Stránka 1 z 3

Proces lvhidsvc.exe vytěžuje procesor, prosím o pomoc o rána

Napsal: 19 dub 2015 08:06
od Hop
Dobrý den, prosím o kontrolu logu a návod na odstranění procesu lvhidsvc.exe z pc. Dokud ho ručně neodstraním, vytěžuje pc na 100%. Po odstranění jede pc normálně. Děkuji.
Log:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Rodiče at 2015-04-19 08:55:44
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 2 GB (1%) free of 170 GB
Total RAM: 3070 MB (56% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:56:09, on 19.4.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\RtHDVCpl.exe
C:\Program Files\Seznam\Postak\Postak.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Rodiče\Downloads\RSIT.exe
C:\Program Files\trend micro\Rodiče.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/?pc=AVBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.papeweb.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=c:\windows\system32\userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: (no name) - {40498DEF-8B13-44A6-A1A7-69DFE36E9210} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~3\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~1\MICROS~3\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll
O3 - Toolbar: (no name) - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - (no file)
O3 - Toolbar: (no name) - {CFBC2741-0C1F-11D6-9224-004F490BED09} - (no file)
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [SMail] "C:\Program Files\Seznam\Postak\Postak.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [Google Update] "C:\Users\Rodiče\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~3\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube Download - C:\Users\Rodiče\AppData\Roaming\DVDVideoSoftIEHelpers\freeytvdownloader.htm
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Rodiče\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~3\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://appldnld.apple.com.edgesuite.net ... plugin.cab
O16 - DPF: {461A37E7-17B3-40E3-B6BB-7CAEC732C9E4} - https://maxibps.postovnisporitelna.cz/C ... Enroll.dll
O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.cz/OnlineScanner.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivX Web Player Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} - http://h20614.www2.hp.com/ediags/gmd/In ... ct119b.cab
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: CopySafe Helper Service (CSHelper) - Unknown owner - C:\Program Files\Common Files\ArtistScope\CSHelper32.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: Služba Google Update (gupdate1ca24ec3816786f) (gupdate1ca24ec3816786f) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP DS Service - Hewlett-Packard Company - C:\Program Files\HP\HPBDSService\HPBDSService.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Remote HID Service (LvHidSvc) - Animation Technologies Inc. - C:\Windows\system32\lvhidsvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: PCLEPCI - Pinnacle Systems GmbH - C:\Windows\system32\drivers\pclepci.sys
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe

--
End of file - 10507 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Ad-Aware Update (Weekly).job - C:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe

Re: Proces lvhidsvc.exe vytěžuje procesor

Napsal: 19 dub 2015 08:36
od Hop
posílám log ještě jednou se spuštěným procesem:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Rodiče at 2015-04-19 09:26:19
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 2 GB (1%) free of 170 GB
Total RAM: 3070 MB (61% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:29:12, on 19.4.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Seznam\Postak\Postak.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Users\Rodiče\Downloads\RSIT.exe
C:\Program Files\trend micro\Rodiče.exe
C:\Windows\system32\wuauclt.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/?pc=AVBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.papeweb.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=c:\windows\system32\userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: (no name) - {40498DEF-8B13-44A6-A1A7-69DFE36E9210} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~3\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~1\MICROS~3\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll
O3 - Toolbar: (no name) - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - (no file)
O3 - Toolbar: (no name) - {CFBC2741-0C1F-11D6-9224-004F490BED09} - (no file)
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [SMail] "C:\Program Files\Seznam\Postak\Postak.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [Google Update] "C:\Users\Rodiče\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~3\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube Download - C:\Users\Rodiče\AppData\Roaming\DVDVideoSoftIEHelpers\freeytvdownloader.htm
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Rodiče\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~3\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://appldnld.apple.com.edgesuite.net ... plugin.cab
O16 - DPF: {461A37E7-17B3-40E3-B6BB-7CAEC732C9E4} - https://maxibps.postovnisporitelna.cz/C ... Enroll.dll
O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.cz/OnlineScanner.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivX Web Player Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} - http://h20614.www2.hp.com/ediags/gmd/In ... ct119b.cab
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: CopySafe Helper Service (CSHelper) - Unknown owner - C:\Program Files\Common Files\ArtistScope\CSHelper32.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: Služba Google Update (gupdate1ca24ec3816786f) (gupdate1ca24ec3816786f) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP DS Service - Hewlett-Packard Company - C:\Program Files\HP\HPBDSService\HPBDSService.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Remote HID Service (LvHidSvc) - Animation Technologies Inc. - C:\Windows\system32\lvhidsvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: PCLEPCI - Pinnacle Systems GmbH - C:\Windows\system32\drivers\pclepci.sys
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe

--
End of file - 10201 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Ad-Aware Update (Weekly).job - C:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe

Re: Proces lvhidsvc.exe vytěžuje procesor, prosím o pomoc o

Napsal: 19 dub 2015 21:01
od altrok
Zdravim :bye:


:arrow: Uvolnete misto na disku - system se dusi!

:arrow: Log neni kompletni, takze Vas poprosim o log z FRST, kdyz onen proces bude aktivni http://forum.viry.cz/viewtopic.php?f=13&t=133100

Re: Proces lvhidsvc.exe vytěžuje procesor, prosím o pomoc o

Napsal: 19 dub 2015 22:02
od Hop
Dobrý večer, děkuji Vám za Vaši ochotu a čas.
Posílám log FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 19-04-2015 01
Ran by Rodiče (administrator) on CERNY on 19-04-2015 22:38:24
Running from C:\Users\Rodiče\Desktop
Loaded Profiles: Rodiče (Available profiles: Rodiče & Lenka & NFSU)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(ArtistScope Pty Ltd) C:\Program Files\Common Files\ArtistScope\CSHelper32.exe
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
(Hewlett-Packard Company) C:\Program Files\HP\HPBDSService\HPBDSService.exe
(HP) C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
(Microsoft Corporation) C:\Windows\System32\inetsrv\inetinfo.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Animation Technologies Inc.) C:\Windows\System32\lvhidsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Microsoft Corporation) C:\Windows\System32\TCPSVCS.EXE
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Seznam.cz a.s.) C:\Program Files\Seznam\Postak\Postak.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Google Inc.) C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Google Inc.) C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Rodiče\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SMail] => C:\Program Files\Seznam\Postak\Postak.exe [453936 2008-02-21] (Seznam.cz a.s.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5512912 2015-04-07] (Avast Software s.r.o.)
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\Run: [Google Update] => C:\Users\Rodiče\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-07-17] (Google Inc.)
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [31346784 2015-02-26] (Skype Technologies S.A.)
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5489944 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Mystify.scr [221184 2010-11-20] (Microsoft Corporation)
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...0c966feabec1\InprocServer32: [Default-shell32] ATTENTION! ====> ZeroAccess?
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...409d6c4515e9\InprocServer32: [Default-shell32] <==== ATTENTION!
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\InprocServer32: [Default-pngfilt] <==== ATTENTION!

HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...A8F59079A8D5}\localserver32: <==== ATTENTION!
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-04-07] (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [GDriveBlacklistedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedEditOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedViewOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
ShellIconOverlayIdentifiers: [GDriveSyncedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
ShellIconOverlayIdentifiers: [GDriveSyncingOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
GroupPolicyUsers\S-1-5-21-3533039139-1052968357-1368303399-1003\User: Group Policy restriction detected <======= ATTENTION
GroupPolicyUsers\S-1-5-21-3533039139-1052968357-1368303399-1001\User: Group Policy restriction detected <======= ATTENTION
CHR HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/?pc=AVBR
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.papeweb.cz/
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... DF&pc=AVBR
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {0EBFFFDA-ABB1-49B2-A89B-594D808AC84F} URL = http://download.seznam.cz/vyhledavani/o ... rceid=IE_5
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} URL = http://www.crawler.com/search/dispatche ... tbid=60327
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = http://blekko.com/?source=c3348dd4&tbp= ... earchTerms}
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {41FF3879-BCB7-4B39-B274-FEE2EC2BB8F5} URL = http://www.google.cz/search?q={searchTe ... 1I7GPEA_cs
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = http://www.icq.com/search/results.php?q ... &ch_id=osd
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {B7B664DF-3AF9-4C8E-8148-F42BB7831D27} URL = http://www.ask.com/web?o=15710&l=dis&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = http://mystart.incredimail.com/?search= ... m2_test_v2
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {DECA3892-BA8F-44b8-A993-A466AD694AE4} URL = http://search.yahoo.com/search?p={searc ... r=chr-divx
BHO: No Name -> {02478D38-C3F9-4efb-9B51-7695ECA05670} -> No File
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-03-31] (Microsoft Corporation)
BHO: No Name -> {40498DEF-8B13-44A6-A1A7-69DFE36E9210} -> No File
BHO: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-05-14] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-01-28] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-07] (Avast Software s.r.o.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03] (Google Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-03-18] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-28] (Oracle Corporation)
Toolbar: HKLM - No Name - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - No File
Toolbar: HKLM - No Name - {CFBC2741-0C1F-11D6-9224-004F490BED09} - No File
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03] (Google Inc.)
Toolbar: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03] (Google Inc.)
Toolbar: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> No Name - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No File
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.apple.com.edgesuite.net ... plugin.cab
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} http://download.microsoft.com/download/ ... ontrol.cab
DPF: {461A37E7-17B3-40E3-B6BB-7CAEC732C9E4} https://maxibps.postovnisporitelna.cz/C ... Enroll.dll
DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} http://www.eset.cz/OnlineScanner.cab
DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} http://download.divx.com/player/DivXBrowserPlugin.cab
DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20614.www2.hp.com/ediags/gmd/In ... ct119b.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl ... rashim.cab
DPF: {CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.10.1

FireFox:
========
FF ProfilePath: C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606
FF DefaultSearchEngine: Google (avast)
FF DefaultSearchUrl: https://www.google.com/search/?trackid=sp-006
FF SearchEngineOrder.1: Google (avast)
FF SelectedSearchEngine: Google (avast)
FF Homepage: hxxp://www.papeweb.cz
FF Keyword.URL: https://www.google.com/search/?trackid=sp-006
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-15] ()
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll No File
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.)
FF Plugin: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files\DivX\DivX Web Player\npdivx32.dll [2014-06-03] (DivX, LLC)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @google.com/npPicasa2,version=2.0.0 -> C:\Program Files\Picasa2\npPicasa2.dll [2008-08-21] (Google, Inc.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Picasa2\npPicasa3.dll [2013-04-02] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-28] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-28] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-03-31] (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.3 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~3\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-10-03] (Google)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3533039139-1052968357-1368303399-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Rodiče\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin HKU\S-1-5-21-3533039139-1052968357-1368303399-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Rodiče\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-03-31] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2015-01-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2015-01-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2015-01-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2015-01-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2015-01-06] (Apple Inc.)
FF SearchPlugin: C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\searchplugins\google-avast.xml [2014-12-15]
FF Extension: No Name - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\artur.dubovoy@gmail.com [2015-04-10]
FF Extension: gTranslator - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\jyboy.yy@gmail.com [2014-01-03]
FF Extension: ColorZilla - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\{6AC85730-7D0F-4de0-B3FA-21142DD85326} [2014-01-03]
FF Extension: Firebug - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\firebug@software.joehewitt.com.xpi [2014-01-03]
FF Extension: Simple Timer - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\simpletimer@grbradt.org.xpi [2014-01-03]
FF Extension: Google Translator for Firefox - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\translator@zoli.bod.xpi [2014-05-11]
FF Extension: View in Office Online Viewer - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\viewinofficeapps@huhsiaotao.xpi [2014-01-03]
FF Extension: No Name - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\{5A170DD3-63CA-4c58-93B7-DE9FF536C2FF}.xpi [2014-01-03]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: No Name - C:\Program Files\AVAST Software\Avast\WebRep\FF [2011-11-20]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF HKLM\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] - C:\Program Files\Common Files\DVDVideoSoft\plugins\ff

Chrome:
=======
CHR HomePage: Default -> hxxp://www.papeweb.cz/
CHR StartupUrls: Default -> "hxxp://www.papeweb.cz/"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-05-07]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2013-11-22]
CHR Extension: (Avast Online Security) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-05-16]
CHR Extension: (Color Picker Tools) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijgamcmigplkkdkhfcjmpjojlklnkgop [2014-01-21]
CHR Extension: (Color Picker) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcmgligingjhdnhdhgepemlckgcgmgaj [2014-08-18]
CHR Extension: (Google Wallet) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2013-11-22]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-04-07]
CHR HKLM\...\Chrome\Extension: [ocphobfcfafpclibolpjdafgaffkaoci] - C:\Users\Rodiče\AppData\Local\GamePlayLabs Plugin\gplplugin.crx [2011-03-15]
CHR HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\RODIE~1\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2013-05-03]
StartMenuInternet: Google Chrome - C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-04-07] (Avast Software s.r.o.)
S3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3205216 2015-04-07] (Avast Software)
R2 CSHelper; C:\Program Files\Common Files\ArtistScope\CSHelper32.exe [236536 2012-09-26] (ArtistScope Pty Ltd)
R2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [387616 2009-07-23] ()
S2 gupdate1ca24ec3816786f; C:\Program Files\Google\Update\GoogleUpdate.exe [107912 2014-10-30] (Google Inc.)
R2 HP DS Service; C:\Program Files\HP\HPBDSService\HPBDSService.exe [13824 2010-10-27] (Hewlett-Packard Company) [File not signed]
R2 HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [145920 2010-10-27] (HP) [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 IISADMIN; C:\Windows\system32\inetsrv\inetinfo.exe [13824 2009-07-14] (Microsoft Corporation)
R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728 2010-06-16] (Hewlett-Packard Company) [File not signed]
R2 LvHidSvc; C:\Windows\system32\lvhidsvc.exe [32256 2003-10-31] (Animation Technologies Inc.) [File not signed]
R2 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [178720 2009-07-23] ()
S2 PCLEPCI; C:\Windows\system32\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24144 2015-04-07] ()
R1 aswKbd; C:\Windows\system32\Drivers\aswKbd.sys [20624 2012-10-31] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [73440 2015-04-07] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-04-07] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49904 2015-04-07] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [788272 2015-04-07] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427736 2015-04-07] (Avast Software s.r.o.)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [106912 2015-04-07] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [208024 2015-04-07] ()
S3 AVHybrid; C:\Windows\System32\DRIVERS\AVHybrid.sys [999680 2005-04-29] ()
R1 CSDriver; C:\Program Files\Common Files\ArtistScope\CSDriver32.sys [38328 2012-09-26] ()
S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-09-23] (LogMeIn, Inc.)
S3 HPFXBULKLEDM; C:\Windows\System32\drivers\hppcbulkio.sys [20504 2011-10-10] (Hewlett Packard)
R3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus.sys [171520 2007-01-04] (Pinnacle Systems GmbH)
R2 npf; C:\Windows\system32\drivers\npf.sys [50704 2010-03-22] (CACE Technologies, Inc.)
R1 SCDEmu; C:\Windows\system32\Drivers\SCDEmu.sys [56572 2008-11-02] (PowerISO Computing, Inc.) [File not signed]
S3 tap0801; C:\Windows\System32\DRIVERS\tap0801.sys [26624 2006-10-01] (The OpenVPN Project) [File not signed]
R2 tifsfilter; C:\Windows\System32\DRIVERS\tifsfilt.sys [44384 2008-03-23] (Acronis)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220240 2015-04-07] (Avast Software)
S3 vncmirror; C:\Windows\System32\DRIVERS\vncmirror.sys [4608 2014-06-03] (RealVNC Ltd.)
S3 xxxHpSAMD; C:\Windows\system32\drivers\HpSAMD.sys [67152 2009-07-14] (Hewlett-Packard Company)
S3 cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x32.sys [X]
S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x32.sys [X]
U5 FontCache3.0.0.0; C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [42856 2009-06-10] (Microsoft Corporation)
S3 TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-19 22:38 - 2015-04-19 22:40 - 00026064 _____ () C:\Users\Rodiče\Desktop\FRST.txt
2015-04-19 22:37 - 2015-04-19 22:38 - 00000000 ____D () C:\FRST
2015-04-19 22:36 - 2015-04-19 22:36 - 00112640 _____ (forum.viry.cz) C:\Users\Rodiče\Desktop\FRSTLauncher.exe
2015-04-19 22:14 - 2015-04-19 22:14 - 01137664 _____ (Farbar) C:\Users\Rodiče\Desktop\FRST.exe
2015-04-19 09:21 - 2015-04-19 22:21 - 00050952 _____ () C:\Windows\setupact.log
2015-04-19 09:21 - 2015-04-19 09:21 - 00000000 _____ () C:\Windows\setuperr.log
2015-04-19 08:55 - 2015-04-19 09:26 - 00000000 ____D () C:\Program Files\trend micro
2015-04-19 08:55 - 2015-04-19 08:56 - 00000000 ____D () C:\rsit
2015-04-19 08:55 - 2015-04-19 08:55 - 01107968 _____ () C:\Users\Rodiče\Downloads\RSIT.exe
2015-04-15 14:02 - 2015-03-23 05:06 - 00860160 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00331264 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-04-15 14:02 - 2015-03-23 04:59 - 00896000 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-04-15 14:02 - 2015-03-04 06:16 - 00249784 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-04-15 14:02 - 2015-03-04 06:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-04-15 14:01 - 2015-04-02 01:49 - 00342704 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-04-15 14:01 - 2015-03-17 07:01 - 03976632 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-04-15 14:01 - 2015-03-17 07:01 - 03920824 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-04-15 14:01 - 2015-03-17 07:01 - 00137656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-04-15 14:01 - 2015-03-17 07:01 - 00067512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-04-15 14:01 - 2015-03-17 06:59 - 01306112 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-04-15 14:01 - 2015-03-17 06:56 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-04-15 14:01 - 2015-03-17 06:56 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-04-15 14:01 - 2015-03-17 06:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-04-15 14:01 - 2015-03-17 06:56 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-04-15 14:01 - 2015-03-17 06:56 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-04-15 14:01 - 2015-03-17 06:56 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-04-15 14:01 - 2015-03-17 06:53 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-04-15 14:01 - 2015-03-17 06:53 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-04-15 14:01 - 2015-03-17 06:50 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-04-15 14:01 - 2015-03-17 06:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-04-15 14:01 - 2015-03-13 05:42 - 19695616 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-04-15 14:01 - 2015-03-13 05:42 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-04-15 14:01 - 2015-03-13 05:42 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-04-15 14:01 - 2015-03-13 05:28 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-04-15 14:01 - 2015-03-13 05:28 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-04-15 14:01 - 2015-03-13 05:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-04-15 14:01 - 2015-03-13 05:27 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-04-15 14:01 - 2015-03-13 05:26 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-04-15 14:01 - 2015-03-13 05:22 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-04-15 14:01 - 2015-03-13 05:20 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-04-15 14:01 - 2015-03-13 05:20 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-04-15 14:01 - 2015-03-13 05:17 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-04-15 14:01 - 2015-03-13 05:16 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-04-15 14:01 - 2015-03-13 05:16 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-04-15 14:01 - 2015-03-13 05:15 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-04-15 14:01 - 2015-03-13 05:09 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-15 14:01 - 2015-03-13 05:06 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-04-15 14:01 - 2015-03-13 05:01 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-15 14:01 - 2015-03-13 04:57 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-04-15 14:01 - 2015-03-13 04:56 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-04-15 14:01 - 2015-03-13 04:54 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-04-15 14:01 - 2015-03-13 04:49 - 04305408 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-04-15 14:01 - 2015-03-13 04:44 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-04-15 14:01 - 2015-03-13 04:43 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-04-15 14:01 - 2015-03-13 04:43 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-04-15 14:01 - 2015-03-13 04:42 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-04-15 14:01 - 2015-03-13 04:34 - 12825600 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-04-15 14:01 - 2015-03-13 04:20 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-04-15 14:01 - 2015-03-13 04:16 - 01311232 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-04-15 14:01 - 2015-03-13 04:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-04-15 14:01 - 2015-03-05 06:06 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 03088384 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 02020864 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-04-15 14:00 - 2015-03-25 05:00 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-04-15 14:00 - 2015-03-25 05:00 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-04-15 13:59 - 2015-03-10 05:08 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-04-15 13:59 - 2015-03-10 05:05 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-04-15 13:59 - 2015-02-25 05:03 - 00514560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-04-10 21:34 - 2015-04-10 21:34 - 00000000 ____D () C:\Users\Rodiče\Documents\Vlastní šablony Office
2015-04-07 13:32 - 2015-04-07 13:31 - 00291312 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe
2015-04-07 13:31 - 2015-04-07 13:31 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr
2015-04-06 10:41 - 2015-04-06 10:41 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-04-06 07:02 - 2015-04-16 21:50 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-04-06 06:56 - 2015-04-06 06:59 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2015-04-06 06:48 - 2015-04-06 06:48 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-04-05 21:01 - 2015-04-05 21:01 - 00001917 _____ () C:\Users\Public\Desktop\FileZilla Client.lnk
2015-04-05 21:00 - 2015-04-05 21:00 - 06196576 _____ (Tim Kosse) C:\Users\Rodiče\Downloads\FileZilla_3.10.3_win32-setup.exe
2015-04-04 22:44 - 2015-04-04 22:45 - 00000000 ___SD () C:\Windows\system32\GWX
2015-03-23 19:18 - 2015-03-23 19:18 - 00000000 ____D () C:\Users\Rodiče\Tracing
2015-03-22 09:50 - 2015-03-22 09:50 - 01079296 _____ (Uniblue Systems Limited ) C:\Users\Rodiče\Downloads\pcmechanicpm.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-19 22:50 - 2008-02-29 09:13 - 00000418 ____H () C:\Windows\Tasks\User_Feed_Synchronization-{FF976561-0582-47FC-8BE5-0AEA2EC306C5}.job
2015-04-19 22:48 - 2008-02-25 22:38 - 00000000 ____D () C:\Users\Rodiče\AppData\Roaming\Skype
2015-04-19 22:36 - 2012-09-07 16:59 - 00000966 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3533039139-1052968357-1368303399-1000UA.job
2015-04-19 22:32 - 2012-09-28 13:48 - 00018544 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-19 22:32 - 2012-09-28 13:48 - 00018544 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-19 22:32 - 2009-08-24 21:03 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-19 22:30 - 2008-03-15 23:42 - 00000000 ____D () C:\bakalari
2015-04-19 22:27 - 2012-10-17 01:09 - 01389972 _____ () C:\Windows\WindowsUpdate.log
2015-04-19 22:27 - 2008-03-15 23:59 - 00000000 ____D () C:\TEMP
2015-04-19 22:23 - 2009-08-24 21:03 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-19 22:23 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\inetsrv
2015-04-19 22:21 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-19 21:57 - 2012-04-03 08:33 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-04-19 12:36 - 2012-09-07 16:59 - 00000914 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3533039139-1052968357-1368303399-1000Core.job
2015-04-19 11:05 - 2010-12-31 22:50 - 00000972 _____ () C:\Windows\Tasks\Google Software Updater.job
2015-04-19 09:34 - 2015-03-10 18:34 - 00007628 _____ () C:\Users\Rodiče\AppData\Local\Resmon.ResmonCfg
2015-04-19 08:46 - 2012-10-17 02:41 - 00175208 _____ () C:\Users\Rodiče\AppData\Local\GDIPFONTCACHEV1.DAT
2015-04-18 21:55 - 2012-09-12 11:40 - 00000000 ___RD () C:\Users\Rodiče\Desktop\__ K TISKU __
2015-04-18 20:26 - 2011-04-18 13:43 - 00000000 ____D () C:\Users\Rodiče\Desktop\MÁMA
2015-04-18 20:01 - 2013-04-15 16:36 - 00000000 ___RD () C:\Users\Rodiče\Desktop\___pošta___
2015-04-18 10:01 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\AppCompat
2015-04-18 07:56 - 2008-11-08 21:50 - 00000000 ____D () C:\Program Files\Opera
2015-04-17 16:16 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2015-04-17 13:20 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\NDF
2015-04-16 21:49 - 2008-02-24 22:57 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-04-16 14:19 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-04-16 13:11 - 2014-12-11 09:26 - 00000000 ____D () C:\Windows\system32\appraiser
2015-04-16 13:11 - 2014-05-06 23:38 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-04-15 23:16 - 2006-11-02 12:23 - 00000382 _____ () C:\Windows\win.ini
2015-04-15 23:13 - 2013-08-16 22:29 - 00000000 ____D () C:\Windows\system32\MRT
2015-04-15 22:52 - 2012-10-26 07:43 - 125832184 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-04-15 22:49 - 2010-11-20 23:01 - 01688714 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-15 19:57 - 2012-04-03 08:33 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-04-15 19:57 - 2011-06-13 18:03 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-04-13 22:04 - 2013-07-10 20:49 - 00000000 ____D () C:\Users\Rodiče\AppData\Roaming\FileZilla
2015-04-13 19:12 - 2010-11-17 22:53 - 00000000 ____D () C:\Users\Rodiče\Desktop\ONDRA
2015-04-08 12:45 - 2012-04-25 22:29 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-04-07 13:32 - 2014-06-23 06:41 - 00024144 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2015-04-07 13:32 - 2014-01-02 19:36 - 00106912 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswStm.sys
2015-04-07 13:32 - 2013-03-14 07:27 - 00208024 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2015-04-07 13:32 - 2013-03-14 07:27 - 00049904 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2015-04-07 13:32 - 2012-11-04 21:41 - 00081728 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr2.sys
2015-04-07 13:32 - 2008-04-01 16:46 - 00427736 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSP.sys
2015-04-07 13:32 - 2008-02-24 23:37 - 00073440 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys
2015-04-07 13:30 - 2011-11-20 09:47 - 00788272 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys
2015-04-06 07:15 - 2009-07-14 06:33 - 00638088 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-04-06 07:10 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-04-06 07:08 - 2011-04-12 03:46 - 00000000 ____D () C:\Windows\ShellNew
2015-04-06 07:07 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\System
2015-04-06 07:00 - 2008-02-24 22:59 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-04-06 06:59 - 2008-02-24 22:59 - 00000000 ____D () C:\Program Files\Microsoft.NET
2015-04-06 06:56 - 2008-02-24 22:57 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-04-05 21:01 - 2013-07-10 20:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2015-04-05 21:01 - 2013-07-10 20:49 - 00000000 ____D () C:\Program Files\FileZilla FTP Client
2015-04-04 21:34 - 2009-05-03 18:59 - 00647680 ___SH () C:\Users\Rodiče\Desktop\Thumbs.db
2015-03-31 15:47 - 2014-08-21 19:31 - 00000000 ____D () C:\Users\Rodiče\AppData\Local\Adobe
2015-03-29 22:35 - 2010-09-20 20:12 - 00000000 ____D () C:\Users\Rodiče\Desktop\LENKA
2015-03-23 19:18 - 2014-09-29 07:28 - 00000000 ___RD () C:\Program Files\Skype
2015-03-23 19:18 - 2012-10-16 23:46 - 00000000 ____D () C:\Users\Rodiče
2015-03-23 19:18 - 2008-02-25 22:37 - 00000000 ____D () C:\ProgramData\Skype

==================== Files in the root of some directories =======

2008-02-24 23:47 - 2006-03-20 16:37 - 5689344 _____ (Gabest) C:\Program Files\mplayerc.exe
2008-03-23 16:40 - 2008-03-23 16:42 - 0000140 _____ () C:\Users\Rodiče\AppData\Roaming\burnaware.ini
2012-04-17 22:15 - 2012-05-21 15:58 - 0000128 _____ () C:\Users\Rodiče\AppData\Roaming\Earthquakes Meter_Settings.ini
2008-11-25 21:18 - 2008-11-25 22:34 - 0087608 _____ () C:\Users\Rodiče\AppData\Roaming\inst.exe
2008-11-25 21:18 - 2008-11-25 22:34 - 0007887 _____ () C:\Users\Rodiče\AppData\Roaming\pcouffin.cat
2008-11-25 21:18 - 2008-11-25 22:34 - 0001144 _____ () C:\Users\Rodiče\AppData\Roaming\pcouffin.inf
2008-11-25 21:19 - 2008-11-25 22:34 - 0000033 _____ () C:\Users\Rodiče\AppData\Roaming\pcouffin.log
2008-11-25 21:18 - 2008-11-25 22:34 - 0047360 _____ (VSO Software) C:\Users\Rodiče\AppData\Roaming\pcouffin.sys
2011-11-13 07:50 - 2011-11-13 07:50 - 0000600 _____ () C:\Users\Rodiče\AppData\Roaming\winscp.rnd
2012-10-27 22:13 - 2014-12-29 00:19 - 0010240 _____ () C:\Users\Rodiče\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-10-25 21:13 - 2012-10-25 21:13 - 0000000 _____ () C:\Users\Rodiče\AppData\Local\PRAKTIK.INI
2015-03-06 14:39 - 2015-03-06 14:39 - 0000218 _____ () C:\Users\Rodiče\AppData\Local\recently-used.xbel
2015-03-10 18:34 - 2015-04-19 09:34 - 0007628 _____ () C:\Users\Rodiče\AppData\Local\Resmon.ResmonCfg
2012-10-25 14:01 - 2012-10-25 14:02 - 0000413 _____ () C:\ProgramData\hpzinstall.log
2012-10-17 11:14 - 2012-11-22 17:19 - 0000193 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
2012-10-25 21:13 - 2012-10-25 21:13 - 0000000 _____ () C:\ProgramData\PRAKTIK.INI
2013-10-19 22:29 - 2013-10-25 22:33 - 0000024 _____ () C:\ProgramData\__FileUploader.log

Files to move or delete:
====================
C:\Users\NFSU\jagex_runescape_preferences.dat
C:\Users\NFSU\jagex_runescape_preferences2.dat
C:\Users\NFSU\jagex__preferences3.dat
C:\Users\Rodiče\esetsmartinstaller_csy.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Ad-Aware Update (Weekly).job => C:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Google Software Updater.job => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3533039139-1052968357-1368303399-1000Core.job => C:\Users\Rodi
e\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3533039139-1052968357-1368303399-1000UA.job => C:\Users\Rodi
e\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\User_Feed_Synchronization-{FF976561-0582-47FC-8BE5-0AEA2EC306C5}.job => C:\Windows\system32\msfeedssync.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Rodi�e\Desktop" je 30552 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher
"C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Anti-phishing Domain Advisor
"C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon
"C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ComplexWebServer
"C:\ComplexWebServer\bin\ServiceDirect.exe" /RUNHIDE /CONF="C:\ComplexWebServer\bin\ServiceDirect.conf" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXMediaServer
C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate
"C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EA Core
"C:\Program Files\Electronic Arts\EADM\Core.exe" -silent [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe
C:\Windows\ehome\ehTray.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eyeBeam SIP Client
"C:\Program Files\CounterPath\X-Lite\x-lite.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Freebie Notes
"C:\Program Files\Power Soft\Freebie Notes\FreebieNotes.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Quick Search Box
"C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe" /autorun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update
"C:\Users\Rodi�e\AppData\Local\Google\Update\GoogleUpdate.exe" /c [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleChromeAutoLaunch_DFFE5E47E07B1E117C76A22C295BA5AC
"C:\Users\Rodi�e\AppData\Local\Google\Chrome\Application\chrome.exe" --no-startup-window [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleDriveSync
"C:\Program Files\Google\Drive\googledrivesync.exe" /autostart [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup
C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper
"C:\Program Files\iTunes\iTunesHelper.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KBD
C:\HP\KBD\KbdStub.EXE [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Kernel and Hardware Abstraction Layer
C:\Windows\system32\MSTMON_S.EXE STARTUP [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KONICA MINOLTA magicolor 2400W STD
C:\Program Files\Pinnacle\Studio 11\LaunchList2.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LaunchList
C:\Program Files\Picasa2\PicasaMediaDetector.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Picasa Media Detector
C:\Program Files\PowerISO\PWRISOVM.EXE

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE
"C:\Program Files\QuickTime\QTTask.exe" -atboottime [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task
"C:\Program Files\TVR\RecSche.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RecSche
C:\W [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl
C:\Program Files\Windows Sidebar\sidebar.exe /autoRun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ScanRegistry
"C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar
C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminator
"C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SSDMonitor
C:\W [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC
"C:\Program Files\Common Files\Java\Java Update\jusched.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StillImageMonitor
"C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
C:\Windows\WDVRCtrl.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg
C:\Program Files\Windows Media Player\WMPNSCFG.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinDVRCtrl
C:\Program Files\Xvid\CheckUpdate.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG
Re�im ECHO je vypnut.

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Xvid
Re�im ECHO je vypnut.

