Logfile of random's system information tool 1.10 (written by random/random) Run by hans at 2014-06-16 22:25:10 Microsoft Windows 8.1 System drive C: has 350 GB (75%) free of 468 GB Total RAM: 7642 MB (78% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 22:25:16, on 16-6-2014 Platform: Unknown Windows (WinNT 6.02.1008) MSIE: Internet Explorer v11.0 (11.00.9600.17126) Boot mode: Normal Running processes: C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe C:\Program Files (x86)\Common Files\Pure Networks Shared\Platform\nmctxth.exe C:\Program Files (x86)\Pure Networks\Network Magic\nmapp.exe C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe C:\Program Files (x86)\Sony\ReaderDesktop\appHelper\ReaderAppHelper.exe C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\WINDOWS\sysWow64\SearchProtocolHost.exe C:\Program Files\trend micro\hans.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.qone8.com/?type=hp&ts=1396124059&from=adks&uid=ST1000LM024XHN-M101MBB_S31LJ9DDA00748 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.trovi.com/?gd=&ctid=CT3314958&octid=EB_ORIGINAL_CTID&ISID=M2960EDD7-8C56-4F58-A327-B277A761DCD2&SearchSource=55&CUI=&UM=5&UP=SP6D545DE6-15A1-4790-86DD-C69EF326E652&SSPV= R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.eazytosearch.info/?pid=724&r=2014/05/31&hid=16523441149986058642&lg=EN&cc=NL R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback> R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: YoutubeAdblocker - {2F8F8555-6FF2-6233-27B3-F511EF5DF5E6} - C:\Program Files (x86)\YoutubeAdblocker\gqBmUT.dll O2 - BHO: IETabPage Class - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files (x86)\SupTab\SupTab.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Movies Toolbar (Dist. by Somoto Ltd.) - {c75a2d66-6d1d-4735-8f63-9d85dcc026a6} - C:\PROGRA~2\MOVIES~1\SAFETY~1\SRTOOL~1\IE\searchresultsDx.dll (file missing) O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll O2 - BHO: sAve on - {FA540A29-CBE5-4352-2D40-B0A6C13C4151} - C:\Program Files (x86)\sAve on\tfdVm7DE.dll O2 - BHO: Search-NeawTaub - {FC251C4F-A1DF-CE6B-68B2-86183E290641} - C:\Program Files (x86)\Search-NeawTaub\WkjKjDy.dll O3 - Toolbar: Movies Toolbar (Dist. by Somoto Ltd.) - {c75a2d66-6d1d-4735-8f63-9d85dcc026a6} - C:\PROGRA~2\MOVIES~1\SAFETY~1\SRTOOL~1\IE\searchresultsDx.dll (file missing) O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe O4 - HKLM\..\Run: [YouCam Service] "C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe" /s O4 - HKLM\..\Run: [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe O4 - HKLM\..\Run: [nmctxth] "C:\Program Files (x86)\Common Files\Pure Networks Shared\Platform\nmctxth.exe" O4 - HKLM\..\Run: [nmapp] "C:\Program Files (x86)\Pure Networks\Network Magic\nmapp.exe" -autorun -nosplash O4 - HKLM\..\Run: [ControlCenter4] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [Reader Application Helper] C:\Program Files (x86)\Sony\ReaderDesktop\appHelper\ReaderAppHelper.exe O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden O4 - HKUS\S-1-5-21-1346150449-3009972852-1401146470-1008\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden (User 'tijdelijk') O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O20 - AppInit_DLLs: c:\progra~2\sw-boo~1\assist~1.dll O23 - Service: AdaptiveSleepService - Unknown owner - C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing) O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe O23 - Service: CyberLink PowerDVD 12 Media Server Monitor Service - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe O23 - Service: CyberLink PowerDVD 12 Media Server Service - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing) O23 - Service: GoToMyPC - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files (x86)\Citrix\GoToMyPC\g2svc.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe O23 - Service: @oem6.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing) O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing) O23 - Service: IePlugin Service (IePluginService) - Cherished Technololgy LIMITED - C:\ProgramData\IePluginService\PluginService.