
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Sekáni PC a pomalý internet
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Sekáni PC a pomalý internet
Nyni skenuji antivirem a zatim nalezen 1 vir ktery byl uložen do truhly.
Logfile of random's system information tool 1.09 (written by random/random)
Run by admin at 2012-03-21 18:51:27
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 59 GB (32%) free of 183 GB
Total RAM: 3956 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:51:36, on 21.3.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe
C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe
C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe
C:\Program Files (x86)\Samsung\Samsung Update Plus\SUPBackground.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\trend micro\admin.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
O1 - Hosts: ::1 localhost
O1 - Hosts: 149.5.18.172 http://www.google-analytics.com.
O1 - Hosts: 149.5.18.172 ad-emea.doubleclick.net.
O1 - Hosts: 149.5.18.172 http://www.statcounter.com.
O1 - Hosts: 108.163.215.51 http://www.google-analytics.com.
O1 - Hosts: 108.163.215.51 ad-emea.doubleclick.net.
O1 - Hosts: 108.163.215.51 http://www.statcounter.com.
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} (SysInfo Class) - http://content.systemrequirementslab.co ... .5.1.0.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{F2044D22-CA22-4DAD-80D3-6D56F41F1E20}: NameServer = 62.129.50.20,85.135.32.100
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Umxfwhlp (ELacpi) - Unknown owner - \\.\globalrootC:\Windows\system32\svchost.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TurboBoost - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: UltiDev Cassini Web Server for ASP.NET 2.0 - UltiDev LLC - C:\Program Files (x86)\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8082 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=consrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=consrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 26428464
\??\C:\Windows\system32\conhost.exe "-1605251279-1503562241-1879750865106749697885813682-2042130091-1170476485-1130023885
C:\Windows\System32\spoolsv.exe
taskeng.exe {B993ADA8-790F-4751-8BDB-D4A70AD8D00B}
C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"taskhost.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Windows\system32\Dwm.exe"
"C:\Windows\explorer.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\SmartTechnology\Software\ProfilerU.exe"
"C:\Program Files\SmartTechnology\Software\SaiMfd.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-d51a4433-1311-48e2-93be-acee0b5ca033 -SystemEventPortName:HostProcess-103cce28-e756-415b-8c39-08555abaca00 -IoCancelEventPortName:HostProcess-4248482c-e35d-4d68-8d45-05229634f8c7 -NonStateChangingEventPortName:HostProcess-e02f61fd-b845-4423-be69-b065f2be323e -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:a6cdae63-11d2-4836-8aed-e4887fb96759
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
taskeng.exe {1349FE37-CDF8-4B6D-B506-A4B99E4539C7}
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Samsung\SamsungFastStart\SmartRestarter.exe"
"C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe"
"C:\Program Files (x86)\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4188 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4188 CREDAT:79874
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 4904
"C:\Program Files (x86)\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe"
"C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe"
"C:\Program Files (x86)\Samsung\Samsung Update Plus\SUPBackground.exe"
C:\Windows\system32\msiexec.exe /V
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /welcome
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1604290871-1745575891-3147878822-10006_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1604290871-1745575891-3147878822-10006 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Windows\system32\svchost.exe"
"C:\Users\admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OF2D1WOV\RSITx64[1].exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-03-07 1211776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2010-04-28 132456]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-03-07 1003704]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-08-03 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-03-07 1211776]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-03-07 1003704]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-08-04 11106408]
"ProfilerU"=C:\Program Files\SmartTechnology\Software\ProfilerU.exe [2011-11-09 310272]
"SaiMfd"=C:\Program Files\SmartTechnology\Software\SaiMfd.exe [2011-11-09 158208]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2011-12-28 2893096]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-02 843712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2012-01-03 37296]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-06-03 103720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]
C:\Users\admin\AppData\Local\Facebook\Update\FacebookUpdate.exe [2011-12-05 137536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\itype]
C:\Program Files\Microsoft IntelliType Pro\itype.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDVD8LanguageShortcut]
C:\Program Files (x86)\CyberLink\PowerDVD8\Language\Language.exe [2009-04-15 50472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl8]
C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe [2009-04-15 91432]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SweetIM]
C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe [2011-05-12 114992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateLBPShortCut]
C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateP2GoShortCut]
C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdatePDRShortCut]
C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe [2008-01-04 222504]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdatePPShortCut]
C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe [2008-12-03 218408]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdatePSTShortCut]
C:\Program Files (x86)\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe [2009-07-21 210216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk]
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTTray.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SRS Premium Sound.lnk]
C:\Windows\INSTAL~1\{340BE~1\NEBEA7~1.EXE [2010-08-31 156952]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UCam_Menu"=C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-03-07 4241512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2010-11-20 290304]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.cpl - cplopen - %SystemRoot%\SysWow64\control.exe "%1",%*
======List of files/folders created in the last 1 month======
2012-03-21 18:44:53 ----A---- C:\Windows\system32\drivers\aswSP.sys
2012-03-21 18:44:53 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2012-03-21 18:44:52 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2012-03-21 18:44:52 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2012-03-21 18:44:52 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2012-03-21 18:44:50 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2012-03-21 18:44:50 ----A---- C:\Windows\system32\aswBoot.exe
2012-03-21 18:44:30 ----A---- C:\Windows\SYSWOW64\aswBoot.exe
2012-03-21 18:44:30 ----A---- C:\Windows\avastSS.scr
2012-03-21 18:44:21 ----D---- C:\ProgramData\AVAST Software
2012-03-21 18:44:21 ----D---- C:\Program Files\AVAST Software
2012-03-21 18:23:05 ----D---- C:\rsit
2012-03-21 13:47:15 ----A---- C:\Windows\ntbtlog.txt
2012-03-21 13:30:30 ----SD---- C:\32788R22FWJFW
2012-03-21 09:21:13 ----SHD---- C:\Windows\system32\%APPDATA%
2012-03-21 09:17:53 ----ASH---- C:\Windows\system32\dds_log_ad13.cmd
2012-03-16 14:47:32 ----D---- C:\ProgramData\Sony
2012-03-16 14:47:32 ----D---- C:\Program Files (x86)\Sony
2012-03-16 13:17:45 ----SHD---- C:\$RECYCLE.BIN
2012-03-16 08:09:15 ----A---- C:\Windows\system32\nvvsvc.exe
2012-03-16 08:09:15 ----A---- C:\Windows\system32\nvsvcr.dll
2012-03-16 08:09:15 ----A---- C:\Windows\system32\nvsvc64.dll
2012-03-16 08:09:15 ----A---- C:\Windows\system32\nvshext.dll
2012-03-16 08:09:15 ----A---- C:\Windows\system32\nvmctray.dll
2012-03-16 08:09:15 ----A---- C:\Windows\system32\nvcpl.dll
2012-03-16 08:08:49 ----D---- C:\ProgramData\NVIDIA Corporation
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\OpenCL.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvwgf2umx.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvoglv64.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvhdap64.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvgenco64.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvdispco64.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvd3dumx.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvcuvid.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvcuda.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvcompiler.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvapi64.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-03-16 08:07:46 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2012-03-16 06:30:17 ----D---- C:\Program Files\trend micro
2012-03-14 16:26:38 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-03-14 16:26:38 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-03-14 16:26:37 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-03-14 16:20:35 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-03-14 16:20:35 ----A---- C:\Windows\system32\DWrite.dll
2012-03-14 16:20:34 ----A---- C:\Windows\system32\win32k.sys
2012-03-14 14:31:57 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2012-03-14 14:31:57 ----A---- C:\Windows\system32\rdrmemptylst.exe
2012-03-14 14:31:57 ----A---- C:\Windows\system32\rdpwsx.dll
2012-03-14 14:31:57 ----A---- C:\Windows\system32\rdpcorekmts.dll
2012-03-14 14:31:57 ----A---- C:\Windows\system32\rdpcore.dll
2012-03-14 14:31:57 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2012-03-14 14:31:57 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-03-06 15:38:55 ----D---- C:\Windows\temp
======List of files/folders modified in the last 1 month======
2012-03-21 18:49:11 ----D---- C:\Windows\System32
2012-03-21 18:44:53 ----D---- C:\Windows\system32\drivers
2012-03-21 18:44:50 ----D---- C:\Windows\SysWOW64
2012-03-21 18:44:47 ----SHD---- C:\Windows\Installer
2012-03-21 18:44:30 ----D---- C:\Windows
2012-03-21 18:44:21 ----RD---- C:\Program Files
2012-03-21 18:44:21 ----D---- C:\ProgramData
2012-03-21 18:43:10 ----D---- C:\Windows\inf
2012-03-21 18:43:10 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-03-21 18:37:59 ----D---- C:\Windows\system32\config
2012-03-21 18:37:28 ----A---- C:\Windows\SYSWOW64\log.txt
2012-03-21 18:36:32 ----D---- C:\Windows\system32\drivers\etc
2012-03-21 18:32:51 ----D---- C:\Windows\Minidump
2012-03-21 13:46:01 ----D---- C:\Windows\Prefetch
2012-03-21 09:32:36 ----D---- C:\Users\admin\AppData\Roaming\uTorrent
2012-03-20 19:18:07 ----D---- C:\Users\admin\AppData\Roaming\PhotoScape
2012-03-19 07:45:15 ----SHD---- C:\System Volume Information
2012-03-18 05:51:38 ----D---- C:\Program Files (x86)\Microsoft Office
2012-03-18 05:50:59 ----D---- C:\Program Files (x86)\MSECache
2012-03-16 14:48:20 ----D---- C:\Windows\system32\catroot
2012-03-16 14:48:19 ----D---- C:\Windows\system32\DriverStore
2012-03-16 14:47:32 ----RD---- C:\Program Files (x86)
2012-03-16 14:47:32 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-03-16 14:47:32 ----D---- C:\ProgramData\Sony Ericsson
2012-03-16 14:47:32 ----D---- C:\Program Files (x86)\Sony Ericsson
2012-03-16 13:13:19 ----D---- C:\Windows\Tasks
2012-03-16 08:09:55 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2012-03-16 08:09:42 ----D---- C:\ProgramData\NVIDIA
2012-03-16 08:09:40 ----RD---- C:\Users
2012-03-16 08:09:40 ----D---- C:\Program Files\NVIDIA Corporation
2012-03-16 08:09:24 ----D---- C:\NVIDIA
2012-03-16 08:09:13 ----D---- C:\Windows\Help
2012-03-16 08:08:46 ----D---- C:\Windows\system32\catroot2
2012-03-14 16:30:01 ----D---- C:\Windows\winsxs
2012-03-14 16:21:43 ----D---- C:\Windows\debug
2012-03-14 16:21:42 ----A---- C:\Windows\system32\MRT.exe
2012-03-14 16:21:29 ----A---- C:\Windows\win.ini
2012-03-11 15:46:26 ----D---- C:\Users\admin\AppData\Roaming\Skype
2012-03-09 07:39:01 ----D---- C:\Program Files\Google
2012-03-09 07:39:01 ----D---- C:\Program Files (x86)\Google
2012-03-08 23:30:08 ----D---- C:\ProgramData\Google
2012-03-08 12:37:44 ----D---- C:\Users\admin\AppData\Roaming\Winamp
2012-03-06 18:29:49 ----D---- C:\Program Files\CCleaner
2012-03-06 15:36:45 ----A---- C:\Windows\system.ini
2012-03-06 15:30:13 ----D---- C:\Windows\SYSWOW64\drivers
2012-03-06 15:30:13 ----D---- C:\Windows\AppPatch
2012-03-06 15:30:12 ----D---- C:\Program Files\Common Files
2012-03-06 15:30:12 ----D---- C:\Program Files (x86)\Common Files
2012-03-05 07:17:29 ----D---- C:\Program Files (x86)\uTorrent
2012-03-04 11:20:49 ----D---- C:\Users\admin\AppData\Roaming\SoftGrid Client
2012-02-23 09:18:36 ----N---- C:\Windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-04-27 540696]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-01-22 834544]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-03-07 53080]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-03-07 337240]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-03-07 59224]
R1 SABI;SAMSUNG Kernel Driver For Windows 7; \??\C:\Windows\system32\Drivers\SABI.sys [2009-05-28 13824]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-03-07 24408]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-03-07 69976]
R2 TurboB;Turbo Boost UI Monitor driver; C:\Windows\system32\DRIVERS\TurboB.sys [2009-11-02 13784]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2011-07-05 4745280]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthMtpEnum;Modul pro výčet zařízení Bluetooth MTP; C:\Windows\system32\DRIVERS\BthMtpEnum.sys [2009-07-14 64512]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2011-12-28 207656]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-08-04 2447592]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2010-04-27 83080]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2010-04-27 184968]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2012-01-17 188224]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SaiK0CCC;SaiK0CCC; C:\Windows\system32\DRIVERS\SaiK0CCC.sys [2010-08-10 171016]
R3 SaiMini;SaiMini; C:\Windows\system32\DRIVERS\SaiMini.sys [2011-11-10 24640]
R3 SaiNtBus;SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [2011-11-10 52160]
R3 SaiU0CCC;SaiU0CCC; C:\Windows\system32\DRIVERS\SaiU0CCC.sys [2010-08-10 41096]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2011-10-01 764264]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2011-10-01 268648]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2011-10-01 25960]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2011-10-01 22376]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\Windows\system32\DRIVERS\serscan.sys [2009-07-14 12288]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-03-07 819032]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-28 552960]
S3 btwampfl;Bluetooth AMP USB Filter; C:\Windows\system32\drivers\btwampfl.sys [2010-07-14 344616]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys []
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys []
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys []
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys []
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\Windows\System32\Drivers\btwusb.sys [2008-10-31 56104]
S3 DrvAgent64;DrvAgent64; \??\C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS [2011-11-10 21712]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-04-28 61288]
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2011-12-11 13352]
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2011-12-11 27176]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2011-08-17 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2011-08-17 27136]
S3 nmwcdnsucx64;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsucx64.sys [2011-08-17 12800]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2011-08-17 171008]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 rtport;rtport; \??\C:\Windows\SysWOW64\drivers\rtport.sys [2010-11-19 15144]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2011-08-17 9216]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-07-14 19968]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2010-11-20 32768]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2011-08-17 9216]
S3 WinUsb;Sony Ericsson sa0102 ADB Interface; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-03-07 44768]
R2 cqmghost;Lvselsus; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-02-03 268824]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-02-29 889664]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-03-01 2348352]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2009-07-07 247152]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-01 508776]
R2 UltiDev Cassini Web Server for ASP.NET 2.0;UltiDev Cassini Web Server for ASP.NET 2.0; C:\Program Files (x86)\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe [2010-08-25 49152]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-02-03 2320920]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-01 219496]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 ELacpi;Umxfwhlp; \\.\globalroot\SystemRoot\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 fsssvc;Služba Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-04-28 704872]
S3 GameConsoleService;GameConsoleService; C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe [2010-06-03 246520]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2011-10-27 718384]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2012-01-18 155320]
S3 TurboBoost;TurboBoost; C:\Program Files\Intel\TurboBoost\TurboBoost.exe [2009-11-02 126352]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-03-29 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 Samsung UPD Service;Samsung UPD Service; C:\Windows\System32\SUPDSvc.exe [2010-08-09 166704]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by admin at 2012-03-21 18:51:27
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 59 GB (32%) free of 183 GB
Total RAM: 3956 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:51:36, on 21.3.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe
C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe
C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe
C:\Program Files (x86)\Samsung\Samsung Update Plus\SUPBackground.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\trend micro\admin.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
O1 - Hosts: ::1 localhost
O1 - Hosts: 149.5.18.172 http://www.google-analytics.com.
