Witam, po starcie systemu uruchamia się folder "moje dokumenty", w tle widoczna jest tylko tapeta - żadnych ikon na pulpicie, brak dolnego paska. Komputer nie reaguje na "lewo-klik" i "prawo-klik" na pulpicie, nie reaguje również na próbę wywołania menu Start przy pomocy klawisza Windows. Przeskakując po folderach przy pomocy okna moje dokumenty można otwierać programy np. przeglądarkę internetową. Program Malwarebytes Anti-malware wykrył około 260 zainfekowanych obiektów. Po przeskanowaniu kliknąłem opcję dodaj do kwarantanny. Logi z programów: MBAM, AdwCleaner, OTL i TDSSKiller dodałem w załączniku. Proszę o pomoc w usunięciu tego "dziadostwa".
# AdwCleaner v3.214 - Log utworzony 03/07/2014 o 18:54:45
# Aktualizacja 29/06/2014 przez Xplode
# System operacyjny : Microsoft Windows XP Dodatek Service Pack 3 (32 bits)
# U¿ytkownik : Piotrek - KOMP-NA-GORZE
# cie¿ka : E:\Moje dokumenty\Piotr\Downloads\adwcleaner_3.214.exe
# Opcja : Szukaj
***** [ Us³ugi ] *****
Us³uga Znaleziono : IePluginService
Us³uga Znaleziono : Wpm
***** [ Pliki / Foldery ] *****
Folder Znaleziono : C:\Documents and Settings\All Users\Dane aplikacji\IePluginService
Folder Znaleziono : C:\Documents and Settings\All Users\Dane aplikacji\WPM
Folder Znaleziono : C:\Documents and Settings\Piotrek\Dane aplikacji\337Games
Folder Znaleziono : C:\Documents and Settings\Piotrek\Dane aplikacji\pdfforge
Folder Znaleziono : C:\Documents and Settings\Piotrek\Dane aplikacji\SupTab
Folder Znaleziono : C:\Documents and Settings\Piotrek\Menu Start\Programy\Mobogenie
Folder Znaleziono : C:\Documents and Settings\Piotrek\Ustawienia lokalne\Dane aplikacji\genienext
Folder Znaleziono : C:\Documents and Settings\Piotrek\Ustawienia lokalne\Dane aplikacji\Mobogenie
Folder Znaleziono : E:\Moje dokumenty\Piotr\Mobogenie
Plik Znaleziono : C:\Documents and Settings\Piotrek\daemonprocess.txt
***** [ Skróty ] *****
Skrót Znaleziono : C:\Documents and Settings\Piotrek\Menu Start\Programy\Internet Explorer.lnk ( hxxp://aartemis.com/?type=sc & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS )
Skrót Znaleziono : C:\Documents and Settings\Piotrek\Menu Start\Programy\Akcesoria\Narzêdzia systemowe\Internet Explorer (bez dodatków).lnk ( hxxp://aartemis.com/?type=sc & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS )
Skrót Znaleziono : C:\Documents and Settings\Piotrek\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Uruchom przegl¹darkê Internet Explorer.lnk ( hxxp://aartemis.com/?type=sc & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS )
***** [ Rejestr ] *****
Klucz Znaleziono : HKCU\Software\Softonic
Klucz Znaleziono : HKLM\Software\aartemisSoftware
Klucz Znaleziono : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Klucz Znaleziono : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Klucz Znaleziono : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Klucz Znaleziono : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Klucz Znaleziono : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Klucz Znaleziono : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Klucz Znaleziono : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Klucz Znaleziono : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Klucz Znaleziono : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Klucz Znaleziono : HKLM\SOFTWARE\Google\Chrome\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo
Klucz Znaleziono : HKLM\Software\IePlugin
Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SupTab
Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Wpm
Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Klucz Znaleziono : HKLM\Software\SupTab
Klucz Znaleziono : HKLM\Software\supWPM
Klucz Znaleziono : HKLM\Software\Wpm
Wartoæ Znaleziono : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Wartoæ Znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
***** [ Przegl¹darki internetowe ] *****
-\\ Internet Explorer v8.0.6001.18702
Ustawienie Znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://www.aartemis.com/web/?type=ds & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS & q={searchTerms}
Ustawienie Znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://www.aartemis.com/web/?type=ds & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS & q={searchTerms}
Ustawienie Znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [SearchAssistant] - hxxp://www.aartemis.com/web/?type=ds & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS & q={searchTerms}
Ustawienie Znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [CustomizeSearch] - hxxp://www.aartemis.com/web/?type=ds & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS & q={searchTerms}
-\\ Google Chrome v35.0.1916.153
[ Plik : C:\Documents and Settings\Piotrek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [7301 octets] - [03/07/2014 18:29:31]
AdwCleaner[R1].txt - [4674 octets] - [03/07/2014 18:54:45]
########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [4734 octets] ##########
OTL logfile created on: 2014-07-03 19:07:04 - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = E:\Moje dokumenty\Piotr\Downloads
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
2,00 Gb Total Physical Memory | 1,21 Gb Available Physical Memory | 60,38% Memory free
3,85 Gb Paging File | 2,99 Gb Available in Paging File | 77,67% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 29,30 Gb Total Space | 6,92 Gb Free Space | 23,63% Space Free | Partition Type: NTFS
Drive D: | 59,57 Gb Total Space | 18,35 Gb Free Space | 30,80% Space Free | Partition Type: NTFS
Drive E: | 60,14 Gb Total Space | 7,20 Gb Free Space | 11,96% Space Free | Partition Type: FAT32
Computer Name: KOMP-NA-GORZE | User Name: Piotrek | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2014-07-03 18:26:45 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2014-07-03 18:26:30 | 000,426,064 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
PRC - [2014-07-03 18:26:26 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2014-07-01 19:12:22 | 000,602,112 | ---- | M] (OldTimer Tools) -- E:\Moje dokumenty\Piotr\Downloads\OTL (1).exe
PRC - [2014-06-26 09:18:41 | 000,230,792 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Update\1.3.24.15\GoogleCrashHandler.exe
PRC - [2014-06-05 15:58:39 | 000,860,488 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
PRC - [2014-05-12 07:24:42 | 000,860,472 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
PRC - [2014-05-12 07:24:40 | 001,809,720 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
PRC - [2014-05-12 07:24:34 | 006,970,168 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
PRC - [2013-10-18 03:34:26 | 001,914,656 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2008-04-14 23:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
[color=#E56717]========== Modules (No Company Name) ==========[/color]
MOD - [2014-06-05 15:58:38 | 000,414,536 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\35.0.1916.153\ppgooglenaclpluginchrome.dll
MOD - [2014-06-05 15:58:36 | 004,217,672 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\35.0.1916.153\pdf.dll
MOD - [2014-06-05 15:58:30 | 001,732,424 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\35.0.1916.153\ffmpegsumo.dll
[color=#E56717]========== Services (SafeList) ==========[/color]
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt)
SRV - [2014-07-03 18:26:45 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2014-07-03 18:26:31 | 001,028,688 | ---- | M] (Avira Operations GmbH & Co. KG) [Disabled | Stopped] -- C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe -- (AntiVirWebService)
SRV - [2014-07-03 18:26:26 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2014-05-12 07:24:42 | 000,860,472 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2014-05-12 07:24:40 | 001,809,720 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2013-10-18 03:34:26 | 001,914,656 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - [2014-07-03 19:01:53 | 000,110,296 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys -- (MBAMSwissArmy)
DRV - [2014-07-03 18:26:26 | 000,097,648 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2014-05-22 10:25:43 | 000,136,216 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2014-05-12 07:25:54 | 000,023,256 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2013-11-25 19:25:20 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avkmgr.sys -- (avkmgr)
DRV - [2013-10-14 14:00:21 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv)
DRV - [2012-08-27 15:50:24 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2009-01-20 12:53:06 | 005,027,840 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService)
DRV - [2008-10-30 15:14:20 | 000,117,888 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2006-07-01 23:32:26 | 000,043,520 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: " URL " = http://www.bing.com/search?q={searchTerms} & FORM=IE8SRC
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: " ProxyEnable " = 0
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: " ProxyEnable " = 0
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1177238915-1844237615-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKU\S-1-5-21-1177238915-1844237615-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1177238915-1844237615-839522115-1004\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1177238915-1844237615-839522115-1004\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: " URL " = http://search.live.com/results.aspx?q={searchTerms} & src=IE-SearchBox & Form=IE8SRC
IE - HKU\S-1-5-21-1177238915-1844237615-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: " ProxyEnable " = 0
IE - HKU\S-1-5-21-1177238915-1844237615-839522115-1008\..\SearchScopes,DefaultScope =
[color=#E56717]========== FireFox ==========[/color]
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Documents and Settings\Piotrek\Dane aplikacji\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O1DPlugin: C:\Documents and Settings\Piotrek\Dane aplikacji\Mozilla\plugins\npo1d.dll (Google)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Piotrek\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Piotrek\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
[color=#E56717]========== Chrome ==========[/color]
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms} & {google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient} & gs_ri={google:suggestRid} & xssi=t & q={searchTerms} & {google:cursorPosition}{google:currentPageUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - homepage: http://www.google.pl/
CHR - plugin: Error reading preferences file
CHR - Extension: Dokumenty Google = C:\Documents and Settings\Piotrek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\
CHR - Extension: Dysk Google = C:\Documents and Settings\Piotrek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Documents and Settings\Piotrek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Szukaj w Google = C:\Documents and Settings\Piotrek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Google Wallet = C:\Documents and Settings\Piotrek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: Gmail = C:\Documents and Settings\Piotrek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
O1 HOSTS File: ([2006-03-02 14:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\nvmctray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [Nvtmru] C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe ()
O4 - HKU\S-1-5-21-1177238915-1844237615-839522115-1004..\Run: [ALLUpdate] " C:\Program Files\ALLPlayer\ALLUpdate.exe " " sleep " File not found
O4 - HKLM..\RunOnce: [Malwarebytes Anti-Malware (cleanup)] C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe (Malwarebytes Corporation)
O4 - HKU\S-1-5-21-1177238915-1844237615-839522115-1004..\RunOnce: [Report] C:\AdwCleaner\AdwCleaner[S0].txt ()
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1177238915-1844237615-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1177238915-1844237615-839522115-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F0A3AB09-7726-419D-9474-374A898C98E2}: DhcpNameServer = 192.168.1.1 192.168.1.1
O20 - HKLM Winlogon: Shell - (explorer.exeystem32\wuwe) - File not found
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\System32\Userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2013-10-14 13:38:22 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- " %1 " %*
O35 - HKLM\..exefile [open] -- " %1 " %*
O37 - HKLM\...com [@ = comfile] -- " %1 " %*
O37 - HKLM\...exe [@ = exefile] -- " %1 " %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2014-07-03 18:51:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Piotrek\Pulpit\logi
[2014-07-03 18:39:18 | 000,110,296 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys
[2014-07-03 18:38:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes Anti-Malware
[2014-07-03 18:38:05 | 000,053,208 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys
[2014-07-03 18:38:05 | 000,023,256 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2014-07-03 18:38:05 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes Anti-Malware
[2014-07-03 18:38:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes
[2014-07-03 18:29:51 | 000,536,576 | ---- | C] (SQLite Development Team) -- C:\WINDOWS\System32\sqlite3.dll
[2014-07-03 18:29:12 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014-06-09 10:52:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Piotrek\Dane aplikacji\Mozilla
