Logfile of random's system information tool 1.09 (written by random/random) Run by Administrator at 2014-02-27 10:09:29 Microsoft Windows XP Professional Service Pack 3 System drive C: has 181 GB (76%) free of 238 GB Total RAM: 959 MB (58% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 10:09:40, on 27/02/2014 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\Program Files\IObit\Advanced SystemCare 7\ASCService.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\AVAST Software\Avast\AvastSvc.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\System32\SCardSvr.exe C:\WINDOWS\system32\WgaTray.exe C:\Program Files\Microsoft\BingBar\BBSvc.EXE C:\Program Files\Microsoft\BingBar\SeaPort.EXE C:\WINDOWS\Explorer.EXE C:\Program Files\Java\jre7\bin\jqs.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\wscntfy.exe C:\Program Files\IObit\Advanced SystemCare 7\RealTimeProtector.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\alg.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\AVAST Software\Avast\AvastUI.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe C:\Documents and Settings\Administrator\Bureaublad\RSIT.exe C:\WINDOWS\system32\wbem\wmiprvse.exe C:\Program Files\trend micro\Administrator.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.bing.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = x R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen O2 - BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O2 - BHO: ChromeFrame BHO - {ECB3C477-1A0A-44BD-BB57-78F9EFE34FA7} - C:\Program Files\Google\Chrome Frame\Application\32.0.1700.107\npchrome_frame.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O3 - Toolbar: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Advanced SystemCare 7] "C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user') O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll O16 - DPF: Garmin Communicator Plug-In - https://static.garmincdn.com/gcp/ie/4.0.3.0/GarminAxControl_32.CAB O16 - DPF: {05317530-B882-449D-9421-18D94FA3ED34} (OSInfo Control) - http://w3.sis.com/ocis/OSInfo.cab O16 - DPF: {16095503-786F-4097-AED6-5D567A26D760} (SiS_OCX Control) - http://w3.sis.com/ocis/SiSAutodetectNT.cab O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} - http://belgacom.extrafilm.be/ImageUploader5.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1268993310125 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1358786106531 O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab O16 - DPF: {B60CEFE7-2DD0-4B78-951A-509D951DB1F0} - http://belgacom.extrafilm.be/ExtraFilmUploader6.cab O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_intel_4.5.13.0.cab O18 - Protocol: gcf - {9875BFAF-B04D-445E-8A69-BE36838CDE3E} - C:\Program Files\Google\Chrome Frame\Application\32.0.1700.107\npchrome_frame.dll O18 - Protocol: skype-ie-addon-data - (no CLSID) - (no file) O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe O23 - Service: ArcSoft Exchange Service (ADExchange) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\esinter\Bin\eservutil.exe O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Advanced SystemCare Service 7 (AdvancedSystemCareService7) - IObit - C:\Program Files\IObit\Advanced SystemCare 7\ASCService.exe O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: EaseUS Agent Service (EaseUS Agent) - CHENGDU YIWO Tech Development Co., Ltd - C:\Program Files\EaseUS\Todo Backup\bin\Agent.exe O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe O23 - Service: GSService - Unknown owner - C:\WINDOWS\system32\GSService.exe O23 - Service: Guard Agent Service (Guard Agent) - CHENGDU YIWO Tech Development Co., Ltd - C:\Program Files\EaseUS\Todo Backup\bin\GuardAgent.