Virus u C:\windows\Installer folderu

2

Virus u C:\windows\Installer folderu

offline
  • Pridružio: 07 Dec 2014
  • Poruke: 47

Skeniranje sa gmerom mi je blokiralo na pola pa sam morao da restarujem racunar i sada mi je sve usporeno (10 minuta je trebalo da udje u sistem) , sta sada da radim?



Ne mogu ni combofix da izbrisem ( nece na run combofix /uninstall) .

Sta mi sad to usporava racunar ?



offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

clinteastwood ::Skeniranje sa gmerom mi je blokiralo na pola pa sam morao da restarujem racunar i sada mi je sve usporeno (10 minuta je trebalo da udje u sistem) , sta sada da radim?



Ne mogu ni combofix da izbrisem ( nece na run combofix /uninstall) .

Sta mi sad to usporava racunar ?


Ne sjećam se da sam ti rekao da deinstaliraš ComboFix.

Isključi AVG zaštitu i odradi ovo:



Arrow

Preuzmi TDSSKiller sa sljedeće adrese na Desktop:

TDSSKiller


Kad preuzimanje bude završeno:

Preimenuj TDSSKiller.exe u MyCity.exe

Pokreni MyCity.exe

U End user Licence Agreement dijalogu klikni na Accept.
Takođe, u KSN Statement dijalogu klikni na Accept.

Klikni na Change parametres.

U dijelu Additional options štrikliraj opcije Verify driver signatures i Detect TDLFS file system, a zatim klikni na OK.

Klikni na Start scan.

Kad završi prikazaće ti rezultate skeniranja.

Za sve ponađene objekte odaberi akciju Skip.

Klikni na Continue.

Prikači uz poruku izvještaj koji se nalazi na sljedećoj lokaciji:
C:\TDSSKiller_verzija programa_DD.MM.GG_HH.MM.SS.txt
(DD-dan, MM-mesec, GG-godina, HH-sat, MM-minut, SS-sekunda; datum i vrijeme kada je log napravljen)