O1 - Hosts: 149.5.18.172 ad-emea.doubleclick.net.
O1 - Hosts: 149.5.18.172 http://www.statcounter.com.
O1 - Hosts: 108.163.215.51 http://www.google-analytics.com.
O1 - Hosts: 108.163.215.51 ad-emea.doubleclick.net.
O1 - Hosts: 108.163.215.51 http://www.statcounter.com.
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} (SysInfo Class) - http://content.systemrequirementslab.co ... .5.1.0.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{F2044D22-CA22-4DAD-80D3-6D56F41F1E20}: NameServer = 62.129.50.20,85.135.32.100
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Umxfwhlp (ELacpi) - Unknown owner - \\.\globalrootC:\Windows\system32\svchost.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TurboBoost - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: UltiDev Cassini Web Server for ASP.NET 2.0 - UltiDev LLC - C:\Program Files (x86)\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8082 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=consrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=consrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 26428464
\??\C:\Windows\system32\conhost.exe "-1605251279-1503562241-1879750865106749697885813682-2042130091-1170476485-1130023885
C:\Windows\System32\spoolsv.exe
taskeng.exe {B993ADA8-790F-4751-8BDB-D4A70AD8D00B}
C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"taskhost.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Windows\system32\Dwm.exe"
"C:\Windows\explorer.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\SmartTechnology\Software\ProfilerU.exe"
"C:\Program Files\SmartTechnology\Software\SaiMfd.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-d51a4433-1311-48e2-93be-acee0b5ca033 -SystemEventPortName:HostProcess-103cce28-e756-415b-8c39-08555abaca00 -IoCancelEventPortName:HostProcess-4248482c-e35d-4d68-8d45-05229634f8c7 -NonStateChangingEventPortName:HostProcess-e02f61fd-b845-4423-be69-b065f2be323e -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:a6cdae63-11d2-4836-8aed-e4887fb96759
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
taskeng.exe {1349FE37-CDF8-4B6D-B506-A4B99E4539C7}
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Samsung\SamsungFastStart\SmartRestarter.exe"
"C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe"
"C:\Program Files (x86)\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4188 CREDAT:79873
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:4188 CREDAT:79874
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 4904
"C:\Program Files (x86)\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe"
"C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe"
"C:\Program Files (x86)\Samsung\Samsung Update Plus\SUPBackground.exe"
C:\Windows\system32\msiexec.exe /V
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /welcome
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1604290871-1745575891-3147878822-10006_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1604290871-1745575891-3147878822-10006 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Windows\system32\svchost.exe"
"C:\Users\admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OF2D1WOV\RSITx64[1].exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-03-07 1211776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2010-04-28 132456]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-03-07 1003704]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-08-03 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-03-07 1211776]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-03-07 1003704]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-08-04 11106408]
"ProfilerU"=C:\Program Files\SmartTechnology\Software\ProfilerU.exe [2011-11-09 310272]
"SaiMfd"=C:\Program Files\SmartTechnology\Software\SaiMfd.exe [2011-11-09 158208]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2011-12-28 2893096]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-02 843712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2012-01-03 37296]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-06-03 103720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]
C:\Users\admin\AppData\Local\Facebook\Update\FacebookUpdate.exe [2011-12-05 137536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\itype]
C:\Program Files\Microsoft IntelliType Pro\itype.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDVD8LanguageShortcut]
C:\Program Files (x86)\CyberLink\PowerDVD8\Language\Language.exe [2009-04-15 50472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl8]
C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe [2009-04-15 91432]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SweetIM]
C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe [2011-05-12 114992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateLBPShortCut]
C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateP2GoShortCut]
C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdatePDRShortCut]
C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe [2008-01-04 222504]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdatePPShortCut]
C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe [2008-12-03 218408]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdatePSTShortCut]
C:\Program Files (x86)\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe [2009-07-21 210216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk]
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTTray.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SRS Premium Sound.lnk]
C:\Windows\INSTAL~1\{340BE~1\NEBEA7~1.EXE [2010-08-31 156952]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UCam_Menu"=C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-03-07 4241512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2010-11-20 290304]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.cpl - cplopen - %SystemRoot%\SysWow64\control.exe "%1",%*
======List of files/folders created in the last 1 month======
2012-03-21 18:44:53 ----A---- C:\Windows\system32\drivers\aswSP.sys
2012-03-21 18:44:53 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2012-03-21 18:44:52 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2012-03-21 18:44:52 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2012-03-21 18:44:52 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2012-03-21 18:44:50 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2012-03-21 18:44:50 ----A---- C:\Windows\system32\aswBoot.exe
2012-03-21 18:44:30 ----A---- C:\Windows\SYSWOW64\aswBoot.exe
2012-03-21 18:44:30 ----A---- C:\Windows\avastSS.scr
2012-03-21 18:44:21 ----D---- C:\ProgramData\AVAST Software
2012-03-21 18:44:21 ----D---- C:\Program Files\AVAST Software
2012-03-21 18:23:05 ----D---- C:\rsit
2012-03-21 13:47:15 ----A---- C:\Windows\ntbtlog.txt
2012-03-21 13:30:30 ----SD---- C:\32788R22FWJFW
2012-03-21 09:21:13 ----SHD---- C:\Windows\system32\%APPDATA%
2012-03-21 09:17:53 ----ASH---- C:\Windows\system32\dds_log_ad13.cmd
2012-03-16 14:47:32 ----D---- C:\ProgramData\Sony
2012-03-16 14:47:32 ----D---- C:\Program Files (x86)\Sony
2012-03-16 13:17:45 ----SHD---- C:\$RECYCLE.BIN
2012-03-16 08:09:15 ----A---- C:\Windows\system32\nvvsvc.exe
2012-03-16 08:09:15 ----A---- C:\Windows\system32\nvsvcr.dll
2012-03-16 08:09:15 ----A---- C:\Windows\system32\nvsvc64.dll
2012-03-16 08:09:15 ----A---- C:\Windows\system32\nvshext.dll
2012-03-16 08:09:15 ----A---- C:\Windows\system32\nvmctray.dll
2012-03-16 08:09:15 ----A---- C:\Windows\system32\nvcpl.dll
2012-03-16 08:08:49 ----D---- C:\ProgramData\NVIDIA Corporation
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2012-03-16 08:07:46 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\OpenCL.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvwgf2umx.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvoglv64.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvhdap64.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvgenco64.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvdispco64.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvd3dumx.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvcuvid.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvcuda.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvcompiler.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\nvapi64.dll
2012-03-16 08:07:46 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-03-16 08:07:46 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2012-03-16 06:30:17 ----D---- C:\Program Files\trend micro
2012-03-14 16:26:38 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-03-14 16:26:38 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-03-14 16:26:37 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-03-14 16:20:35 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-03-14 16:20:35 ----A---- C:\Windows\system32\DWrite.dll
2012-03-14 16:20:34 ----A---- C:\Windows\system32\win32k.sys
2012-03-14 14:31:57 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2012-03-14 14:31:57 ----A---- C:\Windows\system32\rdrmemptylst.exe
2012-03-14 14:31:57 ----A---- C:\Windows\system32\rdpwsx.dll
2012-03-14 14:31:57 ----A---- C:\Windows\system32\rdpcorekmts.dll
2012-03-14 14:31:57 ----A---- C:\Windows\system32\rdpcore.dll
2012-03-14 14:31:57 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2012-03-14 14:31:57 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-03-06 15:38:55 ----D---- C:\Windows\temp
======List of files/folders modified in the last 1 month======
2012-03-21 18:49:11 ----D---- C:\Windows\System32
2012-03-21 18:44:53 ----D---- C:\Windows\system32\drivers
2012-03-21 18:44:50 ----D---- C:\Windows\SysWOW64
2012-03-21 18:44:47 ----SHD---- C:\Windows\Installer
2012-03-21 18:44:30 ----D---- C:\Windows
2012-03-21 18:44:21 ----RD---- C:\Program Files
2012-03-21 18:44:21 ----D---- C:\ProgramData
2012-03-21 18:43:10 ----D---- C:\Windows\inf
2012-03-21 18:43:10 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-03-21 18:37:59 ----D---- C:\Windows\system32\config
2012-03-21 18:37:28 ----A---- C:\Windows\SYSWOW64\log.txt
2012-03-21 18:36:32 ----D---- C:\Windows\system32\drivers\etc
2012-03-21 18:32:51 ----D---- C:\Windows\Minidump
2012-03-21 13:46:01 ----D---- C:\Windows\Prefetch
2012-03-21 09:32:36 ----D---- C:\Users\admin\AppData\Roaming\uTorrent
2012-03-20 19:18:07 ----D---- C:\Users\admin\AppData\Roaming\PhotoScape
2012-03-19 07:45:15 ----SHD---- C:\System Volume Information
2012-03-18 05:51:38 ----D---- C:\Program Files (x86)\Microsoft Office
2012-03-18 05:50:59 ----D---- C:\Program Files (x86)\MSECache
2012-03-16 14:48:20 ----D---- C:\Windows\system32\catroot
2012-03-16 14:48:19 ----D---- C:\Windows\system32\DriverStore
2012-03-16 14:47:32 ----RD---- C:\Program Files (x86)
2012-03-16 14:47:32 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-03-16 14:47:32 ----D---- C:\ProgramData\Sony Ericsson
2012-03-16 14:47:32 ----D---- C:\Program Files (x86)\Sony Ericsson
2012-03-16 13:13:19 ----D---- C:\Windows\Tasks
2012-03-16 08:09:55 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2012-03-16 08:09:42 ----D---- C:\ProgramData\NVIDIA
2012-03-16 08:09:40 ----RD---- C:\Users
2012-03-16 08:09:40 ----D---- C:\Program Files\NVIDIA Corporation
2012-03-16 08:09:24 ----D---- C:\NVIDIA
2012-03-16 08:09:13 ----D---- C:\Windows\Help
2012-03-16 08:08:46 ----D---- C:\Windows\system32\catroot2
2012-03-14 16:30:01 ----D---- C:\Windows\winsxs
2012-03-14 16:21:43 ----D---- C:\Windows\debug
2012-03-14 16:21:42 ----A---- C:\Windows\system32\MRT.exe
2012-03-14 16:21:29 ----A---- C:\Windows\win.ini
2012-03-11 15:46:26 ----D---- C:\Users\admin\AppData\Roaming\Skype
2012-03-09 07:39:01 ----D---- C:\Program Files\Google
2012-03-09 07:39:01 ----D---- C:\Program Files (x86)\Google
2012-03-08 23:30:08 ----D---- C:\ProgramData\Google
2012-03-08 12:37:44 ----D---- C:\Users\admin\AppData\Roaming\Winamp
2012-03-06 18:29:49 ----D---- C:\Program Files\CCleaner
2012-03-06 15:36:45 ----A---- C:\Windows\system.ini
2012-03-06 15:30:13 ----D---- C:\Windows\SYSWOW64\drivers
2012-03-06 15:30:13 ----D---- C:\Windows\AppPatch
2012-03-06 15:30:12 ----D---- C:\Program Files\Common Files
2012-03-06 15:30:12 ----D---- C:\Program Files (x86)\Common Files
2012-03-05 07:17:29 ----D---- C:\Program Files (x86)\uTorrent
2012-03-04 11:20:49 ----D---- C:\Users\admin\AppData\Roaming\SoftGrid Client
2012-02-23 09:18:36 ----N---- C:\Windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-04-27 540696]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-01-22 834544]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-03-07 53080]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-03-07 337240]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-03-07 59224]
R1 SABI;SAMSUNG Kernel Driver For Windows 7; \??\C:\Windows\system32\Drivers\SABI.sys [2009-05-28 13824]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-03-07 24408]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-03-07 69976]