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk
C:\PROGRA~1\MCAFEE~1\307523~1.318\SSSCHE~1.EXE [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SJphone 1.65.lnk
C:\Windows\INSTAL~1\{E1A45~1\SOFTPH~1.EXE [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Rodi�e^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.1.lnk
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Rodi�e^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^V��ezy obrazovky a spu�t�n� aplikace OneNote 2007.lnk
C:\PROGRA~1\MICROS~3\Office12\ONENOTEM.EXE /tsr [x]


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]


==================== End Of Log ==============================

Re: Proces lvhidsvc.exe vytěžuje procesor, prosím o pomoc o

Napsal: 19 dub 2015 22:06
od altrok
:arrow: Ulozte na plochu MBAR - http://www.bleepingcomputer.com/downloa ... i-rootkit/
  • Spuste dvojklikem a extrahujte na plochu
  • kliknete na Next
  • Aktualizujte virovou databazi klikem na Update a pokracujte na Next
  • Vsechny 3 moznosti nechte zaskrtnute a zvolte Scan (potrva cca 15 minut)
  • zatrhnete vsechny nalezy a take zkontrolujte zatrzitko u Create Restore Point
  • kliknete na Cleanup a souhlaste s restartem - Yes
  • obsah logu ulozene na plose v mbar\mbar-log-2015-mm-dd (hh-mm-ss).txt vlozte do pristi odpovedi

Re: Proces lvhidsvc.exe vytěžuje procesor, prosím o pomoc o

Napsal: 19 dub 2015 23:12
od Hop
Prosím, zde to je:

---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.09.1.1004

(c) Malwarebytes Corporation 2011-2012

OS version: 6.1.7601 Windows 7 Service Pack 1 x86

Account is Administrative

Internet Explorer version: 11.0.9600.17728

File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, I:\ DRIVE_FIXED, L:\ DRIVE_FIXED, O:\ DRIVE_FIXED, T:\ DRIVE_FIXED, V:\ DRIVE_FIXED
CPU speed: 2.812000 GHz
Memory total: 3219644416, free: 1625489408

Downloaded database version: v2015.04.19.05
Downloaded database version: v2015.03.31.01
Downloaded database version: v2015.04.06.02
=======================================
Initializing...
------------ Kernel report ------------
04/19/2015 23:16:01
------------ Loaded modules -----------
\SystemRoot\system32\ntkrnlpa.exe
\SystemRoot\system32\halmacpi.dll
\SystemRoot\system32\kdcom.dll
\SystemRoot\system32\mcupdate_AuthenticAMD.dll
\SystemRoot\system32\PSHED.dll
\SystemRoot\system32\BOOTVID.dll
\SystemRoot\system32\CLFS.SYS
\SystemRoot\system32\CI.dll
\SystemRoot\system32\drivers\Wdf01000.sys
\SystemRoot\system32\drivers\WDFLDR.SYS
\SystemRoot\system32\drivers\ACPI.sys
\SystemRoot\system32\drivers\WMILIB.SYS
\SystemRoot\system32\drivers\msisadrv.sys
\SystemRoot\system32\drivers\pci.sys
\SystemRoot\system32\drivers\vdrvroot.sys
\SystemRoot\System32\drivers\partmgr.sys
\SystemRoot\system32\drivers\volmgr.sys
\SystemRoot\System32\drivers\volmgrx.sys
\SystemRoot\system32\drivers\pciide.sys
\SystemRoot\system32\drivers\PCIIDEX.SYS
\SystemRoot\System32\drivers\mountmgr.sys
\SystemRoot\system32\drivers\nvraid.sys
\SystemRoot\system32\drivers\CLASSPNP.SYS
\SystemRoot\system32\drivers\atapi.sys
\SystemRoot\system32\drivers\ataport.SYS
\SystemRoot\system32\drivers\nvstor32.sys
\SystemRoot\system32\drivers\storport.sys
\SystemRoot\system32\drivers\amdxata.sys
\SystemRoot\system32\drivers\fltmgr.sys
\SystemRoot\system32\drivers\fileinfo.sys
\SystemRoot\System32\Drivers\PxHelp20.sys
\SystemRoot\System32\Drivers\Ntfs.sys
\SystemRoot\System32\Drivers\msrpc.sys
\SystemRoot\System32\Drivers\ksecdd.sys
\SystemRoot\System32\Drivers\cng.sys
\SystemRoot\System32\drivers\pcw.sys
\SystemRoot\System32\Drivers\Fs_Rec.sys
\SystemRoot\system32\drivers\ndis.sys
\SystemRoot\system32\drivers\NETIO.SYS
\SystemRoot\System32\Drivers\ksecpkg.sys
\SystemRoot\System32\drivers\tcpip.sys
\SystemRoot\System32\drivers\fwpkclnt.sys
\SystemRoot\system32\DRIVERS\timntr.sys
\SystemRoot\system32\drivers\volsnap.sys
\SystemRoot\System32\Drivers\spldr.sys
\SystemRoot\System32\drivers\rdyboost.sys
\SystemRoot\System32\Drivers\mup.sys
\SystemRoot\System32\drivers\hwpolicy.sys
\SystemRoot\System32\DRIVERS\fvevol.sys
\SystemRoot\system32\drivers\disk.sys
\SystemRoot\System32\Drivers\aswVmm.sys
\SystemRoot\System32\Drivers\aswRvrt.sys
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\system32\drivers\aswSnx.sys
\SystemRoot\system32\drivers\aswSP.sys
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\System32\Drivers\aswKbd.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\drivers\VIDEOPRT.SYS
\SystemRoot\System32\drivers\watchdog.sys
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\system32\drivers\rdpencdd.sys
\SystemRoot\system32\drivers\rdprefmp.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\tdx.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\system32\drivers\afd.sys
\SystemRoot\system32\drivers\aswRdr2.sys
\SystemRoot\System32\DRIVERS\netbt.sys
\SystemRoot\system32\DRIVERS\wfplwf.sys
\SystemRoot\system32\DRIVERS\pacer.sys
\SystemRoot\system32\DRIVERS\vwififlt.sys
\SystemRoot\system32\DRIVERS\netbios.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\system32\DRIVERS\termdd.sys
\SystemRoot\System32\Drivers\SCDEmu.SYS
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\drivers\nsiproxy.sys
\SystemRoot\system32\DRIVERS\mssmbios.sys
\SystemRoot\System32\drivers\discache.sys
\SystemRoot\System32\Drivers\dfsc.sys
\??\C:\Program Files\Common Files\ArtistScope\CSDriver32.sys
\SystemRoot\system32\DRIVERS\blbdrive.sys
\SystemRoot\system32\DRIVERS\amdk8.sys
\SystemRoot\system32\DRIVERS\i8042prt.sys
\SystemRoot\system32\DRIVERS\PS2.sys
\SystemRoot\system32\DRIVERS\kbdclass.sys
\SystemRoot\system32\DRIVERS\usbohci.sys
\SystemRoot\system32\DRIVERS\USBPORT.SYS
\SystemRoot\system32\DRIVERS\usbehci.sys
\SystemRoot\system32\DRIVERS\1394ohci.sys
\SystemRoot\system32\DRIVERS\HDAudBus.sys
\SystemRoot\System32\Drivers\GEARAspiWDM.sys
\SystemRoot\system32\DRIVERS\nvmf6232.sys
\SystemRoot\system32\DRIVERS\atikmdag.sys
\SystemRoot\System32\drivers\dxgkrnl.sys
\SystemRoot\System32\drivers\dxgmms1.sys
\SystemRoot\system32\DRIVERS\CompositeBus.sys
\SystemRoot\system32\DRIVERS\AgileVpn.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\rassstp.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\DRIVERS\swenum.sys
\SystemRoot\system32\DRIVERS\ks.sys
\SystemRoot\system32\DRIVERS\MarvinBus.sys
\SystemRoot\system32\DRIVERS\umbus.sys
\SystemRoot\system32\DRIVERS\usbhub.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\drivers\RTKVHDA.sys
\SystemRoot\system32\drivers\portcls.sys
\SystemRoot\system32\drivers\drmk.sys
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\system32\DRIVERS\usbccgp.sys
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\system32\DRIVERS\hidusb.sys
\SystemRoot\system32\DRIVERS\HIDCLASS.SYS
\SystemRoot\system32\DRIVERS\HIDPARSE.SYS
\SystemRoot\System32\Drivers\usbvideo.sys
\SystemRoot\system32\drivers\usbaudio.sys
\SystemRoot\system32\DRIVERS\kbdhid.sys
\SystemRoot\system32\DRIVERS\mouhid.sys
\SystemRoot\system32\DRIVERS\USBSTOR.SYS
\SystemRoot\System32\Drivers\crashdmp.sys
\SystemRoot\System32\Drivers\dump_diskdump.sys
\SystemRoot\System32\Drivers\dump_nvstor32.sys
\SystemRoot\System32\Drivers\dump_dumpfve.sys
\SystemRoot\system32\DRIVERS\monitor.sys
\SystemRoot\System32\TSDDD.dll
\SystemRoot\System32\cdd.dll
\SystemRoot\System32\ATMFD.DLL
\SystemRoot\system32\drivers\luafv.sys
\SystemRoot\system32\drivers\aswMonFlt.sys
\SystemRoot\system32\DRIVERS\tifsfilt.sys
\SystemRoot\system32\DRIVERS\lltdio.sys
\SystemRoot\system32\DRIVERS\nwifi.sys
\SystemRoot\system32\DRIVERS\ndisuio.sys
\SystemRoot\system32\DRIVERS\rspndr.sys
\SystemRoot\system32\drivers\HTTP.sys
\SystemRoot\system32\DRIVERS\bowser.sys
\SystemRoot\System32\drivers\mpsdrv.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\system32\DRIVERS\mrxsmb10.sys
\SystemRoot\system32\DRIVERS\mrxsmb20.sys
\SystemRoot\system32\drivers\aswHwid.sys
\??\C:\Windows\system32\drivers\npf.sys
\SystemRoot\system32\drivers\peauth.sys
\SystemRoot\System32\Drivers\secdrv.SYS
\SystemRoot\System32\DRIVERS\srvnet.sys
\SystemRoot\System32\drivers\tcpipreg.sys
\??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys
\SystemRoot\System32\DRIVERS\srv2.sys
\SystemRoot\System32\DRIVERS\srv.sys
\SystemRoot\system32\drivers\WudfPf.sys
\SystemRoot\system32\drivers\tdtcp.sys
\SystemRoot\System32\DRIVERS\tssecsrv.sys
\SystemRoot\System32\Drivers\RDPWD.SYS
\SystemRoot\system32\DRIVERS\WUDFRd.sys
\SystemRoot\system32\DRIVERS\asyncmac.sys
\??\C:\Windows\system32\drivers\mbamchameleon.sys
\??\C:\Windows\system32\drivers\MBAMSwissArmy.sys
\Windows\System32\ntdll.dll
\Windows\System32\smss.exe
\Windows\System32\apisetschema.dll
\Windows\System32\autochk.exe
\Windows\System32\shlwapi.dll
\Windows\System32\ws2_32.dll
\Windows\System32\imm32.dll
\Windows\System32\difxapi.dll
\Windows\System32\msvcrt.dll
\Windows\System32\gdi32.dll
\Windows\System32\rpcrt4.dll
\Windows\System32\sechost.dll
\Windows\System32\comdlg32.dll
\Windows\System32\user32.dll
\Windows\System32\msctf.dll
\Windows\System32\kernel32.dll
\Windows\System32\clbcatq.dll
\Windows\System32\oleaut32.dll
\Windows\System32\psapi.dll
\Windows\System32\ole32.dll
\Windows\System32\advapi32.dll
\Windows\System32\Wldap32.dll
\Windows\System32\nsi.dll
\Windows\System32\imagehlp.dll
\Windows\System32\setupapi.dll
\Windows\System32\lpk.dll
\Windows\System32\shell32.dll
\Windows\System32\urlmon.dll
\Windows\System32\wininet.dll
\Windows\System32\iertutil.dll
\Windows\System32\normaliz.dll
\Windows\System32\usp10.dll
\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
\Windows\System32\KernelBase.dll
\Windows\System32\wintrust.dll
\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
\Windows\System32\comctl32.dll
\Windows\System32\devobj.dll
\Windows\System32\userenv.dll
\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
\Windows\System32\crypt32.dll
\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
\Windows\System32\cfgmgr32.dll
\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
\Windows\System32\profapi.dll
\Windows\System32\msasn1.dll
----------- End -----------
Done!

Scan started
Database versions:
main: v2015.04.19.05
rootkit: v2015.03.31.01

<<<2>>>
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xffffffff867a6760, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff867a63f8, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff867a6760, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff860cde00, DeviceName: Unknown, DriverName: \Driver\ACPI\
DevicePointer: 0xffffffff857bf7c8, DeviceName: \Device\00000063\, DriverName: \Driver\nvstor32\
------------ End ----------
Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
Done!
Drive 0
This is a System drive
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 1549F232

Partition information:

Partition 0 type is Primary (0x7)
Partition is ACTIVE.
Partition starts at LBA: 2048 Numsec = 348160000
Partition file system is NTFS
Partition is bootable

Partition 1 type is Primary (0x7)
Partition is NOT ACTIVE.
Partition starts at LBA: 368642048 Numsec = 204800000

Partition 2 type is Primary (0x7)
Partition is NOT ACTIVE.
Partition starts at LBA: 573442048 Numsec = 51697664

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 320072933376 bytes
Sector size: 512 bytes

Done!
Physical Sector Size: 512
Drive: 1, DevicePointer: 0xffffffff867a7030, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff867a7d10, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff867a7030, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff860d0930, DeviceName: Unknown, DriverName: \Driver\ACPI\
DevicePointer: 0xffffffff860d0b60, DeviceName: \Device\00000065\, DriverName: \Driver\nvstor32\
------------ End ----------
Alternate DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
Drive 1
Scanning MBR on drive 1...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: C3147E6B

Partition information:

Partition 0 type is Primary (0x7)
Partition is NOT ACTIVE.
Partition starts at LBA: 2048 Numsec = 102400000

Partition 1 type is Primary (0x7)
Partition is NOT ACTIVE.
Partition starts at LBA: 102402048 Numsec = 409600000

Partition 2 type is Primary (0x7)
Partition is NOT ACTIVE.
Partition starts at LBA: 512002048 Numsec = 1441517568

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 1000204886016 bytes
Sector size: 512 bytes

Done!
Physical Sector Size: 512
Drive: 2, DevicePointer: 0xffffffff857c48c0, DeviceName: \Device\Harddisk2\DR2\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff87b3e8e0, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff857c48c0, DeviceName: \Device\Harddisk2\DR2\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff87b3c460, DeviceName: \Device\00000077\, DriverName: \Driver\USBSTOR\
------------ End ----------
Alternate DeviceName: \Device\Harddisk2\DR2\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
Drive 2
Scanning MBR on drive 2...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 4030201

Partition information:

Partition 0 type is Primary (0x7)
Partition is NOT ACTIVE.
Partition starts at LBA: 240 Numsec = 3987216

Partition 1 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 2 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 2041577472 bytes
Sector size: 512 bytes

Done!
Physical Sector Size: 0
Drive: 3, DevicePointer: 0xffffffff857c0828, DeviceName: \Device\Harddisk3\DR3\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff86a87ba8, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff857c0828, DeviceName: \Device\Harddisk3\DR3\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff87be3950, DeviceName: \Device\00000079\, DriverName: \Driver\USBSTOR\
------------ End ----------
Physical Sector Size: 0
Drive: 4, DevicePointer: 0xffffffff87c02030, DeviceName: \Device\Harddisk4\DR4\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff87af7780, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff87c02030, DeviceName: \Device\Harddisk4\DR4\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff857b4030, DeviceName: \Device\0000007a\, DriverName: \Driver\USBSTOR\
------------ End ----------
Physical Sector Size: 0
Drive: 5, DevicePointer: 0xffffffff87ba6ac8, DeviceName: \Device\Harddisk5\DR5\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff87beed10, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff87ba6ac8, DeviceName: \Device\Harddisk5\DR5\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff87b3b878, DeviceName: \Device\0000007b\, DriverName: \Driver\USBSTOR\
------------ End ----------
Physical Sector Size: 0
Drive: 6, DevicePointer: 0xffffffff87bd8030, DeviceName: \Device\Harddisk6\DR6\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff87bab490, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff87bd8030, DeviceName: \Device\Harddisk6\DR6\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff87b9c190, DeviceName: \Device\0000007c\, DriverName: \Driver\USBSTOR\
------------ End ----------
Infected: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\SOFTWARE\Invictus --> [Trojan.FakeAlert]
Infected: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000_Classes\CLSID\{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} --> [Trojan.Poweliks.B]
Infected: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000_Classes\CLSID\{FBEB8A05-BEEE-4442-804E-409D6C4515E9} --> [Hijack.Trojan.Siredef.C]
Infected: HKU\S-1-5-21-3533039139-1052968357-1368303399-1001_Classes\CLSID\{FBEB8A05-BEEE-4442-804E-409D6C4515E9} --> [Hijack.Trojan.Siredef.C]
Infected: HKU\S-1-5-21-3533039139-1052968357-1368303399-1003_Classes\CLSID\{FBEB8A05-BEEE-4442-804E-409D6C4515E9} --> [Hijack.Trojan.Siredef.C]
Infected: HKU\S-1-5-21-3533039139-1052968357-1368303399-1001_Classes\CLSID\{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} --> [Trojan.Poweliks.B]
Infected: HKU\S-1-5-21-3533039139-1052968357-1368303399-1003_Classes\CLSID\{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} --> [Trojan.Poweliks.B]
Scan finished
Creating System Restore point...
Cleaning up...
Executing an action fixdamage.exe...
Success!
Queuing an action fixdamage.exe
Executing an action cmd.exe...
Success!
Executing an action cmd.exe...
Success!
Removal scheduling successful. System shutdown needed.
System shutdown occurred
=======================================

Re: Proces lvhidsvc.exe vytěžuje procesor, prosím o pomoc o

Napsal: 19 dub 2015 23:12
od Hop
Prosím, zde to je:

---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.09.1.1004

(c) Malwarebytes Corporation 2011-2012

OS version: 6.1.7601 Windows 7 Service Pack 1 x86

Account is Administrative

Internet Explorer version: 11.0.9600.17728

File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, I:\ DRIVE_FIXED, L:\ DRIVE_FIXED, O:\ DRIVE_FIXED, T:\ DRIVE_FIXED, V:\ DRIVE_FIXED
CPU speed: 2.812000 GHz
Memory total: 3219644416, free: 1625489408

Downloaded database version: v2015.04.19.05
Downloaded database version: v2015.03.31.01
Downloaded database version: v2015.04.06.02
=======================================
Initializing...
------------ Kernel report ------------
04/19/2015 23:16:01
------------ Loaded modules -----------
\SystemRoot\system32\ntkrnlpa.exe
\SystemRoot\system32\halmacpi.dll
\SystemRoot\system32\kdcom.dll
\SystemRoot\system32\mcupdate_AuthenticAMD.dll
\SystemRoot\system32\PSHED.dll
\SystemRoot\system32\BOOTVID.dll
\SystemRoot\system32\CLFS.SYS
\SystemRoot\system32\CI.dll
\SystemRoot\system32\drivers\Wdf01000.sys
\SystemRoot\system32\drivers\WDFLDR.SYS
\SystemRoot\system32\drivers\ACPI.sys
\SystemRoot\system32\drivers\WMILIB.SYS
\SystemRoot\system32\drivers\msisadrv.sys
\SystemRoot\system32\drivers\pci.sys
\SystemRoot\system32\drivers\vdrvroot.sys
\SystemRoot\System32\drivers\partmgr.sys
\SystemRoot\system32\drivers\volmgr.sys
\SystemRoot\System32\drivers\volmgrx.sys
\SystemRoot\system32\drivers\pciide.sys
\SystemRoot\system32\drivers\PCIIDEX.SYS
\SystemRoot\System32\drivers\mountmgr.sys
\SystemRoot\system32\drivers\nvraid.sys
\SystemRoot\system32\drivers\CLASSPNP.SYS
\SystemRoot\system32\drivers\atapi.sys
\SystemRoot\system32\drivers\ataport.SYS
\SystemRoot\system32\drivers\nvstor32.sys
\SystemRoot\system32\drivers\storport.sys
\SystemRoot\system32\drivers\amdxata.sys
\SystemRoot\system32\drivers\fltmgr.sys
\SystemRoot\system32\drivers\fileinfo.sys
\SystemRoot\System32\Drivers\PxHelp20.sys
\SystemRoot\System32\Drivers\Ntfs.sys
\SystemRoot\System32\Drivers\msrpc.sys
\SystemRoot\System32\Drivers\ksecdd.sys
\SystemRoot\System32\Drivers\cng.sys
\SystemRoot\System32\drivers\pcw.sys
\SystemRoot\System32\Drivers\Fs_Rec.sys
\SystemRoot\system32\drivers\ndis.sys
\SystemRoot\system32\drivers\NETIO.SYS
\SystemRoot\System32\Drivers\ksecpkg.sys
\SystemRoot\System32\drivers\tcpip.sys
\SystemRoot\System32\drivers\fwpkclnt.sys
\SystemRoot\system32\DRIVERS\timntr.sys
\SystemRoot\system32\drivers\volsnap.sys
\SystemRoot\System32\Drivers\spldr.sys
\SystemRoot\System32\drivers\rdyboost.sys
\SystemRoot\System32\Drivers\mup.sys
\SystemRoot\System32\drivers\hwpolicy.sys
\SystemRoot\System32\DRIVERS\fvevol.sys
\SystemRoot\system32\drivers\disk.sys
\SystemRoot\System32\Drivers\aswVmm.sys
\SystemRoot\System32\Drivers\aswRvrt.sys
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\system32\drivers\aswSnx.sys
\SystemRoot\system32\drivers\aswSP.sys
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\System32\Drivers\aswKbd.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\drivers\VIDEOPRT.SYS
\SystemRoot\System32\drivers\watchdog.sys
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\system32\drivers\rdpencdd.sys
\SystemRoot\system32\drivers\rdprefmp.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\tdx.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\system32\drivers\afd.sys
\SystemRoot\system32\drivers\aswRdr2.sys
\SystemRoot\System32\DRIVERS\netbt.sys
\SystemRoot\system32\DRIVERS\wfplwf.sys
\SystemRoot\system32\DRIVERS\pacer.sys
\SystemRoot\system32\DRIVERS\vwififlt.sys
\SystemRoot\system32\DRIVERS\netbios.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\system32\DRIVERS\termdd.sys
\SystemRoot\System32\Drivers\SCDEmu.SYS
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\drivers\nsiproxy.sys
\SystemRoot\system32\DRIVERS\mssmbios.sys
\SystemRoot\System32\drivers\discache.sys
\SystemRoot\System32\Drivers\dfsc.sys
\??\C:\Program Files\Common Files\ArtistScope\CSDriver32.sys
\SystemRoot\system32\DRIVERS\blbdrive.sys
\SystemRoot\system32\DRIVERS\amdk8.sys
\SystemRoot\system32\DRIVERS\i8042prt.sys
\SystemRoot\system32\DRIVERS\PS2.sys
\SystemRoot\system32\DRIVERS\kbdclass.sys
\SystemRoot\system32\DRIVERS\usbohci.sys
\SystemRoot\system32\DRIVERS\USBPORT.SYS
\SystemRoot\system32\DRIVERS\usbehci.sys
\SystemRoot\system32\DRIVERS\1394ohci.sys
\SystemRoot\system32\DRIVERS\HDAudBus.sys
\SystemRoot\System32\Drivers\GEARAspiWDM.sys
\SystemRoot\system32\DRIVERS\nvmf6232.sys
\SystemRoot\system32\DRIVERS\atikmdag.sys
\SystemRoot\System32\drivers\dxgkrnl.sys
\SystemRoot\System32\drivers\dxgmms1.sys
\SystemRoot\system32\DRIVERS\CompositeBus.sys
\SystemRoot\system32\DRIVERS\AgileVpn.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\rassstp.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\DRIVERS\swenum.sys
\SystemRoot\system32\DRIVERS\ks.sys
\SystemRoot\system32\DRIVERS\MarvinBus.sys
\SystemRoot\system32\DRIVERS\umbus.sys
\SystemRoot\system32\DRIVERS\usbhub.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\drivers\RTKVHDA.sys
\SystemRoot\system32\drivers\portcls.sys
\SystemRoot\system32\drivers\drmk.sys
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\system32\DRIVERS\usbccgp.sys
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\system32\DRIVERS\hidusb.sys
\SystemRoot\system32\DRIVERS\HIDCLASS.SYS
\SystemRoot\system32\DRIVERS\HIDPARSE.SYS
\SystemRoot\System32\Drivers\usbvideo.sys
\SystemRoot\system32\drivers\usbaudio.sys
\SystemRoot\system32\DRIVERS\kbdhid.sys
\SystemRoot\system32\DRIVERS\mouhid.sys
\SystemRoot\system32\DRIVERS\USBSTOR.SYS
\SystemRoot\System32\Drivers\crashdmp.sys
\SystemRoot\System32\Drivers\dump_diskdump.sys
\SystemRoot\System32\Drivers\dump_nvstor32.sys
\SystemRoot\System32\Drivers\dump_dumpfve.sys
\SystemRoot\system32\DRIVERS\monitor.sys
\SystemRoot\System32\TSDDD.dll
\SystemRoot\System32\cdd.dll
\SystemRoot\System32\ATMFD.DLL
\SystemRoot\system32\drivers\luafv.sys
\SystemRoot\system32\drivers\aswMonFlt.sys
\SystemRoot\system32\DRIVERS\tifsfilt.sys
\SystemRoot\system32\DRIVERS\lltdio.sys
\SystemRoot\system32\DRIVERS\nwifi.sys
\SystemRoot\system32\DRIVERS\ndisuio.sys
\SystemRoot\system32\DRIVERS\rspndr.sys
\SystemRoot\system32\drivers\HTTP.sys
\SystemRoot\system32\DRIVERS\bowser.sys
\SystemRoot\System32\drivers\mpsdrv.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\system32\DRIVERS\mrxsmb10.sys
\SystemRoot\system32\DRIVERS\mrxsmb20.sys
\SystemRoot\system32\drivers\aswHwid.sys
\??\C:\Windows\system32\drivers\npf.sys
\SystemRoot\system32\drivers\peauth.sys
\SystemRoot\System32\Drivers\secdrv.SYS
\SystemRoot\System32\DRIVERS\srvnet.sys
\SystemRoot\System32\drivers\tcpipreg.sys
\??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys
\SystemRoot\System32\DRIVERS\srv2.sys
\SystemRoot\System32\DRIVERS\srv.sys
\SystemRoot\system32\drivers\WudfPf.sys
\SystemRoot\system32\drivers\tdtcp.sys
\SystemRoot\System32\DRIVERS\tssecsrv.sys
\SystemRoot\System32\Drivers\RDPWD.SYS
\SystemRoot\system32\DRIVERS\WUDFRd.sys
\SystemRoot\system32\DRIVERS\asyncmac.sys
\??\C:\Windows\system32\drivers\mbamchameleon.sys
\??\C:\Windows\system32\drivers\MBAMSwissArmy.sys
\Windows\System32\ntdll.dll
\Windows\System32\smss.exe
\Windows\System32\apisetschema.dll
\Windows\System32\autochk.exe
\Windows\System32\shlwapi.dll
\Windows\System32\ws2_32.dll
\Windows\System32\imm32.dll
\Windows\System32\difxapi.dll
\Windows\System32\msvcrt.dll
\Windows\System32\gdi32.dll
\Windows\System32\rpcrt4.dll
\Windows\System32\sechost.dll
\Windows\System32\comdlg32.dll
\Windows\System32\user32.dll
\Windows\System32\msctf.dll
\Windows\System32\kernel32.dll
\Windows\System32\clbcatq.dll
\Windows\System32\oleaut32.dll
\Windows\System32\psapi.dll
\Windows\System32\ole32.dll
\Windows\System32\advapi32.dll
\Windows\System32\Wldap32.dll
\Windows\System32\nsi.dll
\Windows\System32\imagehlp.dll
\Windows\System32\setupapi.dll
\Windows\System32\lpk.dll
\Windows\System32\shell32.dll
\Windows\System32\urlmon.dll
\Windows\System32\wininet.dll
\Windows\System32\iertutil.dll
\Windows\System32\normaliz.dll
\Windows\System32\usp10.dll
\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
\Windows\System32\KernelBase.dll
\Windows\System32\wintrust.dll
\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
\Windows\System32\comctl32.dll
\Windows\System32\devobj.dll
\Windows\System32\userenv.dll
\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
\Windows\System32\crypt32.dll
\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
\Windows\System32\cfgmgr32.dll
\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
\Windows\System32\profapi.dll
\Windows\System32\msasn1.dll
----------- End -----------
Done!

Scan started
Database versions:
main: v2015.04.19.05
rootkit: v2015.03.31.01

<<<2>>>
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xffffffff867a6760, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff867a63f8, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff867a6760, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff860cde00, DeviceName: Unknown, DriverName: \Driver\ACPI\
DevicePointer: 0xffffffff857bf7c8, DeviceName: \Device\00000063\, DriverName: \Driver\nvstor32\
------------ End ----------
Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
Done!
Drive 0
This is a System drive
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 1549F232

Partition information:

Partition 0 type is Primary (0x7)
Partition is ACTIVE.
Partition starts at LBA: 2048 Numsec = 348160000
Partition file system is NTFS
Partition is bootable

Partition 1 type is Primary (0x7)
Partition is NOT ACTIVE.
Partition starts at LBA: 368642048 Numsec = 204800000

Partition 2 type is Primary (0x7)
Partition is NOT ACTIVE.
Partition starts at LBA: 573442048 Numsec = 51697664

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 320072933376 bytes
Sector size: 512 bytes

Done!
Physical Sector Size: 512
Drive: 1, DevicePointer: 0xffffffff867a7030, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff867a7d10, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff867a7030, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff860d0930, DeviceName: Unknown, DriverName: \Driver\ACPI\
DevicePointer: 0xffffffff860d0b60, DeviceName: \Device\00000065\, DriverName: \Driver\nvstor32\
------------ End ----------
Alternate DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
Drive 1
Scanning MBR on drive 1...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: C3147E6B

Partition information:

Partition 0 type is Primary (0x7)
Partition is NOT ACTIVE.
Partition starts at LBA: 2048 Numsec = 102400000

Partition 1 type is Primary (0x7)
Partition is NOT ACTIVE.
Partition starts at LBA: 102402048 Numsec = 409600000

Partition 2 type is Primary (0x7)
Partition is NOT ACTIVE.
Partition starts at LBA: 512002048 Numsec = 1441517568

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 1000204886016 bytes
Sector size: 512 bytes

Done!
Physical Sector Size: 512
Drive: 2, DevicePointer: 0xffffffff857c48c0, DeviceName: \Device\Harddisk2\DR2\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff87b3e8e0, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff857c48c0, DeviceName: \Device\Harddisk2\DR2\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff87b3c460, DeviceName: \Device\00000077\, DriverName: \Driver\USBSTOR\
------------ End ----------
Alternate DeviceName: \Device\Harddisk2\DR2\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
Drive 2
Scanning MBR on drive 2...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 4030201

Partition information:

Partition 0 type is Primary (0x7)
Partition is NOT ACTIVE.
Partition starts at LBA: 240 Numsec = 3987216

Partition 1 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 2 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 2041577472 bytes
Sector size: 512 bytes

Done!
Physical Sector Size: 0
Drive: 3, DevicePointer: 0xffffffff857c0828, DeviceName: \Device\Harddisk3\DR3\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff86a87ba8, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff857c0828, DeviceName: \Device\Harddisk3\DR3\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff87be3950, DeviceName: \Device\00000079\, DriverName: \Driver\USBSTOR\
------------ End ----------
Physical Sector Size: 0
Drive: 4, DevicePointer: 0xffffffff87c02030, DeviceName: \Device\Harddisk4\DR4\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff87af7780, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff87c02030, DeviceName: \Device\Harddisk4\DR4\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff857b4030, DeviceName: \Device\0000007a\, DriverName: \Driver\USBSTOR\
------------ End ----------
Physical Sector Size: 0
Drive: 5, DevicePointer: 0xffffffff87ba6ac8, DeviceName: \Device\Harddisk5\DR5\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff87beed10, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff87ba6ac8, DeviceName: \Device\Harddisk5\DR5\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff87b3b878, DeviceName: \Device\0000007b\, DriverName: \Driver\USBSTOR\
------------ End ----------
Physical Sector Size: 0
Drive: 6, DevicePointer: 0xffffffff87bd8030, DeviceName: \Device\Harddisk6\DR6\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff87bab490, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff87bd8030, DeviceName: \Device\Harddisk6\DR6\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff87b9c190, DeviceName: \Device\0000007c\, DriverName: \Driver\USBSTOR\
------------ End ----------
Infected: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\SOFTWARE\Invictus --> [Trojan.FakeAlert]
Infected: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000_Classes\CLSID\{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} --> [Trojan.Poweliks.B]
Infected: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000_Classes\CLSID\{FBEB8A05-BEEE-4442-804E-409D6C4515E9} --> [Hijack.Trojan.Siredef.C]
Infected: HKU\S-1-5-21-3533039139-1052968357-1368303399-1001_Classes\CLSID\{FBEB8A05-BEEE-4442-804E-409D6C4515E9} --> [Hijack.Trojan.Siredef.C]
Infected: HKU\S-1-5-21-3533039139-1052968357-1368303399-1003_Classes\CLSID\{FBEB8A05-BEEE-4442-804E-409D6C4515E9} --> [Hijack.Trojan.Siredef.C]
Infected: HKU\S-1-5-21-3533039139-1052968357-1368303399-1001_Classes\CLSID\{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} --> [Trojan.Poweliks.B]
Infected: HKU\S-1-5-21-3533039139-1052968357-1368303399-1003_Classes\CLSID\{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} --> [Trojan.Poweliks.B]
Scan finished
Creating System Restore point...
Cleaning up...
Executing an action fixdamage.exe...
Success!
Queuing an action fixdamage.exe
Executing an action cmd.exe...
Success!
Executing an action cmd.exe...
Success!
Removal scheduling successful. System shutdown needed.
System shutdown occurred
=======================================

Re: Proces lvhidsvc.exe vytěžuje procesor, prosím o pomoc o

Napsal: 19 dub 2015 23:17
od altrok
:arrow: Postup kolegy.
vyosek píše: :arrow: Stahnete si TDSSKiller http://media.kaspersky.com/utilities/Vi ... killer.exe
  • Po spusteni odsouhlaste licencni podminky (klik na Accept)
  • Kliknete na volbu Change parametrs
  • V okne Additional Option zakliknete vsechny moznosti
  • Kliknete na OK
  • Utilite prikazte, at skenuje - klik na Start Scan
  • Po dokonceni skenu se objevi okno, zkontrolujte, zda-li je vsude moznost Skip
  • Pokud moznost Skip nebude primarne nastavena, prekliknete ji na Skip
  • Pokud mate vsude Skip, kliknete na Continue
  • Na disku, kde mate Windows (obvykle c:\) ve tvaru TDSSKiller.nejaka cisilka _log.txt bude log - jeho obsah sem vlozte

Re: Proces lvhidsvc.exe vytěžuje procesor, prosím o pomoc o

Napsal: 19 dub 2015 23:29
od Hop
Další log je zde:

00:20:56.0254 0x0c74 TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
00:21:01.0821 0x0c74 ============================================================
00:21:01.0821 0x0c74 Current date / time: 2015/04/20 00:21:01.0821
00:21:01.0821 0x0c74 SystemInfo:
00:21:01.0821 0x0c74
00:21:01.0821 0x0c74 OS Version: 6.1.7601 ServicePack: 1.0
00:21:01.0821 0x0c74 Product type: Workstation
00:21:01.0821 0x0c74 ComputerName: CERNY
00:21:01.0821 0x0c74 UserName: Rodiče
00:21:01.0821 0x0c74 Windows directory: C:\Windows
00:21:01.0821 0x0c74 System windows directory: C:\Windows
00:21:01.0822 0x0c74 Processor architecture: Intel x86
00:21:01.0822 0x0c74 Number of processors: 2
00:21:01.0822 0x0c74 Page size: 0x1000
00:21:01.0822 0x0c74 Boot type: Normal boot
00:21:01.0822 0x0c74 ============================================================
00:21:02.0117 0x0c74 KLMD registered as C:\Windows\system32\drivers\04702279.sys
00:21:02.0596 0x0c74 System UUID: {0E79DEDD-3C56-2D08-837B-F92F26BC7B2B}
00:21:03.0265 0x0c74 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 ( 298.09 Gb ), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
00:21:03.0280 0x0c74 Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
00:21:03.0287 0x0c74 Drive \Device\Harddisk2\DR2 - Size: 0x79B00000 ( 1.90 Gb ), SectorSize: 0x200, Cylinders: 0xF8, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
00:21:03.0301 0x0c74 ============================================================
00:21:03.0301 0x0c74 \Device\Harddisk0\DR0:
00:21:03.0301 0x0c74 MBR partitions:
00:21:03.0301 0x0c74 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x14C08000
00:21:03.0301 0x0c74 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x15F90800, BlocksNum 0xC350000
00:21:03.0301 0x0c74 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x222E0800, BlocksNum 0x314D800
00:21:03.0301 0x0c74 \Device\Harddisk1\DR1:
00:21:03.0301 0x0c74 MBR partitions:
00:21:03.0301 0x0c74 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x61A8000
00:21:03.0301 0x0c74 \Device\Harddisk1\DR1\Partition2: MBR, Type 0x7, StartLBA 0x61A8800, BlocksNum 0x186A0000
00:21:03.0301 0x0c74 \Device\Harddisk1\DR1\Partition3: MBR, Type 0x7, StartLBA 0x1E848800, BlocksNum 0x55EBD000
00:21:03.0301 0x0c74 \Device\Harddisk2\DR2:
00:21:03.0302 0x0c74 MBR partitions:
00:21:03.0302 0x0c74 \Device\Harddisk2\DR2\Partition1: MBR, Type 0x7, StartLBA 0xF0, BlocksNum 0x3CD710
00:21:03.0302 0x0c74 ============================================================
00:21:03.0332 0x0c74 C: <-> \Device\Harddisk0\DR0\Partition1
00:21:03.0380 0x0c74 V: <-> \Device\Harddisk0\DR0\Partition3
00:21:03.0429 0x0c74 T: <-> \Device\Harddisk0\DR0\Partition2
00:21:03.0460 0x0c74 O: <-> \Device\Harddisk1\DR1\Partition3
00:21:03.0486 0x0c74 I: <-> \Device\Harddisk1\DR1\Partition1
00:21:03.0510 0x0c74 L: <-> \Device\Harddisk1\DR1\Partition2
00:21:03.0510 0x0c74 ============================================================
00:21:03.0510 0x0c74 Initialize success
00:21:03.0510 0x0c74 ============================================================
00:21:42.0732 0x17dc ============================================================
00:21:42.0732 0x17dc Scan started
00:21:42.0732 0x17dc Mode: Manual; SigCheck; TDLFS;
00:21:42.0732 0x17dc ============================================================
00:21:42.0732 0x17dc KSN ping started
00:21:45.0581 0x17dc KSN ping finished: true
00:21:46.0759 0x17dc ================ Scan system memory ========================
00:21:46.0759 0x17dc System memory - ok
00:21:46.0760 0x17dc ================ Scan services =============================
00:21:46.0897 0x17dc [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
00:21:47.0402 0x17dc 1394ohci - ok
00:21:47.0446 0x17dc [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI C:\Windows\system32\drivers\ACPI.sys
00:21:47.0470 0x17dc ACPI - ok
00:21:47.0496 0x17dc [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
00:21:47.0831 0x17dc AcpiPmi - ok
00:21:47.0982 0x17dc [ FC5B75CA6A1DA31EDD4F8D53F5540B98, CDC445F2790ADFC4C5568C40D4DA8BB95CD71991665B38AEC3D84571C99C3520 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
00:21:47.0994 0x17dc AdobeARMservice - ok
00:21:48.0070 0x17dc [ B04A4810C6CC205F9DC72DC22E4AB236, 547321F5C28C80D4818372D65E2A33D4BAC593015DD6613B24586FE4B4A95D5D ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
00:21:48.0088 0x17dc AdobeFlashPlayerUpdateSvc - ok
00:21:48.0159 0x17dc [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
00:21:48.0188 0x17dc adp94xx - ok
00:21:48.0220 0x17dc [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci C:\Windows\system32\drivers\adpahci.sys
00:21:48.0239 0x17dc adpahci - ok
00:21:48.0257 0x17dc [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320 C:\Windows\system32\drivers\adpu320.sys
00:21:48.0272 0x17dc adpu320 - ok
00:21:48.0303 0x17dc [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
00:21:48.0592 0x17dc AeLookupSvc - ok
00:21:48.0707 0x17dc [ D0B388DA1D111A34366E04EB4A5DD156, 60D226F027F4025CC032CAFF73A80FAFB5FA75445654FDCF80CA8C0419C6E938 ] AFD C:\Windows\system32\drivers\afd.sys
00:21:49.0014 0x17dc AFD - ok
00:21:49.0050 0x17dc [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440 C:\Windows\system32\drivers\agp440.sys
00:21:49.0061 0x17dc agp440 - ok
00:21:49.0120 0x17dc [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx C:\Windows\system32\drivers\djsvs.sys
00:21:49.0132 0x17dc aic78xx - ok
00:21:49.0181 0x17dc [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG C:\Windows\System32\alg.exe
00:21:49.0484 0x17dc ALG - ok
00:21:49.0529 0x17dc [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide C:\Windows\system32\drivers\aliide.sys
00:21:49.0540 0x17dc aliide - ok
00:21:49.0556 0x17dc [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
00:21:49.0568 0x17dc amdagp - ok
00:21:49.0585 0x17dc [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide C:\Windows\system32\drivers\amdide.sys
00:21:49.0597 0x17dc amdide - ok
00:21:49.0630 0x17dc [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
00:21:49.0937 0x17dc AmdK8 - ok
00:21:49.0960 0x17dc [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
00:21:50.0177 0x17dc AmdPPM - ok
00:21:50.0228 0x17dc [ D320BF87125326F996D4904FE24300FC, F767D8C5C58D57202905D829F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata C:\Windows\system32\drivers\amdsata.sys
00:21:50.0240 0x17dc amdsata - ok
00:21:50.0258 0x17dc [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
00:21:50.0273 0x17dc amdsbs - ok
00:21:50.0288 0x17dc [ 46387FB17B086D16DEA267D5BE23A2F2, 8B8AC61B91F154B4EB5CC6DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata C:\Windows\system32\drivers\amdxata.sys
00:21:50.0299 0x17dc amdxata - ok
00:21:50.0345 0x17dc [ D1AF38FBAC0DC7E6D796B0ED01707EE0, FAFD2C36594A1628293E7623C8CAB2D47EDF8C6C0E18CC2FB37F9A6CA1F0E57C ] AppHostSvc C:\Windows\system32\inetsrv\apphostsvc.dll
00:21:50.0610 0x17dc AppHostSvc - ok
00:21:50.0653 0x17dc [ 81F97D8F8B3FB94A451CC6F7CF8B2965, 8DEBA4E47E1016D69740C0BB7CDD23852D86E0D42C1C1EA5A847ECB115C38CB1 ] AppID C:\Windows\system32\drivers\appid.sys
00:21:50.0915 0x17dc AppID - ok
00:21:50.0946 0x17dc [ F5090F8FA6757C58E17BAEAA86093636, 5E14CF3032DF5801240F45C59AA93962EA41AA5648A0C6458D16D9B9D95A131F ] AppIDSvc C:\Windows\System32\appidsvc.dll
00:21:51.0174 0x17dc AppIDSvc - ok
00:21:51.0209 0x17dc [ EACFDF31921F51C097629F1F3C9129B4, 24138755D823E69760579ECBD672421192457CDC9941B2BC499C2D34D83E86C3 ] Appinfo C:\Windows\System32\appinfo.dll
00:21:51.0422 0x17dc Appinfo - ok
00:21:51.0473 0x17dc [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc C:\Windows\system32\drivers\arc.sys
00:21:51.0485 0x17dc arc - ok
00:21:51.0505 0x17dc [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas C:\Windows\system32\drivers\arcsas.sys
00:21:51.0519 0x17dc arcsas - ok
00:21:51.0620 0x17dc [ 537B2948976F5D9B5767B74A63EBB395, 1A14F8B582E74AD15B612EDA5B707AA3CB0B2A107ED14572B4232EAA7383B634 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
00:21:51.0661 0x17dc aspnet_state - ok
00:21:51.0731 0x17dc [ FE99FCB91E93BC4A7E222928A06411DE, C0F9A2A6324B17D435A7C62EB133E3E529D5622ED83C65E48F092CAB79D9A787 ] aswHwid C:\Windows\system32\drivers\aswHwid.sys
00:21:51.0849 0x17dc aswHwid - ok
00:21:51.0914 0x17dc [ E2FEE0486D68BF85355D3EDA1A24FF68, 809AB100F05AD872CE1A468BC118A5A330B0A361171F103F7A3EF616D889AFEF ] aswKbd C:\Windows\system32\drivers\aswKbd.sys
00:21:51.0940 0x17dc aswKbd - ok
00:21:51.0983 0x17dc [ 5D70C1C6C61C5A034BD086AD219A0237, 318C3CC5AF2A4B99C6C3938B36C95ECA63EABC5E93A2A3D7C729BA0BF191CDF1 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
00:21:52.0031 0x17dc aswMonFlt - ok
00:21:52.0056 0x17dc [ 456106F51D03D99A8C65BFC0E37E3D0B, AC616957C299DF452E37ACB1C77F20A50AD4B23AD07BF09951817EF8B460A6D6 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys
00:21:52.0075 0x17dc aswRdr - ok
00:21:52.0127 0x17dc [ 74E84C8CEB52042E8A1EA3104D151843, B9D1ADC6A0FF31EE18E2EECCCC3D98C41FAE9E37295A0F555DAB59D0B6028A6E ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
00:21:52.0164 0x17dc aswRvrt - ok
00:21:52.0226 0x17dc [ 48FA0C8E04A37A619C894A1C02D5AB96, F79C7252D0C578F827EED28630D97F2B5E3B361F920AF626343D8A71CDD86288 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
00:21:52.0269 0x17dc aswSnx - ok
00:21:52.0327 0x17dc [ 2AB454C9C10C427738426C06D3749361, BC604BC9006CF52520FA962055F391A806B7452639640F13516B151E34517643 ] aswSP C:\Windows\system32\drivers\aswSP.sys
00:21:52.0370 0x17dc aswSP - ok
00:21:52.0412 0x17dc [ F7D2CE852966935E2F85C3DB4D50D3A5, BE41E9849380BC047B145B8AC7A402C223A901D39CA349F5D2A070C890B7DCE6 ] aswStm C:\Windows\system32\drivers\aswStm.sys
00:21:52.0458 0x17dc aswStm - ok
00:21:52.0516 0x17dc [ 0AE22EAD6B30E448160338E708BCB71D, 4657A7C60635B916FFBC0A731D52E944FDDE6B052AD0DBD0848C3C7A5C15DD0D ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
00:21:52.0580 0x17dc aswVmm - ok
00:21:52.0609 0x17dc [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
00:21:52.0792 0x17dc AsyncMac - ok
00:21:52.0822 0x17dc [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi C:\Windows\system32\drivers\atapi.sys
00:21:52.0833 0x17dc atapi - ok
00:21:53.0056 0x17dc [ 614A60AEE03A6151FDCBAC295854A9CB, 0453BD59AEF21F2EFD6E1E39F1CF691E694BC778073843111AE5FA2BB1DEF31B ] athr C:\Windows\system32\DRIVERS\athr.sys
00:21:53.0319 0x17dc athr - ok
00:21:53.0565 0x17dc [ 712D8A95E45B070114C5309ADA7358FF, 1F0285CFB9982637186531489743798511BA75B612B202231E9BC1CF5372C0BB ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
00:21:53.0992 0x17dc atikmdag - ok
00:21:54.0064 0x17dc [ C1619A13B10CAC5038BF7129F57D8DE3, 9F71EA6C844650658938E68CCC1383F92D37C68E46E08461A8351491185BA791 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
00:21:54.0311 0x17dc AudioEndpointBuilder - ok
00:21:54.0383 0x17dc [ C1619A13B10CAC5038BF7129F57D8DE3, 9F71EA6C844650658938E68CCC1383F92D37C68E46E08461A8351491185BA791 ] Audiosrv C:\Windows\System32\Audiosrv.dll
00:21:54.0587 0x17dc Audiosrv - ok
00:21:54.0659 0x17dc [ 210A326658D72D7F2EE2267F3D9C44D4, 25BC620209B5F4BCF5C3F323290E41255F68660F3DFF901FA5A78423A7293D73 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
00:21:54.0729 0x17dc avast! Antivirus - ok
00:21:55.0089 0x17dc [ 5019A83BE87FD8B60F7333901BFD35E5, 674DF51CAA1B6C0BC9CA9755B3BC5A9A71C583BD7C7A2826BD280E107B855092 ] AvastVBoxSvc C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
00:21:55.0285 0x17dc AvastVBoxSvc - ok
00:21:55.0359 0x17dc [ 919BF947FB3294450B2A4BA4F64193EA, 73DB336877FB4580F0DA39ADD6D95D90DF40873FF5CDAC362FC151C83B8CD50E ] AVHybrid C:\Windows\system32\DRIVERS\AVHybrid.sys
00:21:55.0606 0x17dc AVHybrid - ok
00:21:55.0680 0x17dc [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C855A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV C:\Windows\System32\AxInstSV.dll
00:21:55.0925 0x17dc AxInstSV - ok
00:21:55.0986 0x17dc [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys
00:21:56.0177 0x17dc b06bdrv - ok
00:21:56.0228 0x17dc [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
00:21:56.0430 0x17dc b57nd60x - ok
00:21:56.0478 0x17dc [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC C:\Windows\System32\bdesvc.dll
00:21:56.0591 0x17dc BDESVC - ok
00:21:56.0645 0x17dc [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep C:\Windows\system32\drivers\Beep.sys
00:21:56.0785 0x17dc Beep - ok
00:21:56.0833 0x17dc [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE C:\Windows\System32\bfe.dll
00:21:56.0922 0x17dc BFE - ok
00:21:57.0031 0x17dc [ E585445D5021971FAE10393F0F1C3961, 178C008A9A0A6BFDA65EB0B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS C:\Windows\System32\qmgr.dll
00:21:57.0170 0x17dc BITS - ok
00:21:57.0221 0x17dc [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
00:21:57.0294 0x17dc blbdrive - ok
00:21:57.0324 0x17dc [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
00:21:57.0410 0x17dc bowser - ok
00:21:57.0438 0x17dc [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
00:21:57.0524 0x17dc BrFiltLo - ok
00:21:57.0575 0x17dc [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
00:21:57.0749 0x17dc BrFiltUp - ok
00:21:57.0795 0x17dc [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser C:\Windows\System32\browser.dll
00:21:57.0923 0x17dc Browser - ok
00:21:57.0976 0x17dc [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid C:\Windows\System32\Drivers\Brserid.sys
00:21:58.0087 0x17dc Brserid - ok
00:21:58.0112 0x17dc [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
00:21:58.0199 0x17dc BrSerWdm - ok
00:21:58.0217 0x17dc [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
00:21:58.0319 0x17dc BrUsbMdm - ok
00:21:58.0348 0x17dc [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
00:21:58.0427 0x17dc BrUsbSer - ok
00:21:58.0471 0x17dc [ 2865A5C8E98C70C605F417908CEBB3A4, B1C5AC228BD7072AF8668C009C6CDC13EE9FCB9481F57524300F37C40BF1E935 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys
00:21:58.0575 0x17dc BthEnum - ok
00:21:58.0618 0x17dc [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
00:21:58.0725 0x17dc BTHMODEM - ok
00:21:58.0762 0x17dc [ AD1872E5829E8A2C3B5B4B641C3EAB0E, 8C2DBCAC08DDB41E2B44E257C55FA2D0272959B308EFF9EAF5FF9AE1E4A0AA39 ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
00:21:58.0868 0x17dc BthPan - ok
00:21:58.0966 0x17dc [ 1153DE2E4F5941E10C399CB5592F78A1, 2B88AF246D62F72FA9F5B921B0375AE59A0F263672472D5EC9FDB5CA5EF51C31 ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys
00:21:59.0083 0x17dc BTHPORT - ok
00:21:59.0115 0x17dc [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv C:\Windows\system32\bthserv.dll
00:21:59.0240 0x17dc bthserv - ok
00:21:59.0287 0x17dc [ C81E9413A25A439F436B1D4B6A0CF9E9, A4C290163207AED22C70C7F90B28F6FC24892889643D60D915059405AC5A4A72 ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys
00:21:59.0386 0x17dc BTHUSB - ok
00:21:59.0419 0x17dc [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
00:21:59.0502 0x17dc cdfs - ok
00:21:59.0537 0x17dc [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
00:21:59.0634 0x17dc cdrom - ok
00:21:59.0670 0x17dc [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc C:\Windows\System32\certprop.dll
00:21:59.0796 0x17dc CertPropSvc - ok
00:21:59.0832 0x17dc [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass C:\Windows\system32\drivers\circlass.sys
00:21:59.0915 0x17dc circlass - ok
00:21:59.0956 0x17dc [ 33A60554882FDF59CDA3E1806370BBA1, 3DE5451E1CB84AAEBD03F54BEFC670C401447B4881A8B022748B6ECF0F500F01 ] CLFS C:\Windows\system32\CLFS.sys
00:21:59.0975 0x17dc CLFS - ok
00:22:00.0052 0x17dc [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
00:22:00.0095 0x17dc clr_optimization_v2.0.50727_32 - ok
00:22:00.0122 0x17dc [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
00:22:00.0186 0x17dc clr_optimization_v4.0.30319_32 - ok
00:22:00.0224 0x17dc [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
00:22:00.0329 0x17dc CmBatt - ok
00:22:00.0379 0x17dc [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide C:\Windows\system32\drivers\cmdide.sys
00:22:00.0390 0x17dc cmdide - ok
00:22:00.0483 0x17dc [ 3051724F223EA48968B19567DE2A81F4, DCC27DE1B2B35866FC6DBDE95A368E7D0D346B6C3F31D0BACA63DD39B0A8874E ] CNG C:\Windows\system32\Drivers\cng.sys
00:22:00.0539 0x17dc CNG - ok
00:22:00.0610 0x17dc [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt C:\Windows\system32\drivers\compbatt.sys
00:22:00.0635 0x17dc Compbatt - ok
00:22:00.0695 0x17dc [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
00:22:00.0799 0x17dc CompositeBus - ok
00:22:00.0824 0x17dc COMSysApp - ok
00:22:00.0877 0x17dc cpuz135 - ok
00:22:00.0896 0x17dc cpuz136 - ok
00:22:00.0954 0x17dc [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
00:22:00.0965 0x17dc crcdisk - ok
00:22:01.0014 0x17dc [ 49474B3E37969AF4B5C076F42B623AFF, BDA6B57E9B60EF1B67C74099263D33A367AAA035667239F76AB8B268FD3E8F23 ] CryptSvc C:\Windows\system32\cryptsvc.dll
00:22:01.0103 0x17dc CryptSvc - ok
00:22:01.0193 0x17dc [ 07591490166C0389EC23B5ADA5BDC78B, 7DE9773BF90FE6B2798EBA4BEB7CE855D3C96F45FAA06813FBACFD8518BD0D68 ] CSDriver C:\Program Files\Common Files\ArtistScope\CSDriver32.sys
00:22:01.0214 0x17dc CSDriver - ok
00:22:01.0293 0x17dc [ E55154F74AD822593EA2BC3726DAC808, 02AB5D31BEE3398C2C495AB90F3094096C6D149DCA1877E911BDE808F71656E1 ] CSHelper C:\Program Files\Common Files\ArtistScope\CSHelper32.exe
00:22:01.0335 0x17dc CSHelper - ok
00:22:01.0390 0x17dc [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] DcomLaunch C:\Windows\system32\rpcss.dll
00:22:01.0530 0x17dc DcomLaunch - ok
00:22:01.0598 0x17dc [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc C:\Windows\System32\defragsvc.dll
00:22:01.0718 0x17dc defragsvc - ok
00:22:01.0762 0x17dc [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
00:22:01.0921 0x17dc DfsC - ok
00:22:01.0959 0x17dc [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp C:\Windows\system32\dhcpcore.dll
00:22:02.0039 0x17dc Dhcp - ok
00:22:02.0059 0x17dc [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache C:\Windows\system32\drivers\discache.sys
00:22:02.0166 0x17dc discache - ok
00:22:02.0215 0x17dc [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk C:\Windows\system32\drivers\disk.sys
00:22:02.0226 0x17dc Disk - ok
00:22:02.0265 0x17dc [ 33EF4861F19A0736B11314AAD9AE28D0, 4C4B84365D85758E3263B88F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache C:\Windows\System32\dnsrslvr.dll
00:22:02.0405 0x17dc Dnscache - ok
00:22:02.0454 0x17dc [ 366BA8FB4B7BB7435E3B9EACB3843F67, 65B7C61ACF34F1F0149045AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc C:\Windows\System32\dot3svc.dll
00:22:02.0577 0x17dc dot3svc - ok
00:22:02.0618 0x17dc [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS C:\Windows\system32\dps.dll
00:22:02.0727 0x17dc DPS - ok
00:22:02.0779 0x17dc [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
00:22:02.0836 0x17dc drmkaud - ok
00:22:03.0008 0x17dc [ 3583A5A8CC2E682BFFBD4630D0FEC08B, FD0F184B358FCECAA763444B414074BEF4E871EB7527D88385519FC158435C72 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
00:22:03.0037 0x17dc DXGKrnl - ok
00:22:03.0073 0x17dc [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost C:\Windows\System32\eapsvc.dll
00:22:03.0176 0x17dc EapHost - ok
00:22:03.0995 0x17dc [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv C:\Windows\system32\drivers\evbdx.sys
00:22:04.0238 0x17dc ebdrv - ok
00:22:04.0285 0x17dc [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] EFS C:\Windows\System32\lsass.exe
00:22:04.0409 0x17dc EFS - ok
00:22:04.0496 0x17dc [ A8C362018EFC87BEB013EE28F29C0863, 07971C681FBD391C0BA0172618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr C:\Windows\ehome\ehRecvr.exe
00:22:04.0611 0x17dc ehRecvr - ok
00:22:04.0639 0x17dc [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched C:\Windows\ehome\ehsched.exe
00:22:04.0717 0x17dc ehSched - ok
00:22:04.0759 0x17dc [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor C:\Windows\system32\drivers\elxstor.sys
00:22:04.0782 0x17dc elxstor - ok
00:22:04.0814 0x17dc [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev C:\Windows\system32\drivers\errdev.sys
00:22:04.0873 0x17dc ErrDev - ok
00:22:04.0916 0x17dc [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem C:\Windows\system32\es.dll
00:22:05.0042 0x17dc EventSystem - ok
00:22:05.0077 0x17dc [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat C:\Windows\system32\drivers\exfat.sys
00:22:05.0141 0x17dc exfat - ok
00:22:05.0168 0x17dc [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat C:\Windows\system32\drivers\fastfat.sys
00:22:05.0281 0x17dc fastfat - ok
00:22:05.0353 0x17dc [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax C:\Windows\system32\fxssvc.exe
00:22:05.0419 0x17dc Fax - ok
00:22:05.0453 0x17dc [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc C:\Windows\system32\drivers\fdc.sys
00:22:05.0530 0x17dc fdc - ok
00:22:05.0556 0x17dc [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost C:\Windows\system32\fdPHost.dll
00:22:05.0651 0x17dc fdPHost - ok
00:22:05.0663 0x17dc [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub C:\Windows\system32\fdrespub.dll
00:22:05.0767 0x17dc FDResPub - ok
00:22:05.0784 0x17dc [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
00:22:05.0802 0x17dc FileInfo - ok
00:22:05.0815 0x17dc [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
00:22:05.0940 0x17dc Filetrace - ok
00:22:05.0963 0x17dc [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
00:22:06.0006 0x17dc flpydisk - ok
00:22:06.0077 0x17dc [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
00:22:06.0093 0x17dc FltMgr - ok
00:22:06.0144 0x17dc [ E12C4928B32ACE04610259647F072635, B71B9C2DF45F33C4DAC88435129B08B0BCDBBE82E8C3AD0A95F00137CC8B619F ] FontCache C:\Windows\system32\FntCache.dll
00:22:06.0230 0x17dc FontCache - ok
00:22:06.0307 0x17dc [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
00:22:06.0320 0x17dc FontCache3.0.0.0 - ok
00:22:06.0386 0x17dc [ B53D64A7BA4BC661B0BAF6453F6FC743, FA08513F56A77AC941927D3422A787400C253075F1D56C2CB6E0EC86C4756ED2 ] ForceWare Intelligent Application Manager (IAM) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
00:22:06.0420 0x17dc ForceWare Intelligent Application Manager (IAM) - ok
00:22:06.0435 0x17dc [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
00:22:06.0447 0x17dc FsDepends - ok
00:22:06.0473 0x17dc [ D909075FA72C090F27AA926C32CB4612, F8610C20C4DD499D5B4ACEBD7107E52E25B6449AEED58D1A203F7D654B55C4DF ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
00:22:06.0483 0x17dc fssfltr - ok
00:22:06.0600 0x17dc [ 4CE9DAC1518FF7E77BD213E6394B9D77, D7D0D29DF93AC7DC5F85E385EEB45306C7BD87ACA7AAC5A8D47893D120C32C03 ] fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe
00:22:06.0659 0x17dc fsssvc - ok
00:22:06.0724 0x17dc [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A44583520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
00:22:06.0735 0x17dc Fs_Rec - ok
00:22:06.0775 0x17dc [ E306A24D9694C724FA2491278BF50FDB, 1D246B9C28550640EACBF8CF9DC980FD75106B92832D392FEBEF0C7012353091 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
00:22:06.0793 0x17dc fvevol - ok
00:22:06.0825 0x17dc [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
00:22:06.0837 0x17dc gagp30kx - ok
00:22:06.0869 0x17dc [ AB8A6A87D9D7255C3884D5B9541A6E80, D073B5D8A06EFA6415E8F22DFE486DE913113AE23F59CFC5EEF1B3E694CE86F3 ] GEARAspiWDM C:\Windows\system32\Drivers\GEARAspiWDM.sys
00:22:06.0878 0x17dc GEARAspiWDM - ok
00:22:06.0921 0x17dc [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc C:\Windows\System32\gpsvc.dll
00:22:07.0031 0x17dc gpsvc - ok
00:22:07.0121 0x17dc [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdate1ca24ec3816786f C:\Program Files\Google\Update\GoogleUpdate.exe
00:22:07.0132 0x17dc gupdate1ca24ec3816786f - ok
00:22:07.0158 0x17dc [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
00:22:07.0169 0x17dc gupdatem - ok
00:22:07.0201 0x17dc [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
00:22:07.0214 0x17dc gusvc - ok
00:22:07.0252 0x17dc [ 833051C6C6C42117191935F734CFBD97, 5EB5672ABC7994A4AFF855A572158B8BE4FC6E541CFD4B9BE4FF2739A9A6AFB8 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
00:22:07.0266 0x17dc hamachi - ok
00:22:07.0298 0x17dc [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
00:22:07.0354 0x17dc hcw85cir - ok
00:22:07.0384 0x17dc [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
00:22:07.0556 0x17dc HDAudBus - ok
00:22:07.0579 0x17dc [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
00:22:07.0654 0x17dc HidBatt - ok
00:22:07.0682 0x17dc [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth C:\Windows\system32\drivers\hidbth.sys
00:22:07.0754 0x17dc HidBth - ok
00:22:07.0800 0x17dc [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr C:\Windows\system32\drivers\hidir.sys
00:22:07.0910 0x17dc HidIr - ok
00:22:07.0943 0x17dc [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv C:\Windows\system32\hidserv.dll
00:22:08.0064 0x17dc hidserv - ok
00:22:08.0105 0x17dc [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
00:22:08.0197 0x17dc HidUsb - ok
00:22:08.0245 0x17dc [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc C:\Windows\system32\kmsvc.dll
00:22:08.0377 0x17dc hkmsvc - ok
00:22:08.0408 0x17dc [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
00:22:08.0499 0x17dc HomeGroupListener - ok
00:22:08.0554 0x17dc [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
00:22:08.0651 0x17dc HomeGroupProvider - ok
00:22:08.0704 0x17dc [ F5F4818A15AF6128A2BADD1B1F102413, E566CA6097502EE411756CD5BE6504B229BB5EAF78E0DA7C485B75E5BE9B0773 ] HP DS Service C:\Program Files\HP\HPBDSService\HPBDSService.exe
00:22:08.0753 0x17dc HP DS Service - detected UnsignedFile.Multi.Generic ( 1 )
00:22:12.0435 0x17dc Detect skipped due to KSN trusted
00:22:12.0435 0x17dc HP DS Service - ok
00:22:12.0484 0x17dc [ 3BF3B2F977115DD06475983790032BA7, 47C374EF12C01C7E2A881CD78C874B09F1563F96028289AFF7DB40E3C4BE9CFC ] HP LaserJet Service C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
00:22:12.0625 0x17dc HP LaserJet Service - detected UnsignedFile.Multi.Generic ( 1 )
00:22:16.0059 0x17dc Detect skipped due to KSN trusted
00:22:16.0059 0x17dc HP LaserJet Service - ok
00:22:16.0086 0x17dc [ 6F98A555ACF3C1B68FCC1F50E0FD2091, 2A37C2B9BD4B38A6D832CE847B8B65B7AA1E8B38D3463A3502DD4C5E12E5D7EC ] HPFXBULKLEDM C:\Windows\system32\drivers\hppcbulkio.sys
00:22:16.0109 0x17dc HPFXBULKLEDM - ok
00:22:16.0142 0x17dc [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
00:22:16.0177 0x17dc HpSAMD - ok
00:22:16.0221 0x17dc [ 487569E5DA56A5A432FF8AF6D3599CF9, 7C974D8379C60B4F69A20B01876C49181B0A63AC318C4BD0A21DABFF27A15C9D ] HTTP C:\Windows\system32\drivers\HTTP.sys
00:22:16.0477 0x17dc HTTP - ok
00:22:16.0502 0x17dc [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
00:22:16.0513 0x17dc hwpolicy - ok
00:22:16.0529 0x17dc [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
00:22:16.0773 0x17dc i8042prt - ok
00:22:16.0817 0x17dc [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE0105025B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
00:22:16.0864 0x17dc iaStorV - ok
00:22:16.0932 0x17dc [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
00:22:17.0167 0x17dc IDriverT - detected UnsignedFile.Multi.Generic ( 1 )
00:22:20.0814 0x17dc Detect skipped due to KSN trusted
00:22:20.0814 0x17dc IDriverT - ok
00:22:21.0158 0x17dc [ 3E9213A2A050BF429E91898C90F8B4E3, D80ABE5691087661B19F01927B631CB8C5291120B814B6F863F046E0D643E9E4 ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
00:22:21.0210 0x17dc idsvc - ok
00:22:21.0239 0x17dc IEEtwCollectorService - ok
00:22:21.0264 0x17dc [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp C:\Windows\system32\drivers\iirsp.sys
00:22:21.0276 0x17dc iirsp - ok
00:22:21.0332 0x17dc [ FC9735B66850CF8AEBBC1E207ECB2AD8, A2546FFB6E49784F052EFA036776E246CADA34D7146B3AA2D19AC1463D20B480 ] IISADMIN C:\Windows\system32\inetsrv\inetinfo.exe
00:22:21.0571 0x17dc IISADMIN - ok
00:22:21.0697 0x17dc [ B9C54120F46392100478F58F374E5709, A28EE8B0988F580D5984E815FC78DF41B169260814234AA0E453375542D0957B ] IKEEXT C:\Windows\System32\ikeext.dll
00:22:21.0921 0x17dc IKEEXT - ok
00:22:22.0075 0x17dc [ 3914EA9111DBEFFAF1C68200817768AD, 56ECF70477CB0E4630ADEE2E5ECEEBC34F3DAF7CB73AB227BD7DD876170A21CA ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
00:22:22.0207 0x17dc IntcAzAudAddService - ok
00:22:22.0252 0x17dc [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide C:\Windows\system32\drivers\intelide.sys
00:22:22.0270 0x17dc intelide - ok
00:22:22.0302 0x17dc [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm C:\Windows\system32\drivers\intelppm.sys
00:22:22.0589 0x17dc intelppm - ok
00:22:22.0632 0x17dc [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
00:22:22.0801 0x17dc IPBusEnum - ok
00:22:22.0835 0x17dc [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
00:22:23.0041 0x17dc IpFilterDriver - ok
00:22:23.0080 0x17dc [ 58F67245D041FBE7AF88F4EAF79DF0FA, 67468D6A46FF4D87AD321BFEA42F2FC843D09AA292A119C76D4D795D06028F96 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
00:22:23.0342 0x17dc iphlpsvc - ok
00:22:23.0391 0x17dc [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
00:22:23.0709 0x17dc IPMIDRV - ok
00:22:23.0741 0x17dc [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
00:22:24.0050 0x17dc IPNAT - ok
00:22:24.0082 0x17dc [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM C:\Windows\system32\drivers\irenum.sys
00:22:24.0307 0x17dc IRENUM - ok
00:22:24.0352 0x17dc [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp C:\Windows\system32\drivers\isapnp.sys
00:22:24.0375 0x17dc isapnp - ok
00:22:24.0412 0x17dc [ EB34CE31FABD4DC4343FD2AD16D2CAF9, D21C91227A15DA89ECF522345D0AB80B3B7FC24A230596DABDB8BD3B7554CE8C ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
00:22:24.0429 0x17dc iScsiPrt - ok
00:22:24.0457 0x17dc [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
00:22:24.0469 0x17dc kbdclass - ok
00:22:24.0492 0x17dc [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
00:22:24.0809 0x17dc kbdhid - ok
00:22:24.0851 0x17dc [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] KeyIso C:\Windows\system32\lsass.exe
00:22:25.0055 0x17dc KeyIso - ok
00:22:25.0086 0x17dc [ 746F89CE0C6569C589E6AC4D3DA82D41, 6D41311CBA8BB7C9C09C1757D7947539B67FE3EFF6299502176C673809BAEAD8 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
00:22:25.0107 0x17dc KSecDD - ok
00:22:25.0132 0x17dc [ D800E1EAF33630A1636BB21E8256AA92, D07542A242E0D52B494BE63A6A141207D0A59CF66ABEBA9CE33877594BF7BA5D ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
00:22:25.0150 0x17dc KSecPkg - ok
00:22:25.0207 0x17dc [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm C:\Windows\system32\msdtckrm.dll
00:22:25.0513 0x17dc KtmRm - ok
00:22:25.0554 0x17dc [ 0C6E346CDE730CF1356DD69AD6E9BC42, 75FD3E138D18FD602E38E446AA8CD29E8D60A8B64C863E59DA5EC08B717F16CA ] L8042Kbd C:\Windows\system32\DRIVERS\L8042Kbd.sys
00:22:25.0576 0x17dc L8042Kbd - ok
00:22:25.0624 0x17dc [ 8A5993705ADD14352C9A279FA8338334, D1EA18B82DED503B81214A797F4B074D62B73E0C19579B4A7122CE6FBD005C34 ] L8042mou C:\Windows\system32\DRIVERS\L8042mou.Sys
00:22:25.0657 0x17dc L8042mou - ok
00:22:25.0697 0x17dc [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB5060356A3B07449712B21B50E03378BEF04AF180F9 ] LanmanServer C:\Windows\system32\srvsvc.dll