offline
  • Pridružio: 07 Dec 2014
  • Poruke: 47

22:24:05.0890 0x0ec0 TDSS rootkit removing tool 3.0.0.41 Oct 28 2014 17:58:34
22:24:18.0406 0x0ec0 ============================================================
22:24:18.0406 0x0ec0 Current date / time: 2014/12/07 22:24:18.0406
22:24:18.0406 0x0ec0 SystemInfo:
22:24:18.0406 0x0ec0
22:24:18.0406 0x0ec0 OS Version: 5.1.2600 ServicePack: 3.0
22:24:18.0406 0x0ec0 Product type: Workstation
22:24:18.0406 0x0ec0 ComputerName: COMPUTER_0313
22:24:18.0406 0x0ec0 UserName: Djole
22:24:18.0406 0x0ec0 Windows directory: C:\WINDOWS
22:24:18.0406 0x0ec0 System windows directory: C:\WINDOWS
22:24:18.0406 0x0ec0 Processor architecture: Intel x86
22:24:18.0406 0x0ec0 Number of processors: 2
22:24:18.0406 0x0ec0 Page size: 0x1000
22:24:18.0406 0x0ec0 Boot type: Normal boot
22:24:18.0406 0x0ec0 ============================================================
22:24:21.0062 0x0ec0 KLMD registered as C:\WINDOWS\system32\drivers\29432727.sys
22:24:22.0125 0x0ec0 System UUID: {07E372FA-7CA6-60AA-FA86-09B55C674E07}
22:24:24.0953 0x0ec0 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
22:24:24.0968 0x0ec0 ============================================================
22:24:24.0968 0x0ec0 \Device\Harddisk0\DR0:
22:24:24.0968 0x0ec0 MBR partitions:
22:24:24.0968 0x0ec0 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x61AB7E8
22:24:24.0968 0x0ec0 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x61AB827, BlocksNum 0x6E3CDF75
22:24:24.0968 0x0ec0 ============================================================
22:24:25.0000 0x0ec0 C: <-> \Device\Harddisk0\DR0\Partition1
22:24:25.0093 0x0ec0 D: <-> \Device\Harddisk0\DR0\Partition2
22:24:25.0093 0x0ec0 ============================================================
22:24:25.0093 0x0ec0 Initialize success
22:24:25.0093 0x0ec0 ============================================================
22:24:59.0750 0x0954 ============================================================
22:24:59.0750 0x0954 Scan started
22:24:59.0750 0x0954 Mode: Manual; SigCheck; TDLFS;
22:24:59.0750 0x0954 ============================================================
22:24:59.0750 0x0954 KSN ping started
22:25:14.0203 0x0954 KSN ping finished: true
22:25:15.0390 0x0954 ================ Scan system memory ========================
22:25:15.0390 0x0954 System memory - ok
22:25:15.0390 0x0954 ================ Scan services =============================
22:25:15.0531 0x0954 [ 44C85670246E4183650EF0E664346DDC, 684AB771D707E181C831C3BF0162D5B0B5A1E089400DD3C741D212D7D25AECF1 ] !SASCORE C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
22:25:15.0765 0x0954 !SASCORE - ok
22:25:17.0109 0x0954 Abiosdsk - ok
22:25:17.0109 0x0954 abp480n5 - ok
22:25:17.0234 0x0954 [ 8FD99680A539792A30E97944FDAECF17, 594F8E0C3695400B0C09A797AF6BDFAC6F750ECD67D0EE803914C572B1DCC43C ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
22:25:24.0062 0x0954 ACPI - ok
22:25:24.0093 0x0954 [ 9859C0F6936E723E4892D7141B1327D5, 5E8F6A2FC4DF2E5E92A1D66ECC2810E08B42B64E9CD0DF4AD3F78EA8558B90AF ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
22:25:24.0265 0x0954 ACPIEC - ok
22:25:24.0359 0x0954 [ C330710CF95587DCB7806BB6A22CF044, 794331F5FCB29C1BF952DED36ED9245F89FCE52926FFC89299B2AEC6E17FFBE9 ] ADExchange C:\Program Files\Common Files\ArcSoft\esinter\Bin\eservutil.exe
22:25:24.0406 0x0954 ADExchange - ok
22:25:24.0546 0x0954 [ 0158F4027C0808FF65ED3B3D683339C9, 382FBE4E74FA3ABBCF60B6E1E293BC0324F9689AA7C485D9926C07FEA9FCF597 ] ADIHdAudAddService C:\WINDOWS\system32\drivers\ADIHdAud.sys
22:25:24.0593 0x0954 ADIHdAudAddService - ok
22:25:24.0609 0x0954 adpu160m - ok
22:25:24.0656 0x0954 [ 358063AB6C1C4173B735525CDFA65F94, E2C7E27F8E0B4C6A662313FEEE61AF02D9166F4DC40E709DBB6C73EB489A5CC5 ] AEAudio C:\WINDOWS\system32\drivers\AEAudio.sys
22:25:24.0734 0x0954 AEAudio - ok
22:25:24.0812 0x0954 [ 8BED39E3C35D6A489438B8141717A557, 1B5796E56B0927360CE0759641B1151828BC0A9E45620D2B2D880491F5CE33D0 ] aec C:\WINDOWS\system32\drivers\aec.sys
22:25:25.0093 0x0954 aec - ok
22:25:25.0171 0x0954 [ 322D0E36693D6E24A2398BEE62A268CD, FB0BFF5846E50DBCC2826639318A6A1DE79EE7DEA2719ED74A5F6F44454E13D0 ] AFD C:\WINDOWS\System32\drivers\afd.sys
22:25:25.0359 0x0954 AFD - ok
22:25:25.0375 0x0954 Aha154x - ok
22:25:25.0375 0x0954 aic78u2 - ok
22:25:25.0390 0x0954 aic78xx - ok
22:25:25.0421 0x0954 [ A9A3DAA780CA6C9671A19D52456705B4, 67C959144B57AE0BBF1D82DBED197F32CDB06FECD883A80C441A0202FE83FAB4 ] Alerter C:\WINDOWS\system32\alrsvc.dll
22:25:25.0562 0x0954 Alerter - ok
22:25:25.0593 0x0954 [ 8C515081584A38AA007909CD02020B3D, A5E13CA10F702928E0DE84C74D0EA8ACCB117FD76FBABC55220C75C4FFD596DC ] ALG C:\WINDOWS\System32\alg.exe
22:25:25.0687 0x0954 ALG - ok
22:25:25.0687 0x0954 AliIde - ok
22:25:25.0703 0x0954 amsint - ok
22:25:25.0765 0x0954 [ D8849F77C0B66226335A59D26CB4EDC6, 4990031453204C57E36E850252A39B05D6ECDAB9E71A8136FB4900F17E59C9CA ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
22:25:26.0000 0x0954 AppMgmt - ok
22:25:26.0000 0x0954 asc - ok
22:25:26.0015 0x0954 asc3350p - ok
22:25:26.0015 0x0954 asc3550 - ok
22:25:26.0140 0x0954 [ 0E5E4957549056E2BF2C49F4F6B601AD, F7F19FDC906B719A3516D30A9B4A2262C8CC5B36B94E3D4195C345EC4610FF2B ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
22:25:26.0250 0x0954 aspnet_state - ok
22:25:26.0281 0x0954 [ B153AFFAC761E7F5FCFA822B9C4E97BC, 7E60F572A6B3C6219E3C86225AA37243AFFD74337DB7F108B04778042E5CC959 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
22:25:26.0421 0x0954 AsyncMac - ok
22:25:26.0484 0x0954 [ 9F3A2F5AA6875C72BF062C712CFA2674, B4DF1D2C56A593C6B54DE57395E3B51D288F547842893B32B0F59228A0CF70B9 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
22:25:26.0625 0x0954 atapi - ok
22:25:26.0625 0x0954 Atdisk - ok
22:25:26.0921 0x0954 [ D2FBEB67C63AFA2F6747779B0FEE15B0, DAB78D787A1DC5388925E68EB5697760EBF84CBF1AD1D81E7EAB48B5DCDF1599 ] Ati HotKey Poller C:\WINDOWS\system32\Ati2evxx.exe
22:25:27.0421 0x0954 Ati HotKey Poller - ok
22:25:29.0765 0x0954 [ 8E280E25A7A3CA8F5F35946CDF41D434, 15AD65B030FDD476E303A5134A3E2B6F046824F0465BBEA49A8A08887547B12A ] ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
22:25:32.0296 0x0954 ati2mtag - ok
22:25:32.0390 0x0954 [ B2A236DC65E90170A369164384EFB460, BFF7814126AE7833B66DC098186096BFE5AC0E2AFE99AEF435C7628F35319FC0 ] AtiHDAudioService C:\WINDOWS\system32\drivers\AtihdXP3.sys
22:25:32.0390 0x0954 AtiHDAudioService - ok
22:25:32.0453 0x0954 [ 9916C1225104BA14794209CFA8012159, 5D6F05F715C52A16D05CAE15C3DFE77A139A7F27F7AE710EC9A10F9EE05115A1 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
22:25:32.0609 0x0954 Atmarpc - ok
22:25:32.0656 0x0954 [ DEF7A7882BEC100FE0B2CE2549188F9D, 462C95B63D0A1058291A2DC8CBFCB13D7D74CCD1CA43B613A7EB43D49E3276F8 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
22:25:32.0796 0x0954 AudioSrv - ok
22:25:32.0812 0x0954 [ D9F724AA26C010A217C97606B160ED68, 329B5118F2409731D06FDAE85B6ADD64A048292801BCB3546651CEB303111695 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
22:25:33.0015 0x0954 audstub - ok
22:25:33.0046 0x0954 [ 8BE661C16FBF84A73BCEC84B6B4A9DB5, 7C93BB50B6EDDEAABB149045A52BDAE5DD9262DC87EEE537D766714E793292C5 ] Avgfwdx C:\WINDOWS\system32\DRIVERS\avgfwdx.sys
22:25:33.0062 0x0954 Avgfwdx - ok
22:25:33.0093 0x0954 [ 8BE661C16FBF84A73BCEC84B6B4A9DB5, 7C93BB50B6EDDEAABB149045A52BDAE5DD9262DC87EEE537D766714E793292C5 ] Avgfwfd C:\WINDOWS\system32\DRIVERS\avgfwdx.sys
22:25:33.0109 0x0954 Avgfwfd - ok
22:25:33.0687 0x0954 [ 7F1E1F61612CF6AF84AAA5DB7EB2C5DF, E02E9682C12908E9156564039338FD5998CD1839D7BBE038872EB67D392EEAE5 ] avgfws C:\Program Files\AVG\AVG2013\avgfws.exe
22:25:34.0718 0x0954 avgfws - ok
22:25:36.0562 0x0954 [ B575DC72C76D25AA5C82FF3006F39B18, 3530B847E3A3AA9AD571BEE88FCB191BB862B23C8AB23EFF4CEDBCA502E15BAD ] AVGIDSAgent C:\Program Files\AVG\AVG2013\avgidsagent.exe
22:25:40.0671 0x0954 AVGIDSAgent - ok
22:25:40.0765 0x0954 [ 5BCAE36134162830ED283F4C3D88476A, A47EE816A88A8C18458BA721AB829E49D492128BA8D5BF6FF317C2B5A1FFA60F ] AVGIDSDriver C:\WINDOWS\system32\DRIVERS\avgidsdriverx.sys
22:25:40.0781 0x0954 AVGIDSDriver - ok
22:25:40.0828 0x0954 [ 7C8E88549BCDAAC965B1B724C175F7A9, 86240BF965C60FFAF381879D1B2DD7190FAD597E7534AEE9A9E48A2BDEC119BA ] AVGIDSHX C:\WINDOWS\system32\DRIVERS\avgidshx.sys
22:25:40.0875 0x0954 AVGIDSHX - ok
22:25:40.0921 0x0954 [ F8D2E76EA51B3B4119DF3D6A7A6D99F3, 417E05BA987345ED48223404DEBC10043A18CBC749462186CC3EE9C20F47C86D ] AVGIDSShim C:\WINDOWS\system32\DRIVERS\avgidsshimx.sys
22:25:40.0953 0x0954 AVGIDSShim - ok
22:25:41.0062 0x0954 [ FCF551AD50A10E427F743165A533E613, 78EA90EC56A7E1B40B4F9191A33D06A648AB48499A4F19C6AE43EA690585BE25 ] Avgldx86 C:\WINDOWS\system32\DRIVERS\avgldx86.sys
22:25:41.0062 0x0954 Avgldx86 - ok
22:25:41.0156 0x0954 [ E2B9CF2CF787C6978E7CC898E9684E48, 73D5D8514EF1BF3BCC64DC158C68189D07B3940641F1155823C6822D03BC761B ] Avglogx C:\WINDOWS\system32\DRIVERS\avglogx.sys
22:25:41.0250 0x0954 Avglogx - ok
22:25:41.0281 0x0954 [ 3F59750A3AA55C46663801E7C2FD1E2B, F748EB6552889974CB1FC6F666F2D78F654CAA990A339C741255355295CD46E8 ] Avgmfx86 C:\WINDOWS\system32\DRIVERS\avgmfx86.sys
22:25:41.0343 0x0954 Avgmfx86 - ok
22:25:41.0390 0x0954 [ 90FA3A4BB1039701D68FD1CC2ED3EE22, 5842AECBF76163BCAEE19DED708291DD8402E2D24DD48453E6067A9AE5BABB11 ] Avgrkx86 C:\WINDOWS\system32\DRIVERS\avgrkx86.sys
22:25:41.0421 0x0954 Avgrkx86 - ok
22:25:41.0500 0x0954 [ A4713E9B75D8A9C2B016C3FDAB196D6A, 7A4405B90732C5BA9FE380ECE8E3FFC802A39283AC4945BC44550723C91E3C53 ] Avgtdix C:\WINDOWS\system32\DRIVERS\avgtdix.sys
22:25:41.0515 0x0954 Avgtdix - ok
22:25:41.0625 0x0954 [ D646FA5135A1CD795877AFE9D17FA9ED, 2F97FBCD7BD75727A77C17D75D2482AE819D5D2EB9760D96412F9C20AA7D9473 ] avgwd C:\Program Files\AVG\AVG2013\avgwdsvc.exe
22:25:41.0750 0x0954 avgwd - ok
22:25:41.0781 0x0954 [ DA1F27D85E0D1525F6621372E7B685E9, 5A81A46A3BDD19DAFC6C87D277267A5D44F3A1B5302F2CC1111D84B7BAD5610D ] Beep C:\WINDOWS\system32\drivers\Beep.sys
22:25:42.0015 0x0954 Beep - ok
22:25:42.0187 0x0954 [ 574738F61FCA2935F5265DC4E5691314, 3C7CCF064397186C3A3863DD2370AB6414A61B330097DCA4F299CA7BBAA3D1B4 ] BITS C:\WINDOWS\system32\qmgr.dll
22:25:42.0593 0x0954 BITS - ok
22:25:42.0656 0x0954 [ A06CE3399D16DB864F55FAEB1F1927A9, 3430FA8552D91670D9FB0A921C735ADBE2DA7FF108C199DDEEF2FB2E50713AF3 ] Browser C:\WINDOWS\System32\browser.dll
22:25:42.0828 0x0954 Browser - ok
22:25:42.0828 0x0954 catchme - ok
