B9 ] ultra C:\WINDOWS\system32\DRIVERS\ultra.sys
17:32:21.0812 2620 ultra - ok
17:32:21.0843 2620 [ CED744117E91BDC0BEB810F7D8608183 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
17:32:21.0906 2620 Update - ok
17:32:21.0953 2620 [ 0C0C2C77C6B52181369594F2AA36AF40 ] upnphost C:\WINDOWS\System32\upnphost.dll
17:32:22.0000 2620 upnphost - ok
17:32:22.0000 2620 [ 6148A3BA4D9CC628357FC92014FEA30E ] UPS C:\WINDOWS\System32\ups.exe
17:32:22.0093 2620 UPS - ok
17:32:22.0140 2620 [ BFFD9F120CC63BCBAA3D840F3EEF9F79 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
17:32:22.0234 2620 usbccgp - ok
17:32:22.0250 2620 [ B0D7020386C7187EF9C5A9643F289CD3 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
17:32:22.0296 2620 usbehci - ok
17:32:22.0312 2620 [ ACE960E54148821E8E48F5D191562C28 ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
17:32:22.0343 2620 usbhub - ok
17:32:22.0359 2620 [ 6CD7B22193718F1D17A47A1CD6D37E75 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
17:32:22.0453 2620 USBSTOR - ok
17:32:22.0484 2620 [ FF6E4FDEB82DC228EFA490336409C6BD ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
17:32:22.0515 2620 usbuhci - ok
17:32:22.0546 2620 [ 8968FF3973A883C49E8B564200F565B9 ] usbvideo C:\WINDOWS\system32\Drivers\usbvideo.sys
17:32:22.0640 2620 usbvideo - ok
17:32:22.0656 2620 [ 8A60EDD72B4EA5AEA8202DAF0E427925 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
17:32:22.0765 2620 VgaSave - ok
17:32:22.0781 2620 [ D92E7C8A30CFD14D8E15B5F7F032151B ] viaagp C:\WINDOWS\system32\DRIVERS\viaagp.sys
17:32:22.0859 2620 viaagp - ok
17:32:22.0890 2620 [ 59CB1338AD3654417BEA49636457F65D ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
17:32:22.0968 2620 ViaIde - ok
17:32:23.0000 2620 [ CD8CCE067F7E9CBD762C00BDDDECAA34 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
17:32:23.0078 2620 VolSnap - ok
17:32:23.0125 2620 [ 043539881667BB37B07524032D6FFC3E ] VSS C:\WINDOWS\System32\vssvc.exe
17:32:23.0187 2620 VSS - ok
17:32:23.0265 2620 [ 3B142C409909FB05215A3DC5C8EC0EB0 ] vToolbarUpdater11.0.2 C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\11.0.2\ToolbarUpdater.exe
17:32:23.0312 2620 vToolbarUpdater11.0.2 - ok
17:32:23.0343 2620 [ 2CEEBB402187AE56B585701F3D191FB3 ] W32Time C:\WINDOWS\system32\w32time.dll
17:32:23.0421 2620 W32Time - ok
17:32:23.0453 2620 [ 984EF0B9788ABF89974CFED4BFBAACBC ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
17:32:23.0562 2620 Wanarp - ok
17:32:23.0562 2620 WDICA - ok
17:32:23.0625 2620 [ 2797F33EBF50466020C430EE4F037933 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
17:32:23.0718 2620 wdmaud - ok
17:32:23.0750 2620 [ 3791ADF1D3466AC6B4B662D3F79CBFEC ] WebClient C:\WINDOWS\System32\webclnt.dll
17:32:23.0859 2620 WebClient - ok
17:32:23.0906 2620 [ 307D248F97835B6879BDD361086924FE ] winachsf C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
17:32:23.0953 2620 winachsf - ok
17:32:24.0031 2620 [ E12084EA622BDF2262C637BEF15DD85C ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
17:32:24.0140 2620 winmgmt - ok
17:32:24.0218 2620 [ E02E913B3841717A890A644EE167B9A5 ] WmdmPmSN C:\WINDOWS\system32\mspmsnsv.dll
17:32:24.0296 2620 WmdmPmSN - ok
17:32:24.0343 2620 [ 0CDC4A0C6B820FAD99FB4CA74CD0C476 ] Wmi C:\WINDOWS\System32\advapi32.dll
17:32:24.0468 2620 Wmi - ok
17:32:24.0484 2620 [ AE2C8544E747C20062DB27456EA2D67A ] WmiAcpi C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
17:32:24.0578 2620 WmiAcpi - ok
17:32:24.0609 2620 [ BCD21B989F0FD4ACE78287FC01B4693D ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
17:32:24.0718 2620 WmiApSrv - ok
17:32:24.0828 2620 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
17:32:24.0859 2620 WPFFontCache_v0400 - ok
17:32:24.0937 2620 [ 4ADED1ADEF25041D9827F9A79C0FDA13 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
17:32:25.0046 2620 wscsvc - ok
17:32:25.0078 2620 [ D5842484F05E12121C511AA93F6439EC ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
17:32:25.0156 2620 WSTCODEC - ok
17:32:25.0171 2620 [ 21F5169CA14E0B25C757644456F637DF ] wuauserv C:\WINDOWS\system32\wuauserv.dll
17:32:25.0265 2620 wuauserv - ok
17:32:25.0296 2620 [ 325CEDEF696EF4B649DDCD3968D085C9 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
17:32:25.0390 2620 WZCSVC - ok
17:32:25.0406 2620 xcpip - ok
17:32:25.0468 2620 [ 9B835D4C64860B155A1701D5092EC9E4 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
17:32:25.0562 2620 xmlprov - ok
17:32:25.0562 2620 xpsec - ok
17:32:25.0609 2620 [ 40AC8590CC9006DBB99FFCB37879D4C6 ] zntport C:\WINDOWS\system32\drivers\zntport.sys
17:32:25.0640 2620 zntport ( UnsignedFile.Multi.Generic ) - warning
17:32:25.0640 2620 zntport - detected UnsignedFile.Multi.Generic (1)
17:32:25.0703 2620 ================ Scan global ===============================
17:32:25.0750 2620 [ F642F3368D2839798DA79E7BA9218481 ] C:\WINDOWS\system32\basesrv.dll
17:32:25.0781 2620 [ 5869828D4A83BA8F9519630C40044C87 ] C:\WINDOWS\system32\winsrv.dll
17:32:25.0796 2620 [ 5869828D4A83BA8F9519630C40044C87 ] C:\WINDOWS\system32\winsrv.dll
17:32:25.0812 2620 [ 6E401E61F952FBBF708AFBECEFAFAE81 ] C:\WINDOWS\system32\services.exe
17:32:25.0812 2620 [Global] - ok
17:32:25.0812 2620 ================ Scan MBR ==================================
17:32:25.0843 2620 [ 99852D5C3A78447C3D6D82B6155FE848 ] \Device\Harddisk0\DR0
17:32:28.0640 2620 \Device\Harddisk0\DR0 - ok
17:32:28.0640 2620 ================ Scan VBR ==================================
17:32:28.0671 2620 [ EA7891A15338D5D96A5C6E0178A7E3A4 ] \Device\Harddisk0\DR0\Partition1
17:32:28.0671 2620 \Device\Harddisk0\DR0\Partition1 - ok
17:32:28.0703 2620 [ 74A7C5DC33FAAF4CED75D2A915371B77 ] \Device\Harddisk0\DR0\Partition2
17:32:28.0703 2620 \Device\Harddisk0\DR0\Partition2 - ok
17:32:28.0703 2620 ================ Scan active images ========================
17:32:28.0703 2620 [ 10A3AC0F0DF720AD3C3FD13861D50EB9 ] C:\WINDOWS\system32\drivers\intelppm.sys
17:32:28.0703 2620 C:\WINDOWS\system32\drivers\intelppm.sys - ok
17:32:28.0718 2620 [ AE2C8544E747C20062DB27456EA2D67A ] C:\WINDOWS\system32\drivers\wmiacpi.sys
17:32:28.0718 2620 C:\WINDOWS\system32\drivers\wmiacpi.sys - ok
17:32:28.0734 2620 [ D5A9D123F5ED7C9965A481BD20CF66D8 ] C:\WINDOWS\system32\drivers\videoprt.sys
17:32:28.0734 2620 C:\WINDOWS\system32\drivers\videoprt.sys - ok
17:32:28.0734 2620 [ 44B7C4AA916DB5C995105704BEE85966 ] C:\WINDOWS\system32\drivers\ati2mtag.sys
17:32:28.0734 2620 C:\WINDOWS\system32\drivers\ati2mtag.sys - ok
17:32:28.0750 2620 [ 6A6E905B6761EDF5BC5245A335950B3D ] C:\WINDOWS\system32\drivers\usbport.sys
17:32:28.0750 2620 C:\WINDOWS\system32\drivers\usbport.sys - ok
17:32:28.0750 2620 [ F96038AA1EC4013A93D2420FC689D1E9 ] C:\WINDOWS\system32\drivers\b57xp32.sys
17:32:28.0750 2620 C:\WINDOWS\system32\drivers\b57xp32.sys - ok
17:32:28.0765 2620 [ 3FCC124B6E08EE0E9351F717DD136939 ] C:\WINDOWS\system32\drivers\Hdaudbus.sys
17:32:28.0765 2620 C:\WINDOWS\system32\drivers\Hdaudbus.sys - ok
17:32:28.0781 2620 [ B0D7020386C7187EF9C5A9643F289CD3 ] C:\WINDOWS\system32\drivers\usbehci.sys
17:32:28.0781 2620 C:\WINDOWS\system32\drivers\usbehci.sys - ok
17:32:28.0781 2620 [ FF6E4FDEB82DC228EFA490336409C6BD ] C:\WINDOWS\system32\drivers\usbuhci.sys
17:32:28.0781 2620 C:\WINDOWS\system32\drivers\usbuhci.sys - ok
17:32:28.0796 2620 [ 18B2D3E11ED7A3C898ADE6A6692B6929 ] C:\WINDOWS\system32\drivers\NETw4x32.sys
17:32:28.0796 2620 C:\WINDOWS\system32\drivers\NETw4x32.sys - ok
17:32:28.0796 2620 [ 02FC71B020EC8700EE8A46C58BC6F276 ] C:\WINDOWS\system32\drivers\sdbus.sys
17:32:28.0796 2620 C:\WINDOWS\system32\drivers\sdbus.sys - ok
17:32:28.0812 2620 [ 78213F01CE781F93180BEF5EB5B3AD81 ] C:\WINDOWS\system32\drivers\tifm21.sys
17:32:28.0812 2620 C:\WINDOWS\system32\drivers\tifm21.sys - ok
17:32:28.0828 2620 [ 4266BE808F85826AEDF3C64C1E240203 ] C:\WINDOWS\system32\drivers\CmBatt.sys
17:32:28.0828 2620 C:\WINDOWS\system32\drivers\CmBatt.sys - ok
17:32:28.0828 2620 [ 0F42DE9909B5DBF2C48DD1A79D491AF5 ] C:\WINDOWS\system32\drivers\i8042prt.sys
17:32:28.0828 2620 C:\WINDOWS\system32\drivers\i8042prt.sys - ok
17:32:28.0843 2620 [ 060DB81DFB79C8244EB65D10B6C7873F ] C:\WINDOWS\system32\drivers\DKbFltr.SYS
17:32:28.0843 2620 C:\WINDOWS\system32\drivers\DKbFltr.SYS - ok
17:32:28.0843 2620 [ 6F877BF8DC01A550CD666F3BEDB2213C ] C:\WINDOWS\system32\drivers\kbdclass.sys
17:32:28.0843 2620 C:\WINDOWS\system32\drivers\kbdclass.sys - ok
17:32:28.0859 2620 [ 596EB39B50D6EBD9B734DC4AE0544693 ] C:\WINDOWS\system32\drivers\usbd.sys
17:32:28.0859 2620 C:\WINDOWS\system32\drivers\usbd.sys - ok
17:32:28.0859 2620 [ CC5DA243CFDAC58FC0408F7CE24084C5 ] C:\WINDOWS\system32\drivers\SynTP.sys
17:32:28.0859 2620 C:\WINDOWS\system32\drivers\SynTP.sys - ok
17:32:28.0875 2620 [ F8AA320C6A0409C0380E5D8A99D76EC6 ] C:\WINDOWS\system32\drivers\imapi.sys
17:32:28.0875 2620 C:\WINDOWS\system32\drivers\imapi.sys - ok
17:32:28.0875 2620 [ 50708DAA1B1CBB7D6AC1CF8F56A24410 ] C:\WINDOWS\system32\drivers\irenum.sys
17:32:28.0875 2620 C:\WINDOWS\system32\drivers\irenum.sys - ok
17:32:28.0875 2620 [ B160EC94114715675509115986400FD9 ] C:\WINDOWS\system32\drivers\mouclass.sys
17:32:28.0875 2620 C:\WINDOWS\system32\drivers\mouclass.sys - ok
17:32:28.0890 2620 [ 6216798D29C3BA9D0D6F40BBBAB694A5 ] C:\WINDOWS\system32\drivers\nscirda.sys
17:32:28.0890 2620 C:\WINDOWS\system32\drivers\nscirda.sys - ok
17:32:28.0890 2620 [ AF9C19B3100FE010496B1A27181FBF72 ] C:\WINDOWS\system32\drivers\cdrom.sys
17:32:28.0890 2620 C:\WINDOWS\system32\drivers\cdrom.sys - ok
17:32:28.0906 2620 [ E0C67BE430C6DE490D6CCAECFA071F9E ] C:\WINDOWS\system32\drivers\UBHelper.sys
17:32:28.0906 2620 C:\WINDOWS\system32\drivers\UBHelper.sys - ok
17:32:28.0906 2620 [ B9540E258F952650DE8DEC68719A5C97 ] C:\WINDOWS\system32\drivers\ks.sys
17:32:28.0906 2620 C:\WINDOWS\system32\drivers\ks.sys - ok
17:32:28.0906 2620 [ ABA13D33E1F888C9A68599A48A8840D6 ] C:\WINDOWS\system32\drivers\redbook.sys
17:32:28.0906 2620 C:\WINDOWS\system32\drivers\redbook.sys - ok
17:32:28.0921 2620 [ 8BE661C16FBF84A73BCEC84B6B4A9DB5 ] C:\WINDOWS\system32\drivers\avgfwdx.sys
17:32:28.0921 2620 C:\WINDOWS\system32\drivers\avgfwdx.sys - ok
17:32:28.0921 2620 [ 885B6D0F826A216EEE4C3AD883809012 ] C:\WINDOWS\system32\drivers\btkrnl.sys
17:32:28.0921 2620 C:\WINDOWS\system32\drivers\btkrnl.sys - ok
17:32:28.0921 2620 [ 7F1C1F78D709C4A54CBB46EDE7E0B48D ] C:\WINDOWS\system32\drivers\NTIDrvr.sys
17:32:28.0921 2620 C:\WINDOWS\system32\drivers\NTIDrvr.sys - ok
17:32:28.0937 2620 [ D9F724AA26C010A217C97606B160ED68 ] C:\WINDOWS\system32\drivers\audstub.sys
17:32:28.0937 2620 C:\WINDOWS\system32\drivers\audstub.sys - ok
17:32:28.0937 2620 [ 08D43BBDACDF23F34D79E44ED35C1B4C ] C:\WINDOWS\system32\drivers\ndistapi.sys
17:32:28.0937 2620 C:\WINDOWS\system32\drivers\ndistapi.sys - ok
17:32:28.0953 2620 [ 0B90E255A9490166AB368CD55A529893 ] C:\WINDOWS\system32\drivers\ndiswan.sys
17:32:28.0953 2620 C:\WINDOWS\system32\drivers\ndiswan.sys - ok
17:32:28.0953 2620 [ 0207D26DDF796A193CCD9F83047BB5FC ] C:\WINDOWS\system32\drivers\rasirda.sys
17:32:28.0953 2620 C:\WINDOWS\system32\drivers\rasirda.sys - ok
17:32:28.0953 2620 [ 98FAEB4A4DCF812BA1C6FCA4AA3E115C ] C:\WINDOWS\system32\drivers\rasl2tp.sys
17:32:28.0953 2620 C:\WINDOWS\system32\drivers\rasl2tp.sys - ok
17:32:28.0968 2620 [ 6891B74AB9A016064E82A419388D0601 ] C:\WINDOWS\system32\drivers\tdi.sys
17:32:28.0968 2620 C:\WINDOWS\system32\drivers\tdi.sys - ok
17:32:28.0968 2620 [ C0F1D4A21DE5A415DF8170616703DEBF ] C:\WINDOWS\system32\drivers\msgpc.sys
17:32:28.0968 2620 C:\WINDOWS\system32\drivers\msgpc.sys - ok
17:32:28.0984 2620 [ 48671F327553DCF1D27F6197F622A668 ] C:\WINDOWS\system32\drivers\psched.sys
17:32:28.0984 2620 C:\WINDOWS\system32\drivers\psched.sys - ok
17:32:28.0984 2620 [ 7306EEED8895454CBED4669BE9F79FAA ] C:\WINDOWS\system32\drivers\raspppoe.sys
17:32:28.0984 2620 C:\WINDOWS\system32\drivers\raspppoe.sys - ok
17:32:28.0984 2620 [ 1C5CC65AAC0783C344F16353E60B72AC ] C:\WINDOWS\system32\drivers\raspptp.sys
17:32:28.0984 2620 C:\WINDOWS\system32\drivers\raspptp.sys - ok
17:32:29.0000 2620 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] C:\WINDOWS\system32\drivers\ptilink.sys
17:32:29.0000 2620 C:\WINDOWS\system32\drivers\ptilink.sys - ok
17:32:29.0000 2620 [ FDBB1D60066FCFBB7452FD8F9829B242 ] C:\WINDOWS\system32\drivers\raspti.sys
17:32:29.0000 2620 C:\WINDOWS\system32\drivers\raspti.sys - ok
17:32:29.0000 2620 [ A2CAE2C60BC37E0751EF9DDA7CEAF4AD ] C:\WINDOWS\system32\drivers\rdpdr.sys
17:32:29.0000 2620 C:\WINDOWS\system32\drivers\rdpdr.sys - ok
17:32:29.0015 2620 [ 03C1BAE4766E2450219D20B993D6E046 ] C:\WINDOWS\system32\drivers\swenum.sys
17:32:29.0015 2620 C:\WINDOWS\system32\drivers\swenum.sys - ok
17:32:29.0015 2620 [ A540A99C281D933F3D69D55E48727F47 ] C:\WINDOWS\system32\drivers\termdd.sys
17:32:29.0015 2620 C:\WINDOWS\system32\drivers\termdd.sys - ok
17:32:29.0031 2620 [ CED744117E91BDC0BEB810F7D8608183 ] C:\WINDOWS\system32\drivers\update.sys
17:32:29.0031 2620 C:\WINDOWS\system32\drivers\update.sys - ok
17:32:29.0031 2620 [ 469541F8BFD2B32659D5D463A6714BCE ] C:\WINDOWS\system32\drivers\mssmbios.sys
17:32:29.0031 2620 C:\WINDOWS\system32\drivers\mssmbios.sys - ok
17:32:29.0031 2620 [ 58A49BD10E08D3D4333A60DEDCB1CED8 ] C:\WINDOWS\system32\drivers\btport.sys
17:32:29.0031 2620 C:\WINDOWS\system32\drivers\btport.sys - ok
17:32:29.0046 2620 [ FF86422268DE771D571E123EB7092C6A ] C:\WINDOWS\system32\drivers\drmk.sys
17:32:29.0046 2620 C:\WINDOWS\system32\drivers\drmk.sys - ok
17:32:29.0046 2620 [ ECDC40CC54603C711E1A7A1C9255184A ] C:\WINDOWS\system32\drivers\btaudio.sys
17:32:29.0046 2620 C:\WINDOWS\system32\drivers\btaudio.sys - ok
17:32:29.0062 2620 [ BC6B2BC69C1E009443E8B1FE2DB96101 ] C:\WINDOWS\system32\drivers\portcls.sys
17:32:29.0062 2620 C:\WINDOWS\system32\drivers\portcls.sys - ok
17:32:29.0062 2620 [ 59FC3FB44D2669BC144FD87826BB571F ] C:\WINDOWS\system32\drivers\ndproxy.sys
17:32:29.0062 2620 C:\WINDOWS\system32\drivers\ndproxy.sys - ok
17:32:29.0062 2620 [ ACE960E54148821E8E48F5D191562C28 ] C:\WINDOWS\system32\drivers\usbhub.sys
17:32:29.0062 2620 C:\WINDOWS\system32\drivers\usbhub.sys - ok
17:32:29.0078 2620 [ B45A576AD280DD4F605F58B24CDAAFE1 ] C:\WINDOWS\system32\drivers\RtkHDAud.sys
17:32:29.0078 2620 C:\WINDOWS\system32\drivers\RtkHDAud.sys - ok
17:32:29.0078 2620 [ 6A5C4732D6803F84E2987EDD8E4359CE ] C:\WINDOWS\system32\drivers\HSFHWAZL.sys
17:32:29.0078 2620 C:\WINDOWS\system32\drivers\HSFHWAZL.sys - ok
17:32:29.0093 2620 [ 21C31273C6CC4826E74BE8AE3B09D4A8 ] C:\WINDOWS\system32\drivers\HSF_DPV.sys
17:32:29.0093 2620 C:\WINDOWS\system32\drivers\HSF_DPV.sys - ok
17:32:29.0093 2620 [ 307D248F97835B6879BDD361086924FE ] C:\WINDOWS\system32\drivers\HSF_CNXT.sys
17:32:29.0093 2620 C:\WINDOWS\system32\drivers\HSF_CNXT.sys - ok
17:32:29.0093 2620 [ 60210DEB037846AFE521EBF349964F6B ] C:\WINDOWS\system32\drivers\modem.sys
17:32:29.0093 2620 C:\WINDOWS\system32\drivers\modem.sys - ok
17:32:29.0109 2620 [ CED2E8396A8838E59D8FD529C680E02C ] C:\WINDOWS\system32\drivers\fdc.sys
17:32:29.0109 2620 C:\WINDOWS\system32\drivers\fdc.sys - ok
17:32:29.0109 2620 [ 0DD1DE43115B93F4D85E889D7A86F548 ] C:\WINDOWS\system32\drivers\flpydisk.sys
17:32:29.0109 2620 C:\WINDOWS\system32\drivers\flpydisk.sys - ok
17:32:29.0125 2620 [ CCDD61545AAEA265977E4B1EFDC74E8C ] C:\WINDOWS\system32\drivers\avgmfx86.sys
17:32:29.0125 2620 C:\WINDOWS\system32\drivers\avgmfx86.sys - ok
17:32:29.0125 2620 [ DA1F27D85E0D1525F6621372E7B685E9 ] C:\WINDOWS\system32\drivers\beep.sys