00:22:26.0020 0x17dc LanmanServer - ok
00:22:26.0060 0x17dc [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
00:22:26.0320 0x17dc LanmanWorkstation - ok
00:22:26.0398 0x17dc [ 07B1888209C54B675FFCCBDE9F06D2C6, F80DA304CEFC062D4E604C0A7A2B60361161F259FBE8E94332F6BAD640630D23 ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe
00:22:26.0508 0x17dc LightScribeService - detected UnsignedFile.Multi.Generic ( 1 )
00:22:30.0079 0x17dc Detect skipped due to KSN trusted
00:22:30.0079 0x17dc LightScribeService - ok
00:22:30.0119 0x17dc [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
00:22:30.0359 0x17dc lltdio - ok
00:22:30.0407 0x17dc [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc C:\Windows\System32\lltdsvc.dll
00:22:30.0715 0x17dc lltdsvc - ok
00:22:30.0745 0x17dc [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts C:\Windows\System32\lmhsvc.dll
00:22:31.0017 0x17dc lmhosts - ok
00:22:31.0062 0x17dc [ 9837E55673818ECD8FEBB47F7F77521A, 75DD22E1CB38BBE796EC6918D03E8106B05B977A53FACEB2AFEB8D4D222F383B ] LMouKE C:\Windows\system32\DRIVERS\LMouKE.Sys
00:22:31.0103 0x17dc LMouKE - ok
00:22:31.0140 0x17dc [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
00:22:31.0153 0x17dc LSI_FC - ok
00:22:31.0197 0x17dc [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
00:22:31.0210 0x17dc LSI_SAS - ok
00:22:31.0237 0x17dc [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
00:22:31.0249 0x17dc LSI_SAS2 - ok
00:22:31.0277 0x17dc [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
00:22:31.0304 0x17dc LSI_SCSI - ok
00:22:31.0336 0x17dc [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv C:\Windows\system32\drivers\luafv.sys
00:22:31.0659 0x17dc luafv - ok
00:22:31.0694 0x17dc [ FB40FAF577E94CA5F6D4D87F50E86680, 42993F2E20AD105E145AF37BC16A159BEA36AE3EF375D8AE7A69B074392D7821 ] LvHidSvc C:\Windows\system32\lvhidsvc.exe
00:22:31.0977 0x17dc LvHidSvc - detected UnsignedFile.Multi.Generic ( 1 )
00:22:35.0489 0x17dc Detect skipped due to KSN trusted
00:22:35.0489 0x17dc LvHidSvc - ok
00:22:35.0532 0x17dc [ A3E700D78EEC390F1208098CDCA5C6B6, 37D92D4AF24C43B4C468974CBBD55B6DF3AB92780560285039A0B078E566985A ] MarvinBus C:\Windows\system32\DRIVERS\MarvinBus.sys
00:22:35.0632 0x17dc MarvinBus - ok
00:22:35.0678 0x17dc [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432FD2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
00:22:35.0823 0x17dc Mcx2Svc - ok
00:22:35.0860 0x17dc [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas C:\Windows\system32\drivers\megasas.sys
00:22:35.0871 0x17dc megasas - ok
00:22:35.0924 0x17dc [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
00:22:35.0960 0x17dc MegaSR - ok
00:22:36.0002 0x17dc [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS C:\Windows\system32\mmcss.dll
00:22:36.0178 0x17dc MMCSS - ok
00:22:36.0197 0x17dc [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem C:\Windows\system32\drivers\modem.sys
00:22:36.0324 0x17dc Modem - ok
00:22:36.0350 0x17dc [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
00:22:36.0600 0x17dc monitor - ok
00:22:36.0642 0x17dc [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
00:22:36.0653 0x17dc mouclass - ok
00:22:36.0713 0x17dc [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
00:22:36.0962 0x17dc mouhid - ok
00:22:37.0025 0x17dc [ 644905A19D0F37F2233DFCE53BC4BC19, F52CB40AA0FD1EBF8CBF0F3BFB20C47142C637719840877FB93F10D085EB8C2B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
00:22:37.0038 0x17dc mountmgr - ok
00:22:37.0110 0x17dc [ 269BDB3CB77EB77BABE2862BEAB1F208, EC693365C73D59244CB77E181042128A9901BA5C1109CD4F1B9A2008DF1F9582 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
00:22:37.0125 0x17dc MozillaMaintenance - ok
00:22:37.0171 0x17dc [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio C:\Windows\system32\drivers\mpio.sys
00:22:37.0185 0x17dc mpio - ok
00:22:37.0219 0x17dc [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
00:22:37.0422 0x17dc mpsdrv - ok
00:22:37.0473 0x17dc [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc C:\Windows\system32\mpssvc.dll
00:22:37.0660 0x17dc MpsSvc - ok
00:22:37.0701 0x17dc [ 03F899F521D2AAED1C55008F734DF252, 4E56A51476A13F5630719018037B1F63DF9ACEA1CFE782AF04E669BD696954C5 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
00:22:37.0984 0x17dc MRxDAV - ok
00:22:38.0023 0x17dc [ 5D16C921E3671636C0EBA3BBAAC5FD25, 5BC107B95CAFC88F51FBB9F657B99944B20627A2B618F263093D7045E4FFD65C ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
00:22:38.0208 0x17dc mrxsmb - ok
00:22:38.0242 0x17dc [ 6D17A4791ACA19328C685D256349FEFC, 012AA3D84EEAAF53780D06D2D11B9727DFC3441F3FAD75BC9E751FB814403668 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
00:22:38.0474 0x17dc mrxsmb10 - ok
00:22:38.0507 0x17dc [ B81F204D146000BE76651A50670A5E9E, 78193D0F967BE9829E53F9B500342934B4B1E1F4CEFC444382959E2061BC3B17 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
00:22:38.0653 0x17dc mrxsmb20 - ok
00:22:38.0686 0x17dc [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci C:\Windows\system32\drivers\msahci.sys
00:22:38.0697 0x17dc msahci - ok
00:22:38.0745 0x17dc [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1CD0835E8234405BB80084065ED05363B77868397304 ] msdsm C:\Windows\system32\drivers\msdsm.sys
00:22:38.0758 0x17dc msdsm - ok
00:22:38.0805 0x17dc [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC C:\Windows\System32\msdtc.exe
00:22:39.0025 0x17dc MSDTC - ok
00:22:39.0061 0x17dc [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs C:\Windows\system32\drivers\Msfs.sys
00:22:39.0263 0x17dc Msfs - ok
00:22:39.0275 0x17dc [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
00:22:39.0512 0x17dc mshidkmdf - ok
00:22:39.0537 0x17dc [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
00:22:39.0547 0x17dc msisadrv - ok
00:22:39.0579 0x17dc [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI C:\Windows\system32\iscsiexe.dll
00:22:39.0882 0x17dc MSiSCSI - ok
00:22:39.0888 0x17dc msiserver - ok
00:22:39.0938 0x17dc [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
00:22:40.0129 0x17dc MSKSSRV - ok
00:22:40.0140 0x17dc [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
00:22:40.0381 0x17dc MSPCLOCK - ok
00:22:40.0398 0x17dc [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
00:22:40.0595 0x17dc MSPQM - ok
00:22:40.0622 0x17dc [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
00:22:40.0637 0x17dc MsRPC - ok
00:22:40.0652 0x17dc [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
00:22:40.0663 0x17dc mssmbios - ok
00:22:40.0688 0x17dc [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
00:22:40.0927 0x17dc MSTEE - ok
00:22:40.0957 0x17dc [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
00:22:41.0212 0x17dc MTConfig - ok
00:22:41.0245 0x17dc [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup C:\Windows\system32\Drivers\mup.sys
00:22:41.0257 0x17dc Mup - ok
00:22:41.0285 0x17dc [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent C:\Windows\system32\qagentRT.dll
00:22:41.0550 0x17dc napagent - ok
00:22:41.0583 0x17dc [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
00:22:41.0796 0x17dc NativeWifiP - ok
00:22:41.0909 0x17dc [ 8C9C922D71F1CD4DEF73F186416B7896, 15FF43CD90C7913F83B35F2E7986561584588E8A45196EBD965C3A355836A9C7 ] NDIS C:\Windows\system32\drivers\ndis.sys
00:22:41.0947 0x17dc NDIS - ok
00:22:41.0969 0x17dc [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
00:22:42.0179 0x17dc NdisCap - ok
00:22:42.0228 0x17dc [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
00:22:42.0509 0x17dc NdisTapi - ok
00:22:42.0558 0x17dc [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
00:22:42.0810 0x17dc Ndisuio - ok
00:22:42.0835 0x17dc [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
00:22:43.0096 0x17dc NdisWan - ok
00:22:43.0111 0x17dc [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
00:22:43.0483 0x17dc NDProxy - ok
00:22:43.0518 0x17dc [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
00:22:43.0831 0x17dc NetBIOS - ok
00:22:43.0858 0x17dc [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
00:22:44.0146 0x17dc NetBT - ok
00:22:44.0167 0x17dc [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] Netlogon C:\Windows\system32\lsass.exe
00:22:44.0411 0x17dc Netlogon - ok
00:22:44.0473 0x17dc [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman C:\Windows\System32\netman.dll
00:22:44.0764 0x17dc Netman - ok
00:22:44.0808 0x17dc [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:22:44.0839 0x17dc NetMsmqActivator - ok
00:22:44.0847 0x17dc [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:22:44.0863 0x17dc NetPipeActivator - ok
00:22:44.0918 0x17dc [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm C:\Windows\System32\netprofm.dll
00:22:45.0195 0x17dc netprofm - ok
00:22:45.0225 0x17dc [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:22:45.0240 0x17dc NetTcpActivator - ok
00:22:45.0262 0x17dc [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:22:45.0278 0x17dc NetTcpPortSharing - ok
00:22:45.0312 0x17dc [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
00:22:45.0324 0x17dc nfrd960 - ok
00:22:45.0400 0x17dc [ F115C5CD29E512F18BD7138A094B77E5, 90C2CE8B256EE9AABF674ADDE7F85E91DAF48EA368452D03C187A4AE027D4E39 ] NlaSvc C:\Windows\System32\nlasvc.dll
00:22:45.0720 0x17dc NlaSvc - ok
00:22:45.0775 0x17dc [ B9730495E0CF674680121E34BD95A73B, 1A3DD943B0EEA19A676175825CB135825ECF41404B59349AC9B1E6D137FA9B46 ] npf C:\Windows\system32\drivers\npf.sys
00:22:45.0793 0x17dc npf - ok
00:22:45.0826 0x17dc [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs C:\Windows\system32\drivers\Npfs.sys
00:22:46.0112 0x17dc Npfs - ok
00:22:46.0136 0x17dc [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi C:\Windows\system32\nsisvc.dll
00:22:46.0333 0x17dc nsi - ok
00:22:46.0346 0x17dc [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
00:22:46.0638 0x17dc nsiproxy - ok
00:22:46.0685 0x17dc [ 168437A522D178DF6A372F09782B084F, A7FBFEF6B21926B8F405CC0D5C5EA618C3E8C93EF97BE07EF407BAC54099296B ] nSvcIp C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
00:22:46.0715 0x17dc nSvcIp - ok
00:22:46.0836 0x17dc [ C8DFF8D07755A66C7A4A738930F0FEAC, A2CC58312CE57988ABD976155BE91F558DCEC4C23481C6FBE64B361D511A36EA ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
00:22:46.0924 0x17dc Ntfs - ok
00:22:47.0016 0x17dc [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null C:\Windows\system32\drivers\Null.sys
00:22:47.0249 0x17dc Null - ok
00:22:47.0308 0x17dc [ 1DE923088878B495CD4219E47BA34EB8, 68B8FF593E2972DC239BB9A9E2436A513DBDD16FAC071117AFD45285AD004EC1 ] NVNET C:\Windows\system32\DRIVERS\nvmf6232.sys
00:22:47.0347 0x17dc NVNET - ok
00:22:47.0385 0x17dc [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid C:\Windows\system32\drivers\nvraid.sys
00:22:47.0399 0x17dc nvraid - ok
00:22:47.0428 0x17dc [ 049E81B6FB41C73619ED3FE4DF7D8638, A31AF5271A36356148BF60952C40584652A1F4B8A06B027E9C3E7E4BEFFC3A8B ] nvrd32 C:\Windows\system32\drivers\nvrd32.sys
00:22:47.0487 0x17dc nvrd32 - ok
00:22:47.0514 0x17dc [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970DD29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor C:\Windows\system32\drivers\nvstor.sys
00:22:47.0529 0x17dc nvstor - ok
00:22:47.0557 0x17dc [ 7EBA6C9A0A295B1559EFB9062E701218, AB890B1CE155ABA6E633B9A4D422BFF42322D1CB067C237A926F36C8A5ADC8A2 ] nvstor32 C:\Windows\system32\drivers\nvstor32.sys
00:22:47.0597 0x17dc nvstor32 - ok
00:22:47.0626 0x17dc [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
00:22:47.0640 0x17dc nv_agp - ok
00:22:47.0656 0x17dc [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
00:22:47.0948 0x17dc ohci1394 - ok
00:22:48.0013 0x17dc [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B, 0340E77E8EC2ADC21B8DDD9C9CC95B3F4BCAFD54618A333C72D7D9587D593B83 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
00:22:48.0039 0x17dc ose - ok
00:22:48.0272 0x17dc [ EE5756BDA5BE5891270E0CC6CEC44096, EA18073EEE0F461B14C539D49A7DD91D33AB0C503236F67F70A000835FAAC890 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
00:22:48.0435 0x17dc osppsvc - ok
00:22:48.0483 0x17dc [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
00:22:48.0780 0x17dc p2pimsvc - ok
00:22:48.0831 0x17dc [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc C:\Windows\system32\p2psvc.dll
00:22:49.0059 0x17dc p2psvc - ok
00:22:49.0087 0x17dc [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport C:\Windows\system32\drivers\parport.sys
00:22:49.0318 0x17dc Parport - ok
00:22:49.0350 0x17dc [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0EEBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr C:\Windows\system32\drivers\partmgr.sys
00:22:49.0362 0x17dc partmgr - ok
00:22:49.0379 0x17dc [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm C:\Windows\system32\drivers\parvdm.sys
00:22:49.0647 0x17dc Parvdm - ok
00:22:49.0690 0x17dc [ 52954BE460EC6C54C0ACB2B3B126FFC6, 9F9878EC5ABC74C5A8EE8E1D940F0934F081895B07D844F42F80A638FE713F7B ] PcaSvc C:\Windows\System32\pcasvc.dll
00:22:49.0991 0x17dc PcaSvc - ok
00:22:50.0013 0x17dc [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD569416C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci C:\Windows\system32\drivers\pci.sys
00:22:50.0055 0x17dc pci - ok
00:22:50.0079 0x17dc [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide C:\Windows\system32\drivers\pciide.sys
00:22:50.0090 0x17dc pciide - ok
00:22:50.0128 0x17dc [ 1BEBE7DE8508A02650CDCE45C664C2A2, 67841EA7F1F6B7F19ABD38A004B23610A21AD5BD5E508EED16CC7856CBE44D9C ] PCLEPCI C:\Windows\system32\drivers\pclepci.sys
00:22:50.0428 0x17dc PCLEPCI - detected UnsignedFile.Multi.Generic ( 1 )
00:22:54.0226 0x17dc Detect skipped due to KSN trusted
00:22:54.0226 0x17dc PCLEPCI - ok
00:22:54.0293 0x17dc [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
00:22:54.0315 0x17dc pcmcia - ok
00:22:54.0342 0x17dc [ 5B6C11DE7E839C05248CED8825470FEF, DB57DFD02C18461B1B383DF759730FFEE9C7FA8577E1679FD4740A590303EE79 ] pcouffin C:\Windows\system32\Drivers\pcouffin.sys
00:22:54.0386 0x17dc pcouffin - ok
00:22:54.0410 0x17dc [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw C:\Windows\system32\drivers\pcw.sys
00:22:54.0434 0x17dc pcw - ok
00:22:54.0492 0x17dc [ AEBC369F7DC72AB3F5B9BDF34FA0D43F, 2A819154AC6C23E97C583D90B4D0C112188B7AE9D8D9B3F88811BFCED124E551 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
00:22:54.0758 0x17dc PEAUTH - ok
00:22:54.0985 0x17dc [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA402044824DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla C:\Windows\system32\pla.dll
00:22:55.0295 0x17dc pla - ok
00:22:55.0340 0x17dc [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay C:\Windows\system32\umpnpmgr.dll
00:22:55.0618 0x17dc PlugPlay - ok
00:22:55.0660 0x17dc [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
00:22:55.0860 0x17dc PNRPAutoReg - ok
00:22:55.0938 0x17dc [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
00:22:56.0160 0x17dc PNRPsvc - ok
00:22:56.0216 0x17dc [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
00:22:56.0538 0x17dc PolicyAgent - ok
00:22:56.0585 0x17dc [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power C:\Windows\system32\umpo.dll
00:22:56.0688 0x17dc Power - ok
00:22:56.0765 0x17dc [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
00:22:56.0904 0x17dc PptpMiniport - ok
00:22:56.0936 0x17dc [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB04007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor C:\Windows\system32\drivers\processr.sys
00:22:57.0072 0x17dc Processor - ok
00:22:57.0161 0x17dc [ FD9692A3D31E021207D3C2A9DDDC2BE3, 5295EFAD9BD4B59996935A41825392C12A4C968D161BEEA37797F90AF8E54229 ] ProfSvc C:\Windows\system32\profsvc.dll
00:22:57.0398 0x17dc ProfSvc - ok
00:22:57.0417 0x17dc [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] ProtectedStorage C:\Windows\system32\lsass.exe
00:22:57.0606 0x17dc ProtectedStorage - ok
00:22:57.0633 0x17dc [ 390C204CED3785609AB24E9C52054A84, D997A9EAAE4A7FED9C2FEBD1AA7D1171431B9C9D56F8BFB587DCAE26203FF4D2 ] Ps2 C:\Windows\system32\DRIVERS\PS2.sys
00:22:57.0901 0x17dc Ps2 - ok
00:22:57.0942 0x17dc [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
00:22:58.0194 0x17dc Psched - ok
00:22:58.0239 0x17dc [ 49452BFCEC22F36A7A9B9C2181BC3042, C01A2005E9897B142FF9BC6155770F70C19725C425E48D14239195E81E2E42D0 ] PxHelp20 C:\Windows\system32\Drivers\PxHelp20.sys
00:22:58.0283 0x17dc PxHelp20 - ok
00:22:58.0641 0x17dc [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300 C:\Windows\system32\drivers\ql2300.sys
00:22:58.0692 0x17dc ql2300 - ok
00:22:58.0713 0x17dc [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
00:22:58.0727 0x17dc ql40xx - ok
00:22:58.0763 0x17dc [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE C:\Windows\system32\qwave.dll
00:22:59.0006 0x17dc QWAVE - ok
00:22:59.0030 0x17dc [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
00:22:59.0272 0x17dc QWAVEdrv - ok
00:22:59.0302 0x17dc [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
00:22:59.0494 0x17dc RasAcd - ok
00:22:59.0528 0x17dc [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
00:22:59.0815 0x17dc RasAgileVpn - ok
00:22:59.0848 0x17dc [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto C:\Windows\System32\rasauto.dll
00:23:00.0123 0x17dc RasAuto - ok
00:23:00.0147 0x17dc [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
00:23:00.0382 0x17dc Rasl2tp - ok
00:23:00.0423 0x17dc [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan C:\Windows\System32\rasmans.dll
00:23:00.0624 0x17dc RasMan - ok
00:23:00.0644 0x17dc [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
00:23:00.0884 0x17dc RasPppoe - ok
00:23:00.0908 0x17dc [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
00:23:01.0097 0x17dc RasSstp - ok
00:23:01.0121 0x17dc [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
00:23:01.0350 0x17dc rdbss - ok
00:23:01.0372 0x17dc [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus C:\Windows\system32\drivers\rdpbus.sys
00:23:01.0544 0x17dc rdpbus - ok
00:23:01.0557 0x17dc [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
00:23:01.0788 0x17dc RDPCDD - ok
00:23:01.0831 0x17dc [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
00:23:02.0140 0x17dc RDPENCDD - ok
00:23:02.0178 0x17dc [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
00:23:02.0409 0x17dc RDPREFMP - ok
00:23:02.0465 0x17dc [ CD9214A6AE17D188D17C3CF8CB9CC693, 2E16FF1F7446F0600D6519010FD05A30B94D97167C16B3E7FC396A97D8139D60 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
00:23:02.0675 0x17dc RDPWD - ok
00:23:02.0719 0x17dc [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
00:23:02.0734 0x17dc rdyboost - ok
00:23:02.0768 0x17dc [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess C:\Windows\System32\mprdim.dll
00:23:03.0017 0x17dc RemoteAccess - ok
00:23:03.0048 0x17dc [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry C:\Windows\system32\regsvc.dll
00:23:03.0279 0x17dc RemoteRegistry - ok
00:23:03.0317 0x17dc [ CB928D9E6DAF51879DD6BA8D02F01321, DFD263B67DDF98AE09AF6D6986CBC7BE3206BCE8403AAC51BCF9459E78233D12 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
00:23:03.0506 0x17dc RFCOMM - ok
00:23:03.0530 0x17dc [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
00:23:03.0655 0x17dc RpcEptMapper - ok
00:23:03.0668 0x17dc [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator C:\Windows\system32\locator.exe
00:23:03.0879 0x17dc RpcLocator - ok
00:23:03.0922 0x17dc [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs C:\Windows\system32\rpcss.dll
00:23:04.0149 0x17dc RpcSs - ok
00:23:04.0180 0x17dc [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
00:23:04.0376 0x17dc rspndr - ok
00:23:04.0392 0x17dc [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] SamSs C:\Windows\system32\lsass.exe
00:23:04.0593 0x17dc SamSs - ok
00:23:04.0631 0x17dc [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
00:23:04.0644 0x17dc sbp2port - ok
00:23:04.0755 0x17dc [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr C:\Windows\System32\SCardSvr.dll
00:23:04.0977 0x17dc SCardSvr - ok
00:23:05.0006 0x17dc [ C23DBD9BFBA8B1170706E0896B3CF7DA, 3898674C961850581E20B65D96E651A45A23429AB5D11F712704E181B25B528B ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys
00:23:05.0178 0x17dc SCDEmu - detected UnsignedFile.Multi.Generic ( 1 )
00:23:08.0738 0x17dc Detect skipped due to KSN trusted
00:23:08.0738 0x17dc SCDEmu - ok
00:23:08.0769 0x17dc [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
00:23:08.0946 0x17dc scfilter - ok
00:23:09.0000 0x17dc [ A04BB13F8A72F8B6E8B4071723E4E336, E63287FF71C39CBF64C3347C455324C8437F9CF398153E269543588B65389502 ] Schedule C:\Windows\system32\schedsvc.dll
00:23:09.0271 0x17dc Schedule - ok
00:23:09.0301 0x17dc [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc C:\Windows\System32\certprop.dll
00:23:09.0501 0x17dc SCPolicySvc - ok
00:23:09.0516 0x17dc [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC C:\Windows\System32\SDRSVC.dll
00:23:09.0662 0x17dc SDRSVC - ok
00:23:09.0731 0x17dc [ 4A5809A1D796E2675AC0332BF7B0CB11, 7EEEC85A397F04A9460DC37A070D115E19114D9A3E5D9D7E8021F60A7986C8C1 ] SeaPort C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
00:23:09.0748 0x17dc SeaPort - ok
00:23:09.0776 0x17dc [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\Windows\system32\drivers\secdrv.sys
00:23:09.0966 0x17dc secdrv - ok
00:23:09.0993 0x17dc [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AAF39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon C:\Windows\system32\seclogon.dll
00:23:10.0202 0x17dc seclogon - ok
00:23:10.0231 0x17dc [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS C:\Windows\System32\sens.dll
00:23:10.0476 0x17dc SENS - ok
00:23:10.0513 0x17dc [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc C:\Windows\system32\sensrsvc.dll
00:23:10.0677 0x17dc SensrSvc - ok
00:23:10.0711 0x17dc [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum C:\Windows\system32\drivers\serenum.sys
00:23:10.0858 0x17dc Serenum - ok
00:23:10.0876 0x17dc [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial C:\Windows\system32\drivers\serial.sys
00:23:11.0151 0x17dc Serial - ok
00:23:11.0184 0x17dc [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse C:\Windows\system32\drivers\sermouse.sys
00:23:11.0352 0x17dc sermouse - ok
00:23:11.0394 0x17dc [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv C:\Windows\system32\sessenv.dll
00:23:11.0622 0x17dc SessionEnv - ok
00:23:11.0640 0x17dc [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
00:23:11.0859 0x17dc sffdisk - ok
00:23:11.0907 0x17dc [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
00:23:12.0120 0x17dc sffp_mmc - ok
00:23:12.0156 0x17dc [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
00:23:12.0376 0x17dc sffp_sd - ok
00:23:12.0411 0x17dc [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
00:23:12.0698 0x17dc sfloppy - ok
00:23:12.0735 0x17dc [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess C:\Windows\System32\ipnathlp.dll
00:23:12.0902 0x17dc SharedAccess - ok
00:23:12.0964 0x17dc [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
00:23:13.0179 0x17dc ShellHWDetection - ok
00:23:13.0205 0x17dc [ F5AAA8CDDA25B6387AF590D676D25BAD, 0485DC8206F0CFE9D920D8A6AC517EA2472E9267A86878FCB468D2D54D42E646 ] simptcp C:\Windows\System32\tcpsvcs.exe
00:23:13.0454 0x17dc simptcp - ok
00:23:13.0496 0x17dc [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp C:\Windows\system32\drivers\sisagp.sys
00:23:13.0508 0x17dc sisagp - ok
00:23:13.0535 0x17dc [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
00:23:13.0547 0x17dc SiSRaid2 - ok
00:23:13.0570 0x17dc [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
00:23:13.0586 0x17dc SiSRaid4 - ok
00:23:13.0743 0x17dc [ A9C057A9463C25490CF99EA8DF8A4B35, 8F4D1C40D0F17EDBF84ED455B8946F782C7552383F0A07E410A9B6CFF7F51D63 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
00:23:13.0763 0x17dc SkypeUpdate - ok
00:23:13.0811 0x17dc [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb C:\Windows\system32\DRIVERS\smb.sys
00:23:14.0067 0x17dc Smb - ok
00:23:14.0127 0x17dc [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
00:23:14.0301 0x17dc SNMPTRAP - ok
00:23:14.0319 0x17dc [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr C:\Windows\system32\drivers\spldr.sys
00:23:14.0330 0x17dc spldr - ok
00:23:14.0395 0x17dc [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler C:\Windows\System32\spoolsv.exe
00:23:14.0567 0x17dc Spooler - ok
00:23:14.0961 0x17dc [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc C:\Windows\system32\sppsvc.exe
00:23:15.0393 0x17dc sppsvc - ok
00:23:15.0435 0x17dc [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify C:\Windows\system32\sppuinotify.dll
00:23:15.0709 0x17dc sppuinotify - ok
00:23:15.0782 0x17dc [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv C:\Windows\system32\DRIVERS\srv.sys
00:23:15.0921 0x17dc srv - ok
00:23:15.0982 0x17dc [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
00:23:16.0242 0x17dc srv2 - ok
00:23:16.0289 0x17dc [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
00:23:16.0524 0x17dc srvnet - ok
00:23:16.0561 0x17dc [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
00:23:16.0782 0x17dc SSDPSRV - ok
00:23:16.0798 0x17dc [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc C:\Windows\system32\sstpsvc.dll
00:23:17.0013 0x17dc SstpSvc - ok
00:23:17.0036 0x17dc [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor C:\Windows\system32\drivers\stexstor.sys
00:23:17.0047 0x17dc stexstor - ok
00:23:17.0087 0x17dc [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc C:\Windows\System32\wiaservc.dll
00:23:17.0313 0x17dc StiSvc - ok
00:23:17.0344 0x17dc [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
00:23:17.0354 0x17dc swenum - ok
00:23:17.0388 0x17dc [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv C:\Windows\System32\swprv.dll
00:23:17.0653 0x17dc swprv - ok
00:23:17.0738 0x17dc [ 36650D618CA34C9D357DFD3D89B2C56F, 7C3774E53DCF32CB3A4B3504E32D2A651E18467FA0A6AC4C7993C696741B704B ] SysMain C:\Windows\system32\sysmain.dll
00:23:17.0862 0x17dc SysMain - ok
00:23:17.0877 0x17dc [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\Windows\System32\TabSvc.dll
00:23:18.0075 0x17dc TabletInputService - ok
00:23:18.0107 0x17dc [ 0C82061920A2DE35D33C2C2BB83B1E98, A7CA6677E32E0E83125D91AB40529AEFF3513857A5F43366987AB43FF4B18257 ] tap0801 C:\Windows\system32\DRIVERS\tap0801.sys
00:23:18.0283 0x17dc tap0801 - detected UnsignedFile.Multi.Generic ( 1 )
00:23:22.0164 0x17dc Detect skipped due to KSN trusted
00:23:22.0164 0x17dc tap0801 - ok
00:23:22.0211 0x17dc [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv C:\Windows\System32\tapisrv.dll
00:23:22.0331 0x17dc TapiSrv - ok
00:23:22.0372 0x17dc [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS C:\Windows\System32\tbssvc.dll
00:23:22.0543 0x17dc TBS - ok
00:23:22.0725 0x17dc [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
00:23:22.0776 0x17dc Tcpip - ok
00:23:22.0820 0x17dc [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
00:23:22.0862 0x17dc TCPIP6 - ok
00:23:22.0908 0x17dc [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
00:23:23.0119 0x17dc tcpipreg - ok
00:23:23.0165 0x17dc [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
00:23:23.0374 0x17dc TDPIPE - ok
00:23:23.0423 0x17dc [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
00:23:23.0660 0x17dc TDTCP - ok
00:23:23.0763 0x17dc [ 7FE680A3DFA421C4A8E4879AE4C5AAB0, A4C64E155AB2843823CD3586756BA7681CFDEA50812095468221503BBAD30DCD ] tdx C:\Windows\system32\DRIVERS\tdx.sys
00:23:23.0957 0x17dc tdx - ok
00:23:24.0752 0x17dc [ 4ACFC5853A3F0C6C2F54E537C23EE90F, 47D81F471A250696A1A0D19294FC553EB88D813612A8351C89F65D7BF99C8532 ] TeamViewer9 C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
00:23:24.0908 0x17dc TeamViewer9 - ok
00:23:24.0996 0x17dc [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
00:23:25.0008 0x17dc TermDD - ok
00:23:25.0125 0x17dc [ FCFD4F50419B4BC72E80066DA10D2E54, 7C2314A57A404525F0444986332DBAE0964A3359374671598387051D7AAE72AE ] TermService C:\Windows\System32\termsrv.dll
00:23:25.0201 0x17dc TermService - ok
00:23:25.0262 0x17dc [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes C:\Windows\system32\themeservice.dll
00:23:25.0495 0x17dc Themes - ok
00:23:25.0517 0x17dc [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER C:\Windows\system32\mmcss.dll
00:23:25.0820 0x17dc THREADORDER - ok
00:23:25.0855 0x17dc [ B0B3122BFF3910E0BA97014045467778, C4D8A2A9C18C24B609B084DD63F059E177B42D018C1975458857463239624156 ] tifsfilter C:\Windows\system32\DRIVERS\tifsfilt.sys
00:23:25.0888 0x17dc tifsfilter - ok
00:23:25.0994 0x17dc [ 13BFE330880AC0CE8672D00AA5AFF738, 0A46BDDCA70109617779A11BAE6D30FEB84DE000D85C9ACD1E293B82C2E5BA64 ] timounter C:\Windows\system32\DRIVERS\timntr.sys
00:23:26.0024 0x17dc timounter - ok
00:23:26.0053 0x17dc [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks C:\Windows\System32\trkwks.dll
00:23:26.0356 0x17dc TrkWks - ok
00:23:26.0394 0x17dc [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
00:23:26.0666 0x17dc TrustedInstaller - ok
00:23:26.0734 0x17dc [ 6C5139E4283249518F7743D7043775B3, 58684E8C90EBAC65459A97C905CDCFE3A915CFF7E8E96071DE1AC3489F85E67F ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
00:23:27.0020 0x17dc tssecsrv - ok
00:23:27.0053 0x17dc [ FD1D6C73E6333BE727CBCC6054247654, 6F7B9AE1A5986204DB3348D13B303F30FC17624939DA74D6BD114FAEED0FB30E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
00:23:27.0300 0x17dc TsUsbFlt - ok
00:23:27.0324 0x17dc [ 01246F0BAAD7B68EC0F472AA41E33282, 51F975AF029AD015576FFFA3E88F5DBB8B40C7CD30ECDEDE8AFABCB08C954199 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
00:23:27.0549 0x17dc TsUsbGD - ok
00:23:27.0580 0x17dc TuneUpUtilitiesDrv - ok
00:23:27.0598 0x17dc [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
00:23:27.0892 0x17dc tunnel - ok
00:23:27.0914 0x17dc [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
00:23:27.0927 0x17dc uagp35 - ok
00:23:27.0952 0x17dc [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
00:23:28.0223 0x17dc udfs - ok
00:23:28.0272 0x17dc [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect C:\Windows\system32\UI0Detect.exe
00:23:28.0566 0x17dc UI0Detect - ok
00:23:28.0615 0x17dc [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
00:23:28.0627 0x17dc uliagpkx - ok
00:23:28.0664 0x17dc [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
00:23:28.0912 0x17dc umbus - ok
00:23:28.0947 0x17dc [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass C:\Windows\system32\drivers\umpass.sys
00:23:29.0199 0x17dc UmPass - ok
00:23:29.0244 0x17dc [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost C:\Windows\System32\upnphost.dll
00:23:29.0452 0x17dc upnphost - ok
00:23:29.0511 0x17dc [ A1977C315BF5691DA99235AA4A6907AF, 34B52FBA83F0E1C6B001D0AD1808B00152F731D18AAECC3C53B9918AA89BACEC ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
00:23:29.0752 0x17dc usbaudio - ok
00:23:29.0795 0x17dc [ 0803FBA9FE829D61AE26EC0BCC910C46, 30D00E2C7DFC630C99C1599587D4F9C272BC30D444E07C961AA05BF84587806B ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
00:23:29.0851 0x17dc usbccgp - ok

