hakovani facebook profili

hakovani facebook profili

offline
  • Crki  Male
  • Novi MyCity građanin
  • Pridružio: 12 Okt 2008
  • Poruke: 11

Skenirao sam komp i pronašao 113 malvera

Moje ženče igrala je neku igricu na facebooku i ,,ništa"nije kliktala,al su profili sje*ani.POkušao sam reset lozinke i uspem,ali ne mogu da se logujem na fb jer piše da je zbog hakerisanja zaključan.Ja sam skenirao komp i pronašao virus koji je antivirus izbrisao.Profili fb od moje porodice su hakerisani 3 imaju zapamćene lozinke u fajerfoksu,ali četvrti nije imao zapamćenu lozinku,ali svi su isto prošli,kada pokušam logovanje ovo izađe


Recently, there was a security incident on another website unrelated to Facebook. Facebook was not directly affected by the incident, but your Facebook account is at risk because you were using the same password in both places.
In order to keep your information secure, we've locked your account. Before we can unlock it, please verify your identity and change your password.
Your account will remain hidden until you complete this process.


kliknem nastavi i piše

Potvrdite svoj identitet

To confirm your identity, please log in from one of these browsers you have used before:

Firefox за Windows 7 (22. новембар у 17:26)
Firefox за Windows 7 (11. новембар у 22:31)

Alternatively, you can upload a photo ID to confirm your identity.

kliknem na upload i


Opremi foto ID
To make sure this is your account, we need you to upload a color photo of your government-issued ID. Your ID should include your name, birthday and photo.
Acceptable IDs include your:

Passport
Driver's license
State-issued ID card
Military ID card
Immigration ID with signature

We can't accept:

Your profile picture
Everyday pictures

uglavnom kada se klikne da nemam dokumenta,kaže

If you don't have a government-issued photo ID, you can upload two alternate IDs. Together, these should clearly show:

Ваше име
Твој рођендан
Your photo

Forms of alternate ID we accept include a utility bill, company or school ID, library or sports club card, birth certificate, social security card or bank statements.


strah me da ne sje*em i komp,da ne uleti neki virus ako otpratim sve korake.Nemam nameru da im šaljem kopiju ličnih dokumenata,a treba mi savet kako da vratim fb nalog.Napravio sam novi profil i u pretrazi nema nas.

offline
  • Pridružio: 09 Avg 2011
  • Poruke: 15879
  • Gde živiš: Beograd

Pozdrav, hajde prvo da proverimo da li je racunar cist...



Preuzmi Farbar Recovery Scan Tool i sacuvaj ga na Desktop

Napomena: Potrebno je preuzeti onu verziju koja je kompatibilna sa tvojim sistemom.

Dvoklikom pokreni FRST;
Kada se alat startuje, klikni Yes na disclaimer.
Klikni na dugme Scan;
Alat ce kreirati izvestaj (FRST.txt) u isti direktorijum gde je i FRST.exe sacuvan.
Iskopiraj sadrzaj tog loga u poruku.
Alat bi takodje pri prvom pokretanju trebao da kreira i dodatni izvestaj (Addition.txt). Taj izvestaj okaci u poruku koristeci opciju "Prikaci file".



Preuzmi aswMBR i sacuvaj ga na Desktop.

Dvoklikom pokreni aswMBR.

Ukoliko dobijes sledecu poruku:
Would you like to download latest Avast! virus definitions?
Klikni na dugme Yes i pricekaj da se proces preuzimanja definicija zavrsi.


Proveri da je pod AV Scan: izabrana opcija QuickScan

Klikni na Scan.

Kada zavrsi skeniranje ( Scan finished successfully ) klikni Save log.
Sacuvaj aswMBR log na Desktop.
Sadrzaj tog loga iskopiraj u temi.

offline
  • Crki  Male
  • Novi MyCity građanin
  • Pridružio: 12 Okt 2008
  • Poruke: 11

Napisano: 08 Dec 2013 14:50

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 08-12-2013 02
Ran by PC (administrator) on PC-PC on 08-12-2013 14:35:53
Running from C:\Users\PC\Desktop
Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: English(US)
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) ===================

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Advanced Micro Devices) C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Vimicro) C:\Program Files\USB Camera\VM331_STI.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(CyberLink Corp.) C:\Program Files\CyberLink\PowerDVD10\PDVD10Serv.exe
(cyberlink) C:\Program Files\CyberLink\Shared files\brs.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(ACD Systems) C:\Program Files\Common Files\ACD Systems\EN\DevDetect.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(DT Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTLite.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Mozilla Corporation) C:\Program Files\Mozilla Thunderbird\thunderbird.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Nero AG) C:\Program Files\Nero\Update\NASvc.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe
(Farbar) C:\Users\PC\Desktop\FRST(1).exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [StartCCC] - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2010-11-29] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [SmartAudio] - C:\Program Files\CONEXANT\SAII\SAIICpl.exe [307768 2010-04-28] ()
HKLM\...\Run: [331BigDog] - C:\Program Files\USB Camera\VM331_STI.EXE [536576 2010-01-15] (Vimicro)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1877288 2010-09-03] (Synaptics Incorporated)
HKLM\...\Run: [RemoteControl10] - C:\Program Files\CyberLink\PowerDVD10\PDVD10Serv.exe [87336 2010-02-02] (CyberLink Corp.)
HKLM\...\Run: [BDRegion] - C:\Program Files\CyberLink\Shared files\brs.exe [75048 2010-03-13] (cyberlink)
HKLM\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [4858968 2013-08-30] (AVAST Software)
HKLM\...\Run: [GrooveMonitor] - C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [20131121] - C:\Program Files\AVAST Software\Avast\Setup\emupdate\c86e6ed3-2bdf-4253-a8d3-354c72247741.exe [180184 2013-11-23] (AVAST Software)
HKCU\...\Run: [Device Detector] - DevDetect.exe -autorun
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [369200 2009-10-30] (DT Soft Ltd)
HKCU\...\Run: [msnmsgr] - C:\Program Files\Windows Live\Messenger\msnmsgr.exe [4283256 2011-05-13] (Microsoft Corporation)
HKCU\...\Run: [Facebook Update] - C:\Users\PC\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-07-11] (Facebook Inc.)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = google.rs/webhp?hl=sr&tab=ww
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xDB930A4B1A47CC01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = sr-Latn-RS
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = en.v9.com/?utm_source=b&utm_medium=stk&from.....1373643029
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = en.v9.com/?utm_source=b&utm_medium=stk&from.....1373643029
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = en.v9.com/?utm_source=b&utm_medium=stk&from.....1373643029
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe en.v9.com/?utm_source=b&utm_medium=stk&from.....1373643029
SearchScopes: HKCU - DefaultScope {A5C69632-4EEC-46EC-8286-3299033515F3} URL = search.yahoo.com/search?fr=chr-greentree_ie.....=407453&p={searchTerms}
SearchScopes: HKCU - {A5C69632-4EEC-46EC-8286-3299033515F3} URL = search.yahoo.com/search?fr=chr-greentree_ie.....=407453&p={searchTerms}
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\pe073wgq.default
FF DefaultSearchEngine: Yahoo
FF Homepage: hxxp://www.google.rs/webhp?hl=sr&tab=ww
FF Keyword.URL: hxxp://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=407453&p=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_152.dll ()
FF Plugin: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw_1204144.dll (Adobe Systems, Inc.)
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @verimatrix.com/ViewRightWeb - C:\Program Files\Verimatrix\ViewRight Web\\npViewRight.dll (Verimatrix, Inc.)
FF Plugin: @videolan.org/vlc,version=1.1.11 - C:\Program Files\VideoLAN\VLC\npvlc.dll No File
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\PC\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Plugin HKCU: @verimatrix.com/ViewRightWeb - C:\Program Files\Verimatrix\ViewRight Web\\npViewRight.dll (Verimatrix, Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazon-en-GB.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-en-GB.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\pogodakyu.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\vokabular.xml
FF Extension: artur.dubovoy - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\pe073wgq.default\Extensions\artur.dubovoy@gmail.com.xpi
FF Extension: Keylogger - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\pe073wgq.default\Extensions\Keylogger@lipo-technologies.com.xpi
FF Extension: prefs - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\pe073wgq.default\Extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}.xpi
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF

========================== Services (Whitelisted) =================

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [284160 2010-11-29] (Advanced Micro Devices, Inc.)
R2 AMD Reservation Manager; C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [140224 2010-06-17] (Advanced Micro Devices)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [656672 2010-07-29] (Broadcom Corporation.)
R2 NAUpdate; C:\Program Files\Nero\Update\NASvc.exe [503080 2010-05-04] (Nero AG)

==================== Drivers (Whitelisted) ====================

R3 ACPIVPC; C:\Windows\System32\DRIVERS\AcpiVpc.sys [23136 2010-01-20] (Lenovo Corporation)
R0 amd_sata; C:\Windows\System32\DRIVERS\amd_sata.sys [62592 2010-05-14] (Advanced Micro Devices)
R0 amd_xata; C:\Windows\System32\DRIVERS\amd_xata.sys [24192 2010-05-14] (Advanced Micro Devices)
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [29816 2013-08-30] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [66336 2013-08-30] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [61680 2013-08-30] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [49376 2013-08-30] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [770344 2013-08-30] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [369584 2013-08-30] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [56080 2013-08-30] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [177864 2013-08-30] ()
S3 btwampfl; C:\Windows\System32\drivers\btwampfl.sys [297000 2010-07-13] (Broadcom Corporation.)
S3 RSUSBVSTOR; C:\Windows\System32\Drivers\RtsUVStor.sys [218624 2010-09-30] (Realtek Semiconductor Corp.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [691696 2011-07-19] ()
R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [196352 2010-10-21] (Vimicro Corporation)
R3 vmuvcflt; C:\Windows\System32\Drivers\vmuvcflt.sys [5888 2010-08-16] (Vimicro Corporation)
R2 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC}; C:\Program Files\CyberLink\PowerDVD10\NavFilter\000.fcl [87536 2010-03-13] (CyberLink Corp.)
U3 alk50cfp; C:\Windows\System32\Drivers\alk50cfp.sys [0 ] (Microsoft Corporation)
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [x]
S3 tsusbhub; system32\drivers\tsusbhub.sys [x]
S3 VGPU; System32\drivers\rdvgkmd.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-12-08 14:35 - 2013-12-08 14:36 - 00013445 _____ C:\Users\PC\Desktop\FRST.txt
2013-12-08 14:35 - 2013-12-08 14:35 - 00000000 ____D C:\FRST
2013-12-08 14:33 - 2013-12-08 14:33 - 01060441 _____ (Farbar) C:\Users\PC\Desktop\FRST(1).exe
2013-12-08 10:55 - 2013-12-08 10:55 - 00000056 _____ C:\Windows\setupact.log
2013-12-08 10:55 - 2013-12-08 10:55 - 00000000 _____ C:\Windows\setuperr.log
2013-12-08 00:08 - 2013-12-08 00:09 - 00003912 _____ C:\Windows\IE11_main.log
2013-12-07 14:34 - 2013-12-07 14:34 - 00000000 ____D C:\Users\PC\AppData\Roaming\Malwarebytes
2013-12-07 14:33 - 2013-12-07 14:33 - 00001067 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-12-07 14:33 - 2013-12-07 14:33 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-12-07 14:33 - 2013-12-07 14:33 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-12-07 14:33 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-12-07 10:39 - 2013-12-07 10:40 - 00000000 ____D C:\Users\PC\AppData\Local\{4620F04C-8C23-47CC-9E35-A9A3B620E679}
2013-12-06 10:24 - 2013-12-06 10:24 - 00000000 ____D C:\Users\PC\AppData\Local\{C42CCB4E-DC62-44D9-9277-5D42CA8DDD79}
2013-12-05 16:55 - 2013-12-05 16:56 - 00000000 ____D C:\Users\PC\AppData\Local\{F1D26C50-B6DB-43C2-A97D-FF3D0366E418}
2013-12-04 09:35 - 2013-12-04 09:35 - 00000000 ____D C:\Users\PC\AppData\Local\{D3422147-CCE9-4560-A598-544CDBC5485D}
2013-12-03 11:47 - 2013-12-03 11:47 - 00000000 ____D C:\Users\PC\AppData\Local\{9BC8DBD4-CFCB-4F45-AA22-6D5AF5D29421}
2013-12-02 10:06 - 2013-12-02 10:06 - 00000000 ____D C:\Users\PC\AppData\Local\{4EC0AC51-565B-44C0-B537-D43976C03507}
2013-12-01 11:10 - 2013-12-01 11:10 - 00000000 ____D C:\Users\PC\AppData\Local\{79981960-88FF-4345-ACE8-44664DA1DA64}
2013-11-30 10:25 - 2013-11-30 10:26 - 00000000 ____D C:\Users\PC\AppData\Local\{8DA3BF2D-B2F4-4FBB-BB87-BF5645E0586F}
2013-11-29 08:43 - 2013-11-29 08:43 - 00000000 ____D C:\Users\PC\AppData\Local\{39DFCCF3-0868-46F8-81C6-00051353F817}
2013-11-28 09:40 - 2013-11-28 09:41 - 00000000 ____D C:\Users\PC\AppData\Local\{0810A38C-6DFB-434F-B471-B5D26B6CFD56}
2013-11-27 10:57 - 2013-11-27 10:57 - 00000000 ____D C:\Users\PC\AppData\Local\{C1C2EA6D-BE0C-4C07-A73F-F9EFCDD53BD5}
2013-11-26 11:23 - 2013-11-26 11:23 - 00000000 ____D C:\Users\PC\AppData\Local\{19689164-A0E2-4B0C-BC14-38C5EF2C0D03}
2013-11-25 08:46 - 2013-11-25 08:47 - 00000000 ____D C:\Users\PC\AppData\Local\{3F34AB27-ADC1-48A7-A2E9-7D61746E2AF9}
2013-11-24 20:17 - 2013-11-24 20:18 - 00000000 ____D C:\Users\PC\AppData\Local\{B42D314A-D0B5-48A5-AC6E-E59FEC7FB9CF}
2013-11-24 10:31 - 2013-12-08 14:33 - 01104934 _____ C:\Windows\WindowsUpdate.log
2013-11-23 10:00 - 2013-11-23 10:00 - 00000000 ____D C:\Users\PC\AppData\Local\{D0931B5E-9871-4313-B151-2A4A9D4423D6}
2013-11-21 23:33 - 2013-11-21 23:33 - 00000000 ____D C:\Users\PC\AppData\Local\{5E3B541C-CDF5-4556-BA4F-ED380E03D5ED}
2013-11-21 10:59 - 2013-11-21 10:59 - 00000000 ____D C:\Users\PC\AppData\Local\{6BEC7B55-90C2-4A77-AE10-18C8BA1E34D0}
2013-11-20 09:28 - 2013-11-20 09:28 - 00000000 ____D C:\Users\PC\AppData\Local\{5767E4EB-F314-4C23-8BBE-3ED885C0CE23}
2013-11-19 10:37 - 2013-11-19 10:37 - 00000000 ____D C:\Users\PC\AppData\Local\{20BCC4F4-461C-438B-ACB8-CFF74CB523B0}
2013-11-18 09:27 - 2013-11-18 09:27 - 00000000 ____D C:\Users\PC\AppData\Local\{846A39EA-E36C-4A95-96A4-D1EF271B0B5D}
2013-11-17 10:56 - 2013-11-17 10:56 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-11-17 10:38 - 2013-11-17 10:38 - 00000000 ____D C:\Users\PC\AppData\Local\{56348896-466D-48DE-8567-6AFF4A2E6242}
2013-11-16 20:08 - 2013-11-16 20:08 - 00000000 ____D C:\Users\PC\Desktop\musica dusica
2013-11-16 20:05 - 2013-11-16 20:11 - 00000000 ____D C:\Users\PC\Desktop\dositej
2013-11-16 19:33 - 2013-11-16 19:33 - 00000000 ____D C:\Users\PC\AppData\Local\{E67D3CD4-92F1-4E95-BEBE-792B2F26A926}
2013-11-16 10:32 - 2013-11-16 10:32 - 00000000 ____D C:\Users\PC\AppData\Local\{BCCD15E6-963F-47FC-A981-3E7711268701}
2013-11-15 21:45 - 2013-11-15 21:45 - 00000000 ____D C:\Users\PC\AppData\Local\{6076D054-2DA9-4CEF-85FE-470F9A104112}
2013-11-15 09:44 - 2013-11-15 09:45 - 00000000 ____D C:\Users\PC\AppData\Local\{480A7315-A00A-42DC-8997-AD8966978FF1}
2013-11-14 20:59 - 2013-11-14 20:59 - 00000000 ____D C:\Users\PC\AppData\Local\{E4C5DB31-CD1F-4292-A9B8-62F314A766F3}
2013-11-14 08:58 - 2013-11-14 08:58 - 00000000 ____D C:\Users\PC\AppData\Local\{A847B6B4-73FE-425E-8F6D-2597F44A597C}
2013-11-13 13:12 - 2013-10-12 08:04 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-11-13 13:12 - 2013-10-12 08:03 - 01767936 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-13 13:12 - 2013-10-12 08:03 - 01138176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-13 13:12 - 2013-10-12 08:02 - 14355968 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-13 13:12 - 2013-10-12 08:02 - 13761024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-13 13:12 - 2013-10-12 08:02 - 02877952 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-13 13:12 - 2013-10-12 08:02 - 02049024 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-13 13:12 - 2013-10-12 08:02 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-11-13 13:12 - 2013-10-12 08:02 - 00493056 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-11-13 13:12 - 2013-10-12 08:02 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-13 13:12 - 2013-10-12 08:02 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-11-13 13:12 - 2013-10-12 08:02 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-11-13 13:12 - 2013-10-12 08:02 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-13 13:12 - 2013-10-12 08:02 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-11-13 13:12 - 2013-10-12 07:08 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-13 13:12 - 2013-10-12 06:15 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-11-13 11:05 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2013-11-13 11:05 - 2013-10-12 03:01 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2013-11-13 11:05 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2013-11-13 11:05 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-11-13 11:05 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2013-11-13 11:05 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2013-11-13 11:05 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2013-11-13 11:05 - 2013-10-03 02:58 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2013-11-13 11:05 - 2013-09-25 03:01 - 00136640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2013-11-13 11:05 - 2013-09-25 03:01 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2013-11-13 11:05 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2013-11-13 11:05 - 2013-09-25 02:57 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2013-11-13 11:05 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2013-11-13 11:05 - 2013-09-25 02:56 - 01038848 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2013-11-13 11:05 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2013-11-13 11:05 - 2013-09-25 01:49 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2013-11-13 11:05 - 2013-09-25 01:49 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2013-11-13 11:05 - 2013-07-04 13:16 - 00369848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2013-11-13 10:53 - 2013-11-13 10:53 - 00000000 ____D C:\Users\PC\AppData\Local\{AF9128FB-9053-48B9-B6FA-F47C60156CE6}
2013-11-12 12:15 - 2013-11-12 12:15 - 00000000 ____D C:\Users\PC\AppData\Local\{0FB59B9E-D680-4226-9FF5-8D62C89F74E6}
2013-11-10 12:32 - 2013-11-10 12:33 - 00000000 ____D C:\Users\PC\AppData\Local\{733C67CB-C82A-4E7D-8F2E-4ADF16DCFFE1}
2013-11-09 16:39 - 2013-11-09 16:39 - 00000000 ____D C:\Users\PC\AppData\Local\{B65B3319-B8FC-4B0E-9E80-986E060407C2}
2013-11-08 09:59 - 2013-11-08 09:59 - 00000000 ____D C:\Users\PC\AppData\Local\{E38C0EDC-AA1B-4ADE-A727-EFF88EB2AF3C}