17:32:29.0125 2620 C:\WINDOWS\system32\drivers\beep.sys - ok
17:32:29.0125 2620 [ C1B486A7658353D33A10CC15211A873B ] C:\WINDOWS\system32\drivers\cdaudio.sys
17:32:29.0125 2620 C:\WINDOWS\system32\drivers\cdaudio.sys - ok
17:32:29.0140 2620 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] C:\WINDOWS\system32\drivers\fs_rec.sys
17:32:29.0140 2620 C:\WINDOWS\system32\drivers\fs_rec.sys - ok
17:32:29.0140 2620 [ 8F09F91B5C91363B77BCD15599570F2C ] C:\WINDOWS\system32\drivers\i2omgmt.sys
17:32:29.0140 2620 C:\WINDOWS\system32\drivers\i2omgmt.sys - ok
17:32:29.0140 2620 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] C:\WINDOWS\system32\drivers\null.sys
17:32:29.0140 2620 C:\WINDOWS\system32\drivers\null.sys - ok
17:32:29.0156 2620 [ 0D13B6DF6E9E101013A7AFB0CE629FE0 ] C:\WINDOWS\system32\drivers\sfloppy.sys
17:32:29.0156 2620 C:\WINDOWS\system32\drivers\sfloppy.sys - ok
17:32:29.0156 2620 [ 8A60EDD72B4EA5AEA8202DAF0E427925 ] C:\WINDOWS\system32\drivers\vga.sys
17:32:29.0156 2620 C:\WINDOWS\system32\drivers\vga.sys - ok
17:32:29.0171 2620 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] C:\WINDOWS\system32\drivers\mnmdd.sys
17:32:29.0171 2620 C:\WINDOWS\system32\drivers\mnmdd.sys - ok
17:32:29.0171 2620 [ 4912D5B403614CE99C28420F75353332 ] C:\WINDOWS\system32\drivers\rdpcdd.sys
17:32:29.0171 2620 C:\WINDOWS\system32\drivers\rdpcdd.sys - ok
17:32:29.0171 2620 [ 561B3A4333CA2DBDBA28B5B956822519 ] C:\WINDOWS\system32\drivers\msfs.sys
17:32:29.0171 2620 C:\WINDOWS\system32\drivers\msfs.sys - ok
17:32:29.0187 2620 [ 64537AA5C003A6AFEEE1DF819062D0D1 ] C:\WINDOWS\system32\drivers\ipsec.sys
17:32:29.0187 2620 C:\WINDOWS\system32\drivers\ipsec.sys - ok
17:32:29.0187 2620 [ 4F601BCB8F64EA3AC0994F98FED03F8E ] C:\WINDOWS\system32\drivers\npfs.sys
17:32:29.0187 2620 C:\WINDOWS\system32\drivers\npfs.sys - ok
17:32:29.0187 2620 [ FE0D99D6F31E4FAD8159F690D68DED9C ] C:\WINDOWS\system32\drivers\rasacd.sys
17:32:29.0187 2620 C:\WINDOWS\system32\drivers\rasacd.sys - ok
17:32:29.0203 2620 [ 9F4B36614A0FC234525BA224957DE55C ] C:\WINDOWS\system32\drivers\tcpip.sys
17:32:29.0203 2620 C:\WINDOWS\system32\drivers\tcpip.sys - ok
17:32:29.0203 2620 [ 1263F2554ACE925C237A40B4C568D815 ] C:\WINDOWS\system32\drivers\avgtdix.sys
17:32:29.0203 2620 C:\WINDOWS\system32\drivers\avgtdix.sys - ok
17:32:29.0218 2620 [ B5A8E215AC29D24D60B4D1250EF05ACE ] C:\WINDOWS\system32\drivers\ipnat.sys
17:32:29.0218 2620 C:\WINDOWS\system32\drivers\ipnat.sys - ok
17:32:29.0218 2620 [ 0C80E410CD2F47134407EE7DD19CC86B ] C:\WINDOWS\system32\drivers\netbt.sys
17:32:29.0218 2620 C:\WINDOWS\system32\drivers\netbt.sys - ok
17:32:29.0218 2620 [ 5AC495F4CB807B2B98AD2AD591E6D92E ] C:\WINDOWS\system32\drivers\afd.sys
17:32:29.0218 2620 C:\WINDOWS\system32\drivers\afd.sys - ok
17:32:29.0234 2620 [ 3A2ACA8FC1D7786902CA434998D7CEB4 ] C:\WINDOWS\system32\drivers\netbios.sys
17:32:29.0234 2620 C:\WINDOWS\system32\drivers\netbios.sys - ok
17:32:29.0234 2620 [ 9A10E4FD13824823DA50D4758BD0A645 ] C:\WINDOWS\system32\drivers\processr.sys
17:32:29.0234 2620 C:\WINDOWS\system32\drivers\processr.sys - ok
17:32:29.0250 2620 [ 29D66245ADBA878FFF574CD66ABD2884 ] C:\WINDOWS\system32\drivers\rdbss.sys
17:32:29.0250 2620 C:\WINDOWS\system32\drivers\rdbss.sys - ok
17:32:29.0250 2620 [ 1FD607FC67F7F7C633C3DA65BFC53D18 ] C:\WINDOWS\system32\drivers\mrxsmb.sys
17:32:29.0250 2620 C:\WINDOWS\system32\drivers\mrxsmb.sys - ok
17:32:29.0250 2620 [ 266DAB58619B17BDF37FABBD48D875CA ] C:\WINDOWS\system32\drivers\fips.sys
17:32:29.0250 2620 C:\WINDOWS\system32\drivers\fips.sys - ok
17:32:29.0265 2620 [ DDA6A2A18841E4C9172BB85958B8D948 ] C:\WINDOWS\system32\drivers\avgldx86.sys
17:32:29.0265 2620 C:\WINDOWS\system32\drivers\avgldx86.sys - ok
17:32:29.0265 2620 [ D5DBD4BDB329C8CA55B925D721C1B42E ] C:\WINDOWS\system32\drivers\stream.sys
17:32:29.0265 2620 C:\WINDOWS\system32\drivers\stream.sys - ok
17:32:29.0281 2620 [ 0057F29323C393A35903B4C5DAF9A144 ] C:\WINDOWS\system32\drivers\sncduvc.sys
17:32:29.0281 2620 C:\WINDOWS\system32\drivers\sncduvc.sys - ok
17:32:29.0281 2620 [ 0302BC619D4A723317E7F8EB0C362BD3 ] C:\WINDOWS\system32\drivers\snp2uvc.sys
17:32:29.0281 2620 C:\WINDOWS\system32\drivers\snp2uvc.sys - ok
17:32:29.0281 2620 [ 984EF0B9788ABF89974CFED4BFBAACBC ] C:\WINDOWS\system32\drivers\wanarp.sys
17:32:29.0281 2620 C:\WINDOWS\system32\drivers\wanarp.sys - ok
17:32:29.0296 2620 [ 04B69D49D7FC3358A372E97DB6D39447 ] C:\WINDOWS\system32\smss.exe
17:32:29.0296 2620 C:\WINDOWS\system32\smss.exe - ok
17:32:29.0296 2620 [ 24B856F2FA9CBA678E067B398EAC1BED ] C:\WINDOWS\system32\ntdll.dll
17:32:29.0296 2620 C:\WINDOWS\system32\ntdll.dll - ok
17:32:29.0296 2620 [ CEA8636EC12F062C1ED8A7CB4E75324F ] C:\WINDOWS\system32\autochk.exe
17:32:29.0296 2620 C:\WINDOWS\system32\autochk.exe - ok
17:32:29.0312 2620 [ 3117F595E9615E04F05A54FC15A03B20 ] C:\WINDOWS\system32\drivers\fastfat.sys
17:32:29.0312 2620 C:\WINDOWS\system32\drivers\fastfat.sys - ok
17:32:29.0312 2620 [ AE679416B37D9712E14D895CA35E8681 ] C:\PROGRA~1\AVG\AVG2012\avgrsx.exe
17:32:29.0312 2620 C:\PROGRA~1\AVG\AVG2012\avgrsx.exe - ok
17:32:29.0328 2620 [ 91DC97F9DA3E2B59049D410870935C78 ] C:\Program Files\AVG\AVG2012\avgntopensslx.dll
17:32:29.0328 2620 C:\Program Files\AVG\AVG2012\avgntopensslx.dll - ok
17:32:29.0328 2620 [ 93312F83FD4D5C38CEE8AA1265C061EE ] C:\Program Files\AVG\AVG2012\avgsysx.dll
17:32:29.0328 2620 C:\Program Files\AVG\AVG2012\avgsysx.dll - ok
17:32:29.0328 2620 [ 25CD97F030AE70AF458FF6AB0B7E9B2E ] C:\Program Files\AVG\AVG2012\avglogx.dll
17:32:29.0328 2620 C:\Program Files\AVG\AVG2012\avglogx.dll - ok
17:32:29.0343 2620 [ CD7D5152DF32B47F4E36F710B35AAE02 ] C:\WINDOWS\system32\drivers\cdfs.sys
17:32:29.0343 2620 C:\WINDOWS\system32\drivers\cdfs.sys - ok
17:32:29.0343 2620 [ 00000000000000000000000000000000 ] C:\Documents and Settings\Ing. Karel Mikeš\Plocha\avast_free_antivirus_setup.exe
17:32:29.0343 2620 C:\Documents and Settings\Ing. Karel Mikeš\Plocha\avast_free_antivirus_setup.exe - ok
17:32:29.0359 2620 [ E0EC2A613A3B94BE87041F283FAB772F ] C:\WINDOWS\system32\ntoskrnl.exe
17:32:29.0359 2620 C:\WINDOWS\system32\ntoskrnl.exe - ok
17:32:29.0359 2620 [ 465B379791643F69B77A3B67708C5B55 ] C:\WINDOWS\system32\btwicons.dll
17:32:29.0359 2620 C:\WINDOWS\system32\btwicons.dll - ok
17:32:29.0359 2620 [ 029A8C889519E38198E21B1574ADCE0D ] C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
17:32:29.0359 2620 C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe - ok
17:32:29.0375 2620 [ 376EC4615F3DB21F1D5A99E7A73EE232 ] C:\WINDOWS\system32\WidcommSdk.dll
17:32:29.0375 2620 C:\WINDOWS\system32\WidcommSdk.dll - ok
17:32:29.0375 2620 [ B653949DB738EFD1C9F873D22C64039B ] C:\WINDOWS\system32\bthcrp.dll
17:32:29.0375 2620 C:\WINDOWS\system32\bthcrp.dll - ok
17:32:29.0390 2620 [ 50612D80EFDCEC2B5D60096CC96341DD ] C:\WINDOWS\system32\btosif.dll
17:32:29.0390 2620 C:\WINDOWS\system32\btosif.dll - ok
17:32:29.0390 2620 [ 03C7B71249B08CE1F0392B75DF9BF53B ] C:\WINDOWS\system32\wbtapi.dll
17:32:29.0390 2620 C:\WINDOWS\system32\wbtapi.dll - ok
17:32:29.0390 2620 [ A9247F3336AAA9D59AD90CB84E72FDBE ] C:\Program Files\WIDCOMM\Bluetooth Software\BTKeyInd.dll
17:32:29.0390 2620 C:\Program Files\WIDCOMM\Bluetooth Software\BTKeyInd.dll - ok
17:32:29.0406 2620 [ F182F6A041747F5AEE9FDF16A849B789 ] C:\WINDOWS\ime\imkr6_1\imekrcic.dll
17:32:29.0406 2620 C:\WINDOWS\ime\imkr6_1\imekrcic.dll - ok
17:32:29.0406 2620 [ 8A85ECD269DAE8EDF134FA0341688198 ] C:\WINDOWS\ime\SPTIP.dll
17:32:29.0406 2620 C:\WINDOWS\ime\SPTIP.dll - ok
17:32:29.0406 2620 [ 836F7960362FF95C5D49E40B891F2CFC ] C:\WINDOWS\system32\userinit.exe
17:32:29.0406 2620 C:\WINDOWS\system32\userinit.exe - ok
17:32:29.0421 2620 [ 7A5A1E5E9A41E8E3CBDE7EEB672A0CC0 ] C:\WINDOWS\system32\atmfd.dll
17:32:29.0421 2620 C:\WINDOWS\system32\atmfd.dll - ok
17:32:29.0421 2620 [ A5BAA91475167161DEA02BA3C4CA4F59 ] C:\WINDOWS\system32\ctfmon.exe
17:32:29.0421 2620 C:\WINDOWS\system32\ctfmon.exe - ok
17:32:29.0421 2620 [ 59E54C2697C0B4C127D44D19D41BF2BC ] C:\WINDOWS\system32\davclnt.dll
17:32:29.0421 2620 C:\WINDOWS\system32\davclnt.dll - ok
17:32:29.0437 2620 [ 1BCD6FD806FAE40FD37BA88D1DA1367C ] C:\WINDOWS\system32\drprov.dll
17:32:29.0437 2620 C:\WINDOWS\system32\drprov.dll - ok
17:32:29.0437 2620 [ 3A9462110C8E6FDAB54A367681D06C80 ] C:\WINDOWS\system32\fxsmon.dll
17:32:29.0437 2620 C:\WINDOWS\system32\fxsmon.dll - ok
17:32:29.0453 2620 [ E02B3193F8978F5A891448F712EB0089 ] C:\WINDOWS\system32\msls31.dll
17:32:29.0453 2620 C:\WINDOWS\system32\msls31.dll - ok
17:32:29.0453 2620 [ 8066FF5677DC47B4AF5C677F88E6322E ] C:\WINDOWS\system32\netrap.dll
17:32:29.0453 2620 C:\WINDOWS\system32\netrap.dll - ok
17:32:29.0453 2620 [ F77883F3FBAF4FFD6852075EE7C0E416 ] C:\WINDOWS\system32\ntlanman.dll
17:32:29.0453 2620 C:\WINDOWS\system32\ntlanman.dll - ok
17:32:29.0468 2620 [ 01A5E45D38D52E4076D67D3B00EAE2FB ] C:\WINDOWS\system32\pstorec.dll
17:32:29.0468 2620 C:\WINDOWS\system32\pstorec.dll - ok
17:32:29.0468 2620 [ 05E04940BB3693CD7692D76DA546375E ] C:\WINDOWS\system32\cnbjmon.dll
17:32:29.0468 2620 C:\WINDOWS\system32\cnbjmon.dll - ok
17:32:29.0468 2620 [ 972378B907070F64932A87C90A035487 ] C:\WINDOWS\system32\es.dll
17:32:29.0468 2620 C:\WINDOWS\system32\es.dll - ok
17:32:29.0484 2620 [ 6E894867B991EC9579E1A52F0A7F5644 ] C:\WINDOWS\system32\mshtml.dll
17:32:29.0484 2620 C:\WINDOWS\system32\mshtml.dll - ok
17:32:29.0484 2620 [ 20C4F62F5FEFC0ADB0AD54CEACF3CE41 ] C:\WINDOWS\system32\fxsevent.dll
17:32:29.0484 2620 C:\WINDOWS\system32\fxsevent.dll - ok
17:32:29.0500 2620 [ 763DE5266639C75550706299A8E3047B ] C:\WINDOWS\system32\inetpp.dll
17:32:29.0500 2620 C:\WINDOWS\system32\inetpp.dll - ok
17:32:29.0500 2620 [ 1C9152391A88F590A659E08617E69AA6 ] C:\WINDOWS\system32\jscript.dll
17:32:29.0500 2620 C:\WINDOWS\system32\jscript.dll - ok
17:32:29.0500 2620 [ 4293F5F4A7405D7D8A5D428855C9C274 ] C:\WINDOWS\system32\localspl.dll
17:32:29.0500 2620 C:\WINDOWS\system32\localspl.dll - ok
17:32:29.0515 2620 [ 6AFAD3B0576473578A221C54CACE7822 ] C:\WINDOWS\system32\pjlmon.dll
17:32:29.0515 2620 C:\WINDOWS\system32\pjlmon.dll - ok
17:32:29.0515 2620 [ C23A84D7AB99678B2F1A52080280E4ED ] C:\WINDOWS\system32\kernel32.dll
17:32:29.0515 2620 C:\WINDOWS\system32\kernel32.dll - ok
17:32:29.0515 2620 [ B04DB1F0B2652FCBCCC5FD0C46579F0F ] C:\WINDOWS\system32\mscoree.dll
17:32:29.0515 2620 C:\WINDOWS\system32\mscoree.dll - ok
17:32:29.0531 2620 [ 2E70B299CF9732C1A66F2403BBF3539B ] C:\WINDOWS\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfcm90u.dll
17:32:29.0531 2620 C:\WINDOWS\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfcm90u.dll - ok
17:32:29.0546 2620 [ 8D1FDFF78416067041FC66D2010C3B11 ] C:\WINDOWS\system32\msvfw32.dll
17:32:29.0546 2620 C:\WINDOWS\system32\msvfw32.dll - ok
17:32:29.0546 2620 [ 7B5E0A4CD56E0288CA380B02BE626C1B ] C:\WINDOWS\system32\netui0.dll
17:32:29.0546 2620 C:\WINDOWS\system32\netui0.dll - ok
17:32:29.0546 2620 [ 88F382E821FA0DABEBF6663D6C0758F6 ] C:\WINDOWS\system32\netui1.dll
17:32:29.0546 2620 C:\WINDOWS\system32\netui1.dll - ok
17:32:29.0562 2620 [ 2E4CD086D04A29036FA12BE4A693F7BF ] C:\WINDOWS\system32\spoolss.dll
17:32:29.0562 2620 C:\WINDOWS\system32\spoolss.dll - ok
17:32:29.0562 2620 [ 9545B3CFEEEEBE726F8BAD19480AF259 ] C:\WINDOWS\system32\tcpmon.dll
17:32:29.0562 2620 C:\WINDOWS\system32\tcpmon.dll - ok
17:32:29.0562 2620 [ A92E91A5B245E4C7A808C0A1DE4233CD ] C:\WINDOWS\system32\usbmon.dll
17:32:29.0562 2620 C:\WINDOWS\system32\usbmon.dll - ok
17:32:29.0578 2620 [ F1D1C9378F85ED346C10AD497ADA9C7A ] C:\WINDOWS\system32\wshcs.dll
17:32:29.0578 2620 C:\WINDOWS\system32\wshcs.dll - ok
17:32:29.0578 2620 [ 656664ED49DE7A43855E16818A711CEF ] C:\WINDOWS\system32\wshext.dll
17:32:29.0578 2620 C:\WINDOWS\system32\wshext.dll - ok
17:32:29.0593 2620 [ BB1CD0F02F1C752C810D5B66FD96AC7A ] C:\WINDOWS\system32\BtMmHook.dll
17:32:29.0593 2620 C:\WINDOWS\system32\BtMmHook.dll - ok
17:32:29.0593 2620 [ AC52E0E1FCBA1C276725F73A55CD8AE5 ] C:\WINDOWS\system32\btrez.dll
17:32:29.0593 2620 C:\WINDOWS\system32\btrez.dll - ok
17:32:29.0593 2620 [ 02971C5A9E4CCD508CCF4533EAC9C3D0 ] C:\WINDOWS\system32\win32spl.dll
17:32:29.0593 2620 C:\WINDOWS\system32\win32spl.dll - ok
17:32:29.0609 2620 [ 6005D67F3CCDE118DB2224C90D7C5AFD ] C:\WINDOWS\system32\btwhidcs.dll
17:32:29.0609 2620 C:\WINDOWS\system32\btwhidcs.dll - ok
17:32:29.0609 2620 [ B9B3F6D8B8F1E0029C58B304632A729B ] C:\WINDOWS\system32\msonpmon.dll
17:32:29.0609 2620 C:\WINDOWS\system32\msonpmon.dll - ok
17:32:29.0609 2620 [ 5CA2E2BA624D6F2C7A581C91E70394CB ] C:\WINDOWS\system32\sfcfiles.dll
17:32:29.0609 2620 C:\WINDOWS\system32\sfcfiles.dll - ok
17:32:29.0625 2620 [ F348280907B38FDBDB3CEF55D456E149 ] C:\WINDOWS\system32\spool\prtprocs\w32x86\msonpppr.dll
17:32:29.0625 2620 C:\WINDOWS\system32\spool\prtprocs\w32x86\msonpppr.dll - ok
17:32:29.0625 2620 [ 0CDC4A0C6B820FAD99FB4CA74CD0C476 ] C:\WINDOWS\system32\advapi32.dll
17:32:29.0625 2620 C:\WINDOWS\system32\advapi32.dll - ok
17:32:29.0640 2620 [ 31C8F1D88871132DACA8262CC30E3DDC ] C:\WINDOWS\system32\comdlg32.dll
17:32:29.0640 2620 C:\WINDOWS\system32\comdlg32.dll - ok
17:32:29.0640 2620 [ DDA5B86B77DE46BBE829B03A2AF5C2E9 ] C:\WINDOWS\system32\gdi32.dll
17:32:29.0640 2620 C:\WINDOWS\system32\gdi32.dll - ok
17:32:29.0640 2620 [ 1063D8D06835AAC0360BF6FC82D53E26 ] C:\WINDOWS\system32\imagehlp.dll
17:32:29.0640 2620 C:\WINDOWS\system32\imagehlp.dll - ok
17:32:29.0656 2620 [ 464325F6C822FD26A44E54E0DC9F144F ] C:\WINDOWS\system32\lz32.dll
17:32:29.0656 2620 C:\WINDOWS\system32\lz32.dll - ok
17:32:29.0656 2620 [ 7FE54C063DDA8EF226846510852E6B1B ] C:\WINDOWS\system32\ole32.dll
17:32:29.0656 2620 C:\WINDOWS\system32\ole32.dll - ok
17:32:29.0656 2620 [ DB6130116362BC1EF5CE70DEFFA92CAC ] C:\WINDOWS\system32\oleaut32.dll
17:32:29.0671 2620 C:\WINDOWS\system32\oleaut32.dll - ok
17:32:29.0671 2620 [ 096860F57EF5291B909A2BA55051B489 ] C:\WINDOWS\system32\olecli32.dll
17:32:29.0671 2620 C:\WINDOWS\system32\olecli32.dll - ok
17:32:29.0671 2620 [ CCB46059673ED22D8ECF74C086003E98 ] C:\WINDOWS\system32\olecnv32.dll
17:32:29.0671 2620 C:\WINDOWS\system32\olecnv32.dll - ok
17:32:29.0671 2620 [ 7AA979318F9F59EC3F9C04043210B6DE ] C:\WINDOWS\system32\olesvr32.dll
17:32:29.0687 2620 C:\WINDOWS\system32\olesvr32.dll - ok
17:32:29.0687 2620 [ E1C61CEA7B8C70DCB0B8E83E4A86524B ] C:\WINDOWS\system32\olethk32.dll
17:32:29.0687 2620 C:\WINDOWS\system32\olethk32.dll - ok
17:32:29.0687 2620 [ F0DC396DE971A9A23C780DD8D0EFBF1A ] C:\WINDOWS\system32\rpcrt4.dll
17:32:29.0687 2620 C:\WINDOWS\system32\rpcrt4.dll - ok
17:32:29.0703 2620 [ AA69A61B70E6116DB6DCD4DCE6FB5A83 ] C:\WINDOWS\system32\shell32.dll
17:32:29.0703 2620 C:\WINDOWS\system32\shell32.dll - ok
17:32:29.0703 2620 [ 2693986EA694ACC77C65D6EE853002F9 ] C:\WINDOWS\system32\url.dll
17:32:29.0703 2620 C:\WINDOWS\system32\url.dll - ok
17:32:29.0703 2620 [ 24AAB1232CD361FC43D5D2AF3EE4D901 ] C:\WINDOWS\system32\urlmon.dll
17:32:29.0703 2620 C:\WINDOWS\system32\urlmon.dll - ok
17:32:29.0718 2620 [ 43240B12D220F30C7C75EA69B2E806B0 ] C:\WINDOWS\system32\user32.dll
17:32:29.0718 2620 C:\WINDOWS\system32\user32.dll - ok
17:32:29.0718 2620 [ E472BDA53A4DCD2142143AF9FD25C99A ] C:\WINDOWS\system32\version.dll
17:32:29.0718 2620 C:\WINDOWS\system32\version.dll - ok
17:32:29.0734 2620 [ 5A3872496FB8BAA611F1174B56C8D627 ] C:\WINDOWS\system32\wininet.dll
17:32:29.0734 2620 C:\WINDOWS\system32\wininet.dll - ok