[6 C:\WINDOWS\*.tmp files - & gt; C:\WINDOWS\*.tmp - & gt; ]
[3 C:\WINDOWS\System32\*.tmp files - & gt; C:\WINDOWS\System32\*.tmp - & gt; ]
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2014-07-03 19:01:53 | 000,110,296 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys
[2014-07-03 19:00:34 | 000,001,034 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2014-07-03 19:00:29 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2014-07-03 19:00:27 | 2144,915,456 | -HS- | M] () -- C:\hiberfil.sys
[2014-07-03 18:57:01 | 000,001,140 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1177238915-1844237615-839522115-1004UA.job
[2014-07-03 18:38:09 | 000,000,777 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk
[2014-07-03 18:26:26 | 000,097,648 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avgntflt.sys
[2014-07-03 18:24:07 | 000,001,038 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2014-07-03 18:20:14 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2014-07-01 19:05:00 | 000,004,496 | ---- | M] () -- C:\WINDOWS\System32\nvAppTimestamps
[2014-06-30 20:56:00 | 000,001,088 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1177238915-1844237615-839522115-1004Core.job
[6 C:\WINDOWS\*.tmp files - & gt; C:\WINDOWS\*.tmp - & gt; ]
[3 C:\WINDOWS\System32\*.tmp files - & gt; C:\WINDOWS\System32\*.tmp - & gt; ]
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2014-07-03 18:38:09 | 000,000,777 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk
[2013-12-13 18:15:59 | 000,217,176 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2013-10-28 20:17:27 | 001,127,092 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2013-10-28 20:17:27 | 001,127,092 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2013-10-28 20:17:27 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin
[2013-10-28 19:25:47 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2013-10-27 15:18:40 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2013-10-14 15:26:31 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2013-10-14 15:25:23 | 000,192,976 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2013-10-14 15:09:24 | 000,005,120 | ---- | C] () -- C:\Documents and Settings\Piotrek\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013-10-14 14:53:47 | 000,000,021 | ---- | C] () -- C:\Documents and Settings\Piotrek\Dane aplikacji\ISOWorkshop.ini
[2013-10-14 13:40:12 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2013-10-14 13:35:58 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2013-03-23 02:22:30 | 003,555,144 | ---- | C] () -- C:\WINDOWS\System32\nvdata.data
[color=#E56717]========== ZeroAccess Check ==========[/color]
[2013-10-28 20:40:24 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
" " = %SystemRoot%\system32\shdocvw.dll -- [2013-09-23 09:38:58 | 001,510,400 | ---- | M] (Microsoft Corporation)
" ThreadingModel " = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
" " = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009-02-09 12:53:44 | 000,473,600 | ---- | M] (Microsoft Corporation)
" ThreadingModel " = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
" " = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008-04-14 23:50:58 | 000,273,920 | ---- | M] (Microsoft Corporation)
" ThreadingModel " = Both
[color=#E56717]========== Files - Unicode (All) ==========[/color]
[2013-11-05 18:22:11 | 105,048,247 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\⾖낍唌;
[2013-11-05 18:22:11 | 105,048,247 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\⾖낍唌;
[2013-10-25 18:05:01 | 102,975,063 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\巵ꇀ咜;
[2013-10-25 18:05:01 | 102,975,063 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\巵ꇀ咜;
& lt; End of report & gt;
19:17:17.0421 0x01e8 TDSS rootkit removing tool 3.0.0.39 Jun 5 2014 20:35:54
19:17:24.0078 0x01e8 ============================================================
19:17:24.0078 0x01e8 Current date / time: 2014/07/03 19:17:24.0078
19:17:24.0078 0x01e8 SystemInfo:
19:17:24.0078 0x01e8
19:17:24.0078 0x01e8 OS Version: 5.1.2600 ServicePack: 3.0
19:17:24.0078 0x01e8 Product type: Workstation
19:17:24.0078 0x01e8 ComputerName: KOMP-NA-GORZE
19:17:24.0078 0x01e8 UserName: Piotrek
19:17:24.0078 0x01e8 Windows directory: C:\WINDOWS
19:17:24.0078 0x01e8 System windows directory: C:\WINDOWS
19:17:24.0078 0x01e8 Processor architecture: Intel x86
19:17:24.0078 0x01e8 Number of processors: 1
19:17:24.0078 0x01e8 Page size: 0x1000
19:17:24.0078 0x01e8 Boot type: Normal boot
19:17:24.0078 0x01e8 ============================================================
19:17:25.0562 0x01e8 KLMD registered as C:\WINDOWS\system32\drivers\78859527.sys
19:17:25.0890 0x01e8 System UUID: {4B51C1B4-58F0-64CC-6E7E-16F0F3238D49}
19:17:27.0062 0x01e8 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 ( 149.05 Gb ), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
19:17:27.0062 0x01e8 ============================================================
19:17:27.0062 0x01e8 \Device\Harddisk0\DR0:
19:17:27.0062 0x01e8 MBR partitions:
19:17:27.0062 0x01e8 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3A9A172
19:17:27.0078 0x01e8 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x3A9A1F0, BlocksNum 0x77264E2
19:17:27.0093 0x01e8 \Device\Harddisk0\DR0\Partition3: MBR, Type 0xC, StartLBA 0xB1C0711, BlocksNum 0x78583B0
19:17:27.0093 0x01e8 ============================================================
19:17:27.0140 0x01e8 D: & lt; - & gt; \Device\Harddisk0\DR0\Partition2
19:17:27.0140 0x01e8 E: & lt; - & gt; \Device\Harddisk0\DR0\Partition3
19:17:27.0171 0x01e8 C: & lt; - & gt; \Device\Harddisk0\DR0\Partition1
19:17:27.0171 0x01e8 ============================================================
19:17:27.0171 0x01e8 Initialize success
19:17:27.0171 0x01e8 ============================================================
19:17:42.0375 0x07b8 ============================================================
19:17:42.0375 0x07b8 Scan started
19:17:42.0375 0x07b8 Mode: Manual;
19:17:42.0375 0x07b8 ============================================================
19:17:42.0375 0x07b8 KSN ping started
19:17:45.0046 0x07b8 KSN ping finished: true
19:17:45.0906 0x07b8 ================ Scan system memory ========================
19:17:45.0906 0x07b8 System memory - ok
19:17:45.0906 0x07b8 ================ Scan services =============================
19:17:46.0000 0x07b8 Abiosdsk - ok
19:17:46.0000 0x07b8 abp480n5 - ok
19:17:46.0046 0x07b8 [ 05118282F5D039595A2B92B4A4AFE197, 390EBD6088E96571636CE0925E4899D58893D9E5DF2389C09BABBD47A5838B52 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
19:17:46.0046 0x07b8 ACPI - ok
19:17:46.0140 0x07b8 [ 66A42B7DB194E24B973BBCCE840A0F3F, 2550F8E5B5ACD88E4191656194E46FB8EC8CCC65AFD4B5E6D5CED9FE297B573F ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
19:17:46.0140 0x07b8 ACPIEC - ok
19:17:46.0156 0x07b8 adpu160m - ok
19:17:46.0171 0x07b8 [ 8BED39E3C35D6A489438B8141717A557, 1B5796E56B0927360CE0759641B1151828BC0A9E45620D2B2D880491F5CE33D0 ] aec C:\WINDOWS\system32\drivers\aec.sys
19:17:46.0171 0x07b8 aec - ok
19:17:46.0203 0x07b8 [ 1E44BC1E83D8FD2305F8D452DB109CF9, CF5EC07E0B589FA2A4701C6CFD69E893FC3ABF274AD57AE3C13FFE49063B02C8 ] AFD C:\WINDOWS\System32\drivers\afd.sys
19:17:46.0203 0x07b8 AFD - ok
19:17:46.0218 0x07b8 Aha154x - ok
19:17:46.0218 0x07b8 aic78u2 - ok
19:17:46.0234 0x07b8 aic78xx - ok
19:17:46.0250 0x07b8 [ 27AF056D8C42F0AB3CF1DFDCBBEB3243, 9D893C6C0E8619B0B0DA9EAEB5E470A29C9D730F89EC5632134C3F753DE51AC5 ] Alerter C:\WINDOWS\system32\alrsvc.dll
19:17:46.0250 0x07b8 Alerter - ok
19:17:46.0281 0x07b8 [ D1738DDDFF196C5CEE6D867C136AF745, DD4780276465CB18D14B4DDBB4E70117B374B3A61C618D68B5290714330DB91F ] ALG C:\WINDOWS\System32\alg.exe
19:17:46.0281 0x07b8 ALG - ok
19:17:46.0281 0x07b8 AliIde - ok
19:17:46.0312 0x07b8 [ 1E5BB4D2F5277FC008D0D78F335173D2, 7069F03961CA437BB296E2ED35369E1B33CED9785B2F489EA2BA17F0A3D3BE64 ] AmdK8 C:\WINDOWS\system32\DRIVERS\AmdK8.sys
19:17:46.0312 0x07b8 AmdK8 - ok
19:17:46.0328 0x07b8 amsint - ok
19:17:46.0421 0x07b8 [ 4C14746BCBF9985BDBF1CD1BEED96DF8, 8EF50FBD98C9AFD85F5D08692E7AEC21812B70074AA0DC6DCDFDBC2FFE34A75D ] AntiVirSchedulerService C:\Program Files\Avira\AntiVir Desktop\sched.exe
19:17:46.0453 0x07b8 AntiVirSchedulerService - ok
19:17:46.0484 0x07b8 [ 4C14746BCBF9985BDBF1CD1BEED96DF8, 8EF50FBD98C9AFD85F5D08692E7AEC21812B70074AA0DC6DCDFDBC2FFE34A75D ] AntiVirService C:\Program Files\Avira\AntiVir Desktop\avguard.exe
19:17:46.0484 0x07b8 AntiVirService - ok
19:17:46.0562 0x07b8 [ 8900BF6C4D6B02F8E4CBE9A276D15B50, D12E4A727A95E401BDD52C79F8287AC967BE2D4B0E69FE62EC52280EDA0069F6 ] AntiVirWebService C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
19:17:46.0578 0x07b8 AntiVirWebService - ok
19:17:46.0593 0x07b8 AppMgmt - ok
19:17:46.0625 0x07b8 [ B5B8A80875C1DEDEDA8B02765642C32F, AD0C71D73B1B8225351FBF4FFB43001A32B4DAE69504C59970CD2428BB33D4EF ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys
19:17:46.0625 0x07b8 Arp1394 - ok
19:17:46.0640 0x07b8 asc - ok
19:17:46.0640 0x07b8 asc3350p - ok
19:17:46.0640 0x07b8 asc3550 - ok
19:17:46.0718 0x07b8 [ 776ACEFA0CA9DF0FAA51A5FB2F435705, 72DF7ED6B085BC468994F5B3189506FD726A9A17A9C42ACA1E420D787691361D ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
19:17:46.0718 0x07b8 aspnet_state - ok
19:17:46.0750 0x07b8 [ B153AFFAC761E7F5FCFA822B9C4E97BC, 7E60F572A6B3C6219E3C86225AA37243AFFD74337DB7F108B04778042E5CC959 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
19:17:46.0750 0x07b8 AsyncMac - ok
19:17:46.0765 0x07b8 [ 9F3A2F5AA6875C72BF062C712CFA2674, B4DF1D2C56A593C6B54DE57395E3B51D288F547842893B32B0F59228A0CF70B9 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
19:17:46.0765 0x07b8 atapi - ok
19:17:46.0765 0x07b8 Atdisk - ok
19:17:46.0796 0x07b8 [ 9916C1225104BA14794209CFA8012159, 5D6F05F715C52A16D05CAE15C3DFE77A139A7F27F7AE710EC9A10F9EE05115A1 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
19:17:46.0796 0x07b8 Atmarpc - ok
19:17:46.0828 0x07b8 [ 3A28D3E7BAD0EED3810CD918B2525B54, EFC7CEF39D58E846613E419E78ECBD300DFB18630B70110AB2936737EB2B19C1 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
19:17:46.0828 0x07b8 AudioSrv - ok
19:17:46.0859 0x07b8 [ D9F724AA26C010A217C97606B160ED68, 329B5118F2409731D06FDAE85B6ADD64A048292801BCB3546651CEB303111695 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
19:17:46.0859 0x07b8 audstub - ok
19:17:46.0890 0x07b8 [ B0A63DD71CB0CB597D8BD5C364E73F7C, 572B31F3FC962F50110D42A08CDD0614323E18C213575710CEEFA35EE7CAE8C5 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys
19:17:46.0890 0x07b8 avgntflt - ok
19:17:46.0921 0x07b8 [ 05AF7CBF0BDA1571BBADC36703EB9CA4, 3925AD58053769D317D3CF0DDDF7371B010F2F4C839CF7B44F327AE9D0AB5442 ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys
19:17:46.0921 0x07b8 avipbb - ok
19:17:46.0953 0x07b8 [ D8C712305F73CD34D1B344810E522728, 49A474FF6CA44E8427D7A8290B47395125B0148AF384CF2B3B1FA495A4718CBA ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys
19:17:46.0953 0x07b8 avkmgr - ok
19:17:46.0984 0x07b8 [ DA1F27D85E0D1525F6621372E7B685E9, 5A81A46A3BDD19DAFC6C87D277267A5D44F3A1B5302F2CC1111D84B7BAD5610D ] Beep C:\WINDOWS\system32\drivers\Beep.sys
19:17:46.0984 0x07b8 Beep - ok
19:17:47.0031 0x07b8 [ 78200FAA6FD9C69394134C238C87FB7F, 4E70BD89BB40222CB0647E8F73DBBAB1020594AEC313848C911048D080D0F26A ] BITS C:\WINDOWS\system32\qmgr.dll
19:17:47.0031 0x07b8 BITS - ok
19:17:47.0078 0x07b8 [ 9D6788EFFB9972C28C38D9C5E67249D5, A4C5FFE40983AD5C781024280F188E4FBA5797334BF331A56FF7E32E90F02081 ] Browser C:\WINDOWS\System32\browser.dll
19:17:47.0078 0x07b8 Browser - ok
19:17:47.0109 0x07b8 [ 90A673FC8E12A79AFBED2576F6A7AAF9, BDE7858A3457DB979FEDD8577FA6321BF72848E4A7BF9F173C78A6A10CBB3EBE ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
19:17:47.0109 0x07b8 cbidf2k - ok
19:17:47.0109 0x07b8 cd20xrnt - ok
19:17:47.0140 0x07b8 [ C1B486A7658353D33A10CC15211A873B, AA4DD9E7AAE5AAB1146B360B17001F975D2F29A1281CF7B13E7136480410F347 ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
19:17:47.0140 0x07b8 Cdaudio - ok
19:17:47.0171 0x07b8 [ C885B02847F5D2FD45A24E219ED93B32, B26B2F8E3A831E2B65EB0C5195B0645CD50E22615CE79C9B0B391CD563B121DB ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
19:17:47.0171 0x07b8 Cdfs - ok
19:17:47.0187 0x07b8 [ 1F4260CC5B42272D71F79E570A27A4FE, B51C2A3ED3C309953D0EA45869C8E464C10F2533DADE9E0286AF674979098D1D ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
19:17:47.0187 0x07b8 Cdrom - ok
19:17:47.0187 0x07b8 Changer - ok
19:17:47.0234 0x07b8 [ 45B63DF2FB498D219FCBB4425CADE676, D58417D5D0E562E2CCBA04C82CF7E176F6F82026CB4877D45F0DC18944B72960 ] CiSvc C:\WINDOWS\system32\cisvc.exe
19:17:47.0234 0x07b8 CiSvc - ok
19:17:47.0250 0x07b8 [ C94F1B6F61858D6389C0FA06954FB9C4, 832A8BF5D63FD623632823DE7F36636540DAC9192B40A44C2DE6961D2E086320 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
19:17:47.0250 0x07b8 ClipSrv - ok
19:17:47.0328 0x07b8 [ D87ACAED61E417BBA546CED5E7E36D9C, 14AC6034A5BC0FB2A1AFDAD42BEF4DE641556E54AD30D0C46765660A4BE55462 ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:17:47.0328 0x07b8 clr_optimization_v2.0.50727_32 - ok
19:17:47.0359 0x07b8 [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:17:47.0375 0x07b8 clr_optimization_v4.0.30319_32 - ok
19:17:47.0375 0x07b8 CmdIde - ok
19:17:47.0390 0x07b8 COMSysApp - ok
19:17:47.0390 0x07b8 Cpqarray - ok
19:17:47.0421 0x07b8 [ 6B105FE95F2E9F0B6346044BA59D41C9, DC41FC89E6C4F4219015856AEE9D9CE365094D3C8012AFFC188C129DC3B6A9A8 ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