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: HDD Information Service (HDDSvc) - AltrixSoft (http://www.altrixsoft.com/) - C:\Program Files\Common Files\AltrixSoft\HDDInfoService\HDDSvc.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: Ocster Backup (ocster_backup) - Unknown owner - c:\Program Files\Ocster Backup\bin\backupService-ox.exe O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files\WinPcap\rpcapd.exe O23 - Service: WACService - Wondershare - C:\Program Files\Wondershare\Wondershare Application Center\WACService.exe O24 - Desktop Component AutorunsDisabled: (no name) - (no file) -- End of file - 9043 bytes ======Scheduled tasks folder====== C:\WINDOWS\tasks\Adobe Flash Player Updater.job C:\WINDOWS\tasks\ASO-AutoCheckUpdate7Days.job C:\WINDOWS\tasks\ASO-OneClickCare.job C:\WINDOWS\tasks\ASOService.job C:\WINDOWS\tasks\avast! Emergency Update.job C:\WINDOWS\tasks\GlaryUpdate 4.job C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job C:\WINDOWS\tasks\MP Scheduled Scan.job C:\WINDOWS\tasks\SmartDefrag3_Update.job C:\WINDOWS\tasks\videopadDowngrade.job C:\WINDOWS\tasks\videopadShakeIcon.job =========Mozilla firefox========= ProfilePath - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\p798j7lq.default prefs.js - "browser.startup.homepage" - "x" prefs.js - "keyword.URL" - "http://www.google.com/search?ie=UTF-8&oe=utf-8&q=" "wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF "fmconverter@gmail.com"=C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Firefox\ [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 12.0.0.70 Plugin "Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_70.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer] "Description"=Adobe Shockwave Player "Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw_1207148.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX] "Description"=Canon Easy-PhotoPrint EX "Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@ei.MyScrapNook_12.com/Plugin] "Description"=My Scrap Nook Plugin "Path"= [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@IObit.com/np_Asc_Plugin] "Description"=Advanced SystemCare Surfing Protection "Path"=C:\Program Files\IObit\Surfing Protection\BrowerProtect\np_Asc_plugin.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.51.2] "Description"=Java™ Deployment Toolkit "Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/DownloadManager,version=1.1] "Description"=Microsoft Download Manager "Path"=C:\WINDOWS\ [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416] "Description"=WLPG Install MIME type "Path"= [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5] "Description"=Windows Presentation Foundation plug-in for Mozilla browsers "Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.7] "Description"=VLC Multimedia Plugin "Path"= [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.0] "Description"=VLC Multimedia Plugin "Path"= [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.1] "Description"=VLC Multimedia Plugin "Path"= [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader] "Description"=Handles PDFs in-place in Firefox "Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll C:\Program Files\Mozilla Firefox\extensions\ belgiumeid@eid.belgium.be {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\p798j7lq.default\extensions\ inspector@mozilla.org ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}] ExplorerWnd Helper - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll [2014-01-14 752960] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-01-17 462760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}] avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-24 1143168] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-12-15 194128] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}] Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll [2013-10-09 1001936] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-01-17 171944] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ECB3C477-1A0A-44BD-BB57-78F9EFE34FA7}] ChromeFrame BHO - C:\Program Files\Google\Chrome Frame\Application\32.0.1700.107\npchrome_frame.dll [2014-02-02 2215240] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-12-15 194128] {10921475-03CE-4E04-90CE-E2E7EF20C814} - ExplorerWnd Helper - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll [2014-01-14 752960] {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-24 1143168] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-01-24 3767096] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360] "Advanced SystemCare 7"=C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe [2013-12-18 2285344] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ProcessGovernor] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundFrost Service] [] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon] C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2009-01-30 133632] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"=C:\PROGRA~1\Windows Defender\MpShHook.dll [2006-11-03 83224] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa] "authentication packages"=msv1_0 nwprovau [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=msapsspc.dll, schannel.dll, msnsspc.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CleanHlp] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CleanHlp.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "undockwithoutlogon"=1 "DisableStartupSound"=1 "ShutdownWithoutLogon"=0 "NoDispCPL"=0 "NoDispSettingsPage"=0 "NoDispScrSavPage"=0 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=221 "NoInstrumentation"=1 "NoResolveSearch"=1 "NoResolveTrack"=1 "NoUserNameInStartMenu"=1 "StartMenuLogOff"=1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "HonorAutoRunSetting"=1 "NoResolveSearch"=1 "NoDriveTypeAutoRun"=323 "NoResolveTrack"=1 "NoViewContextMenu"=0 "NoFileAssociate"=0 "NoFind"=0 "NoRun"=0 "NoClose"=0 "StartMenuLogoff"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "C:\WINDOWS\system32\dxdiag.exe"="C:\WINDOWS\system32\dxdiag.exe:*:Disabled:Microsoft DirectX Diagnostic Tool" "C:\WINDOWS\system32\dpnsvr.exe"="C:\WINDOWS\system32\dpnsvr.exe:*:Disabled:Microsoft DirectPlay8 Server" "C:\Program Files\EASEUS\Todo Backup\bin\Agent.exe"="C:\Program Files\EASEUS\Todo Backup\bin\Agent.exe:*:Enabled:Agent.exe" "C:\Program Files\EASEUS\Todo Backup\bin\TbService.exe"="C:\Program Files\EASEUS\Todo Backup\bin\TbService.exe:*:Enabled:TbService.exe" "C:\Program Files\EASEUS\Todo Backup\bin\TBConsoleUI.exe"="C:\Program Files\EASEUS\Todo Backup\bin\TBConsoleUI.exe:*:Enabled:Local TBConsoleUI.exe" "C:\Documents and Settings\Administrator\Application Data\Dropbox\bin\Dropbox.exe"="C:\Documents and Settings\Administrator\Application Data\Dropbox\bin\Dropbox.exe:*:Enabled:Dropbox" "C:\Program Files\Leawo\DVD Creator\LoadingScreen.exe"="C:\Program Files\Leawo\DVD Creator\LoadingScreen.exe:*:Enabled:Leawo Software" "C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe"="C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe:*:Enabled:WebKit" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "midimapper"=midimap.