Показано с 1 по 12 из 12.

Вирус dfh:host corrupted и другая зараза (заявка № 181126)

  1. #1
    Junior Member (OID) Репутация
    Регистрация
    03.04.2015
    Сообщений
    9
    Вес репутации
    11

    Thumbs up Вирус dfh:host corrupted и другая зараза

    Пациент: Ноутбук HP pavilion 15-n035er;
    ОС: Windows 7Mаксимальная x64;
    Симптомы: Странное поведение компьютера при роботе в интернете, убитый антивирус AVG;
    Попытки лечения:все антивирусные сайты не открываются, пока не поменять файлы HOST с рабочей системы (это надо делать после каждой перезагрузки). Утилиты Kaspersky Virus Removal Tool или dr web curei сканируют Вирус как dfh:host corrupted, после лечения пишет что все вылечено и если запустить повторное сканирование БЕЗ ПЕРЕЗАГРУЗКИ вирусов не находит,если перегрузить сканирование снова определяет этот вирус. Нет возможности установить антивирусное ПО выбивает разные ошибки.
    PS. Жду Ваших советов по уничтожению этой гадости, заранее спасибо!
    Вложения Вложения

  2. Будь в курсе!
    Реклама на VirusInfo

    Надоело быть жертвой? Стань профи по информационной безопасности, получай самую свежую информацию об угрозах и средствах защиты от ведущего российского аналитического центра Anti-Malware.ru:

    Anti-Malware Telegram
     

  3. #2
    Cyber Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Аватар для Info_bot
    Регистрация
    11.05.2011
    Сообщений
    2,465
    Вес репутации
    343
    Уважаемый(ая) Дмитрий Соловьёв, спасибо за обращение на наш форум!

    Удаление вирусов - абсолютно бесплатная услуга на VirusInfo.Info. Хелперы в самое ближайшее время ответят на Ваш запрос. Для оказания помощи необходимо предоставить логи сканирования утилитами АВЗ и HiJackThis, подробнее можно прочитать в правилах оформления запроса о помощи.

    Если наш сайт окажется полезен Вам и у Вас будет такая возможность - пожалуйста поддержите проект.

  4. #3
    Невымерший Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Аватар для thyrex
    Регистрация
    07.03.2009
    Адрес
    Soligorsk, Belarus
    Сообщений
    96,559
    Вес репутации
    3022
    Выполните скрипт в AVZ
    Код:
    begin
    ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
    ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
    if not IsWOW64
     then
      begin
       SearchRootkit(true, true);
       SetAVZGuardStatus(True);
      end;
    QuarantineFile('C:\PROGRA~3\LOCALS~1\Temp\msawciowv.exe','');
     DeleteService('ksapi64');
     DeleteService('QMUdisk');
     DeleteService('TS888x64');
     DeleteFile('ksapi64.sys','32');
     DeleteFile('QMUdisk.sys','32');
     DeleteFile('C:\Windows\system32\Drivers\TS888x64.sys','32');
     DeleteFile('C:\PROGRA~3\LOCALS~1\Temp\msawciowv.exe','32');
     RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run','27882');
    BC_ImportAll;
    ExecuteSysClean;
    BC_Activate;
    RebootWindows(false);
    end.
    Компьютер перезагрузится.

    Пришлите карантин согласно Приложения 2 правил по красной ссылке Прислать запрошенный карантин над первым сообщением темы.

    Сделайте новые логи по правилам

    Скачайте Farbar Recovery Scan Tool и сохраните на Рабочем столе.

    Примечание: необходимо выбрать версию, совместимую с Вашей операционной системой. Если Вы не уверены, какая версия подойдет для Вашей системы, скачайте обе и попробуйте запустить. Только одна из них запустится на Вашей системе.
    • Запустите программу двойным щелчком. Когда программа запустится, нажмите Yes для соглашения с предупреждением.
    • Убедитесь, что в окне Optional Scan отмечены "List BCD" и "Driver MD5".
    • Нажмите кнопку Scan.
    • После окончания сканирования будет создан отчет (FRST.txt) в той же папке, откуда была запущена программа. Пожалуйста, прикрепите отчет в следующем сообщении.
    • Если программа была запущена в первый раз, будет создан отчет (Addition.txt). Пожалуйста, прикрепите его в следующем сообщении.
    Microsoft MVP 2012-2016 Consumer Security
    Microsoft MVP 2016 Reconnect

  5. #4
    Junior Member (OID) Репутация
    Регистрация
    03.04.2015
    Сообщений
    9
    Вес репутации
    11
    Папка Quarantine - пуста. Поиск в Total Commander файла msawciowv.exe не принес результата. Прикрепляю файлы из сканера Farbar Recovery Scan Tool. После перезагрузки пришлось снова менять HOST файл чтобы скачать сканер.
    Вложения Вложения