19:17:47.0421 0x07b8 CryptSvc - ok
19:17:47.0437 0x07b8 dac2w2k - ok
19:17:47.0437 0x07b8 dac960nt - ok
19:17:47.0484 0x07b8 [ A37311D9D628C1042A2836731787F0F3, 2A4380021407E84FAD47A2D5B02D37F1F17E8E2B1433710208FFCC70D9ECB5AA ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
19:17:47.0515 0x07b8 DcomLaunch - ok
19:17:47.0546 0x07b8 [ 6B4AFE7C676CFF3EFF2DC06A4EE945F7, 9771808A033C781758AC1356F9F51B198A0750081424F4F7A937CE0D7408CEE1 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
19:17:47.0546 0x07b8 Dhcp - ok
19:17:47.0562 0x07b8 [ 044452051F3E02E7963599FC8F4F3E25, 584BDDB074618BE76454CF90E74829CFF588B5B5FAEB793E2F7AAD26352DD689 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
19:17:47.0562 0x07b8 Disk - ok
19:17:47.0578 0x07b8 dmadmin - ok
19:17:47.0625 0x07b8 [ BC9219ABC5696942E6F9AC8A9B28670F, DEDD84A5FC12664C7767EC5210E3B4D311664EF8BCE01C9DCF16CC98BE16EDE1 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
19:17:47.0640 0x07b8 dmboot - ok
19:17:47.0656 0x07b8 [ 5FA232E3BA6E1346F9F5A7E519320CB0, 1C7EEC415C291D3C5FFD479A8454347528AF4FF88F81011EF65EFA8FE8199973 ] dmio C:\WINDOWS\system32\drivers\dmio.sys
19:17:47.0656 0x07b8 dmio - ok
19:17:47.0687 0x07b8 [ E9317282A63CA4D188C0DF5E09C6AC5F, D41E002F555FE9015EF620975255F58BB79198CA1FF0E09EC950CB450FF77CF7 ] dmload C:\WINDOWS\system32\drivers\dmload.sys
19:17:47.0687 0x07b8 dmload - ok
19:17:47.0718 0x07b8 [ D858920A05076914D34B0388E8D96CC0, A8F231BA9022F6AEBB24C9DCC1898923F85B79DE3C8E90B696CA0B295B9C99B7 ] dmserver C:\WINDOWS\System32\dmserver.dll
19:17:47.0718 0x07b8 dmserver - ok
19:17:47.0734 0x07b8 [ 8A208DFCF89792A484E76C40E5F50B45, 4E40E2EB38C6254E7CAA488200E89EE7DEBBBA773890BC6A84313CC68178D54F ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
19:17:47.0734 0x07b8 DMusic - ok
19:17:47.0765 0x07b8 [ 082BE13166A3354F25F78E0B2601012B, 881284F659D4D528C96092E79BADE6E6C0C589E4583B3BF3FAC229F50D16C5F0 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
19:17:47.0765 0x07b8 Dnscache - ok
19:17:47.0796 0x07b8 [ E0B7D66CF29D9ADCCF873C77821CD4CA, 09A3D28585B62FC541EF4F2CB4D749DA119BB5F98739393CFD4D745060217C65 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
19:17:47.0796 0x07b8 Dot3svc - ok
19:17:47.0812 0x07b8 dpti2o - ok
19:17:47.0828 0x07b8 [ 8F5FCFF8E8848AFAC920905FBD9D33C8, C8C6FB97AB0871C8C88A2201525A5CF10D5131CB6980D32692ED7A8F58399AD5 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
19:17:47.0828 0x07b8 drmkaud - ok
19:17:47.0843 0x07b8 [ 5F256C1AD50FEFDC442CD5AAB58C7DD8, 0FC1F2590195AE4B7CAA802D84CD391B56D73B99CB100BDEBD4D7C002946D06B ] EapHost C:\WINDOWS\System32\eapsvc.dll
19:17:47.0843 0x07b8 EapHost - ok
19:17:47.0875 0x07b8 [ ED1B71382C31FD2CF3CDC4672EFAD6EA, AF3CD28B5E6F1ED1D6B7C71C697019B2E2E79AFFE29EB6282253B30BA205F3EA ] ERSvc C:\WINDOWS\System32\ersvc.dll
19:17:47.0875 0x07b8 ERSvc - ok
19:17:47.0906 0x07b8 [ 02A467E27AF55F7064C5B251E587315F, 309D6C6ABC9D7786354758C107B89C50AC722AEA3B10631714F326AB2D3BB3DF ] Eventlog C:\WINDOWS\system32\services.exe
19:17:47.0906 0x07b8 Eventlog - ok
19:17:47.0953 0x07b8 [ 6AFF804839C85859E0247164FBE5F5BB, 91E1FEC83545BC6489E35CD042BBA756FA31C5BEAD51FC5494DD04F6F8C852AB ] EventSystem C:\WINDOWS\system32\es.dll
19:17:47.0953 0x07b8 EventSystem - ok
19:17:47.0984 0x07b8 [ 38D332A6D56AF32635675F132548343E, E6909DB836AF679B4F4D62C7396D6C82769CC7ABB8C919C2AABFE934FCE268F6 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
19:17:47.0984 0x07b8 Fastfat - ok
19:17:48.0031 0x07b8 [ 55AAE86C7C2CADF6972ACD1D76C24A98, 25631E05E81E7C9C794DBB26B75F111C211EA22A031159F20B4461EA7EBCDF1C ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
19:17:48.0031 0x07b8 FastUserSwitchingCompatibility - ok
19:17:48.0046 0x07b8 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81, 8307A532AB4D05CBBCE206DC2759497708BF5AAA880BD00F0E4F281D8578A1F5 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys
19:17:48.0046 0x07b8 Fdc - ok
19:17:48.0062 0x07b8 [ 09E2A4D33F81A06A8AAB2BA0A0B5D235, D71C2D4212C7ABB1D8EE08B21C59CA25D7195F1A0E92E5BDA1DC5226A0E62CB0 ] Fips C:\WINDOWS\system32\drivers\Fips.sys
19:17:48.0062 0x07b8 Fips - ok
19:17:48.0078 0x07b8 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0, 69C271AD5BCEBFD8AE5A769BDD7EC51256DA3A8ADAD5D12E5C0D13F4E82D8805 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
19:17:48.0078 0x07b8 Flpydisk - ok
19:17:48.0109 0x07b8 [ B2CF4B0786F8212CB92ED2B50C6DB6B0, 280F5CF8A90F7BEDE73ADD0DD0F8952088133A7CA9A3D3B7041957E33B36845D ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
19:17:48.0109 0x07b8 FltMgr - ok
19:17:48.0171 0x07b8 [ 8BA7C024070F2B7FDD98ED8A4BA41789, 47585006F86B2C6016EC54250A416794792D1E4024FF229C120BC25B684AF66A ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
19:17:48.0171 0x07b8 FontCache3.0.0.0 - ok
19:17:48.0187 0x07b8 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A, EC635E071201A766845D48973772CBE0958942B4162F3F5F70660D114CC877E0 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
19:17:48.0187 0x07b8 Fs_Rec - ok
19:17:48.0203 0x07b8 [ ED6D921D8AB423138FB35BEEE6D6A6CB, CF133B76960207595C44181A235E63B84C5A5A4E7BDDDC2E6A01DA837E55832D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
19:17:48.0203 0x07b8 Ftdisk - ok
19:17:48.0250 0x07b8 [ C6E3105B8C68C35CC1EB26A00FD1A8C6, 8C134F55AE94F44E823ECEFAEE624EB305572A0043BBD891C782BB841A40CE8A ] gdrv C:\WINDOWS\gdrv.sys
19:17:48.0250 0x07b8 gdrv - ok
19:17:48.0281 0x07b8 [ 0A02C63C8B144BD8C86B103DEE7C86A2, 7A3235DD3E1995DD72B212FAEB3ECA2A974434DE9BF6D269EA11BA65A80E7E50 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
19:17:48.0281 0x07b8 Gpc - ok
19:17:48.0328 0x07b8 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
19:17:48.0343 0x07b8 gupdate - ok
19:17:48.0359 0x07b8 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
19:17:48.0359 0x07b8 gupdatem - ok
19:17:48.0375 0x07b8 [ 573C7D0A32852B48F3058CFD8026F511, BC384BBA394AFDCDA1A9ABC858C692AA84A1F0A31AF3DDF7F38D120C027927FB ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
19:17:48.0375 0x07b8 HDAudBus - ok
19:17:48.0437 0x07b8 [ AF752014F7EB61542E3F35B9374D7E76, 8D9F1D1B03D5AF9F592C396C4B6353E17F2E852A2A7F1F468F83763C0731435D ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
19:17:48.0437 0x07b8 helpsvc - ok
19:17:48.0453 0x07b8 HidServ - ok
19:17:48.0453 0x07b8 [ CCF82C5EC8A7326C3066DE870C06DAF1, 93395FA4C26B2E82DC8B7025ED3BCF583885E5D8C5F60CD6EEAA6335D6A126EC ] hidusb C:\WINDOWS\system32\DRIVERS\hidusb.sys
19:17:48.0453 0x07b8 hidusb - ok
19:17:48.0484 0x07b8 [ F0273916DA6FB64CC88E0BD77619554F, C6E3B5C367CE52174251B1CE548F0DF8708AEDD228D5AD74D3F6F31FC3857460 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
19:17:48.0500 0x07b8 hkmsvc - ok
19:17:48.0500 0x07b8 hpn - ok
19:17:48.0546 0x07b8 [ F80A415EF82CD06FFAF0D971528EAD38, 524D9E9201572929522F6805011783711B7C0F76308B924C89CF75F4B7A1FDF3 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
19:17:48.0546 0x07b8 HTTP - ok
19:17:48.0562 0x07b8 [ AA268079AC119F3A596E5E27AEE4BD17, 2FD9B52A0627B3ECE618BAC855C19002CA6F5339636D11DF9F998E588027292A ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
19:17:48.0562 0x07b8 HTTPFilter - ok
19:17:48.0578 0x07b8 i2omgmt - ok
19:17:48.0578 0x07b8 i2omp - ok
19:17:48.0593 0x07b8 [ 177B372AF55C4460D0968B5F1D02AA1C, 39406139B0D42C650F2C1986D85DB2260107D427963BC2C85A11D71561986DEB ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
19:17:48.0593 0x07b8 i8042prt - ok
19:17:48.0703 0x07b8 [ C01AC32DC5C03076CFB852CB5DA5229C, A4D7749220B5BC965D96A267F1E02FE8284A230BA249109207BD4B9EA8DFAC96 ] idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
19:17:48.0718 0x07b8 idsvc - ok
19:17:48.0750 0x07b8 [ 083A052659F5310DD8B6A6CB05EDCF8E, 48D39B03FFB6FAA1529B774443BA12618AE3982D9F65A7B9D18F2269F78B31F4 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
19:17:48.0750 0x07b8 Imapi - ok
19:17:48.0781 0x07b8 [ 9125AF650608A921F98A789E5C5BA864, E530C4FE52EB66549D91490B3039EF8DBC6866E4F9B55213F21E3757892B06CE ] ImapiService C:\WINDOWS\system32\imapi.exe
19:17:48.0796 0x07b8 ImapiService - ok
19:17:48.0796 0x07b8 ini910u - ok
19:17:49.0031 0x07b8 [ 2FEB5BF0312E1CB76CD2CAA875CBAA5D, 7E0F85F719C0D7F0EBD89E200F2796BD420D65FAF7FB9C18C4A7A7D66EA9345A ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys
19:17:49.0171 0x07b8 IntcAzAudAddService - ok
19:17:49.0187 0x07b8 IntelIde - ok
19:17:49.0218 0x07b8 [ 3BB22519A194418D5FEC05D800A19AD0, F6662F440950596DC1382DD1DB5D7891CCEA30A6062BEA942C18445B5F0D8B16 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys
19:17:49.0218 0x07b8 Ip6Fw - ok
19:17:49.0250 0x07b8 [ 731F22BA402EE4B62748ADAF6363C182, 5C3BEBD008A5BE4DC2F92076FF41A10DDC01E10EC7E6552213CFA11970811848 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
19:17:49.0250 0x07b8 IpFilterDriver - ok
19:17:49.0265 0x07b8 [ B87AB476DCF76E72010632B5550955F5, E6E74D3A86A7917A8BAED44F8E97CCD2EB171E4E4B27E9907F60D1523FAF319A ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
19:17:49.0281 0x07b8 IpInIp - ok
19:17:49.0296 0x07b8 [ CC748EA12C6EFFDE940EE98098BF96BB, AF523E21C25D9A1715EFEA573E4F52AF5D4FC9F28A2D613F5DB629C186C439E0 ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
19:17:49.0296 0x07b8 IpNat - ok
19:17:49.0312 0x07b8 [ 23C74D75E36E7158768DD63D92789A91, 394D296F38E7D8EFD91A6EEC301D9CE6AF910E35EB9819F1A9E3363863AEDFDC ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
19:17:49.0312 0x07b8 IPSec - ok
19:17:49.0343 0x07b8 [ C93C9FF7B04D772627A3646D89F7BF89, 805FA48E7A46D4F10240BF880A2468F53DEA36E83004399228AB70DB7D20544A ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
19:17:49.0343 0x07b8 IRENUM - ok
19:17:49.0359 0x07b8 [ C8EEF2E93835B81BD335DE2123121283, DF7CCA1141CE15050D5EA516C75BF677B095EABA9E08828880E8917EBDEB2418 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
19:17:49.0375 0x07b8 isapnp - ok
19:17:49.0375 0x07b8 [ 2AECA45D4AEAACBDCB77AD11184E4601, 58724D00A0D6FA17CCAF69DC069EF59E535F08C870C199BF2C9269BC22273A63 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
19:17:49.0375 0x07b8 Kbdclass - ok
19:17:49.0406 0x07b8 [ 692BCF44383D056AED41B045A323D378, 1A99DEE83FFAF64E73067FC049C0A4CE07D94E4AE31EFA17B38CEFA9E41D67DC ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
19:17:49.0406 0x07b8 kmixer - ok
19:17:49.0437 0x07b8 [ B467646C54CC746128904E1654C750C1, 3BD71BE3663EA23463D236D8A2A2E42DFA10C502BDB4B6E131FAF0FBA748219E ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
19:17:49.0437 0x07b8 KSecDD - ok
19:17:49.0484 0x07b8 [ 061A4BB67C324AC8C176E0D77923B212, C2877FD13FCF7EB422441D08B5BF76D9B1DCE6E9D7A19487E0D7DE14254E0F60 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
19:17:49.0484 0x07b8 lanmanserver - ok
19:17:49.0515 0x07b8 [ FA17019DA45C5D6464776A639A5A9ABB, 5654615E6130D344D2D42B59DF2F5CD02C6D3B1128BBC2A14ED0CB8078180B17 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
19:17:49.0515 0x07b8 lanmanworkstation - ok
19:17:49.0546 0x07b8 lbrtfdc - ok
19:17:49.0593 0x07b8 [ 437AA83D68F9FAC234CA68DBD40DB705, 49B4A9E30778FB6D08AA7F9D66AF173572B86F74863477FFE7A66BBF2E6BCE93 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
19:17:49.0593 0x07b8 LmHosts - ok
19:17:49.0625 0x07b8 [ 8683C1B450F4B3872839308D836E0F92, C6CEEEA780D2191AEAC2537FD96324FF5501D92CE46313FB95ABB51765D919ED ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys
19:17:49.0625 0x07b8 MBAMProtector - ok
19:17:49.0750 0x07b8 [ D84AEA3F3329D622DFC1297DDDF6163B, 316FE56CC30ED1473A917253F46B79EAA12F4ABD5B4B1ADB03929DFEE940F577 ] MBAMScheduler C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
19:17:49.0828 0x07b8 MBAMScheduler - ok
19:17:49.0890 0x07b8 [ 4F45ED469906494F9BF754E476390DBD, D8FF6AFD73D8C191F5732DF9737E6F83B2B52B06A3A6CD4CC6EAC9464CBB2772 ] MBAMService C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
19:17:49.0937 0x07b8 MBAMService - ok
19:17:49.0968 0x07b8 [ 12E71DA845D76665B56753AD149E32B3, 0E403710CCBACD5AB85FD4C32AAB6CB2C27BC1F043E8008EE49EE96ECA944146 ] MBAMSwissArmy C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
19:17:49.0968 0x07b8 MBAMSwissArmy - ok
19:17:50.0031 0x07b8 [ 7CF1B716372B89568AE4C0FE769F5869, 0D70A7A594BCFBB26D7249C0F4B0AF9EF874F2318B3FDCE44648CC61279594ED ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
19:17:50.0046 0x07b8 MDM - ok
19:17:50.0078 0x07b8 [ 36F3AB18B1BE303DA51DE90A67DE3942, E364FF831EFBDC5FF026CE620EE951C129D4E0C79DD0FED823BC767F36ED0021 ] Messenger C:\WINDOWS\System32\msgsvc.dll
19:17:50.0078 0x07b8 Messenger - ok
19:17:50.0109 0x07b8 [ 4AE068242760A1FB6E1A44BF4E16AFA6, 1FB771162B96AAF787AC24867B818DF8511F0780BB094FA9A38C11D8DBFE68BC ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
19:17:50.0109 0x07b8 mnmdd - ok
19:17:50.0156 0x07b8 [ 845814A8CB9D704D030F076E1BCE83F3, F35FD4B6CE78A06A6FCF207A75EADF5A8315F2254A3E84ED070928F196D32AF4 ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
19:17:50.0156 0x07b8 mnmsrvc - ok
19:17:50.0203 0x07b8 [ 4A068DB7DC37D5AFEDB6512D2931D7B3, 491F58509188054EE35962B66A13F0029BDF66CC59ED3B5E4058393146CE001C ] Modem C:\WINDOWS\system32\drivers\Modem.sys
19:17:50.0203 0x07b8 Modem - ok
19:17:50.0234 0x07b8 [ FBED3DF6B884F8CF00447B73507F2C48, 2CAA78DF3DB8BB19C10FD046B6EDC34167D8CA67EF137912703FE751D70803A2 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
19:17:50.0234 0x07b8 Mouclass - ok
19:17:50.0265 0x07b8 [ ECEC1E6CD558AB80F944F31326E9D3B5, E61B7124FDFE36D7C9081ABA7745F87F83592CE683AB49F7C31359D393B2E691 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
19:17:50.0265 0x07b8 mouhid - ok
