Stránka 1 z 2

prosím o preventivku, děkuju

Napsal: 02 úno 2013 10:13
od raskar89
Logfile of random's system information tool 1.09 (written by random/random)
Run by Home at 2013-02-02 10:12:08
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 184 GB (80%) free of 230 GB
Total RAM: 3071 MB (58% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:12:33, on 2.2.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16457)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\Dwm.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\ATKOSD2\ATKOSD2.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Users\Home\Desktop\RSIT.exe
C:\Program Files\trend micro\Home.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [ATKOSD2] "C:\Program Files\ATKOSD2\ATKOSD2.exe"
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [IaNvSrv] C:\Program Files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvSrv.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}: NameServer = 8.26.56.26,156.154.70.22
O17 - HKLM\System\CCS\Services\Tcpip\..\{DBB461A5-3A64-464D-9B14-96961794DF7A}: NameServer = 8.26.56.26,156.154.70.22
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\System32\guard32.dll C:\Windows\system32\guard32.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

--
End of file - 6719 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\njqu423u.default

prefs.js - "browser.startup.homepage" - "http://news.google.cz/nwshp?client=fire ... =cs&tab=wn"
prefs.js - "extensions.enabledItems" - "{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3, {73a6fe31-595d-460b-a920-fcc0f8843232}:2.0.9.9, {582195F5-92E7-40a0-A127-DB71295901D7}:0.6.4, {c50ca3c4-5656-43c2-a061-13e717f73fc8}:4.0.1, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.16"

"smartwebprinting@hp.com"=C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.5.502.146 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_5_502_146.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.11.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.11.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFF12.DLL
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\njqu423u.default\extensions\
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18 66280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-01-28 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-30 1227736]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-01-28 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-30 1227736]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2012-11-08 6756048]
"ATKOSD2"=C:\Program Files\ATKOSD2\ATKOSD2.exe [2007-10-17 7737344]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-06 1029416]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2007-03-20 36864]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-06-04 186904]
"IaNvSrv"=C:\Program Files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvSrv.exe [2009-07-13 33304]
"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2012-11-28 59280]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2012-12-12 152544]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-10-30 4297136]
"SMSERIAL"=C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2009-05-05 1466368]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2012-06-11 10996368]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe [2012-12-12 152544]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware]
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2012-12-14 512360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe [2009-09-20 270336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Home^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^_uninst_62732465.lnk]
C:\Users\Home\AppData\Local\temp\_UNINS~1.BAT []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\System32\guard32.dll C:\Windows\system32\guard32.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2009-09-03 548352]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2011-09-05 113024]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=serwvdrv.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"wave2"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave3"=serwvdrv.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2013-02-02 09:52:52 ----A---- C:\Windows\system32\drivers\aswSP.sys
2013-02-02 09:52:52 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2013-02-02 09:52:45 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2013-02-02 09:52:44 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2013-02-02 09:52:42 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2013-02-02 09:52:37 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2013-02-02 09:52:12 ----A---- C:\Windows\avastSS.scr
2013-02-02 09:52:11 ----A---- C:\Windows\system32\aswBoot.exe
2013-02-02 09:36:15 ----A---- C:\Windows\system32\WavesLib.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\WavesGUILib.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\tosade.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\TepeqAPO.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\tadefxapo2.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\tadefxapo.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SRSWOW.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SRSTSXT.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SRSTSHD.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SRSHP360.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SFSS_APO.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SFNHK.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SFCOM.dll
2013-02-02 09:36:15 ----A---- C:\Windows\system32\SFAPO.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RtkPgExt.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RtkCoLDR.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RtkCoInstII.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RtkApoApi.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RtkAPO.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RTEEP32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RTEEL32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RTEEG32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RTEED32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RP3DHT32.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RP3DAA32.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\RCoRes.dat
2013-02-02 09:36:14 ----A---- C:\Windows\system32\R4EEP32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\R4EEL32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\R4EEG32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\R4EED32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\R4EEA32A.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\MaxxAudioRealtek2.dll
2013-02-02 09:36:14 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2013-02-02 09:36:14 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioAPOShell.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\KAAPORT.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\FMAPO.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\DTSU2PREC32.dll
2013-02-02 09:36:13 ----A---- C:\Windows\system32\DTSU2PLFX32.dll
2013-02-02 09:36:12 ----D---- C:\Program Files\Realtek
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSU2PGFX32.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\AERTARen.dll
2013-02-02 09:36:12 ----A---- C:\Windows\system32\AERTACap.dll
2013-02-02 09:36:10 ----HD---- C:\Program Files\Temp
2013-02-02 09:36:09 ----A---- C:\Windows\RtlExUpd.dll
2013-02-02 01:36:49 ----N---- C:\bootsqm.dat
2013-02-01 23:37:40 ----SHD---- C:\found.001
2013-01-28 18:12:32 ----D---- C:\Windows\Sun
2013-01-28 18:10:28 ----D---- C:\Program Files\Common Files\Java
2013-01-28 18:10:15 ----A---- C:\Windows\system32\javaws.exe
2013-01-28 18:09:59 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2013-01-28 18:09:59 ----A---- C:\Windows\system32\javaw.exe
2013-01-28 18:09:59 ----A---- C:\Windows\system32\java.exe
2013-01-24 17:36:01 ----D---- C:\Program Files\Mozilla Firefox
2013-01-17 18:01:30 ----D---- C:\Program Files\Network Stumbler
2013-01-11 10:57:00 ----A---- C:\Windows\system32\usp10.dll
2013-01-11 10:56:59 ----A---- C:\Windows\system32\win32k.sys
2013-01-11 10:56:58 ----A---- C:\Windows\system32\win32spl.dll
2013-01-11 10:56:45 ----A---- C:\Windows\system32\msxml6.dll
2013-01-11 10:56:37 ----A---- C:\Windows\system32\KernelBase.dll
2013-01-11 10:56:35 ----A---- C:\Windows\system32\winsrv.dll
2013-01-11 10:56:35 ----A---- C:\Windows\system32\kernel32.dll
2013-01-11 10:56:35 ----A---- C:\Windows\system32\conhost.exe
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-01-11 10:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-01-11 10:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-01-11 10:56:32 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-01-11 10:56:32 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-01-11 10:55:37 ----A---- C:\Windows\system32\gameux.dll
2013-01-11 10:55:36 ----A---- C:\Windows\system32\Wpc.dll
2013-01-11 10:55:16 ----A---- C:\Windows\system32\ncrypt.dll
2013-01-11 10:55:15 ----A---- C:\Windows\system32\taskhost.exe

======List of files/folders modified in the last 1 month======

2013-02-02 10:12:23 ----D---- C:\Windows\Prefetch
2013-02-02 10:12:13 ----D---- C:\Program Files\trend micro
2013-02-02 10:11:50 ----D---- C:\Windows\system32\config
2013-02-02 10:10:10 ----D---- C:\Windows\temp
2013-02-02 10:09:20 ----D---- C:\Windows
2013-02-02 10:08:37 ----A---- C:\Windows\system32\acovcnt.exe
2013-02-02 10:08:13 ----D---- C:\ProgramData\NVIDIA
2013-02-02 10:07:09 ----D---- C:\Windows\system32\Tasks
2013-02-02 10:04:15 ----SHD---- C:\System Volume Information
2013-02-02 10:01:40 ----D---- C:\Windows\System32
2013-02-02 10:01:06 ----RD---- C:\Program Files
2013-02-02 10:01:00 ----D---- C:\Windows\system32\RTCOM
2013-02-02 10:01:00 ----D---- C:\Windows\system32\drivers
2013-02-02 09:52:34 ----D---- C:\Config.Msi
2013-02-02 09:52:32 ----SHD---- C:\Windows\Installer
2013-02-02 09:51:57 ----D---- C:\ProgramData\AVAST Software
2013-02-02 09:51:57 ----D---- C:\Program Files\AVAST Software
2013-02-02 09:48:43 ----D---- C:\Windows\system32\catroot
2013-02-02 09:40:08 ----D---- C:\Windows\Resources
2013-02-02 09:39:15 ----D---- C:\Windows\inf
2013-02-02 09:36:47 ----D---- C:\Windows\system32\catroot2
2013-02-02 09:36:45 ----D---- C:\Windows\system32\DriverStore
2013-02-02 09:36:12 ----HD---- C:\Program Files\InstallShield Installation Information
2013-02-02 09:35:27 ----A---- C:\Windows\DIFxAPI.dll
2013-02-02 09:21:06 ----D---- C:\Windows\system32\wbem
2013-02-02 09:20:20 ----D---- C:\Windows\Tasks
2013-02-02 09:20:20 ----D---- C:\Windows\system32\CodeIntegrity
2013-02-02 09:20:20 ----D---- C:\Windows\AppCompat
2013-02-02 09:20:20 ----D---- C:\Users\Home\AppData\Roaming\vlc
2013-02-02 09:20:20 ----D---- C:\Users\Home\AppData\Roaming\uTorrent
2013-02-02 09:20:19 ----D---- C:\Windows\registration
2013-01-28 18:10:28 ----D---- C:\Program Files\Common Files
2013-01-28 18:09:51 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-01-28 18:09:51 ----A---- C:\Windows\system32\deployJava1.dll
2013-01-25 20:07:01 ----D---- C:\Program Files\CCleaner
2013-01-25 18:04:15 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-01-17 22:59:10 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-01-17 18:01:32 ----SD---- C:\ProgramData\Microsoft
2013-01-17 16:29:50 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-01-17 01:28:58 ----N---- C:\Windows\system32\MpSigStub.exe
2013-01-16 19:22:33 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2013-01-16 16:06:10 ----D---- C:\Program Files\Java
2013-01-14 18:10:29 ----D---- C:\Windows\debug
2013-01-12 11:27:27 ----D---- C:\Windows\rescache
2013-01-11 20:26:50 ----D---- C:\Windows\Microsoft.NET
2013-01-11 20:26:49 ----RSD---- C:\Windows\assembly
2013-01-11 18:33:40 ----D---- C:\Windows\winsxs
2013-01-11 18:31:13 ----D---- C:\Windows\system32\cs-CZ
2013-01-11 17:00:10 ----D---- C:\ProgramData\Microsoft Help
2013-01-11 16:54:47 ----A---- C:\Windows\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaNvStor;Intel(R) Turbo Memory Controller; C:\Windows\system32\DRIVERS\iaNvStor.sys [2009-07-01 232472]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-06-04 330264]
R0 JGOGO;JMicron Hot-Plug Driver; C:\Windows\system32\DRIVERS\JGOGO.sys [2006-02-07 6912]
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys [2007-04-12 48000]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-10-15 44784]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-10-30 738504]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-10-30 361032]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-10-30 54232]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2012-11-08 494416]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2012-11-08 36072]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2012-11-08 82952]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2011-09-05 12880]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2011-09-05 67664]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-10-30 21256]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-10-30 58680]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-08-08 45568]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-07-30 43008]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-07-30 38400]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-04-14 242240]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2012-06-19 3240400]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2007-01-24 5632]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2009-07-14 18432]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2007-07-31 7680]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
R3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 84992]
R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2009-05-05 1095808]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-10-01 1769984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-12-06 196400]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 CFcatchme;CFcatchme; \??\C:\Users\Home\AppData\Local\Temp\CFcatchme.sys []
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 itecir;ITECIR Infrared Receiver; C:\Windows\system32\DRIVERS\itecir.sys [2007-06-20 49664]
S3 Netaapl;Apple Mobile Device Ethernet Service; C:\Windows\system32\DRIVERS\netaapl.sys [2011-05-10 18432]
S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver; \??\C:\Windows\system32\NSNDIS5.SYS [2004-03-24 17280]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 49664]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2012-09-28 44544]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys []
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2012-09-07 116608]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-08-11 55184]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-10-02 94208]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-10-30 44808]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2012-11-08 1990464]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-06-04 354840]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2012-12-12 553440]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-02 1258856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-17 251400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-01-24 115608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-01-08 1343400]

-----------------EOF-----------------

Re: prosím o preventivku, děkuju

Napsal: 02 úno 2013 19:48
od Márty84
Zdravim :)

Vidim jen par zbytecnosti. Je to ciste prevence, nebo je s pc nejaky problem?