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msadpcm"=msadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.trspch"=tssoft32.acm "vidc.cvid"=iccvid.dll "vidc.I420"=msh263.drv "vidc.iv31"=ir32_32.dll "vidc.iv32"=ir32_32.dll "vidc.iyuv"=iyuv_32.dll "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvu9"=tsbyuv.dll "vidc.yvyu"=msyuv.dll "wavemapper"=msacm32.drv "msacm.msg723"=msg723.acm "vidc.M263"=msh263.drv "vidc.M261"=msh261.drv "msacm.msaudio1"=msaud32.acm "msacm.sl_anet"=sl_anet.acm "msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm "msacm.siren"=sirenacm.dll "vidc.iv41"=ir41_32.ax "msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax "vidc.iv50"=ir50_32.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "vidc.dvsd"=pdvcodec.dll "msacm.ac3filter"=ac3filter.acm "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "vidc.ffds"=ff_vfw.dll "vidc.x264"=x264vfw.dll "vidc.lags"=lagarith.dll "msacm.lameacm"=LameACM.acm "msacm.divxa32"=DivXa32.acm ======List of files/folders created in the last 1 month====== 2014-02-27 10:09:29 ----D---- C:\rsit 2014-02-26 17:53:32 ----A---- C:\WINDOWS\system32\TweakUI.exe 2014-02-22 10:33:46 ----A---- C:\WINDOWS\system32\xvidcore.dll 2014-02-21 10:30:46 ----D---- C:\Documents and Settings\All Users\Application Data\ABBYY 2014-02-21 10:30:46 ----D---- C:\Documents and Settings\Administrator\Application Data\ABBYY 2014-02-20 14:11:34 ----D---- C:\Program Files\FileZilla FTP Client 2014-02-20 11:09:35 ----D---- C:\Program Files\Duplicate Photo Finder Plus 2014-02-20 10:45:30 ----D---- C:\Documents and Settings\Administrator\Application Data\Awesome Duplicate Photo Finder 2014-02-20 10:45:18 ----D---- C:\Program Files\Awesome Duplicate Photo Finder 2014-02-17 16:04:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2916036$ 2014-02-09 16:48:01 ----A---- C:\WINDOWS\system32\drivers\DrvAgent32.sys 2014-02-08 11:07:56 ----D---- C:\Documents and Settings\Administrator\Application Data\AC3Filter 2014-02-04 09:45:04 ----D---- C:\Documents and Settings\Administrator\Application Data\Atlantis 2014-02-04 09:44:44 ----D---- C:\Program Files\Atlantis 2014-02-04 09:44:43 ----D---- C:\Documents and Settings\All Users\Application Data\Atlantis 2014-02-01 10:10:54 ----D---- C:\Documents and Settings\Administrator\Application Data\Dr Email Verifier 2014-01-31 17:21:00 ----A---- C:\WINDOWS\system32\IObitSmartDefragExtension.dll 2014-01-31 17:20:53 ----A---- C:\WINDOWS\system32\drivers\SmartDefragDriver.sys 2014-01-31 15:53:44 ----D---- C:\PatchMyPCUpdates 2014-01-31 15:44:23 ----A---- C:\WINDOWS\system32\SmartDefragBootTime.exe 2014-01-28 15:16:04 ----D---- C:\Program Files\sisagp 2014-01-28 11:48:10 ----A---- C:\WINDOWS\system32\ampa.sys 2014-01-28 11:48:10 ----A---- C:\WINDOWS\ampa.exe 2014-01-28 11:48:02 ----D---- C:\Program Files\AOMEI Partition Assistant Pro Edition 5.5 ======List of files/folders modified in the last 1 month====== 2014-02-27 10:09:40 ----D---- C:\Program Files\Trend Micro 2014-02-27 10:09:11 ----D---- C:\WINDOWS\Temp 2014-02-27 10:08:33 ----D---- C:\WINDOWS\system32\CatRoot2 2014-02-27 09:57:23 ----SD---- C:\WINDOWS\Tasks 2014-02-27 09:53:15 ----D---- C:\WINDOWS\system32 2014-02-27 