==================== One Month Modified Files and Folders =======

2013-12-08 14:36 - 2013-12-08 14:35 - 00013445 _____ C:\Users\PC\Desktop\FRST.txt
2013-12-08 14:35 - 2013-12-08 14:35 - 00000000 ____D C:\FRST
2013-12-08 14:33 - 2013-12-08 14:33 - 01060441 _____ (Farbar) C:\Users\PC\Desktop\FRST(1).exe
2013-12-08 14:33 - 2013-11-24 10:31 - 01104934 _____ C:\Windows\WindowsUpdate.log
2013-12-08 14:31 - 2012-02-25 15:44 - 00000886 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-08 14:07 - 2011-10-20 21:56 - 00000916 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1423899905-2176892661-867764673-1000UA.job
2013-12-08 14:01 - 2012-07-27 09:47 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-12-08 11:01 - 2009-07-14 05:34 - 00014192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-12-08 11:01 - 2009-07-14 05:34 - 00014192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-12-08 10:56 - 2011-07-19 15:18 - 00000000 ____D C:\Users\PC\Tracing
2013-12-08 10:55 - 2013-12-08 10:55 - 00000056 _____ C:\Windows\setupact.log
2013-12-08 10:55 - 2013-12-08 10:55 - 00000000 _____ C:\Windows\setuperr.log
2013-12-08 10:55 - 2012-02-25 15:44 - 00000882 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-08 10:55 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-12-08 00:09 - 2013-12-08 00:08 - 00003912 _____ C:\Windows\IE11_main.log
2013-12-07 23:07 - 2011-10-20 21:56 - 00000894 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1423899905-2176892661-867764673-1000Core.job
2013-12-07 19:39 - 2011-07-19 13:28 - 00726444 _____ C:\Windows\system32\PerfStringBackup.INI
2013-12-07 16:26 - 2013-07-12 16:31 - 00000000 ____D C:\ProgramData\eSafe
2013-12-07 14:34 - 2013-12-07 14:34 - 00000000 ____D C:\Users\PC\AppData\Roaming\Malwarebytes
2013-12-07 14:33 - 2013-12-07 14:33 - 00001067 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-12-07 14:33 - 2013-12-07 14:33 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-12-07 14:33 - 2013-12-07 14:33 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-12-07 11:12 - 2012-07-27 09:46 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-12-07 11:12 - 2011-08-12 10:48 - 00000000 ____D C:\Users\PC\AppData\Local\Adobe
2013-12-07 11:12 - 2011-07-19 18:02 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-12-07 10:40 - 2013-12-07 10:39 - 00000000 ____D C:\Users\PC\AppData\Local\{4620F04C-8C23-47CC-9E35-A9A3B620E679}
2013-12-06 10:24 - 2013-12-06 10:24 - 00000000 ____D C:\Users\PC\AppData\Local\{C42CCB4E-DC62-44D9-9277-5D42CA8DDD79}
2013-12-05 16:56 - 2013-12-05 16:55 - 00000000 ____D C:\Users\PC\AppData\Local\{F1D26C50-B6DB-43C2-A97D-FF3D0366E418}
2013-12-04 09:35 - 2013-12-04 09:35 - 00000000 ____D C:\Users\PC\AppData\Local\{D3422147-CCE9-4560-A598-544CDBC5485D}
2013-12-03 11:47 - 2013-12-03 11:47 - 00000000 ____D C:\Users\PC\AppData\Local\{9BC8DBD4-CFCB-4F45-AA22-6D5AF5D29421}
2013-12-02 10:06 - 2013-12-02 10:06 - 00000000 ____D C:\Users\PC\AppData\Local\{4EC0AC51-565B-44C0-B537-D43976C03507}
2013-12-01 11:10 - 2013-12-01 11:10 - 00000000 ____D C:\Users\PC\AppData\Local\{79981960-88FF-4345-ACE8-44664DA1DA64}
2013-11-30 23:37 - 2013-10-21 15:08 - 00000000 ____D C:\Users\PC\Desktop\Nova fascikla (2)
2013-11-30 10:39 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\NDF
2013-11-30 10:26 - 2013-11-30 10:25 - 00000000 ____D C:\Users\PC\AppData\Local\{8DA3BF2D-B2F4-4FBB-BB87-BF5645E0586F}
2013-11-29 08:43 - 2013-11-29 08:43 - 00000000 ____D C:\Users\PC\AppData\Local\{39DFCCF3-0868-46F8-81C6-00051353F817}
2013-11-28 09:41 - 2013-11-28 09:40 - 00000000 ____D C:\Users\PC\AppData\Local\{0810A38C-6DFB-434F-B471-B5D26B6CFD56}
2013-11-27 10:57 - 2013-11-27 10:57 - 00000000 ____D C:\Users\PC\AppData\Local\{C1C2EA6D-BE0C-4C07-A73F-F9EFCDD53BD5}
2013-11-26 11:23 - 2013-11-26 11:23 - 00000000 ____D C:\Users\PC\AppData\Local\{19689164-A0E2-4B0C-BC14-38C5EF2C0D03}
2013-11-25 08:47 - 2013-11-25 08:46 - 00000000 ____D C:\Users\PC\AppData\Local\{3F34AB27-ADC1-48A7-A2E9-7D61746E2AF9}
2013-11-24 20:18 - 2013-11-24 20:17 - 00000000 ____D C:\Users\PC\AppData\Local\{B42D314A-D0B5-48A5-AC6E-E59FEC7FB9CF}
2013-11-24 10:27 - 2013-07-13 16:25 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-11-23 12:53 - 2013-10-23 09:30 - 00000000 ____D C:\Program Files\Mozilla Thunderbird
2013-11-23 10:00 - 2013-11-23 10:00 - 00000000 ____D C:\Users\PC\AppData\Local\{D0931B5E-9871-4313-B151-2A4A9D4423D6}
2013-11-21 23:33 - 2013-11-21 23:33 - 00000000 ____D C:\Users\PC\AppData\Local\{5E3B541C-CDF5-4556-BA4F-ED380E03D5ED}
2013-11-21 10:59 - 2013-11-21 10:59 - 00000000 ____D C:\Users\PC\AppData\Local\{6BEC7B55-90C2-4A77-AE10-18C8BA1E34D0}
2013-11-20 09:28 - 2013-11-20 09:28 - 00000000 ____D C:\Users\PC\AppData\Local\{5767E4EB-F314-4C23-8BBE-3ED885C0CE23}
2013-11-19 10:37 - 2013-11-19 10:37 - 00000000 ____D C:\Users\PC\AppData\Local\{20BCC4F4-461C-438B-ACB8-CFF74CB523B0}
2013-11-18 09:27 - 2013-11-18 09:27 - 00000000 ____D C:\Users\PC\AppData\Local\{846A39EA-E36C-4A95-96A4-D1EF271B0B5D}
2013-11-17 10:56 - 2013-11-17 10:56 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-11-17 10:38 - 2013-11-17 10:38 - 00000000 ____D C:\Users\PC\AppData\Local\{56348896-466D-48DE-8567-6AFF4A2E6242}
2013-11-16 20:22 - 2013-08-31 15:03 - 00000000 ___HD C:\Users\PC\Desktop\[Originals]
2013-11-16 20:19 - 2011-07-23 14:47 - 00022016 _____ C:\Users\PC\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-11-16 20:11 - 2013-11-16 20:05 - 00000000 ____D C:\Users\PC\Desktop\dositej
2013-11-16 20:08 - 2013-11-16 20:08 - 00000000 ____D C:\Users\PC\Desktop\musica dusica
2013-11-16 19:33 - 2013-11-16 19:33 - 00000000 ____D C:\Users\PC\AppData\Local\{E67D3CD4-92F1-4E95-BEBE-792B2F26A926}
2013-11-16 10:32 - 2013-11-16 10:32 - 00000000 ____D C:\Users\PC\AppData\Local\{BCCD15E6-963F-47FC-A981-3E7711268701}
2013-11-15 21:45 - 2013-11-15 21:45 - 00000000 ____D C:\Users\PC\AppData\Local\{6076D054-2DA9-4CEF-85FE-470F9A104112}
2013-11-15 09:45 - 2013-11-15 09:44 - 00000000 ____D C:\Users\PC\AppData\Local\{480A7315-A00A-42DC-8997-AD8966978FF1}
2013-11-14 20:59 - 2013-11-14 20:59 - 00000000 ____D C:\Users\PC\AppData\Local\{E4C5DB31-CD1F-4292-A9B8-62F314A766F3}
2013-11-14 10:44 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\rescache
2013-11-14 08:58 - 2013-11-14 08:58 - 00000000 ____D C:\Users\PC\AppData\Local\{A847B6B4-73FE-425E-8F6D-2597F44A597C}
2013-11-13 13:20 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\sr-Latn-CS
2013-11-13 13:18 - 2011-07-19 14:56 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-11-13 13:12 - 2013-08-14 15:41 - 00000000 ____D C:\Windows\system32\MRT
2013-11-13 13:09 - 2011-07-19 16:20 - 80340640 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-11-13 10:53 - 2013-11-13 10:53 - 00000000 ____D C:\Users\PC\AppData\Local\{AF9128FB-9053-48B9-B6FA-F47C60156CE6}
2013-11-12 12:15 - 2013-11-12 12:15 - 00000000 ____D C:\Users\PC\AppData\Local\{0FB59B9E-D680-4226-9FF5-8D62C89F74E6}
2013-11-11 05:50 - 2011-07-22 15:32 - 00230048 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2013-11-10 19:03 - 2011-07-19 16:33 - 00000000 ____D C:\Users\PC\AppData\Local\Windows Live
2013-11-10 12:33 - 2013-11-10 12:32 - 00000000 ____D C:\Users\PC\AppData\Local\{733C67CB-C82A-4E7D-8F2E-4ADF16DCFFE1}
2013-11-09 16:39 - 2013-11-09 16:39 - 00000000 ____D C:\Users\PC\AppData\Local\{B65B3319-B8FC-4B0E-9E80-986E060407C2}
2013-11-08 09:59 - 2013-11-08 09:59 - 00000000 ____D C:\Users\PC\AppData\Local\{E38C0EDC-AA1B-4ADE-A727-EFF88EB2AF3C}

==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-12-01 17:54

==================== End Of Log ============================
mycity.rs/must-login.png

Dopuna: 08 Dec 2013 15:07

aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2013-12-08 14:52:03
-----------------------------
14:52:03.991 OS Version: Windows 6.1.7601 Service Pack 1
14:52:03.991 Number of processors: 2 586 0x100
14:52:03.996 ComputerName: PC-PC UserName: PC
14:52:06.994 Initialize success
14:52:08.546 AVAST engine defs: 13120601
14:52:46.132 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\0000006d
14:52:46.148 Disk 0 Vendor: HITACHI_ PB3Z Size: 305245MB BusType: 11
14:52:46.179 Disk 0 MBR read successfully
14:52:46.179 Disk 0 MBR scan
14:52:46.195 Disk 0 Windows 7 default MBR code
14:52:46.226 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
14:52:46.241 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 99900 MB offset 206848
14:52:46.273 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 205243 MB offset 204802048
14:52:46.288 Disk 0 scanning sectors +625139712
14:52:46.366 Disk 0 scanning C:\Windows\system32\drivers
14:53:03.760 Service scanning
14:53:28.658 Service sptd C:\Windows\System32\Drivers\sptd.sys **LOCKED** 32
14:53:38.704 Modules scanning
14:53:59.920 Disk 0 trace - called modules:
14:54:00.029 ntkrnlpa.exe CLASSPNP.SYS disk.sys >>UNKNOWN [0x84bbf1f8]<<
14:54:00.045 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x85b46758]
14:54:00.061 3 CLASSPNP.SYS[883b059e] -> nt!IofCallDriver -> [0x85a7fa50]
14:54:00.076 \Driver\amd_xata[0x85959200] -> IRP_MJ_CREATE -> 0x84bbf1f8
14:54:00.794 AVAST engine scan C:\Windows
14:54:03.524 AVAST engine scan C:\Windows\system32
14:57:51.160 AVAST engine scan C:\Windows\system32\drivers
14:58:26.885 AVAST engine scan C:\Users\PC
15:03:14.280 AVAST engine scan C:\ProgramData
15:05:05.380 Scan finished successfully
15:05:57.564 Disk 0 MBR has been saved successfully to "C:\Users\PC\Desktop\MBR.dat"
15:05:57.574 The log file has been saved successfully to "C:\Users\PC\Desktop\aswMBR.txt"

offline
  • Pridružio: 09 Avg 2011
  • Poruke: 15879
  • Gde živiš: Beograd

Otvori Notepad i iskopiraj sledeci tekst koji se nalazi unutar osencenog prostora.

HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://en.v9.com/?utm_source=b&utm_medium=stk&from.....1373643029
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://en.v9.com/?utm_source=b&utm_medium=stk&from.....1373643029
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://en.v9.com/?utm_source=b&utm_medium=stk&from.....1373643029
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://en.v9.com/?utm_source=b&utm_medium=stk&from.....1373643029
SearchScopes: HKCU - DefaultScope {A5C69632-4EEC-46EC-8286-3299033515F3} URL = http://search.yahoo.com/search?fr=chr-greentree_ie.....=407453&p={searchTerms}
SearchScopes: HKCU - {A5C69632-4EEC-46EC-8286-3299033515F3} URL = http://search.yahoo.com/search?fr=chr-greentree_ie.....=407453&p={searchTerms}
FF Keyword.URL: hxxp://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=407453&p=
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazon-en-GB.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-en-GB.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\pogodakyu.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\vokabular.xml
Task: {02FFE329-06D8-47F8-9E68-5C69CD37D30A} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files\Desk 365\desk365.exe <==== ATTENTION
C:\Program Files\Desk 365
Task: {0599A868-0CD0-41EF-899B-9D7A30721E6A} - System32\Tasks\Omiga Plus RunAsStdUser => C:\Program Files\Omiga Plus\omigaplus.exe
C:\Program Files\Omiga Plus
cmd: ipconfig /flushdns


U okviru Notepad-a klikni na File --> Save As

Fajl nazovi fixlist.txt i sacuvaj na Desktop

Dvoklikom ponovo pokreni FRST.exe

Klikni na Fix i sacekaj dok program ne završi

Ukoliko program zatraži restart racunara, omoguci mu da to nesmetano obavi.

Nakon završetka rada, otvorice se Notepad, sa sadržajem koji treba da kopiraš u temu.

Takode, na Desktop-u ce se nalaziti fixlog.txt.




Preuzmi "Xplode"-ov AdwCleaner () i sacuvaj ga na Desktop

Dvoklikom pokreni program.
Klikni na dugme [Scan] i pricekaj da program zavrsi.
Klikni na dugme [Clean]
Program ce zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni Ok kao potvrdu.
Na sledeca dva prozora koja se otvore (Informations i Restart required ) klikni Ok


Racunar ce se restartovati a potom otvoriti notepad (C:\AdwCleaner[S1].txt) sa izvestajem.
Sacuvaj taj notepad na Desktop i okaci ga uz poruku koristeci opciju "Prikaci fajl"

Napomena: Izvestaj ce takodje biti sacuvan na C:\AdwCleaner[S1].txt



Preuzmi TDSSKiller i sacuvaj ga na Desktop
Dvoklikom pokreni TDSSKiller.exe ...

klikni na dugme Start Scan

Ukoliko sumnjive stavke Suspicious object budu detektovani, podrazumevana opcija (default action) jeste Skip, klikni na Continue.
Ukoliko maliciozni objekti Malicious objects budu detektovani, izaberi opciju Cure.


Okaci mi sadrzaj log-a sa sledece lokacije:
C:\TDSSKiller_verzija programa_DD.MM.GG_HH.MM.SS.txt
(DD-dan, MM-mesec, GG-godina, HH-sat, MM-minut, SS-sekunda; datum i vreme kada je log napravljen)[/quote]

offline
  • Crki  Male
  • Novi MyCity građanin
  • Pridružio: 12 Okt 2008
  • Poruke: 11

Napisano: 08 Dec 2013 16:55

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 08-12-2013 02
Ran by PC at 2013-12-08 16:54:20 Run:1
Running from C:\Users\PC\Desktop
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = en.v9.com/?utm_source=b&utm_medium=stk&from.....1373643029
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = en.v9.com/?utm_source=b&utm_medium=stk&from.....1373643029
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = en.v9.com/?utm_source=b&utm_medium=stk&from.....1373643029
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe en.v9.com/?utm_source=b&utm_medium=stk&from.....1373643029
SearchScopes: HKCU - DefaultScope {A5C69632-4EEC-46EC-8286-3299033515F3} URL = search.yahoo.com/search?fr=chr-greentree_ie.....=407453&p={searchTerms}
SearchScopes: HKCU - {A5C69632-4EEC-46EC-8286-3299033515F3} URL = search.yahoo.com/search?fr=chr-greentree_ie.....=407453&p={searchTerms}
FF Keyword.URL: hxxp://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=407453&p=
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazon-en-GB.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-en-GB.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\pogodakyu.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\vokabular.xml
Task: {02FFE329-06D8-47F8-9E68-5C69CD37D30A} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files\Desk 365\desk365.exe <==== ATTENTION
C:\Program Files\Desk 365
Task: {0599A868-0CD0-41EF-899B-9D7A30721E6A} - System32\Tasks\Omiga Plus RunAsStdUser => C:\Program Files\Omiga Plus\omigaplus.exe
C:\Program Files\Omiga Plus
cmd: ipconfig /flushdns
*****************

HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{A5C69632-4EEC-46EC-8286-3299033515F3} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{A5C69632-4EEC-46EC-8286-3299033515F3} => Key not found.
Firefox Keyword.URL deleted successfully.
C:\Program Files\mozilla firefox\browser\searchplugins\amazon-en-GB.xml => Moved successfully.
C:\Program Files\mozilla firefox\browser\searchplugins\eBay-en-GB.xml => Moved successfully.
C:\Program Files\mozilla firefox\browser\searchplugins\pogodakyu.xml => Moved successfully.
C:\Program Files\mozilla firefox\browser\searchplugins\vokabular.xml => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{02FFE329-06D8-47F8-9E68-5C69CD37D30A} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{02FFE329-06D8-47F8-9E68-5C69CD37D30A} => Key deleted successfully.
C:\Windows\System32\Tasks\Desk 365 RunAsStdUser => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Desk 365 RunAsStdUser => Key deleted successfully.
"C:\Program Files\Desk 365" => File/Directory not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0599A868-0CD0-41EF-899B-9D7A30721E6A} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0599A868-0CD0-41EF-899B-9D7A30721E6A} => Key deleted successfully.
C:\Windows\System32\Tasks\Omiga Plus RunAsStdUser => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Omiga Plus RunAsStdUser => Key deleted successfully.
"C:\Program Files\Omiga Plus" => File/Directory not found.

========= ipconfig /flushdns =========


Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========= End of CMD: =========


==== End of Fixlog ====

Dopuna: 08 Dec 2013 17:11

iz nepažnje sam isključio notepad Sad pre nego sam snimio,pa pošto nisam siguran šta treba da pošaljem šaljem sva tri,mislim da bi trebalo da bude sa oznakom (SO)
mycity.rs/must-login.png