Re: Trojský kůň PSW.Agent a Generic27.AKPW

Napsal: 23 srp 2012 16:42
od Spid3r
17:32:29.0734 2620 [ 86FD541EA30251ADCA771251C49EF0E4 ] C:\WINDOWS\system32\wldap32.dll
17:32:29.0734 2620 C:\WINDOWS\system32\wldap32.dll - ok
17:32:29.0734 2620 [ 876C658C44F2BF4AF050E5534A9F066F ] C:\WINDOWS\system32\comctl32.dll
17:32:29.0734 2620 C:\WINDOWS\system32\comctl32.dll - ok
17:32:29.0750 2620 [ 9B3607CC966E245D66D5F7AEEEB120B3 ] C:\WINDOWS\system32\shlwapi.dll
17:32:29.0750 2620 C:\WINDOWS\system32\shlwapi.dll - ok
17:32:29.0750 2620 [ 91CC3E4CCDBBF8E224182C76C87E454F ] C:\WINDOWS\system32\msvcrt.dll
17:32:29.0750 2620 C:\WINDOWS\system32\msvcrt.dll - ok
17:32:29.0750 2620 [ 47F5733A51EECC78F9B2DA3F9EE6D8B7 ] C:\WINDOWS\system32\mpr.dll
17:32:29.0750 2620 C:\WINDOWS\system32\mpr.dll - ok
17:32:29.0765 2620 [ B331B952A1F0220D4826BC0DFB3D800B ] C:\WINDOWS\system32\ntvdm.exe
17:32:29.0765 2620 C:\WINDOWS\system32\ntvdm.exe - ok
17:32:29.0765 2620 [ 525B15EC81CC0E73D0AC6C4F8C94A743 ] C:\WINDOWS\system32\wow32.dll
17:32:29.0765 2620 C:\WINDOWS\system32\wow32.dll - ok
17:32:29.0781 2620 [ 359F1E3793C8AA947601C0B5A167851C ] C:\WINDOWS\system32\shdocvw.dll
17:32:29.0781 2620 C:\WINDOWS\system32\shdocvw.dll - ok
17:32:29.0781 2620 [ 6BDB36E60A2514A5A1927BDECAA9911E ] C:\WINDOWS\system32\crypt32.dll
17:32:29.0781 2620 C:\WINDOWS\system32\crypt32.dll - ok
17:32:29.0781 2620 [ DE58BE5500A9105127F3995C8C30F547 ] C:\WINDOWS\system32\apphelp.dll
17:32:29.0781 2620 C:\WINDOWS\system32\apphelp.dll - ok
17:32:29.0796 2620 [ 618B52C1DAABAF5A738B532C3858B14A ] C:\WINDOWS\system32\userenv.dll
17:32:29.0796 2620 C:\WINDOWS\system32\userenv.dll - ok
17:32:29.0796 2620 [ 1AC3D5212669F95800E8BE8BF2408E0E ] C:\WINDOWS\system32\cryptui.dll
17:32:29.0796 2620 C:\WINDOWS\system32\cryptui.dll - ok
17:32:29.0796 2620 [ 6EEBFFB5C24C88863A509533D9E25525 ] C:\WINDOWS\system32\msasn1.dll
17:32:29.0796 2620 C:\WINDOWS\system32\msasn1.dll - ok
17:32:29.0812 2620 [ 50A18E377DE034C4B6FBD5233B603794 ] C:\WINDOWS\system32\netapi32.dll
17:32:29.0812 2620 C:\WINDOWS\system32\netapi32.dll - ok
17:32:29.0812 2620 [ D1F434EA13285D09C82140BF39D9FE78 ] C:\WINDOWS\system32\wintrust.dll
17:32:29.0812 2620 C:\WINDOWS\system32\wintrust.dll - ok
17:32:29.0828 2620 [ F642F3368D2839798DA79E7BA9218481 ] C:\WINDOWS\system32\basesrv.dll
17:32:29.0828 2620 C:\WINDOWS\system32\basesrv.dll - ok
17:32:29.0828 2620 [ ED0BB61F31DA099F6ABD48025156601B ] C:\WINDOWS\system32\csrsrv.dll
17:32:29.0828 2620 C:\WINDOWS\system32\csrsrv.dll - ok
17:32:29.0828 2620 [ 490E6E57E54FAF5F23F658EA188405A1 ] C:\WINDOWS\system32\csrss.exe
17:32:29.0828 2620 C:\WINDOWS\system32\csrss.exe - ok
17:32:29.0843 2620 [ 5869828D4A83BA8F9519630C40044C87 ] C:\WINDOWS\system32\winsrv.dll
17:32:29.0843 2620 C:\WINDOWS\system32\winsrv.dll - ok
17:32:29.0843 2620 [ BFE8DC7AAE7CB1C86243D77B340DC304 ] C:\WINDOWS\system32\lpk.dll
17:32:29.0843 2620 C:\WINDOWS\system32\lpk.dll - ok
17:32:29.0843 2620 [ E28340F6CB7BAC3EACDA9C74A0BE42BE ] C:\WINDOWS\system32\usp10.dll
17:32:29.0843 2620 C:\WINDOWS\system32\usp10.dll - ok
17:32:29.0859 2620 [ 55765F2465DF04C8C83D81EF056039E1 ] C:\WINDOWS\system32\ntkrnlpa.exe
17:32:29.0859 2620 C:\WINDOWS\system32\ntkrnlpa.exe - ok
17:32:29.0859 2620 [ CCB5449E9BF1BA2B2CB7D0A0C7E34E65 ] C:\WINDOWS\system32\HdAProp.dll
17:32:29.0859 2620 C:\WINDOWS\system32\HdAProp.dll - ok
17:32:29.0875 2620 [ 9C3B2302B60FB0EFB13BC880A5E3E93E ] C:\WINDOWS\system32\HdAShCut.exe
17:32:29.0875 2620 C:\WINDOWS\system32\HdAShCut.exe - ok
17:32:29.0875 2620 [ 25FA7A6A8E081EAC69CABFD13297A5D0 ] C:\WINDOWS\system32\HdAudRes.dll
17:32:29.0875 2620 C:\WINDOWS\system32\HdAudRes.dll - ok
17:32:29.0875 2620 [ 076E94A766345C4518C587F481F2EA37 ] C:\WINDOWS\system32\sqlncli.dll
17:32:29.0875 2620 C:\WINDOWS\system32\sqlncli.dll - ok
17:32:29.0890 2620 [ C686934B723A49E4ADCCC66254D4BB3B ] C:\WINDOWS\system32\nddeapi.dll
17:32:29.0890 2620 C:\WINDOWS\system32\nddeapi.dll - ok
17:32:29.0890 2620 [ 354B33931AA885C40F80EB75302E1B8F ] C:\WINDOWS\system32\profmap.dll
17:32:29.0890 2620 C:\WINDOWS\system32\profmap.dll - ok
17:32:29.0906 2620 [ FBF21330B53F92C17F4FF5F7B0C23BDB ] C:\WINDOWS\system32\psapi.dll
17:32:29.0906 2620 C:\WINDOWS\system32\psapi.dll - ok
17:32:29.0906 2620 [ A8330491A4DF77B0AF39F9AE78B0347D ] C:\WINDOWS\system32\regapi.dll
17:32:29.0906 2620 C:\WINDOWS\system32\regapi.dll - ok
17:32:29.0906 2620 [ 7BC93F007B9E095A35B20BEC5EEE86C0 ] C:\WINDOWS\system32\secur32.dll
17:32:29.0906 2620 C:\WINDOWS\system32\secur32.dll - ok
17:32:29.0921 2620 [ 16DBA3C4C38B72AE88F3E7A6B4BF82F1 ] C:\WINDOWS\system32\setupapi.dll
17:32:29.0921 2620 C:\WINDOWS\system32\setupapi.dll - ok
17:32:29.0921 2620 [ DCF3ABC0EF6493A8931F3FBFFF410FC8 ] C:\WINDOWS\system32\winsta.dll
17:32:29.0921 2620 C:\WINDOWS\system32\winsta.dll - ok
17:32:29.0921 2620 [ 382E9B87F1282E697C67AF84E34E35E2 ] C:\WINDOWS\system32\ws2_32.dll
17:32:29.0921 2620 C:\WINDOWS\system32\ws2_32.dll - ok
17:32:29.0937 2620 [ 2413635113361E54B62F0C40E4E4DAE6 ] C:\WINDOWS\system32\imm32.dll
17:32:29.0937 2620 C:\WINDOWS\system32\imm32.dll - ok
17:32:29.0937 2620 [ 36E68E02AF2206FC4A8C73CAEABE1FB0 ] C:\WINDOWS\system32\kbdcz.dll
17:32:29.0937 2620 C:\WINDOWS\system32\kbdcz.dll - ok
17:32:29.0937 2620 [ 56C5B179FE3308B655EB6208C3256FEC ] C:\WINDOWS\system32\kbdus.dll
17:32:29.0937 2620 C:\WINDOWS\system32\kbdus.dll - ok
17:32:29.0953 2620 [ 1FC0A99C167479B04325861ACAD465F8 ] C:\WINDOWS\system32\msgina.dll
17:32:29.0953 2620 C:\WINDOWS\system32\msgina.dll - ok
17:32:29.0953 2620 [ C2B86666FC44B48903AD6016D15A23DF ] C:\WINDOWS\system32\ws2help.dll
17:32:29.0953 2620 C:\WINDOWS\system32\ws2help.dll - ok
17:32:29.0968 2620 [ 99DBD95B8EB2CB87C21F17D59F2215BA ] C:\WINDOWS\system32\odbc32.dll
17:32:29.0968 2620 C:\WINDOWS\system32\odbc32.dll - ok
17:32:29.0968 2620 [ 5D63F6807E4948750B52F8D82B5C5514 ] C:\WINDOWS\system32\sxs.dll
17:32:29.0968 2620 C:\WINDOWS\system32\sxs.dll - ok
17:32:29.0968 2620 [ 82CDCB14C304B458529A05BB6C803B45 ] C:\WINDOWS\system32\odbcint.dll
17:32:29.0968 2620 C:\WINDOWS\system32\odbcint.dll - ok
17:32:29.0984 2620 [ 6CC2D21488333133AE0C9F44F6051CB7 ] C:\WINDOWS\system32\sfc.dll
17:32:29.0984 2620 C:\WINDOWS\system32\sfc.dll - ok
17:32:29.0984 2620 [ E9AF00964DA9B8838E850F12229DF9A4 ] C:\WINDOWS\system32\sfc_os.dll
17:32:29.0984 2620 C:\WINDOWS\system32\sfc_os.dll - ok
17:32:29.0984 2620 [ 8BA76BD2A943F642F267A296A15776D2 ] C:\WINDOWS\system32\shsvcs.dll
17:32:29.0984 2620 C:\WINDOWS\system32\shsvcs.dll - ok
17:32:30.0000 2620 [ 527FC50CCB2FD088A458C69134A5A1FF ] C:\WINDOWS\system32\lsasrv.dll
17:32:30.0000 2620 C:\WINDOWS\system32\lsasrv.dll - ok
17:32:30.0000 2620 [ 82A362FE1D4980B71B588D9C10748511 ] C:\WINDOWS\system32\lsass.exe
17:32:30.0000 2620 C:\WINDOWS\system32\lsass.exe - ok
17:32:30.0015 2620 [ 9AB820D13F6D6391E04EA0DF572893F6 ] C:\WINDOWS\system32\scesrv.dll
17:32:30.0015 2620 C:\WINDOWS\system32\scesrv.dll - ok
17:32:30.0015 2620 [ 6E401E61F952FBBF708AFBECEFAFAE81 ] C:\WINDOWS\system32\services.exe
17:32:30.0015 2620 C:\WINDOWS\system32\services.exe - ok
17:32:30.0015 2620 [ A39EBFD9BBE21A060B7F01997D955924 ] C:\WINDOWS\system32\umpnpmgr.dll
17:32:30.0015 2620 C:\WINDOWS\system32\umpnpmgr.dll - ok
17:32:30.0031 2620 [ 247A0EA0C4C2A5A10D98A604CB736ABC ] C:\WINDOWS\system32\ncobjapi.dll
17:32:30.0031 2620 C:\WINDOWS\system32\ncobjapi.dll - ok
17:32:30.0031 2620 [ FE8E85A1D8F080C5901DD6FE102E675F ] C:\WINDOWS\system32\cryptdll.dll
17:32:30.0031 2620 C:\WINDOWS\system32\cryptdll.dll - ok
17:32:30.0031 2620 [ 3313C68CF5B43DCA01509773B6B43DEF ] C:\WINDOWS\system32\msvcp60.dll
17:32:30.0031 2620 C:\WINDOWS\system32\msvcp60.dll - ok
17:32:30.0046 2620 [ 90B7EA55552782AE944E1212BFCB82ED ] C:\WINDOWS\system32\samsrv.dll
17:32:30.0046 2620 C:\WINDOWS\system32\samsrv.dll - ok
17:32:30.0046 2620 [ 5056AA8BB37FEAAA3D46F388FEE083AF ] C:\WINDOWS\AppPatch\AcGenral.dll
17:32:30.0046 2620 C:\WINDOWS\AppPatch\AcGenral.dll - ok
17:32:30.0062 2620 [ 64427059B1811EFD9FAF0A4749D8C96A ] C:\WINDOWS\system32\shimeng.dll
17:32:30.0062 2620 C:\WINDOWS\system32\shimeng.dll - ok
17:32:30.0062 2620 [ CAEFC013964F57072B8096187419D6C0 ] C:\WINDOWS\system32\dnsapi.dll
17:32:30.0062 2620 C:\WINDOWS\system32\dnsapi.dll - ok
17:32:30.0062 2620 [ 9630BD8135940FF6DAEA76472C06178C ] C:\WINDOWS\system32\ntdsapi.dll
17:32:30.0062 2620 C:\WINDOWS\system32\ntdsapi.dll - ok
17:32:30.0078 2620 [ 55C37415668D1F46AAC7617D7ECE35ED ] C:\WINDOWS\system32\samlib.dll
17:32:30.0078 2620 C:\WINDOWS\system32\samlib.dll - ok
17:32:30.0078 2620 [ 4B9FDD69AE4FD774E5F2F70C2BC540ED ] C:\WINDOWS\system32\winmm.dll
17:32:30.0078 2620 C:\WINDOWS\system32\winmm.dll - ok
17:32:30.0078 2620 [ 2A88F0CBCA405859D5282D0C86311FD7 ] C:\WINDOWS\system32\msacm32.dll
17:32:30.0078 2620 C:\WINDOWS\system32\msacm32.dll - ok
17:32:30.0093 2620 [ 0D3C98F2D11978D67DD4102471CFBFAC ] C:\WINDOWS\system32\uxtheme.dll
17:32:30.0093 2620 C:\WINDOWS\system32\uxtheme.dll - ok
17:32:30.0093 2620 [ A6E01C674DF87BA767F6D72873F9C9F5 ] C:\WINDOWS\system32\kerberos.dll
17:32:30.0093 2620 C:\WINDOWS\system32\kerberos.dll - ok
17:32:30.0109 2620 [ 4F3348D753FC2C6D46300F65D77B840B ] C:\WINDOWS\system32\msprivs.dll
17:32:30.0109 2620 C:\WINDOWS\system32\msprivs.dll - ok
17:32:30.0109 2620 [ D034F835F083D1F20CAFB63CFB15EF02 ] C:\WINDOWS\system32\schannel.dll
17:32:30.0109 2620 C:\WINDOWS\system32\schannel.dll - ok
17:32:30.0109 2620 [ 43CDE44202CFEFC9A1D4B39200617CD6 ] C:\WINDOWS\system32\iphlpapi.dll
17:32:30.0109 2620 C:\WINDOWS\system32\iphlpapi.dll - ok
17:32:30.0125 2620 [ 8C3B94EE342503E871E0C0F72C376AF0 ] C:\WINDOWS\system32\msv1_0.dll
17:32:30.0125 2620 C:\WINDOWS\system32\msv1_0.dll - ok
17:32:30.0125 2620 [ 2591CADAEF7D2242039255028E577688 ] C:\WINDOWS\system32\netlogon.dll
17:32:30.0125 2620 C:\WINDOWS\system32\netlogon.dll - ok
17:32:30.0125 2620 [ 26ACBD865F8CFF730F1791C4D0854352 ] C:\WINDOWS\system32\rsaenh.dll
17:32:30.0125 2620 C:\WINDOWS\system32\rsaenh.dll - ok
17:32:30.0140 2620 [ 07119058D451CB7EA4317BCFDA8599A6 ] C:\WINDOWS\system32\scecli.dll
17:32:30.0140 2620 C:\WINDOWS\system32\scecli.dll - ok
17:32:30.0140 2620 [ 2CEEBB402187AE56B585701F3D191FB3 ] C:\WINDOWS\system32\w32time.dll
17:32:30.0140 2620 C:\WINDOWS\system32\w32time.dll - ok
17:32:30.0156 2620 [ 36A876E71D71EC0DD06CBD53E744C2B4 ] C:\WINDOWS\system32\wdigest.dll
17:32:30.0156 2620 C:\WINDOWS\system32\wdigest.dll - ok
17:32:30.0156 2620 [ 62479909FC474E4AFB57741F3FF3F39D ] C:\WINDOWS\system32\ntmarta.dll
17:32:30.0156 2620 C:\WINDOWS\system32\ntmarta.dll - ok
17:32:30.0156 2620 [ 134B95A1D8FAFD74A68E4B2116DEFA7D ] C:\WINDOWS\system32\powrprof.dll
17:32:30.0156 2620 C:\WINDOWS\system32\powrprof.dll - ok
17:32:30.0171 2620 [ C72C15EE57E248C66E57C76CAB086CF2 ] C:\WINDOWS\system32\rpcss.dll
17:32:30.0171 2620 C:\WINDOWS\system32\rpcss.dll - ok
17:32:30.0171 2620 [ DFBA2915B0BF58ABB288CD4C9318CB3F ] C:\WINDOWS\system32\svchost.exe
17:32:30.0171 2620 C:\WINDOWS\system32\svchost.exe - ok
17:32:30.0171 2620 [ B79F1AB8754DD2CCF24A716005637C6D ] C:\WINDOWS\system32\wtsapi32.dll
17:32:30.0171 2620 C:\WINDOWS\system32\wtsapi32.dll - ok
17:32:30.0187 2620 [ 44FFE27BFA2CA81BCF8F938236AA3601 ] C:\WINDOWS\system32\xpsp2res.dll
17:32:30.0187 2620 C:\WINDOWS\system32\xpsp2res.dll - ok
17:32:30.0187 2620 [ 64C078BD4EFD441C3F159EDC5EA4420A ] C:\WINDOWS\system32\mswsock.dll
17:32:30.0187 2620 C:\WINDOWS\system32\mswsock.dll - ok
17:32:30.0203 2620 [ FAABA83BE47C5B15F620FAA53267A9B8 ] C:\WINDOWS\system32\hnetcfg.dll
17:32:30.0203 2620 C:\WINDOWS\system32\hnetcfg.dll - ok
17:32:30.0203 2620 [ AD2E8119C400D3A9002ABE9EB4EF238F ] C:\WINDOWS\system32\clbcatq.dll
17:32:30.0203 2620 C:\WINDOWS\system32\clbcatq.dll - ok
17:32:30.0203 2620 [ B44F68274AB7B8A54E9AD74AFF0EFAAC ] C:\WINDOWS\system32\comres.dll
17:32:30.0203 2620 C:\WINDOWS\system32\comres.dll - ok
17:32:30.0218 2620 [ D7B6BC808EBE3C9E509C9F7BADA1287F ] C:\WINDOWS\system32\winrnr.dll
17:32:30.0218 2620 C:\WINDOWS\system32\winrnr.dll - ok
17:32:30.0218 2620 [ B75F372796170EBD15DF35AE9963BFB8 ] C:\WINDOWS\system32\wshtcpip.dll
17:32:30.0218 2620 C:\WINDOWS\system32\wshtcpip.dll - ok
17:32:30.0218 2620 [ 7C260AB0F09D2D493A008ADC9943702C ] C:\WINDOWS\system32\esent.dll
17:32:30.0218 2620 C:\WINDOWS\system32\esent.dll - ok
17:32:30.0234 2620 [ 630A1012AF129918D2E2D70727D69351 ] C:\WINDOWS\system32\rasadhlp.dll
17:32:30.0234 2620 C:\WINDOWS\system32\rasadhlp.dll - ok
17:32:30.0234 2620 [ 1319F5D5C01277318BD66214A81F0DA3 ] C:\WINDOWS\system32\rtutils.dll
17:32:30.0234 2620 C:\WINDOWS\system32\rtutils.dll - ok
17:32:30.0250 2620 [ 0161D9CF2097EFC0B00CE473647F8DEB ] C:\WINDOWS\system32\activeds.dll
17:32:30.0250 2620 C:\WINDOWS\system32\activeds.dll - ok
17:32:30.0250 2620 [ C3F03BE6927FC9107886E48F8A415231 ] C:\WINDOWS\system32\adsldpc.dll
17:32:30.0250 2620 C:\WINDOWS\system32\adsldpc.dll - ok
17:32:30.0250 2620 [ BA92B89B30E85999C63FD0088C5CBADA ] C:\WINDOWS\system32\atl.dll
17:32:30.0250 2620 C:\WINDOWS\system32\atl.dll - ok
17:32:30.0265 2620 [ E25A7DF3F422A5E0B775159EF4C7BA7F ] C:\WINDOWS\system32\mprapi.dll
17:32:30.0265 2620 C:\WINDOWS\system32\mprapi.dll - ok
17:32:30.0265 2620 [ 6CC5C55DDC6DC2FF6D00145AF3937BD9 ] C:\WINDOWS\system32\rasapi32.dll
17:32:30.0265 2620 C:\WINDOWS\system32\rasapi32.dll - ok
17:32:30.0265 2620 [ 87C120A6B7C3844F6DE4FEA7DEFAC3AE ] C:\WINDOWS\system32\rasman.dll
17:32:30.0265 2620 C:\WINDOWS\system32\rasman.dll - ok
17:32:30.0281 2620 [ 8CAD9E3669E56A8B77D83B4CBB1C78BD ] C:\WINDOWS\system32\tapi32.dll
17:32:30.0281 2620 C:\WINDOWS\system32\tapi32.dll - ok
17:32:30.0281 2620 [ 42FB536264BCA3E3821F9D83B73475F0 ] C:\WINDOWS\system32\riched20.dll
17:32:30.0281 2620 C:\WINDOWS\system32\riched20.dll - ok
17:32:30.0296 2620 [ 38E2364EA6F352A359AD143E6EBEA9B0 ] C:\WINDOWS\system32\netshell.dll
17:32:30.0296 2620 C:\WINDOWS\system32\netshell.dll - ok
17:32:30.0296 2620 [ C1002A55BBA6D708618DC0A6F542C768 ] C:\WINDOWS\system32\wshirda.dll
17:32:30.0296 2620 C:\WINDOWS\system32\wshirda.dll - ok
17:32:30.0296 2620 [ B848D125E938AA2B16FCCEC482B23463 ] C:\WINDOWS\system32\credui.dll
17:32:30.0296 2620 C:\WINDOWS\system32\credui.dll - ok
17:32:30.0312 2620 [ BC80D7A3346DC441653A100A01169CDA ] C:\WINDOWS\system32\wbem\wbemcomn.dll
17:32:30.0312 2620 C:\WINDOWS\system32\wbem\wbemcomn.dll - ok
17:32:30.0312 2620 [ 3F23E87F1B9E1512CCF58D1E9E73718C ] C:\WINDOWS\system32\wbem\wbemprox.dll
17:32:30.0312 2620 C:\WINDOWS\system32\wbem\wbemprox.dll - ok
17:32:30.0312 2620 [ 87B1DCA5BD697F1A64154AB766D5BAAF ] C:\WINDOWS\system32\ati2cqag.dll
17:32:30.0312 2620 C:\WINDOWS\system32\ati2cqag.dll - ok
17:32:30.0328 2620 [ 964F9AF4468CE8F50509BC3B9A05247B ] C:\WINDOWS\system32\ati2dvag.dll
17:32:30.0328 2620 C:\WINDOWS\system32\ati2dvag.dll - ok
17:32:30.0328 2620 [ D56FB46C09A88BB10F94EDDCB0E25E23 ] C:\WINDOWS\system32\atikvmag.dll
17:32:30.0328 2620 C:\WINDOWS\system32\atikvmag.dll - ok
17:32:30.0343 2620 [ 40D78F514C8588EF12EC718D2AF0FC4E ] C:\WINDOWS\system32\audiosrv.dll
17:32:30.0343 2620 C:\WINDOWS\system32\audiosrv.dll - ok
17:32:30.0343 2620 [ 040196E339034FD83CFA2234F09C4E02 ] C:\WINDOWS\system32\ati3duag.dll
17:32:30.0343 2620 C:\WINDOWS\system32\ati3duag.dll - ok
17:32:30.0343 2620 [ 41448296748E8689AC07528F5E9E59FD ] C:\WINDOWS\system32\atiok3x2.dll
17:32:30.0343 2620 C:\WINDOWS\system32\atiok3x2.dll - ok
17:32:30.0359 2620 [ 1BD2076C717CB48967D5078EC9650891 ] C:\WINDOWS\system32\vga.dll
17:32:30.0359 2620 C:\WINDOWS\system32\vga.dll - ok
17:32:30.0359 2620 [ 6CEE54B028FF9C0EC9629C93C52DAC69 ] C:\WINDOWS\system32\ativvaxx.dll
17:32:30.0359 2620 C:\WINDOWS\system32\ativvaxx.dll - ok
17:32:30.0375 2620 [ 221C29AE1B4CC61D11D8B27DE78B2307 ] C:\WINDOWS\system32\winlogon.exe
17:32:30.0375 2620 C:\WINDOWS\system32\winlogon.exe - ok
17:32:30.0375 2620 [ B2370507BF7228B0238709885C628728 ] C:\WINDOWS\system32\authz.dll
17:32:30.0375 2620 C:\WINDOWS\system32\authz.dll - ok
17:32:30.0375 2620 [ F76B3003366A205E05AFC0D034C7D3E9 ] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
17:32:30.0375 2620 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll - ok
17:32:30.0390 2620 [ CB0031D8C8E7ACB21F96E28DD4C27959 ] C:\WINDOWS\system32\digest.dll
17:32:30.0390 2620 C:\WINDOWS\system32\digest.dll - ok
17:32:30.0390 2620 [ EC73E8ECC1F25C2C219C4ED136EBBB44 ] C:\WINDOWS\system32\msapsspc.dll
17:32:30.0390 2620 C:\WINDOWS\system32\msapsspc.dll - ok
17:32:30.0406 2620 [ E53EC6558EFBA350BCD23A2D1E602E05 ] C:\WINDOWS\system32\msnsspc.dll
17:32:30.0406 2620 C:\WINDOWS\system32\msnsspc.dll - ok
17:32:30.0406 2620 [ 12F369513123ACFF55886EF411960136 ] C:\WINDOWS\system32\winscard.dll
17:32:30.0406 2620 C:\WINDOWS\system32\winscard.dll - ok
17:32:30.0406 2620 [ 55C649966C7DC3103CC30EA55ED94B7A ] C:\WINDOWS\system32\ati2evxx.exe
17:32:30.0406 2620 C:\WINDOWS\system32\ati2evxx.exe - ok
17:32:30.0421 2620 [ 67E605837840C521BB69074F55F866C3 ] C:\WINDOWS\system32\MSCTF.dll
17:32:30.0421 2620 C:\WINDOWS\system32\MSCTF.dll - ok
17:32:30.0421 2620 [ 4D3E8B43B117AF50358DBEEAB367B0A2 ] C:\WINDOWS\system32\oleacc.dll
17:32:30.0421 2620 C:\WINDOWS\system32\oleacc.dll - ok