:arrow: Stahnete OTM http://oldtimer.geekstogo.com/OTM.exe a ulozte nejlepe na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Do leveho okna zkopirujte tento skript (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[RESETHOSTS]
[Purity]

:services
AdobeARMservice
AdobeFlashPlayerUpdateSvc

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\Windows\tasks\Adobe Flash Player Updater.job

:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=-
"SunJavaUpdateSched"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware]
Kliknete na MoveIt a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu sem dejte log, ktery na vas vyskoci, nebo bude zde C:\_OTM\MovedFiles\xxxxxxxx_xxxxxx (misto tech x budou cisla, predstavujici datum a cas spusteni)

Re: prosím o preventivku, děkuju

Napsal: 02 úno 2013 21:01
od raskar89
All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Home
->Temp folder emptied: 164490454 bytes
->Temporary Internet Files folder emptied: 1700059 bytes
->Java cache emptied: 1817388 bytes
->FireFox cache emptied: 76145810 bytes
->Flash cache emptied: 593 bytes

User: Public
->Temp folder emptied: 0 bytes

User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 82350008 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50507 bytes
%systemroot%\system32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 0 bytes
RecycleBin emptied: 737260886 bytes

Total Files Cleaned = 1 015,00 mb


[EMPTYFLASH]

User: Administrator

User: All Users

User: Default

User: Default User

User: Home
->Flash cache emptied: 0 bytes

User: Public

User: UpdatusUser

Total Flash Files Cleaned = 0,00 mb

C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
========== SERVICES/DRIVERS ==========
Service AdobeARMservice stopped successfully!
Service AdobeARMservice deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\.SET.tmp not found.
File/Folder C:\Windows\*.tmp not found.
C:\Windows\tasks\Adobe Flash Player Updater.job moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\currentversion\run] not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\currentversion\run] not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\shared tools\ msconfig\startupreg\daemon tools lite\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\shared tools\ msconfig\startupreg\malwarebytes anti-malware\ not found.

OTM by OldTimer - Version 3.1.21.0 log created on 02022013_204538



mel jsem problemy s HDD a vypl se avast, tak jsem mel obavu, jestli v tom nebylo neco vic.
OTM sel spustit jenom v nouzovem rezimu, ale vypada to, ze to asi vyslo

dekuju za pomoc :)

Re: prosím o preventivku, děkuju

Napsal: 02 úno 2013 21:24
od Márty84
OK, radeji to proverime.


:???: Vidim tam MBAM. Delal jste kompletni kontrolu? Nasel neco?


:arrow: Stahnete crystal disk info http://www.slunecnice.cz/sw/crystaldiskinfo/
Nainstalujte (pozor na pripadne doplnky, ty odmitnete zrusenim zatrzitka) a spustte jako spravce. Za chvili se zobrazi vysledek.
Kliknete nahore na napis Úpravy a pak na napis Kopírovat. To co se zkopiruje (ulozi se to do pameti) mi sem vlozte


:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe , ulozte ho na plochu, kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Zprava a objevi se log. Ten mi sem vlozte

Re: prosím o preventivku, děkuju

Napsal: 02 úno 2013 21:51
od raskar89
Byl vadny disk, neslo spustit chkdsk, musel byt pres F8 opraven pc, pak to slo, behem toho problemu vypadl zvuk (reinstal driveru) a vypl se avast (reinstal) Od te doby to vypada ok.
Roguekiller se spusti, najde 3 problemy ale pri prohledavani MBR spadne, opakuje se i v nouzovem rezimu.

Posilam aspon log z Crystalu


----------------------------------------------------------------------------
CrystalDiskInfo 5.3.1 (C) 2008-2013 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 7 Home Premium Edition SP1 [6.1 Build 7601] (x86)
Date : 2013/02/02 21:45:27

-- Controller Map ----------------------------------------------------------
- Ricoh SD/MMC Host Controller [ATA]
- Ricoh xD-Picture Card Controller [ATA]
+ ATA Channel 0 (0) [ATA]
- HL-DT-ST DVDRAM GSA-T20L ATA Device
- Ricoh Memory Stick Controller [ATA]
+ Intel(R) ICH8M Ultra ATA Storage Controllers - 2850 [ATA]
- ATA Channel 0 (0)
+ Intel(R) ICH8M-E/M SATA AHCI Controller [ATA]
- ST9250827AS
+ Intel(R) Turbo Memory Controller [SCSI]
- IMD-0
- JMicron JMB36X Controller [SCSI]

-- Disk List ---------------------------------------------------------------
(1) ST9250827AS : 250,0 GB [0/0/0, pd1] - st

----------------------------------------------------------------------------
(1) ST9250827AS
----------------------------------------------------------------------------
Model : ST9250827AS
Firmware : 3.AAA
Serial Number : 5RG1JVD4
Disk Size : 250,0 GB (8,4/137,4/250,0)
Buffer Size : 8192 KB
NV Cache Size : 387 MB
Queue Depth : 32
# of Sectors : 488397168
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : SATA/150
Power On Hours : 13259 hod.
Power On Count : 3249 krát
Temparature : 50 C (122 F)
Health Status : Pozor
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 8080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 253 __6 000000000000 Počet chyb čtení
03 _99 _99 __0 000000000000 Čas na roztočení ploten
04 _96 _96 _20 000000001185 Počet spuštění/zastavení
05 100 100 _36 000000000001 Počet přemapovaných sektorů
07 _75 _60 _30 001429DECABE Počet chybných hledání
09 _85 _85 __0 0000000033CB Hodin v činnosti
0A 100 100 _34 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _97 _97 _20 000000000CB1 Počet cyklů zapnutí zařízení
BB 100 100 __0 000000000000 Ohlášeno neopravitelných chyb
BD _96 _96 __0 000000000004 Vysoká rychlost zápisu
BE _50 _38 _45 00DD3E0D0032 Teplota toku vzduchu
BF 100 100 __0 000000000205 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 00000000046D Počet vypnutí disku
C1 __1 __1 __0 00000003D451 Počet cyklů načítání/vymazání
C2 _50 _62 __0 000D00000032 Teplota
C3 _65 _57 __0 000004CD3FD4 Počet oprav chybného čtení
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000003 Počet chyb v kontrolním součtu UltraDMA
C8 100 253 __0 000000000000 Počet chyb při zápisu sektorů
CA 100 253 __0 000000000000 Počet chyb při směrování údajů

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2020 3552 4731 4A56 4434
020: 0000 4000 0004 332E 4141 4120 2020 5354 3932 3530
030: 3832 3741 5320 2020 2020 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0502 0000 0048 0048
080: 01F0 0029 346B 7D09 6103 3069 BC09 6103 407F 0000
090: 0000 8080 FFFE 0000 FE00 0000 0000 0000 0000 0000
100: 5970 1D1C 0000 0000 0000 0000 4000 0000 5000 C500
110: 0B7E 057E 0000 0000 0000 0000 0000 0100 0000 400E
120: 400C 0000 0000 0000 0000 0000 0000 0000 0009 5970
130: 1D1C 5970 1D1C 2020 0002 0AB6 8002 0000 3C06 3C06
140: FFFF 07C6 0100 0000 100F 1800 0002 0080 0000 0000
150: 6080 0000 0000 0000 0000 0000 0000 0000 1E00 000B
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 0001 0000 0000 0000
210: 0000 0000 0000 0000 0011 1B80 000C 0041 0019 0005
220: 0000 0000 1010 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 55A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 0F 00 64 FD 00 00 00 00 00 00 00 03 03
010: 00 63 63 00 00 00 00 00 00 00 04 32 00 60 60 85
020: 11 00 00 00 00 00 05 33 00 64 64 01 00 00 00 00
030: 00 00 07 0F 00 4B 3C BE CA DE 29 14 00 00 09 32
040: 00 55 55 CB 33 00 00 00 00 00 0A 13 00 64 64 00
050: 00 00 00 00 00 00 0C 32 00 61 61 B1 0C 00 00 00
060: 00 00 BB 32 00 64 64 00 00 00 00 00 00 00 BD 3A
070: 00 60 60 04 00 00 00 00 00 00 BE 22 00 32 26 32
080: 00 0D 3E DD 00 00 BF 32 00 64 64 05 02 00 00 00
090: 00 00 C0 32 00 64 64 6D 04 00 00 00 00 00 C1 22
0A0: 00 01 01 51 D4 03 00 00 00 00 C2 1A 00 32 3E 32
0B0: 00 00 00 0D 00 00 C3 12 00 41 39 D4 3F CD 04 00
0C0: 00 00 C5 10 00 64 64 00 00 00 00 00 00 00 C6 3E
0D0: 00 64 64 00 00 00 00 00 00 00 C7 00 00 C8 C8 03
0E0: 00 00 00 00 00 00 C8 32 00 64 FD 00 00 00 00 00
0F0: 00 00 CA 00 00 64 FD 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 82 00 AA 01 00 53
170: 03 00 01 00 01 5C 02 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 07 01 01 01 01 01 01 01 01 00
190: 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00
1A0: 01 00 30 75 8D D0 AB 05 00 00 00 00 00 00 05 02
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 02 00 01 00 00 00 03 00 00 00 20 C9 BC C1 0A 00
1D0: 00 00 BE E4 95 08 00 00 00 00 D2 04 00 00 00 00
1E0: 42 64 01 00 01 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 86

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 06 00 00 00 00 00 00 00 00 00 00 03 00
010: 00 00 00 00 00 00 00 00 00 00 04 14 00 00 00 00
020: 00 00 00 00 00 00 05 24 00 00 00 00 00 00 00 00
030: 00 00 07 1E 00 00 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 22 00 00 00 00
050: 00 00 00 00 00 00 0C 14 00 00 00 00 00 00 00 00
060: 00 00 BB 00 00 00 00 00 00 00 00 00 00 00 BD 00
070: 00 00 00 00 00 00 00 00 00 00 BE 2D 00 00 00 00
080: 00 00 00 00 00 00 BF 00 00 00 00 00 00 00 00 00
090: 00 00 C0 00 00 00 00 00 00 00 00 00 00 00 C1 00
0A0: 00 00 00 00 00 00 00 00 00 00 C2 00 00 00 00 00
0B0: 00 00 00 00 00 00 C3 00 00 00 00 00 00 00 00 00
0C0: 00 00 C5 00 00 00 00 00 00 00 00 00 00 00 C6 00
0D0: 00 00 00 00 00 00 00 00 00 00 C7 00 00 00 00 00
0E0: 00 00 00 00 00 00 C8 00 00 00 00 00 00 00 00 00
0F0: 00 00 CA 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 25

Re: prosím o preventivku, děkuju

Napsal: 02 úno 2013 22:02
od Márty84
Disk na tom neni nejlepe, vykazuje chyby. Ale videl jsem i horsi.

:arrow: Stahnete MBRScan http://eric71.geekstogo.com/tools/MbrScan.exe , ulozte ho na plochu a spustte jako spravce.
Kliknete na Report
Za chvili vyskoci log s nazvem MBRScan.txt, ten mi sem zkopirujte.

Re: prosím o preventivku, děkuju

Napsal: 02 úno 2013 22:05
od raskar89
jakou myslite ze ma jeste zivotnost ten disk? Projistotu si vsechno zalohuju, ale kolik tak jeste orientacne muze vydrzet?

bohuzel pri otevreni programu a kliknuti na cokoli program spadne, nepomaha ani rezim kompatibility

Re: prosím o preventivku, děkuju

Napsal: 02 úno 2013 22:10
od Márty84
No, tak bud tam mate poradnou potvoru, nebo je to systemem, ci tim diskem :?:

Data zalohujte kazdopadne. S tim diskem vam nepordim. Vadne sektory to sice neukazuje, ale je tam spousta chyb hledani a otresovy senzor taky ukazuje spoustu zaznamu. Ale jak dlouho to bude funkcni tezko rict. Muze to byt 5 minut, ale taky 5 let :arcisit:


Zkusime tedy dalsi nastroj



:!: Pokud nemate, zazalohujte si radeji dulezita data (fotky, dokumenty, atd.) :!:

:!: Nepouzivejte ComboFix bez predchozi domluvy! Je to poruseni pravidel fora a ztratite tim narok na pomoc!