mycity.rs/must-login.png

mycity.rs/must-login.png

Dopuna: 08 Dec 2013 17:20

17:13:11.0039 0x02d4 TDSS rootkit removing tool 3.0.0.19 Nov 18 2013 09:27:50
17:13:19.0990 0x02d4 ============================================================
17:13:19.0990 0x02d4 Current date / time: 2013/12/08 17:13:19.0990
17:13:19.0990 0x02d4 SystemInfo:
17:13:19.0990 0x02d4
17:13:19.0990 0x02d4 OS Version: 6.1.7601 ServicePack: 1.0
17:13:19.0990 0x02d4 Product type: Workstation
17:13:19.0991 0x02d4 ComputerName: PC-PC
17:13:19.0991 0x02d4 UserName: PC
17:13:19.0991 0x02d4 Windows directory: C:\Windows
17:13:19.0991 0x02d4 System windows directory: C:\Windows
17:13:19.0991 0x02d4 Processor architecture: Intel x86
17:13:19.0991 0x02d4 Number of processors: 2
17:13:19.0991 0x02d4 Page size: 0x1000
17:13:19.0991 0x02d4 Boot type: Normal boot
17:13:19.0992 0x02d4 ============================================================
17:13:23.0444 0x02d4 KLMD registered as C:\Windows\system32\drivers\34994876.sys
17:13:23.0815 0x02d4 System UUID: {EA3E670E-1DFB-025E-1CC8-DC319972AD0E}
17:13:25.0195 0x02d4 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
17:13:25.0214 0x02d4 ============================================================
17:13:25.0214 0x02d4 \Device\Harddisk0\DR0:
17:13:25.0214 0x02d4 MBR partitions:
17:13:25.0214 0x02d4 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
17:13:25.0214 0x02d4 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0xC31E000
17:13:25.0214 0x02d4 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0xC350800, BlocksNum 0x190DD800
17:13:25.0214 0x02d4 ============================================================
17:13:25.0242 0x02d4 C: <-> \Device\Harddisk0\DR0\Partition2
17:13:25.0373 0x02d4 D: <-> \Device\Harddisk0\DR0\Partition3
17:13:25.0374 0x02d4 ============================================================
17:13:25.0374 0x02d4 Initialize success
17:13:25.0374 0x02d4 ============================================================
17:13:30.0760 0x02a4 ============================================================
17:13:30.0760 0x02a4 Scan started
17:13:30.0760 0x02a4 Mode: Manual;
17:13:30.0760 0x02a4 ============================================================
17:13:30.0760 0x02a4 KSN ping started
17:13:33.0630 0x02a4 KSN ping finished: true
17:13:34.0301 0x02a4 ================ Scan system memory ========================
17:13:34.0301 0x02a4 System memory - ok
17:13:34.0301 0x02a4 ================ Scan services =============================
17:13:34.0551 0x02a4 [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
17:13:34.0566 0x02a4 1394ohci - ok
17:13:34.0644 0x02a4 [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI C:\Windows\system32\drivers\ACPI.sys
17:13:34.0660 0x02a4 ACPI - ok
17:13:34.0691 0x02a4 [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
17:13:34.0691 0x02a4 AcpiPmi - ok
17:13:34.0722 0x02a4 [ 0FF1F2F287E65A66A3B72484B9895785, 93DA8081BCF32732528FF909BD38EA552C47FA361B22D6C4C5272183244E6659 ] ACPIVPC C:\Windows\system32\DRIVERS\AcpiVpc.sys
17:13:34.0722 0x02a4 ACPIVPC - ok
17:13:34.0847 0x02a4 [ ADDA5E1951B90D3D23C56D3CF0622ADC, E85E7BFD29F00ED34BF5BE8BD4DA93CBB14278E16809BB55406875F0DA88551E ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
17:13:34.0847 0x02a4 AdobeARMservice - ok
17:13:34.0925 0x02a4 [ 438F31336B3DC248ABC632F1C8F34A24, 94C1218E7EC2EC6D4870A6FDC118097D7D3A359DA073DCD3A9770F399F830991 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
17:13:34.0941 0x02a4 AdobeFlashPlayerUpdateSvc - ok
17:13:35.0019 0x02a4 [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
17:13:35.0034 0x02a4 adp94xx - ok
17:13:35.0081 0x02a4 [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
17:13:35.0097 0x02a4 adpahci - ok
17:13:35.0112 0x02a4 [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
17:13:35.0128 0x02a4 adpu320 - ok
17:13:35.0190 0x02a4 [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
17:13:35.0190 0x02a4 AeLookupSvc - ok
17:13:35.0237 0x02a4 [ F81BB7E487EDCEAB630A7EE66CF23913, 7D1638FD7E388EF670FA0A421762E0413351058A20DDF0F9988A383F05395A68 ] AFD C:\Windows\system32\drivers\afd.sys
17:13:35.0268 0x02a4 AFD - ok
17:13:35.0331 0x02a4 [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440 C:\Windows\system32\drivers\agp440.sys
17:13:35.0346 0x02a4 agp440 - ok
17:13:35.0377 0x02a4 [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
17:13:35.0393 0x02a4 aic78xx - ok
17:13:35.0424 0x02a4 [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG C:\Windows\System32\alg.exe
17:13:35.0440 0x02a4 ALG - ok
17:13:35.0487 0x02a4 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide C:\Windows\system32\drivers\aliide.sys
17:13:35.0487 0x02a4 aliide - ok
17:13:35.0533 0x02a4 [ 4381A9A99F56B33DAC58852669E300E8, 6C0752B4FA973B25DDCF01BA8BB1B94DE3DEF8FCFFE6C5D601581B0D8848A901 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
17:13:35.0549 0x02a4 AMD External Events Utility - ok
17:13:35.0596 0x02a4 AMD FUEL Service - ok
17:13:35.0643 0x02a4 [ 9FE76D783A7D47965D086A220B54277B, 606D86B0F9314D2BB217F95EB883263912203171D4D460DD500317405A4B2F9C ] AMD Reservation Manager C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe
17:13:35.0658 0x02a4 AMD Reservation Manager - ok
17:13:35.0689 0x02a4 [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
17:13:35.0689 0x02a4 amdagp - ok
17:13:35.0736 0x02a4 [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide C:\Windows\system32\drivers\amdide.sys
17:13:35.0752 0x02a4 amdide - ok
17:13:35.0799 0x02a4 [ FF258424F0B2EF25EB98F04EE386E6E3, 09DC3854BF0D52FB80AB08DC4E0DD4A9E37ACAA500083A56F9836C837EBCFA82 ] amdiox86 C:\Windows\system32\DRIVERS\amdiox86.sys
17:13:35.0799 0x02a4 amdiox86 - ok
17:13:35.0830 0x02a4 [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
17:13:35.0845 0x02a4 AmdK8 - ok
17:13:36.0391 0x02a4 [ 5D3816A677CA50A618AD7138D2C21CED, 56F7067D06C3EE5173453463085B1A3500011FB373265D75E71CECB12AAF9BAA ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
17:13:36.0781 0x02a4 amdkmdag - ok
17:13:36.0859 0x02a4 [ F3DC5D5C36FEE050A6C7204F0CB12C4C, 3967AAF967BD8BE7759AE3676670297E892C19DFAD4CE9039417328E70BBCB54 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
17:13:36.0875 0x02a4 amdkmdap - ok
17:13:36.0922 0x02a4 [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
17:13:36.0922 0x02a4 AmdPPM - ok
17:13:36.0984 0x02a4 [ D320BF87125326F996D4904FE24300FC, F767D8C5C58D57202905D829F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata C:\Windows\system32\drivers\amdsata.sys
17:13:36.0984 0x02a4 amdsata - ok
17:13:37.0031 0x02a4 [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
17:13:37.0047 0x02a4 amdsbs - ok
17:13:37.0062 0x02a4 [ 46387FB17B086D16DEA267D5BE23A2F2, 8B8AC61B91F154B4EB5CC6DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata C:\Windows\system32\drivers\amdxata.sys
17:13:37.0062 0x02a4 amdxata - ok
17:13:37.0109 0x02a4 [ 437C824DEAC935DEA9E9C488675EFD09, 72C579EC8F974BC803742F373D3FF2421231981ADB84E6746E5C4B08278E1E27 ] amd_sata C:\Windows\system32\DRIVERS\amd_sata.sys
17:13:37.0109 0x02a4 amd_sata - ok
17:13:37.0140 0x02a4 [ D919795612EABBA7D5F5222377BEBD7B, 200EBEE44AD88B1FB3493F671DE5B9DBC548EC1E95F056C247DD5BF0DED72A38 ] amd_xata C:\Windows\system32\DRIVERS\amd_xata.sys
17:13:37.0140 0x02a4 amd_xata - ok
17:13:37.0187 0x02a4 [ AEA177F783E20150ACE5383EE368DA19, 8FA9EE27AA1F22E8B8FE33A21028CA1E0062BAA95CB132C20D55B98C03B4254F ] AppID C:\Windows\system32\drivers\appid.sys
17:13:37.0187 0x02a4 AppID - ok
17:13:37.0234 0x02a4 [ 62A9C86CB6085E20DB4823E4E97826F5, E0F840B49710022C4FB437002AD06F64B0F6B5D628B32D00F2B66765E6B97E4B ] AppIDSvc C:\Windows\System32\appidsvc.dll
17:13:37.0234 0x02a4 AppIDSvc - ok
17:13:37.0296 0x02a4 [ EACFDF31921F51C097629F1F3C9129B4, 24138755D823E69760579ECBD672421192457CDC9941B2BC499C2D34D83E86C3 ] Appinfo C:\Windows\System32\appinfo.dll
17:13:37.0296 0x02a4 Appinfo - ok
17:13:37.0343 0x02a4 [ A45D184DF6A8803DA13A0B329517A64A, C1D16B60A6D69689AE951DC3D6884ED2E233D144B3FC0B86BC1C50AAAAA01ED2 ] AppMgmt C:\Windows\System32\appmgmts.dll
17:13:37.0343 0x02a4 AppMgmt - ok
17:13:37.0390 0x02a4 [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc C:\Windows\system32\DRIVERS\arc.sys
17:13:37.0390 0x02a4 arc - ok
17:13:37.0421 0x02a4 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
17:13:37.0421 0x02a4 arcsas - ok
17:13:37.0468 0x02a4 [ B9FE438B3CAD82B2014710349A2022F7, F9A3045590DAC38D7389957377BDD78E608D3078686EFD046FADDC2381ABB599 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
17:13:37.0468 0x02a4 aswFsBlk - ok
17:13:37.0499 0x02a4 [ AE5549DD21F6DE06406031EF1D51ACC3, 7E4AA6B03864C3E09DB869174BC5660F825D43FC27ABBE54E84F89650FD7679F ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
17:13:37.0515 0x02a4 aswMonFlt - ok
17:13:37.0546 0x02a4 [ A29EF1A46E110F392588F7395BB55F32, 378011CBF019AD43B0D5D1FB1CA6173B7FAA6510FCCFAAED09F9405D8DC4D694 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
17:13:37.0562 0x02a4 aswRdr - ok
17:13:37.0608 0x02a4 [ FA72FA503F580C3C628DD8C7D7622E37, 434FC6A3CB120299C80D99201D5FBA48E4E8C5DDB76F7F0EF4FE95EE522AEE6C ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
17:13:37.0624 0x02a4 aswRvrt - ok
17:13:37.0671 0x02a4 [ 4D53349D848C6BADB3D4ACBE98C27676, AC9EAE6F0611F8876CA45FA499A9C4D4DD8EC5DB77F5C52E1BAFD64598F4437A ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
17:13:37.0718 0x02a4 aswSnx - ok
17:13:37.0749 0x02a4 [ 813024DFD54A41B3AFAE2B1E2796CB80, A8C5FB0510E86B0BE567A67A412530312B36FB5BB777EEEE7E17C1D8D4D9699D ] aswSP C:\Windows\system32\drivers\aswSP.sys
17:13:37.0764 0x02a4 aswSP - ok
17:13:37.0796 0x02a4 [ 5E18413310134130D7772F0668698CB7, 18CBA5356341640085575D77ABD24358ACD818603FCA2BD49475239E5B50FDD1 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
17:13:37.0811 0x02a4 aswTdi - ok
17:13:37.0874 0x02a4 [ A5F637D61719D37A5B4868C385E363C0, 36505921AF5A09175395EBAEA29C72B2A69A3A9204384A767A5BE8A721F31B10 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
17:13:37.0889 0x02a4 aswVmm - ok
17:13:37.0936 0x02a4 [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
17:13:37.0936 0x02a4 AsyncMac - ok
17:13:37.0983 0x02a4 [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi C:\Windows\system32\drivers\atapi.sys
17:13:37.0983 0x02a4 atapi - ok
17:13:38.0264 0x02a4 [ FD08D220342C0F5556EE1D1A618817DD, BC3E3F0A7D9E5187123934DA9587E3DBCC33B72AD47A8567EE3B55D4C5F2C543 ] athr C:\Windows\system32\DRIVERS\athr.sys
17:13:38.0388 0x02a4 athr - ok
17:13:38.0482 0x02a4 [ CE3B4E731638D2EF62FCB419BE0D39F0, 3B98179CB0101778D9E7810D2CD46D9C0D7120E141BA11471666E7D9EB3C93CC ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
17:13:38.0513 0x02a4 AudioEndpointBuilder - ok
17:13:38.0544 0x02a4 [ CE3B4E731638D2EF62FCB419BE0D39F0, 3B98179CB0101778D9E7810D2CD46D9C0D7120E141BA11471666E7D9EB3C93CC ] Audiosrv C:\Windows\System32\Audiosrv.dll
17:13:38.0560 0x02a4 Audiosrv - ok
17:13:38.0700 0x02a4 [ 9330941C8F6DF417F6DBBE998DB6687E, 28BC051D7C74721BAF85BE2AAB97EAE44152779106C5BDA1FDA07B9C049E2FDC ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
17:13:38.0700 0x02a4 avast! Antivirus - ok
17:13:38.0794 0x02a4 [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C855A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV C:\Windows\System32\AxInstSV.dll
17:13:38.0810 0x02a4 AxInstSV - ok
17:13:38.0872 0x02a4 [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
17:13:38.0888 0x02a4 b06bdrv - ok
17:13:38.0934 0x02a4 [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
17:13:38.0950 0x02a4 b57nd60x - ok
17:13:38.0981 0x02a4 [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC C:\Windows\System32\bdesvc.dll
17:13:38.0997 0x02a4 BDESVC - ok
17:13:39.0028 0x02a4 [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep C:\Windows\system32\drivers\Beep.sys
17:13:39.0044 0x02a4 Beep - ok
17:13:39.0122 0x02a4 [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE C:\Windows\System32\bfe.dll
17:13:39.0137 0x02a4 BFE - ok
17:13:39.0200 0x02a4 [ E585445D5021971FAE10393F0F1C3961, 178C008A9A0A6BFDA65EB0B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS C:\Windows\System32\qmgr.dll
17:13:39.0231 0x02a4 BITS - ok
17:13:39.0293 0x02a4 [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
17:13:39.0293 0x02a4 blbdrive - ok
17:13:39.0324 0x02a4 [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
17:13:39.0356 0x02a4 bowser - ok
17:13:39.0371 0x02a4 [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
17:13:39.0387 0x02a4 BrFiltLo - ok
17:13:39.0418 0x02a4 [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
17:13:39.0418 0x02a4 BrFiltUp - ok
17:13:39.0449 0x02a4 [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser C:\Windows\System32\browser.dll
17:13:39.0480 0x02a4 Browser - ok
17:13:39.0527 0x02a4 [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid C:\Windows\System32\Drivers\Brserid.sys
17:13:39.0543 0x02a4 Brserid - ok
17:13:39.0558 0x02a4 [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
17:13:39.0574 0x02a4 BrSerWdm - ok
17:13:39.0590 0x02a4 [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
17:13:39.0590 0x02a4 BrUsbMdm - ok
17:13:39.0605 0x02a4 [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
17:13:39.0621 0x02a4 BrUsbSer - ok
17:13:39.0683 0x02a4 [ 2865A5C8E98C70C605F417908CEBB3A4, B1C5AC228BD7072AF8668C009C6CDC13EE9FCB9481F57524300F37C40BF1E935 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys
17:13:39.0683 0x02a4 BthEnum - ok
17:13:39.0699 0x02a4 [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
17:13:39.0714 0x02a4 BTHMODEM - ok
17:13:39.0746 0x02a4 [ AD1872E5829E8A2C3B5B4B641C3EAB0E, 8C2DBCAC08DDB41E2B44E257C55FA2D0272959B308EFF9EAF5FF9AE1E4A0AA39 ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
17:13:39.0761 0x02a4 BthPan - ok
17:13:39.0808 0x02a4 [ 1153DE2E4F5941E10C399CB5592F78A1, 2B88AF246D62F72FA9F5B921B0375AE59A0F263672472D5EC9FDB5CA5EF51C31 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
17:13:39.0839 0x02a4 BTHPORT - ok
17:13:39.0886 0x02a4 [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv C:\Windows\system32\bthserv.dll
17:13:39.0886 0x02a4 bthserv - ok
17:13:39.0917 0x02a4 [ C81E9413A25A439F436B1D4B6A0CF9E9, A4C290163207AED22C70C7F90B28F6FC24892889643D60D915059405AC5A4A72 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
17:13:39.0917 0x02a4 BTHUSB - ok
17:13:39.0995 0x02a4 [ 525432CFD6D8C004860AF7ECD0A84234, D058F570445BB4F73A0545ED1E9503A643AE97C62972D0B98E764AB4AF17474F ] btwampfl C:\Windows\system32\drivers\btwampfl.sys
17:13:40.0026 0x02a4 btwampfl - ok
17:13:40.0058 0x02a4 [ CF8799A563F734984D4E053CACEC1426, F41824AAB4F1D77B9CFB2E2DD4715C219F924B94CA5272D03E202ED960B76DE5 ] btwaudio C:\Windows\system32\drivers\btwaudio.sys
17:13:40.0058 0x02a4 btwaudio - ok
17:13:40.0089 0x02a4 [ 9ED9932043D599AEA04F6EA2D86964A1, A57A3617B16A5FD9853555C1F042537A63BEC44797615E9A8D84D733C4B464D0 ] btwavdt C:\Windows\system32\DRIVERS\btwavdt.sys
17:13:40.0104 0x02a4 btwavdt - ok
17:13:40.0198 0x02a4 [ 110496CF8143FEA63B7A31DAD175829B, 405EB5939572AB33C48F5BF594E051C890668762A7D6E7F8AA9C62C18E65FB0E ] btwdins C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
17:13:40.0229 0x02a4 btwdins - ok
17:13:40.0276 0x02a4 [ DE53089F0678CB5F0AFEB867ACB0FB05, 62AE8B22A96B8D22A5A843C855956423BF2281339C2D921A4650F318D6AEA783 ] btwl2cap C:\Windows\system32\DRIVERS\btwl2cap.sys
17:13:40.0276 0x02a4 btwl2cap - ok
17:13:40.0292 0x02a4 [ 373D1BB0F7DC8F1931F9B7E0DE3E9A30, E45F7980182B2EC515E2219CDBAFAC2DEA44B4791770B9E8B5BDAACC55583BA1 ] btwrchid C:\Windows\system32\DRIVERS\btwrchid.sys
17:13:40.0292 0x02a4 btwrchid - ok
17:13:40.0323 0x02a4 [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
17:13:40.0338 0x02a4 cdfs - ok
17:13:40.0416 0x02a4 [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
17:13:40.0416 0x02a4 cdrom - ok
17:13:40.0479 0x02a4 [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc C:\Windows\System32\certprop.dll
17:13:40.0494 0x02a4 CertPropSvc - ok
17:13:40.0541 0x02a4 [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
17:13:40.0541 0x02a4 circlass - ok
17:13:40.0619 0x02a4 [ 635181E0E9BBF16871BF5380D71DB02D, 58D5150C6F3B9F1730FFDF3A8A2ABF5FF207F9785BD66C0C1E03A0F1C223A26A ] CLFS C:\Windows\system32\CLFS.sys
17:13:40.0650 0x02a4 CLFS - ok
17:13:40.0760 0x02a4 [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
17:13:40.0775 0x02a4 clr_optimization_v2.0.50727_32 - ok
17:13:40.0869 0x02a4 [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
17:13:40.0884 0x02a4 clr_optimization_v4.0.30319_32 - ok
17:13:40.0900 0x02a4 [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
17:13:40.0900 0x02a4 CmBatt - ok
17:13:40.0947 0x02a4 [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide C:\Windows\system32\drivers\cmdide.sys
17:13:40.0962 0x02a4 cmdide - ok
17:13:41.0025 0x02a4 [ 85449EEBE8F8EBD6481EFBF0F352B4EB, E6FF04970C5A5BFDE7297A86C1C7B9BFE2E0F976A1A1AFB874CEB488DC6151CC ] CNG C:\Windows\system32\Drivers\cng.sys
17:13:41.0040 0x02a4 CNG - ok
17:13:41.0259 0x02a4 [ AE3F6A99F9518F9420B0F0CAEDB1768F, 4C1C0997B69701FBEACD92E12EB00BFC21C080A8C1DECEE9B02D0D9433C45DAA ] CnxtHdAudService C:\Windows\system32\drivers\CHDRT32.sys
17:13:41.0337 0x02a4 CnxtHdAudService - ok
17:13:41.0384 0x02a4 [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
17:13:41.0384 0x02a4 Compbatt - ok
17:13:41.0446 0x02a4 [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
17:13:41.0446 0x02a4 CompositeBus - ok
17:13:41.0462 0x02a4 COMSysApp - ok
17:13:41.0477 0x02a4 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
17:13:41.0493 0x02a4 crcdisk - ok
17:13:41.0586 0x02a4 [ 7CA1BECEA5DE2643ADDAD32670E7A4C9, E3AB4CC52A97E3855D7EAB87363F807FDD2162ED8C76A036CD71549ED64E7797 ] CryptSvc C:\Windows\system32\cryptsvc.dll
17:13:41.0618 0x02a4 CryptSvc - ok
17:13:41.0680 0x02a4 [ 3C2177A897B4CA2788C6FB0C3FD81D4B, 98575CBD0664586E6211D02E71BDD52CBAA149A1658573550E29E74E5F7B1553 ] CSC C:\Windows\system32\drivers\csc.sys
17:13:41.0711 0x02a4 CSC - ok