17:32:30.0437 2620 [ 8D8A5F708910C961A42A86AA393692B9 ] C:\WINDOWS\system32\oleaccrc.dll
17:32:30.0437 2620 C:\WINDOWS\system32\oleaccrc.dll - ok
17:32:30.0437 2620 [ D1EF8A82D7BED1EC56C8791C495EC74F ] C:\WINDOWS\system32\cfgmgr32.dll
17:32:30.0437 2620 C:\WINDOWS\system32\cfgmgr32.dll - ok
17:32:30.0437 2620 [ 3E8ECDBADCCDF9AA52EE12B516AE98B5 ] C:\WINDOWS\system32\logonui.exe
17:32:30.0437 2620 C:\WINDOWS\system32\logonui.exe - ok
17:32:30.0453 2620 [ 8C4B37F5284C2E5AB45ED9489CCF78D8 ] C:\WINDOWS\system32\ati2edxx.dll
17:32:30.0453 2620 C:\WINDOWS\system32\ati2edxx.dll - ok
17:32:30.0453 2620 [ 9B85CCCC70F19AFAC434FB6CBB351289 ] C:\WINDOWS\system32\duser.dll
17:32:30.0453 2620 C:\WINDOWS\system32\duser.dll - ok
17:32:30.0453 2620 [ 6EB66066D5C0175320CFEA0A4C74C88F ] C:\WINDOWS\system32\eventlog.dll
17:32:30.0453 2620 C:\WINDOWS\system32\eventlog.dll - ok
17:32:30.0468 2620 [ C2ADF3FC0F5010D1B0D31BB678370ADE ] C:\WINDOWS\system32\netevent.dll
17:32:30.0468 2620 C:\WINDOWS\system32\netevent.dll - ok
17:32:30.0468 2620 [ 0908640414275657B4C58F65DF53213B ] C:\WINDOWS\system32\ati2evxx.dll
17:32:30.0468 2620 C:\WINDOWS\system32\ati2evxx.dll - ok
17:32:30.0484 2620 [ A59D40E1E12E37CA8B08227437A9CA2A ] C:\WINDOWS\system32\atipdlxx.dll
17:32:30.0484 2620 C:\WINDOWS\system32\atipdlxx.dll - ok
17:32:30.0484 2620 [ 227163195E9495BD99C915EF5F42445C ] C:\WINDOWS\system32\msimg32.dll
17:32:30.0484 2620 C:\WINDOWS\system32\msimg32.dll - ok
17:32:30.0484 2620 [ 2F5919F2F6EE7A845893D9C3AA2BC56A ] C:\WINDOWS\system32\termsrv.dll
17:32:30.0484 2620 C:\WINDOWS\system32\termsrv.dll - ok
17:32:30.0500 2620 [ 49E9ED37FAEC5E8C03E81FD73D3884D6 ] C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
17:32:30.0500 2620 C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe - ok
17:32:30.0500 2620 [ 69ABCC7245D98F31DEF317A53D547657 ] C:\WINDOWS\system32\icaapi.dll
17:32:30.0500 2620 C:\WINDOWS\system32\icaapi.dll - ok
17:32:30.0500 2620 [ E92607D447A180F15EEA3843367DA4C7 ] C:\WINDOWS\system32\shgina.dll
17:32:30.0500 2620 C:\WINDOWS\system32\shgina.dll - ok
17:32:30.0515 2620 [ 131D50F081D2E29EBD1365B21F6B9736 ] C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
17:32:30.0515 2620 C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe - ok
17:32:30.0515 2620 [ 36B7CD28481085AADA7F1515915C18CA ] C:\WINDOWS\system32\cscdll.dll
17:32:30.0515 2620 C:\WINDOWS\system32\cscdll.dll - ok
17:32:30.0531 2620 [ 4B388FEE5BA36D08D073E5EC7ACDC997 ] C:\WINDOWS\system32\hid.dll
17:32:30.0531 2620 C:\WINDOWS\system32\hid.dll - ok
17:32:30.0531 2620 [ B3FF8C662EBABC6D42689F09FD4EF521 ] C:\WINDOWS\system32\mstlsapi.dll
17:32:30.0531 2620 C:\WINDOWS\system32\mstlsapi.dll - ok
17:32:30.0531 2620 [ C30BFC4B8739522ACE6174A204D5A087 ] C:\WINDOWS\system32\wlnotify.dll
17:32:30.0531 2620 C:\WINDOWS\system32\wlnotify.dll - ok
17:32:30.0546 2620 [ 11ADD8816D61A6025844EB5123EC92D3 ] C:\Program Files\Intel\Wireless\Bin\Libeay32.dll
17:32:30.0546 2620 C:\Program Files\Intel\Wireless\Bin\Libeay32.dll - ok
17:32:30.0546 2620 [ 03D99216594CA1061CC3E197EF7BEAC7 ] C:\Program Files\Intel\Wireless\Bin\TraceAPI.dll
17:32:30.0546 2620 C:\Program Files\Intel\Wireless\Bin\TraceAPI.dll - ok
17:32:30.0562 2620 [ A543FC88A320A0758A55BE03789EAF7C ] C:\WINDOWS\system32\wsock32.dll
17:32:30.0562 2620 C:\WINDOWS\system32\wsock32.dll - ok
17:32:30.0562 2620 [ BBF5780BEB99A84DE110DCF51C047420 ] C:\Program Files\Intel\Wireless\Bin\IntStngs.dll
17:32:30.0562 2620 C:\Program Files\Intel\Wireless\Bin\IntStngs.dll - ok
17:32:30.0562 2620 [ B47AEE3FE8D6036B1F7B04C2417D639C ] C:\Program Files\Intel\Wireless\Bin\iWMSProv.dll
17:32:30.0562 2620 C:\Program Files\Intel\Wireless\Bin\iWMSProv.dll - ok
17:32:30.0578 2620 [ 9FD027A1F15521052F648A0DD282B298 ] C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll
17:32:30.0578 2620 C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll - ok
17:32:30.0578 2620 [ 058F744EADE8D38AD2CDD667B2DCD5E7 ] C:\WINDOWS\system32\netcfgx.dll
17:32:30.0578 2620 C:\WINDOWS\system32\netcfgx.dll - ok
17:32:30.0593 2620 [ C9CAF0BBEC706375E753CB3914388EE0 ] C:\Program Files\Common Files\System\ado\msado15.dll
17:32:30.0593 2620 C:\Program Files\Common Files\System\ado\msado15.dll - ok
17:32:30.0593 2620 [ D9E2D4F58DF0AEE4A090D37463D84AFA ] C:\WINDOWS\system32\bt2k_ins.dll
17:32:30.0593 2620 C:\WINDOWS\system32\bt2k_ins.dll - ok
17:32:30.0593 2620 [ 2144E0A2E64E78076966B4A7BAD10443 ] C:\WINDOWS\system32\clusapi.dll
17:32:30.0593 2620 C:\WINDOWS\system32\clusapi.dll - ok
17:32:30.0609 2620 [ 562830EFB7CF367FB773FEA5256E67C8 ] C:\WINDOWS\system32\dhcpcsvc.dll
17:32:30.0609 2620 C:\WINDOWS\system32\dhcpcsvc.dll - ok
17:32:30.0609 2620 [ F605B3F5674D67587C4B6C9E92A3E025 ] C:\WINDOWS\system32\dnsrslvr.dll
17:32:30.0609 2620 C:\WINDOWS\system32\dnsrslvr.dll - ok
17:32:30.0609 2620 [ F9EE6D2AAB0690B34AE35BA9921A1414 ] C:\WINDOWS\system32\lmhsvc.dll
17:32:30.0609 2620 C:\WINDOWS\system32\lmhsvc.dll - ok
17:32:30.0625 2620 [ E07FCCE974F48D9743D01BD5F22E66B8 ] C:\WINDOWS\system32\rdpdd.dll
17:32:30.0625 2620 C:\WINDOWS\system32\rdpdd.dll - ok
17:32:30.0625 2620 [ A541F73FB5CB72B57CE90BF349363D6C ] C:\WINDOWS\system32\rdpwsx.dll
17:32:30.0625 2620 C:\WINDOWS\system32\rdpwsx.dll - ok
17:32:30.0640 2620 [ 1E40DA866C950671A2F1FD20B0B2A8C4 ] C:\WINDOWS\system32\tsddd.dll
17:32:30.0640 2620 C:\WINDOWS\system32\tsddd.dll - ok
17:32:30.0640 2620 [ 325CEDEF696EF4B649DDCD3968D085C9 ] C:\WINDOWS\system32\wzcsvc.dll
17:32:30.0640 2620 C:\WINDOWS\system32\wzcsvc.dll - ok
17:32:30.0640 2620 [ 97F5BE808F922DEFF4AF6E53F8104DA7 ] C:\Program Files\Common Files\System\Ole DB\oledb32.dll
17:32:30.0640 2620 C:\Program Files\Common Files\System\Ole DB\oledb32.dll - ok
17:32:30.0656 2620 [ 8656793679EC90A2A0629DF38884AB80 ] C:\WINDOWS\system32\irmon.dll
17:32:30.0656 2620 C:\WINDOWS\system32\irmon.dll - ok
17:32:30.0656 2620 [ 0F75449B3B8B66D9651E54396810FF61 ] C:\WINDOWS\system32\msdart.dll
17:32:30.0656 2620 C:\WINDOWS\system32\msdart.dll - ok
17:32:30.0656 2620 [ F982FE0E10A2C8A9AD32ECB657BDBD26 ] C:\WINDOWS\system32\rastls.dll
17:32:30.0656 2620 C:\WINDOWS\system32\rastls.dll - ok
17:32:30.0671 2620 [ D1A454AFF01F7184C1A32079D5A7D0CE ] C:\WINDOWS\system32\wmi.dll
17:32:30.0671 2620 C:\WINDOWS\system32\wmi.dll - ok
17:32:30.0671 2620 [ 52FD4C06499F8B5E687F28049E9E186B ] C:\Program Files\Common Files\System\Ole DB\oledb32r.dll
17:32:30.0671 2620 C:\Program Files\Common Files\System\Ole DB\oledb32r.dll - ok
17:32:30.0671 2620 [ 3A304B1792EDC522E14C1940A647711D ] C:\WINDOWS\system32\mlang.dll
17:32:30.0671 2620 C:\WINDOWS\system32\mlang.dll - ok
17:32:30.0687 2620 [ 95F38E460B6D20E80D082229D12F72DA ] C:\Program Files\Common Files\System\Ole DB\msdasql.dll
17:32:30.0687 2620 C:\Program Files\Common Files\System\Ole DB\msdasql.dll - ok
17:32:30.0687 2620 [ 4E7CF2B2D978F1F077CD3E9FF1FDB7D5 ] C:\WINDOWS\system32\raschap.dll
17:32:30.0687 2620 C:\WINDOWS\system32\raschap.dll - ok
17:32:30.0703 2620 [ 54CFC5CCD3A4F94362F39C3C4B87044F ] C:\Program Files\Common Files\System\Ole DB\msdasqlr.dll
17:32:30.0703 2620 C:\Program Files\Common Files\System\Ole DB\msdasqlr.dll - ok
17:32:30.0703 2620 [ 0737EC5BDE7EB394F2C5A2ADA7E08E5F ] C:\Program Files\Common Files\System\Ole DB\msdatl3.dll
17:32:30.0703 2620 C:\Program Files\Common Files\System\Ole DB\msdatl3.dll - ok
17:32:30.0703 2620 [ 8843E15CAB1C270AB862B626EF06A956 ] C:\WINDOWS\system32\mswstr10.dll
17:32:30.0703 2620 C:\WINDOWS\system32\mswstr10.dll - ok
17:32:30.0718 2620 [ DC752DC6BD9E8988E541F048C6D0DC0D ] C:\WINDOWS\system32\xmlprovi.dll
17:32:30.0718 2620 C:\WINDOWS\system32\xmlprovi.dll - ok
17:32:30.0718 2620 [ 26FA42318E4D4A06985509892C416F54 ] C:\WINDOWS\system32\mswdat10.dll
17:32:30.0718 2620 C:\WINDOWS\system32\mswdat10.dll - ok
17:32:30.0734 2620 [ 6CDFD3E50BCF69EDD7522BCC978E84E7 ] C:\WINDOWS\system32\wzcsapi.dll
17:32:30.0734 2620 C:\WINDOWS\system32\wzcsapi.dll - ok
17:32:30.0734 2620 [ AF342D2781225A8769686E0D47E3123E ] C:\WINDOWS\system32\netman.dll
17:32:30.0734 2620 C:\WINDOWS\system32\netman.dll - ok
17:32:30.0734 2620 [ D32C1D39332B30E91E172713A4AE6DDF ] C:\WINDOWS\system32\comsvcs.dll
17:32:30.0734 2620 C:\WINDOWS\system32\comsvcs.dll - ok
17:32:30.0750 2620 [ 9E6FE6129619598F5738D62D5F68A039 ] C:\WINDOWS\system32\colbact.dll
17:32:30.0750 2620 C:\WINDOWS\system32\colbact.dll - ok
17:32:30.0750 2620 [ 57F1E544A27CF584E124E18944D74F58 ] C:\WINDOWS\system32\mtxclu.dll
17:32:30.0750 2620 C:\WINDOWS\system32\mtxclu.dll - ok
17:32:30.0765 2620 [ B18F2248EA6C9C362D02BEF72594CB93 ] C:\WINDOWS\system32\msjet40.dll
17:32:30.0765 2620 C:\WINDOWS\system32\msjet40.dll - ok
17:32:30.0765 2620 [ 99177EFA708439BE1DA02B389BEDFF17 ] C:\WINDOWS\system32\odbcjt32.dll
17:32:30.0765 2620 C:\WINDOWS\system32\odbcjt32.dll - ok
17:32:30.0765 2620 [ F43DBBBD943C01D975778B8874ABDAD5 ] C:\WINDOWS\system32\resutils.dll
17:32:30.0765 2620 C:\WINDOWS\system32\resutils.dll - ok
17:32:30.0781 2620 [ 83B80F0BC46ACAE673CB5FB7954A39C6 ] C:\Program Files\Common Files\System\msadc\msadce.dll
17:32:30.0781 2620 C:\Program Files\Common Files\System\msadc\msadce.dll - ok
17:32:30.0781 2620 [ C600F6023CF1175381197B2D70E5693F ] C:\Program Files\Common Files\System\msadc\msadcer.dll
17:32:30.0781 2620 C:\Program Files\Common Files\System\msadc\msadcer.dll - ok
17:32:30.0781 2620 [ 518E1C19782578EF2DC9E5B1BD282E74 ] C:\WINDOWS\system32\msjint40.dll
17:32:30.0781 2620 C:\WINDOWS\system32\msjint40.dll - ok
17:32:30.0796 2620 [ C438DDAFBCB23F53EC5C1A4497356B80 ] C:\WINDOWS\system32\msjter40.dll
17:32:30.0796 2620 C:\WINDOWS\system32\msjter40.dll - ok
17:32:30.0796 2620 [ E92EF3CD4CD3DFC1E9E9AF3095F5F9D9 ] C:\WINDOWS\system32\odbccp32.dll
17:32:30.0796 2620 C:\WINDOWS\system32\odbccp32.dll - ok
17:32:30.0812 2620 [ 7A5E1ECF5056B2CBF35CD153175EF5CF ] C:\WINDOWS\system32\odbcji32.dll
17:32:30.0812 2620 C:\WINDOWS\system32\odbcji32.dll - ok
17:32:30.0812 2620 [ 8F2097E8B174F38178570C611464935F ] C:\WINDOWS\system32\atl71.dll
17:32:30.0812 2620 C:\WINDOWS\system32\atl71.dll - ok
17:32:30.0812 2620 [ 9CC4E25B84458207E4120645298A614C ] C:\WINDOWS\system32\msidle.dll
17:32:30.0812 2620 C:\WINDOWS\system32\msidle.dll - ok
17:32:30.0828 2620 [ 29AC93307C6182DBE336BCA314947F28 ] C:\WINDOWS\system32\schedsvc.dll
17:32:30.0828 2620 C:\WINDOWS\system32\schedsvc.dll - ok
17:32:30.0828 2620 [ 21B6FAA88044A41640E03EBB68BE93E8 ] C:\WINDOWS\system32\spoolsv.exe
17:32:30.0828 2620 C:\WINDOWS\system32\spoolsv.exe - ok
17:32:30.0843 2620 [ 69B0569AAE33F0D5057CA0E8577AAF07 ] C:\WINDOWS\system32\wkssvc.dll
17:32:30.0843 2620 C:\WINDOWS\system32\wkssvc.dll - ok
17:32:30.0843 2620 [ 53114D57AB73A406AC7F602227781A99 ] C:\WINDOWS\explorer.exe
17:32:30.0843 2620 C:\WINDOWS\explorer.exe - ok
17:32:30.0843 2620 [ 46297F66729FA6DDB70B3859232A52D3 ] C:\WINDOWS\system32\cscui.dll
17:32:30.0843 2620 C:\WINDOWS\system32\cscui.dll - ok
17:32:30.0859 2620 [ A07BCFC144C672C3D96C2CA0DBACCAB8 ] C:\WINDOWS\system32\dpcdll.dll
17:32:30.0859 2620 C:\WINDOWS\system32\dpcdll.dll - ok
17:32:30.0859 2620 [ 63C6146FE8CCD2CBA0C6F283E35B46D2 ] C:\WINDOWS\system32\browseui.dll
17:32:30.0859 2620 C:\WINDOWS\system32\browseui.dll - ok
17:32:30.0859 2620 [ B356DD67178B22A8C2FBD47316CCB43B ] C:\WINDOWS\system32\midimap.dll
17:32:30.0859 2620 C:\WINDOWS\system32\midimap.dll - ok
17:32:30.0875 2620 [ BEA26F76B3A46E5E0C6A5081046B8280 ] C:\WINDOWS\system32\themeui.dll
17:32:30.0875 2620 C:\WINDOWS\system32\themeui.dll - ok
17:32:30.0875 2620 [ 835113FA5B05C0C48C7D0716320E7DA7 ] C:\WINDOWS\system32\actxprxy.dll
17:32:30.0875 2620 C:\WINDOWS\system32\actxprxy.dll - ok
17:32:30.0890 2620 [ 152F9FAFA23511BF0EC975EB879F43C6 ] C:\WINDOWS\system32\MSIMTF.dll
17:32:30.0890 2620 C:\WINDOWS\system32\MSIMTF.dll - ok
17:32:30.0890 2620 [ 565FDF3854E8CC0EFDE2D542163B91D4 ] C:\WINDOWS\system32\msutb.dll
17:32:30.0890 2620 C:\WINDOWS\system32\msutb.dll - ok
17:32:30.0890 2620 [ EE1F842DB2AE412136643B0814D770A6 ] C:\WINDOWS\system32\linkinfo.dll
17:32:30.0890 2620 C:\WINDOWS\system32\linkinfo.dll - ok
17:32:30.0906 2620 [ C159EE0E584730DDC23D74781F92F798 ] C:\WINDOWS\system32\ntshrui.dll
17:32:30.0906 2620 C:\WINDOWS\system32\ntshrui.dll - ok
17:32:30.0906 2620 [ C143959D0C808353BC0FCB1F177B11CB ] C:\WINDOWS\system32\shdoclc.dll
17:32:30.0906 2620 C:\WINDOWS\system32\shdoclc.dll - ok
17:32:30.0906 2620 [ 8F4653B6A7C9790A5A016BD5AF8065DB ] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
17:32:30.0906 2620 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe - ok
17:32:30.0921 2620 [ 81374647938879E6B5DCFC602C6A8A30 ] C:\WINDOWS\system32\mfc42.dll
17:32:30.0921 2620 C:\WINDOWS\system32\mfc42.dll - ok
17:32:30.0921 2620 [ C0B677971967E6807F280A0D184DD533 ] C:\WINDOWS\system32\mfc42loc.dll
17:32:30.0921 2620 C:\WINDOWS\system32\mfc42loc.dll - ok
17:32:30.0921 2620 [ A46FFD2EDFD264B33FC8D666823FD417 ] C:\WINDOWS\system32\mydocs.dll
17:32:30.0921 2620 C:\WINDOWS\system32\mydocs.dll - ok
17:32:30.0937 2620 [ 3757DE74402D10B488E071E732A91A62 ] C:\WINDOWS\system32\moricons.dll
17:32:30.0937 2620 C:\WINDOWS\system32\moricons.dll - ok
17:32:30.0937 2620 [ 9A1A488A3FBA380D6E69B1CA637BF3E2 ] C:\WINDOWS\system32\batmeter.dll
17:32:30.0937 2620 C:\WINDOWS\system32\batmeter.dll - ok
17:32:30.0953 2620 [ 43EEFC84A67CD22C5FF60CB08794D11D ] C:\WINDOWS\system32\stobject.dll
17:32:30.0953 2620 C:\WINDOWS\system32\stobject.dll - ok
17:32:30.0953 2620 [ 9C5AFB54B7EDFE5237C6380565FC879A ] C:\WINDOWS\system32\SynCOM.dll
17:32:30.0953 2620 C:\WINDOWS\system32\SynCOM.dll - ok
17:32:30.0953 2620 [ 7668071C692B4FF1BF77765D4648049C ] C:\WINDOWS\system32\webcheck.dll
17:32:30.0953 2620 C:\WINDOWS\system32\webcheck.dll - ok
17:32:30.0968 2620 [ F80B68FAB0D98D84EF53A116BC6D006B ] C:\Program Files\Synaptics\SynTP\SynMood.exe
17:32:30.0968 2620 C:\Program Files\Synaptics\SynTP\SynMood.exe - ok
17:32:30.0968 2620 [ 11B5F9991711382150A11987E887998C ] C:\Program Files\Synaptics\SynTP\SynZMetr.exe
17:32:30.0968 2620 C:\Program Files\Synaptics\SynTP\SynZMetr.exe - ok
17:32:30.0984 2620 [ AD88B3DD262DFC48B88739731E42011D ] C:\WINDOWS\system32\msxml3.dll
17:32:30.0984 2620 C:\WINDOWS\system32\msxml3.dll - ok
17:32:30.0984 2620 [ 55D5310AF043236E884564AC6DE775DF ] C:\WINDOWS\system32\SynTPAPI.dll
17:32:30.0984 2620 C:\WINDOWS\system32\SynTPAPI.dll - ok
17:32:30.0984 2620 [ 92393A08BC2B04842ACC087C09396A65 ] C:\WINDOWS\system32\winhttp.dll
17:32:30.0984 2620 C:\WINDOWS\system32\winhttp.dll - ok
17:32:31.0000 2620 [ CC2CFD223B1A6CE92B505811F521801A ] C:\WINDOWS\system32\msxml3r.dll
17:32:31.0000 2620 C:\WINDOWS\system32\msxml3r.dll - ok
17:32:31.0000 2620 [ C601A02CB2218539B0A502FEF85E71F7 ] C:\WINDOWS\system32\sensapi.dll
17:32:31.0000 2620 C:\WINDOWS\system32\sensapi.dll - ok
17:32:31.0015 2620 [ 055309C927DEF2F09305ED0F3065CF66 ] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\msvcr80.dll
17:32:31.0015 2620 C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\msvcr80.dll - ok
17:32:31.0015 2620 [ B2EEE3DEE31F50E082E9C720A6D7757D ] C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcp90.dll
17:32:31.0015 2620 C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcp90.dll - ok
17:32:31.0031 2620 [ 7538050656FE5D63CB4B80349DD1CFE3 ] C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcr90.dll
17:32:31.0031 2620 C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcr90.dll - ok
17:32:31.0031 2620 [ 423069307FB726E51E2A66F1C3F738FE ] C:\WINDOWS\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfc90u.dll
17:32:31.0031 2620 C:\WINDOWS\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfc90u.dll - ok
17:32:31.0046 2620 [ 8C22083ED515DC94D575438662F0BE6A ] C:\WINDOWS\system32\msi.dll
17:32:31.0046 2620 C:\WINDOWS\system32\msi.dll - ok
17:32:31.0046 2620 [ 317C54DCAB9EE29CD4B9F55D197A90D1 ] C:\WINDOWS\system32\msisip.dll
17:32:31.0046 2620 C:\WINDOWS\system32\msisip.dll - ok
17:32:31.0062 2620 [ 1BCE2C02487972FF0D5E6702D79E7A75 ] C:\Program Files\7-Zip\7zFM.exe
17:32:31.0062 2620 C:\Program Files\7-Zip\7zFM.exe - ok
17:32:31.0062 2620 [ B02A99F527ACA02B3F2711FC29A95935 ] C:\WINDOWS\system32\AcSignIcon.dll
17:32:31.0062 2620 C:\WINDOWS\system32\AcSignIcon.dll - ok
17:32:31.0062 2620 [ 2E0E95F2732B594C26C2214AF17C3ED6 ] C:\Program Files\AVG Secure Search\11.0.0.10\AVG Secure Search_toolbar.dll
17:32:31.0062 2620 C:\Program Files\AVG Secure Search\11.0.0.10\AVG Secure Search_toolbar.dll - ok
17:32:31.0078 2620 [ 6143EC5FE54DB6AD0551546F49C62EAE ] C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll
17:32:31.0078 2620 C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll - ok
17:32:31.0078 2620 [ DA3FAF7101D8192C759C053B7B2BC0D9 ] C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\11.0.2\SiteSafety.dll
17:32:31.0078 2620 C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\11.0.2\SiteSafety.dll - ok
17:32:31.0093 2620 [ F3D89178658C5A6E5615F0ECA2989F57 ] C:\WINDOWS\system32\dbghelp.dll
17:32:31.0093 2620 C:\WINDOWS\system32\dbghelp.dll - ok
17:32:31.0093 2620 [ 831F69C822D0FD91C5022E0A4985019C ] C:\Program Files\AVG Secure Search\vprot.exe
17:32:31.0093 2620 C:\Program Files\AVG Secure Search\vprot.exe - ok