  6. #5
    Невымерший Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Аватар для thyrex
    Регистрация
    07.03.2009
    Адрес
    Soligorsk, Belarus
    Сообщений
    96,559
    Вес репутации
    3022
    Скопируйте приведенный ниже текст в Блокнот и сохраните файл как fixlist.txt в ту же папку, откуда была запущена утилита Farbar Recovery Scan Tool:
    Код:
    CreateRestorePoint:
    HKLM\Software\Policies\Microsoft\Windows NT\SystemRestore: [DisableSR/DisableConfig]  <===== ATTENTION
    IFEO\Adaware_Installer.exe: [Debugger] msiexec.exe
    IFEO\autoruns.exe: [Debugger] msiexec.exe
    IFEO\autorunsc.exe: [Debugger] msiexec.exe
    IFEO\avast_free_antivirus_setup_online.exe: [Debugger] msiexec.exe
    IFEO\avast_internet_security_setup.exe: [Debugger] msiexec.exe
    IFEO\avast_internet_security_setup_online.exe: [Debugger] msiexec.exe
    IFEO\avast_premier_antivirus_setup_online.exe: [Debugger] msiexec.exe
    IFEO\avira_family_protection_suite_ru.exe: [Debugger] msiexec.exe
    IFEO\avira_ultimate_protection_suite_ru.exe: [Debugger] msiexec.exe
    IFEO\BavPro_Setup_Mini_GL.exe: [Debugger] msiexec.exe
    IFEO\bitdefender_tsecurity.exe: [Debugger] msiexec.exe
    IFEO\BullGuardDownloaderBPP.exe: [Debugger] msiexec.exe
    IFEO\cispremium_installer.exe: [Debugger] msiexec.exe
    IFEO\ClamAVSetup.exe: [Debugger] msiexec.exe
    IFEO\cureit.exe: [Debugger] msiexec.exe
    IFEO\drweb-900-win-space.exe: [Debugger] msiexec.exe
    IFEO\drweb-900-win.exe: [Debugger] msiexec.exe
    IFEO\EmsisoftEmergencyKit.exe: [Debugger] msiexec.exe
    IFEO\EmsisoftInternetSecuritySetup.exe: [Debugger] msiexec.exe
    IFEO\ess_trial32_rus.exe: [Debugger] msiexec.exe
    IFEO\F-SecureNetworkInstallerUpg.exe: [Debugger] msiexec.exe
    IFEO\F-SecureNetworkInstaller_IS-ESTORE-TRIAL-GLOBAL_.exe: [Debugger] msiexec.exe
    IFEO\HijackThis.exe: [Debugger] msiexec.exe
    IFEO\HousecallLauncher.exe: [Debugger] msiexec.exe
    IFEO\K7UltimateSecurity_installer.exe: [Debugger] msiexec.exe
    IFEO\McAfeeSetup.exe: [Debugger] msiexec.exe
    IFEO\md_setup_en.exe: [Debugger] msiexec.exe
    IFEO\OnlineArmorSetup.exe: [Debugger] msiexec.exe
    IFEO\OutpostSecuritySuiteProInstall.exe: [Debugger] msiexec.exe
    IFEO\OutpostSecuritySuiteProInstall_x64.exe: [Debugger] msiexec.exe
    IFEO\PadvishAntivirusFree.exe: [Debugger] msiexec.exe
    IFEO\PandaCloudAntivirus.exe: [Debugger] msiexec.exe
    IFEO\ProcessHacker.exe: [Debugger] msiexec.exe
    IFEO\procexp.exe: [Debugger] msiexec.exe
    IFEO\PSafeAntivirusSetup.exe: [Debugger] msiexec.exe
    IFEO\registry-life-setup.exe: [Debugger] msiexec.exe
    IFEO\SandboxieInstall.exe: [Debugger] msiexec.exe
    IFEO\SecurityScan_Release.exe: [Debugger] msiexec.exe
    IFEO\setup-vipre-internet-security-en-us-trial.exe: [Debugger] msiexec.exe
    IFEO\SoftonicDownloader_for_panda-antivirus-pro.exe: [Debugger] msiexec.exe
    IFEO\SpyShelter.exe: [Debugger] msiexec.exe
    IFEO\stop-sign_install.exe: [Debugger] msiexec.exe
    IFEO\TrojanHunterSetup.exe: [Debugger] msiexec.exe
    IFEO\UnThreatProSetup.exe: [Debugger] msiexec.exe
    IFEO\Vba32.Vista.exe: [Debugger] msiexec.exe
    IFEO\Wireshark.exe: [Debugger] msiexec.exe
    ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  No File
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.duba.com/?f=unchie
    OPR Extension: (Универсальный перевод для Chrome) - C:\Users\user\AppData\Roaming\Opera Software\Opera Stable\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe [2015-03-24]
    Locked "360AntiHacker" service was unlocked successfully. <===== ATTENTION
    Locked "360AvFlt" service was unlocked successfully. <===== ATTENTION
    Locked "360Box" service was unlocked successfully. <===== ATTENTION
    Locked "360Box64" service was unlocked successfully. <===== ATTENTION
    Locked "360Camera" service was unlocked successfully. <===== ATTENTION
    Locked "360fsflt" service was unlocked successfully. <===== ATTENTION
    Locked "360rp" service was unlocked successfully. <===== ATTENTION
    Locked "360SelfProtection" service was unlocked successfully. <===== ATTENTION
    Locked "a2acc" service was unlocked successfully. <===== ATTENTION
    Locked "a2AntiMalware" service was unlocked successfully. <===== ATTENTION
    Locked "A2DDA" service was unlocked successfully. <===== ATTENTION
    Locked "a2injectiondriver" service was unlocked successfully. <===== ATTENTION
    Locked "a2util" service was unlocked successfully. <===== ATTENTION
    Locked "AAVScan" service was unlocked successfully. <===== ATTENTION
    Locked "AAVService" service was unlocked successfully. <===== ATTENTION
    Locked "ABConfSV" service was unlocked successfully. <===== ATTENTION
    Locked "ABFLT" service was unlocked successfully. <===== ATTENTION
    Locked "ABMainSV" service was unlocked successfully. <===== ATTENTION
    Locked "ABndis" service was unlocked successfully. <===== ATTENTION
    Locked "ABndisMP" service was unlocked successfully. <===== ATTENTION
    Locked "ABWFP" service was unlocked successfully. <===== ATTENTION
    Locked "acssrv" service was unlocked successfully. <===== ATTENTION
    Locked "AFW" service was unlocked successfully. <===== ATTENTION
    Locked "afwcore" service was unlocked successfully. <===== ATTENTION
    Locked "AhnActNt" service was unlocked successfully. <===== ATTENTION
    Locked "AhnFlt2K" service was unlocked successfully. <===== ATTENTION
    Locked "AhnRec2K" service was unlocked successfully. <===== ATTENTION
    Locked "AhnRghNt" service was unlocked successfully. <===== ATTENTION
    Locked "AhnSZE" service was unlocked successfully. <===== ATTENTION
    Locked "ALE_NF" service was unlocked successfully. <===== ATTENTION
    Locked "AmFSM" service was unlocked successfully. <===== ATTENTION
    Locked "Amnpardaz Filter" service was unlocked successfully. <===== ATTENTION
    Locked "AMonLWLH" service was unlocked successfully. <===== ATTENTION
    Locked "AMonTDLH" service was unlocked successfully. <===== ATTENTION
    Locked "Amsp" service was unlocked successfully. <===== ATTENTION
    Locked "AntiVirMailService" service was unlocked successfully. <===== ATTENTION
    Locked "AntiVirSchedulerService" service was unlocked successfully. <===== ATTENTION
    Locked "AntiVirService" service was unlocked successfully. <===== ATTENTION
    Locked "AntiVirWebService" service was unlocked successfully. <===== ATTENTION
    Locked "APPFLT" service was unlocked successfully. <===== ATTENTION
    Locked "Application Updater" service was unlocked successfully. <===== ATTENTION
    Locked "apspDriver" service was unlocked successfully. <===== ATTENTION
    Locked "ArcaRemoteService" service was unlocked successfully. <===== ATTENTION
    Locked "arcawfp" service was unlocked successfully. <===== ATTENTION
    Locked "aswHwid" service was unlocked successfully. <===== ATTENTION
    Locked "aswMonFlt" service was unlocked successfully. <===== ATTENTION
    Locked "aswNdis" service was unlocked successfully. <===== ATTENTION
    Locked "aswNdis2" service was unlocked successfully. <===== ATTENTION
    Locked "aswNdisFlt" service was unlocked successfully. <===== ATTENTION
    Locked "aswRdr" service was unlocked successfully. <===== ATTENTION
    Locked "aswRvrt" service was unlocked successfully. <===== ATTENTION
    Locked "aswSnx" service was unlocked successfully. <===== ATTENTION
    Locked "aswSP" service was unlocked successfully. <===== ATTENTION
    Locked "aswStm" service was unlocked successfully. <===== ATTENTION
    Locked "aswTdi" service was unlocked successfully. <===== ATTENTION
    Locked "aswUpdSv" service was unlocked successfully. <===== ATTENTION
    Locked "aswVmm" service was unlocked successfully. <===== ATTENTION
    Locked "ASZFltNt" service was unlocked successfully. <===== ATTENTION
    Locked "ATamptNt_V3IS80" service was unlocked successfully. <===== ATTENTION
    Locked "avasdmft" service was unlocked successfully. <===== ATTENTION
    Locked "avast! Antivirus" service was unlocked successfully. <===== ATTENTION
    Locked "avast! Firewall" service was unlocked successfully. <===== ATTENTION
    Locked "avast! Mail Scanner" service was unlocked successfully. <===== ATTENTION
    Locked "avast! Web Scanner" service was unlocked successfully. <===== ATTENTION
    Locked "avas_service" service was unlocked successfully. <===== ATTENTION
    Locked "AVBackup" service was unlocked successfully. <===== ATTENTION
    Locked "avc3" service was unlocked successfully. <===== ATTENTION
    Locked "avchv" service was unlocked successfully. <===== ATTENTION
    Locked "avckf" service was unlocked successfully. <===== ATTENTION
    Locked "Avg" service was unlocked successfully. <===== ATTENTION
    Locked "Avgboota" service was unlocked successfully. <===== ATTENTION
    Locked "Avgbootx" service was unlocked successfully. <===== ATTENTION
    Locked "Avgdiska" service was unlocked successfully. <===== ATTENTION
    Locked "Avgdiskx" service was unlocked successfully. <===== ATTENTION
    Locked "Avgfwdx" service was unlocked successfully. <===== ATTENTION
    Locked "Avgfwfd" service was unlocked successfully. <===== ATTENTION
    Locked "avgfws" service was unlocked successfully. <===== ATTENTION
    Locked "AVGIDSAgent" service was unlocked successfully. <===== ATTENTION
    Locked "AVGIDSDriver" service was unlocked successfully. <===== ATTENTION
    Locked "AVGIDSDriverl" service was unlocked successfully. <===== ATTENTION
    Locked "AVGIDSHA" service was unlocked successfully. <===== ATTENTION
    Locked "AVGIDSHX" service was unlocked successfully. <===== ATTENTION
    Locked "AVGIDSShim" service was unlocked successfully. <===== ATTENTION
    Locked "Avgldx64" service was unlocked successfully. <===== ATTENTION
    Locked "Avgldx86" service was unlocked successfully. <===== ATTENTION
    Locked "Avgloga" service was unlocked successfully. <===== ATTENTION
    Locked "Avglogx" service was unlocked successfully. <===== ATTENTION
    Locked "Avgmfx64" service was unlocked successfully. <===== ATTENTION
    Locked "Avgmfx86" service was unlocked successfully. <===== ATTENTION
    Locked "avgntflt" service was unlocked successfully. <===== ATTENTION
    Locked "Avgrkx64" service was unlocked successfully. <===== ATTENTION
    Locked "Avgrkx86" service was unlocked successfully. <===== ATTENTION
    Locked "Avgtdia" service was unlocked successfully. <===== ATTENTION
    Locked "Avgtdix" service was unlocked successfully. <===== ATTENTION
    Locked "avgwd" service was unlocked successfully. <===== ATTENTION
    Locked "Avgwfpa" service was unlocked successfully. <===== ATTENTION
    Locked "Avgwfpx" service was unlocked successfully. <===== ATTENTION
    Locked "avipbb" service was unlocked successfully. <===== ATTENTION
    Locked "avkmgr" service was unlocked successfully. <===== ATTENTION
    Locked "AVKProxy" service was unlocked successfully. <===== ATTENTION
    Locked "AVKService" service was unlocked successfully. <===== ATTENTION
    Locked "AVKWCtl" service was unlocked successfully. <===== ATTENTION
    Locked "avnetflt" service was unlocked successfully. <===== ATTENTION
    Locked "AVP" service was unlocked successfully. <===== ATTENTION
    Locked "AVP15.0.0" service was unlocked successfully. <===== ATTENTION
    Locked "AVTasks2" service was unlocked successfully. <===== ATTENTION
    Locked "AVUpdate" service was unlocked successfully. <===== ATTENTION
    Locked "BAPIDRV" service was unlocked successfully. <===== ATTENTION
    Locked "BAVSvc" service was unlocked successfully. <===== ATTENTION
    Locked "Bcfilter" service was unlocked successfully. <===== ATTENTION
    Locked "BcfilterMP" service was unlocked successfully. <===== ATTENTION
    Locked "bcfsrm" service was unlocked successfully. <===== ATTENTION
    Locked "bcftdi" service was unlocked successfully. <===== ATTENTION
    Locked "bc_hash_f" service was unlocked successfully. <===== ATTENTION
    Locked "bc_ip_f" service was unlocked successfully. <===== ATTENTION
    Locked "bc_ngn" service was unlocked successfully. <===== ATTENTION
    Locked "bc_pat_f" service was unlocked successfully. <===== ATTENTION
    Locked "bc_prt_f" service was unlocked successfully. <===== ATTENTION
    Locked "bc_tdi_f" service was unlocked successfully. <===== ATTENTION
    Locked "BdAgent" service was unlocked successfully. <===== ATTENTION
    Locked "BdApiUtil" service was unlocked successfully. <===== ATTENTION
    Locked "BdCameraProtect" service was unlocked successfully. <===== ATTENTION
    Locked "BdDesktopParental" service was unlocked successfully. <===== ATTENTION
    Locked "bdelam" service was unlocked successfully. <===== ATTENTION
    Locked "Bdfndisf" service was unlocked successfully. <===== ATTENTION
    Locked "bdfsfltr" service was unlocked successfully. <===== ATTENTION
    Locked "bdftdif" service was unlocked successfully. <===== ATTENTION
    Locked "bdfwfpf" service was unlocked successfully. <===== ATTENTION
    Locked "bdfwfpf_pc" service was unlocked successfully. <===== ATTENTION
    Locked "BdNet" service was unlocked successfully. <===== ATTENTION
    Locked "BDSandBox" service was unlocked successfully. <===== ATTENTION
    Locked "bdselfpr" service was unlocked successfully. <===== ATTENTION
    Locked "bdsflt" service was unlocked successfully. <===== ATTENTION
    Locked "bdsnm" service was unlocked successfully. <===== ATTENTION
    Locked "BdSpy" service was unlocked successfully. <===== ATTENTION
    Locked "BDVEDISK" service was unlocked successfully. <===== ATTENTION
    Locked "Behavior Detection System" service was unlocked successfully. <===== ATTENTION
    Locked "Bfilter" service was unlocked successfully. <===== ATTENTION
    Locked "Bfmon" service was unlocked successfully. <===== ATTENTION
    Locked "Bhbase" service was unlocked successfully. <===== ATTENTION
    Locked "BHDrvx64" service was unlocked successfully. <===== ATTENTION
    Locked "BHDrvx86" service was unlocked successfully. <===== ATTENTION
    Locked "BHipsSvc" service was unlocked successfully. <===== ATTENTION
    Locked "Bnbase" service was unlocked successfully. <===== ATTENTION
    Locked "Bndef" service was unlocked successfully. <===== ATTENTION
    Locked "BNmon" service was unlocked successfully. <===== ATTENTION
    Locked "Bprotect" service was unlocked successfully. <===== ATTENTION
    Locked "BprotectEx" service was unlocked successfully. <===== ATTENTION
    Locked "Browser Defender Update Service" service was unlocked successfully. <===== ATTENTION
    Locked "BsBackup" service was unlocked successfully. <===== ATTENTION
    Locked "BsBhvScan" service was unlocked successfully. <===== ATTENTION
    Locked "BsFileScan" service was unlocked successfully. <===== ATTENTION
    Locked "BsFire" service was unlocked successfully. <===== ATTENTION
    Locked "BsMailProxy" service was unlocked successfully. <===== ATTENTION
    Locked "BsMain" service was unlocked successfully. <===== ATTENTION
    Locked "BsScanner" service was unlocked successfully. <===== ATTENTION
    Locked "BsUpdate" service was unlocked successfully. <===== ATTENTION
    Locked "CAAMSvc" service was unlocked successfully. <===== ATTENTION
    Locked "CaCCProvSP" service was unlocked successfully. <===== ATTENTION
    Locked "CAISafe" service was unlocked successfully. <===== ATTENTION
    Locked "catflt" service was unlocked successfully. <===== ATTENTION
    Locked "ccSchedulerSVC" service was unlocked successfully. <===== ATTENTION
    Locked "ccSettings_{3AC20362-8119-4C85-8CAC-8FC00AFA6B91}" service was unlocked successfully. <===== ATTENTION
    Locked "ccSet_N360" service was unlocked successfully. <===== ATTENTION
    Locked "ccSet_NIS" service was unlocked successfully. <===== ATTENTION
    Locked "CdmDrvNt" service was unlocked successfully. <===== ATTENTION
    Locked "cfwids" service was unlocked successfully. <===== ATTENTION
    Locked "cleanhlp" service was unlocked successfully. <===== ATTENTION
    Locked "cmdAgent" service was unlocked successfully. <===== ATTENTION
    Locked "cmderd" service was unlocked successfully. <===== ATTENTION
    Locked "cmdGuard" service was unlocked successfully. <===== ATTENTION
    Locked "cmdHlp" service was unlocked successfully. <===== ATTENTION
    Locked "cmdvirth" service was unlocked successfully. <===== ATTENTION
    Locked "ComFiltr" service was unlocked successfully. <===== ATTENTION
    Locked "Core Mail Protection" service was unlocked successfully. <===== ATTENTION
    Locked "Core Scanning Server" service was unlocked successfully. <===== ATTENTION
    Locked "Core Scanning ServerEx" service was unlocked successfully. <===== ATTENTION
    Locked "CSCrySec" service was unlocked successfully. <===== ATTENTION
    Locked "CSObjectsSrv" service was unlocked successfully. <===== ATTENTION
    Locked "CSVirtualDiskDrv" service was unlocked successfully. <===== ATTENTION
    Locked "Double Anti-Spy Task Manager" service was unlocked successfully. <===== ATTENTION
    Locked "DrWebAVService" service was unlocked successfully. <===== ATTENTION
    Locked "DrWebEngine" service was unlocked successfully. <===== ATTENTION
    Locked "DrWebFwSvc" service was unlocked successfully. <===== ATTENTION
    Locked "DrWebLwf" service was unlocked successfully. <===== ATTENTION
    Locked "DrWebNetFilter" service was unlocked successfully. <===== ATTENTION
    Locked "DrWebWfp" service was unlocked successfully. <===== ATTENTION
    Locked "DSAFLT" service was unlocked successfully. <===== ATTENTION
    Locked "dsio" service was unlocked successfully. <===== ATTENTION
    Locked "DwProt" service was unlocked successfully. <===== ATTENTION
    Locked "eac_notifysvc" service was unlocked successfully. <===== ATTENTION
    Locked "eac_productsvc" service was unlocked successfully. <===== ATTENTION
    Locked "eamon" service was unlocked successfully. <===== ATTENTION
    Locked "eamonm" service was unlocked successfully. <===== ATTENTION
    Locked "econceal" service was unlocked successfully. <===== ATTENTION
    Locked "econcealMP" service was unlocked successfully. <===== ATTENTION
    Locked "EconService" service was unlocked successfully. <===== ATTENTION
    Locked "edevmon" service was unlocked successfully. <===== ATTENTION
    Locked "EfiMon" service was unlocked successfully. <===== ATTENTION
    Locked "ehdrv" service was unlocked successfully. <===== ATTENTION
    Locked "EhttpSrv" service was unlocked successfully. <===== ATTENTION
    Locked "ekrn" service was unlocked successfully. <===== ATTENTION
    Locked "eLoggerSvc6" service was unlocked successfully. <===== ATTENTION
    Locked "EMLSS" service was unlocked successfully. <===== ATTENTION
    Locked "EncDisk" service was unlocked successfully. <===== ATTENTION
    Locked "epfw" service was unlocked successfully. <===== ATTENTION
    Locked "EpfwLWF" service was unlocked successfully. <===== ATTENTION
    Locked "Epfwndis" service was unlocked successfully. <===== ATTENTION
    Locked "epfwtdi" service was unlocked successfully. <===== ATTENTION
    Locked "epfwwfp" service was unlocked successfully. <===== ATTENTION
    Locked "epfwwfpr" service was unlocked successfully. <===== ATTENTION
    Locked "eScan Monitor Service" service was unlocked successfully. <===== ATTENTION
    Locked "eScan-trayicos" service was unlocked successfully. <===== ATTENTION
    Locked "F-Secure Gatekeeper" service was unlocked successfully. <===== ATTENTION
    Locked "F-Secure HIPS" service was unlocked successfully. <===== ATTENTION
    Locked "ffsmon" service was unlocked successfully. <===== ATTENTION
    Locked "fildds" service was unlocked successfully. <===== ATTENTION
    Locked "FileMonitor" service was unlocked successfully. <===== ATTENTION
    Locked "filmfd" service was unlocked successfully. <===== ATTENTION
    Locked "filppd" service was unlocked successfully. <===== ATTENTION
    Locked "FNETMON" service was unlocked successfully. <===== ATTENTION
    Locked "FPAVServer" service was unlocked successfully. <===== ATTENTION
    Locked "FPAV_RTP" service was unlocked successfully. <===== ATTENTION
    Locked "fsbts" service was unlocked successfully. <===== ATTENTION
    Locked "fshoster" service was unlocked successfully. <===== ATTENTION
    Locked "FSMA" service was unlocked successfully. <===== ATTENTION
    Locked "fsni" service was unlocked successfully. <===== ATTENTION
    Locked "FSORSPClient" service was unlocked successfully. <===== ATTENTION
    Locked "fsvista" service was unlocked successfully. <===== ATTENTION
    Locked "FWCore" service was unlocked successfully. <===== ATTENTION
    Locked "FWService" service was unlocked successfully. <===== ATTENTION
    Locked "GDBackupSvc" service was unlocked successfully. <===== ATTENTION
    Locked "GDBehave" service was unlocked successfully. <===== ATTENTION
    Locked "gddcd" service was unlocked successfully. <===== ATTENTION
    Locked "gddcv" service was unlocked successfully. <===== ATTENTION
    Locked "GDFwSvc" service was unlocked successfully. <===== ATTENTION
    Locked "GDMnIcpt" service was unlocked successfully. <===== ATTENTION
    Locked "GDNdisIc" service was unlocked successfully. <===== ATTENTION
    Locked "GDPkIcpt" service was unlocked successfully. <===== ATTENTION
    Locked "GDScan" service was unlocked successfully. <===== ATTENTION
    Locked "GDTdiInterceptor" service was unlocked successfully. <===== ATTENTION
    Locked "GDTunerSvc" service was unlocked successfully. <===== ATTENTION
    Locked "gdwfpcd" service was unlocked successfully. <===== ATTENTION
    Locked "gfiark" service was unlocked successfully. <===== ATTENTION
    Locked "gfiutil" service was unlocked successfully. <===== ATTENTION
    Locked "gfi_lanss11_attservice" service was unlocked successfully. <===== ATTENTION
    Locked "ggc" service was unlocked successfully. <===== ATTENTION
    Locked "GLogin" service was unlocked successfully. <===== ATTENTION
    Locked "gozer" service was unlocked successfully. <===== ATTENTION
    Locked "GuardX" service was unlocked successfully. <===== ATTENTION
    Locked "gzflt" service was unlocked successfully. <===== ATTENTION
    Locked "HipShieldK" service was unlocked successfully. <===== ATTENTION
    Locked "HomeNetSvc" service was unlocked successfully. <===== ATTENTION
    Locked "HookCentre" service was unlocked successfully. <===== ATTENTION
    Locked "HookPort" service was unlocked successfully. <===== ATTENTION
    Locked "hooksys" service was unlocked successfully. <===== ATTENTION
    Locked "HookTdi" service was unlocked successfully. <===== ATTENTION
    Locked "HyperVM" service was unlocked successfully. <===== ATTENTION
    Locked "IDriverT" service was unlocked successfully. <===== ATTENTION
    Locked "IDSFLT" service was unlocked successfully. <===== ATTENTION
    Locked "IDSVia64" service was unlocked successfully. <===== ATTENTION
    Locked "IDSVix86" service was unlocked successfully. <===== ATTENTION
    Locked "IMFservice" service was unlocked successfully. <===== ATTENTION
    Locked "inspect" service was unlocked successfully. <===== ATTENTION
    Locked "ISFWEnt" service was unlocked successfully. <===== ATTENTION
    Locked "ISIPSEnt" service was unlocked successfully. <===== ATTENTION
    Locked "ISPIBEnt" service was unlocked successfully. <===== ATTENTION
    Locked "ISPrxEnt" service was unlocked successfully. <===== ATTENTION
    Locked "Jetico Personal Firewall server" service was unlocked successfully. <===== ATTENTION
    Locked "K7CrvSvc" service was unlocked successfully. <===== ATTENTION
    Locked "K7EmlPxy" service was unlocked successfully. <===== ATTENTION
    Locked "K7FWFilt" service was unlocked successfully. <===== ATTENTION
    Locked "K7FWHlpr" service was unlocked successfully. <===== ATTENTION
    Locked "K7FWSrvc" service was unlocked successfully. <===== ATTENTION
    Locked "K7PSSrvc" service was unlocked successfully. <===== ATTENTION
    Locked "K7RTScan" service was unlocked successfully. <===== ATTENTION
    Locked "K7Sentry" service was unlocked successfully. <===== ATTENTION
    Locked "K7SpmSrc" service was unlocked successfully. <===== ATTENTION
    Locked "K7TdiHlp" service was unlocked successfully. <===== ATTENTION
    Locked "K7TSMngr" service was unlocked successfully. <===== ATTENTION
    Locked "KerioMailServer" service was unlocked successfully. <===== ATTENTION
    Locked "khelperDriver" service was unlocked successfully. <===== ATTENTION