17:13:41.0836 0x02a4 [ 15F93B37F6801943360D9EB42485D5D3, DD6838C6496CB15F8BB57A6596F6A64ADD9C36B09F062295699131232712B558 ] CscService C:\Windows\System32\cscsvc.dll
17:13:41.0867 0x02a4 CscService - ok
17:13:41.0914 0x02a4 [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] DcomLaunch C:\Windows\system32\rpcss.dll
17:13:41.0945 0x02a4 DcomLaunch - ok
17:13:41.0992 0x02a4 [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc C:\Windows\System32\defragsvc.dll
17:13:42.0008 0x02a4 defragsvc - ok
17:13:42.0054 0x02a4 [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
17:13:42.0054 0x02a4 DfsC - ok
17:13:42.0117 0x02a4 [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp C:\Windows\system32\dhcpcore.dll
17:13:42.0132 0x02a4 Dhcp - ok
17:13:42.0164 0x02a4 [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache C:\Windows\system32\drivers\discache.sys
17:13:42.0164 0x02a4 discache - ok
17:13:42.0210 0x02a4 [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk C:\Windows\system32\DRIVERS\disk.sys
17:13:42.0210 0x02a4 Disk - ok
17:13:42.0257 0x02a4 [ 33EF4861F19A0736B11314AAD9AE28D0, 4C4B84365D85758E3263B88F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache C:\Windows\System32\dnsrslvr.dll
17:13:42.0273 0x02a4 Dnscache - ok
17:13:42.0351 0x02a4 [ 366BA8FB4B7BB7435E3B9EACB3843F67, 65B7C61ACF34F1F0149045AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc C:\Windows\System32\dot3svc.dll
17:13:42.0366 0x02a4 dot3svc - ok
17:13:42.0460 0x02a4 [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS C:\Windows\system32\dps.dll
17:13:42.0491 0x02a4 DPS - ok
17:13:42.0538 0x02a4 [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
17:13:42.0538 0x02a4 drmkaud - ok
17:13:42.0632 0x02a4 [ 71BC35067CABC02C9453AEAA42B2E43E, 713B19F2C08EA5E4C087F7A74A8856932CF33E19D63384823DD4E02ED8798619 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
17:13:42.0663 0x02a4 DXGKrnl - ok
17:13:42.0725 0x02a4 [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost C:\Windows\System32\eapsvc.dll
17:13:42.0725 0x02a4 EapHost - ok
17:13:43.0022 0x02a4 [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
17:13:43.0209 0x02a4 ebdrv - ok
17:13:43.0256 0x02a4 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] EFS C:\Windows\System32\lsass.exe
17:13:43.0256 0x02a4 EFS - ok
17:13:43.0396 0x02a4 [ A8C362018EFC87BEB013EE28F29C0863, 07971C681FBD391C0BA0172618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr C:\Windows\ehome\ehRecvr.exe
17:13:43.0443 0x02a4 ehRecvr - ok
17:13:43.0474 0x02a4 [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched C:\Windows\ehome\ehsched.exe
17:13:43.0490 0x02a4 ehSched - ok
17:13:43.0552 0x02a4 [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
17:13:43.0568 0x02a4 elxstor - ok
17:13:43.0614 0x02a4 [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev C:\Windows\system32\drivers\errdev.sys
17:13:43.0614 0x02a4 ErrDev - ok
17:13:43.0677 0x02a4 [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem C:\Windows\system32\es.dll
17:13:43.0692 0x02a4 EventSystem - ok
17:13:43.0724 0x02a4 [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat C:\Windows\system32\drivers\exfat.sys
17:13:43.0739 0x02a4 exfat - ok
17:13:43.0770 0x02a4 [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat C:\Windows\system32\drivers\fastfat.sys
17:13:43.0786 0x02a4 fastfat - ok
17:13:43.0895 0x02a4 [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax C:\Windows\system32\fxssvc.exe
17:13:43.0942 0x02a4 Fax - ok
17:13:43.0989 0x02a4 [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
17:13:43.0989 0x02a4 fdc - ok
17:13:44.0004 0x02a4 [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost C:\Windows\system32\fdPHost.dll
17:13:44.0020 0x02a4 fdPHost - ok
17:13:44.0020 0x02a4 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub C:\Windows\system32\fdrespub.dll
17:13:44.0036 0x02a4 FDResPub - ok
17:13:44.0051 0x02a4 [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
17:13:44.0051 0x02a4 FileInfo - ok
17:13:44.0082 0x02a4 [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
17:13:44.0082 0x02a4 Filetrace - ok
17:13:44.0114 0x02a4 [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
17:13:44.0114 0x02a4 flpydisk - ok
17:13:44.0160 0x02a4 [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
17:13:44.0176 0x02a4 FltMgr - ok
17:13:44.0285 0x02a4 [ E12C4928B32ACE04610259647F072635, B71B9C2DF45F33C4DAC88435129B08B0BCDBBE82E8C3AD0A95F00137CC8B619F ] FontCache C:\Windows\system32\FntCache.dll
17:13:44.0332 0x02a4 FontCache - ok
17:13:44.0394 0x02a4 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
17:13:44.0410 0x02a4 FontCache3.0.0.0 - ok
17:13:44.0426 0x02a4 [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
17:13:44.0441 0x02a4 FsDepends - ok
17:13:44.0472 0x02a4 [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A44583520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
17:13:44.0488 0x02a4 Fs_Rec - ok
17:13:44.0550 0x02a4 [ E306A24D9694C724FA2491278BF50FDB, 1D246B9C28550640EACBF8CF9DC980FD75106B92832D392FEBEF0C7012353091 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
17:13:44.0550 0x02a4 fvevol - ok
17:13:44.0597 0x02a4 [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
17:13:44.0597 0x02a4 gagp30kx - ok
17:13:44.0706 0x02a4 [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc C:\Windows\System32\gpsvc.dll
17:13:44.0753 0x02a4 gpsvc - ok
17:13:44.0862 0x02a4 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
17:13:44.0862 0x02a4 gupdate - ok
17:13:44.0878 0x02a4 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
17:13:44.0894 0x02a4 gupdatem - ok
17:13:44.0909 0x02a4 [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
17:13:44.0909 0x02a4 hcw85cir - ok
17:13:44.0972 0x02a4 [ A5EF29D5315111C80A5C1ABAD14C8972, A181DA72E946F121C3F4A19438C547B0BFD15138AB1DB5465945EC89DF1F6B0A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
17:13:44.0987 0x02a4 HdAudAddService - ok
17:13:45.0034 0x02a4 [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
17:13:45.0050 0x02a4 HDAudBus - ok
17:13:45.0065 0x02a4 [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
17:13:45.0065 0x02a4 HidBatt - ok
17:13:45.0081 0x02a4 [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
17:13:45.0096 0x02a4 HidBth - ok
17:13:45.0128 0x02a4 [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
17:13:45.0143 0x02a4 HidIr - ok
17:13:45.0174 0x02a4 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv C:\Windows\system32\hidserv.dll
17:13:45.0174 0x02a4 hidserv - ok
17:13:45.0237 0x02a4 [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb C:\Windows\system32\drivers\hidusb.sys
17:13:45.0237 0x02a4 HidUsb - ok
17:13:45.0284 0x02a4 [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc C:\Windows\system32\kmsvc.dll
17:13:45.0299 0x02a4 hkmsvc - ok
17:13:45.0346 0x02a4 [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
17:13:45.0362 0x02a4 HomeGroupListener - ok
17:13:45.0408 0x02a4 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
17:13:45.0424 0x02a4 HomeGroupProvider - ok
17:13:45.0486 0x02a4 [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
17:13:45.0502 0x02a4 HpSAMD - ok
17:13:45.0611 0x02a4 [ 871917B07A141BFF43D76D8844D48106, 30C702008D0EE57D63F74864967DD19A55A268E77E42B5B3CC73037AD51D2987 ] HTTP C:\Windows\system32\drivers\HTTP.sys
17:13:45.0642 0x02a4 HTTP - ok
17:13:45.0658 0x02a4 [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
17:13:45.0658 0x02a4 hwpolicy - ok
17:13:45.0720 0x02a4 [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
17:13:45.0736 0x02a4 i8042prt - ok
17:13:45.0767 0x02a4 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE0105025B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
17:13:45.0783 0x02a4 iaStorV - ok
17:13:45.0923 0x02a4 [ C521D7EB6497BB1AF6AFA89E322FB43C, BDDCFCBB5B76A9295669B5AC9F732D6127199ED5C300770B554C4E4794F66BB7 ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
17:13:45.0986 0x02a4 idsvc - ok
17:13:46.0017 0x02a4 [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
17:13:46.0032 0x02a4 iirsp - ok
17:13:46.0110 0x02a4 [ B9C54120F46392100478F58F374E5709, A28EE8B0988F580D5984E815FC78DF41B169260814234AA0E453375542D0957B ] IKEEXT C:\Windows\System32\ikeext.dll
17:13:46.0142 0x02a4 IKEEXT - ok
17:13:46.0188 0x02a4 [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide C:\Windows\system32\drivers\intelide.sys
17:13:46.0204 0x02a4 intelide - ok
17:13:46.0235 0x02a4 [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
17:13:46.0235 0x02a4 intelppm - ok
17:13:46.0282 0x02a4 [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
17:13:46.0298 0x02a4 IPBusEnum - ok
17:13:46.0313 0x02a4 [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
17:13:46.0313 0x02a4 IpFilterDriver - ok
17:13:46.0360 0x02a4 [ 58F67245D041FBE7AF88F4EAF79DF0FA, 67468D6A46FF4D87AD321BFEA42F2FC843D09AA292A119C76D4D795D06028F96 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
17:13:46.0407 0x02a4 iphlpsvc - ok
17:13:46.0469 0x02a4 [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
17:13:46.0485 0x02a4 IPMIDRV - ok
17:13:46.0516 0x02a4 [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
17:13:46.0516 0x02a4 IPNAT - ok
17:13:46.0563 0x02a4 [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM C:\Windows\system32\drivers\irenum.sys
17:13:46.0563 0x02a4 IRENUM - ok
17:13:46.0610 0x02a4 [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp C:\Windows\system32\drivers\isapnp.sys
17:13:46.0610 0x02a4 isapnp - ok
17:13:46.0641 0x02a4 [ CB7A9ABB12B8415BCE5D74994C7BA3AE, 464BFF3F5EEE985BE075E23E1813F5CB82A9A0771A92C6D889B13B867BCDF647 ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
17:13:46.0656 0x02a4 iScsiPrt - ok
17:13:46.0703 0x02a4 [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
17:13:46.0703 0x02a4 kbdclass - ok
17:13:46.0766 0x02a4 [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
17:13:46.0781 0x02a4 kbdhid - ok
17:13:46.0812 0x02a4 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] KeyIso C:\Windows\system32\lsass.exe
17:13:46.0812 0x02a4 KeyIso - ok
17:13:46.0859 0x02a4 [ F286830298323272260332D6ABC905C1, FF4CD182A95CA53119B228690D682EE9214BE131A0DBCB09B6189FBEBBFF902C ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
17:13:46.0859 0x02a4 KSecDD - ok
17:13:46.0875 0x02a4 [ D7C760D57B1656DD748B9E4AB6CB5A51, F8AE4185A6A9F7005DEFF1FDC03F395C6189825B482B8C650637FD29DE93AB68 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
17:13:46.0890 0x02a4 KSecPkg - ok
17:13:46.0937 0x02a4 [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm C:\Windows\system32\msdtckrm.dll
17:13:46.0968 0x02a4 KtmRm - ok
17:13:47.0000 0x02a4 [ 11EBD88FCB344C42A1282BCCD5858E45, 823030DAAB87DDB7C4175D45A69532C1DE6AD2B13A4745BA3BC9DEC9AF99D248 ] L1C C:\Windows\system32\DRIVERS\L1C62x86.sys
17:13:47.0031 0x02a4 L1C - ok
17:13:47.0062 0x02a4 [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB5060356A3B07449712B21B50E03378BEF04AF180F9 ] LanmanServer C:\Windows\system32\srvsvc.dll
17:13:47.0078 0x02a4 LanmanServer - ok
17:13:47.0109 0x02a4 [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
17:13:47.0124 0x02a4 LanmanWorkstation - ok
17:13:47.0171 0x02a4 [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
17:13:47.0171 0x02a4 lltdio - ok
17:13:47.0218 0x02a4 [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc C:\Windows\System32\lltdsvc.dll
17:13:47.0249 0x02a4 lltdsvc - ok
17:13:47.0280 0x02a4 [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts C:\Windows\System32\lmhsvc.dll
17:13:47.0296 0x02a4 lmhosts - ok
17:13:47.0327 0x02a4 [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
17:13:47.0343 0x02a4 LSI_FC - ok
17:13:47.0374 0x02a4 [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
17:13:47.0374 0x02a4 LSI_SAS - ok
17:13:47.0405 0x02a4 [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
17:13:47.0421 0x02a4 LSI_SAS2 - ok
17:13:47.0452 0x02a4 [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
17:13:47.0452 0x02a4 LSI_SCSI - ok
17:13:47.0468 0x02a4 [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv C:\Windows\system32\drivers\luafv.sys
17:13:47.0483 0x02a4 luafv - ok
17:13:47.0546 0x02a4 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432FD2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
17:13:47.0561 0x02a4 Mcx2Svc - ok
17:13:47.0577 0x02a4 [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
17:13:47.0577 0x02a4 megasas - ok
17:13:47.0624 0x02a4 [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
17:13:47.0639 0x02a4 MegaSR - ok
17:13:47.0717 0x02a4 [ 123271BD5237AB991DC5C21FDF8835EB, 004F8F9228EE291A0E36CE33078D572D61733516F9AA5CFC832AF204C6869E89 ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
17:13:47.0733 0x02a4 Microsoft Office Groove Audit Service - ok
17:13:47.0764 0x02a4 [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS C:\Windows\system32\mmcss.dll
17:13:47.0780 0x02a4 MMCSS - ok
17:13:47.0795 0x02a4 [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem C:\Windows\system32\drivers\modem.sys
17:13:47.0811 0x02a4 Modem - ok
17:13:47.0842 0x02a4 [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
17:13:47.0842 0x02a4 monitor - ok
17:13:47.0889 0x02a4 [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass C:\Windows\system32\drivers\mouclass.sys
17:13:47.0889 0x02a4 mouclass - ok
17:13:47.0920 0x02a4 [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
17:13:47.0936 0x02a4 mouhid - ok
17:13:47.0982 0x02a4 [ FC8771F45ECCCFD89684E38842539B9B, 806DDF2B4830CA866582FE74A521BB7DF26CA0E19013DAF584D3677FB48CC77A ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
17:13:47.0998 0x02a4 mountmgr - ok
17:13:48.0060 0x02a4 [ 5E0686615A80A6279B2314E13CD23F6E, 659931AB2DD395FAA2E5036D02BC6AAE8A7E4C9FF1A902B1FF9C15E878C89E77 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
17:13:48.0076 0x02a4 MozillaMaintenance - ok
17:13:48.0123 0x02a4 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio C:\Windows\system32\drivers\mpio.sys
17:13:48.0123 0x02a4 mpio - ok
17:13:48.0170 0x02a4 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
17:13:48.0170 0x02a4 mpsdrv - ok
17:13:48.0279 0x02a4 [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc C:\Windows\system32\mpssvc.dll
17:13:48.0310 0x02a4 MpsSvc - ok
17:13:48.0357 0x02a4 [ 21F4B24ACFC79A483515BD986DD9043F, 22681907E02E0B723ABE2CEF0602D36C8EF862E7E2B62A9B40A5EF582E58D7BA ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
17:13:48.0372 0x02a4 MRxDAV - ok
17:13:48.0404 0x02a4 [ 5D16C921E3671636C0EBA3BBAAC5FD25, 5BC107B95CAFC88F51FBB9F657B99944B20627A2B618F263093D7045E4FFD65C ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
17:13:48.0419 0x02a4 mrxsmb - ok
17:13:48.0466 0x02a4 [ 6D17A4791ACA19328C685D256349FEFC, 012AA3D84EEAAF53780D06D2D11B9727DFC3441F3FAD75BC9E751FB814403668 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
17:13:48.0482 0x02a4 mrxsmb10 - ok
17:13:48.0513 0x02a4 [ B81F204D146000BE76651A50670A5E9E, 78193D0F967BE9829E53F9B500342934B4B1E1F4CEFC444382959E2061BC3B17 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
17:13:48.0513 0x02a4 mrxsmb20 - ok
17:13:48.0575 0x02a4 [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci C:\Windows\system32\drivers\msahci.sys
17:13:48.0575 0x02a4 msahci - ok
17:13:48.0606 0x02a4 [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1CD0835E8234405BB80084065ED05363B77868397304 ] msdsm C:\Windows\system32\drivers\msdsm.sys
17:13:48.0622 0x02a4 msdsm - ok
17:13:48.0653 0x02a4 [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC C:\Windows\System32\msdtc.exe
17:13:48.0684 0x02a4 MSDTC - ok
17:13:48.0716 0x02a4 [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs C:\Windows\system32\drivers\Msfs.sys
17:13:48.0716 0x02a4 Msfs - ok
17:13:48.0731 0x02a4 [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
17:13:48.0747 0x02a4 mshidkmdf - ok
17:13:48.0794 0x02a4 [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
17:13:48.0794 0x02a4 msisadrv - ok
17:13:48.0825 0x02a4 [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI C:\Windows\system32\iscsiexe.dll
17:13:48.0840 0x02a4 MSiSCSI - ok
17:13:48.0856 0x02a4 msiserver - ok
17:13:48.0887 0x02a4 [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
17:13:48.0887 0x02a4 MSKSSRV - ok
17:13:48.0903 0x02a4 [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
17:13:48.0903 0x02a4 MSPCLOCK - ok
17:13:48.0934 0x02a4 [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
17:13:48.0934 0x02a4 MSPQM - ok
17:13:48.0965 0x02a4 [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
17:13:48.0965 0x02a4 MsRPC - ok
17:13:49.0043 0x02a4 [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
17:13:49.0043 0x02a4 mssmbios - ok
17:13:49.0059 0x02a4 [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
17:13:49.0059 0x02a4 MSTEE - ok
17:13:49.0074 0x02a4 [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
17:13:49.0074 0x02a4 MTConfig - ok
17:13:49.0090 0x02a4 [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup C:\Windows\system32\Drivers\mup.sys
17:13:49.0106 0x02a4 Mup - ok
17:13:49.0168 0x02a4 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent C:\Windows\system32\qagentRT.dll
17:13:49.0184 0x02a4 napagent - ok
17:13:49.0262 0x02a4 [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
17:13:49.0277 0x02a4 NativeWifiP - ok
17:13:49.0355 0x02a4 [ 9D1CCE440552500DED3A62F9D779CDB4, C6B3B1C891A8BA3F91CC1EC21919C4F80F4C9CAF88971AB6CA11F09820601EBD ] NAUpdate C:\Program Files\Nero\Update\NASvc.exe
17:13:49.0386 0x02a4 NAUpdate - ok
17:13:49.0449 0x02a4 [ 8C9C922D71F1CD4DEF73F186416B7896, 15FF43CD90C7913F83B35F2E7986561584588E8A45196EBD965C3A355836A9C7 ] NDIS C:\Windows\system32\drivers\ndis.sys
17:13:49.0496 0x02a4 NDIS - ok
17:13:49.0542 0x02a4 [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
17:13:49.0542 0x02a4 NdisCap - ok
17:13:49.0558 0x02a4 [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
17:13:49.0558 0x02a4 NdisTapi - ok
17:13:49.0605 0x02a4 [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
17:13:49.0605 0x02a4 Ndisuio - ok