R2 TurboB;Turbo Boost UI Monitor driver; C:\Windows\system32\DRIVERS\TurboB.sys [2009-11-02 13784]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2011-07-05 4745280]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthMtpEnum;Modul pro výčet zařízení Bluetooth MTP; C:\Windows\system32\DRIVERS\BthMtpEnum.sys [2009-07-14 64512]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2011-12-28 207656]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-08-04 2447592]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2010-04-27 83080]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2010-04-27 184968]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2012-01-17 188224]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SaiK0CCC;SaiK0CCC; C:\Windows\system32\DRIVERS\SaiK0CCC.sys [2010-08-10 171016]
R3 SaiMini;SaiMini; C:\Windows\system32\DRIVERS\SaiMini.sys [2011-11-10 24640]
R3 SaiNtBus;SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [2011-11-10 52160]
R3 SaiU0CCC;SaiU0CCC; C:\Windows\system32\DRIVERS\SaiU0CCC.sys [2010-08-10 41096]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2011-10-01 764264]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2011-10-01 268648]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2011-10-01 25960]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2011-10-01 22376]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\Windows\system32\DRIVERS\serscan.sys [2009-07-14 12288]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-03-07 819032]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-28 552960]
S3 btwampfl;Bluetooth AMP USB Filter; C:\Windows\system32\drivers\btwampfl.sys [2010-07-14 344616]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys []
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys []
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys []
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys []
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\Windows\System32\Drivers\btwusb.sys [2008-10-31 56104]
S3 DrvAgent64;DrvAgent64; \??\C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS [2011-11-10 21712]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-04-28 61288]
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2011-12-11 13352]
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2011-12-11 27176]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2011-08-17 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2011-08-17 27136]
S3 nmwcdnsucx64;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsucx64.sys [2011-08-17 12800]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2011-08-17 171008]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 rtport;rtport; \??\C:\Windows\SysWOW64\drivers\rtport.sys [2010-11-19 15144]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2011-08-17 9216]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-07-14 19968]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2010-11-20 32768]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2011-08-17 9216]
S3 WinUsb;Sony Ericsson sa0102 ADB Interface; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-03-07 44768]
R2 cqmghost;Lvselsus; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-02-03 268824]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-02-29 889664]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-03-01 2348352]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2009-07-07 247152]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-01 508776]
R2 UltiDev Cassini Web Server for ASP.NET 2.0;UltiDev Cassini Web Server for ASP.NET 2.0; C:\Program Files (x86)\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe [2010-08-25 49152]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-02-03 2320920]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-01 219496]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 ELacpi;Umxfwhlp; \\.\globalroot\SystemRoot\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 fsssvc;Služba Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-04-28 704872]
S3 GameConsoleService;GameConsoleService; C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe [2010-06-03 246520]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2011-10-27 718384]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2012-01-18 155320]
S3 TurboBoost;TurboBoost; C:\Program Files\Intel\TurboBoost\TurboBoost.exe [2009-11-02 126352]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-03-29 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 Samsung UPD Service;Samsung UPD Service; C:\Windows\System32\SUPDSvc.exe [2010-08-09 166704]
-----------------EOF-----------------
Naposledy upravil(a) miromen dne 21 bře 2012 18:56, celkem upraveno 1 x.
Re: Sekáni PC a pomalý intrnet
Zdravim a pekny vecer preji
Pockame tedy na dokonceni skenu Avastem - pak napiste co nasel
Ja tam taky nekolik potvor vidim, ale kdyz uz skenujete, tak pockame 




Re: Sekáni PC a pomalý internet
Taky přeji hezky večer a děkuji za ochotu. Každopádně už nyni vidím ze skenu,že tam něco je a zřejmě toho neni málo.
Re: Sekáni PC a pomalý internet
OK, pockam tedy na nalezy 

Re: Sekáni PC a pomalý internet
Tak našel celkem 23 nakaženi. Jen nevim jak to zde zkopirovat.
Namatkou:několik Win64:Sirefef-E - Trj
několik Win32:Malware-gen
několik Win32:Sirefet-PL-Rtk atd.
Namatkou:několik Win64:Sirefef-E - Trj
několik Win32:Malware-gen
několik Win32:Sirefet-PL-Rtk atd.
Re: Sekáni PC a pomalý internet




- Kliknete na volbu Change parametrs
- V obou oknech (Objects to scan i Additional Option) zakliknete vsechny moznosti - ve vsech ctvereccich musi mit fajecka
- Kliknete na OK
- Utilite prikazte, at skenuje - klik na Start Scan
- Po dokonceni skenu se objevi okno, zkontrolujte, zda-li je vsude moznost Skip
- Pokud moznost Skip nebude primarne nastavena, prekliknete ji na Skip
- Pokud mate vsude Skip, kliknete na Continue
- Na disku, kde mate Windows (obvykle c:\) ve tvaru TDSSKiller.nejaka cisilka _log.txt bude log - jeho obsah sem vlozte
Re: Sekáni PC a pomalý internet
Sakra co jsem to chytil za svinstvo.
No nic zde je log:
19:49:24.0894 5252 TDSS rootkit removing tool 2.7.21.0 Mar 21 2012 09:06:51
19:49:25.0128 5252 ============================================================
19:49:25.0128 5252 Current date / time: 2012/03/21 19:49:25.0128
19:49:25.0128 5252 SystemInfo:
19:49:25.0128 5252
19:49:25.0128 5252 OS Version: 6.1.7601 ServicePack: 1.0
19:49:25.0128 5252 Product type: Workstation
19:49:25.0128 5252 ComputerName: ADMIN-PC
19:49:25.0128 5252 UserName: admin
19:49:25.0128 5252 Windows directory: C:\Windows
19:49:25.0128 5252 System windows directory: C:\Windows
19:49:25.0128 5252 Running under WOW64
19:49:25.0128 5252 Processor architecture: Intel x64
19:49:25.0128 5252 Number of processors: 4
19:49:25.0128 5252 Page size: 0x1000
19:49:25.0128 5252 Boot type: Normal boot
19:49:25.0128 5252 ============================================================
19:49:25.0643 5252 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:49:25.0643 5252 Drive \Device\Harddisk1\DR1 - Size: 0x1DB000000 (7.42 Gb), SectorSize: 0x200, Cylinders: 0x3C8, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
19:49:25.0643 5252 \Device\Harddisk0\DR0:
19:49:25.0643 5252 MBR used
19:49:25.0643 5252 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
19:49:25.0643 5252 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x16600000
19:49:25.0674 5252 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x16633000, BlocksNum 0x21746000
19:49:25.0674 5252 \Device\Harddisk1\DR1:
19:49:25.0674 5252 MBR used
19:49:25.0737 5252 Initialize success
19:49:25.0737 5252 ============================================================
19:49:52.0304 5440 ============================================================
19:49:52.0304 5440 Scan started
19:49:52.0304 5440 Mode: Manual; SigCheck; TDLFS;
19:49:52.0304 5440 ============================================================
19:49:53.0130 5440 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
19:49:53.0380 5440 1394ohci - ok
19:49:53.0505 5440 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
19:49:53.0520 5440 ACPI - ok
19:49:53.0630 5440 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
19:49:53.0692 5440 AcpiPmi - ok
19:49:53.0832 5440 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
19:49:53.0848 5440 adp94xx - ok
19:49:53.0957 5440 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
19:49:53.0973 5440 adpahci - ok
19:49:54.0082 5440 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
19:49:54.0098 5440 adpu320 - ok
19:49:54.0238 5440 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
19:49:54.0332 5440 AFD - ok
19:49:54.0503 5440 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
19:49:54.0519 5440 agp440 - ok
19:49:54.0612 5440 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
19:49:54.0628 5440 aliide - ok
19:49:54.0737 5440 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
19:49:54.0737 5440 amdide - ok
19:49:54.0846 5440 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
19:49:54.0862 5440 AmdK8 - ok
19:49:54.0971 5440 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
19:49:54.0971 5440 AmdPPM - ok
19:49:55.0080 5440 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
19:49:55.0080 5440 amdsata - ok
19:49:55.0205 5440 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
19:49:55.0221 5440 amdsbs - ok
19:49:55.0314 5440 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
19:49:55.0330 5440 amdxata - ok
19:49:55.0439 5440 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
19:49:55.0626 5440 AppID - ok
19:49:55.0782 5440 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
19:49:55.0798 5440 arc - ok
19:49:56.0016 5440 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
19:49:56.0032 5440 arcsas - ok
19:49:56.0157 5440 aswFsBlk (b9da213b5271db5fce962d827e6d620d) C:\Windows\system32\drivers\aswFsBlk.sys
19:49:56.0219 5440 aswFsBlk - ok
19:49:56.0360 5440 aswMonFlt (21c9835d0e5ad2ff0f16134bcb32cc71) C:\Windows\system32\drivers\aswMonFlt.sys
19:49:56.0375 5440 aswMonFlt - ok
19:49:56.0516 5440 aswRdr (1b96a5867abd4fa6135d8298fcccf9c6) C:\Windows\System32\Drivers\aswrdr2.sys
19:49:56.0531 5440 aswRdr - ok
19:49:56.0750 5440 aswSnx (6e98bb288696777a3a8a07a52b0eaee9) C:\Windows\system32\drivers\aswSnx.sys
19:49:56.0796 5440 aswSnx - ok
19:49:56.0937 5440 aswSP (d9fb49f16e4eb02efecae8cbfe4bcb4c) C:\Windows\system32\drivers\aswSP.sys
19:49:56.0952 5440 aswSP - ok
19:49:57.0077 5440 aswTdi (7352bb9a564b94bbd7c9cbf165f55006) C:\Windows\system32\drivers\aswTdi.sys
19:49:57.0108 5440 aswTdi - ok
19:49:57.0218 5440 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
19:49:57.0358 5440 AsyncMac - ok
19:49:57.0483 5440 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
19:49:57.0514 5440 atapi - ok
19:49:57.0701 5440 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
19:49:57.0764 5440 b06bdrv - ok
19:49:57.0888 5440 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
19:49:57.0904 5440 b57nd60a - ok
19:49:58.0138 5440 BCM43XX (43ad3d3e7674833fca9a7c4e7180ad54) C:\Windows\system32\DRIVERS\bcmwl664.sys
19:49:58.0341 5440 BCM43XX - ok
19:49:58.0497 5440 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
19:49:58.0528 5440 Beep - ok
19:49:58.0590 5440 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
19:49:58.0606 5440 blbdrive - ok
19:49:58.0668 5440 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
19:49:58.0700 5440 bowser - ok
19:49:58.0762 5440 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
19:49:58.0809 5440 BrFiltLo - ok
19:49:58.0918 5440 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
19:49:58.0934 5440 BrFiltUp - ok
19:49:59.0105 5440 BridgeMP (5c2f352a4e961d72518261257aae204b) C:\Windows\system32\DRIVERS\bridge.sys
19:49:59.0168 5440 BridgeMP - ok
19:49:59.0246 5440 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
19:49:59.0308 5440 Brserid - ok
19:49:59.0386 5440 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
19:49:59.0402 5440 BrSerWdm - ok
19:49:59.0448 5440 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
19:49:59.0464 5440 BrUsbMdm - ok
19:49:59.0511 5440 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
19:49:59.0526 5440 BrUsbSer - ok
19:49:59.0573 5440 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\drivers\BthEnum.sys
19:49:59.0636 5440 BthEnum - ok
19:49:59.0776 5440 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
19:49:59.0792 5440 BTHMODEM - ok
19:49:59.0870 5440 BthMtpEnum (bdad7ca91f370e588ecc8c67b694300c) C:\Windows\system32\DRIVERS\BthMtpEnum.sys
19:49:59.0885 5440 BthMtpEnum - ok
19:49:59.0963 5440 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys
19:49:59.0994 5440 BthPan - ok