    Locked "kl1" service was unlocked successfully. <===== ATTENTION
    Locked "kldisk" service was unlocked successfully. <===== ATTENTION
    Locked "klelam" service was unlocked successfully. <===== ATTENTION
    Locked "klflt" service was unlocked successfully. <===== ATTENTION
    Locked "klhk" service was unlocked successfully. <===== ATTENTION
    Locked "KLIF" service was unlocked successfully. <===== ATTENTION
    Locked "KLIM6" service was unlocked successfully. <===== ATTENTION
    Locked "klpd" service was unlocked successfully. <===== ATTENTION
    Locked "kltdi" service was unlocked successfully. <===== ATTENTION
    Locked "klwfp" service was unlocked successfully. <===== ATTENTION
    Locked "klwtp" service was unlocked successfully. <===== ATTENTION
    Locked "KmxAgent" service was unlocked successfully. <===== ATTENTION
    Locked "KmxAMRT" service was unlocked successfully. <===== ATTENTION
    Locked "KmxCF" service was unlocked successfully. <===== ATTENTION
    Locked "KmxCfg" service was unlocked successfully. <===== ATTENTION
    Locked "KmxFile" service was unlocked successfully. <===== ATTENTION
    Locked "KmxFilter" service was unlocked successfully. <===== ATTENTION
    Locked "KmxFw" service was unlocked successfully. <===== ATTENTION
    Locked "KmxSbx" service was unlocked successfully. <===== ATTENTION
    Locked "KmxStart" service was unlocked successfully. <===== ATTENTION
    Locked "kneps" service was unlocked successfully. <===== ATTENTION
    Locked "kvnet" service was unlocked successfully. <===== ATTENTION
    Locked "kwflower" service was unlocked successfully. <===== ATTENTION
    Locked "kwfupper" service was unlocked successfully. <===== ATTENTION
    Locked "LavasoftAdAwareService11" service was unlocked successfully. <===== ATTENTION
    Locked "llio" service was unlocked successfully. <===== ATTENTION
    Locked "MBAMProtector" service was unlocked successfully. <===== ATTENTION
    Locked "MBAMScheduler" service was unlocked successfully. <===== ATTENTION
    Locked "MBAMService" service was unlocked successfully. <===== ATTENTION
    Locked "McAfee SiteAdvisor Service" service was unlocked successfully. <===== ATTENTION
    Locked "McAPExe" service was unlocked successfully. <===== ATTENTION
    Locked "McComponentHostService" service was unlocked successfully. <===== ATTENTION
    Locked "McMPFSvc" service was unlocked successfully. <===== ATTENTION
    Locked "McNaiAnn" service was unlocked successfully. <===== ATTENTION
    Locked "McODS" service was unlocked successfully. <===== ATTENTION
    Locked "mcpltsvc" service was unlocked successfully. <===== ATTENTION
    Locked "McProxy" service was unlocked successfully. <===== ATTENTION
    Locked "McPvDrv" service was unlocked successfully. <===== ATTENTION
    Locked "McShield" service was unlocked successfully. <===== ATTENTION
    Locked "McTaskManager" service was unlocked successfully. <===== ATTENTION
    Locked "MeDCoreD_V3IS80" service was unlocked successfully. <===== ATTENTION
    Locked "mfeapfk" service was unlocked successfully. <===== ATTENTION
    Locked "mfeavfk" service was unlocked successfully. <===== ATTENTION
    Locked "mfebopk" service was unlocked successfully. <===== ATTENTION
    Locked "mfecore" service was unlocked successfully. <===== ATTENTION
    Locked "mfeelamk" service was unlocked successfully. <===== ATTENTION
    Locked "mfefire" service was unlocked successfully. <===== ATTENTION
    Locked "mfefirek" service was unlocked successfully. <===== ATTENTION
    Locked "mfehidk" service was unlocked successfully. <===== ATTENTION
    Locked "mfencbdc" service was unlocked successfully. <===== ATTENTION
    Locked "mfencrk" service was unlocked successfully. <===== ATTENTION
    Locked "mfevtp" service was unlocked successfully. <===== ATTENTION
    Locked "mfewfpk" service was unlocked successfully. <===== ATTENTION
    Locked "Microsoft Antimalware" service was unlocked successfully. <===== ATTENTION
    Locked "mksfwallf" service was unlocked successfully. <===== ATTENTION
    Locked "mksidsa" service was unlocked successfully. <===== ATTENTION
    Locked "mksidsf" service was unlocked successfully. <===== ATTENTION
    Locked "MksMonEn" service was unlocked successfully. <===== ATTENTION
    Locked "MksMonEv" service was unlocked successfully. <===== ATTENTION
    Locked "MksMonFd" service was unlocked successfully. <===== ATTENTION
    Locked "mks_services" service was unlocked successfully. <===== ATTENTION
    Locked "MOBKbackup" service was unlocked successfully. <===== ATTENTION
    Locked "MOBKFilter" service was unlocked successfully. <===== ATTENTION
    Locked "MpFilter" service was unlocked successfully. <===== ATTENTION
    Locked "mscank" service was unlocked successfully. <===== ATTENTION
    Locked "MSK80Service" service was unlocked successfully. <===== ATTENTION
    Locked "MsMpSvc" service was unlocked successfully. <===== ATTENTION
    Locked "MWAgent" service was unlocked successfully. <===== ATTENTION
    Locked "mwfsmfltr" service was unlocked successfully. <===== ATTENTION
    Locked "N360" service was unlocked successfully. <===== ATTENTION
    Locked "nanoflt" service was unlocked successfully. <===== ATTENTION
    Locked "nanokrn" service was unlocked successfully. <===== ATTENTION
    Locked "NanoServiceMain" service was unlocked successfully. <===== ATTENTION
    Locked "nanosvc" service was unlocked successfully. <===== ATTENTION
    Locked "NASS" service was unlocked successfully. <===== ATTENTION
    Locked "NAVENG" service was unlocked successfully. <===== ATTENTION
    Locked "NAVEX15" service was unlocked successfully. <===== ATTENTION
    Locked "Ndiskio" service was unlocked successfully. <===== ATTENTION
    Locked "netfilter" service was unlocked successfully. <===== ATTENTION
    Locked "NETFLTDI" service was unlocked successfully. <===== ATTENTION
    Locked "NETIMFLT01060034" service was unlocked successfully. <===== ATTENTION
    Locked "NETIMFLT01060039" service was unlocked successfully. <===== ATTENTION
    Locked "NETIMFLT01060044" service was unlocked successfully. <===== ATTENTION
    Locked "NGS" service was unlocked successfully. <===== ATTENTION
    Locked "NHS" service was unlocked successfully. <===== ATTENTION
    Locked "NIG" service was unlocked successfully. <===== ATTENTION
    Locked "NIS" service was unlocked successfully. <===== ATTENTION
    Locked "NisSrv" service was unlocked successfully. <===== ATTENTION
    Locked "nnetsec" service was unlocked successfully. <===== ATTENTION
    Locked "NNetSecC" service was unlocked successfully. <===== ATTENTION
    Locked "NNFSVC" service was unlocked successfully. <===== ATTENTION
    Locked "NNSALPC" service was unlocked successfully. <===== ATTENTION
    Locked "NNSHTTP" service was unlocked successfully. <===== ATTENTION
    Locked "NNSHTTPS" service was unlocked successfully. <===== ATTENTION
    Locked "NNSIDS" service was unlocked successfully. <===== ATTENTION
    Locked "NNSNAHS" service was unlocked successfully. <===== ATTENTION
    Locked "NNSNAHSL" service was unlocked successfully. <===== ATTENTION
    Locked "NNSPICC" service was unlocked successfully. <===== ATTENTION
    Locked "NNSPIHS" service was unlocked successfully. <===== ATTENTION
    Locked "NNSPIHSW" service was unlocked successfully. <===== ATTENTION
    Locked "NNSPOP3" service was unlocked successfully. <===== ATTENTION
    Locked "NNSPROT" service was unlocked successfully. <===== ATTENTION
    Locked "NNSPRV" service was unlocked successfully. <===== ATTENTION
    Locked "NNSSMTP" service was unlocked successfully. <===== ATTENTION
    Locked "NNSSTRM" service was unlocked successfully. <===== ATTENTION
    Locked "NNSTLSC" service was unlocked successfully. <===== ATTENTION
    Locked "Norman NJeeves" service was unlocked successfully. <===== ATTENTION
    Locked "Norman ZANDA" service was unlocked successfully. <===== ATTENTION
    Locked "NovaShieldFilterDriver" service was unlocked successfully. <===== ATTENTION
    Locked "NovaShieldTDIDriver" service was unlocked successfully. <===== ATTENTION
    Locked "NPFSvc32" service was unlocked successfully. <===== ATTENTION
    Locked "NPFSvc32_Data" service was unlocked successfully. <===== ATTENTION
    Locked "NPROSEC" service was unlocked successfully. <===== ATTENTION
    Locked "NPROSECSVC" service was unlocked successfully. <===== ATTENTION
    Locked "npsvc32" service was unlocked successfully. <===== ATTENTION
    Locked "nregsec" service was unlocked successfully. <===== ATTENTION
    Locked "nsesvc" service was unlocked successfully. <===== ATTENTION
    Locked "NTGUARD" service was unlocked successfully. <===== ATTENTION
    Locked "NUAA" service was unlocked successfully. <===== ATTENTION
    Locked "NvcMFlt" service was unlocked successfully. <===== ATTENTION
    Locked "nvcoas" service was unlocked successfully. <===== ATTENTION
    Locked "nvoy" service was unlocked successfully. <===== ATTENTION
    Locked "OAcat" service was unlocked successfully. <===== ATTENTION
    Locked "OADevice" service was unlocked successfully. <===== ATTENTION
    Locked "oahlpXX" service was unlocked successfully. <===== ATTENTION
    Locked "OAmon" service was unlocked successfully. <===== ATTENTION
    Locked "OAnet" service was unlocked successfully. <===== ATTENTION
    Locked "Online Protection System" service was unlocked successfully. <===== ATTENTION
    Locked "Panda Software Controller" service was unlocked successfully. <===== ATTENTION
    Locked "pavboot" service was unlocked successfully. <===== ATTENTION
    Locked "PAVFNSVR" service was unlocked successfully. <===== ATTENTION
    Locked "PavProc" service was unlocked successfully. <===== ATTENTION
    Locked "PavPrSrv" service was unlocked successfully. <===== ATTENTION
    Locked "PAVSRV" service was unlocked successfully. <===== ATTENTION
    Locked "PavTPK.sys" service was unlocked successfully. <===== ATTENTION
    Locked "PCTBD" service was unlocked successfully. <===== ATTENTION
    Locked "PCTCore" service was unlocked successfully. <===== ATTENTION
    Locked "pctDS" service was unlocked successfully. <===== ATTENTION
    Locked "pctEFA" service was unlocked successfully. <===== ATTENTION
    Locked "pctgntdi" service was unlocked successfully. <===== ATTENTION
    Locked "pctplsm" service was unlocked successfully. <===== ATTENTION
    Locked "PCTSD" service was unlocked successfully. <===== ATTENTION
    Locked "PROCMON20" service was unlocked successfully. <===== ATTENTION
    Locked "PROCMON23" service was unlocked successfully. <===== ATTENTION
    Locked "ProcObsrv" service was unlocked successfully. <===== ATTENTION
    Locked "PSHost" service was unlocked successfully. <===== ATTENTION
    Locked "PSIMSVC" service was unlocked successfully. <===== ATTENTION
    Locked "PSINAflt" service was unlocked successfully. <===== ATTENTION
    Locked "PSINFile" service was unlocked successfully. <===== ATTENTION
    Locked "PSINKNC" service was unlocked successfully. <===== ATTENTION
    Locked "PSINProc" service was unlocked successfully. <===== ATTENTION
    Locked "PSINProt" service was unlocked successfully. <===== ATTENTION
    Locked "PSINReg" service was unlocked successfully. <===== ATTENTION
    Locked "PSKMAD" service was unlocked successfully. <===== ATTENTION
    Locked "PskSvcRetail" service was unlocked successfully. <===== ATTENTION
    Locked "PSUAService" service was unlocked successfully. <===== ATTENTION
    Locked "Quick Update Service" service was unlocked successfully. <===== ATTENTION
    Locked "qutmdserv" service was unlocked successfully. <===== ATTENTION
    Locked "qutmipc" service was unlocked successfully. <===== ATTENTION
    Locked "RegFilter" service was unlocked successfully. <===== ATTENTION
    Locked "rsdsys" service was unlocked successfully. <===== ATTENTION
    Locked "RsMgrSvc" service was unlocked successfully. <===== ATTENTION
    Locked "RsRavMon" service was unlocked successfully. <===== ATTENTION
    Locked "SafeBox" service was unlocked successfully. <===== ATTENTION
    Locked "SandBox" service was unlocked successfully. <===== ATTENTION
    Locked "SAVAdminService" service was unlocked successfully. <===== ATTENTION
    Locked "SAVOnAccess" service was unlocked successfully. <===== ATTENTION
    Locked "SAVOnAccessControl" service was unlocked successfully. <===== ATTENTION
    Locked "SAVOnAccessFilter" service was unlocked successfully. <===== ATTENTION
    Locked "SAVService" service was unlocked successfully. <===== ATTENTION
    Locked "SBAMSvc" service was unlocked successfully. <===== ATTENTION
    Locked "sbaphd" service was unlocked successfully. <===== ATTENTION
    Locked "sbapifs" service was unlocked successfully. <===== ATTENTION
    Locked "SbFw" service was unlocked successfully. <===== ATTENTION
    Locked "SBFWIMCL" service was unlocked successfully. <===== ATTENTION
    Locked "SBFWIMCLMP" service was unlocked successfully. <===== ATTENTION
    Locked "sbhips" service was unlocked successfully. <===== ATTENTION
    Locked "SBPIMSvc" service was unlocked successfully. <===== ATTENTION
    Locked "sbtis" service was unlocked successfully. <===== ATTENTION
    Locked "sbwtis" service was unlocked successfully. <===== ATTENTION
    Locked "scan" service was unlocked successfully. <===== ATTENTION
    Locked "ScanWscS" service was unlocked successfully. <===== ATTENTION
    Locked "scfdriver" service was unlocked successfully. <===== ATTENTION
    Locked "scfndis" service was unlocked successfully. <===== ATTENTION
    Locked "Scheduler" service was unlocked successfully. <===== ATTENTION
    Locked "ScSecSvc" service was unlocked successfully. <===== ATTENTION
    Locked "sdAuxService" service was unlocked successfully. <===== ATTENTION
    Locked "sdCoreService" service was unlocked successfully. <===== ATTENTION
    Locked "SDScannerService" service was unlocked successfully. <===== ATTENTION
    Locked "SDUpdateService" service was unlocked successfully. <===== ATTENTION
    Locked "SDWSCService" service was unlocked successfully. <===== ATTENTION
    Locked "semsrv" service was unlocked successfully. <===== ATTENTION
    Locked "semwebsrv" service was unlocked successfully. <===== ATTENTION
    Locked "SepMasterService" service was unlocked successfully. <===== ATTENTION
    Locked "ShldDrv" service was unlocked successfully. <===== ATTENTION
    Locked "ShldFlt" service was unlocked successfully. <===== ATTENTION
    Locked "SKMScan" service was unlocked successfully. <===== ATTENTION
    Locked "Sophos AutoUpdate Service" service was unlocked successfully. <===== ATTENTION
    Locked "Sophos Client Firewall" service was unlocked successfully. <===== ATTENTION
    Locked "SophosBootDriver" service was unlocked successfully. <===== ATTENTION
    Locked "SpiderG3" service was unlocked successfully. <===== ATTENTION
    Locked "Spyshelter" service was unlocked successfully. <===== ATTENTION
    Locked "SpyshelterKb" service was unlocked successfully. <===== ATTENTION
    Locked "SRTSP" service was unlocked successfully. <===== ATTENTION
    Locked "SRTSPX" service was unlocked successfully. <===== ATTENTION
    Locked "ssfwmonsvc" service was unlocked successfully. <===== ATTENTION
    Locked "ssmdrv" service was unlocked successfully. <===== ATTENTION
    Locked "sstsmonsvc" service was unlocked successfully. <===== ATTENTION
    Locked "StopSign Update Manager" service was unlocked successfully. <===== ATTENTION
    Locked "SvcOnlineArmor" service was unlocked successfully. <===== ATTENTION
    Locked "swi_service" service was unlocked successfully. <===== ATTENTION
    Locked "swi_update" service was unlocked successfully. <===== ATTENTION
    Locked "SymDS" service was unlocked successfully. <===== ATTENTION
    Locked "SymEFA" service was unlocked successfully. <===== ATTENTION
    Locked "SymEvent" service was unlocked successfully. <===== ATTENTION
    Locked "SymIRON" service was unlocked successfully. <===== ATTENTION
    Locked "SymNetS" service was unlocked successfully. <===== ATTENTION
    Locked "SysPlant" service was unlocked successfully. <===== ATTENTION
    Locked "tdifw" service was unlocked successfully. <===== ATTENTION
    Locked "tdimapper" service was unlocked successfully. <===== ATTENTION
    Locked "tdi_nf" service was unlocked successfully. <===== ATTENTION
    Locked "Teefer2" service was unlocked successfully. <===== ATTENTION
    Locked "TfFRegNt" service was unlocked successfully. <===== ATTENTION
    Locked "TfProcNt" service was unlocked successfully. <===== ATTENTION
    Locked "tmactmon" service was unlocked successfully. <===== ATTENTION
    Locked "tmcomm" service was unlocked successfully. <===== ATTENTION
    Locked "TMEBC" service was unlocked successfully. <===== ATTENTION
    Locked "tmeevw" service was unlocked successfully. <===== ATTENTION
    Locked "tmevtmgr" service was unlocked successfully. <===== ATTENTION
    Locked "tmnciesc" service was unlocked successfully. <===== ATTENTION
    Locked "tmtdi" service was unlocked successfully. <===== ATTENTION
    Locked "tmusa" service was unlocked successfully. <===== ATTENTION
    Locked "tpdevflt" service was unlocked successfully. <===== ATTENTION
    Locked "tpmgma_service" service was unlocked successfully. <===== ATTENTION
    Locked "TPPFHOOK" service was unlocked successfully. <===== ATTENTION
    Locked "tpsec" service was unlocked successfully. <===== ATTENTION
    Locked "TPSrv" service was unlocked successfully. <===== ATTENTION
    Locked "trufos" service was unlocked successfully. <===== ATTENTION
    Locked "TS4NT" service was unlocked successfully. <===== ATTENTION
    Locked "TSNxGService" service was unlocked successfully. <===== ATTENTION
    Locked "twssrv" service was unlocked successfully. <===== ATTENTION
    Locked "UmxEngine" service was unlocked successfully. <===== ATTENTION
    Locked "UPDATESRV" service was unlocked successfully. <===== ATTENTION
    Locked "UrlFilter" service was unlocked successfully. <===== ATTENTION
    Locked "UTSvcManager3" service was unlocked successfully. <===== ATTENTION
    Locked "V3 Service" service was unlocked successfully. <===== ATTENTION
    Locked "v3engine" service was unlocked successfully. <===== ATTENTION
    Locked "V3Flt2K" service was unlocked successfully. <===== ATTENTION
    Locked "V3Flu2k_V3IS80" service was unlocked successfully. <===== ATTENTION
    Locked "V3IFt2K" service was unlocked successfully. <===== ATTENTION
    Locked "Vba32dNT" service was unlocked successfully. <===== ATTENTION
    Locked "Vba32ECM" service was unlocked successfully. <===== ATTENTION
    Locked "Vba32ifs" service was unlocked successfully. <===== ATTENTION
    Locked "Vba32Ldr" service was unlocked successfully. <===== ATTENTION
    Locked "Vba32mNT" service was unlocked successfully. <===== ATTENTION
    Locked "Vba32PP3" service was unlocked successfully. <===== ATTENTION
    Locked "Vba32Prot" service was unlocked successfully. <===== ATTENTION
    Locked "VbaControlAgent" service was unlocked successfully. <===== ATTENTION
    Locked "VBCoreNT.0" service was unlocked successfully. <===== ATTENTION
    Locked "VBEngNT" service was unlocked successfully. <===== ATTENTION
    Locked "VBFilt" service was unlocked successfully. <===== ATTENTION
    Locked "viprecomsvc" service was unlocked successfully. <===== ATTENTION
    Locked "Vsdatant" service was unlocked successfully. <===== ATTENTION
    Locked "vsmon" service was unlocked successfully. <===== ATTENTION
    Locked "VSSERV" service was unlocked successfully. <===== ATTENTION
    Locked "webssx" service was unlocked successfully. <===== ATTENTION
    Locked "WinDefend" service was unlocked successfully. <===== ATTENTION
    Locked "WinRoute" service was unlocked successfully. <===== ATTENTION
    Locked "wipesrv" service was unlocked successfully. <===== ATTENTION
    Locked "WNMFLT" service was unlocked successfully. <===== ATTENTION
    Locked "WRDRV" service was unlocked successfully. <===== ATTENTION
    Locked "WRkrn" service was unlocked successfully. <===== ATTENTION
    Locked "WRSVC" service was unlocked successfully. <===== ATTENTION
    Locked "wsnf" service was unlocked successfully. <===== ATTENTION
    Locked "wstif" service was unlocked successfully. <===== ATTENTION
    Locked "xCoreFirewallSvc" service was unlocked successfully. <===== ATTENTION
    Locked "xCoreUpdateSvc" service was unlocked successfully. <===== ATTENTION
    Locked "ZAPrivacyService" service was unlocked successfully. <===== ATTENTION
    Locked "ZhuDongFangYu" service was unlocked successfully. <===== ATTENTION
    Locked "ZillyaAVAuxSvc" service was unlocked successfully. <===== ATTENTION
    Locked "ZillyaAVCoreSvc" service was unlocked successfully. <===== ATTENTION
    Locked "Znf" service was unlocked successfully. <===== ATTENTION
    Locked "zsc" service was unlocked successfully. <===== ATTENTION
    U5 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 360AvFlt; C:\Windows\System32\Drivers\360AvFlt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 360Box; C:\Windows\System32\Drivers\360Box.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 360Box64; C:\Windows\System32\Drivers\360Box64.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 360Camera; C:\Windows\System32\Drivers\360Camera.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 360fsflt; C:\Windows\System32\Drivers\360fsflt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 360SelfProtection; C:\Windows\System32\Drivers\360SelfProtection.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 ABndis; C:\Windows\System32\Drivers\ABndis.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 AFW; C:\Windows\System32\Drivers\AFW.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 afwcore; C:\Windows\System32\Drivers\afwcore.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 AhnFlt2K; C:\Windows\System32\Drivers\AhnFlt2K.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 AhnRec2K; C:\Windows\System32\Drivers\AhnRec2K.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 AhnRghNt; C:\Windows\System32\Drivers\AhnRghNt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 AhnSZE; C:\Windows\System32\Drivers\AhnSZE.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 ALE_NF; C:\Windows\System32\Drivers\ALE_NF.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 AMonLWLH; C:\Windows\System32\Drivers\AMonLWLH.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 AMonTDLH; C:\Windows\System32\Drivers\AMonTDLH.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 APPFLT; C:\Windows\System32\Drivers\APPFLT.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 arcawfp; C:\Windows\System32\Drivers\arcawfp.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 aswHwid; C:\Windows\System32\Drivers\aswHwid.sys [0 2015-03-26] () <==== ATTENTION (zero size file/folder)
    U5 aswMonFlt; C:\Windows\System32\Drivers\aswMonFlt.sys [0 2015-03-26] () <==== ATTENTION (zero size file/folder)
    U5 aswNdis; C:\Windows\System32\Drivers\aswNdis.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 aswNdis2; C:\Windows\System32\Drivers\aswNdis2.sys [0 2015-03-26] () <==== ATTENTION (zero size file/folder)
    U5 aswNdisFlt; C:\Windows\System32\Drivers\aswNdisFlt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 aswRdr; C:\Windows\System32\Drivers\aswRdr.sys [0 2015-03-26] () <==== ATTENTION (zero size file/folder)
    U5 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [0 2015-03-26] () <==== ATTENTION (zero size file/folder)
    U5 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [0 2015-03-26] () <==== ATTENTION (zero size file/folder)
    U5 aswSP; C:\Windows\System32\Drivers\aswSP.sys [0 2015-03-26] () <==== ATTENTION (zero size file/folder)
    U5 aswStm; C:\Windows\System32\Drivers\aswStm.sys [0 2015-03-26] () <==== ATTENTION (zero size file/folder)
    U5 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [0 2015-03-26] () <==== ATTENTION (zero size file/folder)
    U5 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [0 2015-03-26] () <==== ATTENTION (zero size file/folder)