Re: Proces lvhidsvc.exe vytěžuje procesor, prosím o pomoc o

Napsal: 19 dub 2015 23:29
od Hop
Další log je zde:

00:20:56.0254 0x0c74 TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
00:21:01.0821 0x0c74 ============================================================
00:21:01.0821 0x0c74 Current date / time: 2015/04/20 00:21:01.0821
00:21:01.0821 0x0c74 SystemInfo:
00:21:01.0821 0x0c74
00:21:01.0821 0x0c74 OS Version: 6.1.7601 ServicePack: 1.0
00:21:01.0821 0x0c74 Product type: Workstation
00:21:01.0821 0x0c74 ComputerName: CERNY
00:21:01.0821 0x0c74 UserName: Rodiče
00:21:01.0821 0x0c74 Windows directory: C:\Windows
00:21:01.0821 0x0c74 System windows directory: C:\Windows
00:21:01.0822 0x0c74 Processor architecture: Intel x86
00:21:01.0822 0x0c74 Number of processors: 2
00:21:01.0822 0x0c74 Page size: 0x1000
00:21:01.0822 0x0c74 Boot type: Normal boot
00:21:01.0822 0x0c74 ============================================================
00:21:02.0117 0x0c74 KLMD registered as C:\Windows\system32\drivers\04702279.sys
00:21:02.0596 0x0c74 System UUID: {0E79DEDD-3C56-2D08-837B-F92F26BC7B2B}
00:21:03.0265 0x0c74 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 ( 298.09 Gb ), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
00:21:03.0280 0x0c74 Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
00:21:03.0287 0x0c74 Drive \Device\Harddisk2\DR2 - Size: 0x79B00000 ( 1.90 Gb ), SectorSize: 0x200, Cylinders: 0xF8, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
00:21:03.0301 0x0c74 ============================================================
00:21:03.0301 0x0c74 \Device\Harddisk0\DR0:
00:21:03.0301 0x0c74 MBR partitions:
00:21:03.0301 0x0c74 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x14C08000
00:21:03.0301 0x0c74 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x15F90800, BlocksNum 0xC350000
00:21:03.0301 0x0c74 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x222E0800, BlocksNum 0x314D800
00:21:03.0301 0x0c74 \Device\Harddisk1\DR1:
00:21:03.0301 0x0c74 MBR partitions:
00:21:03.0301 0x0c74 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x61A8000
00:21:03.0301 0x0c74 \Device\Harddisk1\DR1\Partition2: MBR, Type 0x7, StartLBA 0x61A8800, BlocksNum 0x186A0000
00:21:03.0301 0x0c74 \Device\Harddisk1\DR1\Partition3: MBR, Type 0x7, StartLBA 0x1E848800, BlocksNum 0x55EBD000
00:21:03.0301 0x0c74 \Device\Harddisk2\DR2:
00:21:03.0302 0x0c74 MBR partitions:
00:21:03.0302 0x0c74 \Device\Harddisk2\DR2\Partition1: MBR, Type 0x7, StartLBA 0xF0, BlocksNum 0x3CD710
00:21:03.0302 0x0c74 ============================================================
00:21:03.0332 0x0c74 C: <-> \Device\Harddisk0\DR0\Partition1
00:21:03.0380 0x0c74 V: <-> \Device\Harddisk0\DR0\Partition3
00:21:03.0429 0x0c74 T: <-> \Device\Harddisk0\DR0\Partition2
00:21:03.0460 0x0c74 O: <-> \Device\Harddisk1\DR1\Partition3
00:21:03.0486 0x0c74 I: <-> \Device\Harddisk1\DR1\Partition1
00:21:03.0510 0x0c74 L: <-> \Device\Harddisk1\DR1\Partition2
00:21:03.0510 0x0c74 ============================================================
00:21:03.0510 0x0c74 Initialize success
00:21:03.0510 0x0c74 ============================================================
00:21:42.0732 0x17dc ============================================================
00:21:42.0732 0x17dc Scan started
00:21:42.0732 0x17dc Mode: Manual; SigCheck; TDLFS;
00:21:42.0732 0x17dc ============================================================
00:21:42.0732 0x17dc KSN ping started
00:21:45.0581 0x17dc KSN ping finished: true
00:21:46.0759 0x17dc ================ Scan system memory ========================
00:21:46.0759 0x17dc System memory - ok
00:21:46.0760 0x17dc ================ Scan services =============================
00:21:46.0897 0x17dc [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
00:21:47.0402 0x17dc 1394ohci - ok
00:21:47.0446 0x17dc [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI C:\Windows\system32\drivers\ACPI.sys
00:21:47.0470 0x17dc ACPI - ok
00:21:47.0496 0x17dc [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
00:21:47.0831 0x17dc AcpiPmi - ok
00:21:47.0982 0x17dc [ FC5B75CA6A1DA31EDD4F8D53F5540B98, CDC445F2790ADFC4C5568C40D4DA8BB95CD71991665B38AEC3D84571C99C3520 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
00:21:47.0994 0x17dc AdobeARMservice - ok
00:21:48.0070 0x17dc [ B04A4810C6CC205F9DC72DC22E4AB236, 547321F5C28C80D4818372D65E2A33D4BAC593015DD6613B24586FE4B4A95D5D ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
00:21:48.0088 0x17dc AdobeFlashPlayerUpdateSvc - ok
00:21:48.0159 0x17dc [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
00:21:48.0188 0x17dc adp94xx - ok
00:21:48.0220 0x17dc [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci C:\Windows\system32\drivers\adpahci.sys
00:21:48.0239 0x17dc adpahci - ok
00:21:48.0257 0x17dc [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320 C:\Windows\system32\drivers\adpu320.sys
00:21:48.0272 0x17dc adpu320 - ok
00:21:48.0303 0x17dc [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
00:21:48.0592 0x17dc AeLookupSvc - ok
00:21:48.0707 0x17dc [ D0B388DA1D111A34366E04EB4A5DD156, 60D226F027F4025CC032CAFF73A80FAFB5FA75445654FDCF80CA8C0419C6E938 ] AFD C:\Windows\system32\drivers\afd.sys
00:21:49.0014 0x17dc AFD - ok
00:21:49.0050 0x17dc [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440 C:\Windows\system32\drivers\agp440.sys
00:21:49.0061 0x17dc agp440 - ok
00:21:49.0120 0x17dc [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx C:\Windows\system32\drivers\djsvs.sys
00:21:49.0132 0x17dc aic78xx - ok
00:21:49.0181 0x17dc [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG C:\Windows\System32\alg.exe
00:21:49.0484 0x17dc ALG - ok
00:21:49.0529 0x17dc [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide C:\Windows\system32\drivers\aliide.sys
00:21:49.0540 0x17dc aliide - ok
00:21:49.0556 0x17dc [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
00:21:49.0568 0x17dc amdagp - ok
00:21:49.0585 0x17dc [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide C:\Windows\system32\drivers\amdide.sys
00:21:49.0597 0x17dc amdide - ok
00:21:49.0630 0x17dc [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
00:21:49.0937 0x17dc AmdK8 - ok
00:21:49.0960 0x17dc [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
00:21:50.0177 0x17dc AmdPPM - ok
00:21:50.0228 0x17dc [ D320BF87125326F996D4904FE24300FC, F767D8C5C58D57202905D829F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata C:\Windows\system32\drivers\amdsata.sys
00:21:50.0240 0x17dc amdsata - ok
00:21:50.0258 0x17dc [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
00:21:50.0273 0x17dc amdsbs - ok
00:21:50.0288 0x17dc [ 46387FB17B086D16DEA267D5BE23A2F2, 8B8AC61B91F154B4EB5CC6DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata C:\Windows\system32\drivers\amdxata.sys
00:21:50.0299 0x17dc amdxata - ok
00:21:50.0345 0x17dc [ D1AF38FBAC0DC7E6D796B0ED01707EE0, FAFD2C36594A1628293E7623C8CAB2D47EDF8C6C0E18CC2FB37F9A6CA1F0E57C ] AppHostSvc C:\Windows\system32\inetsrv\apphostsvc.dll
00:21:50.0610 0x17dc AppHostSvc - ok
00:21:50.0653 0x17dc [ 81F97D8F8B3FB94A451CC6F7CF8B2965, 8DEBA4E47E1016D69740C0BB7CDD23852D86E0D42C1C1EA5A847ECB115C38CB1 ] AppID C:\Windows\system32\drivers\appid.sys
00:21:50.0915 0x17dc AppID - ok
00:21:50.0946 0x17dc [ F5090F8FA6757C58E17BAEAA86093636, 5E14CF3032DF5801240F45C59AA93962EA41AA5648A0C6458D16D9B9D95A131F ] AppIDSvc C:\Windows\System32\appidsvc.dll
00:21:51.0174 0x17dc AppIDSvc - ok
00:21:51.0209 0x17dc [ EACFDF31921F51C097629F1F3C9129B4, 24138755D823E69760579ECBD672421192457CDC9941B2BC499C2D34D83E86C3 ] Appinfo C:\Windows\System32\appinfo.dll
00:21:51.0422 0x17dc Appinfo - ok
00:21:51.0473 0x17dc [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc C:\Windows\system32\drivers\arc.sys
00:21:51.0485 0x17dc arc - ok
00:21:51.0505 0x17dc [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas C:\Windows\system32\drivers\arcsas.sys
00:21:51.0519 0x17dc arcsas - ok
00:21:51.0620 0x17dc [ 537B2948976F5D9B5767B74A63EBB395, 1A14F8B582E74AD15B612EDA5B707AA3CB0B2A107ED14572B4232EAA7383B634 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
00:21:51.0661 0x17dc aspnet_state - ok
00:21:51.0731 0x17dc [ FE99FCB91E93BC4A7E222928A06411DE, C0F9A2A6324B17D435A7C62EB133E3E529D5622ED83C65E48F092CAB79D9A787 ] aswHwid C:\Windows\system32\drivers\aswHwid.sys
00:21:51.0849 0x17dc aswHwid - ok
00:21:51.0914 0x17dc [ E2FEE0486D68BF85355D3EDA1A24FF68, 809AB100F05AD872CE1A468BC118A5A330B0A361171F103F7A3EF616D889AFEF ] aswKbd C:\Windows\system32\drivers\aswKbd.sys
00:21:51.0940 0x17dc aswKbd - ok
00:21:51.0983 0x17dc [ 5D70C1C6C61C5A034BD086AD219A0237, 318C3CC5AF2A4B99C6C3938B36C95ECA63EABC5E93A2A3D7C729BA0BF191CDF1 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
00:21:52.0031 0x17dc aswMonFlt - ok
00:21:52.0056 0x17dc [ 456106F51D03D99A8C65BFC0E37E3D0B, AC616957C299DF452E37ACB1C77F20A50AD4B23AD07BF09951817EF8B460A6D6 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys
00:21:52.0075 0x17dc aswRdr - ok
00:21:52.0127 0x17dc [ 74E84C8CEB52042E8A1EA3104D151843, B9D1ADC6A0FF31EE18E2EECCCC3D98C41FAE9E37295A0F555DAB59D0B6028A6E ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
00:21:52.0164 0x17dc aswRvrt - ok
00:21:52.0226 0x17dc [ 48FA0C8E04A37A619C894A1C02D5AB96, F79C7252D0C578F827EED28630D97F2B5E3B361F920AF626343D8A71CDD86288 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
00:21:52.0269 0x17dc aswSnx - ok
00:21:52.0327 0x17dc [ 2AB454C9C10C427738426C06D3749361, BC604BC9006CF52520FA962055F391A806B7452639640F13516B151E34517643 ] aswSP C:\Windows\system32\drivers\aswSP.sys
00:21:52.0370 0x17dc aswSP - ok
00:21:52.0412 0x17dc [ F7D2CE852966935E2F85C3DB4D50D3A5, BE41E9849380BC047B145B8AC7A402C223A901D39CA349F5D2A070C890B7DCE6 ] aswStm C:\Windows\system32\drivers\aswStm.sys
00:21:52.0458 0x17dc aswStm - ok
00:21:52.0516 0x17dc [ 0AE22EAD6B30E448160338E708BCB71D, 4657A7C60635B916FFBC0A731D52E944FDDE6B052AD0DBD0848C3C7A5C15DD0D ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
00:21:52.0580 0x17dc aswVmm - ok
00:21:52.0609 0x17dc [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
00:21:52.0792 0x17dc AsyncMac - ok
00:21:52.0822 0x17dc [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi C:\Windows\system32\drivers\atapi.sys
00:21:52.0833 0x17dc atapi - ok
00:21:53.0056 0x17dc [ 614A60AEE03A6151FDCBAC295854A9CB, 0453BD59AEF21F2EFD6E1E39F1CF691E694BC778073843111AE5FA2BB1DEF31B ] athr C:\Windows\system32\DRIVERS\athr.sys
00:21:53.0319 0x17dc athr - ok
00:21:53.0565 0x17dc [ 712D8A95E45B070114C5309ADA7358FF, 1F0285CFB9982637186531489743798511BA75B612B202231E9BC1CF5372C0BB ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
00:21:53.0992 0x17dc atikmdag - ok
00:21:54.0064 0x17dc [ C1619A13B10CAC5038BF7129F57D8DE3, 9F71EA6C844650658938E68CCC1383F92D37C68E46E08461A8351491185BA791 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
00:21:54.0311 0x17dc AudioEndpointBuilder - ok
00:21:54.0383 0x17dc [ C1619A13B10CAC5038BF7129F57D8DE3, 9F71EA6C844650658938E68CCC1383F92D37C68E46E08461A8351491185BA791 ] Audiosrv C:\Windows\System32\Audiosrv.dll
00:21:54.0587 0x17dc Audiosrv - ok
00:21:54.0659 0x17dc [ 210A326658D72D7F2EE2267F3D9C44D4, 25BC620209B5F4BCF5C3F323290E41255F68660F3DFF901FA5A78423A7293D73 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
00:21:54.0729 0x17dc avast! Antivirus - ok
00:21:55.0089 0x17dc [ 5019A83BE87FD8B60F7333901BFD35E5, 674DF51CAA1B6C0BC9CA9755B3BC5A9A71C583BD7C7A2826BD280E107B855092 ] AvastVBoxSvc C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
00:21:55.0285 0x17dc AvastVBoxSvc - ok
00:21:55.0359 0x17dc [ 919BF947FB3294450B2A4BA4F64193EA, 73DB336877FB4580F0DA39ADD6D95D90DF40873FF5CDAC362FC151C83B8CD50E ] AVHybrid C:\Windows\system32\DRIVERS\AVHybrid.sys
00:21:55.0606 0x17dc AVHybrid - ok
00:21:55.0680 0x17dc [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C855A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV C:\Windows\System32\AxInstSV.dll
00:21:55.0925 0x17dc AxInstSV - ok
00:21:55.0986 0x17dc [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys
00:21:56.0177 0x17dc b06bdrv - ok
00:21:56.0228 0x17dc [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
00:21:56.0430 0x17dc b57nd60x - ok
00:21:56.0478 0x17dc [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC C:\Windows\System32\bdesvc.dll
00:21:56.0591 0x17dc BDESVC - ok
00:21:56.0645 0x17dc [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep C:\Windows\system32\drivers\Beep.sys
00:21:56.0785 0x17dc Beep - ok
00:21:56.0833 0x17dc [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE C:\Windows\System32\bfe.dll
00:21:56.0922 0x17dc BFE - ok
00:21:57.0031 0x17dc [ E585445D5021971FAE10393F0F1C3961, 178C008A9A0A6BFDA65EB0B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS C:\Windows\System32\qmgr.dll
00:21:57.0170 0x17dc BITS - ok
00:21:57.0221 0x17dc [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
00:21:57.0294 0x17dc blbdrive - ok
00:21:57.0324 0x17dc [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
00:21:57.0410 0x17dc bowser - ok
00:21:57.0438 0x17dc [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
00:21:57.0524 0x17dc BrFiltLo - ok
00:21:57.0575 0x17dc [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
00:21:57.0749 0x17dc BrFiltUp - ok
00:21:57.0795 0x17dc [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser C:\Windows\System32\browser.dll
00:21:57.0923 0x17dc Browser - ok
00:21:57.0976 0x17dc [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid C:\Windows\System32\Drivers\Brserid.sys
00:21:58.0087 0x17dc Brserid - ok
00:21:58.0112 0x17dc [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
00:21:58.0199 0x17dc BrSerWdm - ok
00:21:58.0217 0x17dc [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
00:21:58.0319 0x17dc BrUsbMdm - ok
00:21:58.0348 0x17dc [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
00:21:58.0427 0x17dc BrUsbSer - ok
00:21:58.0471 0x17dc [ 2865A5C8E98C70C605F417908CEBB3A4, B1C5AC228BD7072AF8668C009C6CDC13EE9FCB9481F57524300F37C40BF1E935 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys
00:21:58.0575 0x17dc BthEnum - ok
00:21:58.0618 0x17dc [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
00:21:58.0725 0x17dc BTHMODEM - ok
00:21:58.0762 0x17dc [ AD1872E5829E8A2C3B5B4B641C3EAB0E, 8C2DBCAC08DDB41E2B44E257C55FA2D0272959B308EFF9EAF5FF9AE1E4A0AA39 ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
00:21:58.0868 0x17dc BthPan - ok
00:21:58.0966 0x17dc [ 1153DE2E4F5941E10C399CB5592F78A1, 2B88AF246D62F72FA9F5B921B0375AE59A0F263672472D5EC9FDB5CA5EF51C31 ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys
00:21:59.0083 0x17dc BTHPORT - ok
00:21:59.0115 0x17dc [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv C:\Windows\system32\bthserv.dll
00:21:59.0240 0x17dc bthserv - ok
00:21:59.0287 0x17dc [ C81E9413A25A439F436B1D4B6A0CF9E9, A4C290163207AED22C70C7F90B28F6FC24892889643D60D915059405AC5A4A72 ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys
00:21:59.0386 0x17dc BTHUSB - ok
00:21:59.0419 0x17dc [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
00:21:59.0502 0x17dc cdfs - ok
00:21:59.0537 0x17dc [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
00:21:59.0634 0x17dc cdrom - ok
00:21:59.0670 0x17dc [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc C:\Windows\System32\certprop.dll
00:21:59.0796 0x17dc CertPropSvc - ok
00:21:59.0832 0x17dc [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass C:\Windows\system32\drivers\circlass.sys
00:21:59.0915 0x17dc circlass - ok
00:21:59.0956 0x17dc [ 33A60554882FDF59CDA3E1806370BBA1, 3DE5451E1CB84AAEBD03F54BEFC670C401447B4881A8B022748B6ECF0F500F01 ] CLFS C:\Windows\system32\CLFS.sys
00:21:59.0975 0x17dc CLFS - ok
00:22:00.0052 0x17dc [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
00:22:00.0095 0x17dc clr_optimization_v2.0.50727_32 - ok
00:22:00.0122 0x17dc [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
00:22:00.0186 0x17dc clr_optimization_v4.0.30319_32 - ok
00:22:00.0224 0x17dc [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
00:22:00.0329 0x17dc CmBatt - ok
00:22:00.0379 0x17dc [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide C:\Windows\system32\drivers\cmdide.sys
00:22:00.0390 0x17dc cmdide - ok
00:22:00.0483 0x17dc [ 3051724F223EA48968B19567DE2A81F4, DCC27DE1B2B35866FC6DBDE95A368E7D0D346B6C3F31D0BACA63DD39B0A8874E ] CNG C:\Windows\system32\Drivers\cng.sys
00:22:00.0539 0x17dc CNG - ok
00:22:00.0610 0x17dc [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt C:\Windows\system32\drivers\compbatt.sys
00:22:00.0635 0x17dc Compbatt - ok
00:22:00.0695 0x17dc [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
00:22:00.0799 0x17dc CompositeBus - ok
00:22:00.0824 0x17dc COMSysApp - ok
00:22:00.0877 0x17dc cpuz135 - ok
00:22:00.0896 0x17dc cpuz136 - ok
00:22:00.0954 0x17dc [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
00:22:00.0965 0x17dc crcdisk - ok
00:22:01.0014 0x17dc [ 49474B3E37969AF4B5C076F42B623AFF, BDA6B57E9B60EF1B67C74099263D33A367AAA035667239F76AB8B268FD3E8F23 ] CryptSvc C:\Windows\system32\cryptsvc.dll
00:22:01.0103 0x17dc CryptSvc - ok
00:22:01.0193 0x17dc [ 07591490166C0389EC23B5ADA5BDC78B, 7DE9773BF90FE6B2798EBA4BEB7CE855D3C96F45FAA06813FBACFD8518BD0D68 ] CSDriver C:\Program Files\Common Files\ArtistScope\CSDriver32.sys
00:22:01.0214 0x17dc CSDriver - ok
00:22:01.0293 0x17dc [ E55154F74AD822593EA2BC3726DAC808, 02AB5D31BEE3398C2C495AB90F3094096C6D149DCA1877E911BDE808F71656E1 ] CSHelper C:\Program Files\Common Files\ArtistScope\CSHelper32.exe
00:22:01.0335 0x17dc CSHelper - ok
00:22:01.0390 0x17dc [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] DcomLaunch C:\Windows\system32\rpcss.dll
00:22:01.0530 0x17dc DcomLaunch - ok
00:22:01.0598 0x17dc [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc C:\Windows\System32\defragsvc.dll
00:22:01.0718 0x17dc defragsvc - ok
00:22:01.0762 0x17dc [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
00:22:01.0921 0x17dc DfsC - ok
00:22:01.0959 0x17dc [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp C:\Windows\system32\dhcpcore.dll
00:22:02.0039 0x17dc Dhcp - ok
00:22:02.0059 0x17dc [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache C:\Windows\system32\drivers\discache.sys
00:22:02.0166 0x17dc discache - ok
00:22:02.0215 0x17dc [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk C:\Windows\system32\drivers\disk.sys
00:22:02.0226 0x17dc Disk - ok
00:22:02.0265 0x17dc [ 33EF4861F19A0736B11314AAD9AE28D0, 4C4B84365D85758E3263B88F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache C:\Windows\System32\dnsrslvr.dll
00:22:02.0405 0x17dc Dnscache - ok
00:22:02.0454 0x17dc [ 366BA8FB4B7BB7435E3B9EACB3843F67, 65B7C61ACF34F1F0149045AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc C:\Windows\System32\dot3svc.dll
00:22:02.0577 0x17dc dot3svc - ok
00:22:02.0618 0x17dc [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS C:\Windows\system32\dps.dll
00:22:02.0727 0x17dc DPS - ok
00:22:02.0779 0x17dc [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
00:22:02.0836 0x17dc drmkaud - ok
00:22:03.0008 0x17dc [ 3583A5A8CC2E682BFFBD4630D0FEC08B, FD0F184B358FCECAA763444B414074BEF4E871EB7527D88385519FC158435C72 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
00:22:03.0037 0x17dc DXGKrnl - ok
00:22:03.0073 0x17dc [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost C:\Windows\System32\eapsvc.dll
00:22:03.0176 0x17dc EapHost - ok
00:22:03.0995 0x17dc [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv C:\Windows\system32\drivers\evbdx.sys
00:22:04.0238 0x17dc ebdrv - ok
00:22:04.0285 0x17dc [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] EFS C:\Windows\System32\lsass.exe
00:22:04.0409 0x17dc EFS - ok
00:22:04.0496 0x17dc [ A8C362018EFC87BEB013EE28F29C0863, 07971C681FBD391C0BA0172618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr C:\Windows\ehome\ehRecvr.exe
00:22:04.0611 0x17dc ehRecvr - ok
00:22:04.0639 0x17dc [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched C:\Windows\ehome\ehsched.exe
00:22:04.0717 0x17dc ehSched - ok
00:22:04.0759 0x17dc [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor C:\Windows\system32\drivers\elxstor.sys
00:22:04.0782 0x17dc elxstor - ok
00:22:04.0814 0x17dc [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev C:\Windows\system32\drivers\errdev.sys
00:22:04.0873 0x17dc ErrDev - ok
00:22:04.0916 0x17dc [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem C:\Windows\system32\es.dll
00:22:05.0042 0x17dc EventSystem - ok
00:22:05.0077 0x17dc [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat C:\Windows\system32\drivers\exfat.sys
00:22:05.0141 0x17dc exfat - ok
00:22:05.0168 0x17dc [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat C:\Windows\system32\drivers\fastfat.sys
00:22:05.0281 0x17dc fastfat - ok
00:22:05.0353 0x17dc [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax C:\Windows\system32\fxssvc.exe
00:22:05.0419 0x17dc Fax - ok
00:22:05.0453 0x17dc [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc C:\Windows\system32\drivers\fdc.sys
00:22:05.0530 0x17dc fdc - ok
00:22:05.0556 0x17dc [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost C:\Windows\system32\fdPHost.dll
00:22:05.0651 0x17dc fdPHost - ok
00:22:05.0663 0x17dc [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub C:\Windows\system32\fdrespub.dll
00:22:05.0767 0x17dc FDResPub - ok
00:22:05.0784 0x17dc [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
00:22:05.0802 0x17dc FileInfo - ok
00:22:05.0815 0x17dc [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
00:22:05.0940 0x17dc Filetrace - ok
00:22:05.0963 0x17dc [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
00:22:06.0006 0x17dc flpydisk - ok
00:22:06.0077 0x17dc [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
00:22:06.0093 0x17dc FltMgr - ok
00:22:06.0144 0x17dc [ E12C4928B32ACE04610259647F072635, B71B9C2DF45F33C4DAC88435129B08B0BCDBBE82E8C3AD0A95F00137CC8B619F ] FontCache C:\Windows\system32\FntCache.dll
00:22:06.0230 0x17dc FontCache - ok
00:22:06.0307 0x17dc [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
00:22:06.0320 0x17dc FontCache3.0.0.0 - ok
00:22:06.0386 0x17dc [ B53D64A7BA4BC661B0BAF6453F6FC743, FA08513F56A77AC941927D3422A787400C253075F1D56C2CB6E0EC86C4756ED2 ] ForceWare Intelligent Application Manager (IAM) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
00:22:06.0420 0x17dc ForceWare Intelligent Application Manager (IAM) - ok
00:22:06.0435 0x17dc [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
00:22:06.0447 0x17dc FsDepends - ok
00:22:06.0473 0x17dc [ D909075FA72C090F27AA926C32CB4612, F8610C20C4DD499D5B4ACEBD7107E52E25B6449AEED58D1A203F7D654B55C4DF ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
00:22:06.0483 0x17dc fssfltr - ok
00:22:06.0600 0x17dc [ 4CE9DAC1518FF7E77BD213E6394B9D77, D7D0D29DF93AC7DC5F85E385EEB45306C7BD87ACA7AAC5A8D47893D120C32C03 ] fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe
00:22:06.0659 0x17dc fsssvc - ok
00:22:06.0724 0x17dc [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A44583520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
00:22:06.0735 0x17dc Fs_Rec - ok
00:22:06.0775 0x17dc [ E306A24D9694C724FA2491278BF50FDB, 1D246B9C28550640EACBF8CF9DC980FD75106B92832D392FEBEF0C7012353091 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
00:22:06.0793 0x17dc fvevol - ok
00:22:06.0825 0x17dc [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
00:22:06.0837 0x17dc gagp30kx - ok
00:22:06.0869 0x17dc [ AB8A6A87D9D7255C3884D5B9541A6E80, D073B5D8A06EFA6415E8F22DFE486DE913113AE23F59CFC5EEF1B3E694CE86F3 ] GEARAspiWDM C:\Windows\system32\Drivers\GEARAspiWDM.sys
00:22:06.0878 0x17dc GEARAspiWDM - ok
00:22:06.0921 0x17dc [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc C:\Windows\System32\gpsvc.dll
00:22:07.0031 0x17dc gpsvc - ok
00:22:07.0121 0x17dc [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdate1ca24ec3816786f C:\Program Files\Google\Update\GoogleUpdate.exe
00:22:07.0132 0x17dc gupdate1ca24ec3816786f - ok
00:22:07.0158 0x17dc [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
00:22:07.0169 0x17dc gupdatem - ok
00:22:07.0201 0x17dc [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
00:22:07.0214 0x17dc gusvc - ok
00:22:07.0252 0x17dc [ 833051C6C6C42117191935F734CFBD97, 5EB5672ABC7994A4AFF855A572158B8BE4FC6E541CFD4B9BE4FF2739A9A6AFB8 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
00:22:07.0266 0x17dc hamachi - ok
00:22:07.0298 0x17dc [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
00:22:07.0354 0x17dc hcw85cir - ok
00:22:07.0384 0x17dc [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
00:22:07.0556 0x17dc HDAudBus - ok
00:22:07.0579 0x17dc [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
00:22:07.0654 0x17dc HidBatt - ok
00:22:07.0682 0x17dc [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth C:\Windows\system32\drivers\hidbth.sys
00:22:07.0754 0x17dc HidBth - ok
00:22:07.0800 0x17dc [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr C:\Windows\system32\drivers\hidir.sys
00:22:07.0910 0x17dc HidIr - ok
00:22:07.0943 0x17dc [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv C:\Windows\system32\hidserv.dll
00:22:08.0064 0x17dc hidserv - ok
00:22:08.0105 0x17dc [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
00:22:08.0197 0x17dc HidUsb - ok
00:22:08.0245 0x17dc [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc C:\Windows\system32\kmsvc.dll
00:22:08.0377 0x17dc hkmsvc - ok
00:22:08.0408 0x17dc [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
00:22:08.0499 0x17dc HomeGroupListener - ok
00:22:08.0554 0x17dc [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
00:22:08.0651 0x17dc HomeGroupProvider - ok
00:22:08.0704 0x17dc [ F5F4818A15AF6128A2BADD1B1F102413, E566CA6097502EE411756CD5BE6504B229BB5EAF78E0DA7C485B75E5BE9B0773 ] HP DS Service C:\Program Files\HP\HPBDSService\HPBDSService.exe
00:22:08.0753 0x17dc HP DS Service - detected UnsignedFile.Multi.Generic ( 1 )
00:22:12.0435 0x17dc Detect skipped due to KSN trusted
00:22:12.0435 0x17dc HP DS Service - ok
00:22:12.0484 0x17dc [ 3BF3B2F977115DD06475983790032BA7, 47C374EF12C01C7E2A881CD78C874B09F1563F96028289AFF7DB40E3C4BE9CFC ] HP LaserJet Service C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
00:22:12.0625 0x17dc HP LaserJet Service - detected UnsignedFile.Multi.Generic ( 1 )
00:22:16.0059 0x17dc Detect skipped due to KSN trusted
00:22:16.0059 0x17dc HP LaserJet Service - ok
00:22:16.0086 0x17dc [ 6F98A555ACF3C1B68FCC1F50E0FD2091, 2A37C2B9BD4B38A6D832CE847B8B65B7AA1E8B38D3463A3502DD4C5E12E5D7EC ] HPFXBULKLEDM C:\Windows\system32\drivers\hppcbulkio.sys
00:22:16.0109 0x17dc HPFXBULKLEDM - ok
00:22:16.0142 0x17dc [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
00:22:16.0177 0x17dc HpSAMD - ok
00:22:16.0221 0x17dc [ 487569E5DA56A5A432FF8AF6D3599CF9, 7C974D8379C60B4F69A20B01876C49181B0A63AC318C4BD0A21DABFF27A15C9D ] HTTP C:\Windows\system32\drivers\HTTP.sys
00:22:16.0477 0x17dc HTTP - ok
00:22:16.0502 0x17dc [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
00:22:16.0513 0x17dc hwpolicy - ok
00:22:16.0529 0x17dc [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
00:22:16.0773 0x17dc i8042prt - ok
00:22:16.0817 0x17dc [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE0105025B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
00:22:16.0864 0x17dc iaStorV - ok
00:22:16.0932 0x17dc [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
00:22:17.0167 0x17dc IDriverT - detected UnsignedFile.Multi.Generic ( 1 )
00:22:20.0814 0x17dc Detect skipped due to KSN trusted
00:22:20.0814 0x17dc IDriverT - ok
00:22:21.0158 0x17dc [ 3E9213A2A050BF429E91898C90F8B4E3, D80ABE5691087661B19F01927B631CB8C5291120B814B6F863F046E0D643E9E4 ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
00:22:21.0210 0x17dc idsvc - ok
00:22:21.0239 0x17dc IEEtwCollectorService - ok
00:22:21.0264 0x17dc [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp C:\Windows\system32\drivers\iirsp.sys
00:22:21.0276 0x17dc iirsp - ok
00:22:21.0332 0x17dc [ FC9735B66850CF8AEBBC1E207ECB2AD8, A2546FFB6E49784F052EFA036776E246CADA34D7146B3AA2D19AC1463D20B480 ] IISADMIN C:\Windows\system32\inetsrv\inetinfo.exe
00:22:21.0571 0x17dc IISADMIN - ok
00:22:21.0697 0x17dc [ B9C54120F46392100478F58F374E5709, A28EE8B0988F580D5984E815FC78DF41B169260814234AA0E453375542D0957B ] IKEEXT C:\Windows\System32\ikeext.dll
00:22:21.0921 0x17dc IKEEXT - ok
00:22:22.0075 0x17dc [ 3914EA9111DBEFFAF1C68200817768AD, 56ECF70477CB0E4630ADEE2E5ECEEBC34F3DAF7CB73AB227BD7DD876170A21CA ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
00:22:22.0207 0x17dc IntcAzAudAddService - ok
00:22:22.0252 0x17dc [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide C:\Windows\system32\drivers\intelide.sys
00:22:22.0270 0x17dc intelide - ok
00:22:22.0302 0x17dc [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm C:\Windows\system32\drivers\intelppm.sys
00:22:22.0589 0x17dc intelppm - ok
00:22:22.0632 0x17dc [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
00:22:22.0801 0x17dc IPBusEnum - ok
00:22:22.0835 0x17dc [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
00:22:23.0041 0x17dc IpFilterDriver - ok
00:22:23.0080 0x17dc [ 58F67245D041FBE7AF88F4EAF79DF0FA, 67468D6A46FF4D87AD321BFEA42F2FC843D09AA292A119C76D4D795D06028F96 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
00:22:23.0342 0x17dc iphlpsvc - ok
00:22:23.0391 0x17dc [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
00:22:23.0709 0x17dc IPMIDRV - ok
00:22:23.0741 0x17dc [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
00:22:24.0050 0x17dc IPNAT - ok
00:22:24.0082 0x17dc [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM C:\Windows\system32\drivers\irenum.sys
00:22:24.0307 0x17dc IRENUM - ok
00:22:24.0352 0x17dc [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp C:\Windows\system32\drivers\isapnp.sys
00:22:24.0375 0x17dc isapnp - ok
00:22:24.0412 0x17dc [ EB34CE31FABD4DC4343FD2AD16D2CAF9, D21C91227A15DA89ECF522345D0AB80B3B7FC24A230596DABDB8BD3B7554CE8C ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
00:22:24.0429 0x17dc iScsiPrt - ok
00:22:24.0457 0x17dc [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
00:22:24.0469 0x17dc kbdclass - ok
00:22:24.0492 0x17dc [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
00:22:24.0809 0x17dc kbdhid - ok
00:22:24.0851 0x17dc [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] KeyIso C:\Windows\system32\lsass.exe
00:22:25.0055 0x17dc KeyIso - ok
00:22:25.0086 0x17dc [ 746F89CE0C6569C589E6AC4D3DA82D41, 6D41311CBA8BB7C9C09C1757D7947539B67FE3EFF6299502176C673809BAEAD8 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
00:22:25.0107 0x17dc KSecDD - ok
00:22:25.0132 0x17dc [ D800E1EAF33630A1636BB21E8256AA92, D07542A242E0D52B494BE63A6A141207D0A59CF66ABEBA9CE33877594BF7BA5D ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
00:22:25.0150 0x17dc KSecPkg - ok
00:22:25.0207 0x17dc [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm C:\Windows\system32\msdtckrm.dll
00:22:25.0513 0x17dc KtmRm - ok
00:22:25.0554 0x17dc [ 0C6E346CDE730CF1356DD69AD6E9BC42, 75FD3E138D18FD602E38E446AA8CD29E8D60A8B64C863E59DA5EC08B717F16CA ] L8042Kbd C:\Windows\system32\DRIVERS\L8042Kbd.sys
00:22:25.0576 0x17dc L8042Kbd - ok
00:22:25.0624 0x17dc [ 8A5993705ADD14352C9A279FA8338334, D1EA18B82DED503B81214A797F4B074D62B73E0C19579B4A7122CE6FBD005C34 ] L8042mou C:\Windows\system32\DRIVERS\L8042mou.Sys
00:22:25.0657 0x17dc L8042mou - ok