17:13:49.0652 0x02a4 [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
17:13:49.0652 0x02a4 NdisWan - ok
17:13:49.0714 0x02a4 [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
17:13:49.0730 0x02a4 NDProxy - ok
17:13:49.0761 0x02a4 [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
17:13:49.0776 0x02a4 NetBIOS - ok
17:13:49.0854 0x02a4 [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
17:13:49.0854 0x02a4 NetBT - ok
17:13:49.0870 0x02a4 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] Netlogon C:\Windows\system32\lsass.exe
17:13:49.0886 0x02a4 Netlogon - ok
17:13:49.0932 0x02a4 [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman C:\Windows\System32\netman.dll
17:13:49.0948 0x02a4 Netman - ok
17:13:49.0995 0x02a4 [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm C:\Windows\System32\netprofm.dll
17:13:50.0026 0x02a4 netprofm - ok
17:13:50.0120 0x02a4 [ 76B1157EF850830C5ECE61D3E591CA8B, 2DE20457E4E29818E28A588DE66E3BAEA029CC91218546E32F83DC4A284F5191 ] netr73 C:\Windows\system32\DRIVERS\netr73.sys
17:13:50.0151 0x02a4 netr73 - ok
17:13:50.0198 0x02a4 [ F476EC40033CDB91EFBE73EB99B8362D, B17535037BC070F9AE1F6B381C2DBEE27658A8FDE15FB0E061F485EA7C7CBE59 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
17:13:50.0213 0x02a4 NetTcpPortSharing - ok
17:13:50.0244 0x02a4 [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
17:13:50.0260 0x02a4 nfrd960 - ok
17:13:50.0291 0x02a4 [ 374071043F9E4231EE43BE2BB48DD36D, C4FA3FC40CC49DBBB91901D14210A55D3831FAC9F9B3FF45FCA7F5CF242C9E92 ] NlaSvc C:\Windows\System32\nlasvc.dll
17:13:50.0322 0x02a4 NlaSvc - ok
17:13:50.0354 0x02a4 [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs C:\Windows\system32\drivers\Npfs.sys
17:13:50.0354 0x02a4 Npfs - ok
17:13:50.0385 0x02a4 [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi C:\Windows\system32\nsisvc.dll
17:13:50.0385 0x02a4 nsi - ok
17:13:50.0400 0x02a4 [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
17:13:50.0400 0x02a4 nsiproxy - ok
17:13:50.0588 0x02a4 [ 5E43D2B0EE64123D4880DFA6626DEFDE, 164413A22DE58B19EA2B4120034B46D6BE1F424B80C3421E10BE5C81153D049F ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
17:13:50.0681 0x02a4 Ntfs - ok
17:13:50.0728 0x02a4 [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null C:\Windows\system32\drivers\Null.sys
17:13:50.0728 0x02a4 Null - ok
17:13:50.0806 0x02a4 [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid C:\Windows\system32\drivers\nvraid.sys
17:13:50.0806 0x02a4 nvraid - ok
17:13:50.0837 0x02a4 [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970DD29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor C:\Windows\system32\drivers\nvstor.sys
17:13:50.0837 0x02a4 nvstor - ok
17:13:50.0931 0x02a4 [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
17:13:50.0931 0x02a4 nv_agp - ok
17:13:51.0087 0x02a4 [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
17:13:51.0118 0x02a4 odserv - ok
17:13:51.0196 0x02a4 [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
17:13:51.0212 0x02a4 ohci1394 - ok
17:13:51.0274 0x02a4 [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
17:13:51.0290 0x02a4 ose - ok
17:13:51.0352 0x02a4 [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
17:13:51.0368 0x02a4 p2pimsvc - ok
17:13:51.0430 0x02a4 [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc C:\Windows\system32\p2psvc.dll
17:13:51.0461 0x02a4 p2psvc - ok
17:13:51.0508 0x02a4 [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport C:\Windows\system32\DRIVERS\parport.sys
17:13:51.0539 0x02a4 Parport - ok
17:13:51.0586 0x02a4 [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0EEBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr C:\Windows\system32\drivers\partmgr.sys
17:13:51.0586 0x02a4 partmgr - ok
17:13:51.0633 0x02a4 [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
17:13:51.0648 0x02a4 Parvdm - ok
17:13:51.0711 0x02a4 [ 358AB7956D3160000726574083DFC8A6, 6CAFD4D1B8AB8C1D167ADC018985DDAB5AC2CBFFB3434FE6390F14AF50C19025 ] PcaSvc C:\Windows\System32\pcasvc.dll
17:13:51.0726 0x02a4 PcaSvc - ok
17:13:51.0820 0x02a4 [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD569416C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci C:\Windows\system32\drivers\pci.sys
17:13:51.0836 0x02a4 pci - ok
17:13:51.0882 0x02a4 [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide C:\Windows\system32\drivers\pciide.sys
17:13:51.0898 0x02a4 pciide - ok
17:13:51.0929 0x02a4 [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
17:13:51.0945 0x02a4 pcmcia - ok
17:13:51.0976 0x02a4 [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw C:\Windows\system32\drivers\pcw.sys
17:13:51.0976 0x02a4 pcw - ok
17:13:52.0038 0x02a4 [ 9E0104BA49F4E6973749A02BF41344ED, B32F39F38DB48D77FBA884DEE34112BAB81CCEF5DD2EAAA12D9589D73D2BB116 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
17:13:52.0070 0x02a4 PEAUTH - ok
17:13:52.0194 0x02a4 [ AF4D64D2A57B9772CF3801950B8058A6, C9C493A3775E6E1660CE5DF75DA574D0C04245FB88CF41B96217A725359C350D ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
17:13:52.0288 0x02a4 PeerDistSvc - ok
17:13:52.0553 0x02a4 [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA402044824DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla C:\Windows\system32\pla.dll
17:13:52.0631 0x02a4 pla - ok
17:13:52.0709 0x02a4 [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay C:\Windows\system32\umpnpmgr.dll
17:13:52.0740 0x02a4 PlugPlay - ok
17:13:52.0756 0x02a4 [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
17:13:52.0772 0x02a4 PNRPAutoReg - ok
17:13:52.0803 0x02a4 [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
17:13:52.0834 0x02a4 PNRPsvc - ok
17:13:52.0896 0x02a4 [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
17:13:52.0912 0x02a4 PolicyAgent - ok
17:13:52.0990 0x02a4 [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power C:\Windows\system32\umpo.dll
17:13:53.0021 0x02a4 Power - ok
17:13:53.0052 0x02a4 [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
17:13:53.0052 0x02a4 PptpMiniport - ok
17:13:53.0084 0x02a4 [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB04007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor C:\Windows\system32\DRIVERS\processr.sys
17:13:53.0099 0x02a4 Processor - ok
17:13:53.0146 0x02a4 [ CADEFAC453040E370A1BDFF3973BE00D, 2E3DD8DA702468D8AB0F3CE27188B1991D4CB015FB36BAE4C6E7996B61CF49B8 ] ProfSvc C:\Windows\system32\profsvc.dll
17:13:53.0162 0x02a4 ProfSvc - ok
17:13:53.0177 0x02a4 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] ProtectedStorage C:\Windows\system32\lsass.exe
17:13:53.0177 0x02a4 ProtectedStorage - ok
17:13:53.0224 0x02a4 [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
17:13:53.0224 0x02a4 Psched - ok
17:13:53.0380 0x02a4 [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
17:13:53.0474 0x02a4 ql2300 - ok
17:13:53.0520 0x02a4 [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
17:13:53.0536 0x02a4 ql40xx - ok
17:13:53.0614 0x02a4 [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE C:\Windows\system32\qwave.dll
17:13:53.0645 0x02a4 QWAVE - ok
17:13:53.0661 0x02a4 [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
17:13:53.0661 0x02a4 QWAVEdrv - ok
17:13:53.0676 0x02a4 [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
17:13:53.0692 0x02a4 RasAcd - ok
17:13:53.0708 0x02a4 [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
17:13:53.0708 0x02a4 RasAgileVpn - ok
17:13:53.0739 0x02a4 [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto C:\Windows\System32\rasauto.dll
17:13:53.0754 0x02a4 RasAuto - ok
17:13:53.0770 0x02a4 [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
17:13:53.0786 0x02a4 Rasl2tp - ok
17:13:53.0864 0x02a4 [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan C:\Windows\System32\rasmans.dll
17:13:53.0895 0x02a4 RasMan - ok
17:13:53.0926 0x02a4 [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
17:13:53.0926 0x02a4 RasPppoe - ok
17:13:53.0942 0x02a4 [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
17:13:53.0957 0x02a4 RasSstp - ok
17:13:53.0988 0x02a4 [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
17:13:54.0004 0x02a4 rdbss - ok
17:13:54.0035 0x02a4 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
17:13:54.0051 0x02a4 rdpbus - ok
17:13:54.0098 0x02a4 [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
17:13:54.0098 0x02a4 RDPCDD - ok
17:13:54.0176 0x02a4 [ B973FCFC50DC1434E1970A146F7E3885, BE797E5F5AE34D37F8DA1134CE94DD14DBE36D2BC405B97E992E2257848B7CA9 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
17:13:54.0176 0x02a4 RDPDR - ok
17:13:54.0222 0x02a4 [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
17:13:54.0222 0x02a4 RDPENCDD - ok
17:13:54.0238 0x02a4 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
17:13:54.0254 0x02a4 RDPREFMP - ok
17:13:54.0332 0x02a4 [ 68A0387F58E226DEEE23D9715955572A, F95BB1D2BB3E79AF47B1C715BB5E3003EEF888AAA963F46F4A2FE8AFBD4F37A4 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
17:13:54.0347 0x02a4 RdpVideoMiniport - ok
17:13:54.0378 0x02a4 [ F031683E6D1FEA157ABB2FF260B51E61, 83B552819A5964152882C527E1421DBCEAACC74DEB897E3C4B53F52F1467FED3 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
17:13:54.0394 0x02a4 RDPWD - ok
17:13:54.0456 0x02a4 [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
17:13:54.0456 0x02a4 rdyboost - ok
17:13:54.0488 0x02a4 [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess C:\Windows\System32\mprdim.dll
17:13:54.0503 0x02a4 RemoteAccess - ok
17:13:54.0534 0x02a4 [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry C:\Windows\system32\regsvc.dll
17:13:54.0550 0x02a4 RemoteRegistry - ok
17:13:54.0597 0x02a4 [ CB928D9E6DAF51879DD6BA8D02F01321, DFD263B67DDF98AE09AF6D6986CBC7BE3206BCE8403AAC51BCF9459E78233D12 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
17:13:54.0612 0x02a4 RFCOMM - ok
17:13:54.0644 0x02a4 [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
17:13:54.0659 0x02a4 RpcEptMapper - ok
17:13:54.0675 0x02a4 [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator C:\Windows\system32\locator.exe
17:13:54.0690 0x02a4 RpcLocator - ok
17:13:54.0737 0x02a4 [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs C:\Windows\system32\rpcss.dll
17:13:54.0753 0x02a4 RpcSs - ok
17:13:54.0800 0x02a4 [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
17:13:54.0800 0x02a4 rspndr - ok
17:13:54.0846 0x02a4 [ 7B67672F2AF95E2208AE883C2702E298, 3D470A71A421D8708E5FAF17AE88009115665F313828BFBEA8711AB455F04A8B ] RSUSBVSTOR C:\Windows\system32\Drivers\RtsUVStor.sys
17:13:54.0862 0x02a4 RSUSBVSTOR - ok
17:13:54.0893 0x02a4 [ 7FA7F2E249A5DCBB7970630E15E1F482, 9633B193F3FDA67BC551C6DCA4788AB83E9F45F77763EE579D02FE5D6B80DEDF ] s3cap C:\Windows\system32\drivers\vms3cap.sys
17:13:54.0893 0x02a4 s3cap - ok
17:13:54.0924 0x02a4 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] SamSs C:\Windows\system32\lsass.exe
17:13:54.0924 0x02a4 SamSs - ok
17:13:54.0956 0x02a4 [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
17:13:54.0956 0x02a4 sbp2port - ok
17:13:54.0987 0x02a4 [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr C:\Windows\System32\SCardSvr.dll
17:13:55.0002 0x02a4 SCardSvr - ok
17:13:55.0034 0x02a4 [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
17:13:55.0034 0x02a4 scfilter - ok
17:13:55.0127 0x02a4 [ A04BB13F8A72F8B6E8B4071723E4E336, E63287FF71C39CBF64C3347C455324C8437F9CF398153E269543588B65389502 ] Schedule C:\Windows\system32\schedsvc.dll
17:13:55.0205 0x02a4 Schedule - ok
17:13:55.0221 0x02a4 [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc C:\Windows\System32\certprop.dll
17:13:55.0236 0x02a4 SCPolicySvc - ok
17:13:55.0283 0x02a4 [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC C:\Windows\System32\SDRSVC.dll
17:13:55.0299 0x02a4 SDRSVC - ok
17:13:55.0346 0x02a4 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\Windows\system32\drivers\secdrv.sys
17:13:55.0346 0x02a4 secdrv - ok
17:13:55.0377 0x02a4 [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AAF39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon C:\Windows\system32\seclogon.dll
17:13:55.0392 0x02a4 seclogon - ok
17:13:55.0408 0x02a4 [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS C:\Windows\System32\sens.dll
17:13:55.0424 0x02a4 SENS - ok
17:13:55.0439 0x02a4 [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc C:\Windows\system32\sensrsvc.dll
17:13:55.0439 0x02a4 SensrSvc - ok
17:13:55.0470 0x02a4 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
17:13:55.0470 0x02a4 Serenum - ok
17:13:55.0502 0x02a4 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial C:\Windows\system32\DRIVERS\serial.sys
17:13:55.0502 0x02a4 Serial - ok
17:13:55.0533 0x02a4 [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
17:13:55.0533 0x02a4 sermouse - ok
17:13:55.0611 0x02a4 [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv C:\Windows\system32\sessenv.dll
17:13:55.0642 0x02a4 SessionEnv - ok
17:13:55.0689 0x02a4 [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
17:13:55.0704 0x02a4 sffdisk - ok
17:13:55.0736 0x02a4 [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
17:13:55.0736 0x02a4 sffp_mmc - ok
17:13:55.0767 0x02a4 [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
17:13:55.0767 0x02a4 sffp_sd - ok
17:13:55.0798 0x02a4 [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
17:13:55.0798 0x02a4 sfloppy - ok
17:13:55.0923 0x02a4 [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess C:\Windows\System32\ipnathlp.dll
17:13:55.0938 0x02a4 SharedAccess - ok
17:13:56.0001 0x02a4 [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
17:13:56.0032 0x02a4 ShellHWDetection - ok
17:13:56.0063 0x02a4 [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp C:\Windows\system32\drivers\sisagp.sys
17:13:56.0063 0x02a4 sisagp - ok
17:13:56.0094 0x02a4 [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
17:13:56.0110 0x02a4 SiSRaid2 - ok
17:13:56.0126 0x02a4 [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
17:13:56.0141 0x02a4 SiSRaid4 - ok
17:13:56.0188 0x02a4 [ F07AF60B152221472FBDB2FECEC4896D, A18FDCE8462A48429E249C44F0E49F844F2E3A4B5215349DE104F34D935EF983 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
17:13:56.0204 0x02a4 SkypeUpdate - ok
17:13:56.0235 0x02a4 [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb C:\Windows\system32\DRIVERS\smb.sys
17:13:56.0235 0x02a4 Smb - ok
17:13:56.0282 0x02a4 [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
17:13:56.0297 0x02a4 SNMPTRAP - ok
17:13:56.0313 0x02a4 [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr C:\Windows\system32\drivers\spldr.sys
17:13:56.0313 0x02a4 spldr - ok
17:13:56.0360 0x02a4 [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler C:\Windows\System32\spoolsv.exe
17:13:56.0391 0x02a4 Spooler - ok
17:13:56.0656 0x02a4 [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc C:\Windows\system32\sppsvc.exe
17:13:56.0874 0x02a4 sppsvc - ok
17:13:56.0921 0x02a4 [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify C:\Windows\system32\sppuinotify.dll
17:13:56.0952 0x02a4 sppuinotify - ok
17:13:57.0030 0x02a4 [ CDDDEC541BC3C96F91ECB48759673505, B030FFA02832317AC5626BF1BF8A4A95A5992C9A6E81BC1C002D5F4D667C27FB ] sptd C:\Windows\system32\Drivers\sptd.sys
17:13:57.0046 0x02a4 Suspicious file ( NoAccess ): C:\Windows\system32\Drivers\sptd.sys. md5: CDDDEC541BC3C96F91ECB48759673505, sha256: B030FFA02832317AC5626BF1BF8A4A95A5992C9A6E81BC1C002D5F4D667C27FB
17:13:57.0046 0x02a4 sptd - detected LockedFile.Multi.Generic ( 1 )
17:13:59.0963 0x02a4 Detect skipped due to KSN trusted
17:13:59.0963 0x02a4 sptd - ok
17:14:00.0026 0x02a4 [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv C:\Windows\system32\DRIVERS\srv.sys
17:14:00.0057 0x02a4 srv - ok
17:14:00.0104 0x02a4 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
17:14:00.0119 0x02a4 srv2 - ok
17:14:00.0166 0x02a4 [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
17:14:00.0197 0x02a4 srvnet - ok
17:14:00.0244 0x02a4 [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
17:14:00.0260 0x02a4 SSDPSRV - ok
17:14:00.0275 0x02a4 [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc C:\Windows\system32\sstpsvc.dll
17:14:00.0291 0x02a4 SstpSvc - ok
17:14:00.0322 0x02a4 [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
17:14:00.0322 0x02a4 stexstor - ok
17:14:00.0400 0x02a4 [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc C:\Windows\System32\wiaservc.dll
17:14:00.0431 0x02a4 StiSvc - ok
17:14:00.0447 0x02a4 [ 472AF0311073DCECEAA8FA18BA2BDF89, 089414057EB2047E42C96C1ACE79D509967461DC5A4D2836F63C04268637A3FC ] storflt C:\Windows\system32\drivers\vmstorfl.sys
17:14:00.0462 0x02a4 storflt - ok
17:14:00.0494 0x02a4 [ DCAFFD62259E0BDB433DD67B5BB37619, CBD12FF9BBF33D18B0F3D322B12EC62E7DF3BF45C6AD43D2E91FF4C4762E05D0 ] storvsc C:\Windows\system32\drivers\storvsc.sys
17:14:00.0509 0x02a4 storvsc - ok
17:14:00.0540 0x02a4 [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum C:\Windows\system32\drivers\swenum.sys
17:14:00.0540 0x02a4 swenum - ok
17:14:00.0587 0x02a4 [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv C:\Windows\System32\swprv.dll
17:14:00.0603 0x02a4 swprv - ok
17:14:00.0618 0x02a4 Synth3dVsc - ok
17:14:00.0728 0x02a4 [ D7578970CC4426349EE11AACEC427A8C, 176EF87F17A165A51541634541F8705D2C8E7597CFF16B5E81064842BC6F7B8C ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
17:14:00.0790 0x02a4 SynTP - ok
17:14:01.0008 0x02a4 [ 36650D618CA34C9D357DFD3D89B2C56F, 7C3774E53DCF32CB3A4B3504E32D2A651E18467FA0A6AC4C7993C696741B704B ] SysMain C:\Windows\system32\sysmain.dll
17:14:01.0071 0x02a4 SysMain - ok
17:14:01.0133 0x02a4 [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\Windows\System32\TabSvc.dll
17:14:01.0164 0x02a4 TabletInputService - ok
17:14:01.0227 0x02a4 [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv C:\Windows\System32\tapisrv.dll
17:14:01.0242 0x02a4 TapiSrv - ok
17:14:01.0289 0x02a4 [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS C:\Windows\System32\tbssvc.dll
17:14:01.0320 0x02a4 TBS - ok