    U5 avasdmft; C:\Windows\System32\Drivers\avasdmft.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 avc3; C:\Windows\System32\Drivers\avc3.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 avchv; C:\Windows\System32\Drivers\avchv.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 avckf; C:\Windows\System32\Drivers\avckf.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgboota; C:\Windows\System32\Drivers\Avgboota.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgbootx; C:\Windows\System32\Drivers\Avgbootx.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgdiska; C:\Windows\System32\Drivers\Avgdiska.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgdiskx; C:\Windows\System32\Drivers\Avgdiskx.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgfwdx; C:\Windows\System32\Drivers\Avgfwdx.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 AVGIDSHA; C:\Windows\System32\Drivers\AVGIDSHA.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 AVGIDSHX; C:\Windows\System32\Drivers\AVGIDSHX.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgldx64; C:\Windows\System32\Drivers\Avgldx64.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgldx86; C:\Windows\System32\Drivers\Avgldx86.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgloga; C:\Windows\System32\Drivers\Avgloga.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avglogx; C:\Windows\System32\Drivers\Avglogx.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgmfx64; C:\Windows\System32\Drivers\Avgmfx64.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgmfx86; C:\Windows\System32\Drivers\Avgmfx86.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 avgntflt; C:\Windows\System32\Drivers\avgntflt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgrkx64; C:\Windows\System32\Drivers\Avgrkx64.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgrkx86; C:\Windows\System32\Drivers\Avgrkx86.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgtdia; C:\Windows\System32\Drivers\Avgtdia.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgtdix; C:\Windows\System32\Drivers\Avgtdix.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgwfpa; C:\Windows\System32\Drivers\Avgwfpa.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Avgwfpx; C:\Windows\System32\Drivers\Avgwfpx.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 avipbb; C:\Windows\System32\Drivers\avipbb.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 avkmgr; C:\Windows\System32\Drivers\avkmgr.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 avnetflt; C:\Windows\System32\Drivers\avnetflt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 BAPIDRV; C:\Windows\System32\Drivers\BAPIDRV.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Bcfilter; C:\Windows\System32\Drivers\Bcfilter.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 bcfsrm; C:\Windows\System32\Drivers\bcfsrm.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 bcftdi; C:\Windows\System32\Drivers\bcftdi.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 bc_hash_f; C:\Windows\System32\Drivers\bc_hash_f.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 bc_ip_f; C:\Windows\System32\Drivers\bc_ip_f.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 bc_ngn; C:\Windows\System32\Drivers\bc_ngn.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 bc_pat_f; C:\Windows\System32\Drivers\bc_pat_f.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 bc_prt_f; C:\Windows\System32\Drivers\bc_prt_f.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 bc_tdi_f; C:\Windows\System32\Drivers\bc_tdi_f.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 BdAgent; C:\Windows\System32\Drivers\BdAgent.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 bdelam; C:\Windows\System32\Drivers\bdelam.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Bdfndisf; C:\Windows\System32\Drivers\Bdfndisf.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 bdfsfltr; C:\Windows\System32\Drivers\bdfsfltr.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 BdNet; C:\Windows\System32\Drivers\BdNet.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 BDSandBox; C:\Windows\System32\Drivers\BDSandBox.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 bdsflt; C:\Windows\System32\Drivers\bdsflt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 bdsnm; C:\Windows\System32\Drivers\bdsnm.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 BdSpy; C:\Windows\System32\Drivers\BdSpy.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 BDVEDISK; C:\Windows\System32\Drivers\BDVEDISK.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Bfilter; C:\Windows\System32\Drivers\Bfilter.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Bfmon; C:\Windows\System32\Drivers\Bfmon.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Bhbase; C:\Windows\System32\Drivers\Bhbase.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 BlueletAudio; C:\Windows\System32\Drivers\BlueletAudio.sys [34880 2011-08-13] (Ralink Corporation.)
    U5 Bprotect; C:\Windows\System32\Drivers\Bprotect.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 BprotectEx; C:\Windows\System32\Drivers\BprotectEx.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 catflt; C:\Windows\System32\Drivers\catflt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 CdmDrvNt; C:\Windows\System32\Drivers\CdmDrvNt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 cfwids; C:\Windows\System32\Drivers\cfwids.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 cmderd; C:\Windows\System32\Drivers\cmderd.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 cmdGuard; C:\Windows\System32\Drivers\cmdGuard.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 cmdHlp; C:\Windows\System32\Drivers\cmdHlp.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 ComFiltr; C:\Windows\System32\Drivers\ComFiltr.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 DrWebLwf; C:\Windows\System32\Drivers\DrWebLwf.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 DSAFLT; C:\Windows\System32\Drivers\DSAFLT.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 DwProt; C:\Windows\System32\Drivers\DwProt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 eamon; C:\Windows\System32\Drivers\eamon.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 eamonm; C:\Windows\System32\Drivers\eamonm.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 econceal; C:\Windows\System32\Drivers\econceal.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 EfiMon; C:\Windows\System32\Drivers\EfiMon.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 ehdrv; C:\Windows\System32\Drivers\ehdrv.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 epfw; C:\Windows\System32\Drivers\epfw.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 EpfwLWF; C:\Windows\System32\Drivers\EpfwLWF.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Epfwndis; C:\Windows\System32\Drivers\Epfwndis.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 epfwtdi; C:\Windows\System32\Drivers\epfwtdi.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 epfwwfp; C:\Windows\System32\Drivers\epfwwfp.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 epfwwfpr; C:\Windows\System32\Drivers\epfwwfpr.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 FNETMON; C:\Windows\System32\Drivers\FNETMON.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 FPAV_RTP; C:\Windows\System32\Drivers\FPAV_RTP.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 fsbts; C:\Windows\System32\Drivers\fsbts.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 FWCore; C:\Windows\System32\Drivers\FWCore.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 GDBehave; C:\Windows\System32\Drivers\GDBehave.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 GDNdisIc; C:\Windows\System32\Drivers\GDNdisIc.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 gfiark; C:\Windows\System32\Drivers\gfiark.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 gfiutil; C:\Windows\System32\Drivers\gfiutil.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 ggc; C:\Windows\System32\Drivers\ggc.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 gzflt; C:\Windows\System32\Drivers\gzflt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 HipShieldK; C:\Windows\System32\Drivers\HipShieldK.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 HookCentre; C:\Windows\System32\Drivers\HookCentre.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 HookPort; C:\Windows\System32\Drivers\HookPort.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 hooksys; C:\Windows\System32\Drivers\hooksys.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 HookTdi; C:\Windows\System32\Drivers\HookTdi.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 IDSFLT; C:\Windows\System32\Drivers\IDSFLT.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 inspect; C:\Windows\System32\Drivers\inspect.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 K7FWFilt; C:\Windows\System32\Drivers\K7FWFilt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 K7FWHlpr; C:\Windows\System32\Drivers\K7FWHlpr.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 K7Sentry; C:\Windows\System32\Drivers\K7Sentry.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 K7TdiHlp; C:\Windows\System32\Drivers\K7TdiHlp.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 kl1; C:\Windows\System32\Drivers\kl1.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 kldisk; C:\Windows\System32\Drivers\kldisk.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 klelam; C:\Windows\System32\Drivers\klelam.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 klflt; C:\Windows\System32\Drivers\klflt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 klhk; C:\Windows\System32\Drivers\klhk.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 KLIF; C:\Windows\System32\Drivers\KLIF.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 KLIM6; C:\Windows\System32\Drivers\KLIM6.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 klpd; C:\Windows\System32\Drivers\klpd.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 kltdi; C:\Windows\System32\Drivers\kltdi.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 klwfp; C:\Windows\System32\Drivers\klwfp.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 klwtp; C:\Windows\System32\Drivers\klwtp.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 KmxAgent; C:\Windows\System32\Drivers\KmxAgent.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 KmxAMRT; C:\Windows\System32\Drivers\KmxAMRT.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 KmxCF; C:\Windows\System32\Drivers\KmxCF.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 KmxCfg; C:\Windows\System32\Drivers\KmxCfg.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 KmxFile; C:\Windows\System32\Drivers\KmxFile.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 KmxFilter; C:\Windows\System32\Drivers\KmxFilter.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 KmxFw; C:\Windows\System32\Drivers\KmxFw.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 KmxSbx; C:\Windows\System32\Drivers\KmxSbx.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 KmxStart; C:\Windows\System32\Drivers\KmxStart.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 kneps; C:\Windows\System32\Drivers\kneps.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 kvnet; C:\Windows\System32\Drivers\kvnet.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 kwflower; C:\Windows\System32\Drivers\kwflower.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 kwfupper; C:\Windows\System32\Drivers\kwfupper.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 llio; C:\Windows\System32\Drivers\llio.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 McPvDrv; C:\Windows\System32\Drivers\McPvDrv.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 mfeapfk; C:\Windows\System32\Drivers\mfeapfk.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 mfeavfk; C:\Windows\System32\Drivers\mfeavfk.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 mfebopk; C:\Windows\System32\Drivers\mfebopk.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 mfeelamk; C:\Windows\System32\Drivers\mfeelamk.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 mfefirek; C:\Windows\System32\Drivers\mfefirek.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 mfehidk; C:\Windows\System32\Drivers\mfehidk.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 mfencbdc; C:\Windows\System32\Drivers\mfencbdc.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 mfencrk; C:\Windows\System32\Drivers\mfencrk.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 mfewfpk; C:\Windows\System32\Drivers\mfewfpk.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 mscank; C:\Windows\System32\Drivers\mscank.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 netfilter; C:\Windows\System32\Drivers\netfilter.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NETFLTDI; C:\Windows\System32\Drivers\NETFLTDI.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 nnetsec; C:\Windows\System32\Drivers\nnetsec.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NNSALPC; C:\Windows\System32\Drivers\NNSALPC.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NNSHTTP; C:\Windows\System32\Drivers\NNSHTTP.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NNSHTTPS; C:\Windows\System32\Drivers\NNSHTTPS.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NNSIDS; C:\Windows\System32\Drivers\NNSIDS.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NNSNAHS; C:\Windows\System32\Drivers\NNSNAHS.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NNSNAHSL; C:\Windows\System32\Drivers\NNSNAHSL.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NNSPICC; C:\Windows\System32\Drivers\NNSPICC.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NNSPIHS; C:\Windows\System32\Drivers\NNSPIHS.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NNSPIHSW; C:\Windows\System32\Drivers\NNSPIHSW.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NNSPOP3; C:\Windows\System32\Drivers\NNSPOP3.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NNSPROT; C:\Windows\System32\Drivers\NNSPROT.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NNSPRV; C:\Windows\System32\Drivers\NNSPRV.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NNSSMTP; C:\Windows\System32\Drivers\NNSSMTP.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NNSSTRM; C:\Windows\System32\Drivers\NNSSTRM.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 NNSTLSC; C:\Windows\System32\Drivers\NNSTLSC.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 OAmon; C:\Windows\System32\Drivers\OAmon.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 OAnet; C:\Windows\System32\Drivers\OAnet.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 pavboot; C:\Windows\System32\Drivers\pavboot.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 PavProc; C:\Windows\System32\Drivers\PavProc.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 PSINAflt; C:\Windows\System32\Drivers\PSINAflt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 PSINFile; C:\Windows\System32\Drivers\PSINFile.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 PSINKNC; C:\Windows\System32\Drivers\PSINKNC.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 PSINProc; C:\Windows\System32\Drivers\PSINProc.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 PSINProt; C:\Windows\System32\Drivers\PSINProt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 PSINReg; C:\Windows\System32\Drivers\PSINReg.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 PSKMAD; C:\Windows\System32\Drivers\PSKMAD.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 qutmipc; C:\Windows\System32\Drivers\qutmipc.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 SandBox; C:\Windows\System32\Drivers\SandBox.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 SAVOnAccess; C:\Windows\System32\Drivers\SAVOnAccess.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 SAVOnAccessControl; C:\Windows\System32\Drivers\SAVOnAccessControl.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 SAVOnAccessFilter; C:\Windows\System32\Drivers\SAVOnAccessFilter.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 sbaphd; C:\Windows\System32\Drivers\sbaphd.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 sbapifs; C:\Windows\System32\Drivers\sbapifs.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 SbFw; C:\Windows\System32\Drivers\SbFw.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 sbhips; C:\Windows\System32\Drivers\sbhips.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 sbtis; C:\Windows\System32\Drivers\sbtis.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 sbwtis; C:\Windows\System32\Drivers\sbwtis.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 scfdriver; C:\Windows\System32\Drivers\scfdriver.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 scfndis; C:\Windows\System32\Drivers\scfndis.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 ShldFlt; C:\Windows\System32\Drivers\ShldFlt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 SKMScan; C:\Windows\System32\Drivers\SKMScan.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 SophosBootDriver; C:\Windows\System32\Drivers\SophosBootDriver.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 SpiderG3; C:\Windows\System32\Drivers\SpiderG3.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 ssmdrv; C:\Windows\System32\Drivers\ssmdrv.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 SymEvent; C:\Windows\System32\Drivers\SymEvent.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 SysPlant; C:\Windows\System32\Drivers\SysPlant.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 tdifw; C:\Windows\System32\Drivers\tdifw.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 tdi_nf; C:\Windows\System32\Drivers\tdi_nf.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 tmactmon; C:\Windows\System32\Drivers\tmactmon.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 tmcomm; C:\Windows\System32\Drivers\tmcomm.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 tmeevw; C:\Windows\System32\Drivers\tmeevw.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 tmevtmgr; C:\Windows\System32\Drivers\tmevtmgr.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 tmnciesc; C:\Windows\System32\Drivers\tmnciesc.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 tmusa; C:\Windows\System32\Drivers\tmusa.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 tpdevflt; C:\Windows\System32\Drivers\tpdevflt.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 tpsec; C:\Windows\System32\Drivers\tpsec.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 trufos; C:\Windows\System32\Drivers\trufos.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 TS4NT; C:\Windows\System32\Drivers\TS4NT.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U3 ute1njiz; C:\Windows\SysWOW64\Drivers\ute1njiz.sys [7168 2015-04-03] () [File not signed]
    U5 v3engine; C:\Windows\System32\Drivers\v3engine.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 VBEngNT; C:\Windows\System32\Drivers\VBEngNT.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 Vsdatant; C:\Windows\System32\Drivers\Vsdatant.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 webssx; C:\Windows\System32\Drivers\webssx.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 WNMFLT; C:\Windows\System32\Drivers\WNMFLT.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 WRkrn; C:\Windows\System32\Drivers\WRkrn.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 wsnf; C:\Windows\System32\Drivers\wsnf.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    U5 wstif; C:\Windows\System32\Drivers\wstif.sys [0 2015-03-20] () <==== ATTENTION (zero size file/folder)
    2015-04-03 17:30 - 2015-04-03 17:30 - 00000855 _____ () C:\Windows\system32\Drivers\etc\hosts.conf
    2015-03-29 14:02 - 2015-03-29 14:02 - 00000000 __SHD () C:\found.000
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\TrustPort
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\TrojanHunter 5.5
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\TrojanHunter
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Trojan Remover
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Trend Micro
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\TotalDefense
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Total Defense
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Symantec AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\SUPERAntiSpyware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\STOPzilla!
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\STOPzilla Optimizer
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\StopSign
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\SpyShelter Premium
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\SpyShelter
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Spybot - Search & Destroy 2
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Spybot - Search & Destroy
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Sophos
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Rising
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Quick Heal
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\PSafe
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Proland Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Proland
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\PC Tools Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\pandasecuritytb
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Panda Security URL Filtering
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Panda Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Padvish Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\OnlineArmor
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Online Armor
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Norton Internet Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Norton AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Norton Anti-Theft
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Norton 360
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Norman
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\nanolsp
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\nanoav
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\NANO Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Moon Secure Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\mks_vir_9
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\MicroWorld
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Microsoft Security Client
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\McAfeeMOBK
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\McAfee.com
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\McAfee Security Scan
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\McAfee
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Malwarebytes' Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Malwarebytes Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Malwarebytes
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Malware Defender
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Lavasoft
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Kerio
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Kaspersky Lab
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\K7 Computing
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Jetico
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\IObit
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\IKARUS
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\GFI
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\G DATA Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\G Data
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\F-Secure
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\FRISK Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Fortego Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Filseclab
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\ESET
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\eScan
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Emsisoft Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\eAcceleration
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\DrWeb Enterprise Suite
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\DrWeb
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Doctor Web
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Comodo Downloader
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\COMODO
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\ClamWin
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\CheckPoint
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\CA
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\BullGuard Ltd