00:22:25.0697 0x17dc [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB5060356A3B07449712B21B50E03378BEF04AF180F9 ] LanmanServer C:\Windows\system32\srvsvc.dll
00:22:26.0020 0x17dc LanmanServer - ok
00:22:26.0060 0x17dc [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
00:22:26.0320 0x17dc LanmanWorkstation - ok
00:22:26.0398 0x17dc [ 07B1888209C54B675FFCCBDE9F06D2C6, F80DA304CEFC062D4E604C0A7A2B60361161F259FBE8E94332F6BAD640630D23 ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe
00:22:26.0508 0x17dc LightScribeService - detected UnsignedFile.Multi.Generic ( 1 )
00:22:30.0079 0x17dc Detect skipped due to KSN trusted
00:22:30.0079 0x17dc LightScribeService - ok
00:22:30.0119 0x17dc [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
00:22:30.0359 0x17dc lltdio - ok
00:22:30.0407 0x17dc [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc C:\Windows\System32\lltdsvc.dll
00:22:30.0715 0x17dc lltdsvc - ok
00:22:30.0745 0x17dc [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts C:\Windows\System32\lmhsvc.dll
00:22:31.0017 0x17dc lmhosts - ok
00:22:31.0062 0x17dc [ 9837E55673818ECD8FEBB47F7F77521A, 75DD22E1CB38BBE796EC6918D03E8106B05B977A53FACEB2AFEB8D4D222F383B ] LMouKE C:\Windows\system32\DRIVERS\LMouKE.Sys
00:22:31.0103 0x17dc LMouKE - ok
00:22:31.0140 0x17dc [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
00:22:31.0153 0x17dc LSI_FC - ok
00:22:31.0197 0x17dc [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
00:22:31.0210 0x17dc LSI_SAS - ok
00:22:31.0237 0x17dc [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
00:22:31.0249 0x17dc LSI_SAS2 - ok
00:22:31.0277 0x17dc [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
00:22:31.0304 0x17dc LSI_SCSI - ok
00:22:31.0336 0x17dc [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv C:\Windows\system32\drivers\luafv.sys
00:22:31.0659 0x17dc luafv - ok
00:22:31.0694 0x17dc [ FB40FAF577E94CA5F6D4D87F50E86680, 42993F2E20AD105E145AF37BC16A159BEA36AE3EF375D8AE7A69B074392D7821 ] LvHidSvc C:\Windows\system32\lvhidsvc.exe
00:22:31.0977 0x17dc LvHidSvc - detected UnsignedFile.Multi.Generic ( 1 )
00:22:35.0489 0x17dc Detect skipped due to KSN trusted
00:22:35.0489 0x17dc LvHidSvc - ok
00:22:35.0532 0x17dc [ A3E700D78EEC390F1208098CDCA5C6B6, 37D92D4AF24C43B4C468974CBBD55B6DF3AB92780560285039A0B078E566985A ] MarvinBus C:\Windows\system32\DRIVERS\MarvinBus.sys
00:22:35.0632 0x17dc MarvinBus - ok
00:22:35.0678 0x17dc [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432FD2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
00:22:35.0823 0x17dc Mcx2Svc - ok
00:22:35.0860 0x17dc [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas C:\Windows\system32\drivers\megasas.sys
00:22:35.0871 0x17dc megasas - ok
00:22:35.0924 0x17dc [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
00:22:35.0960 0x17dc MegaSR - ok
00:22:36.0002 0x17dc [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS C:\Windows\system32\mmcss.dll
00:22:36.0178 0x17dc MMCSS - ok
00:22:36.0197 0x17dc [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem C:\Windows\system32\drivers\modem.sys
00:22:36.0324 0x17dc Modem - ok
00:22:36.0350 0x17dc [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
00:22:36.0600 0x17dc monitor - ok
00:22:36.0642 0x17dc [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
00:22:36.0653 0x17dc mouclass - ok
00:22:36.0713 0x17dc [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
00:22:36.0962 0x17dc mouhid - ok
00:22:37.0025 0x17dc [ 644905A19D0F37F2233DFCE53BC4BC19, F52CB40AA0FD1EBF8CBF0F3BFB20C47142C637719840877FB93F10D085EB8C2B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
00:22:37.0038 0x17dc mountmgr - ok
00:22:37.0110 0x17dc [ 269BDB3CB77EB77BABE2862BEAB1F208, EC693365C73D59244CB77E181042128A9901BA5C1109CD4F1B9A2008DF1F9582 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
00:22:37.0125 0x17dc MozillaMaintenance - ok
00:22:37.0171 0x17dc [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio C:\Windows\system32\drivers\mpio.sys
00:22:37.0185 0x17dc mpio - ok
00:22:37.0219 0x17dc [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
00:22:37.0422 0x17dc mpsdrv - ok
00:22:37.0473 0x17dc [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc C:\Windows\system32\mpssvc.dll
00:22:37.0660 0x17dc MpsSvc - ok
00:22:37.0701 0x17dc [ 03F899F521D2AAED1C55008F734DF252, 4E56A51476A13F5630719018037B1F63DF9ACEA1CFE782AF04E669BD696954C5 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
00:22:37.0984 0x17dc MRxDAV - ok
00:22:38.0023 0x17dc [ 5D16C921E3671636C0EBA3BBAAC5FD25, 5BC107B95CAFC88F51FBB9F657B99944B20627A2B618F263093D7045E4FFD65C ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
00:22:38.0208 0x17dc mrxsmb - ok
00:22:38.0242 0x17dc [ 6D17A4791ACA19328C685D256349FEFC, 012AA3D84EEAAF53780D06D2D11B9727DFC3441F3FAD75BC9E751FB814403668 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
00:22:38.0474 0x17dc mrxsmb10 - ok
00:22:38.0507 0x17dc [ B81F204D146000BE76651A50670A5E9E, 78193D0F967BE9829E53F9B500342934B4B1E1F4CEFC444382959E2061BC3B17 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
00:22:38.0653 0x17dc mrxsmb20 - ok
00:22:38.0686 0x17dc [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci C:\Windows\system32\drivers\msahci.sys
00:22:38.0697 0x17dc msahci - ok
00:22:38.0745 0x17dc [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1CD0835E8234405BB80084065ED05363B77868397304 ] msdsm C:\Windows\system32\drivers\msdsm.sys
00:22:38.0758 0x17dc msdsm - ok
00:22:38.0805 0x17dc [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC C:\Windows\System32\msdtc.exe
00:22:39.0025 0x17dc MSDTC - ok
00:22:39.0061 0x17dc [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs C:\Windows\system32\drivers\Msfs.sys
00:22:39.0263 0x17dc Msfs - ok
00:22:39.0275 0x17dc [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
00:22:39.0512 0x17dc mshidkmdf - ok
00:22:39.0537 0x17dc [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
00:22:39.0547 0x17dc msisadrv - ok
00:22:39.0579 0x17dc [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI C:\Windows\system32\iscsiexe.dll
00:22:39.0882 0x17dc MSiSCSI - ok
00:22:39.0888 0x17dc msiserver - ok
00:22:39.0938 0x17dc [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
00:22:40.0129 0x17dc MSKSSRV - ok
00:22:40.0140 0x17dc [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
00:22:40.0381 0x17dc MSPCLOCK - ok
00:22:40.0398 0x17dc [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
00:22:40.0595 0x17dc MSPQM - ok
00:22:40.0622 0x17dc [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
00:22:40.0637 0x17dc MsRPC - ok
00:22:40.0652 0x17dc [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
00:22:40.0663 0x17dc mssmbios - ok
00:22:40.0688 0x17dc [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
00:22:40.0927 0x17dc MSTEE - ok
00:22:40.0957 0x17dc [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
00:22:41.0212 0x17dc MTConfig - ok
00:22:41.0245 0x17dc [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup C:\Windows\system32\Drivers\mup.sys
00:22:41.0257 0x17dc Mup - ok
00:22:41.0285 0x17dc [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent C:\Windows\system32\qagentRT.dll
00:22:41.0550 0x17dc napagent - ok
00:22:41.0583 0x17dc [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
00:22:41.0796 0x17dc NativeWifiP - ok
00:22:41.0909 0x17dc [ 8C9C922D71F1CD4DEF73F186416B7896, 15FF43CD90C7913F83B35F2E7986561584588E8A45196EBD965C3A355836A9C7 ] NDIS C:\Windows\system32\drivers\ndis.sys
00:22:41.0947 0x17dc NDIS - ok
00:22:41.0969 0x17dc [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
00:22:42.0179 0x17dc NdisCap - ok
00:22:42.0228 0x17dc [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
00:22:42.0509 0x17dc NdisTapi - ok
00:22:42.0558 0x17dc [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
00:22:42.0810 0x17dc Ndisuio - ok
00:22:42.0835 0x17dc [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
00:22:43.0096 0x17dc NdisWan - ok
00:22:43.0111 0x17dc [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
00:22:43.0483 0x17dc NDProxy - ok
00:22:43.0518 0x17dc [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
00:22:43.0831 0x17dc NetBIOS - ok
00:22:43.0858 0x17dc [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
00:22:44.0146 0x17dc NetBT - ok
00:22:44.0167 0x17dc [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] Netlogon C:\Windows\system32\lsass.exe
00:22:44.0411 0x17dc Netlogon - ok
00:22:44.0473 0x17dc [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman C:\Windows\System32\netman.dll
00:22:44.0764 0x17dc Netman - ok
00:22:44.0808 0x17dc [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:22:44.0839 0x17dc NetMsmqActivator - ok
00:22:44.0847 0x17dc [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:22:44.0863 0x17dc NetPipeActivator - ok
00:22:44.0918 0x17dc [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm C:\Windows\System32\netprofm.dll
00:22:45.0195 0x17dc netprofm - ok
00:22:45.0225 0x17dc [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:22:45.0240 0x17dc NetTcpActivator - ok
00:22:45.0262 0x17dc [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:22:45.0278 0x17dc NetTcpPortSharing - ok
00:22:45.0312 0x17dc [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
00:22:45.0324 0x17dc nfrd960 - ok
00:22:45.0400 0x17dc [ F115C5CD29E512F18BD7138A094B77E5, 90C2CE8B256EE9AABF674ADDE7F85E91DAF48EA368452D03C187A4AE027D4E39 ] NlaSvc C:\Windows\System32\nlasvc.dll
00:22:45.0720 0x17dc NlaSvc - ok
00:22:45.0775 0x17dc [ B9730495E0CF674680121E34BD95A73B, 1A3DD943B0EEA19A676175825CB135825ECF41404B59349AC9B1E6D137FA9B46 ] npf C:\Windows\system32\drivers\npf.sys
00:22:45.0793 0x17dc npf - ok
00:22:45.0826 0x17dc [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs C:\Windows\system32\drivers\Npfs.sys
00:22:46.0112 0x17dc Npfs - ok
00:22:46.0136 0x17dc [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi C:\Windows\system32\nsisvc.dll
00:22:46.0333 0x17dc nsi - ok
00:22:46.0346 0x17dc [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
00:22:46.0638 0x17dc nsiproxy - ok
00:22:46.0685 0x17dc [ 168437A522D178DF6A372F09782B084F, A7FBFEF6B21926B8F405CC0D5C5EA618C3E8C93EF97BE07EF407BAC54099296B ] nSvcIp C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
00:22:46.0715 0x17dc nSvcIp - ok
00:22:46.0836 0x17dc [ C8DFF8D07755A66C7A4A738930F0FEAC, A2CC58312CE57988ABD976155BE91F558DCEC4C23481C6FBE64B361D511A36EA ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
00:22:46.0924 0x17dc Ntfs - ok
00:22:47.0016 0x17dc [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null C:\Windows\system32\drivers\Null.sys
00:22:47.0249 0x17dc Null - ok
00:22:47.0308 0x17dc [ 1DE923088878B495CD4219E47BA34EB8, 68B8FF593E2972DC239BB9A9E2436A513DBDD16FAC071117AFD45285AD004EC1 ] NVNET C:\Windows\system32\DRIVERS\nvmf6232.sys
00:22:47.0347 0x17dc NVNET - ok
00:22:47.0385 0x17dc [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid C:\Windows\system32\drivers\nvraid.sys
00:22:47.0399 0x17dc nvraid - ok
00:22:47.0428 0x17dc [ 049E81B6FB41C73619ED3FE4DF7D8638, A31AF5271A36356148BF60952C40584652A1F4B8A06B027E9C3E7E4BEFFC3A8B ] nvrd32 C:\Windows\system32\drivers\nvrd32.sys
00:22:47.0487 0x17dc nvrd32 - ok
00:22:47.0514 0x17dc [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970DD29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor C:\Windows\system32\drivers\nvstor.sys
00:22:47.0529 0x17dc nvstor - ok
00:22:47.0557 0x17dc [ 7EBA6C9A0A295B1559EFB9062E701218, AB890B1CE155ABA6E633B9A4D422BFF42322D1CB067C237A926F36C8A5ADC8A2 ] nvstor32 C:\Windows\system32\drivers\nvstor32.sys
00:22:47.0597 0x17dc nvstor32 - ok
00:22:47.0626 0x17dc [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
00:22:47.0640 0x17dc nv_agp - ok
00:22:47.0656 0x17dc [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
00:22:47.0948 0x17dc ohci1394 - ok
00:22:48.0013 0x17dc [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B, 0340E77E8EC2ADC21B8DDD9C9CC95B3F4BCAFD54618A333C72D7D9587D593B83 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
00:22:48.0039 0x17dc ose - ok
00:22:48.0272 0x17dc [ EE5756BDA5BE5891270E0CC6CEC44096, EA18073EEE0F461B14C539D49A7DD91D33AB0C503236F67F70A000835FAAC890 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
00:22:48.0435 0x17dc osppsvc - ok
00:22:48.0483 0x17dc [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
00:22:48.0780 0x17dc p2pimsvc - ok
00:22:48.0831 0x17dc [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc C:\Windows\system32\p2psvc.dll
00:22:49.0059 0x17dc p2psvc - ok
00:22:49.0087 0x17dc [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport C:\Windows\system32\drivers\parport.sys
00:22:49.0318 0x17dc Parport - ok
00:22:49.0350 0x17dc [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0EEBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr C:\Windows\system32\drivers\partmgr.sys
00:22:49.0362 0x17dc partmgr - ok
00:22:49.0379 0x17dc [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm C:\Windows\system32\drivers\parvdm.sys
00:22:49.0647 0x17dc Parvdm - ok
00:22:49.0690 0x17dc [ 52954BE460EC6C54C0ACB2B3B126FFC6, 9F9878EC5ABC74C5A8EE8E1D940F0934F081895B07D844F42F80A638FE713F7B ] PcaSvc C:\Windows\System32\pcasvc.dll
00:22:49.0991 0x17dc PcaSvc - ok
00:22:50.0013 0x17dc [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD569416C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci C:\Windows\system32\drivers\pci.sys
00:22:50.0055 0x17dc pci - ok
00:22:50.0079 0x17dc [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide C:\Windows\system32\drivers\pciide.sys
00:22:50.0090 0x17dc pciide - ok
00:22:50.0128 0x17dc [ 1BEBE7DE8508A02650CDCE45C664C2A2, 67841EA7F1F6B7F19ABD38A004B23610A21AD5BD5E508EED16CC7856CBE44D9C ] PCLEPCI C:\Windows\system32\drivers\pclepci.sys
00:22:50.0428 0x17dc PCLEPCI - detected UnsignedFile.Multi.Generic ( 1 )
00:22:54.0226 0x17dc Detect skipped due to KSN trusted
00:22:54.0226 0x17dc PCLEPCI - ok
00:22:54.0293 0x17dc [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
00:22:54.0315 0x17dc pcmcia - ok
00:22:54.0342 0x17dc [ 5B6C11DE7E839C05248CED8825470FEF, DB57DFD02C18461B1B383DF759730FFEE9C7FA8577E1679FD4740A590303EE79 ] pcouffin C:\Windows\system32\Drivers\pcouffin.sys
00:22:54.0386 0x17dc pcouffin - ok
00:22:54.0410 0x17dc [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw C:\Windows\system32\drivers\pcw.sys
00:22:54.0434 0x17dc pcw - ok
00:22:54.0492 0x17dc [ AEBC369F7DC72AB3F5B9BDF34FA0D43F, 2A819154AC6C23E97C583D90B4D0C112188B7AE9D8D9B3F88811BFCED124E551 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
00:22:54.0758 0x17dc PEAUTH - ok
00:22:54.0985 0x17dc [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA402044824DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla C:\Windows\system32\pla.dll
00:22:55.0295 0x17dc pla - ok
00:22:55.0340 0x17dc [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay C:\Windows\system32\umpnpmgr.dll
00:22:55.0618 0x17dc PlugPlay - ok
00:22:55.0660 0x17dc [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
00:22:55.0860 0x17dc PNRPAutoReg - ok
00:22:55.0938 0x17dc [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
00:22:56.0160 0x17dc PNRPsvc - ok
00:22:56.0216 0x17dc [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
00:22:56.0538 0x17dc PolicyAgent - ok
00:22:56.0585 0x17dc [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power C:\Windows\system32\umpo.dll
00:22:56.0688 0x17dc Power - ok
00:22:56.0765 0x17dc [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
00:22:56.0904 0x17dc PptpMiniport - ok
00:22:56.0936 0x17dc [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB04007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor C:\Windows\system32\drivers\processr.sys
00:22:57.0072 0x17dc Processor - ok
00:22:57.0161 0x17dc [ FD9692A3D31E021207D3C2A9DDDC2BE3, 5295EFAD9BD4B59996935A41825392C12A4C968D161BEEA37797F90AF8E54229 ] ProfSvc C:\Windows\system32\profsvc.dll
00:22:57.0398 0x17dc ProfSvc - ok
00:22:57.0417 0x17dc [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] ProtectedStorage C:\Windows\system32\lsass.exe
00:22:57.0606 0x17dc ProtectedStorage - ok
00:22:57.0633 0x17dc [ 390C204CED3785609AB24E9C52054A84, D997A9EAAE4A7FED9C2FEBD1AA7D1171431B9C9D56F8BFB587DCAE26203FF4D2 ] Ps2 C:\Windows\system32\DRIVERS\PS2.sys
00:22:57.0901 0x17dc Ps2 - ok
00:22:57.0942 0x17dc [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
00:22:58.0194 0x17dc Psched - ok
00:22:58.0239 0x17dc [ 49452BFCEC22F36A7A9B9C2181BC3042, C01A2005E9897B142FF9BC6155770F70C19725C425E48D14239195E81E2E42D0 ] PxHelp20 C:\Windows\system32\Drivers\PxHelp20.sys
00:22:58.0283 0x17dc PxHelp20 - ok
00:22:58.0641 0x17dc [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300 C:\Windows\system32\drivers\ql2300.sys
00:22:58.0692 0x17dc ql2300 - ok
00:22:58.0713 0x17dc [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
00:22:58.0727 0x17dc ql40xx - ok
00:22:58.0763 0x17dc [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE C:\Windows\system32\qwave.dll
00:22:59.0006 0x17dc QWAVE - ok
00:22:59.0030 0x17dc [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
00:22:59.0272 0x17dc QWAVEdrv - ok
00:22:59.0302 0x17dc [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
00:22:59.0494 0x17dc RasAcd - ok
00:22:59.0528 0x17dc [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
00:22:59.0815 0x17dc RasAgileVpn - ok
00:22:59.0848 0x17dc [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto C:\Windows\System32\rasauto.dll
00:23:00.0123 0x17dc RasAuto - ok
00:23:00.0147 0x17dc [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
00:23:00.0382 0x17dc Rasl2tp - ok
00:23:00.0423 0x17dc [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan C:\Windows\System32\rasmans.dll
00:23:00.0624 0x17dc RasMan - ok
00:23:00.0644 0x17dc [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
00:23:00.0884 0x17dc RasPppoe - ok
00:23:00.0908 0x17dc [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
00:23:01.0097 0x17dc RasSstp - ok
00:23:01.0121 0x17dc [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
00:23:01.0350 0x17dc rdbss - ok
00:23:01.0372 0x17dc [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus C:\Windows\system32\drivers\rdpbus.sys
00:23:01.0544 0x17dc rdpbus - ok
00:23:01.0557 0x17dc [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
00:23:01.0788 0x17dc RDPCDD - ok
00:23:01.0831 0x17dc [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
00:23:02.0140 0x17dc RDPENCDD - ok
00:23:02.0178 0x17dc [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
00:23:02.0409 0x17dc RDPREFMP - ok
00:23:02.0465 0x17dc [ CD9214A6AE17D188D17C3CF8CB9CC693, 2E16FF1F7446F0600D6519010FD05A30B94D97167C16B3E7FC396A97D8139D60 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
00:23:02.0675 0x17dc RDPWD - ok
00:23:02.0719 0x17dc [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
00:23:02.0734 0x17dc rdyboost - ok
00:23:02.0768 0x17dc [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess C:\Windows\System32\mprdim.dll
00:23:03.0017 0x17dc RemoteAccess - ok
00:23:03.0048 0x17dc [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry C:\Windows\system32\regsvc.dll
00:23:03.0279 0x17dc RemoteRegistry - ok
00:23:03.0317 0x17dc [ CB928D9E6DAF51879DD6BA8D02F01321, DFD263B67DDF98AE09AF6D6986CBC7BE3206BCE8403AAC51BCF9459E78233D12 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
00:23:03.0506 0x17dc RFCOMM - ok
00:23:03.0530 0x17dc [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
00:23:03.0655 0x17dc RpcEptMapper - ok
00:23:03.0668 0x17dc [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator C:\Windows\system32\locator.exe
00:23:03.0879 0x17dc RpcLocator - ok
00:23:03.0922 0x17dc [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs C:\Windows\system32\rpcss.dll
00:23:04.0149 0x17dc RpcSs - ok
00:23:04.0180 0x17dc [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
00:23:04.0376 0x17dc rspndr - ok
00:23:04.0392 0x17dc [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] SamSs C:\Windows\system32\lsass.exe
00:23:04.0593 0x17dc SamSs - ok
00:23:04.0631 0x17dc [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
00:23:04.0644 0x17dc sbp2port - ok
00:23:04.0755 0x17dc [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr C:\Windows\System32\SCardSvr.dll
00:23:04.0977 0x17dc SCardSvr - ok
00:23:05.0006 0x17dc [ C23DBD9BFBA8B1170706E0896B3CF7DA, 3898674C961850581E20B65D96E651A45A23429AB5D11F712704E181B25B528B ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys
00:23:05.0178 0x17dc SCDEmu - detected UnsignedFile.Multi.Generic ( 1 )
00:23:08.0738 0x17dc Detect skipped due to KSN trusted
00:23:08.0738 0x17dc SCDEmu - ok
00:23:08.0769 0x17dc [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
00:23:08.0946 0x17dc scfilter - ok
00:23:09.0000 0x17dc [ A04BB13F8A72F8B6E8B4071723E4E336, E63287FF71C39CBF64C3347C455324C8437F9CF398153E269543588B65389502 ] Schedule C:\Windows\system32\schedsvc.dll
00:23:09.0271 0x17dc Schedule - ok
00:23:09.0301 0x17dc [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc C:\Windows\System32\certprop.dll
00:23:09.0501 0x17dc SCPolicySvc - ok
00:23:09.0516 0x17dc [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC C:\Windows\System32\SDRSVC.dll
00:23:09.0662 0x17dc SDRSVC - ok
00:23:09.0731 0x17dc [ 4A5809A1D796E2675AC0332BF7B0CB11, 7EEEC85A397F04A9460DC37A070D115E19114D9A3E5D9D7E8021F60A7986C8C1 ] SeaPort C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
00:23:09.0748 0x17dc SeaPort - ok
00:23:09.0776 0x17dc [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\Windows\system32\drivers\secdrv.sys
00:23:09.0966 0x17dc secdrv - ok
00:23:09.0993 0x17dc [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AAF39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon C:\Windows\system32\seclogon.dll
00:23:10.0202 0x17dc seclogon - ok
00:23:10.0231 0x17dc [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS C:\Windows\System32\sens.dll
00:23:10.0476 0x17dc SENS - ok
00:23:10.0513 0x17dc [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc C:\Windows\system32\sensrsvc.dll
00:23:10.0677 0x17dc SensrSvc - ok
00:23:10.0711 0x17dc [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum C:\Windows\system32\drivers\serenum.sys
00:23:10.0858 0x17dc Serenum - ok
00:23:10.0876 0x17dc [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial C:\Windows\system32\drivers\serial.sys
00:23:11.0151 0x17dc Serial - ok
00:23:11.0184 0x17dc [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse C:\Windows\system32\drivers\sermouse.sys
00:23:11.0352 0x17dc sermouse - ok
00:23:11.0394 0x17dc [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv C:\Windows\system32\sessenv.dll
00:23:11.0622 0x17dc SessionEnv - ok
00:23:11.0640 0x17dc [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
00:23:11.0859 0x17dc sffdisk - ok
00:23:11.0907 0x17dc [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
00:23:12.0120 0x17dc sffp_mmc - ok
00:23:12.0156 0x17dc [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
00:23:12.0376 0x17dc sffp_sd - ok
00:23:12.0411 0x17dc [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
00:23:12.0698 0x17dc sfloppy - ok
00:23:12.0735 0x17dc [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess C:\Windows\System32\ipnathlp.dll
00:23:12.0902 0x17dc SharedAccess - ok
00:23:12.0964 0x17dc [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
00:23:13.0179 0x17dc ShellHWDetection - ok
00:23:13.0205 0x17dc [ F5AAA8CDDA25B6387AF590D676D25BAD, 0485DC8206F0CFE9D920D8A6AC517EA2472E9267A86878FCB468D2D54D42E646 ] simptcp C:\Windows\System32\tcpsvcs.exe
00:23:13.0454 0x17dc simptcp - ok
00:23:13.0496 0x17dc [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp C:\Windows\system32\drivers\sisagp.sys
00:23:13.0508 0x17dc sisagp - ok
00:23:13.0535 0x17dc [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
00:23:13.0547 0x17dc SiSRaid2 - ok
00:23:13.0570 0x17dc [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
00:23:13.0586 0x17dc SiSRaid4 - ok
00:23:13.0743 0x17dc [ A9C057A9463C25490CF99EA8DF8A4B35, 8F4D1C40D0F17EDBF84ED455B8946F782C7552383F0A07E410A9B6CFF7F51D63 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
00:23:13.0763 0x17dc SkypeUpdate - ok
00:23:13.0811 0x17dc [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb C:\Windows\system32\DRIVERS\smb.sys
00:23:14.0067 0x17dc Smb - ok
00:23:14.0127 0x17dc [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
00:23:14.0301 0x17dc SNMPTRAP - ok
00:23:14.0319 0x17dc [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr C:\Windows\system32\drivers\spldr.sys
00:23:14.0330 0x17dc spldr - ok
00:23:14.0395 0x17dc [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler C:\Windows\System32\spoolsv.exe
00:23:14.0567 0x17dc Spooler - ok
00:23:14.0961 0x17dc [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc C:\Windows\system32\sppsvc.exe
00:23:15.0393 0x17dc sppsvc - ok
00:23:15.0435 0x17dc [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify C:\Windows\system32\sppuinotify.dll
00:23:15.0709 0x17dc sppuinotify - ok
00:23:15.0782 0x17dc [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv C:\Windows\system32\DRIVERS\srv.sys
00:23:15.0921 0x17dc srv - ok
00:23:15.0982 0x17dc [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
00:23:16.0242 0x17dc srv2 - ok
00:23:16.0289 0x17dc [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
00:23:16.0524 0x17dc srvnet - ok
00:23:16.0561 0x17dc [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
00:23:16.0782 0x17dc SSDPSRV - ok
00:23:16.0798 0x17dc [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc C:\Windows\system32\sstpsvc.dll
00:23:17.0013 0x17dc SstpSvc - ok
00:23:17.0036 0x17dc [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor C:\Windows\system32\drivers\stexstor.sys
00:23:17.0047 0x17dc stexstor - ok
00:23:17.0087 0x17dc [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc C:\Windows\System32\wiaservc.dll
00:23:17.0313 0x17dc StiSvc - ok
00:23:17.0344 0x17dc [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
00:23:17.0354 0x17dc swenum - ok
00:23:17.0388 0x17dc [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv C:\Windows\System32\swprv.dll
00:23:17.0653 0x17dc swprv - ok
00:23:17.0738 0x17dc [ 36650D618CA34C9D357DFD3D89B2C56F, 7C3774E53DCF32CB3A4B3504E32D2A651E18467FA0A6AC4C7993C696741B704B ] SysMain C:\Windows\system32\sysmain.dll
00:23:17.0862 0x17dc SysMain - ok
00:23:17.0877 0x17dc [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\Windows\System32\TabSvc.dll
00:23:18.0075 0x17dc TabletInputService - ok
00:23:18.0107 0x17dc [ 0C82061920A2DE35D33C2C2BB83B1E98, A7CA6677E32E0E83125D91AB40529AEFF3513857A5F43366987AB43FF4B18257 ] tap0801 C:\Windows\system32\DRIVERS\tap0801.sys
00:23:18.0283 0x17dc tap0801 - detected UnsignedFile.Multi.Generic ( 1 )
00:23:22.0164 0x17dc Detect skipped due to KSN trusted
00:23:22.0164 0x17dc tap0801 - ok
00:23:22.0211 0x17dc [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv C:\Windows\System32\tapisrv.dll
00:23:22.0331 0x17dc TapiSrv - ok
00:23:22.0372 0x17dc [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS C:\Windows\System32\tbssvc.dll
00:23:22.0543 0x17dc TBS - ok
00:23:22.0725 0x17dc [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
00:23:22.0776 0x17dc Tcpip - ok
00:23:22.0820 0x17dc [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
00:23:22.0862 0x17dc TCPIP6 - ok
00:23:22.0908 0x17dc [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
00:23:23.0119 0x17dc tcpipreg - ok
00:23:23.0165 0x17dc [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
00:23:23.0374 0x17dc TDPIPE - ok
00:23:23.0423 0x17dc [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
00:23:23.0660 0x17dc TDTCP - ok
00:23:23.0763 0x17dc [ 7FE680A3DFA421C4A8E4879AE4C5AAB0, A4C64E155AB2843823CD3586756BA7681CFDEA50812095468221503BBAD30DCD ] tdx C:\Windows\system32\DRIVERS\tdx.sys
00:23:23.0957 0x17dc tdx - ok
00:23:24.0752 0x17dc [ 4ACFC5853A3F0C6C2F54E537C23EE90F, 47D81F471A250696A1A0D19294FC553EB88D813612A8351C89F65D7BF99C8532 ] TeamViewer9 C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
00:23:24.0908 0x17dc TeamViewer9 - ok
00:23:24.0996 0x17dc [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
00:23:25.0008 0x17dc TermDD - ok
00:23:25.0125 0x17dc [ FCFD4F50419B4BC72E80066DA10D2E54, 7C2314A57A404525F0444986332DBAE0964A3359374671598387051D7AAE72AE ] TermService C:\Windows\System32\termsrv.dll
00:23:25.0201 0x17dc TermService - ok
00:23:25.0262 0x17dc [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes C:\Windows\system32\themeservice.dll
00:23:25.0495 0x17dc Themes - ok
00:23:25.0517 0x17dc [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER C:\Windows\system32\mmcss.dll
00:23:25.0820 0x17dc THREADORDER - ok
00:23:25.0855 0x17dc [ B0B3122BFF3910E0BA97014045467778, C4D8A2A9C18C24B609B084DD63F059E177B42D018C1975458857463239624156 ] tifsfilter C:\Windows\system32\DRIVERS\tifsfilt.sys
00:23:25.0888 0x17dc tifsfilter - ok
00:23:25.0994 0x17dc [ 13BFE330880AC0CE8672D00AA5AFF738, 0A46BDDCA70109617779A11BAE6D30FEB84DE000D85C9ACD1E293B82C2E5BA64 ] timounter C:\Windows\system32\DRIVERS\timntr.sys
00:23:26.0024 0x17dc timounter - ok
00:23:26.0053 0x17dc [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks C:\Windows\System32\trkwks.dll
00:23:26.0356 0x17dc TrkWks - ok
00:23:26.0394 0x17dc [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
00:23:26.0666 0x17dc TrustedInstaller - ok
00:23:26.0734 0x17dc [ 6C5139E4283249518F7743D7043775B3, 58684E8C90EBAC65459A97C905CDCFE3A915CFF7E8E96071DE1AC3489F85E67F ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
00:23:27.0020 0x17dc tssecsrv - ok
00:23:27.0053 0x17dc [ FD1D6C73E6333BE727CBCC6054247654, 6F7B9AE1A5986204DB3348D13B303F30FC17624939DA74D6BD114FAEED0FB30E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
00:23:27.0300 0x17dc TsUsbFlt - ok
00:23:27.0324 0x17dc [ 01246F0BAAD7B68EC0F472AA41E33282, 51F975AF029AD015576FFFA3E88F5DBB8B40C7CD30ECDEDE8AFABCB08C954199 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
00:23:27.0549 0x17dc TsUsbGD - ok
00:23:27.0580 0x17dc TuneUpUtilitiesDrv - ok
00:23:27.0598 0x17dc [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
00:23:27.0892 0x17dc tunnel - ok
00:23:27.0914 0x17dc [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
00:23:27.0927 0x17dc uagp35 - ok
00:23:27.0952 0x17dc [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
00:23:28.0223 0x17dc udfs - ok
00:23:28.0272 0x17dc [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect C:\Windows\system32\UI0Detect.exe
00:23:28.0566 0x17dc UI0Detect - ok
00:23:28.0615 0x17dc [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
00:23:28.0627 0x17dc uliagpkx - ok
00:23:28.0664 0x17dc [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
00:23:28.0912 0x17dc umbus - ok
00:23:28.0947 0x17dc [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass C:\Windows\system32\drivers\umpass.sys
00:23:29.0199 0x17dc UmPass - ok
00:23:29.0244 0x17dc [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost C:\Windows\System32\upnphost.dll
00:23:29.0452 0x17dc upnphost - ok
00:23:29.0511 0x17dc [ A1977C315BF5691DA99235AA4A6907AF, 34B52FBA83F0E1C6B001D0AD1808B00152F731D18AAECC3C53B9918AA89BACEC ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
00:23:29.0752 0x17dc usbaudio - ok
00:23:29.0795 0x17dc [ 0803FBA9FE829D61AE26EC0BCC910C46, 30D00E2C7DFC630C99C1599587D4F9C272BC30D444E07C961AA05BF84587806B ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
00:23:29.0851 0x17dc usbccgp - ok