17:14:01.0430 0x02a4 [ CA59F7C570AF70BC174F477CFE2D9EE3, F09E4E14207A2AC6957D2C0AC8707D0E356A9087FA6DC703373242D8EEB026BD ] Tcpip C:\Windows\system32\drivers\tcpip.sys
17:14:01.0539 0x02a4 Tcpip - ok
17:14:01.0632 0x02a4 [ CA59F7C570AF70BC174F477CFE2D9EE3, F09E4E14207A2AC6957D2C0AC8707D0E356A9087FA6DC703373242D8EEB026BD ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
17:14:01.0679 0x02a4 TCPIP6 - ok
17:14:01.0726 0x02a4 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
17:14:01.0742 0x02a4 tcpipreg - ok
17:14:01.0788 0x02a4 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
17:14:01.0788 0x02a4 TDPIPE - ok
17:14:01.0835 0x02a4 [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
17:14:01.0835 0x02a4 TDTCP - ok
17:14:01.0898 0x02a4 [ B459575348C20E8121D6039DA063C704, 1B4328A9EA39FF5A57F258E02254D04B73455F1DF7C997C13702A8B2F12D0347 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
17:14:01.0898 0x02a4 tdx - ok
17:14:01.0913 0x02a4 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD C:\Windows\system32\drivers\termdd.sys
17:14:01.0929 0x02a4 TermDD - ok
17:14:02.0054 0x02a4 [ 382C804C92811BE57829D8E550A900E2, 5F52C2E7902024CF1C9CC0069F411C3F19CCA3DB209F437FA0F3932D4898EB50 ] TermService C:\Windows\System32\termsrv.dll
17:14:02.0085 0x02a4 TermService - ok
17:14:02.0116 0x02a4 [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes C:\Windows\system32\themeservice.dll
17:14:02.0132 0x02a4 Themes - ok
17:14:02.0163 0x02a4 [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER C:\Windows\system32\mmcss.dll
17:14:02.0163 0x02a4 THREADORDER - ok
17:14:02.0210 0x02a4 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks C:\Windows\System32\trkwks.dll
17:14:02.0225 0x02a4 TrkWks - ok
17:14:02.0319 0x02a4 [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
17:14:02.0334 0x02a4 TrustedInstaller - ok
17:14:02.0397 0x02a4 [ B37B08F2E5EEB1A37E448E09BACE1101, 32CC9E06B88BAB6FAB4696B744548DFCE9199A7FD2BA8B019F269CA75895852C ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
17:14:02.0397 0x02a4 tssecsrv - ok
17:14:02.0444 0x02a4 [ FD1D6C73E6333BE727CBCC6054247654, 6F7B9AE1A5986204DB3348D13B303F30FC17624939DA74D6BD114FAEED0FB30E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
17:14:02.0444 0x02a4 TsUsbFlt - ok
17:14:02.0490 0x02a4 tsusbhub - ok
17:14:02.0568 0x02a4 [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
17:14:02.0568 0x02a4 tunnel - ok
17:14:02.0600 0x02a4 [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
17:14:02.0615 0x02a4 uagp35 - ok
17:14:02.0662 0x02a4 [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
17:14:02.0678 0x02a4 udfs - ok
17:14:02.0740 0x02a4 [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect C:\Windows\system32\UI0Detect.exe
17:14:02.0756 0x02a4 UI0Detect - ok
17:14:02.0818 0x02a4 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
17:14:02.0818 0x02a4 uliagpkx - ok
17:14:02.0880 0x02a4 [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus C:\Windows\system32\drivers\umbus.sys
17:14:02.0896 0x02a4 umbus - ok
17:14:02.0943 0x02a4 [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
17:14:02.0943 0x02a4 UmPass - ok
17:14:03.0005 0x02a4 [ 409994A8EACEEE4E328749C0353527A0, FFC57B647147DE2957A7DE4B330CC534DE7AC892A2FCE3BB164F7A516CAB1B56 ] UmRdpService C:\Windows\System32\umrdp.dll
17:14:03.0021 0x02a4 UmRdpService - ok
17:14:03.0083 0x02a4 [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost C:\Windows\System32\upnphost.dll
17:14:03.0099 0x02a4 upnphost - ok
17:14:03.0146 0x02a4 [ 71D97F1A3CC47A56728F7A400A3F8295, ED3FDB73D8A98D9BAF702C0F5C7AD79D525D19DCE1487D442536913BEA5C7F15 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
17:14:03.0161 0x02a4 usbccgp - ok
17:14:03.0208 0x02a4 [ 2352AB5F9F8F097BF9D41D5A4718A041, 25BC7828C625B9B2A5110C25B230C5828CEC18EC97ECF9EC4745E8930CBF472C ] usbcir C:\Windows\system32\drivers\usbcir.sys
17:14:03.0208 0x02a4 usbcir - ok
17:14:03.0239 0x02a4 [ C4FB8E7ADEA9B5CEEA885A1B504B7E40, 3E0AE5D236890452F2EA33504309A7E5FE49C567FF6F68A83A5987F05ED01BF0 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
17:14:03.0255 0x02a4 usbehci - ok
17:14:03.0286 0x02a4 [ 56E89C8E05A987A49FFA595428FB9767, 9435512985C60E6D3DEC50902CB4FD936852C3BBFCCADA68D3DBB13EDE99D5C9 ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys
17:14:03.0286 0x02a4 usbfilter - ok
17:14:03.0348 0x02a4 [ 86AA95ACB611001E26CD2C0145F2225A, 584D26E8C9407A4E717DCBF2D3819DB441C2D455B5FDA6654FBA3794E19B4D51 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
17:14:03.0364 0x02a4 usbhub - ok
17:14:03.0395 0x02a4 [ DCDF9855145A14DFCA0AB32308871961, 9A21013AD032195D54CE655DE5363E78BB74CC55C40B889520B478892F4BA40A ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
17:14:03.0395 0x02a4 usbohci - ok
17:14:03.0442 0x02a4 [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
17:14:03.0458 0x02a4 usbprint - ok
17:14:03.0489 0x02a4 [ F991AB9CC6B908DB552166768176896A, AD8E7A16B23B244B7F834622D4E38B5844193C6E31EF96F61E0E2EA16C945026 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
17:14:03.0504 0x02a4 USBSTOR - ok
17:14:03.0520 0x02a4 [ 8E51D04175BAA14C4F79AA5F6D248770, 6CE2E45E272734A5D1D0C4CE2BD7B61C61C7538903E87203E376495D198EFBD0 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
17:14:03.0536 0x02a4 usbuhci - ok
17:14:03.0567 0x02a4 [ DE014425522610BEDCA3821BB8C0F1D5, D6FEA0DF07F89834AEEE8C02CC7FD41068D758B6CCECE2EEE5CF4B9DB646FA1E ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
17:14:03.0582 0x02a4 usbvideo - ok
17:14:03.0629 0x02a4 [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms C:\Windows\System32\uxsms.dll
17:14:03.0645 0x02a4 UxSms - ok
17:14:03.0645 0x02a4 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] VaultSvc C:\Windows\system32\lsass.exe
17:14:03.0660 0x02a4 VaultSvc - ok
17:14:03.0692 0x02a4 [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFEF9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
17:14:03.0707 0x02a4 vdrvroot - ok
17:14:03.0801 0x02a4 [ C3CD30495687C2A2F66A65CA6FD89BE9, 582E4706C1D6A151020D14B26C7BF166F4E42BDD6E410F30EC452469270C5E9B ] vds C:\Windows\System32\vds.exe
17:14:03.0832 0x02a4 vds - ok
17:14:03.0863 0x02a4 [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
17:14:03.0863 0x02a4 vga - ok
17:14:03.0894 0x02a4 [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave C:\Windows\System32\drivers\vga.sys
17:14:03.0894 0x02a4 VgaSave - ok
17:14:03.0926 0x02a4 VGPU - ok
17:14:03.0972 0x02a4 [ 5461686CCA2FDA57B024547733AB42E3, 2721D0659AA890172FCAD4EC4D926B58ACD0EE4887DA51545DC7237420D5BF84 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
17:14:03.0988 0x02a4 vhdmp - ok
17:14:04.0004 0x02a4 [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp C:\Windows\system32\drivers\viaagp.sys
17:14:04.0019 0x02a4 viaagp - ok
17:14:04.0035 0x02a4 [ E02F079A6AA107F06B16549C6E5C7B74, B530DCE3EE4F285B3D5F69F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys
17:14:04.0050 0x02a4 ViaC7 - ok
17:14:04.0113 0x02a4 [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFED70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide C:\Windows\system32\drivers\viaide.sys
17:14:04.0128 0x02a4 viaide - ok
17:14:04.0191 0x02a4 [ EEE8ECE9DFAD269B34CC57316D62E8C6, BF819FD2D4D907123B0C10B4E0B8A18A2A32B9771E57557622758A6CE35FB94B ] vm331avs C:\Windows\system32\Drivers\vm331avs.sys
17:14:04.0191 0x02a4 vm331avs - ok
17:14:04.0269 0x02a4 [ C2F2911156FDC7817C52829C86DA494E, FE499F189B5016FCE0018AA3DE3970B72275B7B15F3D4D608117F6DDEC6B90DC ] vmbus C:\Windows\system32\drivers\vmbus.sys
17:14:04.0284 0x02a4 vmbus - ok
17:14:04.0300 0x02a4 [ D4D77455211E204F370D08F4963063CE, 2018B2A84C73E0834200A594C02A9D28C74906F126DAD3CCDDFC9CD9A61669E2 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
17:14:04.0316 0x02a4 VMBusHID - ok
17:14:04.0331 0x02a4 [ 7C221C3D18268CEE7016610D9AD7AD8F, 8DD47F7BEA6D9278C82742FE13C39711E75026EBAF120B0F931C04F5ACD83589 ] vmuvcflt C:\Windows\system32\Drivers\vmuvcflt.sys
17:14:04.0331 0x02a4 vmuvcflt - ok
17:14:04.0347 0x02a4 [ 4C63E00F2F4B5F86AB48A58CD990F212, 9796BD4B9CFEEEAF57C5E332A732EFC2770B21F9B35301A5D202F5FC52C1E035 ] volmgr C:\Windows\system32\drivers\volmgr.sys
17:14:04.0362 0x02a4 volmgr - ok
17:14:04.0409 0x02a4 [ B5BB72067DDDDBBFB04B2F89FF8C3C87, 65B9AD55F43940A5FDD88B6EC5034A7E375DF8E6F5F1AE6519A4BD6B7E992EBC ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
17:14:04.0425 0x02a4 volmgrx - ok
17:14:04.0456 0x02a4 [ F497F67932C6FA693D7DE2780631CFE7, DAE544ED99D2CF570DA31343BD87D2F856D0D13529656D38E1BF854C77F017F6 ] volsnap C:\Windows\system32\drivers\volsnap.sys
17:14:04.0472 0x02a4 volsnap - ok
17:14:04.0518 0x02a4 [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A315FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
17:14:04.0534 0x02a4 vsmraid - ok
17:14:04.0628 0x02a4 [ 209A3B1901B83AEB8527ED211CCE9E4C, 1A431F6409F8E0531F600F8F988ECECECB902DA26BBAAF1DE74A5CAC29A7CB44 ] VSS C:\Windows\system32\vssvc.exe
17:14:04.0690 0x02a4 VSS - ok
17:14:04.0737 0x02a4 [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB523DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
17:14:04.0737 0x02a4 vwifibus - ok
17:14:04.0768 0x02a4 [ 7090D3436EEB4E7DA3373090A23448F7, 3A130B28F2BFA7DCEC8596C4CE4E187B019F5ECF1AAC8DD1BBDE9CBD2428FEC2 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
17:14:04.0768 0x02a4 vwififlt - ok
17:14:04.0815 0x02a4 [ A3F04CBEA6C2A10E6CB01F8B47611882, 32AFE18B07FECA30BC95831A5DC94C784E543784DF16165334A777DC84E91EF3 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
17:14:04.0815 0x02a4 vwifimp - ok
17:14:04.0862 0x02a4 [ 55187FD710E27D5095D10A472C8BAF1C, AE298E2D3BA366BCBDC092C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time C:\Windows\system32\w32time.dll
17:14:04.0893 0x02a4 W32Time - ok
17:14:04.0924 0x02a4 [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
17:14:04.0924 0x02a4 WacomPen - ok
17:14:04.0955 0x02a4 [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
17:14:04.0971 0x02a4 WANARP - ok
17:14:04.0971 0x02a4 [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
17:14:04.0986 0x02a4 Wanarpv6 - ok
17:14:05.0174 0x02a4 [ 691E3285E53DCA558E1A84667F13E15A, 12EDB66EF8FC100402BEA221F354D3BD5542F6DDF715B6E7D873D6BAE7E3D329 ] wbengine C:\Windows\system32\wbengine.exe
17:14:05.0267 0x02a4 wbengine - ok
17:14:05.0314 0x02a4 [ 9614B5D29DC76AC3C29F6D2D3AA70E67, A2FFB92F0030B4CD771E862DA575ECCF2F3A5B4B85858C1241A0C59262C0EC88 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
17:14:05.0330 0x02a4 WbioSrvc - ok
17:14:05.0439 0x02a4 [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F86C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc C:\Windows\System32\wcncsvc.dll
17:14:05.0470 0x02a4 wcncsvc - ok
17:14:05.0501 0x02a4 [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710DA81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
17:14:05.0517 0x02a4 WcsPlugInService - ok
17:14:05.0548 0x02a4 [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E6945FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd C:\Windows\system32\DRIVERS\wd.sys
17:14:05.0548 0x02a4 Wd - ok
17:14:05.0657 0x02a4 [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
17:14:05.0704 0x02a4 Wdf01000 - ok
17:14:05.0735 0x02a4 [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiServiceHost C:\Windows\system32\wdi.dll
17:14:05.0751 0x02a4 WdiServiceHost - ok
17:14:05.0751 0x02a4 [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiSystemHost C:\Windows\system32\wdi.dll
17:14:05.0766 0x02a4 WdiSystemHost - ok
17:14:05.0829 0x02a4 [ 75E8EBD7040CE238684333F97014762A, 2CA0B267FBAEB303D1F8B639D733DC0DE17BA1276CC9096035B4F2BBBED3EF7F ] WebClient C:\Windows\System32\webclnt.dll
17:14:05.0860 0x02a4 WebClient - ok
17:14:05.0891 0x02a4 [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F16B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc C:\Windows\system32\wecsvc.dll
17:14:05.0922 0x02a4 Wecsvc - ok
17:14:05.0954 0x02a4 [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport C:\Windows\System32\wercplsupport.dll
17:14:05.0969 0x02a4 wercplsupport - ok
17:14:06.0000 0x02a4 [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76DA6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc C:\Windows\System32\WerSvc.dll
17:14:06.0016 0x02a4 WerSvc - ok
17:14:06.0047 0x02a4 [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
17:14:06.0063 0x02a4 WfpLwf - ok
17:14:06.0078 0x02a4 [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount C:\Windows\system32\drivers\wimmount.sys
17:14:06.0078 0x02a4 WIMMount - ok
17:14:06.0250 0x02a4 [ 082CF481F659FAE0DE51AD060881EB47, BB67D2AF0BB9192D4CCF66C23D80CE5A1B38715556D94E2561DBF8F805FA30A5 ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
17:14:06.0297 0x02a4 WinDefend - ok
17:14:06.0344 0x02a4 WinHttpAutoProxySvc - ok
17:14:06.0422 0x02a4 [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
17:14:06.0437 0x02a4 Winmgmt - ok
17:14:06.0609 0x02a4 [ 1B91CD34EA3A90AB6A4EF0550174F4CC, 5B6618615EBFBA594C945AD35F5C68DA8C6053892B6D12D626BB6120910D80DC ] WinRM C:\Windows\system32\WsmSvc.dll
17:14:06.0687 0x02a4 WinRM - ok
17:14:06.0796 0x02a4 [ A67E5F9A400F3BD1BE3D80613B45F708, E170A8BD31A779403DC9C43ED6483DA8E186512D3EE700B87F6BA292E284E367 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
17:14:06.0796 0x02a4 WinUsb - ok
17:14:06.0936 0x02a4 [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc C:\Windows\System32\wlansvc.dll
17:14:06.0983 0x02a4 Wlansvc - ok
17:14:07.0170 0x02a4 [ FB01D4AE207B9EFDBABFC55DC95C7E31, E0EFDBBE0BAC275230C8C1A053948C21BCF20B99B92E50939E95FFB9DC87F6BA ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
17:14:07.0280 0x02a4 wlidsvc - ok
17:14:07.0342 0x02a4 [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
17:14:07.0342 0x02a4 WmiAcpi - ok
17:14:07.0389 0x02a4 [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062ADBB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
17:14:07.0404 0x02a4 wmiApSrv - ok
17:14:07.0654 0x02a4 [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
17:14:07.0716 0x02a4 WMPNetworkSvc - ok
17:14:07.0810 0x02a4 [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC449D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc C:\Windows\System32\wpcsvc.dll
17:14:07.0841 0x02a4 WPCSvc - ok
17:14:07.0919 0x02a4 [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C1891750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
17:14:07.0966 0x02a4 WPDBusEnum - ok
17:14:08.0028 0x02a4 [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BCEF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
17:14:08.0044 0x02a4 ws2ifsl - ok
17:14:08.0091 0x02a4 [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc C:\Windows\System32\wscsvc.dll
17:14:08.0106 0x02a4 wscsvc - ok
17:14:08.0106 0x02a4 WSearch - ok
17:14:08.0387 0x02a4 [ FC3EC24FCE372C89423E015A2AC1A31E, 8D028182CF83667D3E4D148979972D208FA6D9B8540EE47A0A7831B770ECD257 ] wuauserv C:\Windows\system32\wuaueng.dll
17:14:08.0528 0x02a4 wuauserv - ok
17:14:08.0590 0x02a4 [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
17:14:08.0606 0x02a4 WudfPf - ok
17:14:08.0684 0x02a4 [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
17:14:08.0699 0x02a4 WUDFRd - ok
17:14:08.0777 0x02a4 [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc C:\Windows\System32\WUDFSvc.dll
17:14:08.0793 0x02a4 wudfsvc - ok
17:14:08.0902 0x02a4 [ 3C5E51C05BE9B56EAFF4E388C3AB25E4, 10D9FDEDAB1FB2E76D54661AFA5C1A6B1B0980525F38F5D061537077841C6AEE ] WwanSvc C:\Windows\System32\wwansvc.dll
17:14:08.0918 0x02a4 WwanSvc - ok
17:14:09.0011 0x02a4 [ 74EC37B9EAF9FCA015B933A526825C7A, E75D73422B4383210F912B424377D5F2DBBF0E9418A2F450636B689572B1B9F6 ] {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC} C:\Program Files\CyberLink\PowerDVD10\NavFilter\000.fcl
17:14:09.0042 0x02a4 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC} - ok
17:14:09.0089 0x02a4 ================ Scan global ===============================
17:14:09.0152 0x02a4 [ DAB748AE0439955ED2FA22357533DDDB, 73EDD402C7479DDCE1998D0C7E99E1EC2974F64EFC33A851439CC85D09EDCDF9 ] C:\Windows\system32\basesrv.dll
17:14:09.0198 0x02a4 [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
17:14:09.0230 0x02a4 [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
17:14:09.0276 0x02a4 [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\Windows\system32\sxssrv.dll
17:14:09.0323 0x02a4 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6, D7BC4ED605B32274B45328FD9914FB0E7B90D869A38F0E6F94FB1BF4E9E2B407 ] C:\Windows\system32\services.exe
17:14:09.0339 0x02a4 [ Global ] - ok
17:14:09.0339 0x02a4 ================ Scan MBR ==================================
17:14:09.0354 0x02a4 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
17:14:09.0651 0x02a4 \Device\Harddisk0\DR0 - ok
17:14:09.0651 0x02a4 ================ Scan VBR ==================================
17:14:09.0666 0x02a4 [ 372DB384DF0CDA084BE00CC731C6D3E0 ] \Device\Harddisk0\DR0\Partition1
17:14:09.0666 0x02a4 \Device\Harddisk0\DR0\Partition1 - ok
17:14:09.0729 0x02a4 [ 40C265D2744A132A0BB8A8F5CC71A720 ] \Device\Harddisk0\DR0\Partition2
17:14:09.0744 0x02a4 \Device\Harddisk0\DR0\Partition2 - ok
17:14:09.0776 0x02a4 [ 08CAA3EC4AFA346DB5F2D4B6266E9F8E ] \Device\Harddisk0\DR0\Partition3
17:14:09.0807 0x02a4 \Device\Harddisk0\DR0\Partition3 - ok
17:14:09.0807 0x02a4 Waiting for KSN requests completion. In queue: 67
17:14:10.0821 0x02a4 Waiting for KSN requests completion. In queue: 67
17:14:11.0835 0x02a4 Waiting for KSN requests completion. In queue: 67
17:14:13.0052 0x02a4 AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 8.0.1497.376 ), 0x41000 ( enabled : updated )
17:14:13.0098 0x02a4 Win FW state via NFP2: enabled
17:14:15.0938 0x02a4 ============================================================
17:14:15.0938 0x02a4 Scan finished
17:14:15.0938 0x02a4 ============================================================
17:14:15.0953 0x076c Detected object count: 0
17:14:15.0953 0x076c Actual detected object count: 0
17:14:29.0697 0x0ee4 Deinitialize success