17:32:31.0093 2620 [ E2C78D19572AACC2062A00F01503807E ] C:\Program Files\AVG\AVG2012\avgcfgx.dll
17:32:31.0093 2620 C:\Program Files\AVG\AVG2012\avgcfgx.dll - ok
17:32:31.0109 2620 [ 17D469C94763642CD58FF8C98C12CA6F ] C:\Program Files\AVG\AVG2012\avgdecider.dll
17:32:31.0109 2620 C:\Program Files\AVG\AVG2012\avgdecider.dll - ok
17:32:31.0109 2620 [ 8B9D6D070113CFD8E20793768AFA26FC ] C:\Program Files\AVG\AVG2012\avglngx.dll
17:32:31.0109 2620 C:\Program Files\AVG\AVG2012\avglngx.dll - ok
17:32:31.0125 2620 [ B496B116F621223357DEFE4508B0987E ] C:\Program Files\AVG\AVG2012\avgsrmx.dll
17:32:31.0125 2620 C:\Program Files\AVG\AVG2012\avgsrmx.dll - ok
17:32:31.0125 2620 [ 8D01FA11124811ED06E876E5DDE70039 ] C:\Program Files\AVG\AVG2012\avgcertx.dll
17:32:31.0125 2620 C:\Program Files\AVG\AVG2012\avgcertx.dll - ok
17:32:31.0125 2620 [ 60732ECEC8AEF0A05FE36E661AA1C99C ] C:\Program Files\AVG\AVG2012\avgclitx.dll
17:32:31.0125 2620 C:\Program Files\AVG\AVG2012\avgclitx.dll - ok
17:32:31.0140 2620 [ B2E9DB5E5F4091FCDA0C9249C1E3F974 ] C:\Program Files\AVG\AVG2012\avgidpmx.dll
17:32:31.0140 2620 C:\Program Files\AVG\AVG2012\avgidpmx.dll - ok
17:32:31.0140 2620 [ C77ACC3B8ACFEC421D9EB8240E7FF0B3 ] C:\Program Files\AVG\AVG2012\avgidpsdkx.dll
17:32:31.0140 2620 C:\Program Files\AVG\AVG2012\avgidpsdkx.dll - ok
17:32:31.0156 2620 [ 59976670B8E8402EDCE18896A02145BB ] C:\Program Files\AVG\AVG2012\avgabout.dll
17:32:31.0156 2620 C:\Program Files\AVG\AVG2012\avgabout.dll - ok
17:32:31.0156 2620 [ BE897F865582A30F7D552B3FECF9B24A ] C:\Program Files\AVG\AVG2012\avgapps.dll
17:32:31.0156 2620 C:\Program Files\AVG\AVG2012\avgapps.dll - ok
17:32:31.0156 2620 [ ADFA73BBBED712CFA273FF65B6A8571B ] C:\Program Files\AVG\AVG2012\avgpostinstx.dll
17:32:31.0156 2620 C:\Program Files\AVG\AVG2012\avgpostinstx.dll - ok
17:32:31.0171 2620 [ 80956486306D1F546EDC1DD7FAE87F62 ] C:\Program Files\AVG\AVG2012\avgtray.exe
17:32:31.0171 2620 C:\Program Files\AVG\AVG2012\avgtray.exe - ok
17:32:31.0171 2620 [ 0A527DA865EA7E91CABFACE9A9279022 ] C:\Program Files\AVG\AVG2012\avgui.exe
17:32:31.0171 2620 C:\Program Files\AVG\AVG2012\avgui.exe - ok
17:32:31.0171 2620 [ A054D2CD9FB1DC4E5904E3B88B55B2E2 ] C:\Program Files\AVG\AVG2012\avguires.dll
17:32:31.0171 2620 C:\Program Files\AVG\AVG2012\avguires.dll - ok
17:32:31.0187 2620 [ D14719188E4E94265C159E318A30EA72 ] C:\PROGRA~1\AVG\AVG2012\avgchjwx.dll
17:32:31.0187 2620 C:\PROGRA~1\AVG\AVG2012\avgchjwx.dll - ok
17:32:31.0187 2620 [ 11790A73767FBC981BA961D2231907E2 ] C:\PROGRA~1\AVG\AVG2012\avgcclix.dll
17:32:31.0187 2620 C:\PROGRA~1\AVG\AVG2012\avgcclix.dll - ok
17:32:31.0203 2620 [ 2F31B7F954BED437F2C75026C65CAF7B ] C:\WINDOWS\system32\drivers\wmilib.sys
17:32:31.0203 2620 C:\WINDOWS\system32\drivers\wmilib.sys - ok
17:32:31.0203 2620 [ CDFE4411A69C224BD1D11B2DA92DAC51 ] C:\WINDOWS\system32\drivers\atapi.sys
17:32:31.0203 2620 C:\WINDOWS\system32\drivers\atapi.sys - ok
17:32:31.0203 2620 [ FE97D0343ACFDEBDD578FC67CC91FA87 ] C:\WINDOWS\system32\drivers\dxapi.sys
17:32:31.0203 2620 C:\WINDOWS\system32\drivers\dxapi.sys - ok
17:32:31.0218 2620 [ C9BF2F12C4E6C12F8A85FBA4B6BC6208 ] C:\WINDOWS\system32\watchdog.sys
17:32:31.0218 2620 C:\WINDOWS\system32\watchdog.sys - ok
17:32:31.0218 2620 [ 6BF9F668422633B3BEE393DF9C29FC77 ] C:\WINDOWS\system32\win32k.sys
17:32:31.0218 2620 C:\WINDOWS\system32\win32k.sys - ok
17:32:31.0218 2620 [ D3DAC8432110AAD0B02A58B4459AB835 ] C:\WINDOWS\system32\drivers\dxg.sys
17:32:31.0218 2620 C:\WINDOWS\system32\drivers\dxg.sys - ok
17:32:31.0234 2620 [ A73F5D6705B1D820C19B18782E176EFD ] C:\WINDOWS\system32\drivers\dxgthk.sys
17:32:31.0234 2620 C:\WINDOWS\system32\drivers\dxgthk.sys - ok
17:32:31.0234 2620 [ 93B9E2450B9E5D7F650C72B6E05FD81E ] C:\WINDOWS\system32\MSCTFIME.IME
17:32:31.0234 2620 C:\WINDOWS\system32\MSCTFIME.IME - ok
17:32:31.0250 2620 [ 375EB0B97E3950ADEF3633C27A82438B ] C:\WINDOWS\system32\drivers\AegisP.sys
17:32:31.0250 2620 C:\WINDOWS\system32\drivers\AegisP.sys - ok
17:32:31.0250 2620 [ 86C204836FEEC22510D434982D4221B8 ] C:\WINDOWS\system32\drivers\irda.sys
17:32:31.0250 2620 C:\WINDOWS\system32\drivers\irda.sys - ok
17:32:31.0250 2620 [ E2C6ABCBEFB1D44F6AAEB1CD5D6062D4 ] C:\WINDOWS\system32\drivers\s24trans.sys
17:32:31.0250 2620 C:\WINDOWS\system32\drivers\s24trans.sys - ok
17:32:31.0265 2620 [ BDAB541C731D3AC59F623B88142036B7 ] C:\WINDOWS\system32\winspool.drv
17:32:31.0265 2620 C:\WINDOWS\system32\winspool.drv - ok
17:32:31.0265 2620 [ 34D6CD56409DA9A7ED573E1C90A308BF ] C:\WINDOWS\system32\drivers\ndisuio.sys
17:32:31.0265 2620 C:\WINDOWS\system32\drivers\ndisuio.sys - ok
17:32:31.0281 2620 [ 46EDCC8F2DB2F322C24F48785CB46366 ] C:\WINDOWS\system32\drivers\mrxdav.sys
17:32:31.0281 2620 C:\WINDOWS\system32\drivers\mrxdav.sys - ok
17:32:31.0281 2620 [ 3791ADF1D3466AC6B4B662D3F79CBFEC ] C:\WINDOWS\system32\webclnt.dll
17:32:31.0281 2620 C:\WINDOWS\system32\webclnt.dll - ok
17:32:31.0281 2620 [ C1DDBC85251551A840212999DA3D95F3 ] C:\WINDOWS\system32\drivers\serial.sys
17:32:31.0281 2620 C:\WINDOWS\system32\drivers\serial.sys - ok
17:32:31.0296 2620 [ BD5D11CEDBCDE4FA97D2387E7069B1FF ] C:\Program Files\AVG\AVG2012\avgfws.exe
17:32:31.0296 2620 C:\Program Files\AVG\AVG2012\avgfws.exe - ok
17:32:31.0296 2620 [ 2797F33EBF50466020C430EE4F037933 ] C:\WINDOWS\system32\drivers\wdmaud.sys
17:32:31.0296 2620 C:\WINDOWS\system32\drivers\wdmaud.sys - ok
17:32:31.0312 2620 [ 812D645AEB941C63AD33BA98DB31697C ] C:\WINDOWS\system32\wdmaud.drv
17:32:31.0312 2620 C:\WINDOWS\system32\wdmaud.drv - ok
17:32:31.0312 2620 [ 650AD082D46BAC0E64C9C0E0928492FD ] C:\WINDOWS\system32\drivers\sysaudio.sys
17:32:31.0312 2620 C:\WINDOWS\system32\drivers\sysaudio.sys - ok
17:32:31.0312 2620 [ 8E186B8F23295D1E42C573B82B80D548 ] C:\WINDOWS\system32\drivers\splitter.sys
17:32:31.0312 2620 C:\WINDOWS\system32\drivers\splitter.sys - ok
17:32:31.0328 2620 [ 841F385C6CFAF66B58FBD898722BB4F0 ] C:\WINDOWS\system32\drivers\aec.sys
17:32:31.0328 2620 C:\WINDOWS\system32\drivers\aec.sys - ok
17:32:31.0328 2620 [ 94ABC808FC4B6D7D2BBF42B85E25BB4D ] C:\WINDOWS\system32\drivers\swmidi.sys
17:32:31.0328 2620 C:\WINDOWS\system32\drivers\swmidi.sys - ok
17:32:31.0328 2620 [ A6F881284AC1150E37D9AE47FF601267 ] C:\WINDOWS\system32\drivers\DMusic.sys
17:32:31.0328 2620 C:\WINDOWS\system32\drivers\DMusic.sys - ok
17:32:31.0343 2620 [ D93CAD07C5683DB066B0B2D2D3790EAD ] C:\WINDOWS\system32\drivers\kmixer.sys
17:32:31.0343 2620 C:\WINDOWS\system32\drivers\kmixer.sys - ok
17:32:31.0343 2620 [ 8DF600506EC7B5BD6D1A362D81366428 ] C:\WINDOWS\system32\snmpapi.dll
17:32:31.0343 2620 C:\WINDOWS\system32\snmpapi.dll - ok
17:32:31.0359 2620 [ 1ED4DBBAE9F5D558DBBA4CC450E3EB2E ] C:\WINDOWS\system32\drivers\drmkaud.sys
17:32:31.0359 2620 C:\WINDOWS\system32\drivers\drmkaud.sys - ok
17:32:31.0359 2620 [ BAF975B72062F53D327788E99D64197E ] C:\WINDOWS\system32\drivers\avgidsshimx.sys
17:32:31.0359 2620 C:\WINDOWS\system32\drivers\avgidsshimx.sys - ok
17:32:31.0359 2620 [ EA1145DEBCD508FD25BD1E95C4346929 ] C:\Program Files\AVG\AVG2012\avgwdsvc.exe
17:32:31.0359 2620 C:\Program Files\AVG\AVG2012\avgwdsvc.exe - ok
17:32:31.0375 2620 [ 58A0D4A0DB5FB76438A38F30E666B212 ] C:\WINDOWS\system32\msacm32.drv
17:32:31.0375 2620 C:\WINDOWS\system32\msacm32.drv - ok
17:32:31.0375 2620 [ C5A75EB48E2344ABDC162BDA79E16841 ] C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
17:32:31.0375 2620 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe - ok
17:32:31.0390 2620 [ FCF1A9C3FB29786946302B4470952D85 ] C:\Program Files\AVG\AVG2012\avgcslx.dll
17:32:31.0390 2620 C:\Program Files\AVG\AVG2012\avgcslx.dll - ok
17:32:31.0390 2620 [ AC633C7D40C63A197649955A512AD7BD ] C:\Program Files\AVG\AVG2012\avgwd.dll
17:32:31.0390 2620 C:\Program Files\AVG\AVG2012\avgwd.dll - ok
17:32:31.0390 2620 [ E5F7C30EDF0892667933BE879F067D67 ] C:\WINDOWS\system32\msvcr100_clr0400.dll
17:32:31.0390 2620 C:\WINDOWS\system32\msvcr100_clr0400.dll - ok
17:32:31.0406 2620 [ 0A31324EFBE679E5B52102D123DE4DF8 ] C:\WINDOWS\system32\desk.cpl
17:32:31.0406 2620 C:\WINDOWS\system32\desk.cpl - ok
17:32:31.0406 2620 [ AFF2E23E4E867140F07ABADC9E29ACDC ] C:\Program Files\AVG\AVG2012\avgopensslx.dll
17:32:31.0406 2620 C:\Program Files\AVG\AVG2012\avgopensslx.dll - ok
17:32:31.0421 2620 [ 3067A1DF068DCEE90922590EDD24F12F ] C:\WINDOWS\system32\certcli.dll
17:32:31.0421 2620 C:\WINDOWS\system32\certcli.dll - ok
17:32:31.0421 2620 [ 70D2A1756F4B2067658A186C963FCABD ] C:\WINDOWS\system32\cryptsvc.dll
17:32:31.0421 2620 C:\WINDOWS\system32\cryptsvc.dll - ok
17:32:31.0421 2620 [ D68564FCFBDFC04280CDBBB37CF7EF7F ] C:\WINDOWS\system32\drivers\epm-psd.sys
17:32:31.0421 2620 C:\WINDOWS\system32\drivers\epm-psd.sys - ok
17:32:31.0437 2620 [ 2D0C4A7077F6C68449479F5444C580A7 ] C:\WINDOWS\system32\drivers\epm-shd.sys
17:32:31.0437 2620 C:\WINDOWS\system32\drivers\epm-shd.sys - ok
17:32:31.0437 2620 [ 7B3CA72885923EB947221F17F3E3AC59 ] C:\WINDOWS\system32\dmserver.dll
17:32:31.0437 2620 C:\WINDOWS\system32\dmserver.dll - ok
17:32:31.0437 2620 [ D6F7428B201E33BC80066B47144CB568 ] C:\WINDOWS\system32\ersvc.dll
17:32:31.0437 2620 C:\WINDOWS\system32\ersvc.dll - ok
17:32:31.0453 2620 [ 4C6FA3FD55087B7C35707068723A1710 ] C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
17:32:31.0453 2620 C:\Program Files\Intel\Wireless\Bin\EvtEng.exe - ok
17:32:31.0453 2620 [ 4E5BE66CD70D52637589E9C3E2C1696D ] C:\WINDOWS\system32\cmd.exe
17:32:31.0453 2620 C:\WINDOWS\system32\cmd.exe - ok
17:32:31.0468 2620 [ FC2E10BD1E84408AEFE7F52A5B574D4D ] C:\Program Files\Intel\Wireless\Bin\PfMgrApi.dll
17:32:31.0468 2620 C:\Program Files\Intel\Wireless\Bin\PfMgrApi.dll - ok
17:32:31.0468 2620 [ 13085FDD224995130B0A92E7E697F149 ] C:\Program Files\Intel\Wireless\Bin\DbEngine.dll
17:32:31.0468 2620 C:\Program Files\Intel\Wireless\Bin\DbEngine.dll - ok
17:32:31.0468 2620 [ 4BD5F133FD7DE5C508B313B73C74AB87 ] C:\Program Files\Intel\Wireless\Bin\MurocApi.dll
17:32:31.0468 2620 C:\Program Files\Intel\Wireless\Bin\MurocApi.dll - ok
17:32:31.0484 2620 [ B0D081E7CD1D60CF63317ADC6E8535C7 ] C:\Program Files\Intel\Wireless\Bin\S24MUDLL.dll
17:32:31.0484 2620 C:\Program Files\Intel\Wireless\Bin\S24MUDLL.dll - ok
17:32:31.0484 2620 [ 780FD8B7F1ADB9B867C9A1635CE7183C ] C:\WINDOWS\system32\icmp.dll
17:32:31.0484 2620 C:\WINDOWS\system32\icmp.dll - ok
17:32:31.0500 2620 [ ED0580AF02502D00AD8C4C066B156BE9 ] C:\WINDOWS\system32\drivers\tdtcp.sys
17:32:31.0500 2620 C:\WINDOWS\system32\drivers\tdtcp.sys - ok
17:32:31.0500 2620 [ D4F5643D7714EF499AE9527FDCD50894 ] C:\WINDOWS\system32\drivers\rdpwd.sys
17:32:31.0500 2620 C:\WINDOWS\system32\drivers\rdpwd.sys - ok
17:32:31.0500 2620 [ F59152272782FED8A8197FA788287F68 ] C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll
17:32:31.0500 2620 C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll - ok
17:32:31.0515 2620 [ D2DCF769E5A70027058AD5BE1F9B55BF ] C:\WINDOWS\system32\hidserv.dll
17:32:31.0515 2620 C:\WINDOWS\system32\hidserv.dll - ok
17:32:31.0515 2620 [ AE38A12F79A4980DDB88F36514F8A1DA ] C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
17:32:31.0515 2620 C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe - ok
17:32:31.0531 2620 [ B642E645D7A790E0FA41E16C6C4234E6 ] C:\Program Files\AVG\AVG2012\avgwdwsc.dll
17:32:31.0531 2620 C:\Program Files\AVG\AVG2012\avgwdwsc.dll - ok
17:32:31.0531 2620 [ A800036D0E071CBE08C144E110A71A35 ] C:\Program Files\Intel\Intel Matrix Storage Manager\ISDI.dll
17:32:31.0531 2620 C:\Program Files\Intel\Intel Matrix Storage Manager\ISDI.dll - ok
17:32:31.0531 2620 [ B09C638B3AD925CDFBFCD411BAAB223A ] C:\Program Files\AVG\AVG2012\avgcorex.dll
17:32:31.0531 2620 C:\Program Files\AVG\AVG2012\avgcorex.dll - ok
17:32:31.0546 2620 [ CFFA12ED3E3211C184CE3883B27FF9BC ] C:\Program Files\Intel\Intel Matrix Storage Manager\PlugInRAID_CSY.dll
17:32:31.0546 2620 C:\Program Files\Intel\Intel Matrix Storage Manager\PlugInRAID_CSY.dll - ok
17:32:31.0546 2620 [ F8F75594C17FE7BCE1B4045BB7199868 ] C:\WINDOWS\system32\drivers\int15.sys
17:32:31.0546 2620 C:\WINDOWS\system32\drivers\int15.sys - ok
17:32:31.0562 2620 [ 6D6BDD68B775986577C48A8DF961A05C ] C:\WINDOWS\system32\srvsvc.dll
17:32:31.0562 2620 C:\WINDOWS\system32\srvsvc.dll - ok
17:32:31.0562 2620 [ 793FF718477345CD5D232C50BED1E452 ] C:\Program Files\Common Files\LightScribe\LSSrvc.exe
17:32:31.0562 2620 C:\Program Files\Common Files\LightScribe\LSSrvc.exe - ok
17:32:31.0562 2620 [ D905050080DB4CCC3EB09AD24DE6BD67 ] C:\WINDOWS\system32\netmsg.dll
17:32:31.0562 2620 C:\WINDOWS\system32\netmsg.dll - ok
17:32:31.0578 2620 [ D7EB32B51B7472FBEE86BFA47B3C4BC5 ] C:\Program Files\Common Files\LightScribe\LSSProxy.dll
17:32:31.0578 2620 C:\Program Files\Common Files\LightScribe\LSSProxy.dll - ok
17:32:31.0578 2620 [ 20B7E396720353E4117D64D9DCB926CA ] C:\WINDOWS\system32\drivers\srv.sys
17:32:31.0578 2620 C:\WINDOWS\system32\drivers\srv.sys - ok
17:32:31.0578 2620 [ 0EE266A90D43E82A07CF33755D6DE1CC ] C:\Program Files\Common Files\LightScribe\LSLog.dll
17:32:31.0578 2620 C:\Program Files\Common Files\LightScribe\LSLog.dll - ok
17:32:31.0593 2620 [ F33A2734000FC6D3DBAE2E1337E2BB1F ] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\msvcp80.dll
17:32:31.0593 2620 C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\msvcp80.dll - ok
17:32:31.0593 2620 [ 509FC425705937F3BE30DED93F7582F7 ] C:\WINDOWS\system32\cryptnet.dll
17:32:31.0593 2620 C:\WINDOWS\system32\cryptnet.dll - ok
17:32:31.0609 2620 [ F50E7561E78B58DF4203FF68B12253AE ] C:\WINDOWS\system32\cabinet.dll
17:32:31.0609 2620 C:\WINDOWS\system32\cabinet.dll - ok
17:32:31.0609 2620 [ 0CEA2D0D3FA284B85ED5B68365114F76 ] C:\WINDOWS\system32\drivers\mdmxsdk.sys
17:32:31.0609 2620 C:\WINDOWS\system32\drivers\mdmxsdk.sys - ok
17:32:31.0625 2620 [ 22C111245FC78C4D3261E208B9712AC5 ] C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
17:32:31.0625 2620 C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe - ok
17:32:31.0625 2620 [ FAB5650F32677320A5056A9A540F36C9 ] C:\Program Files\AVG\AVG2012\avgnsx.exe
17:32:31.0625 2620 C:\Program Files\AVG\AVG2012\avgnsx.exe - ok
17:32:31.0625 2620 [ 9CE7E61E07EBD3CCF05055CC3FBC0C19 ] C:\Program Files\AVG\AVG2012\avgemcx.exe
17:32:31.0625 2620 C:\Program Files\AVG\AVG2012\avgemcx.exe - ok
17:32:31.0640 2620 [ A5675206B80C4127BC687DCCA9A57212 ] C:\Program Files\AVG\AVG2012\avgntsqlitex.dll
17:32:31.0640 2620 C:\Program Files\AVG\AVG2012\avgntsqlitex.dll - ok
17:32:31.0640 2620 [ EB4A30EAC3B3C304EAC8A10970E3402E ] C:\Program Files\AVG\AVG2012\avgsched.dll
17:32:31.0640 2620 C:\Program Files\AVG\AVG2012\avgsched.dll - ok
17:32:31.0656 2620 [ 615DEE3AC438468536B004678F3BA72E ] C:\Program Files\AVG\AVG2012\avgxpl.dll
17:32:31.0656 2620 C:\Program Files\AVG\AVG2012\avgxpl.dll - ok
17:32:31.0656 2620 [ 43425FD0BD73B0930E77AE2E35ED8F7A ] C:\Program Files\AVG\AVG2012\avgamx.dll
17:32:31.0656 2620 C:\Program Files\AVG\AVG2012\avgamx.dll - ok
17:32:31.0656 2620 [ DCB679EA4BA802DBA775A7E32BA88302 ] C:\Program Files\AVG\AVG2012\avgameh.dll
17:32:31.0656 2620 C:\Program Files\AVG\AVG2012\avgameh.dll - ok
17:32:31.0671 2620 [ 08B098B89C5F5968BDA67EC58855B309 ] C:\Program Files\AVG\AVG2012\avgamnot.dll
17:32:31.0671 2620 C:\Program Files\AVG\AVG2012\avgamnot.dll - ok
17:32:31.0671 2620 [ E111CED19D6A9FF9BBA5C219D0C5A3CE ] C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\opends60.dll
17:32:31.0671 2620 C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\opends60.dll - ok
17:32:31.0687 2620 [ 7B193BA3F0245D5867B71AD1CF631474 ] C:\Program Files\Microsoft SQL Server\90\Shared\instapi.dll
17:32:31.0687 2620 C:\Program Files\Microsoft SQL Server\90\Shared\instapi.dll - ok
17:32:31.0687 2620 [ 6A61BD99355204595C70BDD15783A805 ] C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\SQLBOOT.dll
17:32:31.0687 2620 C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\SQLBOOT.dll - ok
17:32:31.0687 2620 [ 030B997EB7DE1ADA071FE5D6EFCF3ED3 ] C:\WINDOWS\system32\ipsecsvc.dll
17:32:31.0687 2620 C:\WINDOWS\system32\ipsecsvc.dll - ok
17:32:31.0703 2620 [ EF96F80F89D24316CBB158ACFA794FA8 ] C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\Resources\1033\sqlevn70.rll
17:32:31.0703 2620 C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\Resources\1033\sqlevn70.rll - ok
17:32:31.0703 2620 [ 0E62ED8FE41443EB21C67DA215EF29F0 ] C:\WINDOWS\system32\oakley.dll
17:32:31.0703 2620 C:\WINDOWS\system32\oakley.dll - ok
17:32:31.0718 2620 [ 8AC155995F5D10FC0D3AD949A1A68075 ] C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
17:32:31.0718 2620 C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe - ok
17:32:31.0718 2620 [ 3D253A2D2648777AFE6AEAAA50B3B139 ] C:\WINDOWS\system32\winipsec.dll
17:32:31.0718 2620 C:\WINDOWS\system32\winipsec.dll - ok
17:32:31.0718 2620 [ 183A46179FDC11B6B9AE655BE81C76DA ] C:\WINDOWS\system32\pstorsvc.dll
17:32:31.0718 2620 C:\WINDOWS\system32\pstorsvc.dll - ok
17:32:31.0734 2620 [ 2AF094B1CE4725E4551F38FDA2348637 ] C:\Program Files\CyberLink\Shared Files\RichVideo.exe
17:32:31.0734 2620 C:\Program Files\CyberLink\Shared Files\RichVideo.exe - ok
17:32:31.0734 2620 [ 5B21208FCF8970BB61FE98E19D828714 ] C:\WINDOWS\system32\regsvc.dll