Re: Proces lvhidsvc.exe vytěžuje procesor, prosím o pomoc o

Napsal: 19 dub 2015 23:32
od Hop
00:22:58.0194 0x17dc Psched - ok
00:22:58.0239 0x17dc [ 49452BFCEC22F36A7A9B9C2181BC3042, C01A2005E9897B142FF9BC6155770F70C19725C425E48D14239195E81E2E42D0 ] PxHelp20 C:\Windows\system32\Drivers\PxHelp20.sys
00:22:58.0283 0x17dc PxHelp20 - ok
00:22:58.0641 0x17dc [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300 C:\Windows\system32\drivers\ql2300.sys
00:22:58.0692 0x17dc ql2300 - ok
00:22:58.0713 0x17dc [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
00:22:58.0727 0x17dc ql40xx - ok
00:22:58.0763 0x17dc [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE C:\Windows\system32\qwave.dll
00:22:59.0006 0x17dc QWAVE - ok
00:22:59.0030 0x17dc [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
00:22:59.0272 0x17dc QWAVEdrv - ok
00:22:59.0302 0x17dc [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
00:22:59.0494 0x17dc RasAcd - ok
00:22:59.0528 0x17dc [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
00:22:59.0815 0x17dc RasAgileVpn - ok
00:22:59.0848 0x17dc [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto C:\Windows\System32\rasauto.dll
00:23:00.0123 0x17dc RasAuto - ok
00:23:00.0147 0x17dc [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
00:23:00.0382 0x17dc Rasl2tp - ok
00:23:00.0423 0x17dc [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan C:\Windows\System32\rasmans.dll
00:23:00.0624 0x17dc RasMan - ok
00:23:00.0644 0x17dc [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
00:23:00.0884 0x17dc RasPppoe - ok
00:23:00.0908 0x17dc [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
00:23:01.0097 0x17dc RasSstp - ok
00:23:01.0121 0x17dc [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
00:23:01.0350 0x17dc rdbss - ok
00:23:01.0372 0x17dc [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus C:\Windows\system32\drivers\rdpbus.sys
00:23:01.0544 0x17dc rdpbus - ok
00:23:01.0557 0x17dc [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
00:23:01.0788 0x17dc RDPCDD - ok
00:23:01.0831 0x17dc [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
00:23:02.0140 0x17dc RDPENCDD - ok
00:23:02.0178 0x17dc [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
00:23:02.0409 0x17dc RDPREFMP - ok
00:23:02.0465 0x17dc [ CD9214A6AE17D188D17C3CF8CB9CC693, 2E16FF1F7446F0600D6519010FD05A30B94D97167C16B3E7FC396A97D8139D60 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
00:23:02.0675 0x17dc RDPWD - ok
00:23:02.0719 0x17dc [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
00:23:02.0734 0x17dc rdyboost - ok
00:23:02.0768 0x17dc [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess C:\Windows\System32\mprdim.dll
00:23:03.0017 0x17dc RemoteAccess - ok
00:23:03.0048 0x17dc [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry C:\Windows\system32\regsvc.dll
00:23:03.0279 0x17dc RemoteRegistry - ok
00:23:03.0317 0x17dc [ CB928D9E6DAF51879DD6BA8D02F01321, DFD263B67DDF98AE09AF6D6986CBC7BE3206BCE8403AAC51BCF9459E78233D12 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
00:23:03.0506 0x17dc RFCOMM - ok
00:23:03.0530 0x17dc [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
00:23:03.0655 0x17dc RpcEptMapper - ok
00:23:03.0668 0x17dc [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator C:\Windows\system32\locator.exe
00:23:03.0879 0x17dc RpcLocator - ok
00:23:03.0922 0x17dc [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs C:\Windows\system32\rpcss.dll
00:23:04.0149 0x17dc RpcSs - ok
00:23:04.0180 0x17dc [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
00:23:04.0376 0x17dc rspndr - ok
00:23:04.0392 0x17dc [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] SamSs C:\Windows\system32\lsass.exe
00:23:04.0593 0x17dc SamSs - ok
00:23:04.0631 0x17dc [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
00:23:04.0644 0x17dc sbp2port - ok
00:23:04.0755 0x17dc [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr C:\Windows\System32\SCardSvr.dll
00:23:04.0977 0x17dc SCardSvr - ok
00:23:05.0006 0x17dc [ C23DBD9BFBA8B1170706E0896B3CF7DA, 3898674C961850581E20B65D96E651A45A23429AB5D11F712704E181B25B528B ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys
00:23:05.0178 0x17dc SCDEmu - detected UnsignedFile.Multi.Generic ( 1 )
00:23:08.0738 0x17dc Detect skipped due to KSN trusted
00:23:08.0738 0x17dc SCDEmu - ok
00:23:08.0769 0x17dc [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
00:23:08.0946 0x17dc scfilter - ok
00:23:09.0000 0x17dc [ A04BB13F8A72F8B6E8B4071723E4E336, E63287FF71C39CBF64C3347C455324C8437F9CF398153E269543588B65389502 ] Schedule C:\Windows\system32\schedsvc.dll
00:23:09.0271 0x17dc Schedule - ok
00:23:09.0301 0x17dc [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc C:\Windows\System32\certprop.dll
00:23:09.0501 0x17dc SCPolicySvc - ok
00:23:09.0516 0x17dc [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC C:\Windows\System32\SDRSVC.dll
00:23:09.0662 0x17dc SDRSVC - ok
00:23:09.0731 0x17dc [ 4A5809A1D796E2675AC0332BF7B0CB11, 7EEEC85A397F04A9460DC37A070D115E19114D9A3E5D9D7E8021F60A7986C8C1 ] SeaPort C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
00:23:09.0748 0x17dc SeaPort - ok
00:23:09.0776 0x17dc [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\Windows\system32\drivers\secdrv.sys
00:23:09.0966 0x17dc secdrv - ok
00:23:09.0993 0x17dc [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AAF39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon C:\Windows\system32\seclogon.dll
00:23:10.0202 0x17dc seclogon - ok
00:23:10.0231 0x17dc [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS C:\Windows\System32\sens.dll
00:23:10.0476 0x17dc SENS - ok
00:23:10.0513 0x17dc [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc C:\Windows\system32\sensrsvc.dll
00:23:10.0677 0x17dc SensrSvc - ok
00:23:10.0711 0x17dc [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum C:\Windows\system32\drivers\serenum.sys
00:23:10.0858 0x17dc Serenum - ok
00:23:10.0876 0x17dc [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial C:\Windows\system32\drivers\serial.sys
00:23:11.0151 0x17dc Serial - ok
00:23:11.0184 0x17dc [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse C:\Windows\system32\drivers\sermouse.sys
00:23:11.0352 0x17dc sermouse - ok
00:23:11.0394 0x17dc [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv C:\Windows\system32\sessenv.dll
00:23:11.0622 0x17dc SessionEnv - ok
00:23:11.0640 0x17dc [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
00:23:11.0859 0x17dc sffdisk - ok
00:23:11.0907 0x17dc [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
00:23:12.0120 0x17dc sffp_mmc - ok
00:23:12.0156 0x17dc [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
00:23:12.0376 0x17dc sffp_sd - ok
00:23:12.0411 0x17dc [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
00:23:12.0698 0x17dc sfloppy - ok
00:23:12.0735 0x17dc [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess C:\Windows\System32\ipnathlp.dll
00:23:12.0902 0x17dc SharedAccess - ok
00:23:12.0964 0x17dc [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
00:23:13.0179 0x17dc ShellHWDetection - ok
00:23:13.0205 0x17dc [ F5AAA8CDDA25B6387AF590D676D25BAD, 0485DC8206F0CFE9D920D8A6AC517EA2472E9267A86878FCB468D2D54D42E646 ] simptcp C:\Windows\System32\tcpsvcs.exe
00:23:13.0454 0x17dc simptcp - ok
00:23:13.0496 0x17dc [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp C:\Windows\system32\drivers\sisagp.sys
00:23:13.0508 0x17dc sisagp - ok
00:23:13.0535 0x17dc [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
00:23:13.0547 0x17dc SiSRaid2 - ok
00:23:13.0570 0x17dc [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
00:23:13.0586 0x17dc SiSRaid4 - ok
00:23:13.0743 0x17dc [ A9C057A9463C25490CF99EA8DF8A4B35, 8F4D1C40D0F17EDBF84ED455B8946F782C7552383F0A07E410A9B6CFF7F51D63 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
00:23:13.0763 0x17dc SkypeUpdate - ok
00:23:13.0811 0x17dc [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb C:\Windows\system32\DRIVERS\smb.sys
00:23:14.0067 0x17dc Smb - ok
00:23:14.0127 0x17dc [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
00:23:14.0301 0x17dc SNMPTRAP - ok
00:23:14.0319 0x17dc [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr C:\Windows\system32\drivers\spldr.sys
00:23:14.0330 0x17dc spldr - ok
00:23:14.0395 0x17dc [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler C:\Windows\System32\spoolsv.exe
00:23:14.0567 0x17dc Spooler - ok
00:23:14.0961 0x17dc [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc C:\Windows\system32\sppsvc.exe
00:23:15.0393 0x17dc sppsvc - ok
00:23:15.0435 0x17dc [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify C:\Windows\system32\sppuinotify.dll
00:23:15.0709 0x17dc sppuinotify - ok
00:23:15.0782 0x17dc [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv C:\Windows\system32\DRIVERS\srv.sys
00:23:15.0921 0x17dc srv - ok
00:23:15.0982 0x17dc [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
00:23:16.0242 0x17dc srv2 - ok
00:23:16.0289 0x17dc [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
00:23:16.0524 0x17dc srvnet - ok
00:23:16.0561 0x17dc [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
00:23:16.0782 0x17dc SSDPSRV - ok
00:23:16.0798 0x17dc [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc C:\Windows\system32\sstpsvc.dll
00:23:17.0013 0x17dc SstpSvc - ok
00:23:17.0036 0x17dc [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor C:\Windows\system32\drivers\stexstor.sys
00:23:17.0047 0x17dc stexstor - ok
00:23:17.0087 0x17dc [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc C:\Windows\System32\wiaservc.dll
00:23:17.0313 0x17dc StiSvc - ok
00:23:17.0344 0x17dc [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
00:23:17.0354 0x17dc swenum - ok
00:23:17.0388 0x17dc [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv C:\Windows\System32\swprv.dll
00:23:17.0653 0x17dc swprv - ok
00:23:17.0738 0x17dc [ 36650D618CA34C9D357DFD3D89B2C56F, 7C3774E53DCF32CB3A4B3504E32D2A651E18467FA0A6AC4C7993C696741B704B ] SysMain C:\Windows\system32\sysmain.dll
00:23:17.0862 0x17dc SysMain - ok
00:23:17.0877 0x17dc [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\Windows\System32\TabSvc.dll
00:23:18.0075 0x17dc TabletInputService - ok
00:23:18.0107 0x17dc [ 0C82061920A2DE35D33C2C2BB83B1E98, A7CA6677E32E0E83125D91AB40529AEFF3513857A5F43366987AB43FF4B18257 ] tap0801 C:\Windows\system32\DRIVERS\tap0801.sys
00:23:18.0283 0x17dc tap0801 - detected UnsignedFile.Multi.Generic ( 1 )
00:23:22.0164 0x17dc Detect skipped due to KSN trusted
00:23:22.0164 0x17dc tap0801 - ok
00:23:22.0211 0x17dc [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv C:\Windows\System32\tapisrv.dll
00:23:22.0331 0x17dc TapiSrv - ok
00:23:22.0372 0x17dc [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS C:\Windows\System32\tbssvc.dll
00:23:22.0543 0x17dc TBS - ok
00:23:22.0725 0x17dc [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
00:23:22.0776 0x17dc Tcpip - ok
00:23:22.0820 0x17dc [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
00:23:22.0862 0x17dc TCPIP6 - ok
00:23:22.0908 0x17dc [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
00:23:23.0119 0x17dc tcpipreg - ok
00:23:23.0165 0x17dc [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
00:23:23.0374 0x17dc TDPIPE - ok
00:23:23.0423 0x17dc [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
00:23:23.0660 0x17dc TDTCP - ok
00:23:23.0763 0x17dc [ 7FE680A3DFA421C4A8E4879AE4C5AAB0, A4C64E155AB2843823CD3586756BA7681CFDEA50812095468221503BBAD30DCD ] tdx C:\Windows\system32\DRIVERS\tdx.sys
00:23:23.0957 0x17dc tdx - ok
00:23:24.0752 0x17dc [ 4ACFC5853A3F0C6C2F54E537C23EE90F, 47D81F471A250696A1A0D19294FC553EB88D813612A8351C89F65D7BF99C8532 ] TeamViewer9 C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
00:23:24.0908 0x17dc TeamViewer9 - ok
00:23:24.0996 0x17dc [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
00:23:25.0008 0x17dc TermDD - ok
00:23:25.0125 0x17dc [ FCFD4F50419B4BC72E80066DA10D2E54, 7C2314A57A404525F0444986332DBAE0964A3359374671598387051D7AAE72AE ] TermService C:\Windows\System32\termsrv.dll
00:23:25.0201 0x17dc TermService - ok
00:23:25.0262 0x17dc [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes C:\Windows\system32\themeservice.dll
00:23:25.0495 0x17dc Themes - ok
00:23:25.0517 0x17dc [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER C:\Windows\system32\mmcss.dll
00:23:25.0820 0x17dc THREADORDER - ok
00:23:25.0855 0x17dc [ B0B3122BFF3910E0BA97014045467778, C4D8A2A9C18C24B609B084DD63F059E177B42D018C1975458857463239624156 ] tifsfilter C:\Windows\system32\DRIVERS\tifsfilt.sys
00:23:25.0888 0x17dc tifsfilter - ok
00:23:25.0994 0x17dc [ 13BFE330880AC0CE8672D00AA5AFF738, 0A46BDDCA70109617779A11BAE6D30FEB84DE000D85C9ACD1E293B82C2E5BA64 ] timounter C:\Windows\system32\DRIVERS\timntr.sys
00:23:26.0024 0x17dc timounter - ok
00:23:26.0053 0x17dc [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks C:\Windows\System32\trkwks.dll
00:23:26.0356 0x17dc TrkWks - ok
00:23:26.0394 0x17dc [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
00:23:26.0666 0x17dc TrustedInstaller - ok
00:23:26.0734 0x17dc [ 6C5139E4283249518F7743D7043775B3, 58684E8C90EBAC65459A97C905CDCFE3A915CFF7E8E96071DE1AC3489F85E67F ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
00:23:27.0020 0x17dc tssecsrv - ok
00:23:27.0053 0x17dc [ FD1D6C73E6333BE727CBCC6054247654, 6F7B9AE1A5986204DB3348D13B303F30FC17624939DA74D6BD114FAEED0FB30E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
00:23:27.0300 0x17dc TsUsbFlt - ok
00:23:27.0324 0x17dc [ 01246F0BAAD7B68EC0F472AA41E33282, 51F975AF029AD015576FFFA3E88F5DBB8B40C7CD30ECDEDE8AFABCB08C954199 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
00:23:27.0549 0x17dc TsUsbGD - ok
00:23:27.0580 0x17dc TuneUpUtilitiesDrv - ok
00:23:27.0598 0x17dc [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
00:23:27.0892 0x17dc tunnel - ok
00:23:27.0914 0x17dc [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
00:23:27.0927 0x17dc uagp35 - ok
00:23:27.0952 0x17dc [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
00:23:28.0223 0x17dc udfs - ok
00:23:28.0272 0x17dc [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect C:\Windows\system32\UI0Detect.exe
00:23:28.0566 0x17dc UI0Detect - ok
00:23:28.0615 0x17dc [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
00:23:28.0627 0x17dc uliagpkx - ok
00:23:28.0664 0x17dc [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
00:23:28.0912 0x17dc umbus - ok
00:23:28.0947 0x17dc [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass C:\Windows\system32\drivers\umpass.sys
00:23:29.0199 0x17dc UmPass - ok
00:23:29.0244 0x17dc [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost C:\Windows\System32\upnphost.dll
00:23:29.0452 0x17dc upnphost - ok
00:23:29.0511 0x17dc [ A1977C315BF5691DA99235AA4A6907AF, 34B52FBA83F0E1C6B001D0AD1808B00152F731D18AAECC3C53B9918AA89BACEC ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
00:23:29.0752 0x17dc usbaudio - ok
00:23:29.0795 0x17dc [ 0803FBA9FE829D61AE26EC0BCC910C46, 30D00E2C7DFC630C99C1599587D4F9C272BC30D444E07C961AA05BF84587806B ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
00:23:29.0851 0x17dc usbccgp - ok
00:23:29.0904 0x17dc [ 2352AB5F9F8F097BF9D41D5A4718A041, 25BC7828C625B9B2A5110C25B230C5828CEC18EC97ECF9EC4745E8930CBF472C ] usbcir C:\Windows\system32\drivers\usbcir.sys
00:23:30.0071 0x17dc usbcir - ok
00:23:30.0108 0x17dc [ D40855F89B69305140BBD7E9A3BA2DA6, 745DC6D770666F6B19C2B6AA89C21D1A314732E291453BFA2367F9AF86F97C3C ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
00:23:30.0320 0x17dc usbehci - ok
00:23:30.0357 0x17dc [ EDF2DF71C4F1E13A6AC75F5224DE655A, 1764D155C6B99201774B57195349304259232A12868ECFC2069CA49443EBDC2C ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
00:23:30.0540 0x17dc usbhub - ok
00:23:30.0553 0x17dc [ 9828C8D14CC2676421778F0DE638CF97, 479A28211FFB85190A01FAB0283B927588805D2C0CDB03F85F8F814B88E4F453 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
00:23:30.0751 0x17dc usbohci - ok
00:23:30.0779 0x17dc [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
00:23:30.0938 0x17dc usbprint - ok
00:23:30.0963 0x17dc [ FC6B21DB4B5B398AB93DBE59CBF11036, A94094C208F376405C07822A6143001EF1B12AE93205CD8002E87F6EB45F6374 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
00:23:31.0209 0x17dc usbscan - ok
00:23:31.0242 0x17dc [ F991AB9CC6B908DB552166768176896A, AD8E7A16B23B244B7F834622D4E38B5844193C6E31EF96F61E0E2EA16C945026 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
00:23:31.0461 0x17dc USBSTOR - ok
00:23:31.0501 0x17dc [ 800AABFD625EEFF899F7E5496BDE37AB, 3EB7ED07760CB348FCA9A06C2B838EF79B51A83C5F70A9C9EAAEAE54480067E2 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
00:23:31.0711 0x17dc usbuhci - ok
00:23:31.0769 0x17dc [ DE014425522610BEDCA3821BB8C0F1D5, D6FEA0DF07F89834AEEE8C02CC7FD41068D758B6CCECE2EEE5CF4B9DB646FA1E ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
00:23:31.0998 0x17dc usbvideo - ok
00:23:32.0046 0x17dc [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms C:\Windows\System32\uxsms.dll
00:23:32.0296 0x17dc UxSms - ok
00:23:32.0316 0x17dc [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] VaultSvc C:\Windows\system32\lsass.exe
00:23:32.0540 0x17dc VaultSvc - ok
00:23:32.0711 0x17dc [ EA9ADB96A31020D4D3E5167FE31427DE, 5635513F58CF89AF87B7A5CE570B348A932C5C74D3FBAF575D708198B174D641 ] VBoxAswDrv C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys
00:23:32.0728 0x17dc VBoxAswDrv - ok
00:23:32.0771 0x17dc [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFEF9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
00:23:32.0783 0x17dc vdrvroot - ok
00:23:32.0819 0x17dc [ C3CD30495687C2A2F66A65CA6FD89BE9, 582E4706C1D6A151020D14B26C7BF166F4E42BDD6E410F30EC452469270C5E9B ] vds C:\Windows\System32\vds.exe
00:23:33.0122 0x17dc vds - ok
00:23:33.0164 0x17dc [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
00:23:33.0320 0x17dc vga - ok
00:23:33.0345 0x17dc [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave C:\Windows\System32\drivers\vga.sys
00:23:33.0509 0x17dc VgaSave - ok
00:23:33.0553 0x17dc [ 5461686CCA2FDA57B024547733AB42E3, 2721D0659AA890172FCAD4EC4D926B58ACD0EE4887DA51545DC7237420D5BF84 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
00:23:33.0592 0x17dc vhdmp - ok
00:23:33.0616 0x17dc [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp C:\Windows\system32\drivers\viaagp.sys
00:23:33.0633 0x17dc viaagp - ok
00:23:33.0650 0x17dc [ E02F079A6AA107F06B16549C6E5C7B74, B530DCE3EE4F285B3D5F69F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
00:23:33.0872 0x17dc ViaC7 - ok
00:23:33.0926 0x17dc [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFED70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide C:\Windows\system32\drivers\viaide.sys
00:23:33.0954 0x17dc viaide - ok
00:23:33.0996 0x17dc [ 3B8F222B23917C041E4DA29CCC57E7D0, 2764C7A11FD5672FBF72CDD4331F1895B5084664919AD4FC855DFDD451403D4C ] vncmirror C:\Windows\system32\DRIVERS\vncmirror.sys
00:23:34.0265 0x17dc vncmirror - ok
00:23:34.0303 0x17dc [ 4C63E00F2F4B5F86AB48A58CD990F212, 9796BD4B9CFEEEAF57C5E332A732EFC2770B21F9B35301A5D202F5FC52C1E035 ] volmgr C:\Windows\system32\drivers\volmgr.sys
00:23:34.0321 0x17dc volmgr - ok
00:23:34.0346 0x17dc [ B5BB72067DDDDBBFB04B2F89FF8C3C87, 65B9AD55F43940A5FDD88B6EC5034A7E375DF8E6F5F1AE6519A4BD6B7E992EBC ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
00:23:34.0387 0x17dc volmgrx - ok
00:23:34.0416 0x17dc [ F497F67932C6FA693D7DE2780631CFE7, DAE544ED99D2CF570DA31343BD87D2F856D0D13529656D38E1BF854C77F017F6 ] volsnap C:\Windows\system32\drivers\volsnap.sys
00:23:34.0433 0x17dc volsnap - ok
00:23:34.0462 0x17dc [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A315FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
00:23:34.0477 0x17dc vsmraid - ok
00:23:34.0547 0x17dc [ 209A3B1901B83AEB8527ED211CCE9E4C, 1A431F6409F8E0531F600F8F988ECECECB902DA26BBAAF1DE74A5CAC29A7CB44 ] VSS C:\Windows\system32\vssvc.exe
00:23:34.0877 0x17dc VSS - ok
00:23:34.0915 0x17dc [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB523DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
00:23:35.0051 0x17dc vwifibus - ok
00:23:35.0098 0x17dc [ 7090D3436EEB4E7DA3373090A23448F7, 3A130B28F2BFA7DCEC8596C4CE4E187B019F5ECF1AAC8DD1BBDE9CBD2428FEC2 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
00:23:35.0286 0x17dc vwififlt - ok
00:23:35.0337 0x17dc [ 55187FD710E27D5095D10A472C8BAF1C, AE298E2D3BA366BCBDC092C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time C:\Windows\system32\w32time.dll
00:23:35.0605 0x17dc W32Time - ok
00:23:35.0690 0x17dc [ 57C8C20BFA5BEF6BD851EBAC67A8CED0, D5968069D934400A46B9FF92ECA9D7660BDC30C6909BA588AD49F7656246EE98 ] W3SVC C:\Windows\system32\inetsrv\iisw3adm.dll
00:23:35.0867 0x17dc W3SVC - ok
00:23:35.0907 0x17dc [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
00:23:36.0238 0x17dc WacomPen - ok
00:23:36.0267 0x17dc [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
00:23:36.0619 0x17dc WANARP - ok
00:23:36.0625 0x17dc [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
00:23:36.0885 0x17dc Wanarpv6 - ok
00:23:36.0915 0x17dc [ 57C8C20BFA5BEF6BD851EBAC67A8CED0, D5968069D934400A46B9FF92ECA9D7660BDC30C6909BA588AD49F7656246EE98 ] WAS C:\Windows\system32\inetsrv\iisw3adm.dll
00:23:37.0135 0x17dc WAS - ok
00:23:37.0244 0x17dc [ 353A04C273EC58475D8633E75CCD5604, FFAE53B6B53AEFC9E8A10BF27480E072D74430276BEB532FE1D473E9616D8CE0 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
00:23:37.0294 0x17dc WatAdminSvc - ok
00:23:37.0362 0x17dc [ 691E3285E53DCA558E1A84667F13E15A, 12EDB66EF8FC100402BEA221F354D3BD5542F6DDF715B6E7D873D6BAE7E3D329 ] wbengine C:\Windows\system32\wbengine.exe
00:23:37.0659 0x17dc wbengine - ok
00:23:37.0716 0x17dc [ 9614B5D29DC76AC3C29F6D2D3AA70E67, A2FFB92F0030B4CD771E862DA575ECCF2F3A5B4B85858C1241A0C59262C0EC88 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
00:23:37.0981 0x17dc WbioSrvc - ok
00:23:38.0002 0x17dc [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F86C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc C:\Windows\System32\wcncsvc.dll
00:23:38.0231 0x17dc wcncsvc - ok
00:23:38.0247 0x17dc [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710DA81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
00:23:38.0503 0x17dc WcsPlugInService - ok
00:23:38.0531 0x17dc [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E6945FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd C:\Windows\system32\drivers\wd.sys
00:23:38.0543 0x17dc Wd - ok
00:23:38.0586 0x17dc [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
00:23:38.0615 0x17dc Wdf01000 - ok
00:23:38.0649 0x17dc [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiServiceHost C:\Windows\system32\wdi.dll
00:23:38.0861 0x17dc WdiServiceHost - ok
00:23:38.0867 0x17dc [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiSystemHost C:\Windows\system32\wdi.dll
00:23:39.0112 0x17dc WdiSystemHost - ok
00:23:39.0143 0x17dc [ 75E8EBD7040CE238684333F97014762A, 2CA0B267FBAEB303D1F8B639D733DC0DE17BA1276CC9096035B4F2BBBED3EF7F ] WebClient C:\Windows\System32\webclnt.dll
00:23:39.0394 0x17dc WebClient - ok
00:23:39.0435 0x17dc [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F16B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc C:\Windows\system32\wecsvc.dll
00:23:39.0691 0x17dc Wecsvc - ok
00:23:39.0713 0x17dc [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport C:\Windows\System32\wercplsupport.dll
00:23:40.0005 0x17dc wercplsupport - ok
00:23:40.0040 0x17dc [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76DA6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc C:\Windows\System32\WerSvc.dll
00:23:40.0320 0x17dc WerSvc - ok
00:23:40.0343 0x17dc [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
00:23:40.0569 0x17dc WfpLwf - ok
00:23:40.0586 0x17dc [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount C:\Windows\system32\drivers\wimmount.sys
00:23:40.0597 0x17dc WIMMount - ok
00:23:40.0650 0x17dc [ 082CF481F659FAE0DE51AD060881EB47, BB67D2AF0BB9192D4CCF66C23D80CE5A1B38715556D94E2561DBF8F805FA30A5 ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
00:23:40.0924 0x17dc WinDefend - ok
00:23:40.0936 0x17dc WinHttpAutoProxySvc - ok
00:23:40.0994 0x17dc [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
00:23:41.0266 0x17dc Winmgmt - ok
00:23:41.0359 0x17dc [ 1DE9BD23AFA36150586C732D876D9B74, 32CF2C8EC18CFDA677AB72A182EB4B839DCC72BFCD6CA309BE2F434991CAE973 ] WinRM C:\Windows\system32\WsmSvc.dll
00:23:41.0727 0x17dc WinRM - ok
00:23:41.0872 0x17dc [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc C:\Windows\System32\wlansvc.dll
00:23:42.0097 0x17dc Wlansvc - ok
00:23:42.0354 0x17dc [ 0A70F4022EC2E14C159EFC4F69AA2477, FF248136576F9803762C54DE5439D3411B52DCBC95B93176A5DAB857967D9AC4 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
00:23:42.0455 0x17dc wlidsvc - ok
00:23:42.0497 0x17dc [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
00:23:42.0739 0x17dc WmiAcpi - ok
00:23:42.0784 0x17dc [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062ADBB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
00:23:43.0058 0x17dc wmiApSrv - ok
00:23:43.0205 0x17dc [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
00:23:43.0479 0x17dc WMPNetworkSvc - ok
00:23:43.0530 0x17dc [ 768EB4CF354B061DFD38C5569ABF4C59, ACB8CBD86D3FA32750175203E60B2955B949495DDE89387644D6B93D6F2BC7DD ] WMSVC C:\Windows\system32\inetsrv\wmsvc.exe
00:23:43.0815 0x17dc WMSVC - ok
00:23:43.0851 0x17dc [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC449D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc C:\Windows\System32\wpcsvc.dll
00:23:44.0155 0x17dc WPCSvc - ok
00:23:44.0181 0x17dc [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C1891750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
00:23:44.0382 0x17dc WPDBusEnum - ok
00:23:44.0414 0x17dc [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BCEF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
00:23:44.0639 0x17dc ws2ifsl - ok
00:23:44.0683 0x17dc [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc C:\Windows\System32\wscsvc.dll
00:23:44.0874 0x17dc wscsvc - ok
00:23:44.0880 0x17dc WSearch - ok
00:23:45.0075 0x17dc [ 7E5C454A3F986FEBAD075DB8D915917E, 9E9147DDACD075958689523130DB92FC4ED0E38433461D8AB8792BCFBD9376DA ] wuauserv C:\Windows\system32\wuaueng.dll
00:23:45.0189 0x17dc wuauserv - ok
00:23:45.0222 0x17dc [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
00:23:45.0372 0x17dc WudfPf - ok
00:23:45.0406 0x17dc [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
00:23:45.0620 0x17dc WUDFRd - ok
00:23:45.0647 0x17dc [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc C:\Windows\System32\WUDFSvc.dll
00:23:45.0994 0x17dc wudfsvc - ok
00:23:46.0085 0x17dc [ 7CC38741B8F68F1E0D5D79DA6123666A, F90D2DA1C9AFB506C381CD386E1430931B5F81813FEDFD720F87FBC54E7A00DA ] WwanSvc C:\Windows\System32\wwansvc.dll
00:23:46.0306 0x17dc WwanSvc - ok
00:23:46.0347 0x17dc [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] xxxHpSAMD C:\Windows\system32\drivers\HpSAMD.sys
00:23:46.0359 0x17dc xxxHpSAMD - ok
00:23:46.0383 0x17dc ================Scan global ===============================
00:23:46.0406 0x17dc [ DAB748AE0439955ED2FA22357533DDDB, 73EDD402C7479DDCE1998D0C7E99E1EC2974F64EFC33A851439CC85D09EDCDF9 ] C:\Windows\system32\basesrv.dll
00:23:46.0454 0x17dc [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
00:23:46.0475 0x17dc [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
00:23:46.0508 0x17dc [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\Windows\system32\sxssrv.dll
00:23:46.0536 0x17dc [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6, D7BC4ED605B32274B45328FD9914FB0E7B90D869A38F0E6F94FB1BF4E9E2B407 ] C:\Windows\system32\services.exe
00:23:46.0547 0x17dc [ Global ] - ok
00:23:46.0548 0x17dc ================ Scan MBR ==================================
00:23:46.0560 0x17dc [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
00:23:47.0076 0x17dc \Device\Harddisk0\DR0 - ok
00:23:47.0080 0x17dc [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk1\DR1
00:23:47.0129 0x17dc \Device\Harddisk1\DR1 - ok
00:23:47.0136 0x17dc [ 66D0B28C8B44E531D0C19F436252ABAA ] \Device\Harddisk2\DR2
00:23:47.0417 0x17dc \Device\Harddisk2\DR2 - ok
00:23:47.0418 0x17dc ================ Scan VBR ==================================
00:23:47.0423 0x17dc [ 727312C20BF41942A00CE9EBB06B2EBD ] \Device\Harddisk0\DR0\Partition1
00:23:47.0424 0x17dc \Device\Harddisk0\DR0\Partition1 - ok
00:23:47.0448 0x17dc [ 2F617FF8E3E7DD21D4B0E2ABD8CA762D ] \Device\Harddisk0\DR0\Partition2
00:23:47.0469 0x17dc \Device\Harddisk0\DR0\Partition2 - ok
00:23:47.0488 0x17dc [ 3138BD5DD4E7F0DB1C04F30ADF1D85E5 ] \Device\Harddisk0\DR0\Partition3
00:23:47.0489 0x17dc \Device\Harddisk0\DR0\Partition3 - ok
00:23:47.0495 0x17dc [ 20226A4A87E6A66A02183F86E6BF909E ] \Device\Harddisk1\DR1\Partition1
00:23:47.0536 0x17dc \Device\Harddisk1\DR1\Partition1 - ok
00:23:47.0540 0x17dc [ 7C654BC9D54D7A09B9ABFFFEFFEFA83D ] \Device\Harddisk1\DR1\Partition2
00:23:47.0587 0x17dc \Device\Harddisk1\DR1\Partition2 - ok
00:23:47.0591 0x17dc [ 94F3AA98DCB0781B692BE01FF8E0C4C0 ] \Device\Harddisk1\DR1\Partition3
00:23:47.0624 0x17dc \Device\Harddisk1\DR1\Partition3 - ok
00:23:47.0631 0x17dc [ 6FF6B7E24AEBF837962117FE2D6613CC ] \Device\Harddisk2\DR2\Partition1
00:23:47.0634 0x17dc \Device\Harddisk2\DR2\Partition1 - ok
00:23:47.0634 0x17dc ================ Scan generic autorun ======================
00:23:47.0756 0x17dc [ 6A5B6233EBD9791AF1AB8B54DA47D34A, A00DACB409BA17965DDAFE3969A9C6CA2194DF8319E9D374C0805FC329F9E35A ] C:\Program Files\Seznam\Postak\Postak.exe
00:23:47.0946 0x17dc SMail - detected UnsignedFile.Multi.Generic ( 1 )
00:23:51.0226 0x17dc SMail ( UnsignedFile.Multi.Generic ) - warning
00:23:51.0226 0x17dc Force sending object to P2P due to detect: C:\Program Files\Seznam\Postak\Postak.exe
00:23:54.0720 0x17dc Object send P2P result: true
00:23:58.0740 0x17dc [ 06964B7DE858BB6317164BF184E9C766, ADE3D2A7256A8F3F11B6E35979413850EB22B9BBADCE3EC73BE04A1622512126 ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
00:23:58.0980 0x17dc AvastUI.exe - ok
00:23:59.0072 0x17dc [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
00:23:59.0410 0x17dc Sidebar - ok
00:23:59.0453 0x17dc [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
00:23:59.0633 0x17dc mctadmin - ok
00:23:59.0668 0x17dc [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
00:23:59.0860 0x17dc Sidebar - ok
00:23:59.0870 0x17dc [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
00:24:00.0062 0x17dc mctadmin - ok
00:24:00.0161 0x17dc [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] C:\Users\Rodiče\AppData\Local\Google\Update\GoogleUpdate.exe
00:24:00.0172 0x17dc Google Update - ok
00:24:00.0199 0x17dc Skype - ok
00:24:00.0442 0x17dc [ 805210C8DB11D5799E7172923959BF98, A8DCB8A6FDE5ED583D329D6D8A5979FFD3E844046335529BB2E81A5D310E5894 ] C:\Program Files\CCleaner\CCleaner.exe
00:24:00.0646 0x17dc CCleaner Monitoring - ok
00:24:00.0755 0x17dc [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\sidebar.exe
00:24:00.0925 0x17dc Sidebar - ok
00:24:00.0978 0x17dc [ A7DC47DBBE3C0384BA719DC4188AFA7E, FCC8F68A8E55AE2AB9B877A6E46DFC28411B68D09AEACA4792625B5150EFDCFD ] C:\Windows\ehome\ehTray.exe
00:24:01.0235 0x17dc ehTray.exe - ok
00:24:01.0239 0x17dc Skype - ok
00:24:01.0312 0x17dc [ 5D61BE7DB55B026A5D61A3EED09D0EAD, D32CC7B31A6F98C60ABC313ABC7D1143681F72DE2BB2604711A0BA20710CAAAE ] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
00:24:01.0322 0x17dc swg - ok
00:24:01.0388 0x17dc [ B4B4EB2F8849E93FE5FECE11E52C5930, 34FBC84C4A5B837ADEA088BF89D8ED100CBFC477C32BA3E56505CCE633EC6EBA ] c:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe
00:24:01.0584 0x17dc ISUSPM Startup - detected UnsignedFile.Multi.Generic ( 1 )
00:24:04.0961 0x17dc Detect skipped due to KSN trusted
00:24:04.0961 0x17dc ISUSPM Startup - ok
00:24:05.0255 0x17dc [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\sidebar.exe
00:24:05.0334 0x17dc Sidebar - ok
00:24:05.0412 0x17dc [ A7DC47DBBE3C0384BA719DC4188AFA7E, FCC8F68A8E55AE2AB9B877A6E46DFC28411B68D09AEACA4792625B5150EFDCFD ] C:\Windows\ehome\ehTray.exe
00:24:05.0559 0x17dc ehTray.exe - ok
00:24:05.0564 0x17dc Skype - ok
00:24:05.0587 0x17dc [ 5D61BE7DB55B026A5D61A3EED09D0EAD, D32CC7B31A6F98C60ABC313ABC7D1143681F72DE2BB2604711A0BA20710CAAAE ] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
00:24:05.0595 0x17dc swg - ok
00:24:05.0621 0x17dc [ B4B4EB2F8849E93FE5FECE11E52C5930, 34FBC84C4A5B837ADEA088BF89D8ED100CBFC477C32BA3E56505CCE633EC6EBA ] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe
00:24:05.0754 0x17dc ISUSPM Startup - detected UnsignedFile.Multi.Generic ( 1 )
00:24:05.0754 0x17dc Detect skipped due to KSN trusted
00:24:05.0754 0x17dc ISUSPM Startup - ok
00:24:05.0899 0x17dc [ B4FB6B07F26E42289289450BC40C9E9D, 9C51F094FDCEC9DE7D5CA39116066FA25093928DC18968A0D4F27626EE10B587 ] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
00:24:06.0210 0x17dc LightScribe Control Panel - detected UnsignedFile.Multi.Generic ( 1 )
00:24:09.0675 0x17dc Detect skipped due to KSN trusted
00:24:09.0675 0x17dc LightScribe Control Panel - ok
00:24:10.0407 0x17dc AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 10.2.2215.880 ), 0x42000 ( disabled : updated )
00:24:10.0628 0x17dc Win FW state via NFP2: enabled
00:24:14.0132 0x17dc ============================================================
00:24:14.0132 0x17dc Scan finished
00:24:14.0132 0x17dc ============================================================
00:24:14.0145 0x10c8 Detected object count: 1
00:24:14.0145 0x10c8 Actual detected object count: 1
00:25:11.0654 0x10c8 SMail ( UnsignedFile.Multi.Generic ) - skipped by user
00:25:11.0654 0x10c8 SMail ( UnsignedFile.Multi.Generic ) - User select action: Skip

Re: Proces lvhidsvc.exe vytěžuje procesor, prosím o pomoc o

Napsal: 19 dub 2015 23:34
od altrok
:arrow: Poprosim o novy log z FRST, prilozte i Addition.txt http://forum.viry.cz/viewtopic.php?f=13&t=133100

Re: Proces lvhidsvc.exe vytěžuje procesor, prosím o pomoc o

Napsal: 19 dub 2015 23:55
od Hop
FRST.txt:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 19-04-2015 01
Ran by Rodiče (administrator) on CERNY on 20-04-2015 00:38:38
Running from C:\Users\Rodiče\Desktop
Loaded Profiles: Rodiče (Available profiles: Rodiče & Lenka & NFSU)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(ArtistScope Pty Ltd) C:\Program Files\Common Files\ArtistScope\CSHelper32.exe
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
(Hewlett-Packard Company) C:\Program Files\HP\HPBDSService\HPBDSService.exe
(HP) C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
(Microsoft Corporation) C:\Windows\System32\inetsrv\inetinfo.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Animation Technologies Inc.) C:\Windows\System32\lvhidsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Microsoft Corporation) C:\Windows\System32\TCPSVCS.EXE
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Seznam.cz a.s.) C:\Program Files\Seznam\Postak\Postak.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Google Inc.) C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe
(Prog-Soft s.r.o.) C:\Program Files\PSPad editor\PSPad.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Google Inc.) C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Rodiče\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SMail] => C:\Program Files\Seznam\Postak\Postak.exe [453936 2008-02-21] (Seznam.cz a.s.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5512912 2015-04-07] (Avast Software s.r.o.)
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\Run: [Google Update] => C:\Users\Rodiče\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-07-17] (Google Inc.)
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [31346784 2015-02-26] (Skype Technologies S.A.)
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5489944 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Mystify.scr [221184 2010-11-20] (Microsoft Corporation)
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...0c966feabec1\InprocServer32: [Default-shell32] ATTENTION! ====> ZeroAccess?
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-04-07] (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [GDriveBlacklistedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedEditOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedViewOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
ShellIconOverlayIdentifiers: [GDriveSyncedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
ShellIconOverlayIdentifiers: [GDriveSyncingOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
GroupPolicyUsers\S-1-5-21-3533039139-1052968357-1368303399-1003\User: Group Policy restriction detected <======= ATTENTION
GroupPolicyUsers\S-1-5-21-3533039139-1052968357-1368303399-1001\User: Group Policy restriction detected <======= ATTENTION
CHR HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/?pc=AVBR
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.papeweb.cz/
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... DF&pc=AVBR
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {0EBFFFDA-ABB1-49B2-A89B-594D808AC84F} URL = http://download.seznam.cz/vyhledavani/o ... rceid=IE_5
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} URL = http://www.crawler.com/search/dispatche ... tbid=60327
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = http://blekko.com/?source=c3348dd4&tbp= ... earchTerms}
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {41FF3879-BCB7-4B39-B274-FEE2EC2BB8F5} URL = http://www.google.cz/search?q={searchTe ... 1I7GPEA_cs
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = http://www.icq.com/search/results.php?q ... &ch_id=osd
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {B7B664DF-3AF9-4C8E-8148-F42BB7831D27} URL = http://www.ask.com/web?o=15710&l=dis&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = http://mystart.incredimail.com/?search= ... m2_test_v2
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {DECA3892-BA8F-44b8-A993-A466AD694AE4} URL = http://search.yahoo.com/search?p={searc ... r=chr-divx
BHO: No Name -> {02478D38-C3F9-4efb-9B51-7695ECA05670} -> No File
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-03-31] (Microsoft Corporation)
BHO: No Name -> {40498DEF-8B13-44A6-A1A7-69DFE36E9210} -> No File
BHO: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-05-14] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-01-28] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-07] (Avast Software s.r.o.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03] (Google Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-03-18] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-28] (Oracle Corporation)
Toolbar: HKLM - No Name - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - No File
Toolbar: HKLM - No Name - {CFBC2741-0C1F-11D6-9224-004F490BED09} - No File
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03] (Google Inc.)
Toolbar: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03] (Google Inc.)
Toolbar: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> No Name - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No File
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.apple.com.edgesuite.net ... plugin.cab
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} http://download.microsoft.com/download/ ... ontrol.cab
DPF: {461A37E7-17B3-40E3-B6BB-7CAEC732C9E4} https://maxibps.postovnisporitelna.cz/C ... Enroll.dll
DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} http://www.eset.cz/OnlineScanner.cab
DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} http://download.divx.com/player/DivXBrowserPlugin.cab
DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20614.www2.hp.com/ediags/gmd/In ... ct119b.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl ... rashim.cab
DPF: {CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.10.1

FireFox:
========
FF ProfilePath: C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606
FF DefaultSearchEngine: Google (avast)
FF DefaultSearchUrl: https://www.google.com/search/?trackid=sp-006
FF SearchEngineOrder.1: Google (avast)
FF SelectedSearchEngine: Google (avast)
FF Homepage: hxxp://www.papeweb.cz
FF Keyword.URL: https://www.google.com/search/?trackid=sp-006
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-15] ()
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll No File
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.)
FF Plugin: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files\DivX\DivX Web Player\npdivx32.dll [2014-06-03] (DivX, LLC)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @google.com/npPicasa2,version=2.0.0 -> C:\Program Files\Picasa2\npPicasa2.dll [2008-08-21] (Google, Inc.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Picasa2\npPicasa3.dll [2013-04-02] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-28] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-28] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-03-31] (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.3 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~3\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-10-03] (Google)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3533039139-1052968357-1368303399-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Rodiče\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin HKU\S-1-5-21-3533039139-1052968357-1368303399-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Rodiče\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-03-31] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2015-01-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2015-01-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2015-01-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2015-01-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2015-01-06] (Apple Inc.)
FF SearchPlugin: C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\searchplugins\google-avast.xml [2014-12-15]
FF Extension: No Name - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\artur.dubovoy@gmail.com [2015-04-10]
FF Extension: gTranslator - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\jyboy.yy@gmail.com [2014-01-03]
FF Extension: ColorZilla - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\{6AC85730-7D0F-4de0-B3FA-21142DD85326} [2014-01-03]
FF Extension: Firebug - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\firebug@software.joehewitt.com.xpi [2014-01-03]
FF Extension: Simple Timer - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\simpletimer@grbradt.org.xpi [2014-01-03]
FF Extension: Google Translator for Firefox - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\translator@zoli.bod.xpi [2014-05-11]
FF Extension: View in Office Online Viewer - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\viewinofficeapps@huhsiaotao.xpi [2014-01-03]
FF Extension: No Name - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\{5A170DD3-63CA-4c58-93B7-DE9FF536C2FF}.xpi [2014-01-03]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: No Name - C:\Program Files\AVAST Software\Avast\WebRep\FF [2011-11-20]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF HKLM\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] - C:\Program Files\Common Files\DVDVideoSoft\plugins\ff

Chrome:
=======
CHR HomePage: Default -> hxxp://www.papeweb.cz/
CHR StartupUrls: Default -> "hxxp://www.papeweb.cz/"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-05-07]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2013-11-22]
CHR Extension: (Avast Online Security) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-05-16]
CHR Extension: (Color Picker Tools) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijgamcmigplkkdkhfcjmpjojlklnkgop [2014-01-21]
CHR Extension: (Color Picker) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcmgligingjhdnhdhgepemlckgcgmgaj [2014-08-18]
CHR Extension: (Google Wallet) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2013-11-22]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-04-07]
CHR HKLM\...\Chrome\Extension: [ocphobfcfafpclibolpjdafgaffkaoci] - C:\Users\Rodiče\AppData\Local\GamePlayLabs Plugin\gplplugin.crx [2011-03-15]
CHR HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\RODIE~1\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2013-05-03]
StartMenuInternet: Google Chrome - C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-04-07] (Avast Software s.r.o.)
S3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3205216 2015-04-07] (Avast Software)
R2 CSHelper; C:\Program Files\Common Files\ArtistScope\CSHelper32.exe [236536 2012-09-26] (ArtistScope Pty Ltd)
R2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [387616 2009-07-23] ()
S2 gupdate1ca24ec3816786f; C:\Program Files\Google\Update\GoogleUpdate.exe [107912 2014-10-30] (Google Inc.)
R2 HP DS Service; C:\Program Files\HP\HPBDSService\HPBDSService.exe [13824 2010-10-27] (Hewlett-Packard Company) [File not signed]
R2 HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [145920 2010-10-27] (HP) [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 IISADMIN; C:\Windows\system32\inetsrv\inetinfo.exe [13824 2009-07-14] (Microsoft Corporation)
R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728 2010-06-16] (Hewlett-Packard Company) [File not signed]
R2 LvHidSvc; C:\Windows\system32\lvhidsvc.exe [32256 2003-10-31] (Animation Technologies Inc.) [File not signed]
R2 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [178720 2009-07-23] ()
S2 PCLEPCI; C:\Windows\system32\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24144 2015-04-07] ()
R1 aswKbd; C:\Windows\system32\Drivers\aswKbd.sys [20624 2012-10-31] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [73440 2015-04-07] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-04-07] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49904 2015-04-07] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [788272 2015-04-07] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427736 2015-04-07] (Avast Software s.r.o.)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [106912 2015-04-07] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [208024 2015-04-07] ()
S3 AVHybrid; C:\Windows\System32\DRIVERS\AVHybrid.sys [999680 2005-04-29] ()
R1 CSDriver; C:\Program Files\Common Files\ArtistScope\CSDriver32.sys [38328 2012-09-26] ()
S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-09-23] (LogMeIn, Inc.)
S3 HPFXBULKLEDM; C:\Windows\System32\drivers\hppcbulkio.sys [20504 2011-10-10] (Hewlett Packard)
R3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus.sys [171520 2007-01-04] (Pinnacle Systems GmbH)
R2 npf; C:\Windows\system32\drivers\npf.sys [50704 2010-03-22] (CACE Technologies, Inc.)
R1 SCDEmu; C:\Windows\system32\Drivers\SCDEmu.sys [56572 2008-11-02] (PowerISO Computing, Inc.) [File not signed]
S3 tap0801; C:\Windows\System32\DRIVERS\tap0801.sys [26624 2006-10-01] (The OpenVPN Project) [File not signed]
R2 tifsfilter; C:\Windows\System32\DRIVERS\tifsfilt.sys [44384 2008-03-23] (Acronis)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220240 2015-04-07] (Avast Software)
S3 vncmirror; C:\Windows\System32\DRIVERS\vncmirror.sys [4608 2014-06-03] (RealVNC Ltd.)
S3 xxxHpSAMD; C:\Windows\system32\drivers\HpSAMD.sys [67152 2009-07-14] (Hewlett-Packard Company)
S3 cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x32.sys [X]
S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x32.sys [X]
U5 FontCache3.0.0.0; C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [42856 2009-06-10] (Microsoft Corporation)
S3 TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-20 00:38 - 2015-04-20 00:38 - 00029696 _____ () C:\Users\Rodiče\AppData\Local\MSGBOX.EXE
2015-04-20 00:38 - 2015-04-20 00:38 - 00015327 _____ () C:\Users\Rodiče\Desktop\LM.bat
2015-04-20 00:19 - 2015-04-20 00:19 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Rodiče\Desktop\tdsskiller.exe
2015-04-19 23:17 - 2015-04-19 23:17 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-04-19 23:16 - 2015-04-20 00:09 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-04-19 23:16 - 2015-04-19 23:16 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-04-19 23:15 - 2015-04-19 23:15 - 00092888 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-04-19 23:14 - 2015-04-19 23:57 - 00000000 ____D () C:\Users\Rodiče\Desktop\mbar
2015-04-19 23:13 - 2015-04-19 23:14 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Rodiče\Desktop\mbar-1.09.1.1004.exe
2015-04-19 22:38 - 2015-04-20 00:40 - 00025792 _____ () C:\Users\Rodiče\Desktop\FRST.txt
2015-04-19 22:37 - 2015-04-20 00:38 - 00000000 ____D () C:\FRST
2015-04-19 22:36 - 2015-04-19 22:36 - 00112640 _____ (forum.viry.cz) C:\Users\Rodiče\Desktop\FRSTLauncher.exe
2015-04-19 22:14 - 2015-04-19 22:14 - 01137664 _____ (Farbar) C:\Users\Rodiče\Desktop\FRST.exe
2015-04-19 09:21 - 2015-04-20 00:00 - 00076428 _____ () C:\Windows\setupact.log
2015-04-19 09:21 - 2015-04-19 09:21 - 00000000 _____ () C:\Windows\setuperr.log
2015-04-19 08:55 - 2015-04-19 09:26 - 00000000 ____D () C:\Program Files\trend micro
2015-04-19 08:55 - 2015-04-19 08:56 - 00000000 ____D () C:\rsit
2015-04-19 08:55 - 2015-04-19 08:55 - 01107968 _____ () C:\Users\Rodiče\Downloads\RSIT.exe
2015-04-15 14:02 - 2015-03-23 05:06 - 00860160 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00331264 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-04-15 14:02 - 2015-03-23 04:59 - 00896000 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-04-15 14:02 - 2015-03-04 06:16 - 00249784 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-04-15 14:02 - 2015-03-04 06:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-04-15 14:01 - 2015-04-02 01:49 - 00342704 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-04-15 14:01 - 2015-03-17 07:01 - 03976632 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-04-15 14:01 - 2015-03-17 07:01 - 03920824 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-04-15 14:01 - 2015-03-17 07:01 - 00137656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-04-15 14:01 - 2015-03-17 07:01 - 00067512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-04-15 14:01 - 2015-03-17 06:59 - 01306112 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-04-15 14:01 - 2015-03-17 06:56 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-04-15 14:01 - 2015-03-17 06:56 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-04-15 14:01 - 2015-03-17 06:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-04-15 14:01 - 2015-03-17 06:56 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-04-15 14:01 - 2015-03-17 06:56 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-04-15 14:01 - 2015-03-17 06:56 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-04-15 14:01 - 2015-03-17 06:53 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-04-15 14:01 - 2015-03-17 06:53 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-04-15 14:01 - 2015-03-17 06:50 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-04-15 14:01 - 2015-03-17 06:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-04-15 14:01 - 2015-03-13 05:42 - 19695616 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-04-15 14:01 - 2015-03-13 05:42 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-04-15 14:01 - 2015-03-13 05:42 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-04-15 14:01 - 2015-03-13 05:28 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-04-15 14:01 - 2015-03-13 05:28 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-04-15 14:01 - 2015-03-13 05:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-04-15 14:01 - 2015-03-13 05:27 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-04-15 14:01 - 2015-03-13 05:26 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-04-15 14:01 - 2015-03-13 05:22 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-04-15 14:01 - 2015-03-13 05:20 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-04-15 14:01 - 2015-03-13 05:20 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-04-15 14:01 - 2015-03-13 05:17 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-04-15 14:01 - 2015-03-13 05:16 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-04-15 14:01 - 2015-03-13 05:16 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-04-15 14:01 - 2015-03-13 05:15 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-04-15 14:01 - 2015-03-13 05:09 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-15 14:01 - 2015-03-13 05:06 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-04-15 14:01 - 2015-03-13 05:01 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-15 14:01 - 2015-03-13 04:57 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-04-15 14:01 - 2015-03-13 04:56 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-04-15 14:01 - 2015-03-13 04:54 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-04-15 14:01 - 2015-03-13 04:49 - 04305408 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-04-15 14:01 - 2015-03-13 04:44 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-04-15 14:01 - 2015-03-13 04:43 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-04-15 14:01 - 2015-03-13 04:43 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-04-15 14:01 - 2015-03-13 04:42 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-04-15 14:01 - 2015-03-13 04:34 - 12825600 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-04-15 14:01 - 2015-03-13 04:20 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-04-15 14:01 - 2015-03-13 04:16 - 01311232 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-04-15 14:01 - 2015-03-13 04:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-04-15 14:01 - 2015-03-05 06:06 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 03088384 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 02020864 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-04-15 14:00 - 2015-03-25 05:00 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-04-15 14:00 - 2015-03-25 05:00 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-04-15 13:59 - 2015-03-10 05:08 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-04-15 13:59 - 2015-03-10 05:05 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-04-15 13:59 - 2015-02-25 05:03 - 00514560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-04-10 21:34 - 2015-04-10 21:34 - 00000000 ____D () C:\Users\Rodiče\Documents\Vlastní šablony Office
2015-04-07 13:32 - 2015-04-07 13:31 - 00291312 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe
2015-04-07 13:31 - 2015-04-07 13:31 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr
2015-04-06 10:41 - 2015-04-06 10:41 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-04-06 07:02 - 2015-04-16 21:50 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-04-06 06:56 - 2015-04-06 06:59 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2015-04-06 06:48 - 2015-04-06 06:48 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-04-05 21:01 - 2015-04-05 21:01 - 00001917 _____ () C:\Users\Public\Desktop\FileZilla Client.lnk
2015-04-05 21:00 - 2015-04-05 21:00 - 06196576 _____ (Tim Kosse) C:\Users\Rodiče\Downloads\FileZilla_3.10.3_win32-setup.exe
2015-04-04 22:44 - 2015-04-04 22:45 - 00000000 ___SD () C:\Windows\system32\GWX
2015-03-23 19:18 - 2015-03-23 19:18 - 00000000 ____D () C:\Users\Rodiče\Tracing
2015-03-22 09:50 - 2015-03-22 09:50 - 01079296 _____ (Uniblue Systems Limited ) C:\Users\Rodiče\Downloads\pcmechanicpm.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-20 00:45 - 2008-02-29 09:13 - 00000418 ____H () C:\Windows\Tasks\User_Feed_Synchronization-{FF976561-0582-47FC-8BE5-0AEA2EC306C5}.job
2015-04-20 00:36 - 2012-09-07 16:59 - 00000966 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3533039139-1052968357-1368303399-1000UA.job
2015-04-20 00:33 - 2009-08-24 21:03 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-20 00:18 - 2008-02-25 22:38 - 00000000 ____D () C:\Users\Rodiče\AppData\Roaming\Skype
2015-04-20 00:10 - 2012-09-28 13:48 - 00018544 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-20 00:10 - 2012-09-28 13:48 - 00018544 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-20 00:08 - 2012-10-17 01:09 - 01407171 _____ () C:\Windows\WindowsUpdate.log
2015-04-20 00:02 - 2009-08-24 21:03 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-20 00:02 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\inetsrv
2015-04-20 00:00 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-19 23:57 - 2012-04-03 08:33 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-04-19 22:30 - 2008-03-15 23:42 - 00000000 ____D () C:\bakalari
2015-04-19 22:27 - 2008-03-15 23:59 - 00000000 ____D () C:\TEMP
2015-04-19 12:36 - 2012-09-07 16:59 - 00000914 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3533039139-1052968357-1368303399-1000Core.job
2015-04-19 11:05 - 2010-12-31 22:50 - 00000972 _____ () C:\Windows\Tasks\Google Software Updater.job
2015-04-19 09:34 - 2015-03-10 18:34 - 00007628 _____ () C:\Users\Rodiče\AppData\Local\Resmon.ResmonCfg
2015-04-19 08:46 - 2012-10-17 02:41 - 00175208 _____ () C:\Users\Rodiče\AppData\Local\GDIPFONTCACHEV1.DAT
2015-04-18 21:55 - 2012-09-12 11:40 - 00000000 ___RD () C:\Users\Rodiče\Desktop\__ K TISKU __
2015-04-18 20:26 - 2011-04-18 13:43 - 00000000 ____D () C:\Users\Rodiče\Desktop\MÁMA
2015-04-18 20:01 - 2013-04-15 16:36 - 00000000 ___RD () C:\Users\Rodiče\Desktop\___pošta___
2015-04-18 10:01 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\AppCompat
2015-04-18 07:56 - 2008-11-08 21:50 - 00000000 ____D () C:\Program Files\Opera
2015-04-17 16:16 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2015-04-17 13:20 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\NDF
2015-04-16 21:49 - 2008-02-24 22:57 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-04-16 14:19 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-04-16 13:11 - 2014-12-11 09:26 - 00000000 ____D () C:\Windows\system32\appraiser
2015-04-16 13:11 - 2014-05-06 23:38 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-04-15 23:16 - 2006-11-02 12:23 - 00000382 _____ () C:\Windows\win.ini
2015-04-15 23:13 - 2013-08-16 22:29 - 00000000 ____D () C:\Windows\system32\MRT
2015-04-15 22:52 - 2012-10-26 07:43 - 125832184 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-04-15 22:49 - 2010-11-20 23:01 - 01688714 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-15 19:57 - 2012-04-03 08:33 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-04-15 19:57 - 2011-06-13 18:03 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-04-13 22:04 - 2013-07-10 20:49 - 00000000 ____D () C:\Users\Rodiče\AppData\Roaming\FileZilla
2015-04-13 19:12 - 2010-11-17 22:53 - 00000000 ____D () C:\Users\Rodiče\Desktop\ONDRA
2015-04-08 12:45 - 2012-04-25 22:29 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-04-07 13:32 - 2014-06-23 06:41 - 00024144 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2015-04-07 13:32 - 2014-01-02 19:36 - 00106912 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswStm.sys
2015-04-07 13:32 - 2013-03-14 07:27 - 00208024 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2015-04-07 13:32 - 2013-03-14 07:27 - 00049904 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2015-04-07 13:32 - 2012-11-04 21:41 - 00081728 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr2.sys
2015-04-07 13:32 - 2008-04-01 16:46 - 00427736 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSP.sys
2015-04-07 13:32 - 2008-02-24 23:37 - 00073440 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys
2015-04-07 13:30 - 2011-11-20 09:47 - 00788272 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys
2015-04-06 07:15 - 2009-07-14 06:33 - 00638088 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-04-06 07:10 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-04-06 07:08 - 2011-04-12 03:46 - 00000000 ____D () C:\Windows\ShellNew
2015-04-06 07:07 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\System
2015-04-06 07:00 - 2008-02-24 22:59 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-04-06 06:59 - 2008-02-24 22:59 - 00000000 ____D () C:\Program Files\Microsoft.NET
2015-04-06 06:56 - 2008-02-24 22:57 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-04-05 21:01 - 2013-07-10 20:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2015-04-05 21:01 - 2013-07-10 20:49 - 00000000 ____D () C:\Program Files\FileZilla FTP Client
2015-04-04 21:34 - 2009-05-03 18:59 - 00647680 ___SH () C:\Users\Rodiče\Desktop\Thumbs.db
2015-03-31 15:47 - 2014-08-21 19:31 - 00000000 ____D () C:\Users\Rodiče\AppData\Local\Adobe
2015-03-29 22:35 - 2010-09-20 20:12 - 00000000 ____D () C:\Users\Rodiče\Desktop\LENKA
2015-03-23 19:18 - 2014-09-29 07:28 - 00000000 ___RD () C:\Program Files\Skype
2015-03-23 19:18 - 2012-10-16 23:46 - 00000000 ____D () C:\Users\Rodiče
2015-03-23 19:18 - 2008-02-25 22:37 - 00000000 ____D () C:\ProgramData\Skype