:arrow: Stahnete ComboFix http://download.bleepingcomputer.com/sUBs/ComboFix.exe a ulozte ho na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Kliknete na ComboFix pravym mysidlem a levym na Spustit jako spravce
Odsouhlaste licencni podminky a nechte program pracovat. Jestli vam nabidne instalaci Konzoly pro zotaveni, souhlaste.
Po dobu skenu nic nespoustejte, nikam neklikejte.
Po dokonceni skenovani (muze dojit i k restartu pc) by se mel vytvorit log, ktery bude umisteny zde C:\ComboFix.txt
Jeho obsah sem zkopirujte

:!: Kdyby po restartu nenabehl windows, restartujte znovu, mackejte klavesu F8 a zvolte - Posledni znama funkcni konfigurace
:!: Kdyz windows nabehne, ale pri spousteni programu bude hlasena chyba, staci restartovat pc a bude to v poradku

Re: prosím o preventivku, děkuju

Napsal: 02 úno 2013 23:21
od raskar89
slo to jenom v nouzovem rezimu, potom nejel internet, pomohlo obnoveni

ComboFix 13-02-02.05 - Home 02.02.2013 22:41:50.6.2 - x86 MINIMAL
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3071.2158 [GMT 1:00]
Spuštěný z: c:\users\Home\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
FW: COMODO Firewall *Enabled* {7DB03214-694B-060B-1600-BD4715C36DBB}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: COMODO Defense+ *Disabled/Updated* {FEEA52D5-051E-08DD-07EF-2F009097607D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\msvcr71.dll
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_NPF
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-01-02 do 2013-02-02 )))))))))))))))))))))))))))))))
.
.
2013-02-02 21:49 . 2013-02-02 21:55 -------- d-----w- c:\users\Home\AppData\Local\temp
2013-02-02 21:49 . 2013-02-02 21:49 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-02-02 21:49 . 2013-02-02 21:49 -------- d-----w- c:\users\Public\AppData\Local\temp
2013-02-02 21:49 . 2013-02-02 21:49 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-02-02 21:49 . 2013-02-02 21:49 -------- d-----w- c:\users\Administrator\AppData\Local\temp
2013-02-02 20:29 . 2013-02-02 20:47 15616 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2013-02-02 20:24 . 2013-02-02 20:24 -------- d-----w- c:\programdata\Drivers.com
2013-02-02 19:45 . 2013-02-02 19:45 -------- d-----w- C:\_OTM
2013-02-02 13:54 . 2010-06-02 03:55 74072 ----a-w- c:\windows\system32\XAPOFX1_5.dll
2013-02-02 13:54 . 2010-06-02 03:55 527192 ----a-w- c:\windows\system32\XAudio2_7.dll
2013-02-02 13:54 . 2010-06-02 03:55 239960 ----a-w- c:\windows\system32\xactengine3_7.dll
2013-02-02 13:54 . 2010-05-26 10:41 1868128 ----a-w- c:\windows\system32\d3dcsx_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 470880 ----a-w- c:\windows\system32\d3dx10_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 248672 ----a-w- c:\windows\system32\d3dx11_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 1998168 ----a-w- c:\windows\system32\D3DX9_43.dll
2013-02-02 10:13 . 2013-02-02 13:48 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2013-02-02 08:52 . 2012-10-30 22:51 361032 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-02-02 08:52 . 2012-10-30 22:51 21256 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-02-02 08:52 . 2012-10-15 16:59 44784 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-02-02 08:52 . 2012-10-30 22:51 54232 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-02-02 08:52 . 2012-10-30 22:51 738504 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-02-02 08:52 . 2012-10-30 22:51 58680 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-02-02 08:52 . 2012-10-30 22:51 41224 ----a-w- c:\windows\avastSS.scr
2013-02-02 08:52 . 2012-10-30 22:50 227648 ----a-w- c:\windows\system32\aswBoot.exe
2013-02-02 08:42 . 2013-02-02 08:42 -------- d-----w- c:\users\Home\AppData\Local\Innovative Solutions
2013-02-01 22:37 . 2013-02-02 08:20 -------- d-----w- C:\found.001
2013-02-01 11:01 . 2013-01-08 04:57 6991832 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{C056C1A8-3731-4525-83B2-EE31CDF21B21}\mpengine.dll
2013-01-28 17:12 . 2013-01-28 17:12 -------- d-----w- c:\windows\Sun
2013-01-28 17:10 . 2013-01-28 17:10 -------- d-----w- c:\program files\Common Files\Java
2013-01-28 17:09 . 2013-01-28 17:09 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-01-17 17:01 . 2013-01-17 17:01 -------- d-----w- c:\program files\Network Stumbler
2013-01-16 18:22 . 2013-01-16 18:22 -------- d-----w- c:\users\Home\AppData\Local\Programs
2013-01-11 18:54 . 2013-01-11 18:54 -------- d-----w- c:\users\Home\Sniff
2013-01-11 09:57 . 2012-11-22 04:45 626688 ----a-w- c:\windows\system32\usp10.dll
2013-01-11 09:55 . 2012-12-07 10:46 43520 ----a-w- c:\windows\system32\csrr.rs
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-02-02 20:52 . 2011-01-08 08:51 45056 ----a-w- c:\windows\system32\acovcnt.exe
2013-02-02 08:35 . 2011-01-08 01:05 319456 ----a-w- c:\windows\DIFxAPI.dll
2013-01-28 17:09 . 2012-08-21 22:18 859552 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-01-28 17:09 . 2011-01-12 19:09 780192 ----a-w- c:\windows\system32\deployJava1.dll
2013-01-17 15:29 . 2012-04-05 09:21 697864 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-01-17 15:29 . 2011-09-16 08:30 74248 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-01-17 00:28 . 2011-01-08 00:04 232336 ------w- c:\windows\system32\MpSigStub.exe
2012-12-16 14:13 . 2012-12-21 13:24 295424 ----a-w- c:\windows\system32\atmfd.dll
2012-12-16 14:13 . 2012-12-21 13:24 34304 ----a-w- c:\windows\system32\atmlib.dll
2012-12-14 15:49 . 2012-03-02 22:51 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-11-14 02:09 . 2012-12-13 12:35 1800704 ----a-w- c:\windows\system32\jscript9.dll
2012-11-14 01:58 . 2012-12-13 12:35 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-11-14 01:57 . 2012-12-13 12:35 1129472 ----a-w- c:\windows\system32\wininet.dll
2012-11-14 01:49 . 2012-12-13 12:35 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2012-11-14 01:48 . 2012-12-13 12:35 420864 ----a-w- c:\windows\system32\vbscript.dll
2012-11-14 01:44 . 2012-12-13 12:35 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-11-09 04:42 . 2012-12-13 12:29 2048 ----a-w- c:\windows\system32\tzres.dll
2012-11-07 23:37 . 2010-12-29 00:41 82952 ----a-w- c:\windows\system32\drivers\inspect.sys
2012-11-07 23:37 . 2010-12-29 00:41 36072 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
2012-11-07 23:37 . 2010-12-29 00:41 494416 ----a-w- c:\windows\system32\drivers\cmdGuard.sys
2012-11-07 23:37 . 2010-12-29 00:41 19632 ----a-w- c:\windows\system32\drivers\cmderd.sys
2012-11-07 23:37 . 2011-10-19 18:11 34024 ----a-w- c:\windows\system32\cmdcsr.dll
2012-11-07 23:37 . 2010-12-29 00:42 301264 ----a-w- c:\windows\system32\guard32.dll
2013-01-24 16:36 . 2013-01-24 16:36 262552 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-10-30 22:50 121528 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"="c:\program files\COMODO\COMODO Internet Security\cfp.exe" [2012-11-07 6756048]
"ATKOSD2"="c:\program files\ATKOSD2\ATKOSD2.exe" [2007-10-17 7737344]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-12-06 1029416]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2007-03-20 36864]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-06-04 186904]
"IaNvSrv"="c:\program files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvSrv.exe" [2009-07-13 33304]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-11-28 59280]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-12-12 152544]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-12-03 946352]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-07-03 252848]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-10-30 4297136]
"SMSERIAL"="c:\program files\Motorola\SMSERIAL\sm56hlpr.exe" [2009-05-05 1466368]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2012-06-11 10996368]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-09-05 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 22:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\guard32.dll c:\windows\System32\guard32.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
backup=c:\windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
backupExtension=.CommonStartup
.
[HKLM\~\startupfolder\C:^Users^Home^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^_uninst_62732465.lnk]
path=c:\users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\_uninst_62732465.lnk
backup=c:\windows\pss\_uninst_62732465.lnk.Startup
backupExtension=.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
2008-07-22 17:33 150528 ----a-w- c:\program files\HP\Digital Imaging\bin\HpqSRmon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2012-12-12 12:57 152544 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware]
2012-12-14 15:49 512360 ----a-w- c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe
.
R3 CFcatchme;CFcatchme;c:\users\Home\AppData\Local\Temp\CFcatchme.sys [x]
R3 Netaapl;Apple Mobile Device Ethernet Service;c:\windows\system32\DRIVERS\netaapl.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 iaNvStor;Intel(R) Turbo Memory Controller;c:\windows\system32\DRIVERS\iaNvStor.sys [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\DRIVERS\cmdguard.sys [x]
S1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\DRIVERS\cmdhlp.sys [x]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [x]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [x]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista;c:\windows\system32\DRIVERS\netw5v32.sys [x]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x86.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
GPSvcGroup REG_MULTI_SZ GPSvc
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.cz/
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
Trusted Zone: mojebanka.cz
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
TCP: DhcpNameServer = 10.0.0.138
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\02960586F6E6560243: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\2456C6B696E6F5E4F575962756C6563737F5333313438324: NameServer = 156.154.70.25,156.154.71.25
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\44D2C696E6B6: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\651305732427E6F6: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{DBB461A5-3A64-464D-9B14-96961794DF7A}: NameServer = 8.26.56.26,156.154.70.22
FF - ProfilePath - c:\users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\njqu423u.default\
FF - prefs.js: browser.startup.homepage - hxxp://news.google.cz/nwshp?client=firefox-a&rls=org.mozilla:cs:official&hl=cs&tab=wn
FF - prefs.js: network.proxy.gopher -
FF - prefs.js: network.proxy.gopher_port - 0
FF - prefs.js: network.proxy.type - 0
FF - ExtSQL: 2013-02-02 09:55; wrc@avast.com; c:\program files\AVAST Software\Avast\WebRep\FF
FF - ExtSQL: !HIDDEN! 2011-01-10 00:29; smartwebprinting@hp.com; c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
MSConfigStartUp-DAEMON Tools Lite - c:\program files\DAEMON Tools Lite\DTLite.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'lsass.exe'(708)
c:\windows\system32\guard32.dll
.
- - - - - - - > 'Explorer.exe'(672)
c:\windows\system32\guard32.dll
c:\windows\System32\srchadmin.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\COMODO\COMODO Internet Security\cmdagent.exe
c:\program files\ATK Hotkey\ASLDRSrv.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\windows\system32\taskhost.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\System32\rundll32.exe
c:\program files\ATK Hotkey\Hcontrol.exe
c:\program files\ATK Hotkey\MsgTranAgt.exe
c:\program files\ATK Hotkey\ATKOSD.exe
c:\program files\Wireless Console 2\wcourier.exe
c:\program files\ATK Hotkey\KBFiltr.exe
c:\program files\P4G\BatteryLife.exe
c:\windows\system32\conhost.exe
c:\program files\ATK Hotkey\WDC.exe
c:\program files\ASUS\Splendid\ACMON.exe
c:\windows\System32\ACEngSvr.exe
c:\windows\servicing\TrustedInstaller.exe
.
**************************************************************************
.
Celkový čas: 2013-02-02 23:01:19 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-02-02 22:01
.
Před spuštěním: Volných bajtů: 194 723 647 488
Po spuštění: Volných bajtů: 194 401 476 608
.
- - End Of File - - D086B2622A6868F040238823B07B4A3A

Re: prosím o preventivku, děkuju

Napsal: 02 úno 2013 23:40
od raskar89
posilam screen toho roguekillera jak se sekne, jde tam trosku videt, ze to naslo nejake problemy (sken delan po dobehnuti combofixe)

Re: prosím o preventivku, děkuju

Napsal: 03 úno 2013 09:22
od Márty84
:arrow: Otevrete si poznamkovy blok a zkopirujte do nej tento skript

Kód: Vybrat vše

KillAll::

DDS::
Trusted Zone: mojebanka.cz
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www

Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=-
"SunJavaUpdateSched"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware]

RegLock::
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]

Firefox::
FF - ProfilePath - c:\users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\njqu423u.default\
FF - prefs.js: network.proxy.gopher -
FF - prefs.js: network.proxy.gopher_port - 0
FF - prefs.js: network.proxy.type - 0

Reboot::
Vlevo nahore kliknete na napis Soubor
Kliknete na napis Ulozit jako...
Napiste spravne ten cerveny nazev CFScript a ulozte na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Pretahntete mysi tento vytvoreny textovy dokument nad ikonu ComboFix a pustte.
ComboFix by se mel spustit a vykonat prikazy.
Az skonci (muze dojit k restartu pc), mel by se objevit novy log, ten mi sem zase zkopirujte.

