Logfile of random's system information tool 1.09 (written by random/random) Run by Voor Kamer Pc at 2013-10-06 19:27:07 Microsoft Windows 7 Professional Service Pack 1 System drive C: has 94 GB (82%) free of 114 GB Total RAM: 1791 MB (56% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 19:27:22, on 6-10-2013 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v10.0 (10.00.9200.16686) Boot mode: Normal Running processes: C:\Windows\system32\taskhost.exe C:\Program Files\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe C:\Program Files\TeamViewer\Version8\TeamViewer.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe P:\Logitech Webcam\LWS\Webcam Software\LWS.exe C:\Program Files\Soluto\Soluto.exe C:\Program Files\Windows Sidebar\sidebar.exe P:\Winbar\WinBar.exe C:\Program Files\NETGEAR\WNA1100\WNA1100.exe P:\Logitech Webcam\LWS\Webcam Software\CameraHelperShell.exe C:\Program Files\NVIDIA Corporation\Display\nvtray.exe C:\Windows\system32\conhost.exe C:\Windows\system32\taskmgr.exe C:\Users\Voor Kamer Pc\Desktop\RSIT.exe C:\Program Files\trend micro\Voor Kamer Pc.exe C:\Windows\system32\DllHost.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - P:\Evernote\EvernoteIE.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll O4 - HKLM\..\Run: [Nvtmru] "C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" O4 - HKLM\..\Run: [LWS] P:\Logitech Webcam\LWS\Webcam Software\LWS.exe -hide O4 - HKLM\..\Run: [Soluto] c:\program files\soluto\soluto.exe /init O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [WinBar] P:\Winbar\WinBar.exe O4 - HKCU\..\Run: [CCleaner] "P:\Ccleaner\CCleaner.exe" /AUTO O4 - HKUS\S-1-5-21-981176375-1326606117-184809269-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser') O4 - HKUS\S-1-5-21-981176375-1326606117-184809269-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser') O4 - Global Startup: NETGEAR WNA1100 Genie.lnk = ? O8 - Extra context menu item: Afbeelding knippen - P:\Evernote\\EvernoteIERes\Clip.html?clipAction=4 O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Program Files\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm O8 - Extra context menu item: Kopieer selectie - P:\Evernote\\EvernoteIERes\Clip.html?clipAction=3 O8 - Extra context menu item: Kopieer URL - P:\Evernote\\EvernoteIERes\Clip.html?clipAction=0 O8 - Extra context menu item: Nieuwe notitie - P:\Evernote\\EvernoteIERes\NewNote.html O8 - Extra context menu item: Pagina opemen - P:\Evernote\\EvernoteIERes\Clip.html?clipAction=1 O9 - Extra button: @P:\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - P:\Evernote\\EvernoteIERes\AddNote.html O9 - Extra 'Tools' menuitem: @P:\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - P:\Evernote\\EvernoteIERes\AddNote.html O10 - Unknown file in Winsock LSP: c:\program files\nvidia corporation\networkaccessmanager\bin32\nvlsp.dll O10 - Unknown file in Winsock LSP: c:\program files\nvidia corporation\networkaccessmanager\bin32\nvlsp.dll O10 - Unknown file in Winsock LSP: c:\program files\nvidia corporation\networkaccessmanager\bin32\nvlsp.dll O10 - Unknown file in Winsock LSP: c:\program files\nvidia corporation\networkaccessmanager\bin32\nvlsp.dll O10 - Unknown file in Winsock LSP: c:\program files\nvidia corporation\networkaccessmanager\bin32\nvlsp.dll O10 - Unknown file in Winsock LSP: c:\program files\nvidia corporation\networkaccessmanager\bin32\nvlsp.dll O10 - Unknown file in Winsock LSP: c:\program files\nvidia corporation\networkaccessmanager\bin32\nvlsp.dll O10 - Unknown file in Winsock LSP: c:\program files\nvidia corporation\networkaccessmanager\bin32\nvlsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O22 - SharedTaskScheduler: FencesShellExt - {1984DD45-52CF-49cd-AB77-18F378FEA264} - P:\Fences\Stardock\Fences\FencesMenu.