==================== Files in the root of some directories =======

2008-02-24 23:47 - 2006-03-20 16:37 - 5689344 _____ (Gabest) C:\Program Files\mplayerc.exe
2008-03-23 16:40 - 2008-03-23 16:42 - 0000140 _____ () C:\Users\Rodiče\AppData\Roaming\burnaware.ini
2012-04-17 22:15 - 2012-05-21 15:58 - 0000128 _____ () C:\Users\Rodiče\AppData\Roaming\Earthquakes Meter_Settings.ini
2008-11-25 21:18 - 2008-11-25 22:34 - 0087608 _____ () C:\Users\Rodiče\AppData\Roaming\inst.exe
2008-11-25 21:18 - 2008-11-25 22:34 - 0007887 _____ () C:\Users\Rodiče\AppData\Roaming\pcouffin.cat
2008-11-25 21:18 - 2008-11-25 22:34 - 0001144 _____ () C:\Users\Rodiče\AppData\Roaming\pcouffin.inf
2008-11-25 21:19 - 2008-11-25 22:34 - 0000033 _____ () C:\Users\Rodiče\AppData\Roaming\pcouffin.log
2008-11-25 21:18 - 2008-11-25 22:34 - 0047360 _____ (VSO Software) C:\Users\Rodiče\AppData\Roaming\pcouffin.sys
2011-11-13 07:50 - 2011-11-13 07:50 - 0000600 _____ () C:\Users\Rodiče\AppData\Roaming\winscp.rnd
2012-10-27 22:13 - 2014-12-29 00:19 - 0010240 _____ () C:\Users\Rodiče\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-04-20 00:38 - 2015-04-20 00:38 - 0029696 _____ () C:\Users\Rodiče\AppData\Local\MSGBOX.EXE
2012-10-25 21:13 - 2012-10-25 21:13 - 0000000 _____ () C:\Users\Rodiče\AppData\Local\PRAKTIK.INI
2015-03-06 14:39 - 2015-03-06 14:39 - 0000218 _____ () C:\Users\Rodiče\AppData\Local\recently-used.xbel
2015-03-10 18:34 - 2015-04-19 09:34 - 0007628 _____ () C:\Users\Rodiče\AppData\Local\Resmon.ResmonCfg
2012-10-25 14:01 - 2012-10-25 14:02 - 0000413 _____ () C:\ProgramData\hpzinstall.log
2012-10-17 11:14 - 2012-11-22 17:19 - 0000193 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
2012-10-25 21:13 - 2012-10-25 21:13 - 0000000 _____ () C:\ProgramData\PRAKTIK.INI
2013-10-19 22:29 - 2013-10-25 22:33 - 0000024 _____ () C:\ProgramData\__FileUploader.log

Files to move or delete:
====================
C:\Users\NFSU\jagex_runescape_preferences.dat
C:\Users\NFSU\jagex_runescape_preferences2.dat
C:\Users\NFSU\jagex__preferences3.dat
C:\Users\Rodiče\esetsmartinstaller_csy.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

Re: Proces lvhidsvc.exe vytěžuje procesor, prosím o pomoc o

Napsal: 19 dub 2015 23:56
od Hop
Teď se mi otevřel poznámkový blok FRST:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 19-04-2015 01
Ran by Rodiče (administrator) on CERNY on 20-04-2015 00:38:38
Running from C:\Users\Rodiče\Desktop
Loaded Profiles: Rodiče (Available profiles: Rodiče & Lenka & NFSU)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(ArtistScope Pty Ltd) C:\Program Files\Common Files\ArtistScope\CSHelper32.exe
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
(Hewlett-Packard Company) C:\Program Files\HP\HPBDSService\HPBDSService.exe
(HP) C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
(Microsoft Corporation) C:\Windows\System32\inetsrv\inetinfo.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Animation Technologies Inc.) C:\Windows\System32\lvhidsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Microsoft Corporation) C:\Windows\System32\TCPSVCS.EXE
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Seznam.cz a.s.) C:\Program Files\Seznam\Postak\Postak.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Google Inc.) C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe
(Prog-Soft s.r.o.) C:\Program Files\PSPad editor\PSPad.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Google Inc.) C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Rodiče\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SMail] => C:\Program Files\Seznam\Postak\Postak.exe [453936 2008-02-21] (Seznam.cz a.s.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5512912 2015-04-07] (Avast Software s.r.o.)
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\Run: [Google Update] => C:\Users\Rodiče\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-07-17] (Google Inc.)
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [31346784 2015-02-26] (Skype Technologies S.A.)
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5489944 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Mystify.scr [221184 2010-11-20] (Microsoft Corporation)
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\...0c966feabec1\InprocServer32: [Default-shell32] ATTENTION! ====> ZeroAccess?
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-04-07] (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [GDriveBlacklistedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedEditOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedViewOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
ShellIconOverlayIdentifiers: [GDriveSyncedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
ShellIconOverlayIdentifiers: [GDriveSyncingOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-02-19] (Google)
GroupPolicyUsers\S-1-5-21-3533039139-1052968357-1368303399-1003\User: Group Policy restriction detected <======= ATTENTION
GroupPolicyUsers\S-1-5-21-3533039139-1052968357-1368303399-1001\User: Group Policy restriction detected <======= ATTENTION
CHR HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/?pc=AVBR
HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.papeweb.cz/
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... DF&pc=AVBR
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {0EBFFFDA-ABB1-49B2-A89B-594D808AC84F} URL = http://download.seznam.cz/vyhledavani/o ... rceid=IE_5
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} URL = http://www.crawler.com/search/dispatche ... tbid=60327
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = http://blekko.com/?source=c3348dd4&tbp= ... earchTerms}
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {41FF3879-BCB7-4B39-B274-FEE2EC2BB8F5} URL = http://www.google.cz/search?q={searchTe ... 1I7GPEA_cs
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = http://www.icq.com/search/results.php?q ... &ch_id=osd
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {B7B664DF-3AF9-4C8E-8148-F42BB7831D27} URL = http://www.ask.com/web?o=15710&l=dis&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = http://mystart.incredimail.com/?search= ... m2_test_v2
SearchScopes: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> {DECA3892-BA8F-44b8-A993-A466AD694AE4} URL = http://search.yahoo.com/search?p={searc ... r=chr-divx
BHO: No Name -> {02478D38-C3F9-4efb-9B51-7695ECA05670} -> No File
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-03-31] (Microsoft Corporation)
BHO: No Name -> {40498DEF-8B13-44A6-A1A7-69DFE36E9210} -> No File
BHO: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-05-14] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-01-28] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-07] (Avast Software s.r.o.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03] (Google Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-03-18] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-28] (Oracle Corporation)
Toolbar: HKLM - No Name - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - No File
Toolbar: HKLM - No Name - {CFBC2741-0C1F-11D6-9224-004F490BED09} - No File
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03] (Google Inc.)
Toolbar: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03] (Google Inc.)
Toolbar: HKU\S-1-5-21-3533039139-1052968357-1368303399-1000 -> No Name - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No File
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.apple.com.edgesuite.net ... plugin.cab
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} http://download.microsoft.com/download/ ... ontrol.cab
DPF: {461A37E7-17B3-40E3-B6BB-7CAEC732C9E4} https://maxibps.postovnisporitelna.cz/C ... Enroll.dll
DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} http://www.eset.cz/OnlineScanner.cab
DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} http://download.divx.com/player/DivXBrowserPlugin.cab
DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20614.www2.hp.com/ediags/gmd/In ... ct119b.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl ... rashim.cab
DPF: {CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.10.1

FireFox:
========
FF ProfilePath: C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606
FF DefaultSearchEngine: Google (avast)
FF DefaultSearchUrl: https://www.google.com/search/?trackid=sp-006
FF SearchEngineOrder.1: Google (avast)
FF SelectedSearchEngine: Google (avast)
FF Homepage: hxxp://www.papeweb.cz
FF Keyword.URL: https://www.google.com/search/?trackid=sp-006
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-15] ()
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll No File
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.)
FF Plugin: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files\DivX\DivX Web Player\npdivx32.dll [2014-06-03] (DivX, LLC)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @google.com/npPicasa2,version=2.0.0 -> C:\Program Files\Picasa2\npPicasa2.dll [2008-08-21] (Google, Inc.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Picasa2\npPicasa3.dll [2013-04-02] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-28] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-28] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-03-31] (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.3 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~3\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-10-03] (Google)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3533039139-1052968357-1368303399-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Rodiče\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin HKU\S-1-5-21-3533039139-1052968357-1368303399-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Rodiče\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-03-31] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2015-01-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2015-01-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2015-01-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2015-01-06] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2015-01-06] (Apple Inc.)
FF SearchPlugin: C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\searchplugins\google-avast.xml [2014-12-15]
FF Extension: No Name - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\artur.dubovoy@gmail.com [2015-04-10]
FF Extension: gTranslator - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\jyboy.yy@gmail.com [2014-01-03]
FF Extension: ColorZilla - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\{6AC85730-7D0F-4de0-B3FA-21142DD85326} [2014-01-03]
FF Extension: Firebug - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\firebug@software.joehewitt.com.xpi [2014-01-03]
FF Extension: Simple Timer - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\simpletimer@grbradt.org.xpi [2014-01-03]
FF Extension: Google Translator for Firefox - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\translator@zoli.bod.xpi [2014-05-11]
FF Extension: View in Office Online Viewer - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\viewinofficeapps@huhsiaotao.xpi [2014-01-03]
FF Extension: No Name - C:\Users\Rodiče\AppData\Roaming\Mozilla\Firefox\Profiles\94z9eu4z.default-1388757279606\Extensions\{5A170DD3-63CA-4c58-93B7-DE9FF536C2FF}.xpi [2014-01-03]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: No Name - C:\Program Files\AVAST Software\Avast\WebRep\FF [2011-11-20]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF HKLM\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] - C:\Program Files\Common Files\DVDVideoSoft\plugins\ff

Chrome:
=======
CHR HomePage: Default -> hxxp://www.papeweb.cz/
CHR StartupUrls: Default -> "hxxp://www.papeweb.cz/"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-05-07]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2013-11-22]
CHR Extension: (Avast Online Security) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-05-16]
CHR Extension: (Color Picker Tools) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijgamcmigplkkdkhfcjmpjojlklnkgop [2014-01-21]
CHR Extension: (Color Picker) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcmgligingjhdnhdhgepemlckgcgmgaj [2014-08-18]
CHR Extension: (Google Wallet) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Rodiče\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2013-11-22]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-04-07]
CHR HKLM\...\Chrome\Extension: [ocphobfcfafpclibolpjdafgaffkaoci] - C:\Users\Rodiče\AppData\Local\GamePlayLabs Plugin\gplplugin.crx [2011-03-15]
CHR HKU\S-1-5-21-3533039139-1052968357-1368303399-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\RODIE~1\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2013-05-03]
StartMenuInternet: Google Chrome - C:\Users\Rodiče\AppData\Local\Google\Chrome\Application\chrome.exe

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-04-07] (Avast Software s.r.o.)
S3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3205216 2015-04-07] (Avast Software)
R2 CSHelper; C:\Program Files\Common Files\ArtistScope\CSHelper32.exe [236536 2012-09-26] (ArtistScope Pty Ltd)
R2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [387616 2009-07-23] ()
S2 gupdate1ca24ec3816786f; C:\Program Files\Google\Update\GoogleUpdate.exe [107912 2014-10-30] (Google Inc.)
R2 HP DS Service; C:\Program Files\HP\HPBDSService\HPBDSService.exe [13824 2010-10-27] (Hewlett-Packard Company) [File not signed]
R2 HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [145920 2010-10-27] (HP) [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 IISADMIN; C:\Windows\system32\inetsrv\inetinfo.exe [13824 2009-07-14] (Microsoft Corporation)
R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728 2010-06-16] (Hewlett-Packard Company) [File not signed]
R2 LvHidSvc; C:\Windows\system32\lvhidsvc.exe [32256 2003-10-31] (Animation Technologies Inc.) [File not signed]
R2 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [178720 2009-07-23] ()
S2 PCLEPCI; C:\Windows\system32\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24144 2015-04-07] ()
R1 aswKbd; C:\Windows\system32\Drivers\aswKbd.sys [20624 2012-10-31] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [73440 2015-04-07] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-04-07] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49904 2015-04-07] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [788272 2015-04-07] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427736 2015-04-07] (Avast Software s.r.o.)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [106912 2015-04-07] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [208024 2015-04-07] ()
S3 AVHybrid; C:\Windows\System32\DRIVERS\AVHybrid.sys [999680 2005-04-29] ()
R1 CSDriver; C:\Program Files\Common Files\ArtistScope\CSDriver32.sys [38328 2012-09-26] ()
S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-09-23] (LogMeIn, Inc.)
S3 HPFXBULKLEDM; C:\Windows\System32\drivers\hppcbulkio.sys [20504 2011-10-10] (Hewlett Packard)
R3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus.sys [171520 2007-01-04] (Pinnacle Systems GmbH)
R2 npf; C:\Windows\system32\drivers\npf.sys [50704 2010-03-22] (CACE Technologies, Inc.)
R1 SCDEmu; C:\Windows\system32\Drivers\SCDEmu.sys [56572 2008-11-02] (PowerISO Computing, Inc.) [File not signed]
S3 tap0801; C:\Windows\System32\DRIVERS\tap0801.sys [26624 2006-10-01] (The OpenVPN Project) [File not signed]
R2 tifsfilter; C:\Windows\System32\DRIVERS\tifsfilt.sys [44384 2008-03-23] (Acronis)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220240 2015-04-07] (Avast Software)
S3 vncmirror; C:\Windows\System32\DRIVERS\vncmirror.sys [4608 2014-06-03] (RealVNC Ltd.)
S3 xxxHpSAMD; C:\Windows\system32\drivers\HpSAMD.sys [67152 2009-07-14] (Hewlett-Packard Company)
S3 cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x32.sys [X]
S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x32.sys [X]
U5 FontCache3.0.0.0; C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [42856 2009-06-10] (Microsoft Corporation)
S3 TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-20 00:19 - 2015-04-20 00:19 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Rodiče\Desktop\tdsskiller.exe
2015-04-19 23:17 - 2015-04-19 23:17 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-04-19 23:16 - 2015-04-20 00:09 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-04-19 23:16 - 2015-04-19 23:16 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-04-19 23:15 - 2015-04-19 23:15 - 00092888 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-04-19 23:14 - 2015-04-19 23:57 - 00000000 ____D () C:\Users\Rodiče\Desktop\mbar
2015-04-19 23:13 - 2015-04-19 23:14 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Rodiče\Desktop\mbar-1.09.1.1004.exe
2015-04-19 22:38 - 2015-04-20 00:40 - 00025792 _____ () C:\Users\Rodiče\Desktop\FRST.txt
2015-04-19 22:37 - 2015-04-20 00:38 - 00000000 ____D () C:\FRST
2015-04-19 22:36 - 2015-04-19 22:36 - 00112640 _____ (forum.viry.cz) C:\Users\Rodiče\Desktop\FRSTLauncher.exe
2015-04-19 22:14 - 2015-04-19 22:14 - 01137664 _____ (Farbar) C:\Users\Rodiče\Desktop\FRST.exe
2015-04-19 09:21 - 2015-04-20 00:00 - 00076428 _____ () C:\Windows\setupact.log
2015-04-19 09:21 - 2015-04-19 09:21 - 00000000 _____ () C:\Windows\setuperr.log
2015-04-19 08:55 - 2015-04-19 09:26 - 00000000 ____D () C:\Program Files\trend micro
2015-04-19 08:55 - 2015-04-19 08:56 - 00000000 ____D () C:\rsit
2015-04-19 08:55 - 2015-04-19 08:55 - 01107968 _____ () C:\Users\Rodiče\Downloads\RSIT.exe
2015-04-15 14:02 - 2015-03-23 05:06 - 00860160 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00331264 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-04-15 14:02 - 2015-03-23 05:06 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-04-15 14:02 - 2015-03-23 04:59 - 00896000 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-04-15 14:02 - 2015-03-04 06:16 - 00249784 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-04-15 14:02 - 2015-03-04 06:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-04-15 14:01 - 2015-04-02 01:49 - 00342704 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-04-15 14:01 - 2015-03-17 07:01 - 03976632 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-04-15 14:01 - 2015-03-17 07:01 - 03920824 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-04-15 14:01 - 2015-03-17 07:01 - 00137656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-04-15 14:01 - 2015-03-17 07:01 - 00067512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-04-15 14:01 - 2015-03-17 06:59 - 01306112 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-04-15 14:01 - 2015-03-17 06:57 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-04-15 14:01 - 2015-03-17 06:56 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-04-15 14:01 - 2015-03-17 06:56 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-04-15 14:01 - 2015-03-17 06:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-04-15 14:01 - 2015-03-17 06:56 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-04-15 14:01 - 2015-03-17 06:56 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-04-15 14:01 - 2015-03-17 06:56 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-04-15 14:01 - 2015-03-17 06:53 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-04-15 14:01 - 2015-03-17 06:53 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-04-15 14:01 - 2015-03-17 06:50 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-04-15 14:01 - 2015-03-17 06:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-04-15 14:01 - 2015-03-13 05:42 - 19695616 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-04-15 14:01 - 2015-03-13 05:42 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-04-15 14:01 - 2015-03-13 05:42 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-04-15 14:01 - 2015-03-13 05:28 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-04-15 14:01 - 2015-03-13 05:28 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-04-15 14:01 - 2015-03-13 05:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-04-15 14:01 - 2015-03-13 05:27 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-04-15 14:01 - 2015-03-13 05:26 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-04-15 14:01 - 2015-03-13 05:22 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-04-15 14:01 - 2015-03-13 05:20 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-04-15 14:01 - 2015-03-13 05:20 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-04-15 14:01 - 2015-03-13 05:17 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-04-15 14:01 - 2015-03-13 05:16 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-04-15 14:01 - 2015-03-13 05:16 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-04-15 14:01 - 2015-03-13 05:15 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-04-15 14:01 - 2015-03-13 05:09 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-15 14:01 - 2015-03-13 05:06 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-04-15 14:01 - 2015-03-13 05:01 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-15 14:01 - 2015-03-13 04:57 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-04-15 14:01 - 2015-03-13 04:56 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-04-15 14:01 - 2015-03-13 04:54 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-04-15 14:01 - 2015-03-13 04:49 - 04305408 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-04-15 14:01 - 2015-03-13 04:44 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-04-15 14:01 - 2015-03-13 04:43 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-04-15 14:01 - 2015-03-13 04:43 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-04-15 14:01 - 2015-03-13 04:42 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-04-15 14:01 - 2015-03-13 04:34 - 12825600 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-04-15 14:01 - 2015-03-13 04:20 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-04-15 14:01 - 2015-03-13 04:16 - 01311232 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-04-15 14:01 - 2015-03-13 04:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-04-15 14:01 - 2015-03-05 06:06 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 03088384 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 02020864 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-04-15 14:00 - 2015-03-25 05:00 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-04-15 14:00 - 2015-03-25 05:00 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-04-15 14:00 - 2015-03-25 05:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-04-15 13:59 - 2015-03-10 05:08 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-04-15 13:59 - 2015-03-10 05:05 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-04-15 13:59 - 2015-02-25 05:03 - 00514560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-04-10 21:34 - 2015-04-10 21:34 - 00000000 ____D () C:\Users\Rodiče\Documents\Vlastní šablony Office
2015-04-07 13:32 - 2015-04-07 13:31 - 00291312 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe
2015-04-07 13:31 - 2015-04-07 13:31 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr
2015-04-06 10:41 - 2015-04-06 10:41 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-04-06 07:02 - 2015-04-16 21:50 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-04-06 06:56 - 2015-04-06 06:59 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2015-04-06 06:48 - 2015-04-06 06:48 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-04-05 21:01 - 2015-04-05 21:01 - 00001917 _____ () C:\Users\Public\Desktop\FileZilla Client.lnk
2015-04-05 21:00 - 2015-04-05 21:00 - 06196576 _____ (Tim Kosse) C:\Users\Rodiče\Downloads\FileZilla_3.10.3_win32-setup.exe
2015-04-04 22:44 - 2015-04-04 22:45 - 00000000 ___SD () C:\Windows\system32\GWX
2015-03-23 19:18 - 2015-03-23 19:18 - 00000000 ____D () C:\Users\Rodiče\Tracing
2015-03-22 09:50 - 2015-03-22 09:50 - 01079296 _____ (Uniblue Systems Limited ) C:\Users\Rodiče\Downloads\pcmechanicpm.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-20 00:45 - 2008-02-29 09:13 - 00000418 ____H () C:\Windows\Tasks\User_Feed_Synchronization-{FF976561-0582-47FC-8BE5-0AEA2EC306C5}.job
2015-04-20 00:36 - 2012-09-07 16:59 - 00000966 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3533039139-1052968357-1368303399-1000UA.job
2015-04-20 00:33 - 2009-08-24 21:03 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-20 00:18 - 2008-02-25 22:38 - 00000000 ____D () C:\Users\Rodiče\AppData\Roaming\Skype
2015-04-20 00:10 - 2012-09-28 13:48 - 00018544 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-20 00:10 - 2012-09-28 13:48 - 00018544 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-20 00:08 - 2012-10-17 01:09 - 01407171 _____ () C:\Windows\WindowsUpdate.log
2015-04-20 00:02 - 2009-08-24 21:03 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-20 00:02 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\inetsrv
2015-04-20 00:00 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-19 23:57 - 2012-04-03 08:33 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-04-19 22:30 - 2008-03-15 23:42 - 00000000 ____D () C:\bakalari
2015-04-19 22:27 - 2008-03-15 23:59 - 00000000 ____D () C:\TEMP
2015-04-19 12:36 - 2012-09-07 16:59 - 00000914 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3533039139-1052968357-1368303399-1000Core.job
2015-04-19 11:05 - 2010-12-31 22:50 - 00000972 _____ () C:\Windows\Tasks\Google Software Updater.job
2015-04-19 09:34 - 2015-03-10 18:34 - 00007628 _____ () C:\Users\Rodiče\AppData\Local\Resmon.ResmonCfg
2015-04-19 08:46 - 2012-10-17 02:41 - 00175208 _____ () C:\Users\Rodiče\AppData\Local\GDIPFONTCACHEV1.DAT
2015-04-18 21:55 - 2012-09-12 11:40 - 00000000 ___RD () C:\Users\Rodiče\Desktop\__ K TISKU __
2015-04-18 20:26 - 2011-04-18 13:43 - 00000000 ____D () C:\Users\Rodiče\Desktop\MÁMA
2015-04-18 20:01 - 2013-04-15 16:36 - 00000000 ___RD () C:\Users\Rodiče\Desktop\___pošta___
2015-04-18 10:01 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\AppCompat
2015-04-18 07:56 - 2008-11-08 21:50 - 00000000 ____D () C:\Program Files\Opera
2015-04-17 16:16 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2015-04-17 13:20 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\NDF
2015-04-16 21:49 - 2008-02-24 22:57 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-04-16 14:19 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-04-16 13:11 - 2014-12-11 09:26 - 00000000 ____D () C:\Windows\system32\appraiser
2015-04-16 13:11 - 2014-05-06 23:38 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-04-15 23:16 - 2006-11-02 12:23 - 00000382 _____ () C:\Windows\win.ini
2015-04-15 23:13 - 2013-08-16 22:29 - 00000000 ____D () C:\Windows\system32\MRT
2015-04-15 22:52 - 2012-10-26 07:43 - 125832184 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-04-15 22:49 - 2010-11-20 23:01 - 01688714 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-15 19:57 - 2012-04-03 08:33 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-04-15 19:57 - 2011-06-13 18:03 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-04-13 22:04 - 2013-07-10 20:49 - 00000000 ____D () C:\Users\Rodiče\AppData\Roaming\FileZilla
2015-04-13 19:12 - 2010-11-17 22:53 - 00000000 ____D () C:\Users\Rodiče\Desktop\ONDRA
2015-04-08 12:45 - 2012-04-25 22:29 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-04-07 13:32 - 2014-06-23 06:41 - 00024144 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2015-04-07 13:32 - 2014-01-02 19:36 - 00106912 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswStm.sys
2015-04-07 13:32 - 2013-03-14 07:27 - 00208024 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2015-04-07 13:32 - 2013-03-14 07:27 - 00049904 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2015-04-07 13:32 - 2012-11-04 21:41 - 00081728 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr2.sys
2015-04-07 13:32 - 2008-04-01 16:46 - 00427736 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSP.sys
2015-04-07 13:32 - 2008-02-24 23:37 - 00073440 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys
2015-04-07 13:30 - 2011-11-20 09:47 - 00788272 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys
2015-04-06 07:15 - 2009-07-14 06:33 - 00638088 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-04-06 07:10 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-04-06 07:08 - 2011-04-12 03:46 - 00000000 ____D () C:\Windows\ShellNew
2015-04-06 07:07 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\System
2015-04-06 07:00 - 2008-02-24 22:59 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-04-06 06:59 - 2008-02-24 22:59 - 00000000 ____D () C:\Program Files\Microsoft.NET
2015-04-06 06:56 - 2008-02-24 22:57 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-04-05 21:01 - 2013-07-10 20:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2015-04-05 21:01 - 2013-07-10 20:49 - 00000000 ____D () C:\Program Files\FileZilla FTP Client
2015-04-04 21:34 - 2009-05-03 18:59 - 00647680 ___SH () C:\Users\Rodiče\Desktop\Thumbs.db
2015-03-31 15:47 - 2014-08-21 19:31 - 00000000 ____D () C:\Users\Rodiče\AppData\Local\Adobe
2015-03-29 22:35 - 2010-09-20 20:12 - 00000000 ____D () C:\Users\Rodiče\Desktop\LENKA
2015-03-23 19:18 - 2014-09-29 07:28 - 00000000 ___RD () C:\Program Files\Skype
2015-03-23 19:18 - 2012-10-16 23:46 - 00000000 ____D () C:\Users\Rodiče
2015-03-23 19:18 - 2008-02-25 22:37 - 00000000 ____D () C:\ProgramData\Skype

==================== Files in the root of some directories =======

2008-02-24 23:47 - 2006-03-20 16:37 - 5689344 _____ (Gabest) C:\Program Files\mplayerc.exe
2008-03-23 16:40 - 2008-03-23 16:42 - 0000140 _____ () C:\Users\Rodiče\AppData\Roaming\burnaware.ini
2012-04-17 22:15 - 2012-05-21 15:58 - 0000128 _____ () C:\Users\Rodiče\AppData\Roaming\Earthquakes Meter_Settings.ini
2008-11-25 21:18 - 2008-11-25 22:34 - 0087608 _____ () C:\Users\Rodiče\AppData\Roaming\inst.exe
2008-11-25 21:18 - 2008-11-25 22:34 - 0007887 _____ () C:\Users\Rodiče\AppData\Roaming\pcouffin.cat
2008-11-25 21:18 - 2008-11-25 22:34 - 0001144 _____ () C:\Users\Rodiče\AppData\Roaming\pcouffin.inf
2008-11-25 21:19 - 2008-11-25 22:34 - 0000033 _____ () C:\Users\Rodiče\AppData\Roaming\pcouffin.log
2008-11-25 21:18 - 2008-11-25 22:34 - 0047360 _____ (VSO Software) C:\Users\Rodiče\AppData\Roaming\pcouffin.sys
2011-11-13 07:50 - 2011-11-13 07:50 - 0000600 _____ () C:\Users\Rodiče\AppData\Roaming\winscp.rnd
2012-10-27 22:13 - 2014-12-29 00:19 - 0010240 _____ () C:\Users\Rodiče\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-10-25 21:13 - 2012-10-25 21:13 - 0000000 _____ () C:\Users\Rodiče\AppData\Local\PRAKTIK.INI
2015-03-06 14:39 - 2015-03-06 14:39 - 0000218 _____ () C:\Users\Rodiče\AppData\Local\recently-used.xbel
2015-03-10 18:34 - 2015-04-19 09:34 - 0007628 _____ () C:\Users\Rodiče\AppData\Local\Resmon.ResmonCfg
2012-10-25 14:01 - 2012-10-25 14:02 - 0000413 _____ () C:\ProgramData\hpzinstall.log
2012-10-17 11:14 - 2012-11-22 17:19 - 0000193 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
2012-10-25 21:13 - 2012-10-25 21:13 - 0000000 _____ () C:\ProgramData\PRAKTIK.INI
2013-10-19 22:29 - 2013-10-25 22:33 - 0000024 _____ () C:\ProgramData\__FileUploader.log

Files to move or delete:
====================
C:\Users\NFSU\jagex_runescape_preferences.dat
C:\Users\NFSU\jagex_runescape_preferences2.dat
C:\Users\NFSU\jagex__preferences3.dat
C:\Users\Rodiče\esetsmartinstaller_csy.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Ad-Aware Update (Weekly).job => C:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Google Software Updater.job => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3533039139-1052968357-1368303399-1000Core.job => C:\Users\Rodi
e\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3533039139-1052968357-1368303399-1000UA.job => C:\Users\Rodi
e\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\User_Feed_Synchronization-{FF976561-0582-47FC-8BE5-0AEA2EC306C5}.job => C:\Windows\system32\msfeedssync.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Rodi�e\Desktop" je 30603 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher
"C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Anti-phishing Domain Advisor
"C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon
"C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ComplexWebServer
"C:\ComplexWebServer\bin\ServiceDirect.exe" /RUNHIDE /CONF="C:\ComplexWebServer\bin\ServiceDirect.conf" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXMediaServer
C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate
"C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EA Core
"C:\Program Files\Electronic Arts\EADM\Core.exe" -silent [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe
C:\Windows\ehome\ehTray.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eyeBeam SIP Client
"C:\Program Files\CounterPath\X-Lite\x-lite.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Freebie Notes
"C:\Program Files\Power Soft\Freebie Notes\FreebieNotes.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Quick Search Box
"C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe" /autorun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update
"C:\Users\Rodi�e\AppData\Local\Google\Update\GoogleUpdate.exe" /c [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleChromeAutoLaunch_DFFE5E47E07B1E117C76A22C295BA5AC
"C:\Users\Rodi�e\AppData\Local\Google\Chrome\Application\chrome.exe" --no-startup-window [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleDriveSync
"C:\Program Files\Google\Drive\googledrivesync.exe" /autostart [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup
C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper
"C:\Program Files\iTunes\iTunesHelper.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KBD
C:\HP\KBD\KbdStub.EXE [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Kernel and Hardware Abstraction Layer
C:\Windows\system32\MSTMON_S.EXE STARTUP [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KONICA MINOLTA magicolor 2400W STD
C:\Program Files\Pinnacle\Studio 11\LaunchList2.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LaunchList
C:\Program Files\Picasa2\PicasaMediaDetector.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Picasa Media Detector
C:\Program Files\PowerISO\PWRISOVM.EXE

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE
"C:\Program Files\QuickTime\QTTask.exe" -atboottime [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task
"C:\Program Files\TVR\RecSche.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RecSche
C:\W [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl
C:\Program Files\Windows Sidebar\sidebar.exe /autoRun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ScanRegistry
"C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar
C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminator
"C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SSDMonitor
C:\W [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC
"C:\Program Files\Common Files\Java\Java Update\jusched.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StillImageMonitor
"C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
C:\Windows\WDVRCtrl.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg
C:\Program Files\Windows Media Player\WMPNSCFG.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinDVRCtrl
C:\Program Files\Xvid\CheckUpdate.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG
Re�im ECHO je vypnut.

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Xvid
Re�im ECHO je vypnut.

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk
C:\PROGRA~1\MCAFEE~1\307523~1.318\SSSCHE~1.EXE [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SJphone 1.65.lnk
C:\Windows\INSTAL~1\{E1A45~1\SOFTPH~1.EXE [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Rodi�e^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.1.lnk
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Rodi�e^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^V��ezy obrazovky a spu�t�n� aplikace OneNote 2007.lnk
C:\PROGRA~1\MICROS~3\Office12\ONENOTEM.EXE /tsr [x]


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]


==================== End Of Log ==============================

Re: Proces lvhidsvc.exe vytěžuje procesor, prosím o pomoc o

Napsal: 19 dub 2015 23:58
od Hop
Addition.zip
(16.64 KiB) Staženo 75 x
Ještě přidávám Addition