mycity.rs/must-login.png

offline
  • Pridružio: 09 Avg 2011
  • Poruke: 15879
  • Gde živiš: Beograd

Ok, kakvo je sada stanje, racunar je cist...

offline
  • Crki  Male
  • Novi MyCity građanin
  • Pridružio: 12 Okt 2008
  • Poruke: 11

i dalje ne mogu da se logujem Sad traži ID

offline
  • Pridružio: 09 Avg 2011
  • Poruke: 15879
  • Gde živiš: Beograd

U Ambulanti resavamo samo probleme uzrokovane malware-om, otvori temu ovde i iznesi problem

http://www.mycity.rs/Facebook-i-ostale-drustvene-mreze/


Preuzmi "Xplode"-ov DelFix i sačuvaj ga na Desktop

Dvoklikom pokreni program.

Štikliraj sledeće opcije:
Remove disinfection tools
Purge System Restore
Reset system settings


Klikni na dugme "Run" i pričekaj da program završi rad.
Alat ce ukloniti sve koriscene alate u ovoj temi...
Kada alat završi, otvoriće izvestaj u notepadu.
Napomena: Izvestaj ce takodje biti sacuvan na C:\DelFix.txt

Nije potrebno dostavljati izvestaj.



Arrow Preporučujem da za zaštitu USB memorijskih uredjaja koristiš MCShield v2. Nema nikakve veze sa AntiVirus-om tj. nece ometati njegov rad, a pokazao se kao jedan od najboljih vidova zaštite od malware-a koji se prenosi putem USB mem. uređaja. Skineš, instaliraš, ubodeš USB mem. uređaj, izvrši se skeniranje nakon čega dobiješ obaveštenje da je uređaj čist (ukoliko je stvarno tako); ili dobiješ log u kome vidiš informacije o malware-u koji je nađen i obrisan.


Home Page MCShield-a ::Anti-Malware Tool:: v2: http://amf.mycity.rs/mcshield/

Više o MCShield-u možeš saznati u ovim temama:
v1: http://www.mycity.rs/MyCity-Laboratorija/MCShield.html
v2: http://www.mycity.rs/MyCity-Laboratorija/MCShield-v2.html




Arrow Obavezno poseti temu "Testirajte da li vam je pretraživač ranjiv", pročitaj i isprati link koji stoji u njoj.
Link do teme je: http://www.mycity.rs/Web-browseri/Testirajte-da-li.....anjiv.html



Arrow Takode, isprati i temu "Kako izbeci i ukloniti toolbar-ove" , procitaj i isprati korake u njoj. Link do teme je: http://www.mycity.rs/Zastita/Kako-izbeci-i-ukloniti-toolbar-ove.html



TwinHeadedEagle (AMF Tim)

offline
  • Crki  Male
  • Novi MyCity građanin
  • Pridružio: 12 Okt 2008
  • Poruke: 11

hvala na pomoći

Ko je trenutno na forumu
 

Ukupno su 894 korisnika na forumu :: 24 registrovanih, 6 sakrivenih i 864 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 8u47, A.R.Chafee.Jr., antonije64, Apok, bojcistv, draganca, drimer, Georgius, mercedesamg, Misirac, Mixelotti, moldway, operniki, opt1, Parker, raptorsi, S.Palestinac, Sirius, stegonosa, Trpe Grozni, Tvrtko I, vathra, wizzardone, ZetaMan