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\BullGuard
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\BitGuard
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Bitdefender
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Baidu Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Avira
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\AVG Nation toolbar
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\AVG
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\AVAST Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Avanquest
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Arcabit
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Alwil Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\AhnLab
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Agnitum
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Acceleration Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\360SD
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\360
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\.clamwin
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\TrustPort
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\TrojanHunter 5.5
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\TrojanHunter
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Trojan Remover
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Trend Micro
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\TotalDefense
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Total Defense
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Symantec AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\SUPERAntiSpyware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\STOPzilla!
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\STOPzilla Optimizer
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\StopSign
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\SpyShelter Premium
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\SpyShelter
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Spybot - Search & Destroy 2
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Spybot - Search & Destroy
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Sophos
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Rising
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Quick Heal
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\PSafe
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Proland Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Proland
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\PC Tools Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\pandasecuritytb
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Panda Security URL Filtering
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Panda Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Padvish Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\OnlineArmor
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Online Armor
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Norton Internet Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Norton AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Norton Anti-Theft
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Norton 360
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Norman
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\nanolsp
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\nanoav
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\NANO Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Moon Secure Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\mks_vir_9
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\MicroWorld
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Microsoft Security Client
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\McAfeeMOBK
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\McAfee.com
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\McAfee Security Scan
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\McAfee
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Malwarebytes' Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Malwarebytes Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Malwarebytes
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Malware Defender
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Lavasoft
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Kerio
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Kaspersky Lab
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\K7 Computing
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Jetico
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\IObit
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\IKARUS
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\GFI
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\G DATA Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\G Data
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\F-Secure
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\FRISK Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Fortego Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Filseclab
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\ESET
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\eScan
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Emsisoft Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\eAcceleration
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\DrWeb Enterprise Suite
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\DrWeb
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Doctor Web
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Comodo Downloader
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\COMODO
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\ClamWin
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\CheckPoint
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\CA
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\BullGuard Ltd
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\BullGuard
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\BitGuard
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Bitdefender
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Baidu Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Avira
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\AVG Nation toolbar
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\AVG
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\AVAST Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Avanquest
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Arcabit
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Alwil Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\AhnLab
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Agnitum
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Acceleration Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\360SD
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\360
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\.clamwin
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Zillya Internet Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Zillya Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\xCore Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\WRData
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\WinPcap
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Windows Defender
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Webroot
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\VIPRE
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Vba32
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\TrustPort
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\TrojanHunter 5.5
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\TrojanHunter
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Trend Micro
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\TotalDefense
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Total Defense
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\SUPERAntiSpyware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\STOPzilla!
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\STOPzilla Optimizer
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\StopSign
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Spybot - Search & Destroy 2
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Spybot - Search & Destroy
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Sophos
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Rising
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Quick Heal
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Proland Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Proland
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\PC Tools Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\pandasecuritytb
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Panda Security URL Filtering
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Panda Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\OnlineArmor
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Online Armor
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Norton Internet Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Norton Anti-Theft
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Norton 360
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\nanolsp
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\nanoav
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\NANO Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Moon Secure Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\MicroWorld
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Microsoft Security Client
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\McAfeeMOBK
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\McAfee.com
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\McAfee Security Scan
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\McAfee
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Malwarebytes' Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Malwarebytes Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Malwarebytes
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Lavasoft
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Kaspersky Lab
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\K7 Computing
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Jetico
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\IKARUS
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\GFI
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\G DATA Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\G Data
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\F-Secure
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\FRISK Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Filseclab
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\ESET
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\eScan
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Emsisoft Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\eAcceleration
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\DrWeb
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Doctor Web
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Comodo Downloader
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\COMODO
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Common Files\TrustPort
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Common Files\Panda Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Common Files\MicroWorld
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Common Files\McAfee
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Common Files\InfoWatch
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Common Files\G Data
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Common Files\eAcceleration
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Common Files\Doctor Web
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Common Files\COMODO
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Common Files\BullGuard Ltd
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Common Files\Bitdefender
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Common Files\Baidu
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Common Files\AVG Secure Search
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\ClamWin
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\CheckPoint
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\CA
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\BullGuard Ltd
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\BullGuard
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Bitdefender
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Avira
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\AVG
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\AVAST Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Avanquest
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Arcabit
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\AhnLab
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Agnitum
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Acceleration Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\360SD
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\360
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\.clamwin
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Zillya Internet Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Zillya Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\xCore Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\WRData
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\WinRoute Pro
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\WinPcap
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Windows Defender
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Winalysis
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Webroot
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\VIPRE
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Vba32
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\UnThreat AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\UnThreat
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\TrustPort
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\TrojanHunter 5.5
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\TrojanHunter
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Trojan Remover
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Trend Micro
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\TotalDefense
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Total Defense
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Symantec AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\SUPERAntiSpyware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\STOPzilla!
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\STOPzilla Optimizer
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\StopSign
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\SpyShelter Premium
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\SpyShelter
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Spybot - Search & Destroy 2
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Spybot - Search & Destroy
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Sophos
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Rising
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Quick Heal
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\PSafe
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Proland Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Proland
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\PC Tools Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\pandasecuritytb
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Panda Security URL Filtering
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Panda Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Padvish Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\OnlineArmor
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Online Armor
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Norton Internet Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Norton AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Norton Anti-Theft
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Norton 360
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Norman
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\nanolsp
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\nanoav
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\NANO Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Moon Secure Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\mks_vir_9
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\MicroWorld
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Microsoft Security Client
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\McAfeeMOBK
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\McAfee.com
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\McAfee Security Scan
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\McAfee
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Malwarebytes' Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Malwarebytes Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Malwarebytes
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Malware Defender
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Lavasoft
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Kerio
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Kaspersky Lab
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\K7 Computing
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Jetico
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\IObit
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\IKARUS
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\GFI
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\G DATA Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\G Data
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\F-Secure
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\FRISK Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Fortego Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Filseclab
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\ESET
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\eScan
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Emsisoft Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\eAcceleration
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\DrWeb Enterprise Suite
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\DrWeb
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Doctor Web
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Comodo Downloader
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\COMODO
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\ClamWin
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\CheckPoint
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\CA
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\BullGuard Ltd
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\BullGuard
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\BitGuard
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Bitdefender
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Baidu Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Avira
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\AVG Nation toolbar
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\AVG
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\AVAST Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Avanquest
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Arcabit
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Alwil Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\AhnLab
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Agnitum
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\Acceleration Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\360SD
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\360
    2015-03-28 17:57 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files (x86)\.clamwin
    2015-03-27 15:53 - 2015-03-27 15:54 - 00000000 __SHD () C:\Users\Home.user123\AppData\Roaming\mHIFzqyt6us
    2015-03-27 15:44 - 2015-04-03 15:28 - 00937240 __RSH () C:\SdHeuristic.txt
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Zillya Internet Security
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Zillya Antivirus
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\xCore Software
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\WRData
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\WinRoute Pro
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\WinPcap
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Windows Defender
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Winalysis
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Webroot
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\VIPRE
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\Vba32
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\UnThreat AntiVirus
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Users\Все пользователи\UnThreat
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Zillya Internet Security
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Zillya Antivirus
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\xCore Software
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\WRData
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\WinRoute Pro
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\WinPcap
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Windows Defender
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Winalysis
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Webroot
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\VIPRE
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\Vba32
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\UnThreat AntiVirus
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\ProgramData\UnThreat
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\WinRoute Pro
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Winalysis
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\UnThreat AntiVirus
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\UnThreat
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Trojan Remover
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Symantec AntiVirus
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\SpyShelter Premium
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\SpyShelter
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\PSafe
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Padvish Antivirus
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Norton AntiVirus
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Norman
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\mks_vir_9
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Malware Defender
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Kerio
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\IObit
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Fortego Security
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\DrWeb Enterprise Suite
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\BitGuard
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Baidu Security
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\AVG Nation toolbar
    2015-03-26 18:08 - 2015-04-03 17:30 - 00000000 __RSH () C:\Program Files\Alwil Software
    2015-03-20 19:19 - 2015-03-20 19:19 - 00000000 __SHD () C:\Users\user\AppData\Roaming\mHIFzqyt6us
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\wstif.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\wsnf.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\WRkrn.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\wnmflt64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\wnmflt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\WGX64.SYS