19:17:50.0281 0x07b8 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD, 2A5E15ED2C24C6C65EF2F7E1FD93374774076C9D8D451E4422561F4D269C012F ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
19:17:50.0281 0x07b8 MountMgr - ok
19:17:50.0296 0x07b8 mraid35x - ok
19:17:50.0296 0x07b8 [ 11D42BB6206F33FBB3BA0288D3EF81BD, 76ABCFB62C5AC549F58C231F72A99882CDEB74928104B77FE52554765C2B1A22 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
19:17:50.0312 0x07b8 MRxDAV - ok
19:17:50.0343 0x07b8 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0, DB9B186F7076D7B94F45041AF7B77C1AD2CAB504D683B459C6CB1C22840ED170 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
19:17:50.0359 0x07b8 MRxSmb - ok
19:17:50.0390 0x07b8 [ A54C5EECC7D3424824410BAE0AA6C371, C0C80211DD9A69A529B5277B0751FFABCBB6586292D06A79ED7B842277FBF78A ] MSDTC C:\WINDOWS\system32\msdtc.exe
19:17:50.0390 0x07b8 MSDTC - ok
19:17:50.0406 0x07b8 [ C941EA2454BA8350021D774DAF0F1027, C940E978C7B66A713A0FDAB54B5F995DF59D089AFCD96221DD3222948CD49BBD ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
19:17:50.0406 0x07b8 Msfs - ok
19:17:50.0406 0x07b8 MSIServer - ok
19:17:50.0437 0x07b8 [ D1575E71568F4D9E14CA56B7B0453BF1, 4ABE0E24786C0D39FA2B885447E56204CA6942FB175E534DCE675D7BCF0B176A ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
19:17:50.0437 0x07b8 MSKSSRV - ok
19:17:50.0453 0x07b8 [ 325BB26842FC7CCC1FCCE2C457317F3E, C07BE560513B1FB91D756494F0BA4AEEB2E1998DE0E1C21EE83DB1183B0CEE91 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
19:17:50.0453 0x07b8 MSPCLOCK - ok
19:17:50.0484 0x07b8 [ BAD59648BA099DA4A17680B39730CB3D, 9AD4C7C94C186C8815D0BC75DCAFB962158DA6935A244BA243EDDDEB33F9816C ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
19:17:50.0484 0x07b8 MSPQM - ok
19:17:50.0500 0x07b8 [ AF5F4F3F14A8EA2C26DE30F7A1E17136, AC93A1E4ABB0D038B772E429015567E44CC2EDB66C54DBE23A5F98176FAC1520 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
19:17:50.0500 0x07b8 mssmbios - ok
19:17:50.0531 0x07b8 [ DE6A75F5C270E756C5508D94B6CF68F5, FCC972DDC36C2C44D836913F10004C2C33B11C54DEFFF0C63E0FDF901D2F9261 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
19:17:50.0546 0x07b8 Mup - ok
19:17:50.0562 0x07b8 [ 14CB8528E17D1221C50FC8CA88B1795F, E908EAE9A0E606084926941B1802E9F48AE1AC4AE6C6136345DD5699B8B9B526 ] napagent C:\WINDOWS\System32\qagentrt.dll
19:17:50.0578 0x07b8 napagent - ok
19:17:50.0593 0x07b8 [ 1DF7F42665C94B825322FAE71721130D, FE0DCB728471465B39A42A7511F4133021FBA5DF88F88BCB5FE2FF34CFD713F9 ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
19:17:50.0609 0x07b8 NDIS - ok
19:17:50.0640 0x07b8 [ 0109C4F3850DFBAB279542515386AE22, 4F6DB1E499AC853FD36FD603FBB6D3AC9BDCEB298C7FE1FB59A9236CB46729B2 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
19:17:50.0640 0x07b8 NdisTapi - ok
19:17:50.0656 0x07b8 [ F927A4434C5028758A842943EF1A3849, B1AA3AF150C05307461774925901789456B0CCCD03A5E71ADA4AB58455962BEE ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
19:17:50.0671 0x07b8 Ndisuio - ok
19:17:50.0671 0x07b8 [ EDC1531A49C80614B2CFDA43CA8659AB, 494042F790F33721328B4451E79842E21919681CC421A4F9633EC4D383E06097 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
19:17:50.0687 0x07b8 NdisWan - ok
19:17:50.0703 0x07b8 [ 2F597BB467E05B1FE3830EABD821B8E0, 141497F5A49D47CCE3C9289644F4BD838DCB238F6D8E847FC006652E21FE02AC ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
19:17:50.0703 0x07b8 NDProxy - ok
19:17:50.0718 0x07b8 [ 5D81CF9A2F1A3A756B66CF684911CDF0, 7989C36607CAEA17AFA2C1C9904145CA0714A54B9F712D9D4C1AB140D0B2CC0C ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
19:17:50.0734 0x07b8 NetBIOS - ok
19:17:50.0765 0x07b8 [ 74B2B2F5BEA5E9A3DC021D685551BD3D, 7932B71F98B4122BE88F576BF6D745A757AE378A48924B7F4358837B75640A82 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
19:17:50.0765 0x07b8 NetBT - ok
19:17:50.0796 0x07b8 [ CBB409B314309FCFFCE5E682E91338C6, 75BB788E9154D0437A8449B6C88432E27F1EACD9B6FDF27A46DE5147EC59CF6D ] NetDDE C:\WINDOWS\system32\netdde.exe
19:17:50.0812 0x07b8 NetDDE - ok
19:17:50.0812 0x07b8 [ CBB409B314309FCFFCE5E682E91338C6, 75BB788E9154D0437A8449B6C88432E27F1EACD9B6FDF27A46DE5147EC59CF6D ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
19:17:50.0828 0x07b8 NetDDEdsdm - ok
19:17:50.0859 0x07b8 [ 88296F7943F30A1EE3AF735440B92268, 8ACCF0331EE351EFB1A0F5EF210B92F822343B387D4B8CC29FE3222FDBFA911B ] Netlogon C:\WINDOWS\system32\lsass.exe
19:17:50.0859 0x07b8 Netlogon - ok
19:17:50.0875 0x07b8 [ 4FE97D0B1B182DF2A9BDD4C02155EF5E, 46F3F4FEB501E1987B49AB1595AADC06432B70E39CA6E9CC67C6410B13DA7B7A ] Netman C:\WINDOWS\System32\netman.dll
19:17:50.0875 0x07b8 Netman - ok
19:17:50.0921 0x07b8 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
19:17:50.0921 0x07b8 NetTcpPortSharing - ok
19:17:50.0937 0x07b8 [ E9E47CFB2D461FA0FC75B7A74C6383EA, 544136F5BFD4DC23D45E90F12FA48B82FD9EAEA9EAF3E0F5F0BD27E23D672C3E ] NIC1394 C:\WINDOWS\system32\DRIVERS\nic1394.sys
19:17:50.0937 0x07b8 NIC1394 - ok
19:17:50.0968 0x07b8 [ 9D1F13706FB5F02D0E8795FB2D03971D, E4DD5EA83F57D5C0A6739F753E95D0B1E13CE6F8E49CE27641D6D96B2C9FEE78 ] Nla C:\WINDOWS\System32\mswsock.dll
19:17:50.0968 0x07b8 Nla - ok
19:17:51.0000 0x07b8 [ 3182D64AE053D6FB034F44B6DEF8034A, 4ADFC76965BA2A5F488E71789A4E4EA702A74AF42725F72130D1CA919406CF19 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
19:17:51.0000 0x07b8 Npfs - ok
19:17:51.0062 0x07b8 [ 78A08DD6A8D65E697C18E1DB01C5CDCA, E0E6F3ED05068E32F1D5C2D2B38CDEF4536B8656DB6756C66CF6B40B60C8F3DA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
19:17:51.0078 0x07b8 Ntfs - ok
19:17:51.0109 0x07b8 [ 88296F7943F30A1EE3AF735440B92268, 8ACCF0331EE351EFB1A0F5EF210B92F822343B387D4B8CC29FE3222FDBFA911B ] NtLmSsp C:\WINDOWS\system32\lsass.exe
19:17:51.0109 0x07b8 NtLmSsp - ok
19:17:51.0171 0x07b8 [ 3FB5399DBB7001A80D58EDAD64C98225, A790DB873DAADB2B241F2C2426B51C0B73D4E13AC4D804B8EBBF5A74B4A41797 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
19:17:51.0187 0x07b8 NtmsSvc - ok
19:17:51.0203 0x07b8 [ 73C1E1F395918BC2C6DD67AF7591A3AD, B21133A75253EC15E2DFF66D3B480AB1A7E1A2360476C810E7AA55D0F0EB08D4 ] Null C:\WINDOWS\system32\drivers\Null.sys
19:17:51.0203 0x07b8 Null - ok
19:17:51.0734 0x07b8 [ 4D171DB452C5D558E9CBE7E1D6F3635A, AD527D5BC369D3008B2889924073327279FA2FC6C206DB7E03FB166A613FAFD8 ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
19:17:52.0093 0x07b8 nv - ok
19:17:52.0156 0x07b8 [ 34411734F476368AA7BA9404798644CF, D728D0044FBAD7E08C06002C3395BF8862E98DE35281699A4EA88205F5975684 ] NVSvc C:\WINDOWS\system32\nvsvc32.exe
19:17:52.0171 0x07b8 NVSvc - ok
19:17:52.0281 0x07b8 [ 10DEF604B1929D9515969E1CAE7D250A, AC343E716453B9CA16B4763A714FB4B09671D8EB56A8C46C22CBD769EB7937C4 ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
19:17:52.0359 0x07b8 nvUpdatusService - ok
19:17:52.0406 0x07b8 [ B305F3FAD35083837EF46A0BBCE2FC57, 9D0E0E666D652D0FC9EAB97280A5D67AAF61D6B21929DF7CF8ED72A367720464 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
19:17:52.0406 0x07b8 NwlnkFlt - ok
19:17:52.0406 0x07b8 [ C99B3415198D1AAB7227F2C88FD664B9, DD8DA4B5E804F134AB9233859544C025062902DFC3E8FB8A09A67337A4E73F55 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
19:17:52.0406 0x07b8 NwlnkFwd - ok
19:17:52.0484 0x07b8 [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
19:17:52.0500 0x07b8 odserv - ok
19:17:52.0531 0x07b8 [ CA33832DF41AFB202EE7AEB05145922F, 9DD0089C2E13C7F81214C3B5A4A61276292052F9BBFEA7FCD0F6AA27815D5F95 ] ohci1394 C:\WINDOWS\system32\DRIVERS\ohci1394.sys
19:17:52.0531 0x07b8 ohci1394 - ok
19:17:52.0562 0x07b8 [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
19:17:52.0578 0x07b8 ose - ok
19:17:52.0609 0x07b8 [ 2D4CDAEBCED17743AA9E25D3016DC229, F5D138644F114861DD045975136904325304081221B85FB2C151CD9A411097CE ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
19:17:52.0609 0x07b8 Parport - ok
19:17:52.0609 0x07b8 [ BEB3BA25197665D82EC7065B724171C6, 7E71C13BA30CD95CEE8A9CC85E6F48A01F30EDEAADEE69D80AE828BF97E5A5CA ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
19:17:52.0625 0x07b8 PartMgr - ok
19:17:52.0656 0x07b8 [ 453EC2C2A20A1382F564541918520EEB, 797ED3127131BAE255AE793B8327D0E3BB6D054421F8D90511B315937BEBB6B0 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
19:17:52.0656 0x07b8 ParVdm - ok
19:17:52.0671 0x07b8 [ 6862C69168D787B85A7D95CCD33C694E, 6B7912156A0BAB6AED4F00FE37034488D10646B17435E86DE0D7DBD5951E8FB9 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
19:17:52.0671 0x07b8 PCI - ok
19:17:52.0671 0x07b8 PCIDump - ok
19:17:52.0671 0x07b8 [ 548CF2D6369EAE441A4C6BAA75BC4F0A, C659E9E8A16DD4CBEC97FFB50784D8585E02F20FA360D2280D322D975F00A994 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
19:17:52.0687 0x07b8 PCIIde - ok
19:17:52.0703 0x07b8 [ 8DB27F1AE9593C94095485305A583862, 4FDB24BA306944743B50C3B0E39EFC75BD196A4DA1B0A3C859B974E8599B5128 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
19:17:52.0703 0x07b8 Pcmcia - ok
19:17:52.0718 0x07b8 PDCOMP - ok
19:17:52.0718 0x07b8 PDFRAME - ok
19:17:52.0718 0x07b8 PDRELI - ok
19:17:52.0734 0x07b8 PDRFRAME - ok
19:17:52.0734 0x07b8 perc2 - ok
19:17:52.0734 0x07b8 perc2hib - ok
19:17:52.0765 0x07b8 [ 02A467E27AF55F7064C5B251E587315F, 309D6C6ABC9D7786354758C107B89C50AC722AEA3B10631714F326AB2D3BB3DF ] PlugPlay C:\WINDOWS\system32\services.exe
19:17:52.0781 0x07b8 PlugPlay - ok
19:17:52.0796 0x07b8 [ 88296F7943F30A1EE3AF735440B92268, 8ACCF0331EE351EFB1A0F5EF210B92F822343B387D4B8CC29FE3222FDBFA911B ] PolicyAgent C:\WINDOWS\system32\lsass.exe
19:17:52.0796 0x07b8 PolicyAgent - ok
19:17:52.0828 0x07b8 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99, C5F0C8C66A3AF7E7BB04CEDE4AC5306F8387AB384A2107DC5BE413AAE968EFF1 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
19:17:52.0828 0x07b8 PptpMiniport - ok
19:17:52.0843 0x07b8 [ 7A1367D250502C6416A4D3A19EF155F5, 10C36090DCC651EE632C749277AB18135A9A34874FC2A3806ABCA88FC6E8BC72 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
19:17:52.0843 0x07b8 Processor - ok
19:17:52.0859 0x07b8 [ 88296F7943F30A1EE3AF735440B92268, 8ACCF0331EE351EFB1A0F5EF210B92F822343B387D4B8CC29FE3222FDBFA911B ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
19:17:52.0859 0x07b8 ProtectedStorage - ok
19:17:52.0875 0x07b8 [ 09298EC810B07E5D582CB3A3F9255424, 35473A1BE25AC289474090EB0806AC6B3035DC33D1F3DF97A14BF1E361AC6AC3 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
19:17:52.0875 0x07b8 PSched - ok
19:17:52.0906 0x07b8 [ 80D317BD1C3DBC5D4FE7B1678C60CADD, DA76804B55D0CAB3DDD01EFC06673764AE4860693375C658B6063FB14AF7F12C ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
19:17:52.0906 0x07b8 Ptilink - ok
19:17:52.0921 0x07b8 ql1080 - ok
19:17:52.0921 0x07b8 Ql10wnt - ok
19:17:52.0921 0x07b8 ql12160 - ok
19:17:52.0937 0x07b8 ql1240 - ok
19:17:52.0937 0x07b8 ql1280 - ok
19:17:52.0953 0x07b8 [ FE0D99D6F31E4FAD8159F690D68DED9C, 998685622ABE631984B7E4DBF91AB3594B1F574378D75EB9F6265F4650470692 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
19:17:52.0953 0x07b8 RasAcd - ok
19:17:52.0984 0x07b8 [ BC22C5E1238D4D36D65679E249C483C3, 9B01F8D9541F3558F7D6A3E079580EC87DC748EFCA43E10682C83953B8885C3B ] RasAuto C:\WINDOWS\System32\rasauto.dll
19:17:52.0984 0x07b8 RasAuto - ok
19:17:53.0000 0x07b8 [ 11B4A627BC9614B885C4969BFA5FF8A6, EAE0A412A2B0F68919C32A96B3A08CC1A06585E4998819F5C9051745F63FF5AD ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
19:17:53.0000 0x07b8 Rasl2tp - ok
19:17:53.0031 0x07b8 [ 0C392E397B8D34AAAF19EC6119CBB788, 843C0B52A92A7F62E0D503A62FE56A020655AD98BC287AE8669ACE93B6A02ECA ] RasMan C:\WINDOWS\System32\rasmans.dll
19:17:53.0031 0x07b8 RasMan - ok
19:17:53.0046 0x07b8 [ 5BC962F2654137C9909C3D4603587DEE, A5CE5653D0105240F5E86CFAAB89E7917D42D939E2F27A5A7D6979289CA651B8 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
19:17:53.0046 0x07b8 RasPppoe - ok
19:17:53.0062 0x07b8 [ FDBB1D60066FCFBB7452FD8F9829B242, 10A2DACF944BD000032EBA8C095CB3D879CC55B28C377ADF6E52E508E47444DB ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
19:17:53.0062 0x07b8 Raspti - ok
19:17:53.0078 0x07b8 [ 7AD224AD1A1437FE28D89CF22B17780A, 6645235CA27D671954E3557FA37082881C3D7D47492C71264CD8CB8D108EC801 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
19:17:53.0078 0x07b8 Rdbss - ok
19:17:53.0093 0x07b8 [ 4912D5B403614CE99C28420F75353332, 975341ECD660209987B5E5171B8315E032439E408CBE8A5986E67AF767F373BB ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
19:17:53.0093 0x07b8 RDPCDD - ok
19:17:53.0140 0x07b8 [ 43AF5212BD8FB5BA6EED9754358BD8F7, AF330F61CECA4AFA359CEABC5EB3227E6B56A9A2DCE50701381D665122D7356D ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
19:17:53.0156 0x07b8 RDPWD - ok
19:17:53.0218 0x07b8 [ F83907A9A038DB2E35329B039628D293, 683D478C9EC30102BB5A4CB6D200C4772C8BF5DF7BFC757AFA0B5B44DA1F8961 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
19:17:53.0218 0x07b8 RDSessMgr - ok
19:17:53.0250 0x07b8 [ E0C7BBD18040B58651BAC700C804861D, 91AE8D3C7D9FB391725664996479DAFDA91CB91C31E446BFE9ECF0C4FC86BE2F ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
19:17:53.0250 0x07b8 redbook - ok
19:17:53.0281 0x07b8 [ B3F57E6115BCD4DBADE9874F300655E3, DFF4D6AEA1B22C531216ED5A94B01C88D2C61D0EC3BB34744B4572C672EF89E6 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
19:17:53.0281 0x07b8 RemoteAccess - ok
19:17:53.0281 0x07b8 [ 6BC4D5A70F46EA27DDC14E5414C862A5, D78921FF982CFF26A012A413F19331AACA4F66E53D38C626FE712B4108744E31 ] RpcLocator C:\WINDOWS\system32\locator.exe
19:17:53.0296 0x07b8 RpcLocator - ok