19:50:00.0072 5440 BTHPORT (64c198198501f7560ee41d8d1efa7952) C:\Windows\System32\Drivers\BTHport.sys
19:50:00.0104 5440 BTHPORT - ok
19:50:00.0150 5440 BTHUSB (f188b7394d81010767b6df3178519a37) C:\Windows\System32\Drivers\BTHUSB.sys
19:50:00.0166 5440 BTHUSB - ok
19:50:00.0213 5440 btwampfl (7a2ce8c1bf4daa1f2766e21e9ca11078) C:\Windows\system32\drivers\btwampfl.sys
19:50:00.0244 5440 btwampfl - ok
19:50:00.0244 5440 btwaudio - ok
19:50:00.0275 5440 btwavdt - ok
19:50:00.0275 5440 btwl2cap - ok
19:50:00.0291 5440 btwrchid - ok
19:50:00.0322 5440 BTWUSB (0bc5ce14eca297801b73115a57096811) C:\Windows\system32\Drivers\btwusb.sys
19:50:00.0338 5440 BTWUSB - ok
19:50:00.0369 5440 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
19:50:00.0416 5440 cdfs - ok
19:50:00.0525 5440 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
19:50:00.0556 5440 cdrom - ok
19:50:00.0603 5440 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
19:50:00.0618 5440 circlass - ok
19:50:00.0665 5440 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
19:50:00.0681 5440 CLFS - ok
19:50:00.0743 5440 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
19:50:00.0774 5440 CmBatt - ok
19:50:00.0806 5440 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
19:50:00.0821 5440 cmdide - ok
19:50:00.0868 5440 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
19:50:00.0899 5440 CNG - ok
19:50:00.0930 5440 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
19:50:00.0930 5440 Compbatt - ok
19:50:00.0962 5440 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
19:50:00.0977 5440 CompositeBus - ok
19:50:01.0071 5440 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
19:50:01.0086 5440 crcdisk - ok
19:50:01.0196 5440 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
19:50:01.0242 5440 DfsC - ok
19:50:01.0305 5440 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
19:50:01.0367 5440 discache - ok
19:50:01.0430 5440 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
19:50:01.0445 5440 Disk - ok
19:50:01.0539 5440 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
19:50:01.0554 5440 drmkaud - ok
19:50:01.0695 5440 DrvAgent64 (1ed08a6264c5c92099d6d1dae5e8f530) C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS
19:50:01.0710 5440 DrvAgent64 - ok
19:50:01.0820 5440 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
19:50:01.0866 5440 DXGKrnl - ok
19:50:02.0007 5440 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
19:50:02.0132 5440 ebdrv - ok
19:50:02.0319 5440 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
19:50:02.0366 5440 elxstor - ok
19:50:02.0428 5440 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
19:50:02.0444 5440 ErrDev - ok
19:50:02.0584 5440 ETD (3bb2c05d9a515601e85dbf353369e672) C:\Windows\system32\DRIVERS\ETD.sys
19:50:02.0600 5440 ETD - ok
19:50:02.0678 5440 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
19:50:02.0724 5440 exfat - ok
19:50:02.0787 5440 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
19:50:02.0849 5440 fastfat - ok
19:50:02.0927 5440 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
19:50:02.0943 5440 fdc - ok
19:50:03.0005 5440 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
19:50:03.0036 5440 FileInfo - ok
19:50:03.0114 5440 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
19:50:03.0161 5440 Filetrace - ok
19:50:03.0224 5440 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
19:50:03.0255 5440 flpydisk - ok
19:50:03.0333 5440 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
19:50:03.0348 5440 FltMgr - ok
19:50:03.0411 5440 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
19:50:03.0426 5440 FsDepends - ok
19:50:03.0458 5440 fssfltr (2bf3b36b96d015af666b6aa63ae2e38f) C:\Windows\system32\DRIVERS\fssfltr.sys
19:50:03.0473 5440 fssfltr - ok
19:50:03.0504 5440 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
19:50:03.0520 5440 Fs_Rec - ok
19:50:03.0567 5440 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
19:50:03.0582 5440 fvevol - ok
19:50:03.0614 5440 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
19:50:03.0614 5440 gagp30kx - ok
19:50:03.0676 5440 ggflt (a4198f2bd8aa592cb90476277a81b5e1) C:\Windows\system32\DRIVERS\ggflt.sys
19:50:03.0692 5440 ggflt - ok
19:50:03.0754 5440 ggsemc (d266350bdaab9eb6c1aec370eeaaff3a) C:\Windows\system32\DRIVERS\ggsemc.sys
19:50:03.0754 5440 ggsemc - ok
19:50:03.0801 5440 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
19:50:03.0832 5440 hcw85cir - ok
19:50:03.0941 5440 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
19:50:03.0972 5440 HdAudAddService - ok
19:50:04.0004 5440 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
19:50:04.0035 5440 HDAudBus - ok
19:50:04.0097 5440 HECIx64 (b6ac71aaa2b10848f57fc49d55a651af) C:\Windows\system32\DRIVERS\HECIx64.sys
19:50:04.0113 5440 HECIx64 - ok
19:50:04.0191 5440 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
19:50:04.0206 5440 HidBatt - ok
19:50:04.0331 5440 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
19:50:04.0347 5440 HidBth - ok
19:50:04.0425 5440 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
19:50:04.0440 5440 HidIr - ok
19:50:04.0487 5440 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
19:50:04.0503 5440 HidUsb - ok
19:50:04.0550 5440 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
19:50:04.0550 5440 HpSAMD - ok
19:50:04.0596 5440 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
19:50:04.0643 5440 HTTP - ok
19:50:04.0690 5440 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
19:50:04.0706 5440 hwpolicy - ok
19:50:04.0737 5440 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys
19:50:04.0752 5440 i8042prt - ok
19:50:04.0799 5440 iaStor (a5f72bb0d024e7e463344105be613ae4) C:\Windows\system32\DRIVERS\iaStor.sys
19:50:04.0815 5440 iaStor - ok
19:50:04.0971 5440 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
19:50:04.0986 5440 iaStorV - ok
19:50:05.0189 5440 igfx (a87261ef1546325b559374f5689cf5bc) C:\Windows\system32\DRIVERS\igdkmd64.sys
19:50:05.0376 5440 igfx - ok
19:50:05.0501 5440 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
19:50:05.0532 5440 iirsp - ok
19:50:05.0595 5440 Impcd (dd587a55390ed2295bce6d36ad567da9) C:\Windows\system32\DRIVERS\Impcd.sys
19:50:05.0626 5440 Impcd - ok
19:50:05.0813 5440 IntcAzAudAddService (5f35fe198ee7818221414776f8413ab0) C:\Windows\system32\drivers\RTKVHD64.sys
19:50:05.0891 5440 IntcAzAudAddService - ok
19:50:06.0016 5440 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
19:50:06.0032 5440 intelide - ok
19:50:06.0094 5440 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
19:50:06.0110 5440 intelppm - ok
19:50:06.0250 5440 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:50:06.0297 5440 IpFilterDriver - ok
19:50:06.0453 5440 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
19:50:06.0484 5440 IPMIDRV - ok
19:50:06.0593 5440 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
19:50:06.0640 5440 IPNAT - ok
19:50:06.0780 5440 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
19:50:06.0827 5440 IRENUM - ok
19:50:06.0952 5440 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
19:50:06.0968 5440 isapnp - ok
19:50:07.0030 5440 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
19:50:07.0061 5440 iScsiPrt - ok
19:50:07.0108 5440 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
19:50:07.0139 5440 kbdclass - ok
19:50:07.0155 5440 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys
19:50:07.0170 5440 kbdhid - ok
19:50:07.0217 5440 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
19:50:07.0233 5440 KSecDD - ok
19:50:07.0248 5440 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
19:50:07.0264 5440 KSecPkg - ok
19:50:07.0295 5440 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
19:50:07.0342 5440 ksthunk - ok
19:50:07.0373 5440 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
19:50:07.0404 5440 lltdio - ok
19:50:07.0436 5440 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
19:50:07.0451 5440 LSI_FC - ok
19:50:07.0467 5440 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
19:50:07.0482 5440 LSI_SAS - ok
19:50:07.0498 5440 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
19:50:07.0514 5440 LSI_SAS2 - ok
19:50:07.0529 5440 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
19:50:07.0545 5440 LSI_SCSI - ok
19:50:07.0560 5440 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
19:50:07.0607 5440 luafv - ok
19:50:07.0638 5440 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
19:50:07.0654 5440 megasas - ok
19:50:07.0670 5440 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
19:50:07.0701 5440 MegaSR - ok
19:50:07.0716 5440 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
19:50:07.0763 5440 Modem - ok
19:50:07.0794 5440 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
19:50:07.0810 5440 monitor - ok
19:50:07.0841 5440 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
19:50:07.0857 5440 mouclass - ok
19:50:07.0888 5440 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
19:50:07.0904 5440 mouhid - ok
19:50:07.0950 5440 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
19:50:07.0950 5440 mountmgr - ok
19:50:07.0997 5440 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
19:50:08.0013 5440 mpio - ok
19:50:08.0044 5440 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
19:50:08.0091 5440 mpsdrv - ok
19:50:08.0138 5440 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
19:50:08.0184 5440 MRxDAV - ok
19:50:08.0356 5440 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
19:50:08.0372 5440 mrxsmb - ok
19:50:08.0543 5440 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:50:08.0559 5440 mrxsmb10 - ok
19:50:08.0699 5440 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:50:08.0715 5440 mrxsmb20 - ok
19:50:08.0886 5440 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
19:50:08.0902 5440 msahci - ok
19:50:09.0089 5440 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
19:50:09.0089 5440 msdsm - ok
19:50:09.0276 5440 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
19:50:09.0323 5440 Msfs - ok
19:50:09.0510 5440 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
19:50:09.0542 5440 mshidkmdf - ok
19:50:09.0713 5440 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
19:50:09.0729 5440 msisadrv - ok
19:50:09.0916 5440 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
19:50:09.0947 5440 MSKSSRV - ok
19:50:10.0134 5440 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
19:50:10.0166 5440 MSPCLOCK - ok
19:50:10.0353 5440 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
19:50:10.0384 5440 MSPQM - ok
19:50:10.0571 5440 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
19:50:10.0587 5440 MsRPC - ok
19:50:10.0774 5440 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
19:50:10.0790 5440 mssmbios - ok
19:50:10.0977 5440 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
19:50:11.0008 5440 MSTEE - ok
19:50:11.0180 5440 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
19:50:11.0211 5440 MTConfig - ok
19:50:11.0367 5440 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
19:50:11.0382 5440 Mup - ok
19:50:11.0554 5440 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
19:50:11.0585 5440 NativeWifiP - ok
19:50:11.0772 5440 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
19:50:11.0835 5440 NDIS - ok
19:50:11.0991 5440 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
19:50:12.0053 5440 NdisCap - ok
19:50:12.0225 5440 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
19:50:12.0272 5440 NdisTapi - ok
19:50:12.0459 5440 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
19:50:12.0506 5440 Ndisuio - ok
19:50:12.0599 5440 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
19:50:12.0662 5440 NdisWan - ok
19:50:12.0849 5440 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
19:50:12.0911 5440 NDProxy - ok
19:50:13.0067 5440 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
19:50:13.0114 5440 NetBIOS - ok
19:50:13.0301 5440 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
19:50:13.0364 5440 NetBT - ok
19:50:13.0566 5440 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
19:50:13.0582 5440 nfrd960 - ok
19:50:13.0800 5440 nmwcd (907b5e1e4a592e5edc5e4ccbde4863c2) C:\Windows\system32\drivers\ccdcmbx64.sys
19:50:13.0863 5440 nmwcd - ok
19:50:14.0081 5440 nmwcdc (41c1ac1f3613435eb32d67bcb80a5fa5) C:\Windows\system32\drivers\ccdcmbox64.sys
19:50:14.0112 5440 nmwcdc - ok
19:50:14.0284 5440 nmwcdnsucx64 (a962be6433ef016e0dfb52eca15a5378) C:\Windows\system32\drivers\nmwcdnsucx64.sys
19:50:14.0331 5440 nmwcdnsucx64 - ok
19:50:14.0518 5440 nmwcdnsux64 (9573223e205907247ae6d948e3453770) C:\Windows\system32\drivers\nmwcdnsux64.sys
19:50:14.0534 5440 nmwcdnsux64 - ok
19:50:14.0690 5440 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
19:50:14.0736 5440 Npfs - ok