:!: Kdyby po restartu nenabehl windows, restartujte znovu, mackejte klavesu F8 a zvolte - Posledni znama funkcni konfigurace
:!: Kdyz windows nabehne, ale pri spousteni programu bude hlasena chyba, staci restartovat pc a bude to v poradku

Re: prosím o preventivku, děkuju

Napsal: 03 úno 2013 13:25
od raskar89
ComboFix 13-02-02.05 - Home 03.02.2013 12:59:32.5.2 - x86 NETWORK
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3071.2102 [GMT 1:00]
Spuštěný z: c:\users\Home\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Home\Desktop\CFScript.TXT
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
FW: COMODO Firewall *Enabled* {7DB03214-694B-060B-1600-BD4715C36DBB}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: COMODO Defense+ *Enabled/Updated* {FEEA52D5-051E-08DD-07EF-2F009097607D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\msvcr71.dll
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_NPF
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-01-03 do 2013-02-03 )))))))))))))))))))))))))))))))
.
.
2013-02-03 12:06 . 2013-02-03 12:09 -------- d-----w- c:\users\Home\AppData\Local\temp
2013-02-03 12:06 . 2013-02-03 12:06 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-02-03 12:06 . 2013-02-03 12:06 -------- d-----w- c:\users\Public\AppData\Local\temp
2013-02-03 12:06 . 2013-02-03 12:06 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-02-03 12:06 . 2013-02-03 12:06 -------- d-----w- c:\users\Administrator\AppData\Local\temp
2013-02-02 22:59 . 2013-02-02 23:24 -------- d-----w- c:\users\Home\Doctor Web
2013-02-02 22:23 . 2013-02-02 22:23 -------- d-----w- c:\program files\Symform
2013-02-02 20:29 . 2013-02-02 22:35 15616 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2013-02-02 20:24 . 2013-02-02 22:16 -------- d-----w- c:\users\Home\AppData\Local\PC_Drivers_Headquarters
2013-02-02 20:24 . 2013-02-02 20:24 -------- d-----w- c:\programdata\Drivers.com
2013-02-02 20:23 . 2013-02-02 22:16 -------- d-----w- c:\program files\Drivers.com
2013-02-02 19:45 . 2013-02-02 19:45 -------- d-----w- C:\_OTM
2013-02-02 13:54 . 2010-06-02 03:55 74072 ----a-w- c:\windows\system32\XAPOFX1_5.dll
2013-02-02 13:54 . 2010-06-02 03:55 527192 ----a-w- c:\windows\system32\XAudio2_7.dll
2013-02-02 13:54 . 2010-06-02 03:55 239960 ----a-w- c:\windows\system32\xactengine3_7.dll
2013-02-02 13:54 . 2010-05-26 10:41 1868128 ----a-w- c:\windows\system32\d3dcsx_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 470880 ----a-w- c:\windows\system32\d3dx10_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 248672 ----a-w- c:\windows\system32\d3dx11_43.dll
2013-02-02 13:54 . 2010-05-26 10:41 1998168 ----a-w- c:\windows\system32\D3DX9_43.dll
2013-02-02 10:13 . 2013-02-02 13:48 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2013-02-02 08:52 . 2012-10-30 22:51 361032 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-02-02 08:52 . 2012-10-30 22:51 21256 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-02-02 08:52 . 2012-10-15 16:59 44784 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-02-02 08:52 . 2012-10-30 22:51 54232 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-02-02 08:52 . 2012-10-30 22:51 738504 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-02-02 08:52 . 2012-10-30 22:51 58680 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-02-02 08:52 . 2012-10-30 22:51 41224 ----a-w- c:\windows\avastSS.scr
2013-02-02 08:52 . 2012-10-30 22:50 227648 ----a-w- c:\windows\system32\aswBoot.exe
2013-02-02 08:42 . 2013-02-02 08:42 -------- d-----w- c:\users\Home\AppData\Local\Innovative Solutions
2013-02-01 22:37 . 2013-02-02 08:20 -------- d-----w- C:\found.001
2013-02-01 22:01 . 2013-02-02 22:16 -------- d-----w- c:\users\Home\AppData\Local\ElevatedDiagnostics
2013-02-01 11:01 . 2013-01-08 04:57 6991832 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{C056C1A8-3731-4525-83B2-EE31CDF21B21}\mpengine.dll
2013-01-28 17:12 . 2013-01-28 17:12 -------- d-----w- c:\windows\Sun
2013-01-28 17:10 . 2013-01-28 17:10 -------- d-----w- c:\program files\Common Files\Java
2013-01-28 17:09 . 2013-01-28 17:09 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-01-17 17:01 . 2013-01-17 17:01 -------- d-----w- c:\program files\Network Stumbler
2013-01-16 18:22 . 2013-01-16 18:22 -------- d-----w- c:\users\Home\AppData\Local\Programs
2013-01-11 09:57 . 2012-11-22 04:45 626688 ----a-w- c:\windows\system32\usp10.dll
2013-01-11 09:55 . 2012-12-07 10:46 43520 ----a-w- c:\windows\system32\csrr.rs
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-02-03 12:08 . 2011-01-08 08:51 45056 ----a-w- c:\windows\system32\acovcnt.exe
2013-02-02 08:35 . 2011-01-08 01:05 319456 ----a-w- c:\windows\DIFxAPI.dll
2013-01-28 17:09 . 2012-08-21 22:18 859552 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-01-28 17:09 . 2011-01-12 19:09 780192 ----a-w- c:\windows\system32\deployJava1.dll
2013-01-17 15:29 . 2012-04-05 09:21 697864 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-01-17 15:29 . 2011-09-16 08:30 74248 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-01-17 00:28 . 2011-01-08 00:04 232336 ------w- c:\windows\system32\MpSigStub.exe
2012-12-16 14:13 . 2012-12-21 13:24 295424 ----a-w- c:\windows\system32\atmfd.dll
2012-12-16 14:13 . 2012-12-21 13:24 34304 ----a-w- c:\windows\system32\atmlib.dll
2012-12-14 15:49 . 2012-03-02 22:51 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-11-14 02:09 . 2012-12-13 12:35 1800704 ----a-w- c:\windows\system32\jscript9.dll
2012-11-14 01:58 . 2012-12-13 12:35 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-11-14 01:57 . 2012-12-13 12:35 1129472 ----a-w- c:\windows\system32\wininet.dll
2012-11-14 01:49 . 2012-12-13 12:35 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2012-11-14 01:48 . 2012-12-13 12:35 420864 ----a-w- c:\windows\system32\vbscript.dll
2012-11-14 01:44 . 2012-12-13 12:35 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-11-09 04:42 . 2012-12-13 12:29 2048 ----a-w- c:\windows\system32\tzres.dll
2012-11-07 23:37 . 2010-12-29 00:41 82952 ----a-w- c:\windows\system32\drivers\inspect.sys
2012-11-07 23:37 . 2010-12-29 00:41 36072 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
2012-11-07 23:37 . 2010-12-29 00:41 494416 ----a-w- c:\windows\system32\drivers\cmdGuard.sys
2012-11-07 23:37 . 2010-12-29 00:41 19632 ----a-w- c:\windows\system32\drivers\cmderd.sys
2012-11-07 23:37 . 2011-10-19 18:11 34024 ----a-w- c:\windows\system32\cmdcsr.dll
2012-11-07 23:37 . 2010-12-29 00:42 301264 ----a-w- c:\windows\system32\guard32.dll
2013-01-24 16:36 . 2013-01-24 16:36 262552 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-10-30 22:50 121528 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"="c:\program files\COMODO\COMODO Internet Security\cfp.exe" [2012-11-07 6756048]
"ATKOSD2"="c:\program files\ATKOSD2\ATKOSD2.exe" [2007-10-17 7737344]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-12-06 1029416]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2007-03-20 36864]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-06-04 186904]
"IaNvSrv"="c:\program files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvSrv.exe" [2009-07-13 33304]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-11-28 59280]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-12-12 152544]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-10-30 4297136]
"SMSERIAL"="c:\program files\Motorola\SMSERIAL\sm56hlpr.exe" [2009-05-05 1466368]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2012-06-11 10996368]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-09-05 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 22:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\guard32.dll c:\windows\System32\guard32.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
backup=c:\windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
backupExtension=.CommonStartup
.
[HKLM\~\startupfolder\C:^Users^Home^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^_uninst_62732465.lnk]
path=c:\users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\_uninst_62732465.lnk
backup=c:\windows\pss\_uninst_62732465.lnk.Startup
backupExtension=.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
c:\program files\DAEMON Tools Lite\DTLite.exe [BU]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
2008-07-22 17:33 150528 ----a-w- c:\program files\HP\Digital Imaging\bin\HpqSRmon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2012-12-12 12:57 152544 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
R3 CFcatchme;CFcatchme;c:\users\Home\AppData\Local\Temp\CFcatchme.sys [x]
R3 Netaapl;Apple Mobile Device Ethernet Service;c:\windows\system32\DRIVERS\netaapl.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 iaNvStor;Intel(R) Turbo Memory Controller;c:\windows\system32\DRIVERS\iaNvStor.sys [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\DRIVERS\cmdguard.sys [x]
S1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\DRIVERS\cmdhlp.sys [x]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [x]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [x]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 symformcontrib;Symform Contribution Service;c:\program files\Symform\Node Service\symformcontrib.exe [x]
S2 symformsync;Symform Synchronization Service;c:\program files\Symform\Node Service\symformsync.exe [x]
S2 symformupdater;Symform Software Updater Service;c:\program files\Symform\Node Service\symformupdater.exe [x]
S3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista;c:\windows\system32\DRIVERS\netw5v32.sys [x]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x86.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
GPSvcGroup REG_MULTI_SZ GPSvc
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.cz/
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 10.0.0.138
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\02960586F6E6560243: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\2456C6B696E6F5E4F575962756C6563737F5333313438324: NameServer = 156.154.70.25,156.154.71.25
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\44D2C696E6B6: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{AA2527AB-DADD-4CBC-80C3-E5CF0392AF2D}\651305732427E6F6: NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{DBB461A5-3A64-464D-9B14-96961794DF7A}: NameServer = 8.26.56.26,156.154.70.22
FF - ProfilePath - c:\users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\njqu423u.default\
FF - prefs.js: browser.startup.homepage - hxxp://news.google.cz/nwshp?client=firefox-a&rls=org.mozilla:cs:official&hl=cs&tab=wn
FF - ExtSQL: 2013-02-02 09:55; wrc@avast.com; c:\program files\AVAST Software\Avast\WebRep\FF
FF - ExtSQL: !HIDDEN! 2011-01-10 00:29; smartwebprinting@hp.com; c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'lsass.exe'(700)
c:\windows\system32\guard32.dll
.
- - - - - - - > 'Explorer.exe'(2812)
c:\windows\system32\guard32.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\COMODO\COMODO Internet Security\cmdagent.exe
c:\program files\ATK Hotkey\ASLDRSrv.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\taskhost.exe
c:\program files\ATK Hotkey\Hcontrol.exe
c:\program files\ATK Hotkey\MsgTranAgt.exe
c:\program files\Wireless Console 2\wcourier.exe
c:\program files\P4G\BatteryLife.exe
c:\program files\ASUS\Splendid\ACMON.exe
c:\windows\System32\ACEngSvr.exe
c:\program files\ATK Hotkey\ATKOSD.exe
c:\windows\System32\rundll32.exe
c:\program files\ATK Hotkey\KBFiltr.exe
c:\program files\ATK Hotkey\WDC.exe
c:\windows\system32\conhost.exe
c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
c:\windows\system32\sppsvc.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
.
**************************************************************************
.
Celkový čas: 2013-02-03 13:14:22 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-02-03 12:14
ComboFix2.txt 2013-02-02 22:01
.
Před spuštěním: Volných bajtů: 194 754 105 344
Po spuštění: Volných bajtů: 194 111 766 528
.
- - End Of File - - A239C199CF31A77BACE6C55560CBAFFB

Re: prosím o preventivku, děkuju

Napsal: 03 úno 2013 13:29
od Márty84
:arrow: Postupujte podle navodu kolegy
vyosek píše: :arrow: Stahnete si TDSSKiller http://support.kaspersky.com/downloads/ ... killer.exe
  • Kliknete na volbu Change parametrs
  • V okne Additional Option zakliknete vsechny moznosti
  • Kliknete na OK
  • Utilite prikazte, at skenuje - klik na Start Scan
  • Po dokonceni skenu se objevi okno, zkontrolujte, zda-li je vsude moznost Skip
  • Pokud moznost Skip nebude primarne nastavena, prekliknete ji na Skip
  • Pokud mate vsude Skip, kliknete na Continue
  • Na disku, kde mate Windows (obvykle c:\) ve tvaru TDSSKiller.nejaka cisilka _log.txt bude log - jeho obsah sem vlozte

Re: prosím o preventivku, děkuju

Napsal: 03 úno 2013 13:31
od raskar89
co za havet tam je?