19:17:53.0328 0x07b8 [ A37311D9D628C1042A2836731787F0F3, 2A4380021407E84FAD47A2D5B02D37F1F17E8E2B1433710208FFCC70D9ECB5AA ] RpcSs C:\WINDOWS\system32\rpcss.dll
19:17:53.0328 0x07b8 RpcSs - ok
19:17:53.0359 0x07b8 [ 9ACEE3313020A01235336C2A483AFD1A, 87DD3B037FB80DC5BB9F3E335C9A0F3926481012EF9A8DE2CEF53C5386F69009 ] RSVP C:\WINDOWS\system32\rsvp.exe
19:17:53.0359 0x07b8 RSVP - ok
19:17:53.0406 0x07b8 [ 839141088AD7EE90F5B441B2D1AFD22C, 8526777F7036FC6E9E10F573B261FAD535C05F5E8250B0B25B8EC238F32C1B3A ] RTLE8023xp C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys
19:17:53.0406 0x07b8 RTLE8023xp - ok
19:17:53.0421 0x07b8 [ 88296F7943F30A1EE3AF735440B92268, 8ACCF0331EE351EFB1A0F5EF210B92F822343B387D4B8CC29FE3222FDBFA911B ] SamSs C:\WINDOWS\system32\lsass.exe
19:17:53.0421 0x07b8 SamSs - ok
19:17:53.0421 0x07b8 [ C6F479218E94896738C06AF5BA6AB3D3, 4077BDDE1A44E2A415FF76A8BB3EAD226D7A29696C0218E81381B81E750CD0BA ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
19:17:53.0437 0x07b8 SCardSvr - ok
19:17:53.0484 0x07b8 [ DD73C11A5C4D14945846384B90A61A4B, C3C6BD62FB976E27C9E2C4C239D01B5458B7D270E9563A90EFBC9801B5DC55EA ] Schedule C:\WINDOWS\system32\schedsvc.dll
19:17:53.0500 0x07b8 Schedule - ok
19:17:53.0531 0x07b8 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
19:17:53.0531 0x07b8 Secdrv - ok
19:17:53.0546 0x07b8 [ 2AAD9026648120FFFE2A8D871BB2BBC7, 8F9B35717CBE8B1C30FF15992DA8A857470A96F1A043CDA42CB89E4C6723B4A4 ] seclogon C:\WINDOWS\System32\seclogon.dll
19:17:53.0546 0x07b8 seclogon - ok
19:17:53.0578 0x07b8 [ 9D01E29D59723EB73B72107B208DAFE6, D334E807C6B41CF08EB64DCF8B2C8F68FA553971130FAB2E14C3EEE4D3B968F7 ] SENS C:\WINDOWS\system32\sens.dll
19:17:53.0578 0x07b8 SENS - ok
19:17:53.0593 0x07b8 [ 0F29512CCD6BEAD730039FB4BD2C85CE, 4F98AE390D1B14A755700DD6CEFB9CF921F0404AF2145D2D7E5F52394F87C6A5 ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
19:17:53.0593 0x07b8 serenum - ok
19:17:53.0625 0x07b8 [ D07B02F88165E69B9F17162CF592C8A6, B494941FC05FC2439F54D4D999B1A65F9709BC296D5AC470C8F73ACFC5DC4729 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
19:17:53.0625 0x07b8 Serial - ok
19:17:53.0656 0x07b8 [ 8E6B8C671615D126FDC553D1E2DE5562, CEEC0067514555D5CA489F50E3D7562FCA8DB8E952C3C878604C9277FC77959F ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
19:17:53.0656 0x07b8 Sfloppy - ok
19:17:53.0687 0x07b8 [ DA5C015911F68F22ED821E9EE49AB233, 53694B0E70F77C775CE936F5DB458F724F051314704B6F69E5C2728180F0DC2C ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
19:17:53.0703 0x07b8 SharedAccess - ok
19:17:53.0734 0x07b8 [ 55AAE86C7C2CADF6972ACD1D76C24A98, 25631E05E81E7C9C794DBB26B75F111C211EA22A031159F20B4461EA7EBCDF1C ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
19:17:53.0734 0x07b8 ShellHWDetection - ok
19:17:53.0734 0x07b8 Simbad - ok
19:17:53.0750 0x07b8 Sparrow - ok
19:17:53.0765 0x07b8 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F, DD17733CBB370FCA08F0296704D7CBEACA3C8F76D0ABE4761C3B1FFDF7481D9E ] splitter C:\WINDOWS\system32\drivers\splitter.sys
19:17:53.0765 0x07b8 splitter - ok
19:17:53.0796 0x07b8 [ 60784F891563FB1B767F70117FC2428F, E0B07F08E60FFBAD36C2E58180F4B2A16DCA47716044CBE0213DF7B74D742F1F ] Spooler C:\WINDOWS\system32\spoolsv.exe
19:17:53.0796 0x07b8 Spooler - ok
19:17:53.0843 0x07b8 [ EB032822BE406EF220D546DDFFCF0002, 916299B409925AB7326CB5F744799B34FD08CA4C4B447215DA5060FF446FEEBE ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
19:17:53.0843 0x07b8 sr - ok
19:17:53.0890 0x07b8 [ 316D0E66074AE4CDE641C50D3A1C5148, 8429F815AFB4B39F6C1C56FB1CA009E5338C1467A4A02DD8E7E35BADBB8D5221 ] srservice C:\WINDOWS\system32\srsvc.dll
19:17:53.0906 0x07b8 srservice - ok
19:17:53.0937 0x07b8 [ 47DDFC2F003F7F9F0592C6874962A2E7, 17C643BD4EB09B5666FE41817DC785BE04A6E491CE79E8E5A702CDBD98E1BDD7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
19:17:53.0953 0x07b8 Srv - ok
19:17:53.0968 0x07b8 [ 2C0B1224AA36B4CA1753302BAA855882, F8C90ECBF5BD7C3984E7C82EB00042DFD85A62F263C0205E6790205B6D64E101 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
19:17:53.0968 0x07b8 SSDPSRV - ok
19:17:54.0000 0x07b8 [ A36EE93698802CD899F98BFD553D8185, 224CFED921EA230FF8025D259E34968FD2C0FD34BB3A918FB4B9B8BA42BEA5D3 ] ssmdrv C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
19:17:54.0000 0x07b8 ssmdrv - ok
19:17:54.0031 0x07b8 [ 41508EA375C97DC2B56E5F1AFC067187, 94D8D49AE3634E861DE501E72813C5320F059C49CC61FA01B2867C99E8B36DB4 ] stisvc C:\WINDOWS\system32\wiaservc.dll
19:17:54.0031 0x07b8 stisvc - ok
19:17:54.0046 0x07b8 [ 3941D127AEF12E93ADDF6FE6EE027E0F, EA1F0E32E1C5E90FA4AAC421DEBBE086512340758D3217A6334E886BCE638B51 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
19:17:54.0046 0x07b8 swenum - ok
19:17:54.0093 0x07b8 [ 8CE882BCC6CF8A62F2B2323D95CB3D01, B408550A581F3DA222355964AFA4E976AD8471F0AA37573C42C4948AE5A23A3B ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
19:17:54.0093 0x07b8 swmidi - ok
19:17:54.0109 0x07b8 SwPrv - ok
19:17:54.0109 0x07b8 symc810 - ok
19:17:54.0109 0x07b8 symc8xx - ok
19:17:54.0125 0x07b8 sym_hi - ok
19:17:54.0125 0x07b8 sym_u3 - ok
19:17:54.0140 0x07b8 [ 8B83F3ED0F1688B4958F77CD6D2BF290, 546D3602183702B4F53E84413CFA2C933D64C8540378E54A8DCD148F3F36A2DA ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
19:17:54.0140 0x07b8 sysaudio - ok
19:17:54.0156 0x07b8 [ E42048198518F9162027A9984CBB7B5C, 2634DE2B1AE9D856966F40BFB41AD951A41E11C557C4B27E61CFF63288B53D52 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
19:17:54.0156 0x07b8 SysmonLog - ok
19:17:54.0203 0x07b8 [ 2340E6977548038C88E39A9ECBB3FADC, B8992F5E0689B307B8CC162032B398950FB07C4B4EF997431F7B344351406586 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
19:17:54.0218 0x07b8 TapiSrv - ok
19:17:54.0265 0x07b8 [ 9AEFA14BD6B182D61E3119FA5F436D3D, EA29E49434585409272E7901AF89771FE9D6E911A7DC44AB3C7020CFF8A44552 ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
19:17:54.0281 0x07b8 Tcpip - ok
19:17:54.0312 0x07b8 [ 6471A66807F5E104E4885F5B67349397, F35CBFFB8BB235CCE30EF94A5273333900DD49FD506BF9D55D99A320B8A53A5A ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
19:17:54.0312 0x07b8 TDPIPE - ok
19:17:54.0328 0x07b8 [ C56B6D0402371CF3700EB322EF3AAF61, 7743FA4C734BCE38EFB1CA69BC17364D8421E2CD172F856F7E38E7AE1EE93F2F ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
19:17:54.0328 0x07b8 TDTCP - ok
19:17:54.0343 0x07b8 [ 88155247177638048422893737429D9E, B6D4E8691917946332C2208D01F8C8281978C1AD1E9951C5D99DF0D49AC34B3B ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
19:17:54.0343 0x07b8 TermDD - ok
19:17:54.0390 0x07b8 [ 52E0505408EDD4AB5CCC7F83B67B4299, 93DBA3282025C81DC43D4B43861A6CB30C9557CD0108D4D7E0C3B1269699CF22 ] TermService C:\WINDOWS\System32\termsrv.dll
19:17:54.0406 0x07b8 TermService - ok
19:17:54.0437 0x07b8 [ 55AAE86C7C2CADF6972ACD1D76C24A98, 25631E05E81E7C9C794DBB26B75F111C211EA22A031159F20B4461EA7EBCDF1C ] Themes C:\WINDOWS\System32\shsvcs.dll
19:17:54.0437 0x07b8 Themes - ok
19:17:54.0437 0x07b8 TosIde - ok
19:17:54.0453 0x07b8 [ 9E70EB419D7785C286DC458A019BAB9B, 3901C6B9C9C197FED9C1039F2EBE0C5ACE240512ABBFECB388CAD201CE032760 ] TrkWks C:\WINDOWS\system32\trkwks.dll
19:17:54.0453 0x07b8 TrkWks - ok
19:17:54.0484 0x07b8 [ 5787B80C2E3C5E2F56C2A233D91FA2C9, 3774905CF77954DFCECDA5BCC7CDE3D0ED72712BFAAD85ADAE5246306447E46C ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
19:17:54.0484 0x07b8 Udfs - ok
19:17:54.0500 0x07b8 ultra - ok
19:17:54.0531 0x07b8 [ 402DDC88356B1BAC0EE3DD1580C76A31, 32A686595710336A6BFD54C03F552AE39439611662F84EF5D24193AE5665C6F3 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
19:17:54.0546 0x07b8 Update - ok
19:17:54.0578 0x07b8 [ E96A6BAEE0B2A14A38B45830D6E30697, 12314B1D96E025718F965C091E3CAD2865EDDAACA2E60A1A0DAF25630AE66B72 ] upnphost C:\WINDOWS\System32\upnphost.dll
19:17:54.0593 0x07b8 upnphost - ok
19:17:54.0609 0x07b8 [ EB90E28B28541EC845E5345609355CA7, 60C8DF04EB5839AB1B8625C385F4B2089C63FE613463026F779B331D9BC4D4D6 ] UPS C:\WINDOWS\System32\ups.exe
19:17:54.0609 0x07b8 UPS - ok
19:17:54.0640 0x07b8 [ 1B611611C28D2DF25BC057D79C6F13FC, B0D86F63E44B40413BBAE6402CC088046CFAE082D41BBC2ED5A916293356B846 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
19:17:54.0640 0x07b8 usbccgp - ok
19:17:54.0671 0x07b8 [ 4BAC8DF07F1D8434FC640E677A62204E, 76C1351AF6752224BF59DEEE0F8665FE699F3DFD679F5BCD01C7D9383E6402A4 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
19:17:54.0671 0x07b8 usbehci - ok
19:17:54.0687 0x07b8 [ 1AB3CDDE553B6E064D2E754EFE20285C, A99C4528C4227B1E96847614745AAFACD3C5F1BDFE435214DBF78740FFB300FE ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
19:17:54.0687 0x07b8 usbhub - ok
19:17:54.0750 0x07b8 [ 0DAECCE65366EA32B162F85F07C6753B, 3C33AC2FC95E876933F2016CF0CDA2745491679728684DA8DF95A515CE4804BD ] usbohci C:\WINDOWS\system32\DRIVERS\usbohci.sys
19:17:54.0750 0x07b8 usbohci - ok
19:17:54.0781 0x07b8 [ F8EDE2B6928970DCE3D5614C27D9E7F6, 6E5EBBC8B70C1D593634DAF0C190DEADFDA18C3CBC8F552A76F156F3869EF05B ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
19:17:54.0781 0x07b8 usbscan - ok
19:17:54.0812 0x07b8 [ A32426D9B14A089EAA1D922E0C5801A9, ED1DC52EE45F8EAD3AEC4B1F817BB25634141CF48295494C5947DCE6CF7A9817 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
19:17:54.0812 0x07b8 USBSTOR - ok
19:17:54.0828 0x07b8 [ 0D3A8FAFCEACD8B7625CD549757A7DF1, B9CFDEFCD66AA139F3DC2F967B184669532922563AD5A71769BABDC4370D065E ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
19:17:54.0828 0x07b8 VgaSave - ok
19:17:54.0843 0x07b8 ViaIde - ok
19:17:54.0875 0x07b8 [ 56B191AC5FC0DF219949C95A6C87AFE7, 5DCD42BD686869B394CFB9EFD727DCEEEAE239326DDE3D1655C456FCAE949D9F ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
19:17:54.0875 0x07b8 VolSnap - ok
19:17:54.0906 0x07b8 [ 7F2D7BFFC4554E1C742DD3629FD1FB1B, 4BFFC8A67F98AF69039DF0AFF1FDA11CFAD6464066E8ED92090D48392C43B6ED ] VSS C:\WINDOWS\System32\vssvc.exe
19:17:54.0921 0x07b8 VSS - ok
19:17:54.0937 0x07b8 [ A672CA3981352F8E9C30FEA056E80A62, 9AD34EFEB11EFEB234A246639FADF036F49FC67E542C4DE78D7C01E75BC62B59 ] W32Time C:\WINDOWS\system32\w32time.dll
19:17:54.0937 0x07b8 W32Time - ok
19:17:54.0953 0x07b8 [ E20B95BAEDB550F32DD489265C1DA1F6, 5589B2067E6C9FBA290D8C5EADDC198EBAF39C50C3CD7D2BC5CDA7CBFBC445E5 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
19:17:54.0968 0x07b8 Wanarp - ok
19:17:54.0968 0x07b8 WDICA - ok
19:17:54.0984 0x07b8 [ 6768ACF64B18196494413695F0C3A00F, 3A8F8586F1D997D19A8478345338D2AECD785AEABDB61531DD3F92003D3230A5 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
19:17:54.0984 0x07b8 wdmaud - ok
19:17:55.0000 0x07b8 [ 81FB88B975E25D76E00B69879D8A434C, 2340CEE200CA3F0A546F88AAD3AFDCFD0805DB027E8480B4280D92E14F6C1F69 ] WebClient C:\WINDOWS\System32\webclnt.dll
19:17:55.0000 0x07b8 WebClient - ok
19:17:55.0062 0x07b8 [ 70C22297534A88B0AD0568900AB5A6D9, 2457D9B21CD8633D6A59FC053B70B9282A64066789EC020A9F2C937141E95C61 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
19:17:55.0078 0x07b8 winmgmt - ok
19:17:55.0125 0x07b8 [ C51B4A5C05A5475708E3C81C7765B71D, F776D2680BD3407307B7072626F78460361FC5BC38623C9E16F394D300AB25DE ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
19:17:55.0125 0x07b8 WmdmPmSN - ok
19:17:55.0140 0x07b8 [ C42584FD66CE9E17403AEBCA199F7BDB, E3F2E1066F36AE5D33D4482239B2E556BE0C137923C9A120DFB36EC82F2E77B0 ] WmiAcpi C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
19:17:55.0156 0x07b8 WmiAcpi - ok
19:17:55.0171 0x07b8 [ A2B12D80A1670511B047A7D8BB647598, BDE141A77034608D926624583D252650D01B64EC2B3E8156A61D735C79E2A0E6 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
19:17:55.0171 0x07b8 WmiApSrv - ok
19:17:55.0265 0x07b8 [ CDFA647AA82FDBA6C9C7A06155AFCB40, 4ACF2E90E4A933A5C662AFECFFB52997BED865953E452C80A772DF1B049060FD ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
19:17:55.0296 0x07b8 WMPNetworkSvc - ok
19:17:55.0328 0x07b8 [ CF4DEF1BF66F06964DC0D91844239104, CC1D9CECE2056D29A9651D51BB57C3F4F9BF9E90A4808CF7496C683C874FBD51 ] WpdUsb C:\WINDOWS\system32\DRIVERS\wpdusb.sys
19:17:55.0328 0x07b8 WpdUsb - ok
19:17:55.0406 0x07b8 [ 15673BD0B86150CB8E27766059C72A9B, 56C23289A8BFF4945EE532CF6D62D3EC81B827CA15A359F30A327789F9FE9CAF ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
19:17:55.0421 0x07b8 WPFFontCache_v0400 - ok
19:17:55.0468 0x07b8 [ B6669F49D42E09BC0F9889FAA0F3336D, B6147A60F763E562E26495A6ACAE759492A52AE3BEFEA4BF40B8874E4CF069F1 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
19:17:55.0468 0x07b8 wscsvc - ok
19:17:55.0484 0x07b8 [ 04550D5EB7EE82C115DB547C01DF09FD, 6A4D1E5F4E1C641B47BB48489D4205531597E942E02ECD75BCFA856F60A938B0 ] wuauserv C:\WINDOWS\system32\wuauserv.dll
19:17:55.0484 0x07b8 wuauserv - ok
19:17:55.0515 0x07b8 [ F15FEAFFFBB3644CCC80C5DA584E6311, 79B3E9AF35976CE49921E9BEA3BA3B4A8AF762FD3F284B62954038B5FFB32471 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
19:17:55.0515 0x07b8 WudfPf - ok
19:17:55.0546 0x07b8 [ 28B524262BCE6DE1F7EF9F510BA3985B, AEFF02B899801A63CBB262757C3D4369E38BFF0690BD085DE60E873DFBE3C3F4 ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
19:17:55.0546 0x07b8 WudfRd - ok
19:17:55.0562 0x07b8 [ 05231C04253C5BC30B26CBAAE680ED89, 5C03C2D7E0B573646D32F4093E2FF2C3BA391C39F5BA37D67F69D38E357FCC3D ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
19:17:55.0562 0x07b8 WudfSvc - ok
19:17:55.0609 0x07b8 [ C2842273AAA77AC031EDB87FA19A2147, 8542392E337C543BCD9EDC7A15DC6E8DE8E9B8041CC7A8D707217C9FF0446882 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
19:17:55.0640 0x07b8 WZCSVC - ok