22:25:43.0015 0x0954 [ 90A673FC8E12A79AFBED2576F6A7AAF9, BDE7858A3457DB979FEDD8577FA6321BF72848E4A7BF9F173C78A6A10CBB3EBE ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
22:25:43.0140 0x0954 cbidf2k - ok
22:25:43.0187 0x0954 [ 0BE5AEF125BE881C4F854C554F2B025C, 1770DD70B3F115A0EF460907DEDC1E4B7241C08615A98F194D61A49C3E2BAA54 ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
22:25:43.0328 0x0954 CCDECODE - ok
22:25:43.0328 0x0954 cd20xrnt - ok
22:25:43.0359 0x0954 [ C1B486A7658353D33A10CC15211A873B, AA4DD9E7AAE5AAB1146B360B17001F975D2F29A1281CF7B13E7136480410F347 ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
22:25:43.0500 0x0954 Cdaudio - ok
22:25:43.0531 0x0954 [ C885B02847F5D2FD45A24E219ED93B32, B26B2F8E3A831E2B65EB0C5195B0645CD50E22615CE79C9B0B391CD563B121DB ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
22:25:43.0750 0x0954 Cdfs - ok
22:25:43.0796 0x0954 [ 1F4260CC5B42272D71F79E570A27A4FE, B51C2A3ED3C309953D0EA45869C8E464C10F2533DADE9E0286AF674979098D1D ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
22:25:44.0000 0x0954 Cdrom - ok
22:25:44.0000 0x0954 Changer - ok
22:25:44.0015 0x0954 [ 1CFE720EB8D93A7158A4EBC3AB178BDE, 65D2A9D9A88F38D4AF323134C151BA0F4B3CD0F6A134AF86E7AC9D07319F1726 ] CiSvc C:\WINDOWS\system32\cisvc.exe
22:25:44.0156 0x0954 CiSvc - ok
22:25:44.0171 0x0954 [ 34CBE729F38138217F9C80212A2A0C82, A9FD7A758D12E0818A11BEEF1CE772FEFA8373E92EF6C0DA8628CD4572CC9A43 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
22:25:44.0328 0x0954 ClipSrv - ok
22:25:44.0375 0x0954 [ D87ACAED61E417BBA546CED5E7E36D9C, 14AC6034A5BC0FB2A1AFDAD42BEF4DE641556E54AD30D0C46765660A4BE55462 ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:25:44.0578 0x0954 clr_optimization_v2.0.50727_32 - ok
22:25:44.0593 0x0954 CmdIde - ok
22:25:44.0593 0x0954 COMSysApp - ok
22:25:44.0609 0x0954 Cpqarray - ok
22:25:44.0656 0x0954 [ 3D4E199942E29207970E04315D02AD3B, 0825960894CF9C86CC8775BDD2A262948A09CA495AA7FE9F210FAF49E7086383 ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
22:25:44.0812 0x0954 CryptSvc - ok
22:25:44.0812 0x0954 dac2w2k - ok
22:25:44.0828 0x0954 dac960nt - ok
22:25:45.0093 0x0954 [ 2589FE6015A316C0F5D5112B4DA7B509, 2753785BA07A1A7A25E275332F5F9F403F6E8CBF396FD0905D6BA84B98C403A6 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
22:25:45.0437 0x0954 DcomLaunch - ok
22:25:45.0500 0x0954 [ 5E38D7684A49CACFB752B046357E0589, F192AD4190BCFB6939A5CBC91648FE63168AF79A5E227A111DEAD6A92E42AB8D ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
22:25:45.0656 0x0954 Dhcp - ok
22:25:45.0703 0x0954 [ 044452051F3E02E7963599FC8F4F3E25, 584BDDB074618BE76454CF90E74829CFF588B5B5FAEB793E2F7AAD26352DD689 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
22:25:45.0890 0x0954 Disk - ok
22:25:45.0906 0x0954 dmadmin - ok
22:25:46.0250 0x0954 [ D992FE1274BDE0F84AD826ACAE022A41, C82BD6561A14F2932A761F5883A787B99031250EE5E9B7B5714AA045545C9B99 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
22:25:46.0843 0x0954 dmboot - ok
22:25:46.0984 0x0954 [ 7C824CF7BBDE77D95C08005717A95F6F, A73CB323B7A6410C3D3F258BF204E716ADF8C84C9E4F6562C57AB73DAED8CCDE ] dmio C:\WINDOWS\system32\drivers\dmio.sys
22:25:47.0171 0x0954 dmio - ok
22:25:47.0203 0x0954 [ E9317282A63CA4D188C0DF5E09C6AC5F, D41E002F555FE9015EF620975255F58BB79198CA1FF0E09EC950CB450FF77CF7 ] dmload C:\WINDOWS\system32\drivers\dmload.sys
22:25:47.0328 0x0954 dmload - ok
22:25:47.0343 0x0954 [ 57EDEC2E5F59F0335E92F35184BC8631, 61F6F0DC2D1A6C61D5EF0D5CC4BE0FFC217F1E61FDA3EA9F704709293656600F ] dmserver C:\WINDOWS\System32\dmserver.dll
22:25:47.0515 0x0954 dmserver - ok
22:25:47.0562 0x0954 [ 8A208DFCF89792A484E76C40E5F50B45, 4E40E2EB38C6254E7CAA488200E89EE7DEBBBA773890BC6A84313CC68178D54F ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
22:25:47.0671 0x0954 DMusic - ok
22:25:47.0718 0x0954 [ 474B4DC3983173E4B4C9740B0DAC98A6, C0B1B5B3A87529FFA93BCFCC2BC013A96CAD7F5049ED4D999E8D5D9AC91F95B7 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
22:25:47.0875 0x0954 Dnscache - ok
22:25:48.0031 0x0954 [ 0F0F6E687E5E15579EF4DA8DD6945814, 5C32D88119EB1465B2D719BEE2E05888D1A73454B5E33F2D4928DA710F8BFBA3 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
22:25:48.0187 0x0954 Dot3svc - ok
22:25:48.0187 0x0954 dpti2o - ok
22:25:48.0203 0x0954 [ 8F5FCFF8E8848AFAC920905FBD9D33C8, C8C6FB97AB0871C8C88A2201525A5CF10D5131CB6980D32692ED7A8F58399AD5 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
22:25:48.0296 0x0954 drmkaud - ok
22:25:48.0328 0x0954 [ 2187855A7703ADEF0CEF9EE4285182CC, 8233CC11F637866C0074043835A785EA2B616739B6B1181B143A253CF2508CFD ] EapHost C:\WINDOWS\System32\eapsvc.dll
22:25:48.0453 0x0954 EapHost - ok
22:25:48.0484 0x0954 [ BC93B4A066477954555966D77FEC9ECB, 27F5B780175EF46DA102EE33F7F33559C8B40C077EEA4405D579D9507F4B1C23 ] ERSvc C:\WINDOWS\System32\ersvc.dll
22:25:48.0578 0x0954 ERSvc - ok
22:25:48.0656 0x0954 [ 0E776ED5F7CC9F94299E70461B7B8185, 22750B3829133D1D4BB3CE2FA6247BE2373B5D15A6ED1C8A71673AA1CE7D9530 ] Eventlog C:\WINDOWS\system32\services.exe
22:25:48.0781 0x0954 Eventlog - ok
22:25:48.0875 0x0954 [ 19A799805B24990867B00C120D300C3A, 3C8CB64BE0508B5136D4F4919DA665AB86366EFFFFDD890A9B27E7CE39DCF098 ] EventSystem C:\WINDOWS\system32\es.dll
22:25:49.0187 0x0954 EventSystem - ok
22:25:49.0250 0x0954 Fabs - ok
22:25:49.0312 0x0954 [ 38D332A6D56AF32635675F132548343E, E6909DB836AF679B4F4D62C7396D6C82769CC7ABB8C919C2AABFE934FCE268F6 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
22:25:49.0468 0x0954 Fastfat - ok
22:25:49.0531 0x0954 [ 1926899BF9FFE2602B63074971700412, F5C48EDBE5C6507527630B49C95BAA9F1E47EACC5A910F2B9A4528733E81A966 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
22:25:49.0781 0x0954 FastUserSwitchingCompatibility - ok
22:25:49.0859 0x0954 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81, 8307A532AB4D05CBBCE206DC2759497708BF5AAA880BD00F0E4F281D8578A1F5 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
22:25:50.0140 0x0954 Fdc - ok
22:25:50.0218 0x0954 [ D45926117EB9FA946A6AF572FBE1CAA3, 4C94EF009D778BE0BDF8F812F026B96F91F641BE30AA2531427A5E63DBD280DA ] Fips C:\WINDOWS\system32\drivers\Fips.sys
22:25:50.0468 0x0954 Fips - ok
22:25:51.0859 0x0954 [ FFF1130F7C9FA01D093A1EDFC5CCE8FC, 159EAA1893D871C309A063829CB3BC51A019FBCA1E07530B5CA1A382B2CCAF61 ] FirebirdServerMAGIXInstance C:\Program Files\Common Files\MAGIX Services\Database\bin\fbserver.exe
22:25:54.0718 0x0954 FirebirdServerMAGIXInstance - detected UnsignedFile.Multi.Generic ( 1 )
22:25:57.0203 0x0954 Detect skipped due to KSN trusted
22:25:57.0203 0x0954 FirebirdServerMAGIXInstance - ok
22:25:57.0265 0x0954 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0, 69C271AD5BCEBFD8AE5A769BDD7EC51256DA3A8ADAD5D12E5C0D13F4E82D8805 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys
22:25:57.0421 0x0954 Flpydisk - ok
22:25:57.0484 0x0954 [ B2CF4B0786F8212CB92ED2B50C6DB6B0, 280F5CF8A90F7BEDE73ADD0DD0F8952088133A7CA9A3D3B7041957E33B36845D ] FltMgr C:\WINDOWS\system32\DRIVERS\fltMgr.sys
22:25:57.0625 0x0954 FltMgr - ok
22:25:57.0656 0x0954 [ 8BA7C024070F2B7FDD98ED8A4BA41789, 47585006F86B2C6016EC54250A416794792D1E4024FF229C120BC25B684AF66A ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
22:25:57.0703 0x0954 FontCache3.0.0.0 - ok
22:25:57.0718 0x0954 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A, EC635E071201A766845D48973772CBE0958942B4162F3F5F70660D114CC877E0 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
22:25:57.0812 0x0954 Fs_Rec - ok
22:25:57.0859 0x0954 [ 6AC26732762483366C3969C9E4D2259D, FF2C9A23CC17F380093F0BEA955B1925794271C2FEA16B9B7639668E6999BAE3 ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
22:25:58.0140 0x0954 Ftdisk - ok
22:25:58.0234 0x0954 [ 0A02C63C8B144BD8C86B103DEE7C86A2, 7A3235DD3E1995DD72B212FAEB3ECA2A974434DE9BF6D269EA11BA65A80E7E50 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
22:25:58.0453 0x0954 Gpc - ok
22:25:58.0531 0x0954 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
22:25:58.0546 0x0954 gupdate - ok
22:25:58.0578 0x0954 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
22:25:58.0593 0x0954 gupdatem - ok
22:25:58.0671 0x0954 [ C1B577B2169900F4CF7190C39F085794, 73E104B96A48F4C80D8C37254ECB0891D15C0D2F0C251B57C168F90D60316447 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
22:25:58.0765 0x0954 gusvc - ok
22:25:58.0828 0x0954 [ 573C7D0A32852B48F3058CFD8026F511, BC384BBA394AFDCDA1A9ABC858C692AA84A1F0A31AF3DDF7F38D120C027927FB ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
22:25:58.0984 0x0954 HDAudBus - ok
22:25:59.0062 0x0954 [ 4FCCA060DFE0C51A09DD5C3843888BCD, D82417706B517F2610DDF7C86BE03A72EFA9A2A389DF5C8F8ADEAB8144E2C80A ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
22:25:59.0250 0x0954 helpsvc - ok
22:25:59.0281 0x0954 HidServ - ok
22:25:59.0343 0x0954 [ CCF82C5EC8A7326C3066DE870C06DAF1, 93395FA4C26B2E82DC8B7025ED3BCF583885E5D8C5F60CD6EEAA6335D6A126EC ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
22:25:59.0609 0x0954 HidUsb - ok
22:25:59.0640 0x0954 [ 8878BD685E490239777BFE51320B88E9, C5C3ECF6B049B6736E35B39518A8F830B45C45A88FFE8E3A6B7922AD946597E2 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
22:25:59.0765 0x0954 hkmsvc - ok
22:25:59.0781 0x0954 hpn - ok
22:25:59.0921 0x0954 [ F6AACF5BCE2893E0C1754AFEB672E5C9, 62A7A70515B5570A649DC30A3A122B1302F6839A63927C8B29EBE04ABA654892 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
22:26:00.0171 0x0954 HTTP - ok
22:26:00.0187 0x0954 [ 6100A808600F44D999CEBDEF8841C7A3, 61A75118C327812C60622010985A2E80E79B6FD9030A5732390EE5426E4AF6C9 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
22:26:00.0296 0x0954 HTTPFilter - ok
22:26:00.0296 0x0954 i2omgmt - ok
22:26:00.0296 0x0954 i2omp - ok
22:26:00.0343 0x0954 [ 4A0B06AA8943C1E332520F7440C0AA30, DB2452390CCFE67E0C5FEB4FD42CA24ABE2DDD40D0B22DD5F5B8F70416863918 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
22:26:00.0515 0x0954 i8042prt - ok
22:26:00.0859 0x0954 [ C01AC32DC5C03076CFB852CB5DA5229C, A4D7749220B5BC965D96A267F1E02FE8284A230BA249109207BD4B9EA8DFAC96 ] idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
22:26:01.0578 0x0954 idsvc - ok
22:26:01.0640 0x0954 [ 083A052659F5310DD8B6A6CB05EDCF8E, 48D39B03FFB6FAA1529B774443BA12618AE3982D9F65A7B9D18F2269F78B31F4 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
22:26:01.0812 0x0954 Imapi - ok