13:30:17.0803 2608 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
13:30:18.0053 2608 ============================================================
13:30:18.0053 2608 Current date / time: 2013/02/03 13:30:18.0053
13:30:18.0053 2608 SystemInfo:
13:30:18.0053 2608
13:30:18.0053 2608 OS Version: 6.1.7601 ServicePack: 1.0
13:30:18.0053 2608 Product type: Workstation
13:30:18.0053 2608 ComputerName: HOME-PC
13:30:18.0053 2608 UserName: Home
13:30:18.0053 2608 Windows directory: C:\Windows
13:30:18.0053 2608 System windows directory: C:\Windows
13:30:18.0053 2608 Processor architecture: Intel x86
13:30:18.0053 2608 Number of processors: 2
13:30:18.0053 2608 Page size: 0x1000
13:30:18.0053 2608 Boot type: Normal boot
13:30:18.0053 2608 ============================================================
13:30:18.0786 2608 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x78A5, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFB, Type 'K0', Flags 0x00000050
13:30:18.0802 2608 ============================================================
13:30:18.0802 2608 \Device\Harddisk0\DR0:
13:30:18.0802 2608 MBR partitions:
13:30:18.0802 2608 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xFA0000
13:30:18.0802 2608 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xFA0800, BlocksNum 0x1C224800
13:30:18.0802 2608 ============================================================
13:30:18.0802 2608 C: <-> \Device\Harddisk0\DR0\Partition2
13:30:18.0833 2608 D: <-> \Device\Harddisk0\DR0\Partition1
13:30:18.0833 2608 ============================================================
13:30:18.0833 2608 Initialize success
13:30:18.0833 2608 ============================================================
13:30:48.0895 4344 ============================================================
13:30:48.0895 4344 Scan started
13:30:48.0895 4344 Mode: Manual; SigCheck; TDLFS;
13:30:48.0895 4344 ============================================================
13:30:49.0473 4344 ================ Scan system memory ========================
13:30:49.0473 4344 System memory - ok
13:30:49.0473 4344 ================ Scan services =============================
13:30:49.0519 4344 [ 01E81C84AD1D0ACC61CF3CFD06632210 ] !SASCORE C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
13:30:49.0613 4344 !SASCORE - ok
13:30:49.0863 4344 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
13:30:49.0972 4344 1394ohci - ok
13:30:50.0003 4344 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
13:30:50.0034 4344 ACPI - ok
13:30:50.0081 4344 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
13:30:50.0143 4344 AcpiPmi - ok
13:30:50.0190 4344 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
13:30:50.0221 4344 adp94xx - ok
13:30:50.0237 4344 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
13:30:50.0268 4344 adpahci - ok
13:30:50.0284 4344 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
13:30:50.0315 4344 adpu320 - ok
13:30:50.0315 4344 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
13:30:50.0377 4344 AeLookupSvc - ok
13:30:50.0409 4344 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
13:30:50.0455 4344 AFD - ok
13:30:50.0502 4344 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
13:30:50.0549 4344 agp440 - ok
13:30:50.0596 4344 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
13:30:50.0627 4344 aic78xx - ok
13:30:50.0689 4344 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
13:30:50.0736 4344 ALG - ok
13:30:50.0799 4344 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
13:30:50.0814 4344 aliide - ok
13:30:50.0830 4344 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
13:30:50.0861 4344 amdagp - ok
13:30:50.0892 4344 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
13:30:50.0908 4344 amdide - ok
13:30:50.0939 4344 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
13:30:50.0986 4344 AmdK8 - ok
13:30:51.0017 4344 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
13:30:51.0064 4344 AmdPPM - ok
13:30:51.0095 4344 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
13:30:51.0111 4344 amdsata - ok
13:30:51.0157 4344 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
13:30:51.0173 4344 amdsbs - ok
13:30:51.0189 4344 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
13:30:51.0204 4344 amdxata - ok
13:30:51.0313 4344 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
13:30:51.0360 4344 AppID - ok
13:30:51.0391 4344 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
13:30:51.0454 4344 AppIDSvc - ok
13:30:51.0469 4344 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
13:30:51.0547 4344 Appinfo - ok
13:30:51.0594 4344 [ A5299D04ED225D64CF07A568A3E1BF8C ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
13:30:51.0610 4344 Apple Mobile Device - ok
13:30:51.0688 4344 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
13:30:51.0703 4344 arc - ok
13:30:51.0766 4344 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
13:30:51.0797 4344 arcsas - ok
13:30:51.0813 4344 [ 5A055A4777CBBC8845DD598CB2EEBF69 ] ASLDRService C:\Program Files\ATK Hotkey\ASLDRSrv.exe
13:30:51.0859 4344 ASLDRService ( UnsignedFile.Multi.Generic ) - warning
13:30:51.0859 4344 ASLDRService - detected UnsignedFile.Multi.Generic (1)
13:30:51.0875 4344 [ 7B4D08D2017AC06689D422E06C43F0AA ] ASMMAP C:\Program Files\ATKGFNEX\ASMMAP.sys
13:30:51.0891 4344 ASMMAP - ok
13:30:52.0234 4344 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
13:30:52.0281 4344 aspnet_state - ok
13:30:52.0359 4344 [ DE6ED95AEF259979B2830450072A627B ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
13:30:52.0374 4344 aswFsBlk - ok
13:30:52.0390 4344 [ 62F9DCEC95F91B8E0203E85D344A7E65 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
13:30:52.0405 4344 aswMonFlt - ok
13:30:52.0437 4344 [ 81F638A2DD94ABBF0B43880AB38D8DBD ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
13:30:52.0452 4344 aswRdr - ok
13:30:52.0499 4344 [ B32E9AD44A1DBB3E8095E80F8DF32B03 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
13:30:52.0530 4344 aswSnx - ok
13:30:52.0608 4344 [ 67B558895695545FB0568B7541F3BCA7 ] aswSP C:\Windows\system32\drivers\aswSP.sys
13:30:52.0639 4344 aswSP - ok
13:30:52.0717 4344 [ E3E73B2B73A4DFADFDDF557192C4B08A ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
13:30:52.0733 4344 aswTdi - ok
13:30:52.0764 4344 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
13:30:52.0842 4344 AsyncMac - ok
13:30:52.0858 4344 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
13:30:52.0889 4344 atapi - ok
13:30:52.0920 4344 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
13:30:52.0983 4344 AudioEndpointBuilder - ok
13:30:53.0029 4344 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
13:30:53.0076 4344 Audiosrv - ok
13:30:53.0123 4344 [ 8FA553E9AE69808D99C164733A0F9590 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
13:30:53.0139 4344 avast! Antivirus - ok
13:30:53.0170 4344 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
13:30:53.0217 4344 AxInstSV - ok
13:30:53.0263 4344 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
13:30:53.0326 4344 b06bdrv - ok
13:30:53.0357 4344 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
13:30:53.0404 4344 b57nd60x - ok
13:30:53.0435 4344 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
13:30:53.0497 4344 BDESVC - ok
13:30:53.0497 4344 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
13:30:53.0544 4344 Beep - ok
13:30:53.0607 4344 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
13:30:53.0685 4344 BFE - ok
13:30:53.0716 4344 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\system32\qmgr.dll
13:30:53.0825 4344 BITS - ok
13:30:53.0825 4344 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
13:30:53.0872 4344 blbdrive - ok
13:30:53.0903 4344 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
13:30:53.0934 4344 Bonjour Service - ok
13:30:53.0950 4344 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
13:30:53.0981 4344 bowser - ok
13:30:54.0059 4344 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
13:30:54.0168 4344 BrFiltLo - ok
13:30:54.0184 4344 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
13:30:54.0231 4344 BrFiltUp - ok
13:30:54.0262 4344 [ 77361D72A04F18809D0EFB6CCEB74D4B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
13:30:54.0324 4344 BridgeMP - ok
13:30:54.0340 4344 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
13:30:54.0387 4344 Browser - ok
13:30:54.0511 4344 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
13:30:54.0558 4344 Brserid - ok
13:30:54.0589 4344 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
13:30:54.0683 4344 BrSerWdm - ok
13:30:54.0699 4344 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
13:30:54.0730 4344 BrUsbMdm - ok
13:30:54.0761 4344 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
13:30:54.0808 4344 BrUsbSer - ok
13:30:54.0855 4344 [ 2865A5C8E98C70C605F417908CEBB3A4 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys
13:30:54.0917 4344 BthEnum - ok
13:30:54.0948 4344 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
13:30:54.0995 4344 BTHMODEM - ok
13:30:55.0042 4344 [ AD1872E5829E8A2C3B5B4B641C3EAB0E ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
13:30:55.0089 4344 BthPan - ok
13:30:55.0229 4344 [ 1153DE2E4F5941E10C399CB5592F78A1 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
13:30:55.0338 4344 BTHPORT - ok
13:30:55.0369 4344 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
13:30:55.0416 4344 bthserv - ok
13:30:55.0479 4344 [ C81E9413A25A439F436B1D4B6A0CF9E9 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
13:30:55.0510 4344 BTHUSB - ok
13:30:55.0541 4344 catchme - ok
13:30:55.0572 4344 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
13:30:55.0619 4344 cdfs - ok
13:30:55.0650 4344 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
13:30:55.0697 4344 cdrom - ok
13:30:55.0728 4344 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
13:30:55.0775 4344 CertPropSvc - ok
13:30:55.0806 4344 CFcatchme - ok
13:30:55.0822 4344 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
13:30:55.0853 4344 circlass - ok
13:30:55.0884 4344 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
13:30:55.0900 4344 CLFS - ok
13:30:55.0962 4344 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:30:55.0993 4344 clr_optimization_v2.0.50727_32 - ok
13:30:56.0025 4344 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:30:56.0040 4344 clr_optimization_v4.0.30319_32 - ok
13:30:56.0056 4344 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
13:30:56.0118 4344 CmBatt - ok
13:30:56.0196 4344 [ 2A2D72271844C52F004901A60312B96A ] cmdAgent C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
13:30:56.0243 4344 cmdAgent - ok
13:30:56.0274 4344 [ A1865742BBCF4C5F38FEE1258F8048FD ] cmdGuard C:\Windows\system32\DRIVERS\cmdguard.sys
13:30:56.0305 4344 cmdGuard - ok
13:30:56.0305 4344 [ 221D000474F01B1606FFC3FF362D9333 ] cmdHlp C:\Windows\system32\DRIVERS\cmdhlp.sys
13:30:56.0321 4344 cmdHlp - ok
13:30:56.0399 4344 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
13:30:56.0461 4344 cmdide - ok
13:30:56.0539 4344 [ 42F158036BD4C2FF3122BF142E60E6FD ] CNG C:\Windows\system32\Drivers\cng.sys
13:30:56.0571 4344 CNG - ok
13:30:56.0586 4344 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
13:30:56.0617 4344 Compbatt - ok
13:30:56.0617 4344 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
13:30:56.0664 4344 CompositeBus - ok
13:30:56.0680 4344 COMSysApp - ok
13:30:56.0695 4344 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
13:30:56.0727 4344 crcdisk - ok
13:30:56.0758 4344 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll
13:30:56.0805 4344 CryptSvc - ok
13:30:56.0836 4344 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
13:30:56.0883 4344 DcomLaunch - ok
13:30:56.0976 4344 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
13:30:57.0070 4344 defragsvc - ok
13:30:57.0085 4344 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
13:30:57.0148 4344 DfsC - ok
13:30:57.0179 4344 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
13:30:57.0226 4344 Dhcp - ok
13:30:57.0226 4344 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
13:30:57.0273 4344 discache - ok
13:30:57.0288 4344 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
13:30:57.0319 4344 Disk - ok
13:30:57.0335 4344 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
13:30:57.0382 4344 Dnscache - ok
13:30:57.0397 4344 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
13:30:57.0444 4344 dot3svc - ok
13:30:57.0475 4344 [ B5E479EB83707DD698F66953E922042C ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys
13:30:57.0507 4344 Dot4 - ok
13:30:57.0600 4344 [ CAEFD09B6A6249C53A67D55A9A9FCABF ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys
13:30:57.0663 4344 Dot4Print - ok
13:30:57.0709 4344 [ CF491FF38D62143203C065260567E2F7 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
13:30:57.0756 4344 dot4usb - ok
13:30:57.0772 4344 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
13:30:57.0850 4344 DPS - ok
13:30:57.0897 4344 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
13:30:57.0943 4344 drmkaud - ok
13:30:57.0975 4344 [ 687AF6BB383885FF6A64071B189A7F3E ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
13:30:57.0990 4344 dtsoftbus01 - ok
13:30:58.0021 4344 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
13:30:58.0053 4344 DXGKrnl - ok
13:30:58.0084 4344 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
13:30:58.0146 4344 EapHost - ok
13:30:59.0269 4344 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
13:30:59.0425 4344 ebdrv - ok
13:30:59.0441 4344 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
13:30:59.0503 4344 EFS - ok
13:30:59.0659 4344 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
13:30:59.0737 4344 ehRecvr - ok