09:53:05 ----RD---- C:\Program Files 2014-02-27 09:51:14 ----A---- C:\WINDOWS\SchedLgU.Txt 2014-02-26 19:08:52 ----D---- C:\WINDOWS 2014-02-26 19:07:15 ----D---- C:\WINDOWS\SoftwareDistribution 2014-02-26 19:05:54 ----D---- C:\WINDOWS\Debug 2014-02-25 13:50:45 ----D---- C:\Documents and Settings\All Users\Application Data\ProductData 2014-02-25 10:53:51 ----D---- C:\WINDOWS\system32\CatRoot 2014-02-25 10:42:48 ----D---- C:\WINDOWS\system32\config 2014-02-23 16:29:56 ----D---- C:\Documents and Settings\Administrator\Application Data\Media Player Classic 2014-02-23 11:37:35 ----D---- C:\Documents and Settings\Administrator\Application Data\FileZilla 2014-02-22 11:39:22 ----D---- C:\WINDOWS\Help 2014-02-22 10:35:28 ----D---- C:\Documents and Settings\Administrator\Application Data\tiger-k 2014-02-22 10:33:34 ----SHD---- C:\WINDOWS\Installer 2014-02-21 11:10:24 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe 2014-02-18 09:26:56 ----D---- C:\WINDOWS\Prefetch 2014-02-17 18:21:39 ----D---- C:\WINDOWS\Microsoft.NET 2014-02-17 18:21:38 ----RSD---- C:\WINDOWS\assembly 2014-02-17 16:20:32 ----D---- C:\Program Files\Common Files 2014-02-17 16:20:28 ----D---- C:\WINDOWS\system32\drivers 2014-02-17 16:04:40 ----HD---- C:\WINDOWS\inf 2014-02-17 16:04:36 ----RSHDC---- C:\WINDOWS\system32\dllcache 2014-02-17 15:54:41 ----D---- C:\WINDOWS\WinSxS 2014-02-17 15:54:26 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2014-02-17 15:44:40 ----D---- C:\WINDOWS\system32\MRT 2014-02-17 15:37:19 ----A---- C:\WINDOWS\system32\MRT.exe 2014-02-17 15:21:55 ----D---- C:\Program Files\Internet Explorer 2014-02-17 15:21:45 ----D---- C:\WINDOWS\ie8updates 2014-02-09 16:50:09 ----D---- C:\Program Files\Mozilla Firefox 2014-02-08 11:48:04 ----D---- C:\Program Files\Speccy 2014-02-08 11:24:00 ----D---- C:\Program Files\Aiseesoft Studio 2014-02-08 11:22:58 ----D---- C:\Program Files\Leawo 2014-02-08 11:20:59 ----D---- C:\Documents and Settings\All Users\Application Data\Aiseesoft Studio 2014-02-08 11:12:52 ----D---- C:\Program Files\SourceTec 2014-02-08 11:12:02 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP 2014-02-08 11:10:41 ----D---- C:\Program Files\Movie Maker 2014-02-08 11:05:28 ----D---- C:\Documents and Settings\Administrator\Application Data\Machete Lite 2014-02-08 11:04:13 ----A---- C:\WINDOWS\VMorpher.INI 2014-02-08 10:56:51 ----A---- C:\WINDOWS\AVFTP.INI 2014-02-06 04:38:34 ----A---- C:\WINDOWS\system32\wininet.dll 2014-02-06 00:08:31 ----N---- C:\WINDOWS\system32\occache.dll 2014-02-06 00:08:31 ----N---- C:\WINDOWS\system32\mstime.dll 2014-02-06 00:08:31 ----N---- C:\WINDOWS\system32\mshtmled.dll 2014-02-06 00:08:31 ----N---- C:\WINDOWS\system32\licmgr10.dll 2014-02-06 00:08:31 ----N---- C:\WINDOWS\system32\jsproxy.dll 2014-02-06 00:08:31 ----N---- C:\WINDOWS\system32\iedkcs32.dll 2014-02-06 00:08:31 ----A---- C:\WINDOWS\system32\urlmon.dll 2014-02-06 00:08:31 ----A---- C:\WINDOWS\system32\url.dll 2014-02-06 00:08:31 ----A---- C:\WINDOWS\system32\mshtml.dll 2014-02-06 00:08:31 ----A---- C:\WINDOWS\system32\msfeedsbs.dll 2014-02-06 00:08:31 ----A---- C:\WINDOWS\system32\msfeeds.dll 2014-02-06 00:08:31 ----A---- C:\WINDOWS\system32\iertutil.dll 2014-02-06 00:08:31 ----A---- C:\WINDOWS\system32\iepeers.dll 2014-02-06 00:08:31 ----A---- C:\WINDOWS\system32\ieframe.dll 2014-02-06 00:08:31 ----A---- C:\WINDOWS\system32\corpol.dll 2014-02-05 23:29:26 ----N---- C:\WINDOWS\system32\ie4uinit.exe 2014-01-31 17:20:46 ----D---- C:\Program Files\IObit 2014-01-31 15:43:16 ----D---- C:\Documents and Settings\Administrator\Application Data\IObit 2014-01-31 12:47:11 ----SD---- C:\WINDOWS\Downloaded Program Files 2014-01-30 14:47:03 ----D---- C:\WINDOWS\system32\Adobe 2014-01-28 15:16:15 ----D---- C:\WINDOWS\system32\ReinstallBackups 2014-01-28 15:15:00 ----A---- C:\WINDOWS\system32\VGAunistlog.ini 2014-01-28 14:30:06 ----D---- C:\Program Files\Driver Magician 2014-01-28 14:19:45 ----D---- C:\drivers ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2013-10-18 49944] R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2013-12-26 180248] R0 EUBAKUP;EUBAKUP; C:\WINDOWS\system32\drivers\eubakup.sys [2013-01-25 50248] R0 EUBKMON;EUBKMON; C:\WINDOWS\system32\drivers\EUBKMON.sys [2013-01-25 40648] R0 hotcore3;hc3ServiceName; C:\WINDOWS\system32\DRIVERS\hotcore3.sys [2012-02-02 57112] R0 MxEFUF;Matrox Extio Upper Function Filter; C:\WINDOWS\system32\DRIVERS\MxEFUF32.sys [2010-11-04 102728] R0 ohci1394;VIA OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\System32\DRIVERS\ohci1394.sys [2008-04-14 61696] R0 SiSide;SiSide; C:\WINDOWS\system32\DRIVERS\siside.sys [2013-12-26 4096] R0 sisidex;sisidex; C:\WINDOWS\system32\drivers\sisidex.sys [2013-12-26 49024] R0 sisperf;Add Performance Filter Driver; C:\WINDOWS\system32\drivers\sisperf.sys [2013-12-26 9472] R0 SmartDefragDriver;SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [2013-12-24 15808] R0 uagp35;Microsoft AGPv3.5 Filter; C:\WINDOWS\system32\DRIVERS\uagp35.sys [2008-04-14 44672] R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568] R1 AmdK7;Stuurprogramma voor AMD K7-processor; C:\WINDOWS\System32\DRIVERS\amdk7.sys [2008-04-14 41856] R1 AswRdr;aswRdr; \??\C:\WINDOWS\system32\drivers\aswRdr.sys [] R1 aswSnx;aswSnx; \??\C:\WINDOWS\system32\drivers\aswSnx.sys [] R1 aswSP;aswSP; \??\C:\WINDOWS\system32\drivers\aswSP.sys [] R1 aswTdi;aswTdi; \??\C:\WINDOWS\system32\drivers\aswTdi.sys [] R1 ElRawDisk;ElRawDisk; \??\C:\WINDOWS\system32\drivers\rsdrv.sys [] R1 EUDSKACS;EUDSKACS; \??\C:\WINDOWS\system32\drivers\eudskacs.sys [] R1 EUFDDISK;EUFDDISK; \??\C:\WINDOWS\system32\drivers\EuFdDisk.sys [] R1 SiSkp;SiSkp; C:\WINDOWS\system32\DRIVERS\srvkp.sys [2010-10-26 19200] R1 Tcpip6;Microsoft IPv6-protocolstuurprogramma; C:\WINDOWS\system32\DRIVERS\tcpip6.sys [2010-02-11 226880] R1 Uim_IM;UIM Drive Backup Image Plugin; C:\WINDOWS\System32\Drivers\Uim_IM.sys [2012-06-04 452432] R1 Uim_Vim;UIM Virtual Image Plugin; C:\WINDOWS\System32\Drivers\Uim_Vim.sys [2012-06-04 283344] R1 UimBus;Universal Image Mounter Controller; C:\WINDOWS\system32\DRIVERS\UimBus.sys [2012-06-04 81232] R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2003-04-08 12032] R2 aswMonFlt;aswMonFlt; \??\C:\WINDOWS\system32\drivers\aswMonFlt.sys [] R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2010-04-28 54760] R2 NwlnkIpx;NWLink IPX/SPX/NetBIOS-compatibel transportprotocol; C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys [2008-04-14 88320] R2 NwlnkNb;NWLink NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnknb.sys [2003-04-08 63232] R2 NwlnkSpx;NWLink SPX/SPXII-protocol; C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys [2003-04-08 55936] R2 PfFilter;PfFilter; \??