17:32:31.0734 2620 C:\WINDOWS\system32\regsvc.dll - ok
17:32:31.0750 2620 [ 23519ECBDBB26AB19DD03CC4AA14D9C6 ] C:\WINDOWS\system32\psbase.dll
17:32:31.0750 2620 C:\WINDOWS\system32\psbase.dll - ok
17:32:31.0750 2620 [ C76CB8A133374FAC6805F83FF7B7DA03 ] C:\WINDOWS\system32\seclogon.dll
17:32:31.0750 2620 C:\WINDOWS\system32\seclogon.dll - ok
17:32:31.0750 2620 [ 0645CCDDDD27F96EEA3534C1DEF736D9 ] C:\WINDOWS\system32\wiaservc.dll
17:32:31.0750 2620 C:\WINDOWS\system32\wiaservc.dll - ok
17:32:31.0765 2620 [ 97DD70FECA64FB4F63DE7BB7E66A80B1 ] C:\WINDOWS\system32\drivers\TVicPort.sys
17:32:31.0765 2620 C:\WINDOWS\system32\drivers\TVicPort.sys - ok
17:32:31.0765 2620 [ 220AD85BA9C5B3011296354011B901CC ] C:\WINDOWS\system32\sens.dll
17:32:31.0765 2620 C:\WINDOWS\system32\sens.dll - ok
17:32:31.0765 2620 [ CACD2C63A79268D131EA37E85524CC44 ] C:\WINDOWS\system32\dssenh.dll
17:32:31.0765 2620 C:\WINDOWS\system32\dssenh.dll - ok
17:32:31.0781 2620 [ 84E3249B984160849979E291D45846B9 ] C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlos.dll
17:32:31.0781 2620 C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlos.dll - ok
17:32:31.0781 2620 [ 3CD57F31A64D32FDB28918B16D1E6AAC ] C:\WINDOWS\system32\srsvc.dll
17:32:31.0781 2620 C:\WINDOWS\system32\srsvc.dll - ok
17:32:31.0796 2620 [ BCB7B2576BF0FCA695D7DB4DA3DAA8F3 ] C:\WINDOWS\system32\mscms.dll
17:32:31.0796 2620 C:\WINDOWS\system32\mscms.dll - ok
17:32:31.0796 2620 [ BCD21B989F0FD4ACE78287FC01B4693D ] C:\WINDOWS\system32\wbem\wmiapsrv.exe
17:32:31.0796 2620 C:\WINDOWS\system32\wbem\wmiapsrv.exe - ok
17:32:31.0796 2620 [ 37162D29CD61519E6F5EA0DE99786FF6 ] C:\WINDOWS\system32\tapisrv.dll
17:32:31.0796 2620 C:\WINDOWS\system32\tapisrv.dll - ok
17:32:31.0812 2620 [ 9C8E1A06256FA7BB5D952EDF240AF5C0 ] C:\WINDOWS\system32\loadperf.dll
17:32:31.0812 2620 C:\WINDOWS\system32\loadperf.dll - ok
17:32:31.0812 2620 [ 4DCE17221B1A87FB47E36842F3E38753 ] C:\WINDOWS\system32\trkwks.dll
17:32:31.0812 2620 C:\WINDOWS\system32\trkwks.dll - ok
17:32:31.0828 2620 [ E9F4DE03C690CFE7B1BCA36D985FFB8C ] C:\WINDOWS\system32\wbem\wmiapres.dll
17:32:31.0828 2620 C:\WINDOWS\system32\wbem\wmiapres.dll - ok
17:32:31.0828 2620 [ 83BA5E873164A3711B44052F58C8FE9F ] C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
17:32:31.0828 2620 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll - ok
17:32:31.0828 2620 [ 40AC8590CC9006DBB99FFCB37879D4C6 ] C:\WINDOWS\system32\drivers\zntport.sys
17:32:31.0828 2620 C:\WINDOWS\system32\drivers\zntport.sys - ok
17:32:31.0843 2620 [ 61A7E0B02F82CFF3DB2445BBE50B3589 ] C:\WINDOWS\system32\drivers\avgidsfilterx.sys
17:32:31.0843 2620 C:\WINDOWS\system32\drivers\avgidsfilterx.sys - ok
17:32:31.0843 2620 [ E12084EA622BDF2262C637BEF15DD85C ] C:\WINDOWS\system32\wbem\wmisvc.dll
17:32:31.0843 2620 C:\WINDOWS\system32\wbem\wmisvc.dll - ok
17:32:31.0859 2620 [ B7DCBC1FD649252182CB0018A5735770 ] C:\WINDOWS\system32\security.dll
17:32:31.0859 2620 C:\WINDOWS\system32\security.dll - ok
17:32:31.0859 2620 [ 7B7EE0BE462654A8830D15CFA954AC4A ] C:\WINDOWS\system32\vssapi.dll
17:32:31.0859 2620 C:\WINDOWS\system32\vssapi.dll - ok
17:32:31.0859 2620 [ F6BE3DDAEE084BEBB550EABF40E18E42 ] C:\WINDOWS\system32\wiavusd.dll
17:32:31.0859 2620 C:\WINDOWS\system32\wiavusd.dll - ok
17:32:31.0875 2620 [ ECC96985954185DFCF455FBBB8037A1B ] C:\Program Files\AVG\AVG2012\avgcsrvx.exe
17:32:31.0875 2620 C:\Program Files\AVG\AVG2012\avgcsrvx.exe - ok
17:32:31.0875 2620 [ AAD12FB4AFD57AF5200DA0EE6ABB2B2A ] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\GdiPlus.dll
17:32:31.0875 2620 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\GdiPlus.dll - ok
17:32:31.0890 2620 [ 3466855DE825F86C484A3454AD090967 ] C:\Program Files\AVG\AVG2012\avgchclx.dll
17:32:31.0890 2620 C:\Program Files\AVG\AVG2012\avgchclx.dll - ok
17:32:31.0890 2620 [ 21F5169CA14E0B25C757644456F637DF ] C:\WINDOWS\system32\wuauserv.dll
17:32:31.0890 2620 C:\WINDOWS\system32\wuauserv.dll - ok
17:32:31.0906 2620 [ D6730AE698DE4B62077A1091E906FC35 ] C:\WINDOWS\system32\wuaueng.dll
17:32:31.0906 2620 C:\WINDOWS\system32\wuaueng.dll - ok
17:32:31.0906 2620 [ 1074F787080068C71303B61FAE7E7CA4 ] C:\WINDOWS\system32\drivers\avgidsdriverx.sys
17:32:31.0906 2620 C:\WINDOWS\system32\drivers\avgidsdriverx.sys - ok
17:32:31.0906 2620 [ D33EC04D1F0B5F388DE86CCC3333A59F ] C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
17:32:31.0906 2620 C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe - ok
17:32:31.0921 2620 [ 860B28B3C4B052293226563A0AFC0763 ] C:\WINDOWS\system32\shfolder.dll
17:32:31.0921 2620 C:\WINDOWS\system32\shfolder.dll - ok
17:32:31.0921 2620 [ 93A2AAE5B4344C702C41E15F06A01F24 ] C:\WINDOWS\system32\advpack.dll
17:32:31.0921 2620 C:\WINDOWS\system32\advpack.dll - ok
17:32:31.0921 2620 [ FC56AD7E70F257F1192D8D232E1A191E ] C:\WINDOWS\system32\mspatcha.dll
17:32:31.0921 2620 C:\WINDOWS\system32\mspatcha.dll - ok
17:32:31.0937 2620 [ 7C87A5FB95777E4132B11FC3D92CAAF5 ] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll
17:32:31.0937 2620 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll - ok
17:32:31.0937 2620 [ 86F1895AE8C5E8B17D99ECE768A70732 ] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\msvcr71.dll
17:32:31.0937 2620 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\msvcr71.dll - ok
17:32:31.0953 2620 [ ED43BE380ED2059E4A96A5CEA1A30195 ] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
17:32:31.0953 2620 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll - ok
17:32:31.0953 2620 [ BF5E31EFE72F9407A0CF51ECE5E3C287 ] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
17:32:31.0953 2620 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll - ok
17:32:31.0968 2620 [ 88E6F0DF785DAAA8BC3CA5BD6AFAAA4E ] C:\WINDOWS\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_2a47cf87\mscorlib.dll
17:32:31.0968 2620 C:\WINDOWS\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_2a47cf87\mscorlib.dll - ok
17:32:31.0968 2620 [ 4C2BB0E88229D59C276D7EA31951EB5B ] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
17:32:31.0968 2620 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll - ok
17:32:31.0968 2620 [ 81C81D2375E82CF33DB187A555378F8E ] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
17:32:31.0968 2620 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll - ok
17:32:31.0984 2620 [ FE5E4AC47CA1E25052009AA50CCA4190 ] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\diasymreader.dll
17:32:31.0984 2620 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\diasymreader.dll - ok
17:32:31.0984 2620 [ 0716C52D0A75F8A3CDB120875F523A43 ] C:\WINDOWS\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
17:32:31.0984 2620 C:\WINDOWS\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll - ok
17:32:32.0000 2620 [ 962EF40FC6B7FEC17393AD7A028DEBCE ] C:\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
17:32:32.0000 2620 C:\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll - ok
17:32:32.0000 2620 [ 1EA4164BB71E18ED175B3DAFEB132EE0 ] C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_55ca2cf6\System.dll
17:32:32.0000 2620 C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_55ca2cf6\System.dll - ok
17:32:32.0015 2620 [ 63A74C673205EBE19336EAE2BA83EE7F ] C:\Acer\Empowering Technology\eLock\Service\eLock.Serv.Main.dll
17:32:32.0015 2620 C:\Acer\Empowering Technology\eLock\Service\eLock.Serv.Main.dll - ok
17:32:32.0015 2620 [ 3B8EEAA6F354B0CE8DC9D7225115BE12 ] C:\Acer\Empowering Technology\eLock\Service\eLock.Serv.Interface.dll
17:32:32.0015 2620 C:\Acer\Empowering Technology\eLock\Service\eLock.Serv.Interface.dll - ok
17:32:32.0031 2620 [ 1E1B73FC9C17EFFE04F5676A40C82026 ] C:\WINDOWS\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
17:32:32.0031 2620 C:\WINDOWS\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll - ok
17:32:32.0031 2620 [ 1C23611B0418109609E48261E37208AF ] C:\Acer\Empowering Technology\eLock\Service\eLock.Serv.Library.dll
17:32:32.0031 2620 C:\Acer\Empowering Technology\eLock\Service\eLock.Serv.Library.dll - ok
17:32:32.0046 2620 [ 98328A1049627B72E5770BE009DB6C0A ] C:\WINDOWS\system32\fxssvc.exe
17:32:32.0046 2620 C:\WINDOWS\system32\fxssvc.exe - ok
17:32:32.0046 2620 [ 6A3AB0DEEDD6D527BF443E68D60EBDF7 ] C:\WINDOWS\system32\fxsapi.dll
17:32:32.0046 2620 C:\WINDOWS\system32\fxsapi.dll - ok
17:32:32.0046 2620 [ 960B8A08D1B273B066BF9BF542CB1102 ] C:\WINDOWS\system32\fxstiff.dll
17:32:32.0046 2620 C:\WINDOWS\system32\fxstiff.dll - ok
17:32:32.0062 2620 [ 6A93501BCDEBF159109429B022C0FF83 ] C:\WINDOWS\system32\ipnathlp.dll
17:32:32.0062 2620 C:\WINDOWS\system32\ipnathlp.dll - ok
17:32:32.0062 2620 [ D67719BCFDE5798F5C30D14EFED3BCAF ] C:\Program Files\AVG\AVG2012\avgidsagent.exe
17:32:32.0062 2620 C:\Program Files\AVG\AVG2012\avgidsagent.exe - ok
17:32:32.0078 2620 [ 7FF592649D1E189E8E3927A6FF143C91 ] C:\WINDOWS\system32\fxst30.dll
17:32:32.0078 2620 C:\WINDOWS\system32\fxst30.dll - ok
17:32:32.0078 2620 [ 9036AFD87BDF3D7A8FD0C3E40449E8C0 ] C:\WINDOWS\system32\fxsroute.dll
17:32:32.0078 2620 C:\WINDOWS\system32\fxsroute.dll - ok
17:32:32.0078 2620 [ 4ADED1ADEF25041D9827F9A79C0FDA13 ] C:\WINDOWS\system32\wscsvc.dll
17:32:32.0078 2620 C:\WINDOWS\system32\wscsvc.dll - ok
17:32:32.0093 2620 [ 6B560D98B52CF2AF84FA64C8594C0A6B ] C:\WINDOWS\system32\wbem\wbemcore.dll
17:32:32.0093 2620 C:\WINDOWS\system32\wbem\wbemcore.dll - ok
17:32:32.0093 2620 [ 235B8D0E1DC80CCB93165B839157B6A0 ] C:\WINDOWS\system32\wbem\esscli.dll
17:32:32.0093 2620 C:\WINDOWS\system32\wbem\esscli.dll - ok
17:32:32.0109 2620 [ C372F827ECC796AFDA0F904AF58CA045 ] C:\WINDOWS\system32\wbem\fastprox.dll
17:32:32.0109 2620 C:\WINDOWS\system32\wbem\fastprox.dll - ok
17:32:32.0109 2620 [ F14D2C0D1D9EC31976AEA8A35CA6076F ] C:\WINDOWS\system32\wbem\wbemsvc.dll
17:32:32.0109 2620 C:\WINDOWS\system32\wbem\wbemsvc.dll - ok
17:32:32.0109 2620 [ 1BF7099758D85D794486297F35C579DA ] C:\WINDOWS\system32\unimdm.tsp
17:32:32.0109 2620 C:\WINDOWS\system32\unimdm.tsp - ok
17:32:32.0125 2620 [ D83C0D0AE14A0183D31C19BEAEBF43F9 ] C:\WINDOWS\system32\uniplat.dll
17:32:32.0125 2620 C:\WINDOWS\system32\uniplat.dll - ok
17:32:32.0125 2620 [ 7ECFDF734C710FFF1D020D3242AA796A ] C:\WINDOWS\system32\wbem\wmiutils.dll
17:32:32.0125 2620 C:\WINDOWS\system32\wbem\wmiutils.dll - ok
17:32:32.0125 2620 [ 0809388EB4E7AE2065B0FF1B1ABAF58A ] C:\WINDOWS\system32\wbem\repdrvfs.dll
17:32:32.0125 2620 C:\WINDOWS\system32\wbem\repdrvfs.dll - ok
17:32:32.0140 2620 [ 081032BC69C6D6465FAC20EA06E0C63D ] C:\WINDOWS\system32\unimdmat.dll
17:32:32.0140 2620 C:\WINDOWS\system32\unimdmat.dll - ok
17:32:32.0140 2620 [ CCA4E0B8D567D580090DBA134403C1B8 ] C:\WINDOWS\system32\modemui.dll
17:32:32.0140 2620 C:\WINDOWS\system32\modemui.dll - ok
17:32:32.0156 2620 [ 4093CA50A8329FC0438FA8E2900A4E1C ] C:\WINDOWS\system32\kmddsp.tsp
17:32:32.0156 2620 C:\WINDOWS\system32\kmddsp.tsp - ok
17:32:32.0156 2620 [ DDA5F753FFAB100A600477AFDF83FE7E ] C:\WINDOWS\system32\ndptsp.tsp
17:32:32.0156 2620 C:\WINDOWS\system32\ndptsp.tsp - ok
17:32:32.0156 2620 [ 8216E66FA663EC6A67A881314E1535F5 ] C:\WINDOWS\system32\ipconf.tsp
17:32:32.0156 2620 C:\WINDOWS\system32\ipconf.tsp - ok
17:32:32.0171 2620 [ 1D90579421EC335278825851491684E3 ] C:\WINDOWS\system32\h323.tsp
17:32:32.0171 2620 C:\WINDOWS\system32\h323.tsp - ok
17:32:32.0171 2620 [ D83B2827B75AAF00338C0F29FE6BA22A ] C:\WINDOWS\system32\wbem\wmiprvsd.dll
17:32:32.0171 2620 C:\WINDOWS\system32\wbem\wmiprvsd.dll - ok
17:32:32.0171 2620 [ 5A721AFCF3FABC59B24710CCE927627E ] C:\WINDOWS\system32\hidphone.tsp
17:32:32.0171 2620 C:\WINDOWS\system32\hidphone.tsp - ok
17:32:32.0187 2620 [ 43949C22325695D0E8E30B790DD06FDB ] C:\WINDOWS\system32\wbem\wbemess.dll
17:32:32.0187 2620 C:\WINDOWS\system32\wbem\wbemess.dll - ok
17:32:32.0187 2620 [ FC2DC3A419DE61099467534344ECC29E ] C:\WINDOWS\system32\wuapi.dll
17:32:32.0187 2620 C:\WINDOWS\system32\wuapi.dll - ok
17:32:32.0187 2620 [ 6B7895EE9CF76D59A25A5D4415DC5619 ] C:\WINDOWS\system32\wbem\ncprov.dll
17:32:32.0187 2620 C:\WINDOWS\system32\wbem\ncprov.dll - ok
17:32:32.0203 2620 [ 5AF95DF694BD86DB74BBD88FB5AC7193 ] C:\WINDOWS\system32\wbem\wbemcons.dll
17:32:32.0203 2620 C:\WINDOWS\system32\wbem\wbemcons.dll - ok
17:32:32.0203 2620 [ A1F34BD1FDB397059B38EE86E6D1CA7C ] C:\WINDOWS\system32\upnp.dll
17:32:32.0203 2620 C:\WINDOWS\system32\upnp.dll - ok
17:32:32.0218 2620 [ B4AF3DC7830EFEA4E50847CF225BB7DB ] C:\Program Files\Intel\Intel Matrix Storage Manager\PlugInRAID.pin
17:32:32.0218 2620 C:\Program Files\Intel\Intel Matrix Storage Manager\PlugInRAID.pin - ok
17:32:32.0218 2620 [ 5C98408E620A2AAC7894108769138676 ] C:\WINDOWS\system32\ssdpapi.dll
17:32:32.0218 2620 C:\WINDOWS\system32\ssdpapi.dll - ok
17:32:32.0218 2620 [ EF897DDCD9E269B83F03F328698AAE7A ] C:\WINDOWS\system32\wbem\wmiprvse.exe
17:32:32.0218 2620 C:\WINDOWS\system32\wbem\wmiprvse.exe - ok
17:32:32.0234 2620 [ C19B522A9AE0BBC3293397F3055E80A1 ] C:\WINDOWS\system32\drivers\http.sys
17:32:32.0234 2620 C:\WINDOWS\system32\drivers\http.sys - ok
17:32:32.0234 2620 [ 46828F2E7B4D68B706BFEBC1964A7D1A ] C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizM.dll
17:32:32.0234 2620 C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizM.dll - ok
17:32:32.0250 2620 [ 09C6750143ED0C22A5083FC5C1C90999 ] C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizD.dll
17:32:32.0250 2620 C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizD.dll - ok
17:32:32.0250 2620 [ 6AA1422C89E2C4ADACFD5B826C5E1044 ] C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizR.dll
17:32:32.0250 2620 C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizR.dll - ok
17:32:32.0250 2620 [ 88C28F53F53438DAFCD95E99C837C61E ] C:\WINDOWS\system32\ssdpsrv.dll
17:32:32.0250 2620 C:\WINDOWS\system32\ssdpsrv.dll - ok
17:32:32.0265 2620 [ B7A75960A62C52495C0F2F9846C48353 ] C:\Program Files\Intel\Intel Matrix Storage Manager\RaidWizCnG.dll
17:32:32.0265 2620 C:\Program Files\Intel\Intel Matrix Storage Manager\RaidWizCnG.dll - ok
17:32:32.0265 2620 [ B3F690BF43F93A012A52F28F234FAA1B ] C:\WINDOWS\system32\alg.exe
17:32:32.0265 2620 C:\WINDOWS\system32\alg.exe - ok
17:32:32.0281 2620 [ 5500031928B9D15B0A8987ED80EAE952 ] C:\WINDOWS\system32\wbem\cimwin32.dll
17:32:32.0281 2620 C:\WINDOWS\system32\wbem\cimwin32.dll - ok
17:32:32.0281 2620 [ 66E323AA1E41CF0F67723928B250202F ] C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizC.dll
17:32:32.0281 2620 C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizC.dll - ok
17:32:32.0281 2620 [ 01DAAF5B3C8627B158C3FB8D6AC01EB3 ] C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizCFE.dll
17:32:32.0281 2620 C:\Program Files\Intel\Intel Matrix Storage Manager\RAIDWizCFE.dll - ok
17:32:32.0296 2620 [ 45C89B8F297CD56F84C1084D868A855C ] C:\WINDOWS\system32\wbem\framedyn.dll
17:32:32.0296 2620 C:\WINDOWS\system32\wbem\framedyn.dll - ok
17:32:32.0296 2620 [ BB491E2B952E763A891887582D1A6288 ] C:\WINDOWS\system32\inetmib1.dll
17:32:32.0296 2620 C:\WINDOWS\system32\inetmib1.dll - ok
17:32:32.0312 2620 [ E9F9CD3C7F2E56505A0AC166580120E3 ] C:\WINDOWS\system32\wuauclt.exe
17:32:32.0312 2620 C:\WINDOWS\system32\wuauclt.exe - ok
17:32:32.0312 2620 [ 9308C4ED0FA1C5FC296DC5A341B027DB ] C:\WINDOWS\system32\wuaucpl.cpl
17:32:32.0312 2620 C:\WINDOWS\system32\wuaucpl.cpl - ok
17:32:32.0312 2620 [ CBD5DB25F3451935FF2A01FCC83EF892 ] C:\WINDOWS\system32\wups.dll
17:32:32.0312 2620 C:\WINDOWS\system32\wups.dll - ok
17:32:32.0328 2620 [ C5A2155E27F1E00B629ECA9FED6AC841 ] C:\DOCUME~1\ING~1.KAR\LOCALS~1\Temp\8821CCF1-65CE-4EC9-A2BF-07B62B32FBC5.exe
17:32:32.0328 2620 C:\DOCUME~1\ING~1.KAR\LOCALS~1\Temp\8821CCF1-65CE-4EC9-A2BF-07B62B32FBC5.exe - ok
17:32:32.0328 2620 [ EED2120454E74AA5C257947986B4D068 ] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
17:32:32.0328 2620 C:\Program Files\Synaptics\SynTP\SynTPStart.exe - ok
17:32:32.0343 2620 [ 1264F787E46DC572FA274CA09B446E01 ] C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL
17:32:32.0343 2620 C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL - ok
17:32:32.0343 2620 [ B7CE9694077C622D471CE963951CE605 ] C:\Program Files\WIDCOMM\Bluetooth Software\BtBalloon.dll
17:32:32.0343 2620 C:\Program Files\WIDCOMM\Bluetooth Software\BtBalloon.dll - ok
17:32:32.0343 2620 [ 2A8681AEA24003040CA7D677BE9F1702 ] C:\WINDOWS\system32\drivers\88044740.sys
17:32:32.0343 2620 C:\WINDOWS\system32\drivers\88044740.sys - ok
17:32:32.0359 2620 [ CF9D286B34CB4912F3B28B4972D5CB33 ] C:\WINDOWS\system32\imapi.exe
17:32:32.0359 2620 C:\WINDOWS\system32\imapi.exe - ok
17:32:32.0359 2620 [ 47CCD1175116A3CD2062239B092799CE ] C:\WINDOWS\system32\rasdlg.dll
17:32:32.0359 2620 C:\WINDOWS\system32\rasdlg.dll - ok
17:32:32.0375 2620 [ D927A791361822EC6F506A7222373031 ] C:\WINDOWS\system32\fxsst.dll
17:32:32.0375 2620 C:\WINDOWS\system32\fxsst.dll - ok
17:32:32.0375 2620 ============================================================
17:32:32.0375 2620 Scan finished
17:32:32.0375 2620 ============================================================
17:32:32.0484 2616 Detected object count: 20
17:32:32.0484 2616 Actual detected object count: 20