13:30:59.0753 4344 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
13:30:59.0800 4344 ehSched - ok
13:30:59.0847 4344 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
13:30:59.0878 4344 elxstor - ok
13:30:59.0893 4344 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
13:30:59.0940 4344 ErrDev - ok
13:30:59.0987 4344 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
13:31:00.0065 4344 EventSystem - ok
13:31:00.0127 4344 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
13:31:00.0205 4344 exfat - ok
13:31:00.0221 4344 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
13:31:00.0283 4344 fastfat - ok
13:31:00.0330 4344 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
13:31:00.0393 4344 Fax - ok
13:31:00.0424 4344 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
13:31:00.0502 4344 fdc - ok
13:31:00.0533 4344 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
13:31:00.0595 4344 fdPHost - ok
13:31:00.0595 4344 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
13:31:00.0673 4344 FDResPub - ok
13:31:00.0673 4344 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
13:31:00.0705 4344 FileInfo - ok
13:31:00.0736 4344 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
13:31:00.0798 4344 Filetrace - ok
13:31:00.0814 4344 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
13:31:00.0892 4344 flpydisk - ok
13:31:00.0907 4344 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
13:31:00.0939 4344 FltMgr - ok
13:31:01.0126 4344 [ B3A5EC6B6B6673DB7E87C2BCDBDDC074 ] FontCache C:\Windows\system32\FntCache.dll
13:31:01.0204 4344 FontCache - ok
13:31:01.0313 4344 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
13:31:01.0360 4344 FontCache3.0.0.0 - ok
13:31:01.0375 4344 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
13:31:01.0391 4344 FsDepends - ok
13:31:01.0407 4344 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
13:31:01.0422 4344 Fs_Rec - ok
13:31:01.0485 4344 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
13:31:01.0516 4344 fvevol - ok
13:31:01.0563 4344 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
13:31:01.0594 4344 gagp30kx - ok
13:31:01.0656 4344 [ 185ADA973B5020655CEE342059A86CBB ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
13:31:01.0672 4344 GEARAspiWDM - ok
13:31:01.0765 4344 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
13:31:01.0843 4344 gpsvc - ok
13:31:01.0890 4344 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
13:31:01.0968 4344 hcw85cir - ok
13:31:01.0999 4344 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
13:31:02.0046 4344 HdAudAddService - ok
13:31:02.0062 4344 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
13:31:02.0124 4344 HDAudBus - ok
13:31:02.0155 4344 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
13:31:02.0187 4344 HidBatt - ok
13:31:02.0218 4344 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
13:31:02.0265 4344 HidBth - ok
13:31:02.0311 4344 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
13:31:02.0358 4344 HidIr - ok
13:31:02.0374 4344 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\System32\hidserv.dll
13:31:02.0436 4344 hidserv - ok
13:31:02.0499 4344 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
13:31:02.0514 4344 HidUsb - ok
13:31:02.0545 4344 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
13:31:02.0608 4344 hkmsvc - ok
13:31:02.0701 4344 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
13:31:02.0779 4344 HomeGroupListener - ok
13:31:02.0811 4344 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
13:31:02.0889 4344 HomeGroupProvider - ok
13:31:02.0951 4344 [ 0A3C6AA4A9FC38C20BA4EAC2C3351C05 ] hpqcxs08 C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
13:31:02.0967 4344 hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning
13:31:02.0967 4344 hpqcxs08 - detected UnsignedFile.Multi.Generic (1)
13:31:02.0982 4344 [ 99E8EEF42FE2F4AF29B08C3355DD7685 ] hpqddsvc C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
13:31:03.0013 4344 hpqddsvc ( UnsignedFile.Multi.Generic ) - warning
13:31:03.0013 4344 hpqddsvc - detected UnsignedFile.Multi.Generic (1)
13:31:03.0045 4344 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
13:31:03.0060 4344 HpSAMD - ok
13:31:03.0107 4344 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
13:31:03.0154 4344 HTTP - ok
13:31:03.0169 4344 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
13:31:03.0201 4344 hwpolicy - ok
13:31:03.0247 4344 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
13:31:03.0294 4344 i8042prt - ok
13:31:03.0341 4344 [ 7548066DF68A8A1A56B043359F915F37 ] IAANTMON C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
13:31:03.0357 4344 IAANTMON - ok
13:31:03.0388 4344 [ 3DB9F6F69B8BB99D241B15C7B52E3A3D ] iaNvStor C:\Windows\system32\DRIVERS\iaNvStor.sys
13:31:03.0403 4344 iaNvStor - ok
13:31:03.0435 4344 [ D483687EACE0C065EE772481A96E05F5 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
13:31:03.0450 4344 iaStor - ok
13:31:03.0559 4344 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
13:31:03.0606 4344 iaStorV - ok
13:31:04.0090 4344 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
13:31:04.0183 4344 idsvc - ok
13:31:04.0246 4344 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
13:31:04.0261 4344 iirsp - ok
13:31:04.0308 4344 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
13:31:04.0386 4344 IKEEXT - ok
13:31:04.0386 4344 [ 3B6BE2DA5993B1E38613976FAF4AC83E ] inspect C:\Windows\system32\DRIVERS\inspect.sys
13:31:04.0417 4344 inspect - ok
13:31:04.0573 4344 [ F2C17D2C3D70C389193D9954E375E5E3 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
13:31:04.0636 4344 IntcAzAudAddService - ok
13:31:04.0651 4344 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
13:31:04.0667 4344 intelide - ok
13:31:04.0698 4344 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
13:31:04.0761 4344 intelppm - ok
13:31:04.0792 4344 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
13:31:04.0854 4344 IPBusEnum - ok
13:31:04.0870 4344 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:31:04.0932 4344 IpFilterDriver - ok
13:31:04.0963 4344 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
13:31:05.0026 4344 iphlpsvc - ok
13:31:05.0057 4344 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
13:31:05.0088 4344 IPMIDRV - ok
13:31:05.0135 4344 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
13:31:05.0244 4344 IPNAT - ok
13:31:05.0291 4344 [ E8A39D41474BE42FD8830CED32932D6C ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
13:31:05.0307 4344 iPod Service - ok
13:31:05.0338 4344 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
13:31:05.0385 4344 IRENUM - ok
13:31:05.0416 4344 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
13:31:05.0447 4344 isapnp - ok
13:31:05.0494 4344 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
13:31:05.0525 4344 iScsiPrt - ok
13:31:05.0587 4344 [ EB6F7C665D7B5B4D79573B7CB950F2D4 ] itecir C:\Windows\system32\DRIVERS\itecir.sys
13:31:05.0634 4344 itecir ( UnsignedFile.Multi.Generic ) - warning
13:31:05.0634 4344 itecir - detected UnsignedFile.Multi.Generic (1)
13:31:05.0634 4344 [ C995C0E8B4503FAC38793BB0236AD246 ] JGOGO C:\Windows\system32\DRIVERS\JGOGO.sys
13:31:05.0681 4344 JGOGO - ok
13:31:05.0697 4344 [ F5BF72EABC7E160BB6624168AAD52DFE ] JRAID C:\Windows\system32\DRIVERS\jraid.sys
13:31:05.0728 4344 JRAID - ok
13:31:05.0743 4344 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
13:31:05.0775 4344 kbdclass - ok
13:31:05.0806 4344 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
13:31:05.0837 4344 kbdhid - ok
13:31:05.0853 4344 [ CC2A86D7BBF14977340DCA61BBCBA771 ] kbfiltr C:\Windows\system32\DRIVERS\kbfiltr.sys
13:31:05.0899 4344 kbfiltr - ok
13:31:05.0899 4344 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
13:31:05.0931 4344 KeyIso - ok
13:31:05.0931 4344 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
13:31:05.0962 4344 KSecDD - ok
13:31:05.0993 4344 [ 5FE1ABF1AF591A3458C9CF24ED9A4D35 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
13:31:06.0040 4344 KSecPkg - ok
13:31:06.0071 4344 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
13:31:06.0149 4344 KtmRm - ok
13:31:06.0196 4344 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\System32\srvsvc.dll
13:31:06.0258 4344 LanmanServer - ok
13:31:06.0274 4344 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:31:06.0336 4344 LanmanWorkstation - ok
13:31:06.0367 4344 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
13:31:06.0414 4344 lltdio - ok
13:31:06.0477 4344 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
13:31:06.0570 4344 lltdsvc - ok
13:31:06.0586 4344 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
13:31:06.0664 4344 lmhosts - ok
13:31:06.0695 4344 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
13:31:06.0726 4344 LSI_FC - ok
13:31:06.0757 4344 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
13:31:06.0773 4344 LSI_SAS - ok
13:31:06.0789 4344 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
13:31:06.0804 4344 LSI_SAS2 - ok
13:31:06.0867 4344 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
13:31:06.0913 4344 LSI_SCSI - ok
13:31:06.0913 4344 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
13:31:06.0976 4344 luafv - ok
13:31:07.0023 4344 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
13:31:07.0054 4344 Mcx2Svc - ok
13:31:07.0069 4344 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
13:31:07.0101 4344 megasas - ok
13:31:07.0147 4344 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
13:31:07.0163 4344 MegaSR - ok
13:31:07.0179 4344 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
13:31:07.0241 4344 MMCSS - ok
13:31:07.0257 4344 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
13:31:07.0303 4344 Modem - ok
13:31:07.0319 4344 [ 25483F9D590D5F00BD951E1181453EC2 ] MODEMCSA C:\Windows\system32\drivers\MODEMCSA.sys
13:31:07.0350 4344 MODEMCSA - ok
13:31:07.0381 4344 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
13:31:07.0413 4344 monitor - ok
13:31:07.0444 4344 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
13:31:07.0459 4344 mouclass - ok
13:31:07.0522 4344 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
13:31:07.0569 4344 mouhid - ok
13:31:07.0584 4344 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
13:31:07.0615 4344 mountmgr - ok
13:31:07.0725 4344 [ 9C3758018DED02F4AE53CCA1C5F084A2 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
13:31:07.0771 4344 MozillaMaintenance - ok
13:31:07.0818 4344 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
13:31:07.0865 4344 mpio - ok
13:31:07.0865 4344 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
13:31:07.0927 4344 mpsdrv - ok
13:31:08.0052 4344 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
13:31:08.0177 4344 MpsSvc - ok
13:31:08.0208 4344 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
13:31:08.0271 4344 MRxDAV - ok
13:31:08.0333 4344 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
13:31:08.0364 4344 mrxsmb - ok
13:31:08.0380 4344 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:31:08.0411 4344 mrxsmb10 - ok
13:31:08.0411 4344 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:31:08.0458 4344 mrxsmb20 - ok
13:31:08.0473 4344 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
13:31:08.0489 4344 msahci - ok
13:31:08.0520 4344 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
13:31:08.0567 4344 msdsm - ok
13:31:08.0661 4344 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
13:31:08.0739 4344 MSDTC - ok
13:31:08.0754 4344 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
13:31:08.0801 4344 Msfs - ok
13:31:08.0817 4344 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
13:31:08.0879 4344 mshidkmdf - ok
13:31:08.0879 4344 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
13:31:08.0910 4344 msisadrv - ok
13:31:08.0988 4344 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
13:31:09.0051 4344 MSiSCSI - ok
13:31:09.0066 4344 msiserver - ok
13:31:09.0097 4344 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
13:31:09.0144 4344 MSKSSRV - ok
13:31:09.0222 4344 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
13:31:09.0300 4344 MSPCLOCK - ok
13:31:09.0331 4344 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
13:31:09.0378 4344 MSPQM - ok
13:31:09.0409 4344 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
13:31:09.0456 4344 MsRPC - ok
13:31:09.0456 4344 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
13:31:09.0487 4344 mssmbios - ok
13:31:09.0519 4344 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
13:31:09.0550 4344 MSTEE - ok
13:31:09.0565 4344 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
13:31:09.0628 4344 MTConfig - ok
13:31:09.0643 4344 [ 97AFFA9D95FFE20EEE6229BC6BE166CF ] MTsensor C:\Windows\system32\DRIVERS\ATKACPI.sys
13:31:09.0659 4344 MTsensor - ok
13:31:09.0675 4344 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
13:31:09.0690 4344 Mup - ok
13:31:09.0784 4344 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
13:31:09.0893 4344 napagent - ok
13:31:09.0924 4344 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
13:31:09.0971 4344 NativeWifiP - ok
13:31:10.0018 4344 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
13:31:10.0049 4344 NDIS - ok
13:31:10.0065 4344 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
13:31:10.0143 4344 NdisCap - ok
13:31:10.0158 4344 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
13:31:10.0205 4344 NdisTapi - ok
13:31:10.0236 4344 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
13:31:10.0299 4344 Ndisuio - ok
13:31:10.0314 4344 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
13:31:10.0361 4344 NdisWan - ok
13:31:10.0377 4344 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
13:31:10.0423 4344 NDProxy - ok