22:26:01.0890 0x0954 [ 30DEAF54A9755BB8546168CFE8A6B5E1, 3936228CD3125C763ABFCB93E86E4B43838202BCC0913A28E84AC0263B43EE0D ] ImapiService C:\WINDOWS\system32\imapi.exe
22:26:02.0109 0x0954 ImapiService - ok
22:26:02.0109 0x0954 ini910u - ok
22:26:02.0125 0x0954 IntelIde - ok
22:26:02.0156 0x0954 [ 8C953733D8F36EB2133F5BB58808B66B, 555868F246D73652E998B0B1296476E42FCEDED30D646CC000F31ECE4EBC25E6 ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
22:26:02.0375 0x0954 intelppm - ok
22:26:02.0421 0x0954 [ 3BB22519A194418D5FEC05D800A19AD0, F6662F440950596DC1382DD1DB5D7891CCEA30A6062BEA942C18445B5F0D8B16 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
22:26:02.0609 0x0954 Ip6Fw - ok
22:26:02.0656 0x0954 [ 731F22BA402EE4B62748ADAF6363C182, 5C3BEBD008A5BE4DC2F92076FF41A10DDC01E10EC7E6552213CFA11970811848 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
22:26:02.0781 0x0954 IpFilterDriver - ok
22:26:02.0796 0x0954 [ B87AB476DCF76E72010632B5550955F5, E6E74D3A86A7917A8BAED44F8E97CCD2EB171E4E4B27E9907F60D1523FAF319A ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
22:26:02.0906 0x0954 IpInIp - ok
22:26:03.0062 0x0954 [ CC748EA12C6EFFDE940EE98098BF96BB, AF523E21C25D9A1715EFEA573E4F52AF5D4FC9F28A2D613F5DB629C186C439E0 ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
22:26:03.0359 0x0954 IpNat - ok
22:26:03.0390 0x0954 [ 23C74D75E36E7158768DD63D92789A91, 394D296F38E7D8EFD91A6EEC301D9CE6AF910E35EB9819F1A9E3363863AEDFDC ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
22:26:03.0562 0x0954 IPSec - ok
22:26:03.0578 0x0954 [ C93C9FF7B04D772627A3646D89F7BF89, 805FA48E7A46D4F10240BF880A2468F53DEA36E83004399228AB70DB7D20544A ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
22:26:03.0625 0x0954 IRENUM - ok
22:26:03.0656 0x0954 [ 05A299EC56E52649B1CF2FC52D20F2D7, 2654619DB3E6D6C385B63AB02F87D4241C4F0250CC31383D1B3586917166C2DC ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
22:26:03.0828 0x0954 isapnp - ok
22:26:04.0046 0x0954 [ DBDB1A25291B2D18C614F5CA963156A8, C8EA730A6A5BCBE7952AAA22F212C244014F206D2F4A274E29384C09F1F10A66 ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe
22:26:04.0125 0x0954 JavaQuickStarterService - ok
22:26:04.0156 0x0954 [ 463C1EC80CD17420A542B7F36A36F128, E3B11BA26AFEAFB50B0FC168EA07F6049DA6B88BCDDEEE20310602D7FC27A3A7 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
22:26:04.0281 0x0954 Kbdclass - ok
22:26:04.0343 0x0954 [ 692BCF44383D056AED41B045A323D378, 1A99DEE83FFAF64E73067FC049C0A4CE07D94E4AE31EFA17B38CEFA9E41D67DC ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
22:26:04.0500 0x0954 kmixer - ok
22:26:04.0546 0x0954 [ 1705745D900DABF2D89F90EBADDC7517, FE90589415BDB3BA482D3EBE1A87A7BF1429791E8F18BCB66BF8874631CC8B2C ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
22:26:04.0656 0x0954 KSecDD - ok
22:26:04.0750 0x0954 [ F385F4B02C535BFFE1D70CAB80838123, A1695E161673BCB77CE150C2D98A07FCB454C53F10EEBECD754D2CC40DEAA1E0 ] LanmanServer C:\WINDOWS\System32\srvsvc.dll
22:26:04.0968 0x0954 LanmanServer - ok
22:26:05.0046 0x0954 [ 1B67B632786FEF1C1BBAEF46C2F3F2E6, 48A6DB1EC7515F0DDD0639AEE3056F32C273B4D541F3647915A32ABA140DA34A ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
22:26:05.0171 0x0954 lanmanworkstation - ok
22:26:05.0187 0x0954 lbrtfdc - ok
22:26:05.0203 0x0954 [ A7DB739AE99A796D91580147E919CC59, EDF4E039BA277B0E6D66FEB0B28096E67D682C09DFC18ECECF062D9DCFB75ACF ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
22:26:05.0312 0x0954 LmHosts - ok
22:26:05.0328 0x0954 [ A3F4391DFDF2F9E9FE4EAD193265A5AD, A60A1A345622F4758181FB0B6EE784B0B718105FEE7B0F6FEDE5AD59FE448EE1 ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys
22:26:05.0343 0x0954 MBAMProtector - ok
22:26:05.0968 0x0954 [ 0BB29DE40C9D9529793DCDB59A43CF5B, 251001A407D32EF22F64915EEFFAAEC229073C4549BF7D9D1D4209B7D15B4681 ] MBAMScheduler C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
22:26:07.0250 0x0954 MBAMScheduler - ok
22:26:07.0687 0x0954 [ 5F82D8188B370B0CF185D4AE2B9B4A0E, 549B53DD989A069E1C38347C4CEF5283DF9B428CE102799B06A20D3D8F23825F ] MBAMService C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
22:26:08.0796 0x0954 MBAMService - ok
22:26:09.0171 0x0954 [ 7CF1B716372B89568AE4C0FE769F5869, 0D70A7A594BCFBB26D7249C0F4B0AF9EF874F2318B3FDCE44648CC61279594ED ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
22:26:09.0390 0x0954 MDM - detected UnsignedFile.Multi.Generic ( 1 )
22:26:11.0890 0x0954 Detect skipped due to KSN trusted
22:26:11.0890 0x0954 MDM - ok
22:26:12.0046 0x0954 [ 986B1FF5814366D71E0AC5755C88F2D3, E6AF051174531C24B38E73987755D366ABEC595476C6D17793E8DCCC73F55340 ] Messenger C:\WINDOWS\System32\msgsvc.dll
22:26:12.0390 0x0954 Messenger - ok
22:26:12.0515 0x0954 [ FAFE367D032ED82E9332B4C741A20216, 7B123766E360570E0FCB211835B7910D6A1806C25A06BCA9227AB9E993376CA8 ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
22:26:12.0546 0x0954 Microsoft Office Groove Audit Service - ok
22:26:12.0578 0x0954 [ 4AE068242760A1FB6E1A44BF4E16AFA6, 1FB771162B96AAF787AC24867B818DF8511F0780BB094FA9A38C11D8DBFE68BC ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
22:26:12.0671 0x0954 mnmdd - ok
22:26:12.0703 0x0954 [ D18F1F0C101D06A1C1ADF26EED16FCDD, BA0837C7780BD8262E143E2935AFA63BE59C3C39EF56CB8608EED0F50AF070D4 ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
22:26:12.0812 0x0954 mnmsrvc - ok
22:26:12.0843 0x0954 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1, B342CC9EC3729AB1AB4B5E2E99F890C1E0CA649162DE91F6768AB857B719E97B ] Modem C:\WINDOWS\system32\drivers\Modem.sys
22:26:13.0062 0x0954 Modem - ok
22:26:13.0093 0x0954 [ 35C9E97194C8CFB8430125F8DBC34D04, 0C0FCE6B0A23FB0ECB92E1663E1C72D2DD5B177D82E04782957690B69530DB39 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
22:26:13.0203 0x0954 Mouclass - ok
22:26:13.0218 0x0954 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD, 2A5E15ED2C24C6C65EF2F7E1FD93374774076C9D8D451E4422561F4D269C012F ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
22:26:13.0375 0x0954 MountMgr - ok
22:26:13.0421 0x0954 [ DFCD29AB147716CA72416FA7D2196D46, ED60BF354347697F69A78C9FBE1ADCBE0C3EB4C2CC8DB97A7FA03A68BD796066 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
22:26:13.0468 0x0954 MozillaMaintenance - ok
22:26:13.0484 0x0954 mraid35x - ok
22:26:13.0546 0x0954 [ 11D42BB6206F33FBB3BA0288D3EF81BD, 76ABCFB62C5AC549F58C231F72A99882CDEB74928104B77FE52554765C2B1A22 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
22:26:13.0750 0x0954 MRxDAV - ok
22:26:13.0890 0x0954 [ 68755F0FF16070178B54674FE5B847B0, 2FFBCE3A67FA7E30E373624521C602E5510C5565F04381C6C9F961253DA928A6 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
22:26:14.0343 0x0954 MRxSmb - ok
22:26:14.0359 0x0954 [ A137F1470499A205ABBB9AAFB3B6F2B1, FB4951727543030D9E6ED74149C3FAACE2CA9DA8C1B5F616301B30B858C724E8 ] MSDTC C:\WINDOWS\system32\msdtc.exe
22:26:14.0468 0x0954 MSDTC - ok
22:26:14.0500 0x0954 [ C941EA2454BA8350021D774DAF0F1027, C940E978C7B66A713A0FDAB54B5F995DF59D089AFCD96221DD3222948CD49BBD ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
22:26:14.0593 0x0954 Msfs - ok
22:26:14.0593 0x0954 MSIServer - ok
22:26:14.0609 0x0954 [ D1575E71568F4D9E14CA56B7B0453BF1, 4ABE0E24786C0D39FA2B885447E56204CA6942FB175E534DCE675D7BCF0B176A ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
22:26:14.0765 0x0954 MSKSSRV - ok
22:26:14.0796 0x0954 [ 325BB26842FC7CCC1FCCE2C457317F3E, C07BE560513B1FB91D756494F0BA4AEEB2E1998DE0E1C21EE83DB1183B0CEE91 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
22:26:14.0953 0x0954 MSPCLOCK - ok
22:26:15.0031 0x0954 [ BAD59648BA099DA4A17680B39730CB3D, 9AD4C7C94C186C8815D0BC75DCAFB962158DA6935A244BA243EDDDEB33F9816C ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
22:26:15.0171 0x0954 MSPQM - ok
22:26:15.0203 0x0954 [ AF5F4F3F14A8EA2C26DE30F7A1E17136, AC93A1E4ABB0D038B772E429015567E44CC2EDB66C54DBE23A5F98176FAC1520 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
22:26:15.0296 0x0954 mssmbios - ok
22:26:15.0328 0x0954 [ E53736A9E30C45FA9E7B5EAC55056D1D, 38602F280BF69EBA3706AD175AFC1AEB561A8302B4B61E3FECB3C27D7A9BDB41 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
22:26:15.0453 0x0954 MSTEE - ok
22:26:15.0468 0x0954 [ D48659BB24C48345D926ECB45C1EBDF5, EDEDE58316827530C25F8085F62AD48EA6D44B0F8AC1917B940F53B02CF72EA6 ] MTsensor C:\WINDOWS\system32\DRIVERS\ASACPI.sys
22:26:15.0515 0x0954 MTsensor - ok
22:26:15.0562 0x0954 [ 2F625D11385B1A94360BFC70AAEFDEE1, 23E4974120233CF1A7BEE48977706A0A55418699379D1450502ABEB24191AC80 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
22:26:15.0687 0x0954 Mup - ok
22:26:15.0750 0x0954 [ 5B50F1B2A2ED47D560577B221DA734DB, C16A554B6E1A7F5F98C94DFA88163E0F7426506BF2F51FD351B1A05FC0DB3BC5 ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
22:26:15.0875 0x0954 NABTSFEC - ok
22:26:16.0125 0x0954 [ 0102140028FAD045756796E1C685D695, 5335B8278418CA200E2772124F0602C3E15A5CAF2D5CC59F6785DFAABF339B09 ] napagent C:\WINDOWS\System32\qagentrt.dll
22:26:16.0343 0x0954 napagent - ok
22:26:16.0406 0x0954 [ 1DF7F42665C94B825322FAE71721130D, FE0DCB728471465B39A42A7511F4133021FBA5DF88F88BCB5FE2FF34CFD713F9 ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
22:26:16.0578 0x0954 NDIS - ok
22:26:16.0640 0x0954 [ 7FF1F1FD8609C149AA432F95A8163D97, 18CD1FF5AC1EF8A38D1EC53014F2BADD28D9CDF4ECE2EBC2313D08903776F323 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys
22:26:16.0781 0x0954 NdisIP - ok
22:26:16.0812 0x0954 [ 1AB3D00C991AB086E69DB84B6C0ED78F, 1F881FCCF5557C44C078D99CA2DD38D635413D6212DBEDC06A428EDAC7F8B04E ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
22:26:16.0937 0x0954 NdisTapi - ok
22:26:17.0015 0x0954 [ F927A4434C5028758A842943EF1A3849, B1AA3AF150C05307461774925901789456B0CCCD03A5E71ADA4AB58455962BEE ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
22:26:17.0156 0x0954 Ndisuio - ok
22:26:17.0187 0x0954 [ EDC1531A49C80614B2CFDA43CA8659AB, 494042F790F33721328B4451E79842E21919681CC421A4F9633EC4D383E06097 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
22:26:17.0312 0x0954 NdisWan - ok
22:26:17.0359 0x0954 [ 6215023940CFD3702B46ABC304E1D45A, C767F3A349B365F6E7566C0738E2F62D8FFF8CB4457347E3614BD403BC6CADCB ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
22:26:17.0500 0x0954 NDProxy - ok
22:26:17.0546 0x0954 [ 5D81CF9A2F1A3A756B66CF684911CDF0, 7989C36607CAEA17AFA2C1C9904145CA0714A54B9F712D9D4C1AB140D0B2CC0C ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
22:26:17.0656 0x0954 NetBIOS - ok