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\webssx.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\vsdatant.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\VBEngNT.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\v3engine.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\TS4nt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\Trufos.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\tpsec.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\tpdevflt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\tmusa.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\tmnciesc.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\tmevtmgr.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\tmeevw.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\TMEBC64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\TMEBC32.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\tmcomm.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\tmactmon.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\Teefer.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\tdifw.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\tdi_nf.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\SysPlant.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\SYMEVENT.SYS
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\ssmdrv.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\spiderg3.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\SophosBootDriver.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\skmscan.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\ShlDrv51.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\ShldFlt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\scfndis.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\scfdriver.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\sbwtis.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\sbtis.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\sbhips.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\SbFwIm.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\SbFw.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\sbapifs.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\sbaphd.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\savonaccessfilter.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\savonaccesscontrol.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\savonaccess.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\SandBox64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\SandBox.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\qutmipc.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\qutmdrv.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\PSKMAD.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\PSINReg.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\PSINProt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\PSINProc.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\PSINKNC.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\PSINFile.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\PSINAflt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\protreg.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\PROCEXP152.SYS
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\PktIcpt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\pctwfpfilter64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\PCTSD64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\pctplsm64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\pctplsg64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\pctgntdi64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\pctEFA64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\pctDS64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\PCTCore64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\pctBTFix64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\PCTBD64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\PavProc.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\pavboot64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\pavboot.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\OAnet.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\OAmon.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\oahlp32.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\OADriver.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\nvcv64mf.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NSNetmon.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NSKernel.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\npf.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NNStlsc.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NNSStrm.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NNSSmtp.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NNSPrv.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NNSProt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NNSPop3.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NNSPihsw.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NNSpihs.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NNSpicc.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NNSNAHSL.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NNSNAHS.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NNSIds.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NNSHttps.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NNSHttp.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NNSAlpc.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\nnetsecl64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\nnetsecl.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\nnetsec.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NETTDI64.SYS
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\neti1644.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\NETFLTDI.SYS
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\netfilter.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\n64i1644.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\mwfsmflt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\mscank.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\MOBK.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\MiniIcpt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\mfewfpk.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\mfencrk.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\mfencbdc.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\mfehidk.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\mfefirek.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\mfeelamk.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\mfeclnrk.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\mfebopk.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\mfeavfk.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\mfeapfk.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\McPvDrv.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\MBAMSwissArmy.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\mbamchameleon.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\mbam.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\llio.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\kwfupper.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\kwflower.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\kvnet.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\kneps.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\KmxStart.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\KmxSbx.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\KmxFw.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\KmxFilter.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\KmxFile.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\KmxCfg.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\KmxCF.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\KmxAMRT.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\KmxAgent.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\klwtp.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\klwfp.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\kltdi.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\klpd.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\klim6.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\klim5.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\klif.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\klhk.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\klflt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\klelam.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\kldisk.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\kl2.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\kl1.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\K7TdiHlp.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\K7Sentry.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\K7FWHlpr.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\K7FWFilt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\inspect.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\idsflt64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\idsflt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\hvm.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\HookTdi.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\Hooksys.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\hookport.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\HookHelp.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\HookCentre.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\HipShieldK.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\gzflt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\ggc.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\gfiutil.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\gfiark.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\gdwfpcd64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\gdwfpcd32.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\GDTdiIcpt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\GDNdisIc.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\gddcv64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\gddcd64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\GDBehave.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\fwcore.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\fsbts.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\FPAV_RTP.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\fnetmon.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\fnetm64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\epfwwfpr.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\epfwwfp.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\epfwtdi.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\epfwndis.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\EpfwLWF.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\epfw.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\EMLTDI.SYS
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\ehdrv.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\efimon.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\edevmon.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\econceal.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\eamonm.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\eamon.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\dwprot.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\dw_wfp.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\dsaflt64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\dsaflt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\DrWebLwf.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\COMFiltr.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\cmdhlp.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\cmdguard.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\cmderd.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\cfwids.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\CdmDrvNt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\catflt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\BprotectEx.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\Bprotect.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bndef64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bnbasex64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\Bhbase.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\Bfmon.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\Bfilter.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bdvedisk.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\BdSpy.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bdsnm.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bdsflt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bdsandbox.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\BdNet.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bdfsfltr.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\BdfNdisf6.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bdfndisf.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bdelam.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\BdAgent.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bcftdi.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bcfsrm.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bcfilter.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bc_tdi_f.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bc_prt_f.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bc_pat_f.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bc_ngn.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bc_ip_f.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\bc_hash_f.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\BAPIDRV64.SYS
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\BAPIDRV.SYS
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avnetflt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avkmgr.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avipbb.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgwfpx.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgwfpa.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgtdix.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgtdia.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgrkx86.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgrkx64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgntflt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgmfx86.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgmfx64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avglogx.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgloga.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgldx86.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgldx64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgidsshimx.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgidsshimw8x.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgidshx.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgidsha.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgidsdriverx.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgidsdriverlx.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgidsdrivera.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgfwdx.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgfwd6x.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgfwd6a.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgdiskx.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgdiska.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgbootx.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avgboota.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avf.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avckf.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avchv.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avc3.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\avasdmft.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\aswNdis.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\arcawfp.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\apsp.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\APPFLT.SYS
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\apkhelper.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\AMonTDNt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\AMonTDLH.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\AMonLWLH.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\AMonHKNT.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\amm8660.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\amm8651.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\amm6460.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\ale7_nf64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\ale7_nf.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\ale_nf64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\ale_nf.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\ahnsze.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\AhnRghNt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\AhnRec2k.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\AhnFlt2k.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\afwcore.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\afw.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\abp470n5.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\abndis.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\360SelfProtection.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\360FsFlt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\360Camera64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\360Camera.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\360Box64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\360Box.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\360AvFlt.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\360AntiHacker64.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 _RSHD () C:\Windows\system32\Drivers\360AntiHacker.sys
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\VIPRE
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\Trend Micro
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\SpyShelter
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\panda4_1dn
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\Panda Security
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\OnlineArmor
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\nanoav
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\MicroWorld
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\McAfee File Lock
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\McAfee
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\Malwarebytes
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\LavasoftStatistics
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\Lavasoft
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\K7 Computing
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\IObit
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\housecall.guid.cache
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\ESET
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\eAcceleration
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\Comodo
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\BullGuard
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\Bitdefender
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\Baidu Security
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\Avira
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\Avg2014
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\AVAST Software
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\Avanquest
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\360WD
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\360SD
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\360safe
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Roaming\.clamwin
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\VIPRE
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\Trend Micro
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\SpyShelter
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\panda4_1dn
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\Panda Security
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\OnlineArmor
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\nanoav
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\MicroWorld
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\McAfee File Lock
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\McAfee
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\Malwarebytes
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\LavasoftStatistics
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\Lavasoft
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\K7 Computing
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\IObit
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\housecall.guid.cache
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\ESET
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\eAcceleration
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\Comodo
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\BullGuard
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\Bitdefender
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\Baidu Security
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\Avira
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\Avg2014
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\AVAST Software
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\Avanquest
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\360WD
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\360SD
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\360safe
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 __RSH () C:\Users\user\AppData\Local\.clamwin
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 ___SH () C:\Windows\VZT6nsdX.txt
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 ___SH () C:\Windows\PsfjH4KN.txt
    2015-03-20 19:18 - 2015-03-20 19:18 - 00000000 ___SH () C:\Windows\F5Ws94kb.txt
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\.clamwin
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\360
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\360SD
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Acceleration Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Agnitum
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\AhnLab
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Alwil Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Arcabit
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Avanquest
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\AVAST Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\AVG
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\AVG Nation toolbar
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Avira
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Baidu Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Bitdefender
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\BitGuard
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\BullGuard
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\BullGuard Ltd
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\CA
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\CheckPoint
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\ClamWin
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\COMODO
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Comodo Downloader
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Doctor Web
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\DrWeb
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\DrWeb Enterprise Suite
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\eAcceleration
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Emsisoft Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\eScan
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\ESET
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\F-Secure
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Filseclab
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Fortego Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\FRISK Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\G Data
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\G DATA Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\GFI
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\IKARUS
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\IObit
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Jetico
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\K7 Computing
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Kaspersky Lab
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Kerio
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Lavasoft