19:50:14.0908 5440 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
19:50:14.0955 5440 nsiproxy - ok
19:50:15.0142 5440 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
19:50:15.0204 5440 Ntfs - ok
19:50:15.0376 5440 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
19:50:15.0423 5440 Null - ok
19:50:15.0610 5440 nusb3hub (285acec1b13a15ba520aae06bacb9cff) C:\Windows\system32\DRIVERS\nusb3hub.sys
19:50:15.0626 5440 nusb3hub - ok
19:50:15.0797 5440 nusb3xhc (f6d625ff7b56bb6ea063f0d3a5bbc996) C:\Windows\system32\DRIVERS\nusb3xhc.sys
19:50:15.0813 5440 nusb3xhc - ok
19:50:15.0984 5440 NVHDA (8d4aac74b571fc356560e5b308955e93) C:\Windows\system32\drivers\nvhda64v.sys
19:50:16.0016 5440 NVHDA - ok
19:50:16.0421 5440 nvlddmkm (0eb204639119370f5f8f2871fbf4e14b) C:\Windows\system32\DRIVERS\nvlddmkm.sys
19:50:16.0827 5440 nvlddmkm - ok
19:50:16.0998 5440 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
19:50:17.0030 5440 nvraid - ok
19:50:17.0186 5440 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
19:50:17.0217 5440 nvstor - ok
19:50:17.0451 5440 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
19:50:17.0482 5440 nv_agp - ok
19:50:17.0654 5440 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
19:50:17.0685 5440 ohci1394 - ok
19:50:17.0872 5440 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
19:50:17.0903 5440 Parport - ok
19:50:18.0075 5440 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys
19:50:18.0090 5440 partmgr - ok
19:50:18.0293 5440 pccsmcfd (bc0018c2d29f655188a0ed3fa94fdb24) C:\Windows\system32\DRIVERS\pccsmcfdx64.sys
19:50:18.0324 5440 pccsmcfd - ok
19:50:18.0496 5440 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
19:50:18.0527 5440 pci - ok
19:50:18.0699 5440 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
19:50:18.0714 5440 pciide - ok
19:50:18.0917 5440 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
19:50:18.0948 5440 pcmcia - ok
19:50:19.0120 5440 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
19:50:19.0151 5440 pcw - ok
19:50:19.0354 5440 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
19:50:19.0416 5440 PEAUTH - ok
19:50:19.0635 5440 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
19:50:19.0682 5440 PptpMiniport - ok
19:50:19.0869 5440 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
19:50:19.0884 5440 Processor - ok
19:50:20.0056 5440 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
19:50:20.0103 5440 Psched - ok
19:50:20.0306 5440 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
19:50:20.0352 5440 ql2300 - ok
19:50:20.0508 5440 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
19:50:20.0524 5440 ql40xx - ok
19:50:20.0680 5440 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
19:50:20.0711 5440 QWAVEdrv - ok
19:50:20.0867 5440 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
19:50:20.0914 5440 RasAcd - ok
19:50:21.0086 5440 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
19:50:21.0132 5440 RasAgileVpn - ok
19:50:21.0304 5440 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
19:50:21.0351 5440 Rasl2tp - ok
19:50:21.0522 5440 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
19:50:21.0585 5440 RasPppoe - ok
19:50:21.0756 5440 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
19:50:21.0819 5440 RasSstp - ok
19:50:22.0006 5440 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
19:50:22.0053 5440 rdbss - ok
19:50:22.0240 5440 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
19:50:22.0271 5440 rdpbus - ok
19:50:22.0443 5440 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
19:50:22.0474 5440 RDPCDD - ok
19:50:22.0661 5440 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
19:50:22.0708 5440 RDPENCDD - ok
19:50:22.0864 5440 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
19:50:22.0911 5440 RDPREFMP - ok
19:50:23.0067 5440 RDPWD (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys
19:50:23.0098 5440 RDPWD - ok
19:50:23.0270 5440 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
19:50:23.0285 5440 rdyboost - ok
19:50:23.0519 5440 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys
19:50:23.0550 5440 RFCOMM - ok
19:50:23.0816 5440 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
19:50:23.0862 5440 rspndr - ok
19:50:24.0081 5440 RTL8167 (baefee35d27a5440d35092ce10267bec) C:\Windows\system32\DRIVERS\Rt64win7.sys
19:50:24.0112 5440 RTL8167 - ok
19:50:24.0237 5440 rtport (4ca0dba9e224473d664c25e411f5a3bd) C:\Windows\SysWOW64\drivers\rtport.sys
19:50:24.0252 5440 rtport - ok
19:50:24.0393 5440 SABI (62db6cc4b0818f1b5f3441241b098f12) C:\Windows\system32\Drivers\SABI.sys
19:50:24.0424 5440 SABI - ok
19:50:24.0611 5440 SaiK0CCC (b045b742ee2f8846861c0402cf3add54) C:\Windows\system32\DRIVERS\SaiK0CCC.sys
19:50:24.0627 5440 SaiK0CCC - ok
19:50:24.0830 5440 SaiMini (356dc2b0f2b413c6ad2c191ecf2734be) C:\Windows\system32\DRIVERS\SaiMini.sys
19:50:24.0845 5440 SaiMini - ok
19:50:25.0032 5440 SaiNtBus (e47b4067f2c489fbe4c2ae29ef96054e) C:\Windows\system32\drivers\SaiBus.sys
19:50:25.0032 5440 SaiNtBus - ok
19:50:25.0235 5440 SaiU0CCC (fac10e113aac54dd3905a3f6b633d5d9) C:\Windows\system32\DRIVERS\SaiU0CCC.sys
19:50:25.0235 5440 SaiU0CCC - ok
19:50:25.0422 5440 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
19:50:25.0422 5440 sbp2port - ok
19:50:25.0610 5440 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
19:50:25.0656 5440 scfilter - ok
19:50:25.0828 5440 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
19:50:25.0890 5440 secdrv - ok
19:50:26.0062 5440 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
19:50:26.0093 5440 Serenum - ok
19:50:26.0265 5440 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
19:50:26.0296 5440 Serial - ok
19:50:26.0452 5440 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
19:50:26.0483 5440 sermouse - ok
19:50:26.0686 5440 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
19:50:26.0717 5440 sffdisk - ok
19:50:26.0889 5440 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
19:50:26.0904 5440 sffp_mmc - ok
19:50:27.0060 5440 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
19:50:27.0107 5440 sffp_sd - ok
19:50:27.0294 5440 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
19:50:27.0310 5440 sfloppy - ok
19:50:27.0513 5440 Sftfs (c6cc9297bd53e5229653303e556aa539) C:\Windows\system32\DRIVERS\Sftfslh.sys
19:50:27.0560 5440 Sftfs - ok
19:50:27.0747 5440 Sftplay (390aa7bc52cee43f6790cdea1e776703) C:\Windows\system32\DRIVERS\Sftplaylh.sys
19:50:27.0762 5440 Sftplay - ok
19:50:27.0934 5440 Sftredir (617e29a0b0a2807466560d4c4e338d3e) C:\Windows\system32\DRIVERS\Sftredirlh.sys
19:50:27.0950 5440 Sftredir - ok
19:50:28.0137 5440 Sftvol (8f571f016fa1976f445147e9e6c8ae9b) C:\Windows\system32\DRIVERS\Sftvollh.sys
19:50:28.0137 5440 Sftvol - ok
19:50:28.0340 5440 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
19:50:28.0355 5440 SiSRaid2 - ok
19:50:28.0542 5440 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
19:50:28.0558 5440 SiSRaid4 - ok
19:50:28.0730 5440 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
19:50:28.0776 5440 Smb - ok
19:50:28.0979 5440 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
19:50:28.0995 5440 spldr - ok
19:50:29.0229 5440 sptd (602884696850c86434530790b110e8eb) C:\Windows\system32\Drivers\sptd.sys
19:50:29.0229 5440 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: 602884696850c86434530790b110e8eb
19:50:29.0260 5440 sptd ( LockedFile.Multi.Generic ) - warning
19:50:29.0260 5440 sptd - detected LockedFile.Multi.Generic (1)
19:50:29.0432 5440 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
19:50:29.0463 5440 srv - ok
19:50:29.0619 5440 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
19:50:29.0634 5440 srv2 - ok
19:50:29.0806 5440 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
19:50:29.0822 5440 srvnet - ok
19:50:29.0978 5440 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
19:50:30.0009 5440 stexstor - ok
19:50:30.0165 5440 StillCam (decacb6921ded1a38642642685d77dac) C:\Windows\system32\DRIVERS\serscan.sys
19:50:30.0180 5440 StillCam - ok
19:50:30.0336 5440 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
19:50:30.0352 5440 swenum - ok
19:50:30.0586 5440 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys
19:50:30.0664 5440 Tcpip - ok
19:50:30.0851 5440 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys
19:50:30.0882 5440 TCPIP6 - ok
19:50:31.0038 5440 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
19:50:31.0101 5440 tcpipreg - ok
19:50:31.0257 5440 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
19:50:31.0272 5440 TDPIPE - ok
19:50:31.0413 5440 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
19:50:31.0428 5440 TDTCP - ok
19:50:31.0584 5440 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
19:50:31.0631 5440 tdx - ok
19:50:31.0803 5440 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
19:50:31.0818 5440 TermDD - ok
19:50:32.0006 5440 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
19:50:32.0068 5440 tssecsrv - ok
19:50:32.0224 5440 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
19:50:32.0271 5440 TsUsbFlt - ok
19:50:32.0427 5440 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
19:50:32.0489 5440 tunnel - ok
19:50:32.0661 5440 TurboB (825e7a1f48fb8bcfba27c178aab4e275) C:\Windows\system32\DRIVERS\TurboB.sys
19:50:32.0676 5440 TurboB - ok
19:50:32.0848 5440 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
19:50:32.0879 5440 uagp35 - ok
19:50:33.0035 5440 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
19:50:33.0082 5440 udfs - ok
19:50:33.0269 5440 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
19:50:33.0285 5440 uliagpkx - ok
19:50:33.0503 5440 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys
19:50:33.0534 5440 umbus - ok
19:50:33.0690 5440 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
19:50:33.0706 5440 UmPass - ok
19:50:33.0924 5440 upperdev (4e93c8496359e97830c75ac36393654d) C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys
19:50:33.0971 5440 upperdev - ok
19:50:34.0143 5440 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
19:50:34.0174 5440 usbccgp - ok
19:50:34.0346 5440 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
19:50:34.0377 5440 usbcir - ok
19:50:34.0548 5440 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys
19:50:34.0564 5440 usbehci - ok
19:50:34.0751 5440 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
19:50:34.0767 5440 usbhub - ok
19:50:34.0938 5440 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
19:50:34.0970 5440 usbohci - ok
19:50:35.0141 5440 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
19:50:35.0172 5440 usbprint - ok
19:50:35.0344 5440 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys
19:50:35.0375 5440 usbscan - ok
19:50:35.0547 5440 usbser (4acee387fa8fd39f83564fcd2fc234f2) C:\Windows\system32\drivers\usbser.sys
19:50:35.0578 5440 usbser - ok
19:50:35.0765 5440 UsbserFilt (8844cb19a37b65e27049d4a7786726a9) C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys
19:50:35.0796 5440 UsbserFilt - ok
19:50:35.0984 5440 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:50:35.0999 5440 USBSTOR - ok
19:50:36.0171 5440 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys
19:50:36.0186 5440 usbuhci - ok
19:50:36.0358 5440 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\System32\Drivers\usbvideo.sys
19:50:36.0389 5440 usbvideo - ok
19:50:36.0576 5440 usb_rndisx (70d05ee263568a742d14e1876df80532) C:\Windows\system32\DRIVERS\usb8023x.sys
19:50:36.0592 5440 usb_rndisx - ok
19:50:36.0779 5440 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
19:50:36.0795 5440 vdrvroot - ok
19:50:36.0966 5440 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
19:50:36.0982 5440 vga - ok
19:50:37.0154 5440 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
19:50:37.0200 5440 VgaSave - ok
19:50:37.0356 5440 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
19:50:37.0372 5440 vhdmp - ok
19:50:37.0544 5440 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
19:50:37.0559 5440 viaide - ok
19:50:37.0731 5440 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
19:50:37.0746 5440 volmgr - ok
19:50:37.0934 5440 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
19:50:37.0949 5440 volmgrx - ok
19:50:38.0136 5440 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
19:50:38.0168 5440 volsnap - ok
19:50:38.0324 5440 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
19:50:38.0339 5440 vsmraid - ok
19:50:38.0495 5440 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys
19:50:38.0526 5440 vwifibus - ok
19:50:38.0698 5440 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
19:50:38.0714 5440 vwififlt - ok
19:50:38.0901 5440 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys
19:50:38.0932 5440 vwifimp - ok
19:50:39.0135 5440 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