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: JumpStart Wi-Fi Protected Setup (jswpsapi) - Atheros Communications, Inc. - C:\Program Files\NETGEAR\WNA1100\jswpsapi.exe O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: Macrium Reflect Image Mounting Service (ReflectService.exe) - Unknown owner - C:\Program Files\Macrium\Reflect\ReflectService.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - P:\Skype\Updater\Updater.exe O23 - Service: Soluto Launcher Service (SolutoLauncherService) - Soluto - C:\Program Files\Soluto\SolutoLauncherService.exe O23 - Service: Soluto Remote Service (SolutoRemoteService) - GlavSoft LLC. - C:\Program Files\Soluto\SolutoRemoteService.exe O23 - Service: Soluto PCGenome Core Service (SolutoService) - Soluto - C:\Program Files\Soluto\SolutoService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe O23 - Service: WSWNA1100 - Unknown owner - C:\Program Files\NETGEAR\WNA1100\WifiSvc.exe -- End of file - 7656 bytes ======Scheduled tasks folder====== C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}] Norton Identity Protection - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll [2013-05-30 509776] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}] Norton Vulnerability Protection - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL [2012-09-06 387040] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-09-12 462248] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}] Evernote extension - P:\Evernote\EvernoteIE.dll [2013-09-09 589664] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-09-12 171944] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll [2013-05-30 509776] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "Nvtmru"=C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-08-27 1028896] "LWS"=P:\Logitech Webcam\LWS\Webcam Software\LWS.exe [2012-09-13 204136] "Soluto"=c:\program files\soluto\soluto.exe [2013-09-02 1231424] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016] "WinBar"=P:\Winbar\WinBar.exe [2009-09-29 271360] "CCleaner"=P:\Ccleaner\CCleaner.exe [2013-09-19 3905304] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-09-05 958576] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleChromeAutoLaunch_1D831ACA36D5778E42B1897637429C17] C:\Program Files\Google\Chrome\Application\chrome.exe [2013-10-03 844752] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype] P:\Skype\Phone\Skype.exe [2013-07-25 20684656] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Voor Kamer Pc^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Logitech . Productregistratie.lnk] P:\LOGITE~1\Ereg\eReg.exe [2009-11-16 517384] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup NETGEAR WNA1100 Genie.lnk - C:\Program Files\NETGEAR\WNA1100\WNA1100.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler] FencesShellExt - {1984DD45-52CF-49cd-AB77-18F378FEA264} - P:\Fences\Stardock\Fences\FencesMenu.dll [2010-06-22 202088] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CleanHlp] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CleanHlp.sys] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDrives"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDrives"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.i420"=lvcodec2.dll "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "vidc.cvid"=iccvid.dll "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv "MSVideo8"=VfWWDM32.dll "MSVideo"=vfwwdm32.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "aux"=wdmaud.drv "wave3"=wdmaud.drv "midi3"=wdmaud.drv "mixer3"=wdmaud.drv "wave4"=wdmaud.drv "midi4"=wdmaud.drv "mixer4"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 ======List of files/folders created in the last 1 month====== 2013-10-06 19:24:00 ----D---- C:\Program Files\trend micro 2013-10-06 19:23:57 ----D---- C:\rsit 2013-10-05 14:17:05 ----D---- C:\ProgramData\McAfee 2013-10-02 22:53:37 ----D---- C:\Users\Voor Kamer Pc\AppData\Roaming\OpenOffice 2013-09-28 18:31:08 ----SHD---- C:\$RECYCLE.BIN 2013-09-21 19:04:45 ----A---- C:\TDSSKiller.2.9.2.0_21.09.2013_19.04.45_log.txt 2013-09-21 18:52:53 ----D---- C:\Windows\ERUNT 2013-09-21 18:47:30 ----D---- C:\Windows\temp 2013-09-21 18:47:28 ----A---- C:\ComboFix.txt 2013-09-17 22:23:20 ----A---- C:\Windows\system32\nvopencl.dll 2013-09-17 22:23:20 ----A---- C:\Windows\system32\nvoglv32.dll 2013-09-17 22:23:20 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys 2013-09-17 22:23:18 ----A---- C:\Windows\system32\NvIFR.dll 2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvhdap32.dll 2013-09-17 22:23:16 ----A---- C:\Windows\system32\NvFBC.dll 2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvdispgenco3232723.dll 2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvdispco3232723.dll 2013-09-17 22:23:16 ----A---- C:\Windows\system32\drivers\nvhda32v.sys 2013-09-17 22:23:14 ----A---- C:\Windows\system32\nvcuvid.dll 2013-09-17 22:23:14 ----A---- C:\Windows\system32\nvcuvenc.dll 2013-09-17 22:23:14 ----A---- C:\Windows\system32\nvcuda.dll 2013-09-17 22:23:02 ----A---- C:\Windows\system32\nvcompiler.dll 2013-09-17 22:23:02 ----A---- C:\Windows\system32\nvapo32v.dll 2013-09-17 00:41:22 ----A---- C:\Windows\system32\NVStWiz.exe 2013-09-16 22:53:44 ----A---- C:\Windows\wininit.ini 2013-09-15 22:17:16 ----D---- C:\ProgramData\Spybot - Search & Destroy 2013-09-15 22:16:01 ----D---- C:\Program Files\Spybot - Search & Destroy 2 2013-09-14 04:21:10 ----D---- C:\Windows\pss 2013-09-14 04:17:43 ----D---- C:\Users\Voor Kamer Pc\AppData\Roaming\addpcs 2013-09-14 04:12:29 ----D---- C:\AdwCleaner 2013-09-14 02:53:17 ----D---- C:\Users\Voor Kamer Pc\AppData\Roaming\Skype 2013-09-14 02:53:05 ----D---- C:\Program Files\Common Files\Skype 2013-09-14 02:27:32 ----D---- C:\Users\Voor Kamer Pc\AppData\Roaming\Malwarebytes 2013-09-14 02:27:18 ----D---- C:\ProgramData\Malwarebytes 2013-09-14 02:27:16 ----A---- C:\Windows\system32\drivers\mbam.sys 2013-09-13 23:00:16 ----A---- C:\Windows\system32\jscript.dll 2013-09-13 23:00:15 ----A---- C:\Windows\system32\jscript9.dll 2013-09-13 23:00:14 ----A---- C:\Windows\system32\jsproxy.dll 2013-09-13 23:00:14 ----A---- C:\Windows\system32\ieui.dll 2013-09-13 23:00:14 ----A---- C:\Windows\system32\iesetup.dll 2013-09-13 23:00:13 ----A---- C:\Windows\system32\urlmon.dll 2013-09-13 23:00:13 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe 2013-09-13 23:00:13 ----A---- C:\Windows\system32\msfeeds.dll 2013-09-13 23:00:13 ----A---- C:\Windows\system32\iesysprep.dll 2013-09-13 23:00:13 ----A---- C:\Windows\system32\iernonce.dll 2013-09-13 23:00:13 ----A---- C:\Windows\system32\ie4uinit.exe 2013-09-13 23:00:12 ----A---- C:\Windows\system32\iertutil.dll 2013-09-13 23:00:09 ----A---- C:\Windows\system32\wininet.dll 2013-09-13 23:00:09 ----A---- C:\Windows\system32\ieframe.dll 2013-09-13 23:00:05 ----A---- C:\Windows\system32\mshtml.dll 2013-09-13 22:33:18 ----A---- C:\Windows\system32\shell32.dll 2013-09-13 22:33:18 ----A---- C:\Windows\system32\shdocvw.dll 2013-09-13 22:33:16 ----A---- C:\Windows\system32\win32k.sys 2013-09-13 22:33:16 ----A---- C:\Windows\system32\KernelBase.dll 2013-09-13 22:33:16 ----A---- C:\Windows\system32\kernel32.dll 2013-09-13 22:33:16 ----A---- C:\Windows\system32\drivers\ataport.sys 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-09-13 22:33:15 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-09-13 22:33:15 ----A---- C:\Windows\system32\winsrv.dll 2013-09-13 22:33:15 ----A---- C:\Windows\system32\conhost.exe 2013-09-12 03:14:24 ----N---- C:\bootsqm.dat 2013-09-12 02:23:26 ----D---- C:\Program Files\Common Files\Western Digital 2013-09-12 02:23:25 ----D---- C:\ProgramData\Western Digital 2013-09-12 02:23:25 ----D---- C:\Program Files\Western Digital 2013-09-12 02:22:50 ----D---- C:\ProgramData\Package Cache 2013-09-12 01:58:03 ----D---- C:\Windows\erdnt 2013-09-12 01:30:25 ----A---- C:\Windows\system32\nvaudcap32v.dll 2013-09-12 01:30:25 ----A---- C:\Windows\system32\drivers\nvvad32v.sys 2013-09-12 01:22:35 ----A---- C:\Windows\system32\drivers\Soluto.sys 2013-09-12 01:22:34 ----D---- C:\Windows\system32\DRVSTORE 2013-09-12 01:22:33 ----D---- C:\Program Files\Soluto 2013-09-12 01:20:33 ----D---- C:\ProgramData\Skype 2013-09-12 01:17:50 ----A---- C:\Windows\system32\nvStreaming.exe 2013-09-12 01:17:14 ----D---- C:\ProgramData\Soluto 2013-09-12 01:15:23 ----D---- C:\Program Files\Macrium 2013-09-12 01:09:42 ----D---- C:\ProgramData\Macrium 2013-09-12 01:07:19 ----D---- C:\ProgramData\LogiShrd 2013-09-12 01:07:05 ----D---- C:\Users\Voor Kamer Pc\AppData\Roaming\Leadertech 2013-09-12 00:47:58 ----D---- C:\Users\Voor Kamer Pc\AppData\Roaming\vlc 2013-09-12 00:45:53 ----D---- C:\Users\Voor Kamer Pc\AppData\Roaming\WinBar 2013-09-12 00:45:52 ----D---- C:\ProgramData\WinBar 2013-09-12 00:41:10 ----D---- C:\ProgramData\Oracle 2013-09-12 00:40:38 ----D---- C:\Program Files\Common Files\Java 2013-09-12 00:40:36 ----A---- C:\Windows\system32\javaws.exe 2013-09-12 00:40:30 ----A---- C:\Windows\system32\WindowsAccessBridge.dll 2013-09-12 00:40:30 ----A---- C:\Windows\system32\javaw.exe 2013-09-12 00:40:30 ----A---- C:\Windows\system32\java.exe 2013-09-12 00:40:22 ----D---- C:\Program Files\Java 2013-09-12 00:34:19 ----D---- C:\Program Files\GPLGS 2013-09-12 00:33:48 ----D---- C:\Program Files\Acro Software 2013-09-12 00:33:48 ----A---- C:\Windows\system32\cpwmon2k.dll 2013-09-12 00:31:15 ----D---- C:\Windows\system32\Adobe 2013-09-12 00:30:23 ----A---- C:\Windows\system32\FlashPlayerApp.exe 2013-09-12 00:30:22 ----D---- C:\Windows\system32\Macromed 2013-09-12 00:15:43 ----D---- C:\Program Files\Common Files\Adobe AIR 2013-09-12 00:15:29 ----D---- C:\Users\Voor Kamer Pc\AppData\Roaming\Macromedia 2013-09-12 00:11:53 ----D---- C:\Program Files\Common Files\Adobe 2013-09-12 00:11:53 ----D---- C:\Program Files\Adobe 2013-09-12 00:11:31 ----D---- C:\ProgramData\Adobe 2013-09-11 23:52:08 ----D---- C:\Users\Voor Kamer Pc\AppData\Roaming\Media Player Classic 2013-09-11 23:46:35 ----A---- C:\Windows\system32\unrar.dll 2013-09-11 23:46:31 ----D---- C:\Program Files\K-Lite Codec Pack ======List of files/folders modified in the last 1 month====== 2013-10-06 19:24:00 ----RD---- C:\Program Files 2013-10-06 19:05:23 ----D---- C:\Windows\System32 2013-10-06 19:05:23 ----D---- C:\Windows\inf 2013-10-06 19:05:23 ----A---- C:\Windows\system32\PerfStringBackup.INI 2013-10-06 19:03:49 ----D---- C:\Windows\SoftwareDistribution 2013-10-06 19:03:03 ----D---- C:\Windows 2013-10-06 19:02:19 ----SHD---- C:\System Volume Information 2013-10-06 19:00:53 ----D---- C:\ProgramData\NVIDIA 2013-10-06 18:55:08 ----D---- C:\Windows\system32\config 2013-10-05 14:18:14 ----D---- C:\ProgramData 2013-10-02 22:51:06 ----SHD---- C:\Windows\Installer 2013-10-02 22:51:05 ----RSD---- C:\Windows\assembly 2013-10-02 22:50:08 ----RSD---- C:\Windows\Fonts 2013-10-02 22:46:48 ----D---- C:\Windows\winsxs 2013-10-02 22:46:43 ----D---- C:\Program Files\Common Files\microsoft shared 2013-10-02 22:02:34 ----D---- C:\Windows\system32\drivers 2013-10-02 21:41:47 ----D---- C:\Users\Voor Kamer Pc\AppData\Roaming\BitTorrent 2013-09-28 19:45:51 ----D---- C:\Windows\system32\catroot 2013-09-28 19:45:49 ----D---- C:\Windows\system32\DriverStore 2013-09-28 18:57:04 ----SD---- C:\Users\Voor Kamer Pc\AppData\Roaming\Microsoft 2013-09-28 18:21:28 ----D---- C:\Windows\system32\catroot2 2013-09-28 17:42:51 ----D---- C:\Windows\system32\Tasks 2013-09-21 18:45:28 ----A---- C:\Windows\system.ini 2013-09-21 18:45:19 ----D---- C:\Windows\system32\drivers\etc 2013-09-21 18:41:58 ----D---- C:\Windows\AppPatch 2013-09-21 18:41:57 ----D---- C:\Program Files\Common Files 2013-09-21 17:37:34 ----D---- C:\Program Files\NVIDIA Corporation 2013-09-21 17:37:23 ----D---- C:\temp 2013-09-17 22:23:26 ----A---- C:\Windows\system32\OpenCL.dll 2013-09-17 22:23:24 ----A---- C:\Windows\system32\nvwgf2um.dll 2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvd3dum.dll 2013-09-17 22:23:02 ----A---- C:\Windows\system32\nvapi.dll 2013-09-17 00:49:29 ----HD---- C:\Program Files\InstallShield Installation Information 2013-09-16 22:53:47 ----SD---- C:\ProgramData\Microsoft 2013-09-14 04:19:24 ----D---- C:\Windows\Panther 2013-09-14 04:19:24 ----D---- C:\Windows\Logs 2013-09-14 04:17:54 ----D---- C:\Windows\debug 2013-09-14 02:43:28 ----D---- C:\Windows\TAPI 2013-09-14 00:23:11 ----D---- C:\Windows\Microsoft.NET 2013-09-13 23:02:29 ----D---- C:\Windows\system32\nl-NL 2013-09-13 23:02:29 ----D---- C:\Program Files\Internet Explorer 2013-09-13 22:59:51 ----D---- C:\Windows\system32\MRT 2013-09-13 22:58:04 ----A---- C:\Windows\system32\MRT.exe 2013-09-12 08:28:40 ----A---- C:\Windows\system32\nvsvc.dll 2013-09-12 08:28:40 ----A---- C:\Windows\system32\nvcpl.dll 2013-09-12 08:28:37 ----A---- C:\Windows\system32\nvvsvc.exe 2013-09-12 08:28:37 ----A---- C:\Windows\system32\nvsvcr.dll 2013-09-12 08:28:37 ----A---- C:\Windows\system32\nvshext.dll 2013-09-12 08:28:36 ----A---- C:\Windows\system32\nvmctray.dll 2013-09-12 03:43:23 ----D---- C:\Windows\Tasks 2013-09-12 03:43:23 ----D---- C:\Windows\system32\wfp 2013-09-12 03:43:23 ----D---- C:\Windows\system32\wbem 2013-09-12 03:43:23 ----D---- C:\Windows\system32\drivers\UMDF 2013-09-12 03:42:33 ----D---- C:\Windows\system32\CodeIntegrity 2013-09-12 03:42:32 ----D---- C:\Windows\AppCompat 2013-09-12 03:42:31 ----D---- C:\ProgramData\Norton 2013-09-12 03:42:25 ----D---- C:\Windows\registration 2013-09-12 03:42:15 ----RD---- C:\Users 2013-09-12 01:16:30 ----D---- C:\Boot 2013-09-12 01:07:25 ----D---- C:\Program Files\Common Files\logishrd 2013-09-12 00:40:24 ----A---- C:\Windows\system32\npDeployJava1.dll 2013-09-12 00:40:24 ----A---- C:\Windows\system32\deployJava1.dll 2013-09-12 00:15:47 ----D---- C:\Users\Voor Kamer Pc\AppData\Roaming\Adobe ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 nvstor32;nvstor32; C:\Windows\system32\DRIVERS\nvstor32.sys [2009-08-04 213024] R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368] R0 pssnap;Paramount Software Snapshot Filter; C:\Windows\system32\DRIVERS\pssnap.sys [2013-06-28 16504] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440] R0 Soluto;Soluto; C:\Windows\system32\DRIVERS\Soluto.sys [2013-09-02 51144] R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NIS\1404000.028\SYMDS.SYS [2013-05-20 367704] R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NIS\1404000.028\SYMEFA.SYS [2013-05-22 934488] R1 BHDrvx86;BHDrvx86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\BASHDefs\20130924.001\BHDrvx86.sys [2013-09-24 1097304] R1 ccSet_NIS;Norton Internet Security Settings Manager; C:\Windows\system32\drivers\NIS\1404000.028\ccSetx86.sys [2013-04-15 134744] R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096] R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2013-09-03 376920] R1 IDSVix86;IDSVix86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\IPSDefs\20131004.001\IDSvix86.sys [2013-09-03 392792] R1 jswpslwf;JumpStart Wireless Filter Driver; C:\Windows\system32\DRIVERS\jswpslwf.sys [2008-05-15 20384] R1 SRTSPX;Symantec Real Time Storage Protection (PEL); C:\Windows\system32\drivers\NIS\1404000.028\SRTSPX.SYS [2013-03-04 32344] R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NIS\1404000.028\Ironx86.SYS [2012-09-06 175264] R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\system32\drivers\NIS\1404000.028\SYMNETS.SYS [2013-04-24 339544] R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128] R3 athur;Atheros AR9271 Wireless Network Adapter Service; C:\Windows\system32\DRIVERS\athur.sys [2010-10-11 1564160] R3 cpuz136;cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x32.sys [] R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-09-03 108120] R3 LVRS;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs.sys [2012-09-21 310504] R3 LVUVC;Logitech HD Webcam C270(UVC); C:\Windows\system32\DRIVERS\lvuvc.sys [2012-09-21 4261224] R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20131005.007\NAVENG.SYS [2013-09-03 93272] R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20131005.007\NAVEX15.SYS [2013-09-03 1612376] R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2013-09-17 161056] R3 NVNET;NVIDIA nForce Ethernet Driver; C:\Windows\system32\DRIVERS\nvmf6232.sys [2010-08-12 298216] R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2009-06-29 17920] R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad32v.sys [2013-08-20 33568] R3 SRTSP;Symantec Real Time Storage Protection; C:\Windows\system32\drivers\NIS\1404000.028\SRTSP.SYS [2013-05-15 603224] R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2013-09-04 142496] R3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam.sys [2011-02-16 11520] S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704] S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720] S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888] S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336] S3 catchme;catchme; \??\C:\Users\VOORKA~1\AppData\Local\Temp\catchme.sys [] S3 cleanhlp;cleanhlp; \??\P:\Emsisoft\Run\cleanhlp32.sys [2013-09-14 50200] S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464] S3 NVENETFD;NVIDIA nForce-netwerkcontroller; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-14 347264] S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848] S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632] S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304] S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032] S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 49664] S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 27136] S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328] S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736] S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360] S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-09-05 65640] R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992] R2 ForceWare Intelligent Application Manager (IAM);ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [2009-08-10 387616] R2 NIS;Norton Internet Security; C:\Program Files\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe [2013-05-20 144368] R2 nSvcIp;ForceWare IP service; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [2009-08-10 178720] R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-08-27 14573856] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-09-12 662816] R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-08-27 2155296] R2 ReflectService.exe;Macrium Reflect Image Mounting Service; C:\Program Files\Macrium\Reflect\ReflectService.exe [2013-09-25 368760] R2 SolutoLauncherService;Soluto Launcher Service; C:\Program Files\Soluto\SolutoLauncherService.exe [2013-09-02 166976] R2 SolutoService;Soluto PCGenome Core Service; C:\Program Files\Soluto\SolutoService.exe [2013-09-02 819776] R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-09-12 414496] R2 TeamViewer8;TeamViewer 8; C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe [2013-09-12 5071712] R2 WSWNA1100;WSWNA1100; C:\Program Files\NETGEAR\WNA1100\WifiSvc.exe [2011-07-28 297440] R3 SolutoRemoteService;Soluto Remote Service; C:\Program Files\Soluto\SolutoRemoteService.exe [2013-09-02 1667584] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] S2 SkypeUpdate;Skype Updater; P:\Skype\Updater\Updater.exe [2013-07-25 162672] S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992] S3 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160] S3 gupdate;Google Update-service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-09-04 116648] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-09-04 116648] S3 jswpsapi;JumpStart Wi-Fi Protected Setup; C:\Program Files\NETGEAR\WNA1100\jswpsapi.exe [2010-03-22 960992] S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-09-04 1343400] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] -----------------EOF-----------------