13:31:10.0486 4344 [ A081CB6FB9A12668F233EB5414BE3A0E ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
13:31:10.0501 4344 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
13:31:10.0501 4344 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
13:31:10.0533 4344 [ 1352E1648213551923A0A822E441553C ] Netaapl C:\Windows\system32\DRIVERS\netaapl.sys
13:31:10.0564 4344 Netaapl - ok
13:31:10.0579 4344 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
13:31:10.0642 4344 NetBIOS - ok
13:31:10.0642 4344 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
13:31:10.0704 4344 NetBT - ok
13:31:10.0704 4344 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
13:31:10.0735 4344 Netlogon - ok
13:31:10.0782 4344 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
13:31:10.0845 4344 Netman - ok
13:31:10.0891 4344 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:10.0907 4344 NetMsmqActivator - ok
13:31:10.0923 4344 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:10.0938 4344 NetPipeActivator - ok
13:31:10.0985 4344 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
13:31:11.0094 4344 netprofm - ok
13:31:11.0125 4344 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:11.0141 4344 NetTcpActivator - ok
13:31:11.0157 4344 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:11.0188 4344 NetTcpPortSharing - ok
13:31:11.0359 4344 [ 58218EC6B61B1169CF54AAB0D00F5FE2 ] netw5v32 C:\Windows\system32\DRIVERS\netw5v32.sys
13:31:11.0593 4344 netw5v32 - ok
13:31:11.0625 4344 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
13:31:11.0656 4344 nfrd960 - ok
13:31:11.0671 4344 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\Windows\System32\nlasvc.dll
13:31:11.0718 4344 NlaSvc - ok
13:31:11.0734 4344 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
13:31:11.0781 4344 Npfs - ok
13:31:11.0796 4344 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
13:31:11.0859 4344 nsi - ok
13:31:11.0874 4344 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
13:31:11.0952 4344 nsiproxy - ok
13:31:12.0077 4344 [ 53F7546E8DAEFB3A0813F5E19C4613C9 ] NSNDIS5 C:\Windows\system32\NSNDIS5.SYS
13:31:12.0171 4344 NSNDIS5 ( UnsignedFile.Multi.Generic ) - warning
13:31:12.0171 4344 NSNDIS5 - detected UnsignedFile.Multi.Generic (1)
13:31:12.0467 4344 [ 0D87503986BB3DFED58E343FE39DDE13 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
13:31:12.0561 4344 Ntfs - ok
13:31:12.0561 4344 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
13:31:12.0623 4344 Null - ok
13:31:13.0091 4344 [ 0A1B502CBC8230DA74BEFBAADDB58916 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
13:31:13.0325 4344 nvlddmkm - ok
13:31:13.0419 4344 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
13:31:13.0465 4344 nvraid - ok
13:31:13.0512 4344 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
13:31:13.0528 4344 nvstor - ok
13:31:13.0949 4344 [ 0629259E3AF6BB0534FCECA208973404 ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
13:31:14.0043 4344 nvUpdatusService - ok
13:31:14.0058 4344 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
13:31:14.0090 4344 nv_agp - ok
13:31:14.0200 4344 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
13:31:14.0246 4344 odserv - ok
13:31:14.0262 4344 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
13:31:14.0356 4344 ohci1394 - ok
13:31:14.0402 4344 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:31:14.0434 4344 ose - ok
13:31:14.0527 4344 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
13:31:14.0605 4344 p2pimsvc - ok
13:31:14.0761 4344 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
13:31:14.0792 4344 p2psvc - ok
13:31:14.0808 4344 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
13:31:14.0870 4344 Parport - ok
13:31:14.0902 4344 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
13:31:14.0917 4344 partmgr - ok
13:31:14.0948 4344 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
13:31:15.0011 4344 Parvdm - ok
13:31:15.0058 4344 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
13:31:15.0104 4344 PcaSvc - ok
13:31:15.0136 4344 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
13:31:15.0167 4344 pci - ok
13:31:15.0182 4344 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
13:31:15.0198 4344 pciide - ok
13:31:15.0276 4344 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
13:31:15.0354 4344 pcmcia - ok
13:31:15.0385 4344 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
13:31:15.0401 4344 pcw - ok
13:31:15.0494 4344 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
13:31:15.0572 4344 PEAUTH - ok
13:31:16.0072 4344 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
13:31:16.0182 4344 pla - ok
13:31:16.0213 4344 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
13:31:16.0260 4344 PlugPlay - ok
13:31:16.0307 4344 [ 65BC271F337637731D3C71455AE1F476 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
13:31:16.0338 4344 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
13:31:16.0338 4344 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
13:31:16.0369 4344 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
13:31:16.0416 4344 PNRPAutoReg - ok
13:31:16.0509 4344 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
13:31:16.0572 4344 PNRPsvc - ok
13:31:16.0603 4344 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
13:31:16.0681 4344 PolicyAgent - ok
13:31:16.0697 4344 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
13:31:16.0759 4344 Power - ok
13:31:16.0775 4344 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
13:31:16.0868 4344 PptpMiniport - ok
13:31:16.0915 4344 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys
13:31:17.0009 4344 Processor - ok
13:31:17.0024 4344 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
13:31:17.0071 4344 ProfSvc - ok
13:31:17.0087 4344 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
13:31:17.0118 4344 ProtectedStorage - ok
13:31:17.0180 4344 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
13:31:17.0258 4344 Psched - ok
13:31:17.0367 4344 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
13:31:17.0523 4344 ql2300 - ok
13:31:17.0555 4344 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
13:31:17.0586 4344 ql40xx - ok
13:31:17.0617 4344 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
13:31:17.0711 4344 QWAVE - ok
13:31:17.0742 4344 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
13:31:17.0773 4344 QWAVEdrv - ok
13:31:17.0789 4344 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
13:31:17.0851 4344 RasAcd - ok
13:31:17.0882 4344 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
13:31:17.0929 4344 RasAgileVpn - ok
13:31:17.0960 4344 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
13:31:18.0007 4344 RasAuto - ok
13:31:18.0038 4344 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
13:31:18.0085 4344 Rasl2tp - ok
13:31:18.0116 4344 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
13:31:18.0194 4344 RasMan - ok
13:31:18.0210 4344 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
13:31:18.0257 4344 RasPppoe - ok
13:31:18.0288 4344 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
13:31:18.0366 4344 RasSstp - ok
13:31:18.0381 4344 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
13:31:18.0459 4344 rdbss - ok
13:31:18.0475 4344 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
13:31:18.0537 4344 rdpbus - ok
13:31:18.0600 4344 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
13:31:18.0647 4344 RDPCDD - ok
13:31:18.0662 4344 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
13:31:18.0725 4344 RDPENCDD - ok
13:31:18.0756 4344 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
13:31:18.0803 4344 RDPREFMP - ok
13:31:18.0896 4344 [ 65375DF758CA1872AB7EBBBA457FD5E6 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
13:31:18.0927 4344 RdpVideoMiniport - ok
13:31:19.0005 4344 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
13:31:19.0068 4344 RDPWD - ok
13:31:19.0130 4344 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
13:31:19.0177 4344 rdyboost - ok
13:31:19.0208 4344 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
13:31:19.0239 4344 RemoteAccess - ok
13:31:19.0271 4344 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
13:31:19.0349 4344 RemoteRegistry - ok
13:31:19.0395 4344 [ CB928D9E6DAF51879DD6BA8D02F01321 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
13:31:19.0442 4344 RFCOMM - ok
13:31:19.0473 4344 [ C35CA13D3627EBD9DD12A23CE781BC3D ] rimmptsk C:\Windows\system32\DRIVERS\rimmptsk.sys
13:31:19.0520 4344 rimmptsk - ok
13:31:19.0520 4344 [ C398BCA91216755B098679A8DA8A2300 ] rimsptsk C:\Windows\system32\DRIVERS\rimsptsk.sys
13:31:19.0551 4344 rimsptsk - ok
13:31:19.0567 4344 [ 2A2554CB24506E0A0508FC395C4A1B42 ] rismxdp C:\Windows\system32\DRIVERS\rixdptsk.sys
13:31:19.0614 4344 rismxdp - ok
13:31:19.0614 4344 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
13:31:19.0676 4344 RpcEptMapper - ok
13:31:19.0707 4344 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
13:31:19.0754 4344 RpcLocator - ok
13:31:19.0801 4344 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\System32\rpcss.dll
13:31:19.0863 4344 RpcSs - ok
13:31:19.0895 4344 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
13:31:19.0957 4344 rspndr - ok
13:31:19.0973 4344 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
13:31:20.0004 4344 SamSs - ok
13:31:20.0051 4344 [ 39763504067962108505BFF25F024345 ] SASDIFSV C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
13:31:20.0082 4344 SASDIFSV - ok
13:31:20.0097 4344 [ 77B9FC20084B48408AD3E87570EB4A85 ] SASKUTIL C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS
13:31:20.0129 4344 SASKUTIL - ok
13:31:20.0160 4344 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
13:31:20.0175 4344 sbp2port - ok
13:31:20.0222 4344 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
13:31:20.0285 4344 SCardSvr - ok
13:31:20.0316 4344 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
13:31:20.0378 4344 scfilter - ok
13:31:20.0519 4344 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
13:31:20.0597 4344 Schedule - ok
13:31:20.0628 4344 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
13:31:20.0659 4344 SCPolicySvc - ok
13:31:20.0690 4344 [ 0328BE1C7F1CBA23848179F8762E391C ] sdbus C:\Windows\system32\drivers\sdbus.sys
13:31:20.0721 4344 sdbus - ok
13:31:20.0768 4344 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
13:31:20.0815 4344 SDRSVC - ok
13:31:20.0831 4344 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
13:31:20.0909 4344 secdrv - ok
13:31:20.0924 4344 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
13:31:20.0971 4344 seclogon - ok
13:31:21.0002 4344 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\system32\sens.dll
13:31:21.0065 4344 SENS - ok
13:31:21.0096 4344 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
13:31:21.0143 4344 SensrSvc - ok
13:31:21.0189 4344 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
13:31:21.0252 4344 Serenum - ok
13:31:21.0283 4344 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
13:31:21.0330 4344 Serial - ok
13:31:21.0345 4344 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
13:31:21.0423 4344 sermouse - ok
13:31:21.0486 4344 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
13:31:21.0564 4344 SessionEnv - ok
13:31:21.0611 4344 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
13:31:21.0673 4344 sffdisk - ok
13:31:21.0704 4344 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
13:31:21.0735 4344 sffp_mmc - ok
13:31:21.0767 4344 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
13:31:21.0813 4344 sffp_sd - ok
13:31:21.0845 4344 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
13:31:21.0891 4344 sfloppy - ok
13:31:21.0938 4344 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
13:31:22.0001 4344 SharedAccess - ok
13:31:22.0032 4344 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:31:22.0094 4344 ShellHWDetection - ok
13:31:22.0141 4344 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
13:31:22.0172 4344 sisagp - ok
13:31:22.0219 4344 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
13:31:22.0250 4344 SiSRaid2 - ok
13:31:22.0266 4344 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
13:31:22.0313 4344 SiSRaid4 - ok
13:31:22.0344 4344 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
13:31:22.0422 4344 Smb - ok
13:31:22.0500 4344 [ 7E6628D18D30F14A56C0D9116310AB8A ] smserial C:\Windows\system32\DRIVERS\smserial.sys
13:31:22.0578 4344 smserial - ok
13:31:22.0625 4344 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
13:31:22.0656 4344 SNMPTRAP - ok
13:31:22.0765 4344 [ 0302BC619D4A723317E7F8EB0C362BD3 ] SNP2UVC C:\Windows\system32\DRIVERS\snp2uvc.sys
13:31:22.0859 4344 SNP2UVC - ok
13:31:22.0905 4344 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
13:31:22.0937 4344 spldr - ok
13:31:22.0968 4344 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
13:31:22.0999 4344 Spooler - ok
13:31:23.0498 4344 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
13:31:23.0685 4344 sppsvc - ok
13:31:23.0701 4344 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
13:31:23.0795 4344 sppuinotify - ok
13:31:23.0826 4344 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
13:31:23.0873 4344 srv - ok
13:31:23.0904 4344 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
13:31:23.0951 4344 srv2 - ok
13:31:23.0966 4344 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
13:31:24.0013 4344 srvnet - ok
13:31:24.0029 4344 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
13:31:24.0091 4344 SSDPSRV - ok
13:31:24.0107 4344 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
13:31:24.0153 4344 SstpSvc - ok
13:31:24.0200 4344 [ F0359F7CE712D69ACEF0886BDB4792ED ] Stereo Service C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