22:26:17.0718 0x0954 [ 74B2B2F5BEA5E9A3DC021D685551BD3D, 7932B71F98B4122BE88F576BF6D745A757AE378A48924B7F4358837B75640A82 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
22:26:17.0906 0x0954 NetBT - ok
22:26:18.0000 0x0954 [ B857BA82860D7FF85AE29B095645563B, 86FF0E4CDD9C394E8BABD93A4D57E73FF9A779261717DEC6E9CDE99F1C6B0F4C ] NetDDE C:\WINDOWS\system32\netdde.exe
22:26:18.0171 0x0954 NetDDE - ok
22:26:18.0203 0x0954 [ B857BA82860D7FF85AE29B095645563B, 86FF0E4CDD9C394E8BABD93A4D57E73FF9A779261717DEC6E9CDE99F1C6B0F4C ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
22:26:18.0328 0x0954 NetDDEdsdm - ok
22:26:18.0343 0x0954 [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] Netlogon C:\WINDOWS\system32\lsass.exe
22:26:18.0437 0x0954 Netlogon - ok
22:26:18.0515 0x0954 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE, 4E0A67B3CC897E80D4B342FFE8B7B4CC4F6CA2EF2D34C136027A098B2E1C6166 ] Netman C:\WINDOWS\System32\netman.dll
22:26:18.0734 0x0954 Netman - ok
22:26:18.0796 0x0954 [ D34612C5D02D026535B3095D620626AE, 1BBCCCBF49EB8807240A77DCB43C25C21682073CC5356594E2C4F53EF36BF657 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
22:26:18.0859 0x0954 NetTcpPortSharing - ok
22:26:18.0953 0x0954 [ B4138E99236F0F57D4CF49BAE98A0746, DDEAE046C1165C41F06933E808B143118208B02BB83FA80BEF8F550D4DC78149 ] Nla C:\WINDOWS\System32\mswsock.dll
22:26:19.0218 0x0954 Nla - ok
22:26:19.0265 0x0954 [ 3182D64AE053D6FB034F44B6DEF8034A, 4ADFC76965BA2A5F488E71789A4E4EA702A74AF42725F72130D1CA919406CF19 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
22:26:19.0359 0x0954 Npfs - ok
22:26:19.0546 0x0954 [ 78A08DD6A8D65E697C18E1DB01C5CDCA, E0E6F3ED05068E32F1D5C2D2B38CDEF4536B8656DB6756C66CF6B40B60C8F3DA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
22:26:20.0000 0x0954 Ntfs - ok
22:26:20.0046 0x0954 [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
22:26:20.0140 0x0954 NtLmSsp - ok
22:26:20.0281 0x0954 [ 156F64A3345BD23C600655FB4D10BC08, 9611BE411586E068D9297D77102DB3BE48AA67F1BAD6F61A84F83FC3043FA9CD ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
22:26:20.0671 0x0954 NtmsSvc - ok
22:26:20.0734 0x0954 [ 73C1E1F395918BC2C6DD67AF7591A3AD, B21133A75253EC15E2DFF66D3B480AB1A7E1A2360476C810E7AA55D0F0EB08D4 ] Null C:\WINDOWS\system32\drivers\Null.sys
22:26:20.0921 0x0954 Null - ok
22:26:21.0109 0x0954 [ B305F3FAD35083837EF46A0BBCE2FC57, 9D0E0E666D652D0FC9EAB97280A5D67AAF61D6B21929DF7CF8ED72A367720464 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
22:26:21.0250 0x0954 NwlnkFlt - ok
22:26:21.0265 0x0954 [ C99B3415198D1AAB7227F2C88FD664B9, DD8DA4B5E804F134AB9233859544C025062902DFC3E8FB8A09A67337A4E73F55 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
22:26:21.0468 0x0954 NwlnkFwd - ok
22:26:21.0671 0x0954 [ 84DE1DD996B48B05ACE31AD015FA108A, 4B9D1E4EF83ECED6C77F23D9879C124534F7053D7423E3A2D0F67A4A720CEA94 ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
22:26:21.0875 0x0954 odserv - ok
22:26:21.0937 0x0954 [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
22:26:22.0046 0x0954 ose - ok
22:26:22.0109 0x0954 [ 5575FAF8F97CE5E713D108C2A58D7C7C, 96D4595D19A78CCBE8B325A08780AC077AE5CC99642ACD72FB47AEAE8D344D3B ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
22:26:22.0265 0x0954 Parport - ok
22:26:22.0296 0x0954 [ BEB3BA25197665D82EC7065B724171C6, 7E71C13BA30CD95CEE8A9CC85E6F48A01F30EDEAADEE69D80AE828BF97E5A5CA ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
22:26:22.0390 0x0954 PartMgr - ok
22:26:22.0421 0x0954 [ 70E98B3FD8E963A6A46A2E6247E0BEA1, 6771313EC41B3B5BFD398F60706E40BE71617046880CC352DD110B001AFC22A1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
22:26:22.0531 0x0954 ParVdm - ok
22:26:22.0562 0x0954 [ A219903CCF74233761D92BEF471A07B1, D4E6C360A1D2FCA4D17C991B834D68BF20F5111DD06B1FAB8B22984804CEC269 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
22:26:22.0687 0x0954 PCI - ok
22:26:22.0687 0x0954 PCIDump - ok
22:26:22.0734 0x0954 [ CCF5F451BB1A5A2A522A76E670000FF0, D63F7E5A39653EC9CCE94B7D84B2D3EBD4F54533BD65701020198724042C9257 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
22:26:22.0828 0x0954 PCIIde - ok
22:26:22.0875 0x0954 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1, 0BA3DB21DC7C641C181E2635B5C9B73965FDCDCD3EBBBE48FCFEC1C8C987F617 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
22:26:23.0109 0x0954 Pcmcia - ok
22:26:23.0125 0x0954 PDCOMP - ok
22:26:23.0125 0x0954 PDFRAME - ok
22:26:23.0140 0x0954 PDRELI - ok
22:26:23.0140 0x0954 PDRFRAME - ok
22:26:23.0156 0x0954 perc2 - ok
22:26:23.0171 0x0954 perc2hib - ok
22:26:23.0234 0x0954 [ 0E776ED5F7CC9F94299E70461B7B8185, 22750B3829133D1D4BB3CE2FA6247BE2373B5D15A6ED1C8A71673AA1CE7D9530 ] PlugPlay C:\WINDOWS\system32\services.exe
22:26:23.0343 0x0954 PlugPlay - ok
22:26:23.0359 0x0954 [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
22:26:23.0500 0x0954 PolicyAgent - ok
22:26:23.0562 0x0954 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99, C5F0C8C66A3AF7E7BB04CEDE4AC5306F8387AB384A2107DC5BE413AAE968EFF1 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
22:26:23.0687 0x0954 PptpMiniport - ok
22:26:23.0687 0x0954 [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
22:26:23.0812 0x0954 ProtectedStorage - ok
22:26:23.0843 0x0954 [ 09298EC810B07E5D582CB3A3F9255424, 35473A1BE25AC289474090EB0806AC6B3035DC33D1F3DF97A14BF1E361AC6AC3 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
22:26:23.0984 0x0954 PSched - ok
22:26:24.0109 0x0954 [ 543A4EF0923BF70D126625B034EF25AF, 9CC82C5221F11850419A796D48D5452B3DEE0C8E8E85A818F4AAA869673F9740 ] PSI_SVC_2 c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
22:26:24.0140 0x0954 PSI_SVC_2 - ok
22:26:24.0156 0x0954 [ 80D317BD1C3DBC5D4FE7B1678C60CADD, DA76804B55D0CAB3DDD01EFC06673764AE4860693375C658B6063FB14AF7F12C ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
22:26:24.0281 0x0954 Ptilink - ok
22:26:24.0328 0x0954 [ D86B4A68565E444D76457F14172C875A, 06B1CF81A62B3DAA8D0C5A8B88C56A504DE8E9278C520F754AF363A6676C58B0 ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
22:26:24.0343 0x0954 PxHelp20 - ok
22:26:24.0359 0x0954 ql1080 - ok
22:26:24.0359 0x0954 Ql10wnt - ok
22:26:24.0375 0x0954 ql12160 - ok
22:26:24.0375 0x0954 ql1240 - ok
22:26:24.0390 0x0954 ql1280 - ok
22:26:24.0406 0x0954 [ FE0D99D6F31E4FAD8159F690D68DED9C, 998685622ABE631984B7E4DBF91AB3594B1F574378D75EB9F6265F4650470692 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
22:26:24.0515 0x0954 RasAcd - ok
22:26:24.0562 0x0954 [ AD188BE7BDF94E8DF4CA0A55C00A5073, C7D76CB579FAEBCCC2873499441BACDD6BD6668ACF5ED7F31862656E96E2B20C ] RasAuto C:\WINDOWS\System32\rasauto.dll
22:26:24.0703 0x0954 RasAuto - ok
22:26:24.0750 0x0954 [ 11B4A627BC9614B885C4969BFA5FF8A6, EAE0A412A2B0F68919C32A96B3A08CC1A06585E4998819F5C9051745F63FF5AD ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
22:26:24.0859 0x0954 Rasl2tp - ok
22:26:24.0937 0x0954 [ 76A9A3CBEADD68CC57CDA5E1D7448235, 4AFD048C5D2306AB8DE46F3AA60AC0213333DDA3B09A9E91F7585DB6EB978EC8 ] RasMan C:\WINDOWS\System32\rasmans.dll
22:26:25.0203 0x0954 RasMan - ok
22:26:25.0234 0x0954 [ 5BC962F2654137C9909C3D4603587DEE, A5CE5653D0105240F5E86CFAAB89E7917D42D939E2F27A5A7D6979289CA651B8 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
22:26:25.0343 0x0954 RasPppoe - ok
22:26:25.0375 0x0954 [ FDBB1D60066FCFBB7452FD8F9829B242, 10A2DACF944BD000032EBA8C095CB3D879CC55B28C377ADF6E52E508E47444DB ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
22:26:25.0468 0x0954 Raspti - ok
22:26:25.0531 0x0954 [ 7AD224AD1A1437FE28D89CF22B17780A, 6645235CA27D671954E3557FA37082881C3D7D47492C71264CD8CB8D108EC801 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
22:26:25.0750 0x0954 Rdbss - ok
22:26:25.0781 0x0954 [ 4912D5B403614CE99C28420F75353332, 975341ECD660209987B5E5171B8315E032439E408CBE8A5986E67AF767F373BB ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
22:26:25.0890 0x0954 RDPCDD - ok
22:26:25.0968 0x0954 [ 15CABD0F7C00C47C70124907916AF3F1, 66B5C978B7FB6359AD8BAC9F568FE9D469E358FEAB07B1F129BA9E85F1DF723E ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
22:26:26.0218 0x0954 rdpdr - ok
22:26:26.0296 0x0954 [ 6728E45B66F93C08F11DE2E316FC70DD, EA63ECD4F84CAE08BD2BF843C48AF505B1B9D7B61349A63536C9C6FEBEF23452 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
22:26:26.0468 0x0954 RDPWD - ok
22:26:26.0546 0x0954 [ 3C37BF86641BDA977C3BF8A840F3B7FA, AB9A6E54DBA3F4561CD4837372BECCE0D73943D02E3288F944333039375AC08C ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
22:26:26.0796 0x0954 RDSessMgr - ok
22:26:26.0828 0x0954 [ F828DD7E1419B6653894A8F97A0094C5, E6150E1F598BA4CFEDB8FF075BC0D576518C331B864388F1CAE8812EFF106ECF ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
22:26:27.0046 0x0954 redbook - ok
22:26:27.0125 0x0954 [ 7E699FF5F59B5D9DE5390E3C34C67CF5, 3FCF0442D80AB181FED4303E570378736AA1F8718C0B8B70F689A1E45200FFE4 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
22:26:27.0281 0x0954 RemoteAccess - ok
22:26:27.0328 0x0954 [ 5B19B557B0C188210A56A6B699D90B8F, 0FA880B81AE615206FD1738B83428AAA491D54B24168339DE6E87FDE8C6C14B0 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
22:26:27.0453 0x0954 RemoteRegistry - ok
22:26:27.0593 0x0954 [ 9C675492B635CC1756AE4EAB3937552A, 3E25509E9CC800517773B583DB2FF6C4CFDE595F0446758C1AD33DA8ECF67CA7 ] RichVideo C:\Program Files\CyberLink\Shared files\RichVideo.exe
22:26:27.0671 0x0954 RichVideo - ok
22:26:27.0734 0x0954 [ AAED593F84AFA419BBAE8572AF87CF6A, CC0FFC5A69394C8830DC66320DA01A820BBF41AD7E57D0FC343561DC5EF9A360 ] RpcLocator C:\WINDOWS\system32\locator.exe
22:26:27.0890 0x0954 RpcLocator - ok
22:26:28.0187 0x0954 [ 2589FE6015A316C0F5D5112B4DA7B509, 2753785BA07A1A7A25E275332F5F9F403F6E8CBF396FD0905D6BA84B98C403A6 ] RpcSs C:\WINDOWS\System32\rpcss.dll
22:26:29.0171 0x0954 RpcSs - ok
22:26:29.0250 0x0954 [ 471B3F9741D762ABE75E9DEEA4787E47, D9ADE42965EC22AEB4B2AD21D429C3C8232A60AA9853DEFDA7AED86A13FE8623 ] RSVP C:\WINDOWS\system32\rsvp.exe
22:26:29.0437 0x0954 RSVP - ok
22:26:29.0531 0x0954 [ 25BE98C05808C57E4D8D26477DC12D39, 6FB8AB3458CFBA630C568B4A6741B6252348F5B720E7A8A170D463AA34A3D265 ] RTLE8023xp C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys
22:26:29.0656 0x0954 RTLE8023xp - ok
22:26:29.0687 0x0954 [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] SamSs C:\WINDOWS\system32\lsass.exe
22:26:29.0828 0x0954 SamSs - ok