Re: Trojský kůň PSW.Agent a Generic27.AKPW

Napsal: 23 srp 2012 16:44
od vyosek
Vyborne, TDSS udelal co mel :wink:

PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
:arrow: Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe
  • Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
  • Pokud mate Win XP spustte pod uctem Spravce\Administratora
  • Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
  • Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
  • Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
  • Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
  • Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
  • Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
  • Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix

Re: Trojský kůň PSW.Agent a Generic27.AKPW

Napsal: 23 srp 2012 18:06
od Spid3r
Bohužel konzoli pro zotavení se nějak nepodařilo nainstalovat (stahování ani nezačalo a program vyhodil chybovou hlášku, že se vyskytl problém).

Zde je log:

ComboFix 12-08-22.03 - Administrator 23.08.2012 18:57:47.2.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.1022.502 [GMT 2:00]
Spuštěný z: c:\documents and settings\Ing. Karel Mikeš\Plocha\ComboFix.exe
AV: AVG Internet Security 2012 *Disabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
FW: AVG Internet Security 2012 *Enabled* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
VAROVÁNÍ - NA TOMTO POČÍTAČI NENÍ NAINSTALOVÁNA KONZOLA PRO ZOTAVENÍ !!
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-07-23 do 2012-08-23 )))))))))))))))))))))))))))))))
.
.
2012-08-23 15:26 . 2012-08-23 15:26 -------- d-----w- C:\TDSSKiller_Quarantine
2012-08-23 12:49 . 2012-08-23 12:49 177496 ----a-w- c:\windows\system32\drivers\11147367.sys
2012-08-23 11:57 . 2012-08-23 11:58 -------- d-----w- c:\program files\trend micro
2012-08-23 11:57 . 2012-08-23 11:58 -------- d-----w- C:\rsit
2012-08-19 19:35 . 2012-08-19 19:35 -------- d-----w- c:\program files\TeamViewer
2012-08-19 17:51 . 2001-08-17 20:02 9600 ----a-w- c:\windows\system32\drivers\hidusb.sys
2012-08-19 17:51 . 2001-08-17 20:02 9600 ----a-w- c:\windows\system32\dllcache\hidusb.sys
2012-08-17 23:13 . 2012-08-17 23:13 70344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-08-17 23:13 . 2012-08-17 23:13 426184 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-08-17 21:10 . 2012-08-17 21:10 -------- d-----w- c:\program files\PANDORA.TV
2012-08-17 21:09 . 2012-08-17 21:13 -------- d-----w- c:\program files\The KMPlayer
2012-08-17 21:09 . 2012-08-17 21:09 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Ask
2012-08-17 18:27 . 2012-08-17 18:28 -------- d-----w- c:\documents and settings\All Users\Data aplikací\AVG Secure Search
2012-08-17 18:27 . 2012-08-17 18:27 -------- d-----w- c:\program files\Common Files\AVG Secure Search
2012-08-17 18:27 . 2012-08-17 18:28 -------- d-----w- c:\program files\AVG Secure Search
2012-08-17 18:07 . 2012-08-23 11:44 -------- d-----w- c:\windows\system32\drivers\AVG
2012-08-17 18:07 . 2012-08-17 18:37 -------- d-----w- c:\documents and settings\All Users\Data aplikací\AVG2012
2012-08-17 18:07 . 2012-08-17 18:07 -------- d-----w- C:\$AVG
2012-08-17 18:07 . 2012-08-17 18:07 -------- d-----w- c:\program files\AVG
2012-08-17 18:00 . 2012-08-23 11:45 -------- d-----w- c:\documents and settings\All Users\Data aplikací\MFAData
2012-08-17 18:00 . 2012-08-17 18:00 -------- d--h--w- c:\documents and settings\All Users\Data aplikací\Common Files
2012-08-17 17:57 . 2012-08-17 17:57 -------- d-----w- c:\program files\7-Zip
2012-08-17 17:32 . 2012-08-17 17:34 -------- d-----w- c:\program files\Common Files\Autodesk Shared
2012-08-17 17:32 . 2012-08-17 17:32 -------- d-----w- c:\program files\Autodesk
2012-08-17 16:55 . 2009-09-04 15:29 1974616 ----a-w- c:\windows\system32\D3DCompiler_42.dll
2012-08-17 16:55 . 2009-09-04 15:29 453456 ----a-w- c:\windows\system32\d3dx10_42.dll
2012-08-17 16:55 . 2009-09-04 15:29 235344 ----a-w- c:\windows\system32\d3dx11_42.dll
2012-08-17 16:55 . 2009-09-04 15:29 1892184 ----a-w- c:\windows\system32\D3DX9_42.dll
2012-08-17 16:55 . 2012-08-17 17:32 -------- d-----w- c:\windows\Logs
2012-08-17 15:09 . 2012-08-17 17:33 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Autodesk
2012-08-17 15:07 . 2012-08-17 15:07 -------- d-----w- C:\Autodesk
2012-08-17 12:52 . 2012-08-17 12:53 -------- d-----w- C:\totalcmd
2012-08-17 12:52 . 2012-08-03 06:01 545 ----a-w- c:\windows\UC.PIF
2012-08-17 12:52 . 2012-08-03 06:01 545 ----a-w- c:\windows\RAR.PIF
2012-08-17 12:52 . 2012-08-03 06:01 545 ----a-w- c:\windows\PKZIP.PIF
2012-08-17 12:52 . 2012-08-03 06:01 545 ----a-w- c:\windows\PKUNZIP.PIF
2012-08-17 12:52 . 2012-08-03 06:01 545 ----a-w- c:\windows\LHA.PIF
2012-08-17 12:52 . 2012-08-03 06:01 545 ----a-w- c:\windows\ARJ.PIF
2012-08-17 12:49 . 2012-08-17 12:51 -------- d-----w- C:\Data
2012-08-15 21:13 . 2007-06-29 03:45 183056 ----a-w- c:\windows\UNINST32.EXE
2012-08-15 21:13 . 2006-01-20 21:42 17408 ----a-w- c:\windows\system32\drivers\DKbFltr.SYS
2012-08-15 21:13 . 2004-12-09 19:04 5120 ----a-w- c:\windows\system32\FILTRCOI.DLL
2012-08-15 21:11 . 2012-08-15 12:14 -------- d-----w- c:\windows\VGA
2012-08-15 12:57 . 2006-10-26 17:56 33104 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\msonpppr.dll
2012-08-15 12:57 . 2006-10-26 17:56 32592 ----a-w- c:\windows\system32\msonpmon.dll
2012-08-15 12:49 . 2012-08-15 12:49 -------- d-----w- c:\documents and settings\All Users\Data aplikací\ATI
2012-08-15 12:45 . 2012-08-15 12:46 -------- d-----w- c:\program files\Launch Manager
2012-08-15 12:45 . 2007-12-10 15:59 8704 ----a-w- c:\windows\system32\drivers\TVicPort64.sys
2012-08-15 12:45 . 2007-12-10 15:59 6144 ----a-w- c:\windows\system32\drivers\zntport64.sys
2012-08-15 12:45 . 2007-12-10 15:59 6080 ----a-w- c:\windows\system32\drivers\zntport.sys
2012-08-15 12:45 . 2007-12-10 15:59 14544 ----a-w- c:\windows\system32\drivers\TVicPort.sys
2012-08-15 12:45 . 2007-12-10 15:59 8704 ----a-w- c:\windows\system32\drivers\int15_64.sys
2012-08-15 12:45 . 2007-12-10 15:59 14120 ----a-w- c:\windows\system32\drivers\int15.sys
2012-08-15 12:44 . 2007-04-13 09:51 321024 ----a-w- c:\windows\system32\ERUpdateHidden.EXE
2012-08-15 12:44 . 2006-03-30 11:06 258048 ----a-w- c:\windows\system32\CheckD2DSystem.exe
2012-08-15 12:44 . 2006-03-23 10:02 258048 ----a-w- c:\windows\system32\Uninstall_eRecovery.exe
2012-08-15 12:44 . 2005-12-09 07:12 16384 ----a-w- c:\windows\system32\ClearEvent.exe
2012-08-15 12:44 . 2004-11-03 07:06 159744 ----a-w- c:\windows\system32\CloseProcessWindow.dll
2012-08-15 12:44 . 2005-11-02 12:32 32512 ----a-w- c:\windows\system32\drivers\npf.sys
2012-08-15 12:44 . 2012-08-15 12:44 21425 ----a-w- c:\windows\system32\drivers\AegisP.sys
2012-08-15 12:44 . 2012-08-15 12:44 -------- d-----w- c:\windows\system32\config\systemprofile\Data aplikací\Intel
2012-08-15 12:43 . 2012-08-15 12:43 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Intel
2012-08-15 12:43 . 2007-07-20 12:30 65536 ----a-w- c:\windows\system32\acerGina.dll
2012-08-15 12:43 . 2007-07-20 12:29 888832 ----a-w- c:\windows\system32\WirelessMgr.dll
2012-08-15 12:42 . 2012-08-15 12:42 -------- d-----w- c:\windows\Downloaded Installations
2012-08-15 12:41 . 2006-07-20 08:33 65536 ----a-w- c:\windows\system32\NATTraversal.dll
2012-08-15 12:41 . 2007-03-06 12:58 57344 ----a-w- c:\windows\system32\acpimof.dll
2012-08-15 12:41 . 2005-04-07 16:08 78208 ----a-w- c:\windows\system32\drivers\epm-shd.sys
2012-08-15 12:41 . 2004-07-19 11:10 4096 ----a-w- c:\windows\system32\drivers\epm-psd.sys
2012-08-15 12:41 . 2006-02-16 13:39 45056 ----a-w- c:\windows\system32\Epm-Po.dll
2012-08-15 12:40 . 2012-08-15 12:41 -------- d-----w- c:\program files\Mozilla Thunderbird
2012-08-15 12:39 . 2006-02-22 09:19 69632 ----a-w- c:\windows\system32\eRecUtil.dll
2012-08-15 12:39 . 2006-06-13 12:42 602112 ----a-w- c:\windows\system32\Acer.Empowering.Windows.Forms_v820.dll
2012-08-15 12:39 . 2007-07-12 07:30 618496 ----a-w- c:\windows\system32\Acer.Empowering.Windows.Forms.dll
2012-08-15 12:39 . 2007-07-12 07:30 53248 ----a-w- c:\windows\system32\Interop.Shell32.dll
2012-08-15 12:39 . 2006-05-25 16:18 331776 ----a-w- c:\windows\system32\ScrollBarLib.dll
2012-08-15 12:39 . 2006-04-18 17:54 49152 ----a-w- c:\windows\system32\SysMonitor.exe
2012-08-15 12:38 . 2012-08-15 12:39 -------- d-----w- C:\Acer
2012-08-15 12:38 . 2012-08-17 12:35 -------- d-----w- c:\program files\Yahoo!
2012-08-15 12:37 . 2007-09-07 18:56 110592 ----a-w- c:\windows\system32\SynTPCo4.dll
2012-08-15 12:37 . 2007-04-18 20:02 36909056 ----a-w- c:\windows\system32\acer.scr
2012-08-15 12:37 . 2007-05-16 14:52 8076468 ----a-w- c:\windows\system32\acer.exe
2012-08-15 12:37 . 2012-08-15 12:37 -------- d-----w- c:\windows\ACER
2012-08-15 12:35 . 2004-08-03 21:08 26496 ----a-w- c:\windows\system32\dllcache\usbstor.sys
2012-08-15 12:34 . 2012-08-15 12:34 311428 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\setup.dll
2012-08-15 12:34 . 2012-08-15 12:34 188548 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iGdi.dll
2012-08-15 12:34 . 2003-11-10 16:14 729088 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iKernel.dll
2012-08-15 12:34 . 2003-11-10 16:13 69715 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\ctor.dll
2012-08-15 12:34 . 2003-11-10 16:12 266240 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iscript.dll
2012-08-15 12:34 . 2003-11-10 16:12 192512 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iuser.dll
2012-08-15 12:34 . 2003-11-10 16:11 5632 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\DotNetInstaller.exe
2012-08-15 12:34 . 2012-08-15 12:36 -------- d-----w- c:\program files\ATI Technologies
2012-08-15 12:34 . 2007-10-03 19:05 212992 ----a-w- c:\program files\Common Files\InstallShield\Engine\6\Intel 32\ILog.dll
2012-08-15 12:33 . 2012-08-15 12:33 -------- d-----w- c:\program files\Mozilla Maintenance Service
2012-08-15 12:33 . 2004-08-17 13:49 21504 ----a-w- c:\windows\system32\hidserv.dll
2012-08-15 12:33 . 2004-08-17 13:49 21504 ----a-w- c:\windows\system32\dllcache\hidserv.dll
2012-08-15 12:32 . 2001-10-24 09:54 12160 ----a-w- c:\windows\system32\drivers\mouhid.sys
2012-08-15 12:32 . 2001-10-24 09:54 12160 ----a-w- c:\windows\system32\dllcache\mouhid.sys
2012-08-15 12:27 . 2007-03-31 20:02 55352 ----a-w- c:\windows\system32\drivers\btwhid.sys
2012-08-15 12:27 . 2007-03-23 17:50 67960 ----a-w- c:\windows\system32\drivers\btwusb.sys
2012-08-15 12:27 . 2007-03-23 17:50 149123 ----a-w- c:\windows\system32\drivers\btwdndis.sys
2012-08-15 12:27 . 2007-03-23 17:50 106557 ----a-w- c:\windows\system32\btw_ci.dll
2012-08-15 12:27 . 2007-03-23 17:50 37424 ----a-w- c:\windows\system32\drivers\btport.sys
2012-08-15 12:27 . 2007-03-31 20:02 876384 ----a-w- c:\windows\system32\drivers\btkrnl.sys
2012-08-15 12:27 . 2007-03-23 17:49 539072 ----a-w- c:\windows\system32\drivers\btaudio.sys
2012-08-15 12:26 . 2012-08-15 12:26 -------- d-----w- c:\program files\WIDCOMM
2012-08-15 12:23 . 2012-08-23 15:27 -------- d-----w- c:\documents and settings\Ing. Karel Mikeš
2012-08-15 12:21 . 2012-08-15 21:04 -------- d-----w- c:\windows\system32\config\systemprofile\Data aplikací\InstallShield
2012-08-15 12:15 . 2012-08-15 12:15 0 ----a-w- c:\windows\ativpsrm.bin
2012-08-15 12:14 . 2012-08-15 12:14 -------- d-----w- c:\program files\CONEXANT
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-07-14 00:15 . 2012-08-15 12:33 136672 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2012-08-23_16.09.52 )))))))))))))))))))))))))))))))))))))))))
.
+ 2012-08-23 11:41 . 2012-08-23 11:41 2540 c:\windows\SoftwareDistribution\EventCache\{3AF5F332-E824-4DB3-8833-DF42873FEB83}.bin
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
2012-08-17 18:27 2069088 ----a-w- c:\program files\AVG Secure Search\11.0.0.10\AVG Secure Search_toolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files\AVG Secure Search\11.0.0.10\AVG Secure Search_toolbar.dll" [2012-08-17 2069088]
.
[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-09-07 1015808]
"SynTPStart"="c:\program files\Synaptics\SynTP\SynTPStart.exe" [2007-09-07 102400]
"AVG_TRAY"="c:\program files\AVG\AVG2012\avgtray.exe" [2012-04-05 2587008]
"vProt"="c:\program files\AVG Secure Search\vprot.exe" [2012-08-17 1118304]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-18 15360]
.
c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2007-4-1 568176]
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~1\AVG\AVG2012\avgrsx.exe /sync /restart
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Acer Empowering Technology.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\Acer Empowering Technology.lnk
backup=c:\windows\pss\Acer Empowering Technology.lnkCommon Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acer ePresentation HPD]
2007-03-02 09:25 208896 ----a-w- c:\acer\Empowering Technology\ePresentation\ePresentation.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2007-03-08 02:38 40048 ----a-w- c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
2005-05-03 16:43 69632 ----a-w- c:\windows\Alcmtr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AzMixerSel]
2005-06-11 17:51 53248 ------w- c:\program files\Realtek\InstallShield\AzMixerSel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Boot]
2006-03-15 20:12 579584 ----a-w- c:\acer\Empowering Technology\ePower\Boot.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eDataSecurity Loader]
2007-05-28 13:56 342528 ----a-w- c:\acer\Empowering Technology\eDataSecurity\eDSloader.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ePower_DMC]
2007-07-04 09:44 475136 ----a-w- c:\acer\Empowering Technology\ePower\ePower_DMC.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eRecoveryService]
2007-07-11 12:07 421888 ----a-w- c:\acer\Empowering Technology\eRecovery\eRAgent.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAAnotif]
2007-03-21 11:00 174872 ----a-w- c:\program files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]
2004-08-18 03:00 208952 ----a-w- c:\windows\ime\imjp8_1\imjpmig.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
2007-01-08 20:17 52256 ----a-w- c:\program files\CyberLink\PowerDVD\Language\Language.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LManager]
2007-10-17 17:59 858632 ----a-w- c:\progra~1\LAUNCH~1\LManager.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSPY2002]
2004-08-18 03:00 59392 ----a-w- c:\windows\system32\IME\PINTLGNT\IMSCINST.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A]
2004-08-18 03:00 455168 ----a-w- c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync]
2004-08-18 03:00 455168 ----a-w- c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PLFSetL]
2007-07-05 10:35 94208 ----a-w- c:\windows\PLFSetL.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\preload]
2007-04-21 00:56 20480 ----a-w- c:\windows\RunXMLPL.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
2007-01-08 20:26 68640 ------w- c:\program files\CyberLink\PowerDVD\PDVDServ.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
2007-05-28 14:32 16132608 ----a-w- c:\windows\RTHDCPL.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
2006-11-10 10:35 90112 ----a-w- c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WarReg_PopUp]
2007-02-20 06:14 61440 ----a-w- c:\acer\WR_PopUp\WarReg_PopUp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"vToolbarUpdater11.0.2"=2 (0x2)
"PanService"=2 (0x2)
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\CyberLink\\PowerDVD\\PowerDVD.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\AVG\\AVG2012\\avgnsx.exe"=
"c:\\Program Files\\AVG\\AVG2012\\avgdiagex.exe"=
"c:\\Program Files\\AVG\\AVG2012\\avgmfapx.exe"=
"c:\\Program Files\\AVG\\AVG2012\\avgemcx.exe"=
"c:\\Program Files\\PANDORA.TV\\PanService\\PandoraService.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3389:TCP"= 3389:TCP:Remote Desktop
"65533:TCP"= 65533:TCP:Services
"52344:TCP"= 52344:TCP:Services
.
R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [19.4.2012 4:50 24896]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [31.1.2012 4:46 31952]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [22.2.2012 5:25 235216]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [19.3.2012 5:17 301248]
R2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2012\avgwdsvc.exe [14.2.2012 4:53 193288]
R3 Avgfwdx;Avgfwdx;c:\windows\system32\drivers\avgfwdx.sys [12.1.2012 19:52 30944]
R3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [23.12.2011 13:32 139856]
R3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\avgidsfilterx.sys [23.12.2011 13:32 24144]
R3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [23.12.2011 13:32 17232]
S2 avgfws;AVG Firewall;c:\program files\AVG\AVG2012\avgfws.exe [13.6.2012 3:48 2321560]
S2 AVGIDSAgent;AVGIDSAgent;c:\program files\AVG\AVG2012\avgidsagent.exe [4.7.2012 17:25 5160568]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [18.8.2012 1:13 250056]
S3 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwdx.sys [12.1.2012 19:52 30944]
S3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [15.8.2012 14:33 113120]
S4 PanService;PandoraService;c:\program files\PANDORA.TV\PanService\PandoraService.exe [17.8.2012 23:10 625816]
S4 vToolbarUpdater11.0.2;vToolbarUpdater11.0.2;c:\program files\Common Files\AVG Secure Search\vToolbarUpdater\11.0.2\ToolbarUpdater.exe [17.8.2012 20:27 934496]
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - UBHELPER
*NewlyCreated* - WS2IFSL
.
Obsah adresáře 'Naplánované úlohy'
.
2012-08-23 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-17 23:13]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://global.acer.com/
mStart Page = hxxp://cs.intl.acer.yahoo.com
TCP: DhcpNameServer = 10.254.254.254
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\Common Files\AVG Secure Search\ViProtocolInstaller\11.0.2\ViProtocol.dll
FF - ProfilePath - c:\documents and settings\Ing. Karel Mikeš\Data aplikací\Mozilla\Firefox\Profiles\gm2i7nz4.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://isearch.avg.com/search?cid=%7Bed348214-d0f8-445a-bac0-7aa2f59952ef%7D&mid=&ds=AVG&v=11.1.0.12&lang=cs&pr=pr&d=2012-08-17%2020%3A27%3A19&sap=ku&q=
FF - prefs.js: network.proxy.type - 0
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-08-23 19:02
Windows 5.1.2600 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(1356)
c:\windows\system32\Ati2evxx.dll
.
- - - - - - - > 'explorer.exe'(224)
c:\windows\system32\AcSignIcon.dll
c:\windows\system32\btmmhook.dll
c:\program files\Common Files\Autodesk Shared\AcSignCore16.dll
c:\windows\system32\msi.dll
.
Celkový čas: 2012-08-23 19:03:56
ComboFix-quarantined-files.txt 2012-08-23 17:03
ComboFix2.txt 2012-08-23 16:12
.
Před spuštěním: Volných bajtů: 40 590 118 912
Po spuštění: Volných bajtů: 40 570 064 896
.
- - End Of File - - F0D45DF1D65DDB2274BBF6503337668E

Re: Trojský kůň PSW.Agent a Generic27.AKPW

Napsal: 23 srp 2012 18:13
od vyosek
:arrow: Pokud nemate, tak presunte Combofix na plochu
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    KillAll::
    
    File::
    c:\windows\system32\drivers\11147367.sys
    c:\windows\Tasks\Adobe Flash Player Updater.job
    
    Folder::
    c:\documents and settings\All Users\Data aplikací\Ask
    
    Registry::
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
    "DisableMonitoring"=dword:00000000
    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
    "DisableMonitoring"=dword:00000000
    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
    "DisableMonitoring"=dword:00000000
    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
    "3389:TCP"=-
    "65533:TCP"=-
    "52344:TCP"=-
    
    DDS::
    uStart Page = hxxp://global.acer.com/
    mStart Page = hxxp://cs.intl.acer.yahoo.com
    
    Firefox::
    FF - ProfilePath - c:\documents and settings\Ing. Karel Mikeš\Data aplikací\Mozilla\Firefox\Profiles\gm2i7nz4.default\
    FF - prefs.js: keyword.URL - hxxp://isearch.avg.com/search?cid=%7Bed ... &sap=ku&q=
    
    ClearJavaCache::
    
    Reboot::
  • Ulozte vytvoreny TXT jako CFScript.txt
  • Pretahnete vytvoreny CFScript.txt nad Combofix a pustte (viz obrazek nize)
    Obrázek
  • Po aplikaci skriptu (a pripadnem restartu) na Vas vypadne log, jeho obsah sem vlozte
:arrow: Pokud vyskoci hlaska "Pokus pouzit neplatnou operaci na klic registru, ktery je oznacen pro odstraneni", tak jen restartujte PC - registr se da do kupy - jedna se o vnitrni chybu, kterou zpusobuje CF a autor ji zatim neumi bohuzel opravit

:arrow: Muze se stat, ze po aplikaci skriptu nenabehnou windows, v tomto pripade restartuje PC a mackejte F8 a zvolte Posledni znamou konfiguraci

Re: Trojský kůň PSW.Agent a Generic27.AKPW

Napsal: 23 srp 2012 18:37
od Spid3r
Konzole pro zotavení nešla ani teď.