19:17:55.0687 0x07b8 [ 24ED6935771359A5AEF1FE8BF0C56F39, F0C3B781853714F48DE4F42533A7236CE11076208F190E79500F8A77C9CF9849 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
19:17:55.0687 0x07b8 xmlprov - ok
19:17:55.0703 0x07b8 ================ Scan global ===============================
19:17:55.0718 0x07b8 [ 65C782F8CFC1BEBCC58E1532F44B6408, D5EB7357F37AC9CEF96BC1BCACE765B2897E502D699E64145EFA4DD62BCCE80B ] C:\WINDOWS\system32\basesrv.dll
19:17:55.0750 0x07b8 [ F2515CEDFA83C225E126117835D7BF6A, FFDDBC97E0024DF9E05D199CABA0B0A0F0CC7508D477D7C6E2AAD8D505174810 ] C:\WINDOWS\system32\winsrv.dll
19:17:55.0781 0x07b8 [ F2515CEDFA83C225E126117835D7BF6A, FFDDBC97E0024DF9E05D199CABA0B0A0F0CC7508D477D7C6E2AAD8D505174810 ] C:\WINDOWS\system32\winsrv.dll
19:17:55.0812 0x07b8 [ 02A467E27AF55F7064C5B251E587315F, 309D6C6ABC9D7786354758C107B89C50AC722AEA3B10631714F326AB2D3BB3DF ] C:\WINDOWS\system32\services.exe
19:17:55.0812 0x07b8 [ Global ] - ok
19:17:55.0812 0x07b8 ================ Scan MBR ==================================
19:17:55.0843 0x07b8 [ 32052574BF9F325AE309ABC7BFD04460 ] \Device\Harddisk0\DR0
19:17:56.0031 0x07b8 \Device\Harddisk0\DR0 - ok
19:17:56.0031 0x07b8 ================ Scan VBR ==================================
19:17:56.0031 0x07b8 [ AC17C6FA8DAACAE8A2B344AA498E7551 ] \Device\Harddisk0\DR0\Partition1
19:17:56.0031 0x07b8 \Device\Harddisk0\DR0\Partition1 - ok
19:17:56.0046 0x07b8 [ 2AAD003D9BBD2A85983ABF5E0EBE0340 ] \Device\Harddisk0\DR0\Partition2
19:17:56.0046 0x07b8 \Device\Harddisk0\DR0\Partition2 - ok
19:17:56.0078 0x07b8 [ D6411E1534596E64519848FDB5A74717 ] \Device\Harddisk0\DR0\Partition3
19:17:56.0078 0x07b8 \Device\Harddisk0\DR0\Partition3 - ok
19:17:56.0078 0x07b8 ================ Scan generic autorun ======================
19:17:56.0843 0x07b8 [ 2C53B6E2E2C6A80B2D3D56B3219C448D, 8DB8E5B07DD79A950D91EEF04A4030D3462EAA1AA8D6C4AC0D5B1F0D0AB153F7 ] C:\WINDOWS\RTHDCPL.EXE
19:17:57.0328 0x07b8 RTHDCPL - ok
19:17:57.0390 0x07b8 [ EA31039E691C6F8F5469649526EEA5FB, 921910627814F3F237F59BBF5C97D383CF954DFF885F3A60475B9F76CD55461F ] C:\WINDOWS\ALCMTR.EXE
19:17:57.0390 0x07b8 Alcmtr - ok
19:17:57.0468 0x07b8 [ 048EA4B978851788E9F5E8E4F081DF7A, EB62719AC0DCC18FF056F2CD84438BF14B61E38F0619617C81961C6257BDFCEC ] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
19:17:57.0500 0x07b8 Adobe ARM - ok
19:17:57.0562 0x07b8 [ 1E9B225DE829A6F666A0BA9B8A7984BF, 89D1222D72E23D21E6388B068CE7C415A9857ABB37D7A3AAD549B949A87E61FC ] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
19:17:57.0578 0x07b8 avgnt - ok
19:17:57.0593 0x07b8 NvCplDaemon - ok
19:17:57.0593 0x07b8 NvMediaCenter - ok
19:17:57.0734 0x07b8 [ 0671B81D7DDF5F19B320E618D70B4028, FAFC94B992D7FE5A12CC13080A58F69BC769E73B20185A1B8D46DBC9A7EB3035 ] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe
19:17:57.0796 0x07b8 nwiz - ok
19:17:57.0875 0x07b8 [ 7FCF3650242F8F8C1EE2E7E98CBD88BB, 5AE46713C7D96E30661F67A95414FF12181974788929C11C2F623695153A77D1 ] C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe
19:17:57.0906 0x07b8 Nvtmru - ok
19:17:58.0000 0x07b8 [ 4DA2F2DA54A92850F56C0DB712058188, 9FB9BD1D9874DD64A627FFBE7B54B753D5496425BB595A112D0E17601A5E86A0 ] C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe
19:17:58.0000 0x07b8 Malwarebytes Anti-Malware (cleanup) - ok
19:17:58.0015 0x07b8 [ 1BD41EDA5B869AFC99895C39A8DE36E1, B532692D7E082A8AE60A199951F82C2E0EE0BAEA3A61F9BAE59E955C914FA3F0 ] C:\WINDOWS\system32\CTFMON.EXE
19:17:58.0031 0x07b8 CTFMON.EXE - ok
19:17:58.0031 0x07b8 [ 1BD41EDA5B869AFC99895C39A8DE36E1, B532692D7E082A8AE60A199951F82C2E0EE0BAEA3A61F9BAE59E955C914FA3F0 ] C:\WINDOWS\system32\CTFMON.EXE
19:17:58.0031 0x07b8 CTFMON.EXE - ok
19:17:58.0031 0x07b8 [ 1BD41EDA5B869AFC99895C39A8DE36E1, B532692D7E082A8AE60A199951F82C2E0EE0BAEA3A61F9BAE59E955C914FA3F0 ] C:\WINDOWS\system32\ctfmon.exe
19:17:58.0046 0x07b8 CTFMON.EXE - ok
19:17:58.0062 0x07b8 ALLUpdate - ok
19:17:58.0156 0x07b8 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] C:\Documents and Settings\Piotrek\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe
19:17:58.0156 0x07b8 Google Update - ok
19:17:58.0171 0x07b8 [ 1BD41EDA5B869AFC99895C39A8DE36E1, B532692D7E082A8AE60A199951F82C2E0EE0BAEA3A61F9BAE59E955C914FA3F0 ] C:\WINDOWS\system32\CTFMON.EXE
19:17:58.0171 0x07b8 CTFMON.EXE - ok
19:17:58.0171 0x07b8 [ 1BD41EDA5B869AFC99895C39A8DE36E1, B532692D7E082A8AE60A199951F82C2E0EE0BAEA3A61F9BAE59E955C914FA3F0 ] C:\WINDOWS\system32\CTFMON.EXE
19:17:58.0171 0x07b8 CTFMON.EXE - ok
19:17:58.0171 0x07b8 Waiting for KSN requests completion. In queue: 23
19:17:59.0171 0x07b8 Waiting for KSN requests completion. In queue: 23
19:18:00.0171 0x07b8 Waiting for KSN requests completion. In queue: 23
19:18:01.0281 0x07b8 AV detected via SS1: Avira Desktop, 14.0.5.320, enabled, updated
19:18:01.0281 0x07b8 Win FW state via NFM: enabled
19:18:03.0765 0x07b8 ============================================================
19:18:03.0765 0x07b8 Scan finished
19:18:03.0765 0x07b8 ============================================================
19:18:03.0765 0x0820 Detected object count: 0
19:18:03.0765 0x0820 Actual detected object count: 0
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 2014-07-03
Scan Time: 18:40:16
Logfile: MBAM.txt
Administrator: Yes
Version: 2.00.2.1012
Malware Database: v2014.07.03.03
Rootkit Database: v2014.07.01.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled
OS: Windows XP Service Pack 3
CPU: x86
File System: NTFS
User: Piotrek
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 291774
Time Elapsed: 11 min, 8 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 2
PUP.Optional.IePluginService.A, C:\Documents and Settings\All Users\Dane aplikacji\IePluginService\PluginService.exe, 1640, , [1a056635ee8d52e44c16b1ab61a0768a]
PUP.Optional.WpManager, C:\Documents and Settings\All Users\Dane aplikacji\WPM\wprotectmanager.exe, 1704, , [5ec14e4d3e3dcc6adc015016b84946ba]
Modules: 0
(No malicious items detected)
Registry Keys: 21
PUP.Optional.IePluginService.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IePluginService, , [1a056635ee8d52e44c16b1ab61a0768a],
PUP.Optional.WpManager, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Wpm, , [5ec14e4d3e3dcc6adc015016b84946ba],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, , [72ad6635ff7c2c0ad38f2b0a12eecd33],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, , [72ad6635ff7c2c0ad38f2b0a12eecd33],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, , [72ad6635ff7c2c0ad38f2b0a12eecd33],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, , [72ad6635ff7c2c0ad38f2b0a12eecd33],
PUP.Optional.SupTab.A, HKU\S-1-5-21-1177238915-1844237615-839522115-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, , [72ad6635ff7c2c0ad38f2b0a12eecd33],
PUP.Optional.SupTab.A, HKU\S-1-5-21-1177238915-1844237615-839522115-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, , [72ad6635ff7c2c0ad38f2b0a12eecd33],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}\INPROCSERVER32, , [72ad6635ff7c2c0ad38f2b0a12eecd33],
PUP.Optional.DefaultTab.A, HKLM\SOFTWARE\CLASSES\APPID\{72D89EBF-0C5D-4190-91FD-398E45F1D007}, , [e13e7f1c38432f07eaa1eb66837f8080],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\CLASSES\TYPELIB\{DCABB943-792E-44C4-9029-ECBEE6265AF9}, , [041b4f4c85f681b59341f15ef70b14ec],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\CLASSES\INTERFACE\{3408AC0D-510E-4808-8F7B-6B70B1F88534}, , [041b4f4c85f681b59341f15ef70b14ec],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\SupTab, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.Aartemis.A, HKLM\SOFTWARE\AARTEMISSOFTWARE\aartemishp, , [19062d6e82f943f3348a855323dffa06],
PUP.Optional.Elex.A, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\ifohbjbgfchkkfhphahclmkpgejiplfo, , [e13e5b403546a5916a08cd232bd8ec14],
PUP.Optional.QuickStart.A, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\pelmeidfhdlhlbjimpabfcbnnojbboma, , [1b040794c9b29c9aaa01f4d6ab5746ba],
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, , [d34cddbe9edd44f2f360857315ee35cb],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-1177238915-1844237615-839522115-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, , [958a049774078da98cfe6c6ae9197a86],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-1177238915-1844237615-839522115-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, , [011eb5e60b701a1cf2aa55974eb58b75],
PUP.Optional.Qone8, HKU\S-1-5-21-1177238915-1844237615-839522115-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, , [d14e6f2cff7c4aecc48e03f5fe05817f],
PUP.Optional.Softonic.A, HKU\S-1-5-21-1177238915-1844237615-839522115-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Universal Downloader, , [100f405b33487fb779d89b2a0cf6d52b],
Registry Values: 2
PUP.Optional.WpManager.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WPM|ImagePath, C:\Documents and Settings\All Users\Dane aplikacji\WPM\wprotectmanager.exe -service, , [031ce0bbb4c7f83ed45819e41ae9d12f]
PUP.Optional.InstallCore.A, HKU\S-1-5-21-1177238915-1844237615-839522115-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, 0H1L1J1L1S1R1N, , [011eb5e60b701a1cf2aa55974eb58b75]
Registry Data: 6
PUP.Optional.Aartemis, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files\Internet Explorer\iexplore.exe http://aartemis.com/?type=sc & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS, Good: (iexplore.exe), Bad: (C:\Program Files\Internet Explorer\iexplore.exe http://aartemis.com/?type=sc & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS),,[70af94075e1d47ef4b77910043c1728e]
PUP.Optional.Aartemis.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://aartemis.com/?type=hp & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS, Good: (http://www.google.com), Bad: (http://aartemis.com/?type=hp & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS),,[73ac386386f589adb615078a45bfff01]
PUP.Optional.Aartemis, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://aartemis.com/?type=hp & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS, Good: (http://www.google.com), Bad: (http://aartemis.com/?type=hp & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS),,[928d94076f0c69cd982c345d6e96fd03]
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Good: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Bad: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),,[1a05415ad6a5d1652190731e976d6f91]
PUP.Optional.Aartemis.A, HKU\S-1-5-21-1177238915-1844237615-839522115-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://aartemis.com/?type=hp & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS, Good: (http://www.google.com), Bad: (http://aartemis.com/?type=hp & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS),,[48d78e0db2c90d296f5b9ff25aaaf709]
PUP.Optional.Aartemis, HKU\S-1-5-21-1177238915-1844237615-839522115-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://aartemis.com/?type=hp & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS, Good: (http://www.google.com), Bad: (http://aartemis.com/?type=hp & ts=1388331172 & from=obw & uid=ST3160811AS_5PT0XVXSXXXX5PT0XVXS),,[43dc118a9ddefb3bb709543dfc08c33d]
Folders: 38
PUP.Optional.SupTab.A, C:\Program Files\SupTab, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\js, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\en-US, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\es-419, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\es-ES, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\fr-BE, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\fr-CA, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\fr-CH, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\fr-FR, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\fr-LU, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\it-CH, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\it-IT, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\pl, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\pt, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\pt-BR, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\ru, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\ru-MO, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\tr-TR, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\vi-VI, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\zh-CN, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\zh-TW, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.NextLive.A, C:\Documents and Settings\Piotrek\Dane aplikacji\newnext.me, , [98874b502d4ebb7b75b1f2a74db5f60a],
PUP.Optional.NextLive.A, C:\Documents and Settings\Piotrek\Dane aplikacji\newnext.me\cache, , [98874b502d4ebb7b75b1f2a74db5f60a],
PUP.Optional.IePluginService.A, C:\Documents and Settings\All Users\Dane aplikacji\IePluginService, , [8f909605c0bbb87e0f26ccce07fb9769],
PUP.Optional.IePluginService.A, C:\Documents and Settings\All Users\Dane aplikacji\IePluginService\update, , [8f909605c0bbb87e0f26ccce07fb9769],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui\images, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\engines_icons, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\js, , [8b9404970675b48243c7aaf2ac5627d9],
Files: 175
PUP.Optional.IePluginService.A, C:\Documents and Settings\All Users\Dane aplikacji\IePluginService\PluginService.exe, , [1a056635ee8d52e44c16b1ab61a0768a],
PUP.Optional.WpManager, C:\Documents and Settings\All Users\Dane aplikacji\WPM\wprotectmanager.exe, , [5ec14e4d3e3dcc6adc015016b84946ba],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\SupTab.dll, , [72ad6635ff7c2c0ad38f2b0a12eecd33],