22:26:29.0875 0x0954 [ 39763504067962108505BFF25F024345, 73C9710B61EDC7FBEDE1D7A767AA3D3A169E7AD012494D05CB5EE7E5C5752BB9 ] SASDIFSV C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
22:26:29.0890 0x0954 SASDIFSV - ok
22:26:30.0000 0x0954 [ 77B9FC20084B48408AD3E87570EB4A85, B5BC5FEC1356DECB66A7A671DB67112BDAC8F942BF1C4B986B1805B41EF362B1 ] SASKUTIL C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS
22:26:30.0015 0x0954 SASKUTIL - ok
22:26:30.0140 0x0954 [ 86D007E7A654B9A71D1D7D856B104353, 7B1DE53D637A5FC9619D5D07C48927AFEC89D959207F6F2E2F45DD054EEA04C7 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
22:26:30.0281 0x0954 SCardSvr - ok
22:26:30.0375 0x0954 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA, 0B582F47BD70732BAC48B8B86E5D06CE7F299A20E8177F3F2E6F28217C3FB605 ] Schedule C:\WINDOWS\system32\schedsvc.dll
22:26:30.0578 0x0954 Schedule - ok
22:26:30.0609 0x0954 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
22:26:30.0687 0x0954 Secdrv - ok
22:26:30.0750 0x0954 [ CBE612E2BB6A10E3563336191EDA1250, C331797DC3569F0E715766561DE2562F60B924378842246C35D2B1CF867E9D96 ] seclogon C:\WINDOWS\System32\seclogon.dll
22:26:30.0921 0x0954 seclogon - ok
22:26:31.0203 0x0954 [ B6A6B409FDA9D9EBD3AADB838D3D7173, 0A9A4C15C83AACBA9FC87B674CB17375DE988B41448A65101647AE67BDD15377 ] SenFiltService C:\WINDOWS\system32\drivers\Senfilt.sys
22:26:31.0500 0x0954 SenFiltService - ok
22:26:31.0531 0x0954 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0, 7105B026F966A992430F86C3698ABE15EC73E4772F1A3E362E29FD5247A5DCA6 ] SENS C:\WINDOWS\system32\sens.dll
22:26:31.0656 0x0954 SENS - ok
22:26:31.0687 0x0954 [ 0F29512CCD6BEAD730039FB4BD2C85CE, 4F98AE390D1B14A755700DD6CEFB9CF921F0404AF2145D2D7E5F52394F87C6A5 ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
22:26:31.0812 0x0954 serenum - ok
22:26:31.0843 0x0954 [ CCA207A8896D4C6A0C9CE29A4AE411A7, 5999B39242283CD803319AADCA171CCCC6E2A40FB2FAFA51B1D29F3FF2DD8D6C ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
22:26:31.0984 0x0954 Serial - ok
22:26:32.0109 0x0954 [ 8E6B8C671615D126FDC553D1E2DE5562, CEEC0067514555D5CA489F50E3D7562FCA8DB8E952C3C878604C9277FC77959F ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
22:26:32.0218 0x0954 Sfloppy - ok
22:26:32.0343 0x0954 [ 83F41D0D89645D7235C051AB1D9523AC, B681F33EEAA511D6A2DCB9FBAA407B739184C9FF6067C6B7E51F1FC37E9D4DD7 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
22:26:32.0671 0x0954 SharedAccess - ok
22:26:32.0765 0x0954 [ 1926899BF9FFE2602B63074971700412, F5C48EDBE5C6507527630B49C95BAA9F1E47EACC5A910F2B9A4528733E81A966 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
22:26:32.0859 0x0954 ShellHWDetection - ok
22:26:32.0859 0x0954 Simbad - ok
22:26:33.0140 0x0954 [ 4E8A4BB5B11D828FF986F6228B1CD3DF, 8750614C6211059045A41F9579BC5A87162E9F72D865BC9790D2D55E98E50412 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
22:26:33.0203 0x0954 SkypeUpdate - ok
22:26:33.0234 0x0954 [ 866D538EBE33709A5C9F5C62B73B7D14, BC94BEB7C17B4FCAC8B5D0D5006A203BC209E0504EECE149651D8691935696CD ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys
22:26:33.0343 0x0954 SLIP - ok
22:26:33.0343 0x0954 Sparrow - ok
22:26:33.0375 0x0954 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F, DD17733CBB370FCA08F0296704D7CBEACA3C8F76D0ABE4761C3B1FFDF7481D9E ] splitter C:\WINDOWS\system32\drivers\splitter.sys
22:26:33.0500 0x0954 splitter - ok
22:26:33.0546 0x0954 [ D8E14A61ACC1D4A6CD0D38AEBAC7FA3B, 130D686A220AF97EBF33DD481B79990F259B4EE38DD95A35CD3D0F0517790FF0 ] Spooler C:\WINDOWS\system32\spoolsv.exe
22:26:33.0671 0x0954 Spooler - ok
22:26:33.0734 0x0954 [ 76BB022C2FB6902FD5BDD4F78FC13A5D, 6031CB2344D7277FC703480EB43CF856A0F8F818EA98FF26A2CA532336CD2DFA ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
22:26:33.0828 0x0954 sr - ok
22:26:33.0906 0x0954 [ 3805DF0AC4296A34BA4BF93B346CC378, B57A14F1B7B0997E619DDD62B73157AA2399A9852166FB58139CBB358A88F6F3 ] srservice C:\WINDOWS\system32\srsvc.dll
22:26:34.0140 0x0954 srservice - ok
22:26:34.0296 0x0954 [ 5252605079810904E31C332E241CD59B, 039DD965DE2137219168F95CA3BF1CA7353957026BDD0481F7964E2578DF2128 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
22:26:34.0656 0x0954 Srv - ok
22:26:34.0703 0x0954 [ 0A5679B3714EDAB99E357057EE88FCA6, 01E1A101FFF48402C77E385A78FEF27876E04533B60EB1C18558A737E57E5FA8 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
22:26:34.0812 0x0954 SSDPSRV - ok
22:26:34.0937 0x0954 [ 8BAD69CBAC032D4BBACFCE0306174C30, 2AA0DA710FCBFF38FE8DA91EE02E7A4503269347E61F8D3246FCA3384BBA2305 ] stisvc C:\WINDOWS\system32\wiaservc.dll
22:26:35.0781 0x0954 stisvc - ok
22:26:35.0812 0x0954 [ 77813007BA6265C4B6098187E6ED79D2, 93939120E803C46FBFD577C8FC2E6C7E71C0460E01D25CB29579490640AB50C7 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys
22:26:35.0921 0x0954 streamip - ok
22:26:35.0937 0x0954 [ 3941D127AEF12E93ADDF6FE6EE027E0F, EA1F0E32E1C5E90FA4AAC421DEBBE086512340758D3217A6334E886BCE638B51 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
22:26:36.0125 0x0954 swenum - ok
22:26:36.0140 0x0954 [ 8CE882BCC6CF8A62F2B2323D95CB3D01, B408550A581F3DA222355964AFA4E976AD8471F0AA37573C42C4948AE5A23A3B ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
22:26:36.0281 0x0954 swmidi - ok
22:26:36.0281 0x0954 SwPrv - ok
22:26:36.0296 0x0954 symc810 - ok
22:26:36.0296 0x0954 symc8xx - ok
22:26:36.0312 0x0954 sym_hi - ok
22:26:36.0312 0x0954 sym_u3 - ok
22:26:36.0343 0x0954 [ 8B83F3ED0F1688B4958F77CD6D2BF290, 546D3602183702B4F53E84413CFA2C933D64C8540378E54A8DCD148F3F36A2DA ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
22:26:36.0468 0x0954 sysaudio - ok
22:26:36.0531 0x0954 [ C7ABBC59B43274B1109DF6B24D617051, 4384CA0AA6CE9B603CF7DB775A3C721E46715D5B120B94FB57DEADAADE18535B ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
22:26:36.0687 0x0954 SysmonLog - ok
22:26:36.0843 0x0954 [ 3CB78C17BB664637787C9A1C98F79C38, F35C31F6B7F366CB949D1044B357C76DEC9170441C5E559802794F62B72FD255 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
22:26:37.0125 0x0954 TapiSrv - ok
22:26:37.0281 0x0954 [ 93EA8D04EC73A85DB02EB8805988F733, 013008E23F5F14E0C836C28524D1181759BAF84530C6331163882A772217F398 ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
22:26:37.0828 0x0954 Tcpip - ok
22:26:37.0875 0x0954 [ 6471A66807F5E104E4885F5B67349397, F35CBFFB8BB235CCE30EF94A5273333900DD49FD506BF9D55D99A320B8A53A5A ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
22:26:38.0031 0x0954 TDPIPE - ok
22:26:38.0093 0x0954 [ C56B6D0402371CF3700EB322EF3AAF61, 7743FA4C734BCE38EFB1CA69BC17364D8421E2CD172F856F7E38E7AE1EE93F2F ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
22:26:38.0218 0x0954 TDTCP - ok
22:26:38.0250 0x0954 [ 88155247177638048422893737429D9E, B6D4E8691917946332C2208D01F8C8281978C1AD1E9951C5D99DF0D49AC34B3B ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
22:26:38.0375 0x0954 TermDD - ok
22:26:38.0500 0x0954 [ FF3477C03BE7201C294C35F684B3479F, D6246521539BA4ACD022D26983182F5E323D2EF1EA7C54265A248C43A1CE5202 ] TermService C:\WINDOWS\System32\termsrv.dll
22:26:38.0734 0x0954 TermService - ok
22:26:38.0828 0x0954 [ 1926899BF9FFE2602B63074971700412, F5C48EDBE5C6507527630B49C95BAA9F1E47EACC5A910F2B9A4528733E81A966 ] Themes C:\WINDOWS\System32\shsvcs.dll
22:26:38.0921 0x0954 Themes - ok
22:26:38.0968 0x0954 [ DB7205804759FF62C34E3EFD8A4CC76A, 13A4248F528CE98ACA66898E56822E4FC49B11F491FF1F61A687BA601BF0A802 ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
22:26:39.0156 0x0954 TlntSvr - ok
22:26:39.0171 0x0954 TosIde - ok
22:26:39.0203 0x0954 [ 55BCA12F7F523D35CA3CB833C725F54E, 849FB1AE31B143B14B298BBC0D91230693D41DEB95F46516878F53A7F4186C38 ] TrkWks C:\WINDOWS\system32\trkwks.dll
22:26:39.0343 0x0954 TrkWks - ok
22:26:39.0390 0x0954 [ 5787B80C2E3C5E2F56C2A233D91FA2C9, 3774905CF77954DFCECDA5BCC7CDE3D0ED72712BFAAD85ADAE5246306447E46C ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
22:26:39.0515 0x0954 Udfs - ok
22:26:39.0531 0x0954 ultra - ok
22:26:39.0734 0x0954 [ 402DDC88356B1BAC0EE3DD1580C76A31, 32A686595710336A6BFD54C03F552AE39439611662F84EF5D24193AE5665C6F3 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
22:26:40.0312 0x0954 Update - ok
22:26:40.0390 0x0954 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91, 7746916DB48E3F5B243B63C066596AD9037A494BF1AD935946DD04AC85D983DF ] upnphost C:\WINDOWS\System32\upnphost.dll
22:26:40.0515 0x0954 upnphost - ok
22:26:40.0546 0x0954 [ 05365FB38FCA1E98F7A566AAAF5D1815, 16843048CEEC3DAA3B953A12FF1EE339E86783A08F2A56DA7F94AD9F9717D77D ] UPS C:\WINDOWS\System32\ups.exe
22:26:40.0640 0x0954 UPS - ok
22:26:40.0687 0x0954 [ 173F317CE0DB8E21322E71B7E60A27E8, 7042441BA63AE38AE9D7BE0BC5CA7404FC9EE5BB3F084604A68F01E82769652A ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
22:26:40.0812 0x0954 usbccgp - ok
22:26:40.0859 0x0954 [ 65DCF09D0E37D4C6B11B5B0B76D470A7, 90EBA8BAF45932B453D905EDF2BDDDF3A432BFD50B9F7DF58CDEAE98D11C2E2F ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
22:26:41.0078 0x0954 usbehci - ok
22:26:41.0140 0x0954 [ 1AB3CDDE553B6E064D2E754EFE20285C, A99C4528C4227B1E96847614745AAFACD3C5F1BDFE435214DBF78740FFB300FE ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
22:26:41.0250 0x0954 usbhub - ok
22:26:41.0296 0x0954 [ A32426D9B14A089EAA1D922E0C5801A9, ED1DC52EE45F8EAD3AEC4B1F817BB25634141CF48295494C5947DCE6CF7A9817 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
22:26:41.0406 0x0954 USBSTOR - ok
22:26:41.0453 0x0954 [ 26496F9DEE2D787FC3E61AD54821FFE6, 8BE7FF647470B9A951CBB478FAF83D657A15CC78037F42348A6B738F21D523DA ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
22:26:41.0578 0x0954 usbuhci - ok
22:26:41.0640 0x0954 [ 63BBFCA7F390F4C49ED4B96BFB1633E0, AEB89CF43376709CDD715D844E8CBB8F2BE24D39795F45F7C84F21962F3A52AB ] usbvideo C:\WINDOWS\system32\Drivers\usbvideo.sys
22:26:41.0796 0x0954 usbvideo - ok
22:26:41.0843 0x0954 [ 0D3A8FAFCEACD8B7625CD549757A7DF1, B9CFDEFCD66AA139F3DC2F967B184669532922563AD5A71769BABDC4370D065E ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
22:26:42.0015 0x0954 VgaSave - ok
22:26:42.0015 0x0954 ViaIde - ok
22:26:42.0171 0x0954 [ 396138D1F159EBC7C1732A92094C8A7E, F7B607B81B6667F0B10DFD195F18ED93AE8673F71692E1B7862BE49BC4BDADF1 ] VMUVC C:\WINDOWS\system32\Drivers\VMUVC.sys
22:26:42.0328 0x0954 VMUVC - ok
22:26:42.0359 0x0954 [ 4C8FCB5CC53AAB716D810740FE59D025, 010EAC43DBED700B73E4FC908FAAF9F6A0168EBBD5D86751E49BC33AAA18BFA4 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