19:50:39.0166 5440 WacomPen - ok
19:50:39.0322 5440 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
19:50:39.0369 5440 WANARP - ok
19:50:39.0384 5440 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
19:50:39.0416 5440 Wanarpv6 - ok
19:50:39.0587 5440 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
19:50:39.0587 5440 Wd - ok
19:50:39.0759 5440 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
19:50:39.0790 5440 Wdf01000 - ok
19:50:39.0977 5440 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
19:50:40.0024 5440 WfpLwf - ok
19:50:40.0180 5440 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
19:50:40.0196 5440 WIMMount - ok
19:50:40.0430 5440 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
19:50:40.0445 5440 WinUsb - ok
19:50:40.0648 5440 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
19:50:40.0664 5440 WmiAcpi - ok
19:50:40.0866 5440 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
19:50:40.0929 5440 ws2ifsl - ok
19:50:41.0116 5440 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
19:50:41.0163 5440 WudfPf - ok
19:50:41.0319 5440 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
19:50:41.0381 5440 WUDFRd - ok
19:50:41.0584 5440 yukonw7 (4647fda6e21b18824d6073801177f4f7) C:\Windows\system32\DRIVERS\yk62x64.sys
19:50:41.0615 5440 yukonw7 - ok
19:50:41.0646 5440 MBR (0x1B8) (2e5debb2116b3417023e0d6562d7ed07) \Device\Harddisk0\DR0
19:50:42.0052 5440 \Device\Harddisk0\DR0 - ok
19:50:42.0068 5440 MBR (0x1B8) (41bce52c92136450114184c16d08d58a) \Device\Harddisk1\DR1
19:50:42.0255 5440 \Device\Harddisk1\DR1 - ok
19:50:42.0255 5440 Boot (0x1200) (6f9d4a89fc3fd24a0a1135712adaa057) \Device\Harddisk0\DR0\Partition0
19:50:42.0255 5440 \Device\Harddisk0\DR0\Partition0 - ok
19:50:42.0286 5440 Boot (0x1200) (85bb010f55092689f40dcaceaba33e54) \Device\Harddisk0\DR0\Partition1
19:50:42.0286 5440 \Device\Harddisk0\DR0\Partition1 - ok
19:50:42.0317 5440 Boot (0x1200) (30843a274be9011afbcc1965bcc08fdc) \Device\Harddisk0\DR0\Partition2
19:50:42.0317 5440 \Device\Harddisk0\DR0\Partition2 - ok
19:50:42.0317 5440 ============================================================
19:50:42.0317 5440 Scan finished
19:50:42.0317 5440 ============================================================
19:50:42.0333 5432 Detected object count: 1
19:50:42.0333 5432 Actual detected object count: 1
19:52:01.0617 5432 sptd ( LockedFile.Multi.Generic ) - skipped by user
19:52:01.0617 5432 sptd ( LockedFile.Multi.Generic ) - User select action: Skip
No nic zde je log:
19:49:24.0894 5252 TDSS rootkit removing tool 2.7.21.0 Mar 21 2012 09:06:51
19:49:25.0128 5252 ============================================================
19:49:25.0128 5252 Current date / time: 2012/03/21 19:49:25.0128
19:49:25.0128 5252 SystemInfo:
19:49:25.0128 5252
19:49:25.0128 5252 OS Version: 6.1.7601 ServicePack: 1.0
19:49:25.0128 5252 Product type: Workstation
19:49:25.0128 5252 ComputerName: ADMIN-PC
19:49:25.0128 5252 UserName: admin
19:49:25.0128 5252 Windows directory: C:\Windows
19:49:25.0128 5252 System windows directory: C:\Windows
19:49:25.0128 5252 Running under WOW64
19:49:25.0128 5252 Processor architecture: Intel x64
19:49:25.0128 5252 Number of processors: 4
19:49:25.0128 5252 Page size: 0x1000
19:49:25.0128 5252 Boot type: Normal boot
19:49:25.0128 5252 ============================================================
19:49:25.0643 5252 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:49:25.0643 5252 Drive \Device\Harddisk1\DR1 - Size: 0x1DB000000 (7.42 Gb), SectorSize: 0x200, Cylinders: 0x3C8, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
19:49:25.0643 5252 \Device\Harddisk0\DR0:
19:49:25.0643 5252 MBR used
19:49:25.0643 5252 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
19:49:25.0643 5252 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x16600000
19:49:25.0674 5252 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x16633000, BlocksNum 0x21746000
19:49:25.0674 5252 \Device\Harddisk1\DR1:
19:49:25.0674 5252 MBR used
19:49:25.0737 5252 Initialize success
19:49:25.0737 5252 ============================================================
19:49:52.0304 5440 ============================================================
19:49:52.0304 5440 Scan started
19:49:52.0304 5440 Mode: Manual; SigCheck; TDLFS;
19:49:52.0304 5440 ============================================================
19:49:53.0130 5440 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
19:49:53.0380 5440 1394ohci - ok
19:49:53.0505 5440 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
19:49:53.0520 5440 ACPI - ok
19:49:53.0630 5440 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
19:49:53.0692 5440 AcpiPmi - ok
19:49:53.0832 5440 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
19:49:53.0848 5440 adp94xx - ok
19:49:53.0957 5440 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
19:49:53.0973 5440 adpahci - ok
19:49:54.0082 5440 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
19:49:54.0098 5440 adpu320 - ok
19:49:54.0238 5440 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
19:49:54.0332 5440 AFD - ok
19:49:54.0503 5440 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
19:49:54.0519 5440 agp440 - ok
19:49:54.0612 5440 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
19:49:54.0628 5440 aliide - ok
19:49:54.0737 5440 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
19:49:54.0737 5440 amdide - ok
19:49:54.0846 5440 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
19:49:54.0862 5440 AmdK8 - ok
19:49:54.0971 5440 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
19:49:54.0971 5440 AmdPPM - ok
19:49:55.0080 5440 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
19:49:55.0080 5440 amdsata - ok
19:49:55.0205 5440 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
19:49:55.0221 5440 amdsbs - ok
19:49:55.0314 5440 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
19:49:55.0330 5440 amdxata - ok
19:49:55.0439 5440 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
19:49:55.0626 5440 AppID - ok
19:49:55.0782 5440 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
19:49:55.0798 5440 arc - ok
19:49:56.0016 5440 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
19:49:56.0032 5440 arcsas - ok
19:49:56.0157 5440 aswFsBlk (b9da213b5271db5fce962d827e6d620d) C:\Windows\system32\drivers\aswFsBlk.sys
19:49:56.0219 5440 aswFsBlk - ok
19:49:56.0360 5440 aswMonFlt (21c9835d0e5ad2ff0f16134bcb32cc71) C:\Windows\system32\drivers\aswMonFlt.sys
19:49:56.0375 5440 aswMonFlt - ok
19:49:56.0516 5440 aswRdr (1b96a5867abd4fa6135d8298fcccf9c6) C:\Windows\System32\Drivers\aswrdr2.sys
19:49:56.0531 5440 aswRdr - ok
19:49:56.0750 5440 aswSnx (6e98bb288696777a3a8a07a52b0eaee9) C:\Windows\system32\drivers\aswSnx.sys
19:49:56.0796 5440 aswSnx - ok
19:49:56.0937 5440 aswSP (d9fb49f16e4eb02efecae8cbfe4bcb4c) C:\Windows\system32\drivers\aswSP.sys
19:49:56.0952 5440 aswSP - ok
19:49:57.0077 5440 aswTdi (7352bb9a564b94bbd7c9cbf165f55006) C:\Windows\system32\drivers\aswTdi.sys
19:49:57.0108 5440 aswTdi - ok
19:49:57.0218 5440 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
19:49:57.0358 5440 AsyncMac - ok
19:49:57.0483 5440 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
19:49:57.0514 5440 atapi - ok
19:49:57.0701 5440 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
19:49:57.0764 5440 b06bdrv - ok
19:49:57.0888 5440 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
19:49:57.0904 5440 b57nd60a - ok
19:49:58.0138 5440 BCM43XX (43ad3d3e7674833fca9a7c4e7180ad54) C:\Windows\system32\DRIVERS\bcmwl664.sys
19:49:58.0341 5440 BCM43XX - ok
19:49:58.0497 5440 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
19:49:58.0528 5440 Beep - ok
19:49:58.0590 5440 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
19:49:58.0606 5440 blbdrive - ok
19:49:58.0668 5440 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
19:49:58.0700 5440 bowser - ok
19:49:58.0762 5440 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
19:49:58.0809 5440 BrFiltLo - ok
19:49:58.0918 5440 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
19:49:58.0934 5440 BrFiltUp - ok
19:49:59.0105 5440 BridgeMP (5c2f352a4e961d72518261257aae204b) C:\Windows\system32\DRIVERS\bridge.sys
19:49:59.0168 5440 BridgeMP - ok
19:49:59.0246 5440 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
19:49:59.0308 5440 Brserid - ok
19:49:59.0386 5440 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
19:49:59.0402 5440 BrSerWdm - ok
19:49:59.0448 5440 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
19:49:59.0464 5440 BrUsbMdm - ok
19:49:59.0511 5440 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
19:49:59.0526 5440 BrUsbSer - ok
19:49:59.0573 5440 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\drivers\BthEnum.sys
19:49:59.0636 5440 BthEnum - ok
19:49:59.0776 5440 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
19:49:59.0792 5440 BTHMODEM - ok
19:49:59.0870 5440 BthMtpEnum (bdad7ca91f370e588ecc8c67b694300c) C:\Windows\system32\DRIVERS\BthMtpEnum.sys
19:49:59.0885 5440 BthMtpEnum - ok
19:49:59.0963 5440 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys
19:49:59.0994 5440 BthPan - ok
19:50:00.0072 5440 BTHPORT (64c198198501f7560ee41d8d1efa7952) C:\Windows\System32\Drivers\BTHport.sys
19:50:00.0104 5440 BTHPORT - ok
19:50:00.0150 5440 BTHUSB (f188b7394d81010767b6df3178519a37) C:\Windows\System32\Drivers\BTHUSB.sys
19:50:00.0166 5440 BTHUSB - ok
19:50:00.0213 5440 btwampfl (7a2ce8c1bf4daa1f2766e21e9ca11078) C:\Windows\system32\drivers\btwampfl.sys
19:50:00.0244 5440 btwampfl - ok
19:50:00.0244 5440 btwaudio - ok
19:50:00.0275 5440 btwavdt - ok
19:50:00.0275 5440 btwl2cap - ok
19:50:00.0291 5440 btwrchid - ok
19:50:00.0322 5440 BTWUSB (0bc5ce14eca297801b73115a57096811) C:\Windows\system32\Drivers\btwusb.sys
19:50:00.0338 5440 BTWUSB - ok
19:50:00.0369 5440 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
19:50:00.0416 5440 cdfs - ok
19:50:00.0525 5440 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
19:50:00.0556 5440 cdrom - ok
19:50:00.0603 5440 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
19:50:00.0618 5440 circlass - ok
19:50:00.0665 5440 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
19:50:00.0681 5440 CLFS - ok
19:50:00.0743 5440 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
19:50:00.0774 5440 CmBatt - ok
19:50:00.0806 5440 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
19:50:00.0821 5440 cmdide - ok
19:50:00.0868 5440 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
19:50:00.0899 5440 CNG - ok
19:50:00.0930 5440 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
19:50:00.0930 5440 Compbatt - ok
19:50:00.0962 5440 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
19:50:00.0977 5440 CompositeBus - ok
19:50:01.0071 5440 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
19:50:01.0086 5440 crcdisk - ok
19:50:01.0196 5440 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
19:50:01.0242 5440 DfsC - ok
19:50:01.0305 5440 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
19:50:01.0367 5440 discache - ok
19:50:01.0430 5440 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
19:50:01.0445 5440 Disk - ok
19:50:01.0539 5440 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
19:50:01.0554 5440 drmkaud - ok
19:50:01.0695 5440 DrvAgent64 (1ed08a6264c5c92099d6d1dae5e8f530) C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS
19:50:01.0710 5440 DrvAgent64 - ok
19:50:01.0820 5440 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
19:50:01.0866 5440 DXGKrnl - ok
19:50:02.0007 5440 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
19:50:02.0132 5440 ebdrv - ok
19:50:02.0319 5440 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
19:50:02.0366 5440 elxstor - ok
19:50:02.0428 5440 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
19:50:02.0444 5440 ErrDev - ok
19:50:02.0584 5440 ETD (3bb2c05d9a515601e85dbf353369e672) C:\Windows\system32\DRIVERS\ETD.sys
19:50:02.0600 5440 ETD - ok
19:50:02.0678 5440 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
19:50:02.0724 5440 exfat - ok
19:50:02.0787 5440 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
19:50:02.0849 5440 fastfat - ok
19:50:02.0927 5440 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
19:50:02.0943 5440 fdc - ok
19:50:03.0005 5440 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
19:50:03.0036 5440 FileInfo - ok
19:50:03.0114 5440 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
19:50:03.0161 5440 Filetrace - ok
19:50:03.0224 5440 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
19:50:03.0255 5440 flpydisk - ok
19:50:03.0333 5440 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
19:50:03.0348 5440 FltMgr - ok
19:50:03.0411 5440 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
19:50:03.0426 5440 FsDepends - ok