LOG:

ComboFix 12-08-22.03 - Ing. Karel Mikeš 23.08.2012 19:25:34.3.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.1022.457 [GMT 2:00]
Spuštěný z: c:\documents and settings\Ing. Karel Mikeš\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Ing. Karel Mikeš\Plocha\CFScript.txt
AV: AVG Internet Security 2012 *Disabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
FW: AVG Internet Security 2012 *Disabled* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
VAROVÁNÍ - NA TOMTO POČÍTAČI NENÍ NAINSTALOVÁNA KONZOLA PRO ZOTAVENÍ !!
.
FILE ::
"c:\windows\system32\drivers\11147367.sys"
"c:\windows\Tasks\Adobe Flash Player Updater.job"
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-07-23 do 2012-08-23 )))))))))))))))))))))))))))))))
.
.
2012-08-23 15:26 . 2012-08-23 15:26 -------- d-----w- C:\TDSSKiller_Quarantine
2012-08-23 12:49 . 2012-08-23 12:49 177496 ----a-w- c:\windows\system32\drivers\11147367.sys
2012-08-23 11:57 . 2012-08-23 11:58 -------- d-----w- c:\program files\trend micro
2012-08-23 11:57 . 2012-08-23 11:58 -------- d-----w- C:\rsit
2012-08-19 19:35 . 2012-08-19 19:35 -------- d-----w- c:\program files\TeamViewer
2012-08-19 17:51 . 2001-08-17 20:02 9600 ----a-w- c:\windows\system32\drivers\hidusb.sys
2012-08-19 17:51 . 2001-08-17 20:02 9600 ----a-w- c:\windows\system32\dllcache\hidusb.sys
2012-08-17 23:13 . 2012-08-17 23:13 70344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-08-17 23:13 . 2012-08-17 23:13 426184 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-08-17 21:10 . 2012-08-17 21:10 -------- d-----w- c:\program files\PANDORA.TV
2012-08-17 21:09 . 2012-08-17 21:13 -------- d-----w- c:\program files\The KMPlayer
2012-08-17 21:09 . 2012-08-17 21:09 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Ask
2012-08-17 18:27 . 2012-08-17 18:28 -------- d-----w- c:\documents and settings\All Users\Data aplikací\AVG Secure Search
2012-08-17 18:27 . 2012-08-17 18:27 -------- d-----w- c:\program files\Common Files\AVG Secure Search
2012-08-17 18:27 . 2012-08-17 18:28 -------- d-----w- c:\program files\AVG Secure Search
2012-08-17 18:07 . 2012-08-23 11:44 -------- d-----w- c:\windows\system32\drivers\AVG
2012-08-17 18:07 . 2012-08-17 18:37 -------- d-----w- c:\documents and settings\All Users\Data aplikací\AVG2012
2012-08-17 18:07 . 2012-08-17 18:07 -------- d-----w- C:\$AVG
2012-08-17 18:07 . 2012-08-17 18:07 -------- d-----w- c:\program files\AVG
2012-08-17 18:00 . 2012-08-23 11:45 -------- d-----w- c:\documents and settings\All Users\Data aplikací\MFAData
2012-08-17 18:00 . 2012-08-17 18:00 -------- d--h--w- c:\documents and settings\All Users\Data aplikací\Common Files
2012-08-17 17:57 . 2012-08-17 17:57 -------- d-----w- c:\program files\7-Zip
2012-08-17 17:32 . 2012-08-17 17:34 -------- d-----w- c:\program files\Common Files\Autodesk Shared
2012-08-17 17:32 . 2012-08-17 17:32 -------- d-----w- c:\program files\Autodesk
2012-08-17 16:55 . 2009-09-04 15:29 1974616 ----a-w- c:\windows\system32\D3DCompiler_42.dll
2012-08-17 16:55 . 2009-09-04 15:29 453456 ----a-w- c:\windows\system32\d3dx10_42.dll
2012-08-17 16:55 . 2009-09-04 15:29 235344 ----a-w- c:\windows\system32\d3dx11_42.dll
2012-08-17 16:55 . 2009-09-04 15:29 1892184 ----a-w- c:\windows\system32\D3DX9_42.dll
2012-08-17 16:55 . 2012-08-17 17:32 -------- d-----w- c:\windows\Logs
2012-08-17 15:09 . 2012-08-17 17:33 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Autodesk
2012-08-17 15:07 . 2012-08-17 15:07 -------- d-----w- C:\Autodesk
2012-08-17 12:52 . 2012-08-17 12:53 -------- d-----w- C:\totalcmd
2012-08-17 12:52 . 2012-08-03 06:01 545 ----a-w- c:\windows\UC.PIF
2012-08-17 12:52 . 2012-08-03 06:01 545 ----a-w- c:\windows\RAR.PIF
2012-08-17 12:52 . 2012-08-03 06:01 545 ----a-w- c:\windows\PKZIP.PIF
2012-08-17 12:52 . 2012-08-03 06:01 545 ----a-w- c:\windows\PKUNZIP.PIF
2012-08-17 12:52 . 2012-08-03 06:01 545 ----a-w- c:\windows\LHA.PIF
2012-08-17 12:52 . 2012-08-03 06:01 545 ----a-w- c:\windows\ARJ.PIF
2012-08-17 12:49 . 2012-08-17 12:51 -------- d-----w- C:\Data
2012-08-15 21:13 . 2007-06-29 03:45 183056 ----a-w- c:\windows\UNINST32.EXE
2012-08-15 21:13 . 2006-01-20 21:42 17408 ----a-w- c:\windows\system32\drivers\DKbFltr.SYS
2012-08-15 21:13 . 2004-12-09 19:04 5120 ----a-w- c:\windows\system32\FILTRCOI.DLL
2012-08-15 21:11 . 2012-08-15 12:14 -------- d-----w- c:\windows\VGA
2012-08-15 12:57 . 2006-10-26 17:56 33104 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\msonpppr.dll
2012-08-15 12:57 . 2006-10-26 17:56 32592 ----a-w- c:\windows\system32\msonpmon.dll
2012-08-15 12:49 . 2012-08-15 12:49 -------- d-----w- c:\documents and settings\All Users\Data aplikací\ATI
2012-08-15 12:45 . 2012-08-15 12:46 -------- d-----w- c:\program files\Launch Manager
2012-08-15 12:45 . 2007-12-10 15:59 8704 ----a-w- c:\windows\system32\drivers\TVicPort64.sys
2012-08-15 12:45 . 2007-12-10 15:59 6144 ----a-w- c:\windows\system32\drivers\zntport64.sys
2012-08-15 12:45 . 2007-12-10 15:59 6080 ----a-w- c:\windows\system32\drivers\zntport.sys
2012-08-15 12:45 . 2007-12-10 15:59 14544 ----a-w- c:\windows\system32\drivers\TVicPort.sys
2012-08-15 12:45 . 2007-12-10 15:59 8704 ----a-w- c:\windows\system32\drivers\int15_64.sys
2012-08-15 12:45 . 2007-12-10 15:59 14120 ----a-w- c:\windows\system32\drivers\int15.sys
2012-08-15 12:44 . 2007-04-13 09:51 321024 ----a-w- c:\windows\system32\ERUpdateHidden.EXE
2012-08-15 12:44 . 2006-03-30 11:06 258048 ----a-w- c:\windows\system32\CheckD2DSystem.exe
2012-08-15 12:44 . 2006-03-23 10:02 258048 ----a-w- c:\windows\system32\Uninstall_eRecovery.exe
2012-08-15 12:44 . 2005-12-09 07:12 16384 ----a-w- c:\windows\system32\ClearEvent.exe
2012-08-15 12:44 . 2004-11-03 07:06 159744 ----a-w- c:\windows\system32\CloseProcessWindow.dll
2012-08-15 12:44 . 2005-11-02 12:32 32512 ----a-w- c:\windows\system32\drivers\npf.sys
2012-08-15 12:44 . 2012-08-15 12:44 21425 ----a-w- c:\windows\system32\drivers\AegisP.sys
2012-08-15 12:44 . 2012-08-15 12:44 -------- d-----w- c:\windows\system32\config\systemprofile\Data aplikací\Intel
2012-08-15 12:43 . 2012-08-15 12:43 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Intel
2012-08-15 12:43 . 2007-07-20 12:30 65536 ----a-w- c:\windows\system32\acerGina.dll
2012-08-15 12:43 . 2007-07-20 12:29 888832 ----a-w- c:\windows\system32\WirelessMgr.dll
2012-08-15 12:42 . 2012-08-15 12:42 -------- d-----w- c:\windows\Downloaded Installations
2012-08-15 12:41 . 2006-07-20 08:33 65536 ----a-w- c:\windows\system32\NATTraversal.dll
2012-08-15 12:41 . 2007-03-06 12:58 57344 ----a-w- c:\windows\system32\acpimof.dll
2012-08-15 12:41 . 2005-04-07 16:08 78208 ----a-w- c:\windows\system32\drivers\epm-shd.sys
2012-08-15 12:41 . 2004-07-19 11:10 4096 ----a-w- c:\windows\system32\drivers\epm-psd.sys
2012-08-15 12:41 . 2006-02-16 13:39 45056 ----a-w- c:\windows\system32\Epm-Po.dll
2012-08-15 12:40 . 2012-08-15 12:41 -------- d-----w- c:\program files\Mozilla Thunderbird
2012-08-15 12:39 . 2006-02-22 09:19 69632 ----a-w- c:\windows\system32\eRecUtil.dll
2012-08-15 12:39 . 2006-06-13 12:42 602112 ----a-w- c:\windows\system32\Acer.Empowering.Windows.Forms_v820.dll
2012-08-15 12:39 . 2007-07-12 07:30 618496 ----a-w- c:\windows\system32\Acer.Empowering.Windows.Forms.dll
2012-08-15 12:39 . 2007-07-12 07:30 53248 ----a-w- c:\windows\system32\Interop.Shell32.dll
2012-08-15 12:39 . 2006-05-25 16:18 331776 ----a-w- c:\windows\system32\ScrollBarLib.dll
2012-08-15 12:39 . 2006-04-18 17:54 49152 ----a-w- c:\windows\system32\SysMonitor.exe
2012-08-15 12:38 . 2012-08-15 12:39 -------- d-----w- C:\Acer
2012-08-15 12:38 . 2012-08-17 12:35 -------- d-----w- c:\program files\Yahoo!
2012-08-15 12:37 . 2007-09-07 18:56 110592 ----a-w- c:\windows\system32\SynTPCo4.dll
2012-08-15 12:37 . 2007-04-18 20:02 36909056 ----a-w- c:\windows\system32\acer.scr
2012-08-15 12:37 . 2007-05-16 14:52 8076468 ----a-w- c:\windows\system32\acer.exe
2012-08-15 12:37 . 2012-08-15 12:37 -------- d-----w- c:\windows\ACER
2012-08-15 12:35 . 2004-08-03 21:08 26496 ----a-w- c:\windows\system32\dllcache\usbstor.sys
2012-08-15 12:34 . 2012-08-15 12:34 311428 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\setup.dll
2012-08-15 12:34 . 2012-08-15 12:34 188548 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iGdi.dll
2012-08-15 12:34 . 2003-11-10 16:14 729088 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iKernel.dll
2012-08-15 12:34 . 2003-11-10 16:13 69715 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\ctor.dll
2012-08-15 12:34 . 2003-11-10 16:12 266240 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iscript.dll
2012-08-15 12:34 . 2003-11-10 16:12 192512 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iuser.dll
2012-08-15 12:34 . 2003-11-10 16:11 5632 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\DotNetInstaller.exe
2012-08-15 12:34 . 2012-08-15 12:36 -------- d-----w- c:\program files\ATI Technologies
2012-08-15 12:34 . 2007-10-03 19:05 212992 ----a-w- c:\program files\Common Files\InstallShield\Engine\6\Intel 32\ILog.dll
2012-08-15 12:33 . 2012-08-15 12:33 -------- d-----w- c:\program files\Mozilla Maintenance Service
2012-08-15 12:33 . 2004-08-17 13:49 21504 ----a-w- c:\windows\system32\hidserv.dll
2012-08-15 12:33 . 2004-08-17 13:49 21504 ----a-w- c:\windows\system32\dllcache\hidserv.dll
2012-08-15 12:32 . 2001-10-24 09:54 12160 ----a-w- c:\windows\system32\drivers\mouhid.sys
2012-08-15 12:32 . 2001-10-24 09:54 12160 ----a-w- c:\windows\system32\dllcache\mouhid.sys
2012-08-15 12:27 . 2007-03-31 20:02 55352 ----a-w- c:\windows\system32\drivers\btwhid.sys
2012-08-15 12:27 . 2007-03-23 17:50 67960 ----a-w- c:\windows\system32\drivers\btwusb.sys
2012-08-15 12:27 . 2007-03-23 17:50 149123 ----a-w- c:\windows\system32\drivers\btwdndis.sys
2012-08-15 12:27 . 2007-03-23 17:50 106557 ----a-w- c:\windows\system32\btw_ci.dll
2012-08-15 12:27 . 2007-03-23 17:50 37424 ----a-w- c:\windows\system32\drivers\btport.sys
2012-08-15 12:27 . 2007-03-31 20:02 876384 ----a-w- c:\windows\system32\drivers\btkrnl.sys
2012-08-15 12:27 . 2007-03-23 17:49 539072 ----a-w- c:\windows\system32\drivers\btaudio.sys
2012-08-15 12:26 . 2012-08-15 12:26 -------- d-----w- c:\program files\WIDCOMM
2012-08-15 12:23 . 2012-08-23 15:27 -------- d-----w- c:\documents and settings\Ing. Karel Mikeš
2012-08-15 12:21 . 2012-08-15 21:04 -------- d-----w- c:\windows\system32\config\systemprofile\Data aplikací\InstallShield
2012-08-15 12:15 . 2012-08-15 12:15 0 ----a-w- c:\windows\ativpsrm.bin
2012-08-15 12:14 . 2012-08-15 12:14 -------- d-----w- c:\program files\CONEXANT
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-07-14 00:15 . 2012-08-15 12:33 136672 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
2012-08-17 18:27 2069088 ----a-w- c:\program files\AVG Secure Search\11.0.0.10\AVG Secure Search_toolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files\AVG Secure Search\11.0.0.10\AVG Secure Search_toolbar.dll" [2012-08-17 2069088]
.
[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-09-07 1015808]
"SynTPStart"="c:\program files\Synaptics\SynTP\SynTPStart.exe" [2007-09-07 102400]
"AVG_TRAY"="c:\program files\AVG\AVG2012\avgtray.exe" [2012-04-05 2587008]
"vProt"="c:\program files\AVG Secure Search\vprot.exe" [2012-08-17 1118304]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-18 15360]
.
c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2007-4-1 568176]
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~1\AVG\AVG2012\avgrsx.exe /sync /restart
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Acer Empowering Technology.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\Acer Empowering Technology.lnk
backup=c:\windows\pss\Acer Empowering Technology.lnkCommon Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acer ePresentation HPD]
2007-03-02 09:25 208896 ----a-w- c:\acer\Empowering Technology\ePresentation\ePresentation.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
2005-05-03 16:43 69632 ----a-w- c:\windows\Alcmtr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AzMixerSel]
2005-06-11 17:51 53248 ------w- c:\program files\Realtek\InstallShield\AzMixerSel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Boot]
2006-03-15 20:12 579584 ----a-w- c:\acer\Empowering Technology\ePower\Boot.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eDataSecurity Loader]
2007-05-28 13:56 342528 ----a-w- c:\acer\Empowering Technology\eDataSecurity\eDSloader.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ePower_DMC]
2007-07-04 09:44 475136 ----a-w- c:\acer\Empowering Technology\ePower\ePower_DMC.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eRecoveryService]
2007-07-11 12:07 421888 ----a-w- c:\acer\Empowering Technology\eRecovery\eRAgent.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAAnotif]
2007-03-21 11:00 174872 ----a-w- c:\program files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]
2004-08-18 03:00 208952 ----a-w- c:\windows\ime\imjp8_1\imjpmig.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
2007-01-08 20:17 52256 ----a-w- c:\program files\CyberLink\PowerDVD\Language\Language.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LManager]
2007-10-17 17:59 858632 ----a-w- c:\progra~1\LAUNCH~1\LManager.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSPY2002]
2004-08-18 03:00 59392 ----a-w- c:\windows\system32\IME\PINTLGNT\IMSCINST.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A]
2004-08-18 03:00 455168 ----a-w- c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync]
2004-08-18 03:00 455168 ----a-w- c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PLFSetL]
2007-07-05 10:35 94208 ----a-w- c:\windows\PLFSetL.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\preload]
2007-04-21 00:56 20480 ----a-w- c:\windows\RunXMLPL.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
2007-05-28 14:32 16132608 ----a-w- c:\windows\RTHDCPL.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
2006-11-10 10:35 90112 ----a-w- c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WarReg_PopUp]
2007-02-20 06:14 61440 ----a-w- c:\acer\WR_PopUp\WarReg_PopUp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"vToolbarUpdater11.0.2"=2 (0x2)
"PanService"=2 (0x2)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\CyberLink\\PowerDVD\\PowerDVD.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\AVG\\AVG2012\\avgnsx.exe"=
"c:\\Program Files\\AVG\\AVG2012\\avgdiagex.exe"=
"c:\\Program Files\\AVG\\AVG2012\\avgmfapx.exe"=
"c:\\Program Files\\AVG\\AVG2012\\avgemcx.exe"=
"c:\\Program Files\\PANDORA.TV\\PanService\\PandoraService.exe"=
.
R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [19.4.2012 4:50 24896]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [31.1.2012 4:46 31952]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [22.2.2012 5:25 235216]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [19.3.2012 5:17 301248]
R2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2012\avgwdsvc.exe [14.2.2012 4:53 193288]
R3 Avgfwdx;Avgfwdx;c:\windows\system32\drivers\avgfwdx.sys [12.1.2012 19:52 30944]
R3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [23.12.2011 13:32 139856]
R3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\avgidsfilterx.sys [23.12.2011 13:32 24144]
R3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [23.12.2011 13:32 17232]
S2 avgfws;AVG Firewall;c:\program files\AVG\AVG2012\avgfws.exe [13.6.2012 3:48 2321560]
S2 AVGIDSAgent;AVGIDSAgent;c:\program files\AVG\AVG2012\avgidsagent.exe [4.7.2012 17:25 5160568]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [18.8.2012 1:13 250056]
S3 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwdx.sys [12.1.2012 19:52 30944]
S3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [15.8.2012 14:33 113120]
S4 PanService;PandoraService;c:\program files\PANDORA.TV\PanService\PandoraService.exe [17.8.2012 23:10 625816]
S4 vToolbarUpdater11.0.2;vToolbarUpdater11.0.2;c:\program files\Common Files\AVG Secure Search\vToolbarUpdater\11.0.2\ToolbarUpdater.exe [17.8.2012 20:27 934496]
.
Obsah adresáře 'Naplánované úlohy'
.
2012-08-23 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-17 23:13]
.
.
------- Doplňkový sken -------
.
uInternet Connection Wizard,ShellNext = hxxp://global.acer.com/
uSearchURL,(Default) = hxxp://uk.rd.yahoo.com/customize/ycomp/defaults/su/*http://uk.yahoo.com
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Send to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
TCP: DhcpNameServer = 10.254.254.254
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\Common Files\AVG Secure Search\ViProtocolInstaller\11.0.2\ViProtocol.dll
FF - ProfilePath - c:\documents and settings\Ing. Karel Mikeš\Data aplikací\Mozilla\Firefox\Profiles\gm2i7nz4.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: network.proxy.type - 0
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-08-23 19:33
Windows 5.1.2600 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(1348)
c:\windows\system32\Ati2evxx.dll
.
- - - - - - - > 'explorer.exe'(3160)
c:\windows\system32\AcSignIcon.dll
c:\windows\system32\btmmhook.dll
c:\program files\Common Files\Autodesk Shared\AcSignCore16.dll
c:\windows\system32\msi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\program files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
c:\program files\Intel\Wireless\Bin\S24EvMon.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Intel\Wireless\Bin\EvtEng.exe
c:\program files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\program files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
c:\program files\Intel\Wireless\Bin\RegSrvc.exe
c:\program files\CyberLink\Shared Files\RichVideo.exe
c:\windows\system32\wbem\wmiapsrv.exe
c:\acer\Empowering Technology\eLock\Service\eLockServ.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Celkový čas: 2012-08-23 19:35:41 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-08-23 17:35
ComboFix2.txt 2012-08-23 17:03
ComboFix3.txt 2012-08-23 16:12
.
Před spuštěním: Volných bajtů: 40 651 743 232
Po spuštění: Volných bajtů: 40 630 099 968
.
- - End Of File - - 1A27AF05E1E72EE8F200FCAB696A143C

Re: Trojský kůň PSW.Agent a Generic27.AKPW

Napsal: 23 srp 2012 19:05
od vyosek
:arrow: Opet CF neprelouskal diakritiku v nzavu uctu

:arrow: Takze presunte prosim CF primo na disk c:\ a tam i vytvorte CFScript.txt a aplikujte jej