22:26:42.0468 0x0954 VolSnap - ok
22:26:42.0593 0x0954 [ 7A9DB3A67C333BF0BD42E42B8596854B, D31A9A3B1AAAB373EDD73B674102395212FCB616F829E938B7B2B7BE7D4752C5 ] VSS C:\WINDOWS\System32\vssvc.exe
22:26:42.0750 0x0954 VSS - ok
22:26:42.0906 0x0954 [ D3EE7CC6B0C29083A874DB9D890BCEB5, 6F75CFCD91F45C6559D65315EC4B9D73F7AD278C632B733B47382F23F6DDD9B1 ] vvftUVC C:\WINDOWS\system32\drivers\vvftUVC.sys
22:26:43.0296 0x0954 vvftUVC - ok
22:26:43.0375 0x0954 [ 54AF4B1D5459500EF0937F6D33B1914F, FA1876888BCB9C72A92369DBED4FF1A8666784523FB41E618FA0919490FCDDB9 ] W32Time C:\WINDOWS\system32\w32time.dll
22:26:43.0531 0x0954 W32Time - ok
22:26:43.0578 0x0954 [ E20B95BAEDB550F32DD489265C1DA1F6, 5589B2067E6C9FBA290D8C5EADDC198EBAF39C50C3CD7D2BC5CDA7CBFBC445E5 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
22:26:43.0750 0x0954 Wanarp - ok
22:26:43.0750 0x0954 WDICA - ok
22:26:43.0796 0x0954 [ 6768ACF64B18196494413695F0C3A00F, 3A8F8586F1D997D19A8478345338D2AECD785AEABDB61531DD3F92003D3230A5 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
22:26:43.0921 0x0954 wdmaud - ok
22:26:44.0015 0x0954 [ 77A354E28153AD2D5E120A5A8687BC06, 8B2D37A4443501C0A8E70BC2079BE27F0A36FD07B561E6F68B40A72EABBC2DFE ] WebClient C:\WINDOWS\System32\webclnt.dll
22:26:44.0234 0x0954 WebClient - ok
22:26:44.0421 0x0954 [ 2D0E4ED081963804CCC196A0929275B5, E1D75C7D7233D81DFDE13160B0C80138DF8B35230D04FB79B367A52FACF69BF8 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
22:26:44.0578 0x0954 winmgmt - ok
22:26:44.0625 0x0954 [ C51B4A5C05A5475708E3C81C7765B71D, F776D2680BD3407307B7072626F78460361FC5BC38623C9E16F394D300AB25DE ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
22:26:44.0750 0x0954 WmdmPmSN - ok
22:26:45.0078 0x0954 [ BAB489A5FE26F2D0C910CF7AF7E4CF92, 700325258CA7A2BC2D7AA6E3176194D21229BEA76EA37BEAE117BBF87CE4ECD4 ] Wmi C:\WINDOWS\System32\advapi32.dll
22:26:45.0656 0x0954 Wmi - ok
22:26:45.0734 0x0954 [ E0673F1106E62A68D2257E376079F821, 12992F18C9653050B10DC61D12988067933FCFDF02123D3A7EF5DE607A785DDC ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
22:26:45.0875 0x0954 WmiApSrv - ok
22:26:45.0906 0x0954 [ 6ABE6E225ADB5A751622A9CC3BC19CE8, 4061C5D0F051DFF1730E2A3BFC1CCA97B29602FC50F10F6B44D93B0D28F42024 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
22:26:46.0093 0x0954 WS2IFSL - ok
22:26:46.0125 0x0954 [ 7C278E6408D1DCE642230C0585A854D5, DA46079A04F6E8E3441E4AE454AEAC02B3E935DE29CE7F6D4476F57867FCC12A ] wscsvc C:\WINDOWS\system32\wscsvc.dll
22:26:46.0281 0x0954 wscsvc - ok
22:26:46.0312 0x0954 [ C98B39829C2BBD34E454150633C62C78, 71B60EA3AD0E2637917D528C6A9E7ECF2949E3E5E91036AA5BBADA95BD725511 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
22:26:46.0437 0x0954 WSTCODEC - ok
22:26:46.0468 0x0954 [ 35321FB577CDC98CE3EB3A3EB9E4610A, C9A6F5CF282D8FCB3CDFCC4B306013480E78E1B664E1A60A4E27B161F9FFD4CD ] wuauserv C:\WINDOWS\system32\wuauserv.dll
22:26:46.0593 0x0954 wuauserv - ok
22:26:46.0656 0x0954 [ F15FEAFFFBB3644CCC80C5DA584E6311, 79B3E9AF35976CE49921E9BEA3BA3B4A8AF762FD3F284B62954038B5FFB32471 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
22:26:46.0687 0x0954 WudfPf - ok
22:26:46.0734 0x0954 [ 28B524262BCE6DE1F7EF9F510BA3985B, AEFF02B899801A63CBB262757C3D4369E38BFF0690BD085DE60E873DFBE3C3F4 ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
22:26:46.0812 0x0954 WudfRd - ok
22:26:46.0843 0x0954 [ 05231C04253C5BC30B26CBAAE680ED89, 5C03C2D7E0B573646D32F4093E2FF2C3BA391C39F5BA37D67F69D38E357FCC3D ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
22:26:46.0875 0x0954 WudfSvc - ok
22:26:47.0109 0x0954 [ 81DC3F549F44B1C1FFF022DEC9ECF30B, 3D14BFEA539F9CEB16555BD56C5E3C7C8F6692FC62C2789F8AAEA1C042E63940 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
22:26:47.0500 0x0954 WZCSVC - ok
22:26:47.0562 0x0954 [ 295D21F14C335B53CB8154E5B1F892B9, 9418477C2E3EA93E93D931A4EDD4500DA568FAD6040204B5201D1080203B0BBC ] xmlprov C:\WINDOWS\System32\xmlprov.dll
22:26:47.0750 0x0954 xmlprov - ok
22:26:47.0828 0x0954 [ 5867CE254625645345C833510D24F124, 72808936B15373DDB3B3DAD46D0368A9CBD5CF0829F0FE2D63F3A0731102277C ] {95808DC4-FA4A-4C74-92FE-5B863F82066B} C:\Program Files\CyberLink\PowerDVD\000.fcl
22:26:47.0828 0x0954 {95808DC4-FA4A-4C74-92FE-5B863F82066B} - ok
22:26:47.0843 0x0954 ================ Scan global ===============================
22:26:47.0875 0x0954 [ 42F1F4C0AFB08410E5F02D4B13EBB623, 924C30587C51C0D1E1F47991969AF492A644552E15F2480EA991DCB74A3E68D5 ] C:\WINDOWS\system32\basesrv.dll
22:26:48.0031 0x0954 [ 1618F36D4F7F6CCCEB3EE44BA95BE85C, 1ED920E475221228EF215708701EC166A0B1BBCBD236E5B047420EBD0FF1371A ] C:\WINDOWS\system32\winsrv.dll
22:26:48.0328 0x0954 [ 1618F36D4F7F6CCCEB3EE44BA95BE85C, 1ED920E475221228EF215708701EC166A0B1BBCBD236E5B047420EBD0FF1371A ] C:\WINDOWS\system32\winsrv.dll
22:26:48.0375 0x0954 [ 0E776ED5F7CC9F94299E70461B7B8185, 22750B3829133D1D4BB3CE2FA6247BE2373B5D15A6ED1C8A71673AA1CE7D9530 ] C:\WINDOWS\system32\services.exe
22:26:48.0375 0x0954 [ Global ] - ok
22:26:48.0375 0x0954 ================ Scan MBR ==================================
22:26:48.0406 0x0954 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
22:26:48.0765 0x0954 \Device\Harddisk0\DR0 - ok
22:26:48.0765 0x0954 ================ Scan VBR ==================================
22:26:48.0765 0x0954 [ D09E7384ADF2C89D6D6FF9703B67F1A7 ] \Device\Harddisk0\DR0\Partition1
22:26:48.0812 0x0954 \Device\Harddisk0\DR0\Partition1 - ok
22:26:48.0828 0x0954 [ FC76264149F6D88BB7FDF8E1C40EA309 ] \Device\Harddisk0\DR0\Partition2
22:26:48.0875 0x0954 \Device\Harddisk0\DR0\Partition2 - ok
22:26:48.0875 0x0954 ================ Scan generic autorun ======================
22:26:48.0921 0x0954 [ 89954EEC62096524E6B08C6B62C12C11, AB6986C8D4E4A3B5AC3D0A43465D584BA40CED3D253269EDAF1CFB3A975002B0 ] C:\Program Files\Cyberlink\Shared Files\brs.exe
22:26:48.0953 0x0954 BDRegion - ok
22:26:48.0984 0x0954 [ 046E0AF7AC9FAC3D50BD2267139BA70F, EF71996B035ABA71F92CE8CC10E6FF27057EAE7BFAEB84F6ABE1BFFE6387EEFC ] C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
22:26:49.0140 0x0954 RemoteControl - detected UnsignedFile.Multi.Generic ( 1 )
22:26:51.0609 0x0954 Detect skipped due to KSN trusted
22:26:51.0609 0x0954 RemoteControl - ok
22:26:51.0640 0x0954 [ D5529678A1D92D125B43E3C2A308223E, 51D4C7EFFC7084FC3B12BD1FEB7C2D26BBDE9C5B27697ABEDA4D1217743A7C40 ] C:\Program Files\CyberLink\PowerDVD\Language\Language.exe
22:26:51.0671 0x0954 LanguageShortcut - ok
22:26:53.0218 0x0954 [ 24A3FDF5F2ED5AD16BDD35150F00EFDA, EC52FBD9F15D082633D3104CE1213693A41363F44653F238D0D33F4F8F96EA44 ] C:\Program Files\AVG\AVG2013\avgui.exe
22:26:54.0671 0x0954 AVG_UI - ok
22:26:54.0984 0x0954 [ 1983A11F702BDC5DB65B4B0F376FF6FD, 05F167421B76D8EC1C4D499F1E1A3C50215A8AA287E69CF68C95385950EF93B3 ] C:\Program Files\Analog Devices\Core\smax4pnp.exe
22:26:55.0593 0x0954 SoundMAXPnP - ok
22:26:55.0656 0x0954 [ 8BA48BD4739C5E4DAB805696BAAC7C01, 047D0152DE690F2FCD762004A597C8F45F367613BF19A4AE6FA1CF67220AD4DC ] C:\Program Files\Vimicro Corporation\VMUVC\VMonitor.exe
22:26:55.0687 0x0954 VMonitorVMUVC - detected UnsignedFile.Multi.Generic ( 1 )
22:26:58.0187 0x0954 Detect skipped due to KSN trusted
22:26:58.0187 0x0954 VMonitorVMUVC - ok
22:26:58.0234 0x0954 [ F4F7C86191A981C804326E2EF6F3604F, 1ECE05E643AFFB27A148A8B86615F6C167875EF29D6FF7E2FD15B8DCBE6B8A16 ] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
22:26:58.0250 0x0954 Adobe Reader Speed Launcher - ok
22:26:58.0562 0x0954 [ 48BE298F7FD1BEF4D8FBACB04D8D95C4, D375B3F6E850E4B0EC81BAA0E554C356BE2248AA77C6C56F5267CA05460FE4EB ] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
22:26:59.0140 0x0954 Adobe ARM - ok
22:26:59.0296 0x0954 [ 9A7F6B70939124BC0469DB3EC6B99963, 84AC2FE8EDBE5FE00C90E475A06FDA30F279902987003E28CD03480DE6E5D1EA ] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
22:26:59.0421 0x0954 StartCCC - detected UnsignedFile.Multi.Generic ( 1 )
22:27:01.0921 0x0954 Detect skipped due to KSN trusted
22:27:01.0921 0x0954 StartCCC - ok
22:27:02.0046 0x0954 [ 35AC4B63CBB9FB6B4472913E9948B517, 104C7D5E97A680CDF660AA98E6E92447F0FF6B857A847CDAFB0A9EB26086B5A4 ] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
22:27:02.0078 0x0954 APSDaemon - ok
22:27:02.0296 0x0954 [ 916A2C4EB028604783FD5EA169236C1D, C97DAA1BE5C912DDCEDBA7619631BB98F4A9B32B1E40C5374A64E25305E0A1C4 ] C:\Program Files\QuickTime\QTTask.exe
22:27:02.0609 0x0954 QuickTime Task - detected UnsignedFile.Multi.Generic ( 1 )
22:27:05.0078 0x0954 Detect skipped due to KSN trusted
22:27:05.0078 0x0954 QuickTime Task - ok
22:27:05.0296 0x0954 [ E298E2FCB4283B92FFAD5F4B6EF66699, A01432B5FD6346C86F5204FACFD56EECF50C2869C426E3CBC0F33862AF1336F3 ] C:\Program Files\MAGIX\Movie_Edit_Pro_17_Plus_Download_Version\TrayServer_en.exe
22:27:05.0453 0x0954 TrayServer - detected UnsignedFile.Multi.Generic ( 1 )
22:27:08.0000 0x0954 Detect skipped due to KSN trusted
22:27:08.0000 0x0954 TrayServer - ok
22:27:08.0406 0x0954 [ 14D6542607ACD4B2D1DDB1A36E0D8813, 3A270600549E8E7988D5AF3486C0F504269B9573393D87BF87BDB2287BF007B2 ] C:\Program Files\Common Files\Java\Java Update\jusched.exe
22:27:08.0531 0x0954 SunJavaUpdateSched - ok
22:27:08.0656 0x0954 [ 5F1D5F88303D4A4DBC8E5F97BA967CC3, 5FB24FC7916A6E6B3BE7D84CB1684215B266CD1495575C2E5672B8447932E5B1 ] C:\WINDOWS\system32\ctfmon.exe
22:27:08.0875 0x0954 ctfmon.exe - ok
22:27:09.0843 0x0954 [ 3E930C641079443D4DE036167A69CAA2, DEBA83978850F17B33A3C4C06C5E707B9A3FACA30FE0DFC5A9425EF2CA592473 ] C:\Program Files\Messenger\msmsgs.exe
22:27:12.0171 0x0954 MSMSGS - ok
22:27:12.0234 0x0954 Waiting for KSN requests completion. In queue: 3
22:27:13.0234 0x0954 Waiting for KSN requests completion. In queue: 3
22:27:14.0234 0x0954 Waiting for KSN requests completion. In queue: 3
22:27:15.0265 0x0954 AV detected via SS1: AVG Internet Security 2013, 2013.0, disabled, updated
22:27:15.0265 0x0954 AV detected via SS1: avast! Antivirus, 5.0.150996950, enabled, updated
22:27:15.0265 0x0954 FW detected via SS1: AVG Internet Security 2013, 2013.0, disabled
22:27:15.0281 0x0954 Win FW state via NFM: disabled
22:27:17.0656 0x0954 ============================================================
22:27:17.0656 0x0954 Scan finished
22:27:17.0656 0x0954 ============================================================
22:27:17.0656 0x0b3c Detected object count: 0
22:27:17.0656 0x0b3c Actual detected object count: 0
22:27:49.0250 0x0e70 Deinitialize success