19:50:03.0458 5440 fssfltr (2bf3b36b96d015af666b6aa63ae2e38f) C:\Windows\system32\DRIVERS\fssfltr.sys
19:50:03.0473 5440 fssfltr - ok
19:50:03.0504 5440 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
19:50:03.0520 5440 Fs_Rec - ok
19:50:03.0567 5440 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
19:50:03.0582 5440 fvevol - ok
19:50:03.0614 5440 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
19:50:03.0614 5440 gagp30kx - ok
19:50:03.0676 5440 ggflt (a4198f2bd8aa592cb90476277a81b5e1) C:\Windows\system32\DRIVERS\ggflt.sys
19:50:03.0692 5440 ggflt - ok
19:50:03.0754 5440 ggsemc (d266350bdaab9eb6c1aec370eeaaff3a) C:\Windows\system32\DRIVERS\ggsemc.sys
19:50:03.0754 5440 ggsemc - ok
19:50:03.0801 5440 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
19:50:03.0832 5440 hcw85cir - ok
19:50:03.0941 5440 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
19:50:03.0972 5440 HdAudAddService - ok
19:50:04.0004 5440 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
19:50:04.0035 5440 HDAudBus - ok
19:50:04.0097 5440 HECIx64 (b6ac71aaa2b10848f57fc49d55a651af) C:\Windows\system32\DRIVERS\HECIx64.sys
19:50:04.0113 5440 HECIx64 - ok
19:50:04.0191 5440 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
19:50:04.0206 5440 HidBatt - ok
19:50:04.0331 5440 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
19:50:04.0347 5440 HidBth - ok
19:50:04.0425 5440 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
19:50:04.0440 5440 HidIr - ok
19:50:04.0487 5440 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
19:50:04.0503 5440 HidUsb - ok
19:50:04.0550 5440 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
19:50:04.0550 5440 HpSAMD - ok
19:50:04.0596 5440 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
19:50:04.0643 5440 HTTP - ok
19:50:04.0690 5440 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
19:50:04.0706 5440 hwpolicy - ok
19:50:04.0737 5440 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys
19:50:04.0752 5440 i8042prt - ok
19:50:04.0799 5440 iaStor (a5f72bb0d024e7e463344105be613ae4) C:\Windows\system32\DRIVERS\iaStor.sys
19:50:04.0815 5440 iaStor - ok
19:50:04.0971 5440 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
19:50:04.0986 5440 iaStorV - ok
19:50:05.0189 5440 igfx (a87261ef1546325b559374f5689cf5bc) C:\Windows\system32\DRIVERS\igdkmd64.sys
19:50:05.0376 5440 igfx - ok
19:50:05.0501 5440 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
19:50:05.0532 5440 iirsp - ok
19:50:05.0595 5440 Impcd (dd587a55390ed2295bce6d36ad567da9) C:\Windows\system32\DRIVERS\Impcd.sys
19:50:05.0626 5440 Impcd - ok
19:50:05.0813 5440 IntcAzAudAddService (5f35fe198ee7818221414776f8413ab0) C:\Windows\system32\drivers\RTKVHD64.sys
19:50:05.0891 5440 IntcAzAudAddService - ok
19:50:06.0016 5440 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
19:50:06.0032 5440 intelide - ok
19:50:06.0094 5440 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
19:50:06.0110 5440 intelppm - ok
19:50:06.0250 5440 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:50:06.0297 5440 IpFilterDriver - ok
19:50:06.0453 5440 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
19:50:06.0484 5440 IPMIDRV - ok
19:50:06.0593 5440 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
19:50:06.0640 5440 IPNAT - ok
19:50:06.0780 5440 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
19:50:06.0827 5440 IRENUM - ok
19:50:06.0952 5440 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
19:50:06.0968 5440 isapnp - ok
19:50:07.0030 5440 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
19:50:07.0061 5440 iScsiPrt - ok
19:50:07.0108 5440 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
19:50:07.0139 5440 kbdclass - ok
19:50:07.0155 5440 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys
19:50:07.0170 5440 kbdhid - ok
19:50:07.0217 5440 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
19:50:07.0233 5440 KSecDD - ok
19:50:07.0248 5440 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
19:50:07.0264 5440 KSecPkg - ok
19:50:07.0295 5440 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
19:50:07.0342 5440 ksthunk - ok
19:50:07.0373 5440 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
19:50:07.0404 5440 lltdio - ok
19:50:07.0436 5440 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
19:50:07.0451 5440 LSI_FC - ok
19:50:07.0467 5440 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
19:50:07.0482 5440 LSI_SAS - ok
19:50:07.0498 5440 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
19:50:07.0514 5440 LSI_SAS2 - ok
19:50:07.0529 5440 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
19:50:07.0545 5440 LSI_SCSI - ok
19:50:07.0560 5440 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
19:50:07.0607 5440 luafv - ok
19:50:07.0638 5440 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
19:50:07.0654 5440 megasas - ok
19:50:07.0670 5440 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
19:50:07.0701 5440 MegaSR - ok
19:50:07.0716 5440 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
19:50:07.0763 5440 Modem - ok
19:50:07.0794 5440 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
19:50:07.0810 5440 monitor - ok
19:50:07.0841 5440 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
19:50:07.0857 5440 mouclass - ok
19:50:07.0888 5440 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
19:50:07.0904 5440 mouhid - ok
19:50:07.0950 5440 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
19:50:07.0950 5440 mountmgr - ok
19:50:07.0997 5440 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
19:50:08.0013 5440 mpio - ok
19:50:08.0044 5440 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
19:50:08.0091 5440 mpsdrv - ok
19:50:08.0138 5440 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
19:50:08.0184 5440 MRxDAV - ok
19:50:08.0356 5440 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
19:50:08.0372 5440 mrxsmb - ok
19:50:08.0543 5440 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:50:08.0559 5440 mrxsmb10 - ok
19:50:08.0699 5440 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:50:08.0715 5440 mrxsmb20 - ok
19:50:08.0886 5440 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
19:50:08.0902 5440 msahci - ok
19:50:09.0089 5440 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
19:50:09.0089 5440 msdsm - ok
19:50:09.0276 5440 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
19:50:09.0323 5440 Msfs - ok
19:50:09.0510 5440 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
19:50:09.0542 5440 mshidkmdf - ok
19:50:09.0713 5440 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
19:50:09.0729 5440 msisadrv - ok
19:50:09.0916 5440 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
19:50:09.0947 5440 MSKSSRV - ok
19:50:10.0134 5440 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
19:50:10.0166 5440 MSPCLOCK - ok
19:50:10.0353 5440 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
19:50:10.0384 5440 MSPQM - ok
19:50:10.0571 5440 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
19:50:10.0587 5440 MsRPC - ok
19:50:10.0774 5440 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
19:50:10.0790 5440 mssmbios - ok
19:50:10.0977 5440 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
19:50:11.0008 5440 MSTEE - ok
19:50:11.0180 5440 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
19:50:11.0211 5440 MTConfig - ok
19:50:11.0367 5440 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
19:50:11.0382 5440 Mup - ok
19:50:11.0554 5440 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
19:50:11.0585 5440 NativeWifiP - ok
19:50:11.0772 5440 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
19:50:11.0835 5440 NDIS - ok
19:50:11.0991 5440 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
19:50:12.0053 5440 NdisCap - ok
19:50:12.0225 5440 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
19:50:12.0272 5440 NdisTapi - ok
19:50:12.0459 5440 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
19:50:12.0506 5440 Ndisuio - ok
19:50:12.0599 5440 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
19:50:12.0662 5440 NdisWan - ok
19:50:12.0849 5440 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
19:50:12.0911 5440 NDProxy - ok
19:50:13.0067 5440 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
19:50:13.0114 5440 NetBIOS - ok
19:50:13.0301 5440 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
19:50:13.0364 5440 NetBT - ok
19:50:13.0566 5440 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
19:50:13.0582 5440 nfrd960 - ok
19:50:13.0800 5440 nmwcd (907b5e1e4a592e5edc5e4ccbde4863c2) C:\Windows\system32\drivers\ccdcmbx64.sys
19:50:13.0863 5440 nmwcd - ok
19:50:14.0081 5440 nmwcdc (41c1ac1f3613435eb32d67bcb80a5fa5) C:\Windows\system32\drivers\ccdcmbox64.sys
19:50:14.0112 5440 nmwcdc - ok
19:50:14.0284 5440 nmwcdnsucx64 (a962be6433ef016e0dfb52eca15a5378) C:\Windows\system32\drivers\nmwcdnsucx64.sys
19:50:14.0331 5440 nmwcdnsucx64 - ok
19:50:14.0518 5440 nmwcdnsux64 (9573223e205907247ae6d948e3453770) C:\Windows\system32\drivers\nmwcdnsux64.sys
19:50:14.0534 5440 nmwcdnsux64 - ok
19:50:14.0690 5440 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
19:50:14.0736 5440 Npfs - ok
19:50:14.0908 5440 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
19:50:14.0955 5440 nsiproxy - ok
19:50:15.0142 5440 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
19:50:15.0204 5440 Ntfs - ok
19:50:15.0376 5440 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
19:50:15.0423 5440 Null - ok
19:50:15.0610 5440 nusb3hub (285acec1b13a15ba520aae06bacb9cff) C:\Windows\system32\DRIVERS\nusb3hub.sys
19:50:15.0626 5440 nusb3hub - ok
19:50:15.0797 5440 nusb3xhc (f6d625ff7b56bb6ea063f0d3a5bbc996) C:\Windows\system32\DRIVERS\nusb3xhc.sys
19:50:15.0813 5440 nusb3xhc - ok
19:50:15.0984 5440 NVHDA (8d4aac74b571fc356560e5b308955e93) C:\Windows\system32\drivers\nvhda64v.sys
19:50:16.0016 5440 NVHDA - ok
19:50:16.0421 5440 nvlddmkm (0eb204639119370f5f8f2871fbf4e14b) C:\Windows\system32\DRIVERS\nvlddmkm.sys
19:50:16.0827 5440 nvlddmkm - ok
19:50:16.0998 5440 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
19:50:17.0030 5440 nvraid - ok
19:50:17.0186 5440 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
19:50:17.0217 5440 nvstor - ok
19:50:17.0451 5440 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
19:50:17.0482 5440 nv_agp - ok
19:50:17.0654 5440 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
19:50:17.0685 5440 ohci1394 - ok
19:50:17.0872 5440 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
19:50:17.0903 5440 Parport - ok
19:50:18.0075 5440 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys
19:50:18.0090 5440 partmgr - ok
19:50:18.0293 5440 pccsmcfd (bc0018c2d29f655188a0ed3fa94fdb24) C:\Windows\system32\DRIVERS\pccsmcfdx64.sys
19:50:18.0324 5440 pccsmcfd - ok
19:50:18.0496 5440 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
19:50:18.0527 5440 pci - ok
19:50:18.0699 5440 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
19:50:18.0714 5440 pciide - ok
19:50:18.0917 5440 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
19:50:18.0948 5440 pcmcia - ok
19:50:19.0120 5440 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
19:50:19.0151 5440 pcw - ok
19:50:19.0354 5440 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
19:50:19.0416 5440 PEAUTH - ok
19:50:19.0635 5440 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
19:50:19.0682 5440 PptpMiniport - ok
19:50:19.0869 5440 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
19:50:19.0884 5440 Processor - ok
19:50:20.0056 5440 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
19:50:20.0103 5440 Psched - ok
19:50:20.0306 5440 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
19:50:20.0352 5440 ql2300 - ok
19:50:20.0508 5440 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
19:50:20.0524 5440 ql40xx - ok
19:50:20.0680 5440 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
19:50:20.0711 5440 QWAVEdrv - ok
19:50:20.0867 5440 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
19:50:20.0914 5440 RasAcd - ok
19:50:21.0086 5440 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
19:50:21.0132 5440 RasAgileVpn - ok
19:50:21.0304 5440 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
19:50:21.0351 5440 Rasl2tp - ok
19:50:21.0522 5440 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
19:50:21.0585 5440 RasPppoe - ok
19:50:21.0756 5440 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
19:50:21.0819 5440 RasSstp - ok
19:50:22.0006 5440 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
19:50:22.0053 5440 rdbss - ok
19:50:22.0240 5440 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
19:50:22.0271 5440 rdpbus - ok
19:50:22.0443 5440 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
19:50:22.0474 5440 RDPCDD - ok
19:50:22.0661 5440 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