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Malware Defender
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Malwarebytes
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Malwarebytes Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Malwarebytes' Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\McAfee
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\McAfee Security Scan
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\McAfee.com
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\McAfeeMOBK
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Microsoft Security Client
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\MicroWorld
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\mks_vir_9
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Moon Secure Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\NANO Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\nanoav
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\nanolsp
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Norman
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Norton 360
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Norton Anti-Theft
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Norton AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Norton Internet Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\NortonInstaller
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Online Armor
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\OnlineArmor
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Padvish Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Panda Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Panda Security URL Filtering
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\pandasecuritytb
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\PC Tools Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Proland
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Proland Software
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\PSafe
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Quick Heal
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Rising
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Sophos
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Spybot - Search & Destroy
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Spybot - Search & Destroy 2
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\SpyShelter
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\SpyShelter Premium
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\StopSign
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\STOPzilla Optimizer
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\STOPzilla!
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\SUPERAntiSpyware
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Symantec AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Total Defense
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\TotalDefense
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Trend Micro
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Trend Micro Installer
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Trojan Remover
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\TrojanHunter
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\TrojanHunter 5.5
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\TrustPort
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\UnThreat
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\UnThreat AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Vba32
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\VIPRE
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Webroot
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Winalysis
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Windows Defender
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\WinPcap
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\WinRoute Pro
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\WRData
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\xCore Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Zillya Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Zillya Internet Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\.clamwin
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\360
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\360SD
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Acceleration Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Agnitum
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\AhnLab
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Alwil Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Arcabit
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Avanquest
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\AVAST Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\AVG
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\AVG Nation toolbar
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Avira
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Baidu Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Bitdefender
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\BitGuard
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\BullGuard
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\BullGuard Ltd
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\CA
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\CheckPoint
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\ClamWin
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\COMODO
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Comodo Downloader
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Doctor Web
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\DrWeb
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\DrWeb Enterprise Suite
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\eAcceleration
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Emsisoft Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\eScan
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\ESET
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\F-Secure
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Filseclab
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Fortego Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\FRISK Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\G Data
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\G DATA Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\GFI
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\IKARUS
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\IObit
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Jetico
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\K7 Computing
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Kaspersky Lab
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Kerio
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Lavasoft
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Malware Defender
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Malwarebytes
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Malwarebytes Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Malwarebytes' Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\McAfee
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\McAfee Security Scan
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\McAfee.com
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\McAfeeMOBK
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Microsoft Security Client
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\MicroWorld
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\mks_vir_9
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Moon Secure Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\NANO Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\nanoav
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\nanolsp
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Norman
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Norton 360
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Norton Anti-Theft
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Norton AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Norton Internet Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\NortonInstaller
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Online Armor
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\OnlineArmor
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Padvish Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Panda Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Panda Security URL Filtering
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\pandasecuritytb
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\PC Tools Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Proland
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Proland Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\PSafe
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Quick Heal
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Rising
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Sophos
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Spybot - Search & Destroy
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Spybot - Search & Destroy 2
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\SpyShelter
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\SpyShelter Premium
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\StopSign
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\STOPzilla Optimizer
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\STOPzilla!
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\SUPERAntiSpyware
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Symantec AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Total Defense
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\TotalDefense
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Trend Micro
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Trend Micro Installer
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Trojan Remover
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\TrojanHunter
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\TrojanHunter 5.5
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\TrustPort
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\UnThreat
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\UnThreat AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Vba32
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\VIPRE
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Webroot
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Winalysis
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Windows Defender
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\WinPcap
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\WinRoute Pro
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\WRData
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\xCore Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Zillya Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Zillya Internet Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Common Files\AVG Secure Search
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Common Files\Baidu
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Common Files\Bitdefender
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Common Files\BullGuard Ltd
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Common Files\COMODO
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Common Files\Doctor Web
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Common Files\eAcceleration
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Common Files\G Data
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Common Files\InfoWatch
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Common Files\McAfee
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Common Files\MicroWorld
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Common Files\Panda Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files\Common Files\TrustPort
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Common Files\AVG Secure Search
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Common Files\Baidu
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Common Files\Bitdefender
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Common Files\BullGuard Ltd
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Common Files\COMODO
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Common Files\Doctor Web
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Common Files\eAcceleration
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Common Files\G Data
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Common Files\InfoWatch
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Common Files\McAfee
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Common Files\MicroWorld
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Common Files\Panda Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\Program Files (x86)\Common Files\TrustPort
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\.clamwin
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\360safe
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\360SD
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\360WD
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\Avanquest
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\AVAST Software
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\Avg2014
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\Avira
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\Baidu Security
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\Bitdefender
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\BullGuard
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\Comodo
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\eAcceleration
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\ESET
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\housecall.guid.cache
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\IObit
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\IObit Apps
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\K7 Computing
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\Lavasoft
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\LavasoftStatistics
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\Malwarebytes
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\McAfee
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\McAfee File Lock
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\MicroWorld
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\nanoav
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\OnlineArmor
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\Panda Security
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\panda4_1dn
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\SpyShelter
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\Trend Micro
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Roaming\VIPRE
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\.clamwin
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\360safe
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\360SD
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\360WD
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\Avanquest
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\AVAST Software
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\Avg2014
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\Avira
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\Baidu Security
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\Bitdefender
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\BullGuard
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\Comodo
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\eAcceleration
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\ESET
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\housecall.guid.cache
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\IObit
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\IObit Apps
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\K7 Computing
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\Lavasoft
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\LavasoftStatistics
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\Malwarebytes
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\McAfee
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\McAfee File Lock
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\MicroWorld
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\nanoav
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\OnlineArmor
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\Panda Security
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\panda4_1dn
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\SpyShelter
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\Trend Micro
    2015-03-20 19:18 - 2015-03-20 19:18 - 0000000 __RSH () C:\Users\user\AppData\Local\VIPRE
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\.clamwin
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\360
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\360SD
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Acceleration Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Agnitum
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\AhnLab
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Alwil Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Arcabit
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Avanquest
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\AVAST Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\AVG
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\AVG Nation toolbar
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Avira
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Baidu Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Bitdefender
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\BitGuard
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\BullGuard
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\BullGuard Ltd
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\CA
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\CheckPoint
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\ClamWin
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\COMODO
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Comodo Downloader
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Doctor Web
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\DrWeb
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\DrWeb Enterprise Suite
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\eAcceleration
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Emsisoft Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\eScan
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\ESET
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\F-Secure
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Filseclab
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Fortego Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\FRISK Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\G Data
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\G DATA Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\GFI
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\IKARUS
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\IObit
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Jetico
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\K7 Computing
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Kaspersky Lab
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Kerio
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Lavasoft
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Malware Defender
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Malwarebytes
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Malwarebytes Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Malwarebytes' Anti-Malware
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\McAfee
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\McAfee Security Scan
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\McAfee.com
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\McAfeeMOBK
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Microsoft Security Client
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\MicroWorld
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\mks_vir_9
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Moon Secure Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\NANO Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\nanoav
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\nanolsp
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Norman
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Norton 360
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Norton Anti-Theft
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Norton AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Norton Internet Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\NortonInstaller
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Online Armor
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\OnlineArmor
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Padvish Antivirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Panda Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Panda Security URL Filtering
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\pandasecuritytb
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\PC Tools Security
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Proland
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Proland Software
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\PSafe
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Quick Heal
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Rising
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Sophos
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Spybot - Search & Destroy
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Spybot - Search & Destroy 2
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\SpyShelter
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\SpyShelter Premium
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\StopSign
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\STOPzilla Optimizer
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\STOPzilla!
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\SUPERAntiSpyware
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Symantec AntiVirus
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Total Defense
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\TotalDefense
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Trend Micro
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Trend Micro Installer
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Trojan Remover
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\TrojanHunter
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\TrojanHunter 5.5
    2015-03-28 17:57 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\TrustPort
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\UnThreat
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\UnThreat AntiVirus
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Vba32
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\VIPRE
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Webroot
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Winalysis
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Windows Defender
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\WinPcap
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\WinRoute Pro
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\WRData
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\xCore Software
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Zillya Antivirus
    2015-03-26 18:08 - 2015-04-03 17:30 - 0000000 __RSH () C:\ProgramData\Zillya Internet Security
    AlternateDataStreams: C:\Windows\Temp:1
    Reboot:
    • Запустите FRST, нажмите один раз на кнопку Fix и подождите. Программа создаст лог-файл (Fixlog.txt). Пожалуйста, прикрепите его в следующем сообщении!
    • Обратите внимание, что компьютер будет перезагружен.
    Microsoft MVP 2012-2016 Consumer Security
    Microsoft MVP 2016 Reconnect