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

U izvještajima ne vidim tragove aktivnog malwarea, pa ću morati da zaključim je ono AVG-ov false positive.


Arrow

Potrebno je deinstalirati ComboFix:
klikni start (ili ), a zatim RUN.

Na Visti i 7 koristiti Start Search polje ukoliko Run nije dostupan.

U liniju za unos teksta ukucaj (iskopiraj) sljedeće:

ComboFix /Uninstall

Primjeti da postoji razmak između "ComboFix" i "/Uninstall".



a zatim klikni OK (ili pritisni Enter).


Sačekaj da se proces deinstalacije završi.



Arrow

Sledeća procedura će implementirati završno čišćenje.

Arrow Preuzmi "Xplode"-ov DelFix alat i snimi ga na Desktop.
Dvoklikom pokreni alat i štikliraj kućice ispred sledećih opcija;

Remove disinfection tools
Create registry backup
Purge System Restore


Klikni na dugme Run i pričekaj trenutak dok alat ne završi svoj rad.
Od ovog trenutka, svi korišćeni alati u ovoj temi bi trebali biti obrisani.
Alat će takođe formirati izveštaj za tebe. (C:\DelFix.txt)

Alat će snimiti i zdravo stanje registy-ja i napraviti backup koristeci integrisan program "ERUNT" u %windir%\ERUNT\DelFix
Alat briše stare system restore tačke i pravi novu, svežu tačku nakon čišćenja.



Arrow

Podrška za XP je prekinuta u aprilu ove godine, a imaš C2D procesor kao i 3GiB RAM-a pa ti zbog toga toplo preporučujem da makneš taj XP i instaliraš Windows 7 SP1 ili Windows 8.1 Update 1. Prije toga, testiraj ispravnost hard diska. Ako kojim slučajem odlučiš ostati na XP-u, deinstaliraj AVG 2013 i instaliraj ili njegovu trenutnu verziju ili neki drugi AV.
Takođe, Addition.txt pokazuje da je sistemu dostupno samo 2GiB RAm-a te stoga ne bi bilo loše da provjeriš da li su svi moduli kako treba postavljeni.

offline
  • Pridružio: 07 Dec 2014
  • Poruke: 47

Napisano: 07 Dec 2014 22:56

Odradio sve sa Xplode, restartovao sam pc i opet mu je trebalo 10 minuta da udje u sistem i kad udje sve je usporeno.

Gmer mi je sjebao sistem nacisto, a posto mi sistem restore ne radi mogu da se slikam?

Kako da ga vratim na staro pre koriscenja gmera ili cu izgleda morati da deinstaliram windows?

Dopuna: 07 Dec 2014 23:19

Evo zauzece racunara mi je oko 50 % a nista ne radim i nije virus.

U toku skeniranja sa Gmerom mi je usporio racunar, mislio sam da to moze da resi restartom ali sad je sporo stalno

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

GMER ti je iz nekog razloga prebaciohard disk u PIO režim rada. Uradi sljedeće:

Klikni desnim tasterom miša na My Computer i onda izaberi Manage.
Na lijevoj strani novootvorenog prozora klikni na Device Manager.
Pod IDE ATA/ATAPI Controllers nađi Primary IDE Controller i Secondari IDE Controller.
Na oboje klikni desnim tasterom miša i odaberi opciju Uninstall.
Kada to uradiš, gore u padajućem meniju izaberi Action -> Scan for hardware changes.
Tražiće ti da restartuješ računar dva puta zaredom i to bi trebalo da ti riješi problem.

offline
  • Pridružio: 07 Dec 2014
  • Poruke: 47

Napisano: 08 Dec 2014 12:19

Ja imam po 2 Primary IDE Controller i 2 Secondari IDE Controller, jel sva 4 da obelezim pa da stisnem unistall?




Dopuna: 08 Dec 2014 12:19

pogresna slika, ovo sam hteo






Dopuna: 08 Dec 2014 14:25

Sad sam gledao samo mi je prvi od 4 u pio modu, da ne diram ove ostale ?

evo slika













offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Dobro, onda uradi to za samo taj na kojem ti piše PIO ako već nisi.

offline
  • Pridružio: 07 Dec 2014
  • Poruke: 47

Uradio sam, hvala za ovo, sad je sve u redu.

Sto se tice rama to kad dodje neko struzniji kod mene pitacu ga da mi pogleda, posto ja ne volim sam da prckam oko kucista.

Reci samo kako da izbrisem avast iz registry posto combofix je prijavio da nije sasvim uklonjen ? Mora da su ostali neki repovi.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

clinteastwood ::Uradio sam, hvala za ovo, sad je sve u redu.

Sto se tice rama to kad dodje neko struzniji kod mene pitacu ga da mi pogleda, posto ja ne volim sam da prckam oko kucista.

Reci samo kako da izbrisem avast iz registry posto combofix je prijavio da nije sasvim uklonjen ? Mora da su ostali neki repovi.


Probaj opet sa Avast uninstallerom, mada bih ja na tvom mjestu formatirao C: i instalirao 7 SP1 ili 8.1 Update 1.

Ko je trenutno na forumu
 

Ukupno su 1360 korisnika na forumu :: 100 registrovanih, 9 sakrivenih i 1251 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 6018 - dana 19 Dec 2025 13:41

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 100jan, A.R.Chafee.Jr., Aleksa-, aleph_one, Andrija357, aramis s, Arsenije, belov, Ben Roj, Bo96, Bobrock1, Bojan198527, Bokiboks, bufanje, casual03, Chainsaw, Cigi, Cirkon, coaa, crazydkure, crnitrn, darkkran, dd201176, dejno, dekan.m, Deki Duga Devetka, Despot Đurađ, Dioniss, Djuza, Dolinc, DonRumataEstorski, draganl, Duh sa sekirom, dushan, dzenan_y, FOX, Gitzherai, ikan, indja, Ivan001, Ivoo, jalos, jarovitt, Jovan1983, Kajzer Soze, Kamov, kibihrchak, Kobrim, kontrasvijeta, MarkoD, mačković, mercedesamg, Mickey91, miki kv, mikrimaus, mile.ilic75, Millennium, mist-mist, Mzee, nenad81, nobutado, novator, Orc, Oscar2, pablojepao, Papadubi, pceklic, Polifon, predragc, promajauglavi, Qvazimodo, R_038, raso76, ruma, samocitam, sap, sekretar, Skywhaler, Sone1983, sspp, stokssone, synergia, TheDictator, Tribal, tritonus, US_Rank_0, Veless, voja64, vrlenija, vuksa72, W123, Wrangler, XBMC, Zavulon, zemljanin, zeo, zhuki8, zubri, zzapNDjuric99, zziko