19:50:22.0708 5440 RDPENCDD - ok
19:50:22.0864 5440 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
19:50:22.0911 5440 RDPREFMP - ok
19:50:23.0067 5440 RDPWD (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys
19:50:23.0098 5440 RDPWD - ok
19:50:23.0270 5440 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
19:50:23.0285 5440 rdyboost - ok
19:50:23.0519 5440 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys
19:50:23.0550 5440 RFCOMM - ok
19:50:23.0816 5440 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
19:50:23.0862 5440 rspndr - ok
19:50:24.0081 5440 RTL8167 (baefee35d27a5440d35092ce10267bec) C:\Windows\system32\DRIVERS\Rt64win7.sys
19:50:24.0112 5440 RTL8167 - ok
19:50:24.0237 5440 rtport (4ca0dba9e224473d664c25e411f5a3bd) C:\Windows\SysWOW64\drivers\rtport.sys
19:50:24.0252 5440 rtport - ok
19:50:24.0393 5440 SABI (62db6cc4b0818f1b5f3441241b098f12) C:\Windows\system32\Drivers\SABI.sys
19:50:24.0424 5440 SABI - ok
19:50:24.0611 5440 SaiK0CCC (b045b742ee2f8846861c0402cf3add54) C:\Windows\system32\DRIVERS\SaiK0CCC.sys
19:50:24.0627 5440 SaiK0CCC - ok
19:50:24.0830 5440 SaiMini (356dc2b0f2b413c6ad2c191ecf2734be) C:\Windows\system32\DRIVERS\SaiMini.sys
19:50:24.0845 5440 SaiMini - ok
19:50:25.0032 5440 SaiNtBus (e47b4067f2c489fbe4c2ae29ef96054e) C:\Windows\system32\drivers\SaiBus.sys
19:50:25.0032 5440 SaiNtBus - ok
19:50:25.0235 5440 SaiU0CCC (fac10e113aac54dd3905a3f6b633d5d9) C:\Windows\system32\DRIVERS\SaiU0CCC.sys
19:50:25.0235 5440 SaiU0CCC - ok
19:50:25.0422 5440 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
19:50:25.0422 5440 sbp2port - ok
19:50:25.0610 5440 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
19:50:25.0656 5440 scfilter - ok
19:50:25.0828 5440 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
19:50:25.0890 5440 secdrv - ok
19:50:26.0062 5440 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
19:50:26.0093 5440 Serenum - ok
19:50:26.0265 5440 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
19:50:26.0296 5440 Serial - ok
19:50:26.0452 5440 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
19:50:26.0483 5440 sermouse - ok
19:50:26.0686 5440 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
19:50:26.0717 5440 sffdisk - ok
19:50:26.0889 5440 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
19:50:26.0904 5440 sffp_mmc - ok
19:50:27.0060 5440 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
19:50:27.0107 5440 sffp_sd - ok
19:50:27.0294 5440 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
19:50:27.0310 5440 sfloppy - ok
19:50:27.0513 5440 Sftfs (c6cc9297bd53e5229653303e556aa539) C:\Windows\system32\DRIVERS\Sftfslh.sys
19:50:27.0560 5440 Sftfs - ok
19:50:27.0747 5440 Sftplay (390aa7bc52cee43f6790cdea1e776703) C:\Windows\system32\DRIVERS\Sftplaylh.sys
19:50:27.0762 5440 Sftplay - ok
19:50:27.0934 5440 Sftredir (617e29a0b0a2807466560d4c4e338d3e) C:\Windows\system32\DRIVERS\Sftredirlh.sys
19:50:27.0950 5440 Sftredir - ok
19:50:28.0137 5440 Sftvol (8f571f016fa1976f445147e9e6c8ae9b) C:\Windows\system32\DRIVERS\Sftvollh.sys
19:50:28.0137 5440 Sftvol - ok
19:50:28.0340 5440 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
19:50:28.0355 5440 SiSRaid2 - ok
19:50:28.0542 5440 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
19:50:28.0558 5440 SiSRaid4 - ok
19:50:28.0730 5440 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
19:50:28.0776 5440 Smb - ok
19:50:28.0979 5440 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
19:50:28.0995 5440 spldr - ok
19:50:29.0229 5440 sptd (602884696850c86434530790b110e8eb) C:\Windows\system32\Drivers\sptd.sys
19:50:29.0229 5440 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: 602884696850c86434530790b110e8eb
19:50:29.0260 5440 sptd ( LockedFile.Multi.Generic ) - warning
19:50:29.0260 5440 sptd - detected LockedFile.Multi.Generic (1)
19:50:29.0432 5440 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
19:50:29.0463 5440 srv - ok
19:50:29.0619 5440 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
19:50:29.0634 5440 srv2 - ok
19:50:29.0806 5440 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
19:50:29.0822 5440 srvnet - ok
19:50:29.0978 5440 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
19:50:30.0009 5440 stexstor - ok
19:50:30.0165 5440 StillCam (decacb6921ded1a38642642685d77dac) C:\Windows\system32\DRIVERS\serscan.sys
19:50:30.0180 5440 StillCam - ok
19:50:30.0336 5440 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
19:50:30.0352 5440 swenum - ok
19:50:30.0586 5440 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys
19:50:30.0664 5440 Tcpip - ok
19:50:30.0851 5440 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys
19:50:30.0882 5440 TCPIP6 - ok
19:50:31.0038 5440 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
19:50:31.0101 5440 tcpipreg - ok
19:50:31.0257 5440 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
19:50:31.0272 5440 TDPIPE - ok
19:50:31.0413 5440 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
19:50:31.0428 5440 TDTCP - ok
19:50:31.0584 5440 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
19:50:31.0631 5440 tdx - ok
19:50:31.0803 5440 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
19:50:31.0818 5440 TermDD - ok
19:50:32.0006 5440 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
19:50:32.0068 5440 tssecsrv - ok
19:50:32.0224 5440 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
19:50:32.0271 5440 TsUsbFlt - ok
19:50:32.0427 5440 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
19:50:32.0489 5440 tunnel - ok
19:50:32.0661 5440 TurboB (825e7a1f48fb8bcfba27c178aab4e275) C:\Windows\system32\DRIVERS\TurboB.sys
19:50:32.0676 5440 TurboB - ok
19:50:32.0848 5440 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
19:50:32.0879 5440 uagp35 - ok
19:50:33.0035 5440 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
19:50:33.0082 5440 udfs - ok
19:50:33.0269 5440 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
19:50:33.0285 5440 uliagpkx - ok
19:50:33.0503 5440 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys
19:50:33.0534 5440 umbus - ok
19:50:33.0690 5440 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
19:50:33.0706 5440 UmPass - ok
19:50:33.0924 5440 upperdev (4e93c8496359e97830c75ac36393654d) C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys
19:50:33.0971 5440 upperdev - ok
19:50:34.0143 5440 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
19:50:34.0174 5440 usbccgp - ok
19:50:34.0346 5440 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
19:50:34.0377 5440 usbcir - ok
19:50:34.0548 5440 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys
19:50:34.0564 5440 usbehci - ok
19:50:34.0751 5440 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
19:50:34.0767 5440 usbhub - ok
19:50:34.0938 5440 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
19:50:34.0970 5440 usbohci - ok
19:50:35.0141 5440 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
19:50:35.0172 5440 usbprint - ok
19:50:35.0344 5440 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys
19:50:35.0375 5440 usbscan - ok
19:50:35.0547 5440 usbser (4acee387fa8fd39f83564fcd2fc234f2) C:\Windows\system32\drivers\usbser.sys
19:50:35.0578 5440 usbser - ok
19:50:35.0765 5440 UsbserFilt (8844cb19a37b65e27049d4a7786726a9) C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys
19:50:35.0796 5440 UsbserFilt - ok
19:50:35.0984 5440 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:50:35.0999 5440 USBSTOR - ok
19:50:36.0171 5440 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys
19:50:36.0186 5440 usbuhci - ok
19:50:36.0358 5440 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\System32\Drivers\usbvideo.sys
19:50:36.0389 5440 usbvideo - ok
19:50:36.0576 5440 usb_rndisx (70d05ee263568a742d14e1876df80532) C:\Windows\system32\DRIVERS\usb8023x.sys
19:50:36.0592 5440 usb_rndisx - ok
19:50:36.0779 5440 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
19:50:36.0795 5440 vdrvroot - ok
19:50:36.0966 5440 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
19:50:36.0982 5440 vga - ok
19:50:37.0154 5440 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
19:50:37.0200 5440 VgaSave - ok
19:50:37.0356 5440 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
19:50:37.0372 5440 vhdmp - ok
19:50:37.0544 5440 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
19:50:37.0559 5440 viaide - ok
19:50:37.0731 5440 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
19:50:37.0746 5440 volmgr - ok
19:50:37.0934 5440 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
19:50:37.0949 5440 volmgrx - ok
19:50:38.0136 5440 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
19:50:38.0168 5440 volsnap - ok
19:50:38.0324 5440 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
19:50:38.0339 5440 vsmraid - ok
19:50:38.0495 5440 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys
19:50:38.0526 5440 vwifibus - ok
19:50:38.0698 5440 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
19:50:38.0714 5440 vwififlt - ok
19:50:38.0901 5440 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys
19:50:38.0932 5440 vwifimp - ok
19:50:39.0135 5440 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
19:50:39.0166 5440 WacomPen - ok
19:50:39.0322 5440 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
19:50:39.0369 5440 WANARP - ok
19:50:39.0384 5440 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
19:50:39.0416 5440 Wanarpv6 - ok
19:50:39.0587 5440 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
19:50:39.0587 5440 Wd - ok
19:50:39.0759 5440 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
19:50:39.0790 5440 Wdf01000 - ok
19:50:39.0977 5440 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
19:50:40.0024 5440 WfpLwf - ok
19:50:40.0180 5440 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
19:50:40.0196 5440 WIMMount - ok
19:50:40.0430 5440 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
19:50:40.0445 5440 WinUsb - ok
19:50:40.0648 5440 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
19:50:40.0664 5440 WmiAcpi - ok
19:50:40.0866 5440 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
19:50:40.0929 5440 ws2ifsl - ok
19:50:41.0116 5440 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
19:50:41.0163 5440 WudfPf - ok
19:50:41.0319 5440 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
19:50:41.0381 5440 WUDFRd - ok
19:50:41.0584 5440 yukonw7 (4647fda6e21b18824d6073801177f4f7) C:\Windows\system32\DRIVERS\yk62x64.sys
19:50:41.0615 5440 yukonw7 - ok
19:50:41.0646 5440 MBR (0x1B8) (2e5debb2116b3417023e0d6562d7ed07) \Device\Harddisk0\DR0
19:50:42.0052 5440 \Device\Harddisk0\DR0 - ok
19:50:42.0068 5440 MBR (0x1B8) (41bce52c92136450114184c16d08d58a) \Device\Harddisk1\DR1
19:50:42.0255 5440 \Device\Harddisk1\DR1 - ok
19:50:42.0255 5440 Boot (0x1200) (6f9d4a89fc3fd24a0a1135712adaa057) \Device\Harddisk0\DR0\Partition0
19:50:42.0255 5440 \Device\Harddisk0\DR0\Partition0 - ok
19:50:42.0286 5440 Boot (0x1200) (85bb010f55092689f40dcaceaba33e54) \Device\Harddisk0\DR0\Partition1
19:50:42.0286 5440 \Device\Harddisk0\DR0\Partition1 - ok
19:50:42.0317 5440 Boot (0x1200) (30843a274be9011afbcc1965bcc08fdc) \Device\Harddisk0\DR0\Partition2
19:50:42.0317 5440 \Device\Harddisk0\DR0\Partition2 - ok
19:50:42.0317 5440 ============================================================
19:50:42.0317 5440 Scan finished
19:50:42.0317 5440 ============================================================
19:50:42.0333 5432 Detected object count: 1
19:50:42.0333 5432 Actual detected object count: 1
19:52:01.0617 5432 sptd ( LockedFile.Multi.Generic ) - skipped by user
19:52:01.0617 5432 sptd ( LockedFile.Multi.Generic ) - User select action: Skip
Re: Sekáni PC a pomalý internet




- Pokud pouzivate Win Vista ci W7, kliknete na OTM pravym a dejte Run As Administrator ci Spustit jako spravce
- Do leveho okna Paste Instructions for Items to be Moved (pod zlutou caru) vlozte obsah, ktery mate nize
Kód: Vybrat vše
:commands [clearallrestorepoints] [RESETHOSTS] [EMPTYTEMP] [EMPTYFLASH] :reg [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDVD8LanguageShortcut] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl8] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SweetIM] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateLBPShortCut] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateP2GoShortCut] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdatePDRShortCut] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdatePPShortCut] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdatePSTShortCut] :files C:\Users\admin\AppData\Local\Facebook\Update C:\Program Files (x86)\SweetIM %windir%\system32\*.tmp.dll /s %windir%\system32\SET*.tmp /s %windir%\*.tmp
- Kliknete na cervene tlacitko MoveIt!
- Budete vyzvani na restart, dejte Yes, log pote najdete C:\_OTM\MovedFiles, obsah sem vlozte