  7. Это понравилось:


  8. #6
    Junior Member (OID) Репутация
    Регистрация
    03.04.2015
    Сообщений
    9
    Вес репутации
    11
    Лечение пациенту помогает уже без проблем открываются антивирусные сайты (без замены host файла), в том числе и virusinfo.info.
    Вложения Вложения

  9. #7
    Невымерший Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Аватар для thyrex
    Регистрация
    07.03.2009
    Адрес
    Soligorsk, Belarus
    Сообщений
    96,559
    Вес репутации
    3022
    Еще раз логи AVZ сделайте

    Сделайте лог ComboFix
    Microsoft MVP 2012-2016 Consumer Security
    Microsoft MVP 2016 Reconnect

  10. Это понравилось:


  11. #8
    Junior Member (OID) Репутация
    Регистрация
    03.04.2015
    Сообщений
    9
    Вес репутации
    11
    После проделанных действий из предыдущего поста удалось установить ESET NOD 32, экспресс сканирование нашло 1 зараженный файл и удалило его (C:\Program Files (x86)\Lexmark Fax Solutions\instmsia.exe = CAB = shfolder.dll - - OК). Ну и файлы что Вы просили.
    Вложения Вложения

  12. #9
    Невымерший Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Аватар для thyrex
    Регистрация
    07.03.2009
    Адрес
    Soligorsk, Belarus
    Сообщений
    96,559
    Вес репутации
    3022
    Скопируйте текст ниже в Блокнот и сохраните как файл с названием CFScript.txt в корень диска С
    Код:
    KillAll::
    
    File::
    c:\windows\system32\drivers\TFsFltX64.sys
    
    Driver::
    
    Folder::
    c:\programdata\TimeTasks
    c:\users\user\AppData\Roaming\eTranslator
    c:\users\user\AppData\Roaming\Homepager
    c:\users\user\AppData\Roaming\shoujizhushou
    c:\users\user\AppData\Roaming\yspkg5eua0il
    c:\users\user\AppData\Roaming\ppslog
    c:\users\user\AppData\Roaming\IQIYI Video
    c:\users\Public\QiYi
    c:\users\user\AppData\Roaming\kcleaner
    c:\users\user\AppData\Local\Kingsoft
    c:\programdata\TXQMPC
    c:\users\user\AppData\Roaming\Kingsoft
    C:\KRECYCLE
    c:\programdata\Kingsoft
    c:\program files (x86)\kingsoft
    c:\program files\Common Files\Tencent
    c:\program files (x86)\Common Files\Tencent
    c:\program files (x86)\Tencent
    c:\users\user\AppData\Roaming\Tencent
    c:\programdata\Tencent
    c:\program files (x86)\Application Assistance
    
    Registry::
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\Adaware_Installer.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\autoruns.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\autorunsc.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\avast_free_antivirus_setup_online.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\avast_internet_security_setup.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\avast_internet_security_setup_online.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\avast_premier_antivirus_setup_online.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\avira_family_protection_suite_ru.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\avira_ultimate_protection_suite_ru.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\BavPro_Setup_Mini_GL.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\bitdefender_tsecurity.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\BullGuardDownloaderBPP.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\cispremium_installer.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\ClamAVSetup.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\cureit.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\drweb-900-win-space.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\drweb-900-win.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\EmsisoftEmergencyKit.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\EmsisoftInternetSecuritySetup.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\ess_trial32_rus.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\F-SecureNetworkInstallerUpg.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\F-SecureNetworkInstaller_IS-ESTORE-TRIAL-GLOBAL_.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\HijackThis.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\HousecallLauncher.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\K7UltimateSecurity_installer.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\McAfeeSetup.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\md_setup_en.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\OnlineArmorSetup.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\OutpostSecuritySuiteProInstall.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\OutpostSecuritySuiteProInstall_x64.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\PadvishAntivirusFree.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\PandaCloudAntivirus.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\ProcessHacker.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\procexp.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\PSafeAntivirusSetup.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\registry-life-setup.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\SandboxieInstall.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\SecurityScan_Release.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\setup-vipre-internet-security-en-us-trial.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\SoftonicDownloader_for_panda-antivirus-pro.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\SpyShelter.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\stop-sign_install.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\TrojanHunterSetup.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\UnThreatProSetup.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\Vba32.Vista.exe]
    [-HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\image file execution options\Wireshark.exe]
    
    RegLock::
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\360rp]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\a2acc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\a2AntiMalware]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\A2DDA]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\a2injectiondriver]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\a2util]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AAVScan]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AAVService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ABConfSV]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ABFLT]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ABMainSV]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ABndisMP]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ABWFP]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\acssrv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AhnActNt]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AmFSM]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Amnpardaz Filter]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Amsp]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AntiVirMailService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AntiVirSchedulerService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AntiVirService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AntiVirWebService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Application Updater]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\apspDriver]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ArcaRemoteService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\aswUpdSv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ASZFltNt]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ATamptNt_V3IS80]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\avast! Firewall]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\avast! Mail Scanner]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\avast! Web Scanner]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\avas_service]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AVBackup]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Avg]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Avgfwfd]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\avgfws]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AVGIDSAgent]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AVGIDSDriver]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AVGIDSDriverl]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AVGIDSShim]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\avgwd]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AVKProxy]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AVKService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AVKWCtl]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AVP]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AVP15.0.0]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AVTasks2]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\AVUpdate]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BAVSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BcfilterMP]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BdApiUtil]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BdCameraProtect]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BdDesktopParental]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\bdftdif]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\bdfwfpf]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\bdfwfpf_pc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\bdselfpr]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Behavior Detection System]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BHDrvx64]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BHDrvx86]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BHipsSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Bnbase]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Bndef]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BNmon]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Browser Defender Update Service]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BsBackup]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BsBhvScan]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BsFileScan]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BsFire]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BsMailProxy]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BsMain]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BsScanner]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BsUpdate]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\CAAMSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\CaCCProvSP]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\CAISafe]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ccSchedulerSVC]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ccSettings_{3AC20362-8119-4C85-8CAC-8FC00AFA6B91}]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ccSet_N360]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ccSet_NIS]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\cleanhlp]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\cmdAgent]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\cmdvirth]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Core Mail Protection]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Core Scanning Server]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Core Scanning ServerEx]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\CSCrySec]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\CSObjectsSrv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\CSVirtualDiskDrv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Double Anti-Spy Task Manager]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\DrWebAVService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\DrWebEngine]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\DrWebFwSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\DrWebNetFilter]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\DrWebWfp]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\dsio]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\eac_notifysvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\eac_productsvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\econcealMP]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EconService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EhttpSrv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\eLoggerSvc6]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EMLSS]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EncDisk]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\eScan Monitor Service]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\eScan-trayicos]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\F-Secure Gatekeeper]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\F-Secure HIPS]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ffsmon]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\fildds]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\FileMonitor]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\filmfd]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\filppd]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\FPAVServer]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\fshoster]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\FSMA]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\fsni]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\FSORSPClient]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\fsvista]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\FWService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\GDBackupSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gddcd]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gddcv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\GDFwSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\GDMnIcpt]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\GDPkIcpt]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\GDScan]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\GDTdiInterceptor]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\GDTunerSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gdwfpcd]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gfi_lanss11_attservice]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\GLogin]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\gozer]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\GuardX]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\HomeNetSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\HyperVM]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\IDriverT]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\IDSVia64]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\IDSVix86]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\IMFservice]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ISFWEnt]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ISIPSEnt]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ISPIBEnt]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ISPrxEnt]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Jetico Personal Firewall server]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\K7CrvSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\K7EmlPxy]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\K7FWSrvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\K7PSSrvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\K7RTScan]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\K7SpmSrc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\K7TSMngr]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\KerioMailServer]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\khelperDriver]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\LavasoftAdAwareService11]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MBAMProtector]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MBAMScheduler]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MBAMService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\McAfee SiteAdvisor Service]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\McAPExe]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\McComponentHostService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\McMPFSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\McNaiAnn]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\McODS]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\mcpltsvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\McProxy]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\McShield]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\McTaskManager]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MeDCoreD_V3IS80]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\mfecore]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\mfefire]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\mfevtp]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Microsoft Antimalware]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\mksfwallf]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\mksidsa]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\mksidsf]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MksMonEn]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MksMonEv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MksMonFd]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\mks_services]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MOBKbackup]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MOBKFilter]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MpFilter]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MSK80Service]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MsMpSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MWAgent]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\mwfsmfltr]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\N360]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\nanoflt]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\nanokrn]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NanoServiceMain]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\nanosvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NASS]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NAVENG]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NAVEX15]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Ndiskio]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NETIMFLT01060034]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NETIMFLT01060039]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NETIMFLT01060044]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NGS]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NHS]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NIG]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NIS]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NisSrv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NNetSecC]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NNFSVC]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Norman NJeeves]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Norman ZANDA]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NovaShieldFilterDriver]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NovaShieldTDIDriver]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NPFSvc32]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NPFSvc32_Data]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NPROSEC]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NPROSECSVC]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\npsvc32]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\nregsec]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\nsesvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NTGUARD]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NUAA]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NvcMFlt]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\nvcoas]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\nvoy]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\OAcat]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\OADevice]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\oahlpXX]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Online Protection System]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Panda Software Controller]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PAVFNSVR]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PavPrSrv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PAVSRV]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PavTPK.sys]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PCTBD]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PCTCore]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\pctDS]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\pctEFA]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\pctgntdi]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\pctplsm]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PCTSD]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PROCMON20]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PROCMON23]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ProcObsrv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PSHost]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PSIMSVC]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PskSvcRetail]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PSUAService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Quick Update Service]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\qutmdserv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\RegFilter]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\rsdsys]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\RsMgrSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\RsRavMon]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SafeBox]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SAVAdminService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SAVService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SBAMSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SBFWIMCL]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SBFWIMCLMP]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SBPIMSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\scan]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ScanWscS]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Scheduler]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ScSecSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\sdAuxService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\sdCoreService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SDScannerService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SDUpdateService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SDWSCService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\semsrv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\semwebsrv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SepMasterService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ShldDrv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Sophos AutoUpdate Service]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Sophos Client Firewall]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Spyshelter]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SpyshelterKb]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SRTSP]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SRTSPX]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ssfwmonsvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\sstsmonsvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\StopSign Update Manager]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SvcOnlineArmor]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\swi_service]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\swi_update]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SymDS]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SymEFA]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SymIRON]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SymNetS]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\tdimapper]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Teefer2]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\TfFRegNt]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\TfProcNt]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\TMEBC]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\tmtdi]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\tpmgma_service]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\TPPFHOOK]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\TPSrv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\TSNxGService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\twssrv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\UmxEngine]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\UPDATESRV]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\UrlFilter]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\UTSvcManager3]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\V3 Service]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\V3Flt2K]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\V3Flu2k_V3IS80]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\V3IFt2K]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Vba32dNT]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Vba32ECM]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Vba32ifs]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Vba32Ldr]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Vba32mNT]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Vba32PP3]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Vba32Prot]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VbaControlAgent]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VBCoreNT.0]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VBFilt]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\viprecomsvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\vsmon]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VSSERV]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WinDefend]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WinRoute]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\wipesrv]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WRDRV]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WRSVC]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\xCoreFirewallSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\xCoreUpdateSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ZAPrivacyService]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ZhuDongFangYu]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ZillyaAVAuxSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\ZillyaAVCoreSvc]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Znf]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\zsc]
    
    DirLook::
    После сохранения переместите CFScript.txt на пиктограмму ComboFix.exe.

    Когда сохранится новый отчет ComboFix.txt, прикрепите его к сообщению.
    Microsoft MVP 2012-2016 Consumer Security
    Microsoft MVP 2016 Reconnect

  13. #10
    Junior Member (OID) Репутация
    Регистрация
    03.04.2015
    Сообщений
    9
    Вес репутации
    11
    Выполнил как Вы написали вот логи:
    Вложения Вложения

  14. #11
    Невымерший Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Аватар для thyrex
    Регистрация
    07.03.2009
    Адрес
    Soligorsk, Belarus
    Сообщений
    96,559
    Вес репутации
    3022
    Похоже порядок

    Удалите ComboFix
    Microsoft MVP 2012-2016 Consumer Security
    Microsoft MVP 2016 Reconnect

  15. Это понравилось:


  16. #12
    Junior Member (OID) Репутация
    Регистрация
    03.04.2015
    Сообщений
    9
    Вес репутации
    11
    Большое спасибо за помощь.

  • Уважаемый(ая) Дмитрий Соловьёв, наши специалисты оказали Вам всю возможную помощь по вашему обращению.

    В целях поддержания безопасности вашего компьютера настоятельно рекомендуем:

     

     

    Чтобы всегда быть в курсе актуальных угроз в области информационной безопасности и сохранять свой компьютер защищенным, рекомендуем следить за последними новостями ИТ-сферы портала Anti-Malware.ru:

     

     

    Anti-Malware VK

     

    Anti-Malware Telegram

     

     

    Надеемся больше никогда не увидеть ваш компьютер зараженным!

     

    Если Вас не затруднит, пополните пожалуйста нашу базу безопасных файлов.

  • Похожие темы

    1. Ответов: 7
      Последнее сообщение: 16.02.2015, 11:29
    2. win32.Sector.22 и другая зараза
      От ivanpop в разделе Помогите!
      Ответов: 6
      Последнее сообщение: 20.07.2013, 21:56
    3. DFH:HOST.corrupted + подозрения на трояны
      От Lynx в разделе Помогите!
      Ответов: 15
      Последнее сообщение: 03.06.2013, 13:44
    4. Ответов: 8
      Последнее сообщение: 22.02.2009, 06:13
    5. Win32/Pacex.GEN и другая зараза.
      От Garfeild в разделе Помогите!
      Ответов: 2
      Последнее сообщение: 22.02.2009, 03:25

    Свернуть/Развернуть Ваши права в разделе

    • Вы не можете создавать новые темы
    • Вы не можете отвечать в темах
    • Вы не можете прикреплять вложения
    • Вы не можете редактировать свои сообщения
    •  
    Page generated in 0.00598 seconds with 17 queries