\C:\Program Files\IObit\Protected Folder\pffilter.sys [] R2 thdudf;TOSHIBA UDF2.5 Reader File System Driver; C:\WINDOWS\system32\DRIVERS\thdudf.sys [2010-06-21 66944] R2 WinisoCDBus;WinISO Virtual CD Drive; C:\WINDOWS\system32\drivers\WinisoCDBus.sys [2013-06-06 121600] R3 Arp1394;1394 ARP-clientprotocol; C:\WINDOWS\System32\DRIVERS\arp1394.sys [2008-04-14 60800] R3 cmuda;C-Media WDM Audio Interface; C:\WINDOWS\system32\drivers\cmuda.sys [2006-06-09 1373120] R3 HidUsb;Microsoft HID Class-stuurprogramma; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368] R3 mouhid;Stuurprogramma voor muis-HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2003-04-08 12288] R3 NIC1394;1394-stuurprogramma; C:\WINDOWS\System32\DRIVERS\nic1394.sys [2008-04-14 61824] R3 NWRDR;NetWare Rdr; C:\WINDOWS\system32\DRIVERS\nwrdr.sys [2008-04-14 163584] R3 SiS315;SiS315; C:\WINDOWS\system32\DRIVERS\sisgrp.sys [2010-10-26 325120] R3 SISNICXP;SiS PCI Fast Ethernet Adapter Driver for NDIS51; C:\WINDOWS\system32\DRIVERS\sisnicxp.sys [2010-04-02 32768] R3 tunmp;Stuurprogramma voor Microsoft Tun Minipoort-adapter; C:\WINDOWS\system32\DRIVERS\tunmp.sys [2008-04-14 12288] R3 usbccgp;Microsoft generiek hoofd-USB-stuurprogramma; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384] R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856] R3 usbscan;Stuurprogramma voor USB-scanner; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976] R3 usbstor;Stuurprogramma voor USB-massaopslag; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-14 26368] S0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-06-17 697328] S1 kbdhid;Stuurprogramma voor toetsenbord-HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720] S1 StarPortLite;StarPort Storage Controller (Lite); C:\WINDOWS\system32\DRIVERS\StarPortLite.sys [2009-03-02 95592] S3 ampa;ampa; \??\C:\WINDOWS\system32\ampa.sys [] S3 ATMEL FVNETusbASKEY (AR)(R);ATMEL FVNETusbASKEY (AR)(R) Service for SANTIS WLAN USB Adapter; C:\WINDOWS\system32\DRIVERS\vnetusbk.sys [2012-02-02 93184] S3 ATMEL WinXP PCMCIAFVNETR (2ARC)(R);ATMEL WinXP PCMCIAFVNETR (2ARC)(R) Service for SANTIS WLAN PC Card; C:\WINDOWS\system32\DRIVERS\fvnetr51.sys [2003-01-14 91648] S3 cleanhlp;cleanhlp; \??\C:\EMSISOFT_EMERGENCY_KIT\RUN\cleanhlp32.sys [] S3 cpudrv;cpudrv; \??\C:\Program Files\SystemRequirementsLab\cpudrv.sys [] S3 CrystalSysInfo;CrystalSysInfo; \??\C:\Program Files\MediaCoder\SysInfo.sys [] S3 DigiartyVirtualCDBus;Digiarty Virtual Driver; C:\WINDOWS\system32\drivers\DigiartyVirtualCDBus.sys [2013-04-14 163616] S3 DrvAgent32;DrvAgent32; \??\C:\WINDOWS\system32\Drivers\DrvAgent32.sys [] S3 epmntdrv;epmntdrv; \??\C:\WINDOWS\system32\epmntdrv.sys [] S3 EuGdiDrv;EuGdiDrv; \??\C:\WINDOWS\system32\EuGdiDrv.sys [] S3 FileMonitor;FileMonitor; \??\C:\Program Files\IObit\IObit Malware Fighter\Drivers\wxp_x86\FileMonitor.sys [] S3 MDA_NTDRV;MDA_NTDRV; \??\C:\WINDOWS\system32\MDA_NTDRV.sys [] S3 nm;Stuurprogramma voor Netwerkcontrole; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-14 40320] S3 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2010-06-25 35088] S3 RegFilter;RegFilter; \??\C:\Program Files\IObit\IObit Malware Fighter\drivers\wxp_x86\regfilter.sys [] S3 SiS7012;Service for AC'97 Sample Driver (WDM); C:\WINDOWS\system32\drivers\sis7012.sys [2011-10-17 267136] S3 SISNIC;SiS PCI Fast Ethernet Adapter Driver; C:\WINDOWS\System32\DRIVERS\sisnic.sys [2010-03-19 32256] S3 tap0901;avast! SecureLine TAP Adapter; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2013-04-30 35088] S3 taphss;Anchorfree HSS Adapter; C:\WINDOWS\system32\DRIVERS\taphss.sys [2013-02-12 33512] S3 UrlFilter;UrlFilter; \??