PUP.Optional.OutBrowse, C:\Documents and Settings\Piotrek\Ustawienia lokalne\Temp\DownloadManager.exe, , [041b4f4c85f681b59341f15ef70b14ec],
PUP.Optional.SupTab.A, C:\Documents and Settings\Piotrek\Dane aplikacji\SupTab\SupTab.dll, , [8996bfdc91ea85b1164cf73e49b708f8],
PUP.Optional.OpenCandy, E:\Moje dokumenty\Piotr\Downloads\yosetup.exe, , [5cc37e1d186338fe21fc833347bd46ba],
PUP.Optional.Softonic.A, E:\Moje dokumenty\Piotr\Downloads\SoftonicDownloader_dla_media-player-classic.exe, , [af709dfeaccfaf87c85767bf38c948b8],
PUP.Optional.NextLive.A, C:\Documents and Settings\Piotrek\Ustawienia lokalne\Temp\Mobogenie_Setup_INT.exe, , [839cdbc01368c76ffd98530739c828d8],
PUP.Optional.Aartemis.A, C:\Documents and Settings\Piotrek\Ustawienia lokalne\Temp\obw_aartemis_2013111118305.exe, , [3ce3e7b475066fc77a4ce5550df4718f],
PUP.Optional.NationZoom.A, C:\Documents and Settings\Piotrek\Ustawienia lokalne\Temp\fullpackage_temp1388331163\Baofeng.exe, , [6cb3ebb07407fa3c3052df4ee81856aa],
PUP.Optional.WpManager, C:\Documents and Settings\Piotrek\Ustawienia lokalne\Temp\fullpackage_temp1388331163\tmp\NewGdp.exe, , [74abbcdfa5d6f244c21b4521e71a05fb],
PUP.Optional.NextLive.A, C:\Documents and Settings\Piotrek\Ustawienia lokalne\Temp\is420858837\5770900_stp\Mobogenie_Setup_UN.exe, , [47d875265d1eaf87afe61a4078898a76],
PUP.Optional.NextLive.A, C:\Documents and Settings\Piotrek\Ustawienia lokalne\Dane aplikacji\genienext\nengine.dll, , [120deface89306303e5797c30ff229d7],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\install.data, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\uninstall.exe, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\WebDataJs, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\data.html, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\indexIE.html, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\indexIE8.html, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\main.css, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\style.css, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\ver.txt, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\arrow.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\default_add_logo.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\default_add_logo_hover.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\default_logo.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\googlelogo.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\googlelogo2.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\google_trends.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\icon128.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\icon16.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\icon48.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\loading.gif, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\logo32.ico, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\27.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\0.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\1.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\10.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\11.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\12.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\13.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\14.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\15.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\16.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\17.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\18.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\19.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\2.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\20.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\21.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\22.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\23.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\24.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\25.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\26.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\28.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\29.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\3.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\30.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\31.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\32.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\33.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\34.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\35.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\36.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\37.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\38.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\39.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\4.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\40.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\41.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\42.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\43.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\44.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\45.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\46.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\47.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\5.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\6.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\7.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\8.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\img\weather\9.png, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\js\background.js, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\js\common.js, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\js\ga.js, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\js\ie8.js, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\js\jquery-1.11.0.min.js, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\js\jquery-base.js, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\js\jquery.autocomplete.js, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\js\js.js, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\js\library.js, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\js\xagainit.js, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\en-US\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\es-419\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\es-ES\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\fr-BE\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\fr-CA\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\fr-CH\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\fr-FR\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\fr-LU\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\it-CH\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\it-IT\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\pl\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\pt\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\pt-BR\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\ru\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\ru-MO\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\tr-TR\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\vi-VI\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\zh-CN\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.SupTab.A, C:\Program Files\SupTab\web\_locales\zh-TW\messages.json, , [aa75bdde6c0fcb6b63efb0234ab8a35d],
PUP.Optional.NextLive.A, C:\Documents and Settings\Piotrek\Dane aplikacji\newnext.me\nengine.cookie, , [98874b502d4ebb7b75b1f2a74db5f60a],
PUP.Optional.NextLive.A, C:\Documents and Settings\Piotrek\Dane aplikacji\newnext.me\cache\spark.bin, , [98874b502d4ebb7b75b1f2a74db5f60a],
PUP.Optional.IePluginService.A, C:\Documents and Settings\All Users\Dane aplikacji\IePluginService\update\conf, , [8f909605c0bbb87e0f26ccce07fb9769],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\18x18.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\background.html, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\blank.html, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\manifest.json, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\manifest_no_button.json, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\new_tab.html, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\search_box.html, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\injection.css, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui\jquery-ui-1.8.16.custom.css, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui\images\ui-bg_flat_0_aaaaaa_40x100.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui\images\ui-bg_flat_75_ffffff_40x100.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui\images\ui-bg_glass_55_fbf9ee_1x400.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui\images\ui-bg_glass_65_ffffff_1x400.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui\images\ui-bg_glass_75_dadada_1x400.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui\images\ui-bg_glass_75_e6e6e6_1x400.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui\images\ui-bg_glass_95_fef1ec_1x400.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui\images\ui-bg_highlight-soft_75_cccccc_1x100.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui\images\ui-icons_222222_256x240.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui\images\ui-icons_2e83ff_256x240.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui\images\ui-icons_454545_256x240.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui\images\ui-icons_888888_256x240.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\css\jquery_ui\images\ui-icons_cd0a0a_256x240.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\help.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\engines_icons\Bing.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\engines_icons\Google.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\engines_icons\Search here.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\engines_icons\Yahoo.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_bottom_left_before_corner.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\bullet_arrow_down.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\bullet_arrow_down_old.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\icon.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search-inner-wrapper.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search-left.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_arrow_top_button.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_arrow_top_button_hovered.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_bottom_bg.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_bottom_border_bg.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_bottom_left_corner.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_bottom_right_before_corner.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_bottom_right_corner.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_left_border_bg.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_left_bottom_border_bg.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_middle_bg.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_right_border_bg.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_right_bottom_border_bg.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_top_bg.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_top_left_before_corner.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_top_left_corner.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_top_right_before_corner.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\images\injection\search_top_right_corner.png, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\js\bg.js, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\js\ConfigManager.js, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\js\content.js, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\js\InjectionManager.js, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\js\jquery-1.7.1.min.js, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\js\jquery-ui-1.8.16.custom.min.js, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\js\jquery.guid.js, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\js\newTab.js, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\js\ScriptChecker.js, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\js\ScriptInjector.js, , [8b9404970675b48243c7aaf2ac5627d9],
PUP.Optional.DefaultTab.A, C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\2.0.0_0\js\SearchBox.js, , [8b9404970675b48243c7aaf2ac5627d9],
Physical Sectors: 0
(No malicious items detected)
(end)
OTL Extras logfile created on: 2014-07-03 19:07:04 - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = E:\Moje dokumenty\Piotr\Downloads
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
2,00 Gb Total Physical Memory | 1,21 Gb Available Physical Memory | 60,38% Memory free
3,85 Gb Paging File | 2,99 Gb Available in Paging File | 77,67% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 29,30 Gb Total Space | 6,92 Gb Free Space | 23,63% Space Free | Partition Type: NTFS
Drive D: | 59,57 Gb Total Space | 18,35 Gb Free Space | 30,80% Space Free | Partition Type: NTFS
Drive E: | 60,14 Gb Total Space | 7,20 Gb Free Space | 11,96% Space Free | Partition Type: FAT32