13:31:24.0231 4344 Stereo Service - ok
13:31:24.0309 4344 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
13:31:24.0341 4344 stexstor - ok
13:31:24.0387 4344 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
13:31:24.0512 4344 StiSvc - ok
13:31:24.0528 4344 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\drivers\swenum.sys
13:31:24.0559 4344 swenum - ok
13:31:24.0653 4344 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
13:31:24.0746 4344 swprv - ok
13:31:24.0840 4344 [ 6ED12875AC002C0F86B931F17E859327 ] symformcontrib C:\Program Files\Symform\Node Service\symformcontrib.exe
13:31:24.0871 4344 symformcontrib - ok
13:31:24.0918 4344 [ 64BE329AF4F913D891AB58A9C9C66141 ] symformsync C:\Program Files\Symform\Node Service\symformsync.exe
13:31:24.0949 4344 symformsync - ok
13:31:24.0996 4344 [ 6A5E351D1BDBF8E0ECE2C112CD79013F ] symformupdater C:\Program Files\Symform\Node Service\symformupdater.exe
13:31:25.0011 4344 symformupdater - ok
13:31:25.0043 4344 [ 55F6E55CC2430CA8713387106FA79817 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
13:31:25.0074 4344 SynTP - ok
13:31:25.0121 4344 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
13:31:25.0199 4344 SysMain - ok
13:31:25.0214 4344 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
13:31:25.0277 4344 TabletInputService - ok
13:31:25.0292 4344 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
13:31:25.0339 4344 TapiSrv - ok
13:31:25.0355 4344 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
13:31:25.0417 4344 TBS - ok
13:31:25.0479 4344 [ E23A56F843E2AEBBB209D0ACCA73C640 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
13:31:25.0542 4344 Tcpip - ok
13:31:25.0620 4344 [ E23A56F843E2AEBBB209D0ACCA73C640 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
13:31:25.0667 4344 TCPIP6 - ok
13:31:25.0682 4344 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
13:31:25.0698 4344 tcpipreg - ok
13:31:25.0729 4344 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
13:31:25.0760 4344 TDPIPE - ok
13:31:25.0791 4344 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
13:31:25.0854 4344 TDTCP - ok
13:31:25.0869 4344 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
13:31:25.0932 4344 tdx - ok
13:31:25.0932 4344 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\drivers\termdd.sys
13:31:25.0963 4344 TermDD - ok
13:31:26.0010 4344 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
13:31:26.0088 4344 TermService - ok
13:31:26.0088 4344 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
13:31:26.0119 4344 Themes - ok
13:31:26.0135 4344 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
13:31:26.0181 4344 THREADORDER - ok
13:31:26.0197 4344 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
13:31:26.0259 4344 TrkWks - ok
13:31:26.0353 4344 [ 81532F3628F8ACC80FD1264095960C3A ] TrueSight C:\Windows\system32\drivers\TrueSight.sys
13:31:26.0384 4344 TrueSight ( UnsignedFile.Multi.Generic ) - warning
13:31:26.0384 4344 TrueSight - detected UnsignedFile.Multi.Generic (1)
13:31:26.0415 4344 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:31:26.0478 4344 TrustedInstaller - ok
13:31:26.0509 4344 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
13:31:26.0556 4344 tssecsrv - ok
13:31:26.0587 4344 [ 9CE253214ACAA5A7D323327D2055EFAA ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
13:31:26.0618 4344 TsUsbFlt - ok
13:31:26.0649 4344 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
13:31:26.0696 4344 tunnel - ok
13:31:26.0743 4344 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
13:31:26.0759 4344 uagp35 - ok
13:31:26.0790 4344 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
13:31:26.0852 4344 udfs - ok
13:31:26.0883 4344 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
13:31:26.0977 4344 UI0Detect - ok
13:31:27.0024 4344 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
13:31:27.0055 4344 uliagpkx - ok
13:31:27.0071 4344 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\drivers\umbus.sys
13:31:27.0195 4344 umbus - ok
13:31:27.0258 4344 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
13:31:27.0336 4344 UmPass - ok
13:31:27.0414 4344 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
13:31:27.0507 4344 upnphost - ok
13:31:27.0585 4344 [ 8BF5D980CDCE35FB26F05047144BB57E ] USBAAPL C:\Windows\system32\Drivers\usbaapl.sys
13:31:27.0663 4344 USBAAPL - ok
13:31:27.0710 4344 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
13:31:27.0741 4344 usbccgp - ok
13:31:27.0773 4344 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys
13:31:27.0804 4344 usbcir - ok
13:31:27.0819 4344 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\drivers\usbehci.sys
13:31:27.0851 4344 usbehci - ok
13:31:27.0882 4344 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
13:31:27.0929 4344 usbhub - ok
13:31:27.0991 4344 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\drivers\usbohci.sys
13:31:28.0053 4344 usbohci - ok
13:31:28.0100 4344 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
13:31:28.0131 4344 usbprint - ok
13:31:28.0147 4344 usbscan - ok
13:31:28.0178 4344 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:31:28.0209 4344 USBSTOR - ok
13:31:28.0225 4344 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
13:31:28.0241 4344 usbuhci - ok
13:31:28.0287 4344 [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
13:31:28.0334 4344 usbvideo - ok
13:31:28.0350 4344 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
13:31:28.0381 4344 UxSms - ok
13:31:28.0397 4344 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
13:31:28.0428 4344 VaultSvc - ok
13:31:28.0459 4344 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
13:31:28.0490 4344 vdrvroot - ok
13:31:28.0537 4344 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
13:31:28.0584 4344 vds - ok
13:31:28.0615 4344 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
13:31:28.0662 4344 vga - ok
13:31:28.0662 4344 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
13:31:28.0709 4344 VgaSave - ok
13:31:28.0755 4344 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
13:31:28.0771 4344 vhdmp - ok
13:31:28.0802 4344 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
13:31:28.0833 4344 viaagp - ok
13:31:28.0865 4344 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys
13:31:28.0911 4344 ViaC7 - ok
13:31:28.0974 4344 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
13:31:29.0005 4344 viaide - ok
13:31:29.0021 4344 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
13:31:29.0036 4344 volmgr - ok
13:31:29.0114 4344 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
13:31:29.0145 4344 volmgrx - ok
13:31:29.0208 4344 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
13:31:29.0239 4344 volsnap - ok
13:31:29.0270 4344 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
13:31:29.0296 4344 vsmraid - ok
13:31:29.0485 4344 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
13:31:29.0594 4344 VSS - ok
13:31:29.0610 4344 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
13:31:29.0657 4344 vwifibus - ok
13:31:29.0688 4344 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
13:31:29.0750 4344 W32Time - ok
13:31:29.0781 4344 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
13:31:29.0813 4344 WacomPen - ok
13:31:29.0828 4344 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
13:31:29.0859 4344 WANARP - ok
13:31:29.0875 4344 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
13:31:29.0906 4344 Wanarpv6 - ok
13:31:29.0984 4344 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
13:31:30.0031 4344 WatAdminSvc - ok
13:31:30.0188 4344 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
13:31:30.0282 4344 wbengine - ok
13:31:30.0297 4344 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
13:31:30.0360 4344 WbioSrvc - ok
13:31:30.0406 4344 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
13:31:30.0469 4344 wcncsvc - ok
13:31:30.0484 4344 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:31:30.0516 4344 WcsPlugInService - ok
13:31:30.0547 4344 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys
13:31:30.0562 4344 Wd - ok
13:31:30.0609 4344 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
13:31:30.0656 4344 Wdf01000 - ok
13:31:30.0672 4344 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
13:31:30.0703 4344 WdiServiceHost - ok
13:31:30.0703 4344 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
13:31:30.0750 4344 WdiSystemHost - ok
13:31:30.0781 4344 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
13:31:30.0828 4344 WebClient - ok
13:31:30.0859 4344 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
13:31:30.0906 4344 Wecsvc - ok
13:31:30.0937 4344 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
13:31:30.0999 4344 wercplsupport - ok
13:31:31.0046 4344 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
13:31:31.0094 4344 WerSvc - ok
13:31:31.0125 4344 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
13:31:31.0172 4344 WfpLwf - ok
13:31:31.0219 4344 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
13:31:31.0250 4344 WIMMount - ok
13:31:31.0281 4344 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
13:31:31.0328 4344 WinDefend - ok
13:31:31.0343 4344 WinHttpAutoProxySvc - ok
13:31:31.0375 4344 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
13:31:31.0453 4344 Winmgmt - ok
13:31:31.0546 4344 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
13:31:31.0640 4344 WinRM - ok
13:31:31.0718 4344 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
13:31:31.0765 4344 WinUsb - ok
13:31:31.0811 4344 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
13:31:31.0967 4344 Wlansvc - ok
13:31:32.0061 4344 [ 0A70F4022EC2E14C159EFC4F69AA2477 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
13:31:32.0139 4344 wlidsvc - ok
13:31:32.0170 4344 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
13:31:32.0201 4344 WmiAcpi - ok
13:31:32.0233 4344 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
13:31:32.0264 4344 wmiApSrv - ok
13:31:32.0295 4344 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
13:31:32.0357 4344 WMPNetworkSvc - ok
13:31:32.0389 4344 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
13:31:32.0435 4344 WPCSvc - ok
13:31:32.0451 4344 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
13:31:32.0498 4344 WPDBusEnum - ok
13:31:32.0513 4344 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
13:31:32.0576 4344 ws2ifsl - ok
13:31:32.0591 4344 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\system32\wscsvc.dll
13:31:32.0654 4344 wscsvc - ok
13:31:32.0654 4344 WSearch - ok
13:31:32.0950 4344 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
13:31:33.0028 4344 wuauserv - ok
13:31:33.0044 4344 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
13:31:33.0075 4344 WudfPf - ok
13:31:33.0106 4344 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
13:31:33.0153 4344 WUDFRd - ok
13:31:33.0184 4344 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
13:31:33.0215 4344 wudfsvc - ok
13:31:33.0309 4344 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
13:31:33.0371 4344 WwanSvc - ok
13:31:33.0418 4344 [ 30B73EB97218A16CBC6DE535782A1B35 ] yukonw7 C:\Windows\system32\DRIVERS\yk62x86.sys
13:31:33.0481 4344 yukonw7 - ok
13:31:33.0574 4344 ================ Scan global ===============================
13:31:33.0574 4344 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
13:31:33.0590 4344 [ D70FE45855CAD4C0C6B1C1426ABDEBA9 ] C:\Windows\system32\winsrv.dll
13:31:33.0605 4344 [ D70FE45855CAD4C0C6B1C1426ABDEBA9 ] C:\Windows\system32\winsrv.dll
13:31:33.0621 4344 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
13:31:33.0637 4344 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
13:31:33.0652 4344 [Global] - ok
13:31:33.0652 4344 ================ Scan MBR ==================================
13:31:33.0668 4344 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
13:31:33.0871 4344 \Device\Harddisk0\DR0 - ok
13:31:33.0871 4344 ================ Scan VBR ==================================
13:31:33.0871 4344 [ C7209228F0B028EDB18ABEE68FB01AF0 ] \Device\Harddisk0\DR0\Partition1
13:31:33.0886 4344 \Device\Harddisk0\DR0\Partition1 - ok
13:31:33.0886 4344 [ 96CDAD90CC7898C118D40F0E9BA259CD ] \Device\Harddisk0\DR0\Partition2
13:31:33.0886 4344 \Device\Harddisk0\DR0\Partition2 - ok
13:31:33.0886 4344 ============================================================
13:31:33.0886 4344 Scan finished
13:31:33.0886 4344 ============================================================
13:31:33.0902 4128 Detected object count: 8
13:31:33.0902 4128 Actual detected object count: 8
13:31:41.0360 4128 ASLDRService ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 ASLDRService ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 hpqddsvc ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 hpqddsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 itecir ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 itecir ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 NSNDIS5 ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 NSNDIS5 ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0360 4128 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0360 4128 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:41.0375 4128 TrueSight ( UnsignedFile.Multi.Generic ) - skipped by user
13:31:41.0375 4128 TrueSight ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:31:43.0622 2280 Deinitialize success

Re: prosím o preventivku, děkuju

Napsal: 03 úno 2013 13:48
od Márty84
Zadnou nevidim, chci proverit to MBR

:arrow: Stahnete MBRScan http://eric71.geekstogo.com/tools/MbrScan.exe , ulozte ho na plochu a spustte jako spravce.
Kliknete na Report
Za chvili vyskoci log s nazvem MBRScan.txt, ten mi sem zkopirujte.