\C:\Program Files\IObit\IObit Malware Fighter\drivers\wxp_x86\UrlFilter.sys [] S3 usb_rndisx;USB RNDIS-adapter; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2013-02-12 12928] S3 USBCCID;USB Smart Card reader; C:\WINDOWS\system32\DRIVERS\usbccid.sys [2010-06-21 29184] S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2009-01-30 38528] S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944] S4 BootDefragDriver;BootDefragDriver; C:\WINDOWS\System32\drivers\BootDefragDriver.sys [] S4 PCANDIS5;PCANDIS5 NDIS Protocol Driver; C:\WINDOWS\system32\drivers\PCANDIS5.sys [] S4 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 6to4;IPv6-hulpservice; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R2 AdvancedSystemCareService7;Advanced SystemCare Service 7; C:\Program Files\IObit\Advanced SystemCare 7\ASCService.exe [2013-12-09 881440] R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-01-24 50344] R2 BBSvc;Bing Bar Update Service; C:\Program Files\Microsoft\BingBar\BBSvc.EXE [2011-10-21 196176] R2 BBUpdate;BBUpdate; C:\Program Files\Microsoft\BingBar\SeaPort.EXE [2011-10-13 249648] R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2014-01-17 182696] R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120] R2 NWCWorkstation;Clientservice voor NetWare; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R2 WinDefend;Windows Defender; C:\Program Files\Windows Defender\MsMpEng.exe [2006-11-03 13592] R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] S2 gupdate;Google Updateservice (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-02-02 136176] S2 LiveUpdateSvc;LiveUpdate; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2014-01-14 2151744] S3 602XML Updater;602Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [2010-04-14 73728] S3 ADExchange;ArcSoft Exchange Service; C:\Program Files\Common Files\ArcSoft\esinter\Bin\eservutil.exe [2011-10-26 37280] S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2013-01-09 72704] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-21 257928] S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160] S3 EaseUS Agent;EaseUS Agent Service; C:\Program Files\EaseUS\Todo Backup\bin\Agent.exe [2013-01-25 68168] S3 Garmin Core Update Service;Garmin Core Update Service; C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [2013-08-22 220504] S3 GSService;GSService; C:\WINDOWS\system32\GSService.exe [2012-07-05 252416] S3 Guard Agent;Guard Agent Service; C:\Program Files\EaseUS\Todo Backup\bin\GuardAgent.exe [2013-01-25 23624] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-02-02 136176] S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-11-06 194032] S3 HDDSvc;HDD Information Service; C:\Program Files\Common Files\AltrixSoft\HDDInfoService\HDDSvc.exe [2013-03-10 484304] S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664] S3 MatSvc;Microsoft Automated Troubleshooting Service; C:\Program Files\Microsoft Fix it Center\Matsvc.exe [2011-06-13 267568] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-13 119408] S3 ocster_backup;Ocster Backup; c:\Program Files\Ocster Backup\bin\backupService-ox.exe [2012-06-13 19400] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136] S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2010-06-25 117264] S3 WACService;WACService; C:\Program Files\Wondershare\Wondershare Application Center\WACService.exe [2012-11-09 103272] S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2009-02-04 917504] S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856] S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632] S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] -----------------EOF-----------------