Computer Name: KOMP-NA-GORZE | User Name: Piotrek | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Extra Registry (SafeList) ==========[/color]
[color=#E56717]========== File Associations ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ & lt; extension & gt; ]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL " %1 " ,%*
[HKEY_USERS\S-1-5-21-1177238915-1844237615-839522115-1004\SOFTWARE\Classes\ & lt; extension & gt; ]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
[color=#E56717]========== Shell Spawning ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ & lt; key & gt; \shell\[command]\command]
batfile [open] -- " %1 " %*
cmdfile [open] -- " %1 " %*
comfile [open] -- " %1 " %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL " %1 " ,%*
exefile [open] -- " %1 " %*
piffile [open] -- " %1 " %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- " %1 "
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- " %1 " /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[color=#E56717]========== Security Center Settings ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
" FirstRunDisabled " = 1
" AntiVirusDisableNotify " = 0
" FirewallDisableNotify " = 0
" UpdatesDisableNotify " = 0
" AntiVirusOverride " = 1
" FirewallOverride " = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[color=#E56717]========== System Restore Settings ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
" DisableSR " = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
" Start " = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
" Start " = 2
[color=#E56717]========== Firewall Settings ==========[/color]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[color=#E56717]========== Authorized Applications List ==========[/color]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
" %windir%\system32\sessmgr.exe " = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
" %windir%\Network Diagnostic\xpnetdiag.exe " = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
" %windir%\system32\sessmgr.exe " = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
" %windir%\Network Diagnostic\xpnetdiag.exe " = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
" C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe " = C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe:*:Enabled:Daemonu.exe -- (NVIDIA Corporation)
[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
" {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} " = PDFCreator
" {0A0CADCF-78DA-33C4-A350-CD51849B9702} " = Microsoft .NET Framework 4 Extended
" {321320E1-0E5A-36CB-9E52-F3B201B8C4D4} " = Microsoft .NET Framework 4 Client Profile PLK Language Pack
" {350C9415-3D7C-4EE8-BAA9-00BCB3D54227} " = WebFldrs XP
" {3C3901C5-3455-3E0A-A214-0B093A5070A6} " = Microsoft .NET Framework 4 Client Profile
" {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E} " = Google Earth
" {5C19E2DC-4CCF-3114-B40A-6E565987025F} " = Microsoft .NET Framework 4 Extended PLK Language Pack
" {7B5AA67E-FEA0-40BB-BAB5-CA56645A589C} " = NVIDIA PhysX
" {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} " = Microsoft Silverlight
" {90120000-0010-0415-0000-0000000FF1CE} " = Microsoft Software Update for Web Folders (Polish) 12
" {90120000-0015-0415-0000-0000000FF1CE} " = Microsoft Office Access MUI (Polish) 2007
" {90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4} " = Microsoft Office 2007 Service Pack 3 (SP3)
" {90120000-0016-0415-0000-0000000FF1CE} " = Microsoft Office Excel MUI (Polish) 2007
" {90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4} " = Microsoft Office 2007 Service Pack 3 (SP3)
" {90120000-0018-0415-0000-0000000FF1CE} " = Microsoft Office PowerPoint MUI (Polish) 2007
" {90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4} " = Microsoft Office 2007 Service Pack 3 (SP3)
" {90120000-0019-0415-0000-0000000FF1CE} " = Microsoft Office Publisher MUI (Polish) 2007
" {90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4} " = Microsoft Office 2007 Service Pack 3 (SP3)
" {90120000-001A-0415-0000-0000000FF1CE} " = Microsoft Office Outlook MUI (Polish) 2007
" {90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4} " = Microsoft Office 2007 Service Pack 3 (SP3)
" {90120000-001B-0415-0000-0000000FF1CE} " = Microsoft Office Word MUI (Polish) 2007
" {90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4} " = Microsoft Office 2007 Service Pack 3 (SP3)
" {90120000-001F-0407-0000-0000000FF1CE} " = Microsoft Office Proof (German) 2007
" {90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643} " = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
" {90120000-001F-0409-0000-0000000FF1CE} " = Microsoft Office Proof (English) 2007
" {90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F} " = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
" {90120000-001F-0415-0000-0000000FF1CE} " = Microsoft Office Proof (Polish) 2007
" {90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619} " = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
" {90120000-002C-0415-0000-0000000FF1CE} " = Microsoft Office Proofing (Polish) 2007
" {90120000-0030-0000-0000-0000000FF1CE} " = Microsoft Office Enterprise 2007
" {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93} " = Microsoft Office 2007 Service Pack 3 (SP3)
" {90120000-0044-0415-0000-0000000FF1CE} " = Microsoft Office InfoPath MUI (Polish) 2007
" {90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4} " = Microsoft Office 2007 Service Pack 3 (SP3)
" {90120000-006E-0415-0000-0000000FF1CE} " = Microsoft Office Shared MUI (Polish) 2007
" {90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8} " = Microsoft Office 2007 Service Pack 3 (SP3)
" {90120000-00A1-0415-0000-0000000FF1CE} " = Microsoft Office OneNote MUI (Polish) 2007
" {90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4} " = Microsoft Office 2007 Service Pack 3 (SP3)
" {90120000-00BA-0415-0000-0000000FF1CE} " = Microsoft Office Groove MUI (Polish) 2007
" {90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4} " = Microsoft Office 2007 Service Pack 3 (SP3)
" {90140000-2005-0000-0000-0000000FF1CE} " = Microsoft Office File Validation Add-In
" {9370105C-71BB-4FF9-A85B-36D79B95457A}_is1 " = ALLConverter PRO 1.3
" {9A9E1246-0FBB-47BB-B3F0-76A2FED7C951} " = Portlock Windows Update Manager
" {A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7} " = Microsoft .NET Framework 3.0 Service Pack 2
" {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} " = Google Update Helper
" {AC76BA86-7AD7-1045-7B44-AB0000000001} " = Adobe Reader XI (11.0.07) - Polish
" {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel " = Panel sterowania NVIDIA 331.65
" {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver " = NVIDIA Sterownik graficzny 331.65
" {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience " = NVIDIA GeForce Experience 1.7
" {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView " = NVIDIA nView 140.75
" {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX " = NVIDIA Oprogramowanie systemu PhysX 9.13.0725
" {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update " = Aktualizacje NVIDIA 9.3.16
" {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer " = NVIDIA Install Application
" {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update " = NVIDIA Update Components
" {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} " = Microsoft .NET Framework 2.0 Service Pack 2
" {C151CE54-E7EA-4804-854B-F515368B0798} " = AMD Processor Driver
" {C1E3DFE7-4EAD-3E9E-A826-E06055BA5921} " = Google Talk Plugin
" {C9BED750-1211-4480-B1A5-718A3BE15525} " = REALTEK GbE & FE Ethernet PCI-E NIC Driver
" {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} " = Microsoft .NET Framework 3.5 SP1
" {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} " = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
" {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} " = Realtek High Definition Audio Driver
" {FE77909E-B782-4554-A92A-4D887CEF0ACC}_is1 " = ALLMediaServer
" Adobe Flash Player ActiveX " = Adobe Flash Player 10 ActiveX
" Avira AntiVir Desktop " = Avira Free Antivirus
" Cartes du Ciel " = Cartes du Ciel
" CPUID CPU-Z_is1 " = CPUID CPU-Z 1.69.2
" ENTERPRISE " = Microsoft Office Enterprise 2007
" ffdshow " = ffdshow (remove only)
" Google Chrome " = Google Chrome
" ie8 " = Windows Internet Explorer 8
" ISO Workshop_is1 " = ISO Workshop 4.4
" KLiteCodecPack_is1 " = K-Lite Codec Pack 10.1.5 Full
" Malwarebytes Anti-Malware_is1 " = Malwarebytes Anti-Malware wersja 2.0.2.1012
" Microsoft .NET Framework 3.5 SP1 " = Microsoft .NET Framework 3.5 SP1
" Microsoft .NET Framework 4 Client Profile " = Microsoft .NET Framework 4 Client Profile
" Microsoft .NET Framework 4 Client Profile PLK Language Pack " = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile
" Microsoft .NET Framework 4 Extended " = Microsoft .NET Framework 4 Extended
" Microsoft .NET Framework 4 Extended PLK Language Pack " = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended
" MSCompPackV1 " = Microsoft Compression Client Pack 1.0 for Windows XP
" Orbitron_is1 " = Orbitron - Satellite Tracking System
" Stellarium_is1 " = Stellarium 0.12.4
" Virtual Pool Hall " = Virtual Pool Hall
" Windows Media Format Runtime " = Windows Media Format 11 runtime
" Windows Media Player " = Windows Media Player 11
" Windows XP Service Pack " = Windows XP Service Pack 3
" WinRAR archiver " = WinRAR 5.00 (32-bit)
" WMFDist11 " = Windows Media Format 11 runtime
" wmp11 " = Windows Media Player 11
" Wudf01000 " = Microsoft User-Mode Driver Framework Feature Pack 1.0
[color=#E56717]========== Last 20 Event Log Errors ==========[/color]
[ Application Events ]
Error - 2014-01-26 14:40:08 | Computer Name = KOMP-NA-GORZE | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd stellarium.exe, wersja 0.0.0.0, moduł powodujący
błąd qtcore4.dll, wersja 4.8.5.0, adres błędu 0x00112ac5.
Error - 2014-02-01 08:41:18 | Computer Name = KOMP-NA-GORZE | Source = Chrome | ID = 1
Description =
Error - 2014-02-26 05:25:53 | Computer Name = KOMP-NA-GORZE | Source = Chrome | ID = 1
Description =
Error - 2014-03-13 04:12:32 | Computer Name = KOMP-NA-GORZE | Source = Chrome | ID = 1
Description =
Error - 2014-03-26 16:01:37 | Computer Name = KOMP-NA-GORZE | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca ALLUpdate.exe, wersja 5.5.0.0, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.
Error - 2014-04-12 13:00:46 | Computer Name = KOMP-NA-GORZE | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd allplayer.exe, wersja 5.7.0.0, moduł powodujący
błąd allplayer.exe, wersja 5.7.0.0, adres błędu 0x00005c30.
Error - 2014-04-12 13:00:51 | Computer Name = KOMP-NA-GORZE | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd allplayer.exe, wersja 5.7.0.0, moduł powodujący
błąd allplayer.exe, wersja 5.7.0.0, adres błędu 0x00059780.
Error - 2014-04-12 13:00:54 | Computer Name = KOMP-NA-GORZE | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd allplayer.exe, wersja 5.7.0.0, moduł powodujący
błąd allplayer.exe, wersja 5.7.0.0, adres błędu 0x00059780.
Error - 2014-05-27 12:29:19 | Computer Name = KOMP-NA-GORZE | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca wmplayer.exe, wersja 11.0.5721.5145, moduł
zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.
Error - 2014-05-30 03:29:28 | Computer Name = KOMP-NA-GORZE | Source = Chrome | ID = 1
Description =
[ System Events ]
Error - 2014-04-22 12:04:10 | Computer Name = KOMP-NA-GORZE | Source = System Error | ID = 1003
Description = Kod błędu 00000024, parametr 1 001902fe, parametr 2 af7655c0, parametr
3 af7652bc, parametr 4 b7e6aee7.
Error - 2014-05-19 13:11:52 | Computer Name = KOMP-NA-GORZE | Source = Service Control Manager | ID = 7011
Description = Limit czasu (30000 milisekund) podczas oczekiwania na odpowiedź transakcji
z usługi Netman.
Error - 2014-05-19 13:11:52 | Computer Name = KOMP-NA-GORZE | Source = Dhcp | ID = 1000
Description = Komputer utracił połączenie dla swojego adresu IP 192.168.1.24 na
karcie sieciowej o adresie sieciowym 00241DDB6F81.
Error - 2014-05-21 16:10:49 | Computer Name = KOMP-NA-GORZE | Source = Dhcp | ID = 1000
Description = Komputer utracił połączenie dla swojego adresu IP 192.168.1.24 na
karcie sieciowej o adresie sieciowym 00241DDB6F81.
Error - 2014-05-27 12:06:45 | Computer Name = KOMP-NA-GORZE | Source = WPDMTPDriver | ID = 80836
Description = MTP WPD Driver has failed to start. Error 0x8007048f.
Error - 2014-05-28 15:35:40 | Computer Name = KOMP-NA-GORZE | Source = Dhcp | ID = 1000
Description = Komputer utracił połączenie dla swojego adresu IP 192.168.1.24 na
karcie sieciowej o adresie sieciowym 00241DDB6F81.
Error - 2014-05-28 15:35:42 | Computer Name = KOMP-NA-GORZE | Source = Service Control Manager | ID = 7011
Description = Limit czasu (30000 milisekund) podczas oczekiwania na odpowiedź transakcji
z usługi AntiVirSchedulerService.
Error - 2014-05-28 16:28:43 | Computer Name = KOMP-NA-GORZE | Source = WPDMTPDriver | ID = 80836
Description = MTP WPD Driver has failed to start. Error 0x8007048f.
Error - 2014-07-03 13:00:45 | Computer Name = KOMP-NA-GORZE | Source = sr | ID = 1
Description = Filtr Przywracania systemu napotkał nieoczekiwany błąd '0xC0000001'
podczas przetwarzania pliku '' w woluminie 'HarddiskVolume1'. W rezultacie zostało
zatrzymane monitorowanie woluminu.
Error - 2014-07-03 13:01:30 | Computer Name = KOMP-NA-GORZE | Source = Service Control Manager | ID = 7011
Description = Limit czasu (30000 milisekund) podczas oczekiwania na odpowiedź transakcji
z usługi MBAMService.
& lt; End of report & gt;