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing) O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe O23 - Service: Pure Networks Platform Service (nmservice) - Cisco Systems, Inc. - C:\Program Files (x86)\Common Files\Pure Networks Shared\Platform\nmsrvc.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing) O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe O23 - Service: SafetyNut Manager (SafetyNutManager) - Somoto LTD - C:\Program Files (x86)\Movies Toolbar\SafetyNut\SafetyNutManager.exe O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing) O23 - Service: Sony SCSI Helper Service - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\Fsk\SonySCSIHelperService.exe O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing) O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 13319 bytes ======Listing Processes====== wininit.exe winlogon.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe -k DcomLaunch C:\WINDOWS\system32\svchost.exe -k RPCSS C:\WINDOWS\system32\atiesrxx.exe C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted "dwm.exe" C:\WINDOWS\system32\svchost.exe -k netsvcs C:\WINDOWS\system32\svchost.exe -k LocalService atieclxx C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted C:\WINDOWS\system32\Hpservice.exe "C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe" "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS C:\WINDOWS\system32\svchost.exe -k NetworkService C:\ProgramData\IePluginService\PluginService.exe -service C:\WINDOWS\System32\spoolsv.exe C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork "C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe" "C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService C:\WINDOWS\system32\svchost.exe -k apphost "C:\Program Files\Bonjour\mDNSResponder.exe" "C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe" "C:\WINDOWS\system32\rundll32.exe" "c:\progra~2\sw-boo~1\AssistantSvc.dll",service "C:\WINDOWS\system32\rundll32.exe" "c:\progra~2\sw-boo~1\AssistantSvc.dll",service dashost.exe {13872339-611c-45c4-99c1ce29cf759f87} "C:\Program Files (x86)\Citrix\GoToMyPC\g2svc.exe" "Start=service" "C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe" "C:\Program Files (x86)\Citrix\GoToMyPC\g2comm.exe" "Plugin=G2PreLaunch&Dir=C:\Program Files (x86)\Citrix\GoToMyPC&Path=g2pre.exe&ServiceName=GoToMyPC&ServiceFile=C:\Program Files (x86)\Citrix\GoToMyPC\g2svc.exe&IsService=true&Debug=Off&Stat=On&PluginDebug=Off&PluginStat=On&StartID={CC79D7F8-2A04-4B81-AE23-8AB2993EC440}&Start=service" "C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe" "C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE" "C:\Program Files (x86)\Movies Toolbar\SafetyNut\SafetyNutManager.exe" C:\WINDOWS\system32\svchost.exe -k imgsvc "C:\Program Files (x86)\Movies Toolbar\SafetyNut\SafetyNutManager.exe" -monitor 532 "C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe" "C:\Program Files (x86)\Citrix\GoToMyPC\g2pre.exe" "StartID={CB79869C-B40C-4E40-9C7A-D61B823CCC4E}&Debug=Off&Stat=On&StatDb=On&Index=0" "C:\Program Files (x86)\Common Files\Pure Networks Shared\Platform\nmsrvc.exe" "C:\Program Files (x86)\Citrix\GoToMyPC\g2tray.exe" "StartID={CC79D7F8-2A04-4B81-AE23-8AB2993EC440}&Debug=Off&Stat=On&StatDb=On&Index=0" C:\WINDOWS\system32\wbem\wmiprvse.exe C:\WINDOWS\system32\wbem\wmiprvse.exe C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7} "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c "C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe" "C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe" "C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe" C:\WINDOWS\system32\SearchIndexer.exe /Embedding "C:\Program Files\Windows Media Player\wmpnetwk.exe" C:\WINDOWS\Explorer.EXE taskeng.exe {CAD3DE08-1C3E-4A62-947F-AB853E00D78C} taskhostex.exe "C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe" /TUStart /pid:2260 "c:\programdata\topapp soft\sw-booster\SW-Booster.exe" /schedule /profile "c:\programdata\topapp soft\sw-booster\698646803.ini" "C:\Program Files (x86)\Movies Toolbar\SafetyNut\safetynut.exe" "C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe" "C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe" /byrunkey C:\Windows\System32\skydrive.exe -Embedding "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" "C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden "C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE" "C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe" "C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe" /s "C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe" "C:\Program Files (x86)\Common Files\Pure Networks Shared\Platform\nmctxth.exe" "C:\Program Files (x86)\Pure Networks\Network Magic\nmapp.exe" -autorun -nosplash "C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe" /AUTORUN -BootProc "C:\Program Files (x86)\Sony\ReaderDesktop\appHelper\ReaderAppHelper.exe" "C:\Program Files (x86)\Browny02\BrYNSvc.exe" -BootProc "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5544.0.1904856544\2133765608" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,15 --gpu-vendor-id=0x1002 --gpu-device-id=0x9832 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.251.0.0 --ignored=" --type=renderer " /prefetch:822062411 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Default/OmniboxBundledExperimentV1/NewSuggestType_A10_Stable_R2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_93/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5544.2.732758393\571963130" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Default/OmniboxBundledExperimentV1/NewSuggestType_A10_Stable_R2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_93/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5544.5.361079658\456600302" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="5544.6.233240648\1706378640" --ppapi-flash-args=enable_hw_video_decode=1 --lang=nl --ignored=" --type=renderer " /prefetch:-632637702 "C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe" "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow "C:\Program Files (x86)\ATI Technologies\ATI.ACE\core-static\CCC.exe" 0 "C:\Windows\System32\SettingSyncHost.exe" -Embedding "C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe" "C:\WINDOWS\sysWow64\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1346150449-3009972852-1401146470-10025_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1346150449-3009972852-1401146470-10025 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1" "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:Box.AppXcgnjqf89mss3ge7mq2mhqa303mzrmp23.mca "C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server C:\Windows\System32\RuntimeBroker.exe -Embedding "C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe7_ Global\UsGthrCtrlFltPipeMssGthrPipe7 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "C:\WINDOWS\system32\SearchFilterHost.exe" 0 572 576 584 65536 580 "C:\Users\hans\Downloads\RSITx64.exe" ======Scheduled tasks folder====== C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler C:\WINDOWS\tasks\HPCeeScheduleForhans.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForhans (null) C:\WINDOWS\tasks\HPCeeScheduleFortijdelijk.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleFortijdelijk (null) C:\WINDOWS\tasks\SW-Booster-S-698646803.job - c:\programdata\topapp soft\sw-booster\SW-Booster.exe /schedule /profile "c:\programdata\topapp soft\sw-booster\698646803.ini" C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2F8F8555-6FF2-6233-27B3-F511EF5DF5E6}] YoutubeAdblocker - C:\Program Files (x86)\YoutubeAdblocker\gqBmUT.x64.dll [2014-05-31 472064] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c75a2d66-6d1d-4735-8f63-9d85dcc026a6}] Movies Toolbar (Dist. by Somoto Ltd.) - C:\PROGRA~2\MOVIES~1\SAFETY~1\SRTOOL~1\IE\searchresultsDx64.dll [2014-01-24 131536] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}] HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FA540A29-CBE5-4352-2D40-B0A6C13C4151}] sAve on - C:\Program Files (x86)\sAve on\tfdVm7DE.x64.dll [2014-05-31 472064] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FC251C4F-A1DF-CE6B-68B2-86183E290641}] Search-NeawTaub - C:\Program Files (x86)\Search-NeawTaub\WkjKjDy.x64.dll [2014-05-31 472064] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2F8F8555-6FF2-6233-27B3-F511EF5DF5E6}] YoutubeAdblocker - C:\Program Files (x86)\YoutubeAdblocker\gqBmUT.dll [2013-05-31 423936] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}] IETabPage Class - C:\Program Files (x86)\SupTab\SupTab.dll [2014-04-11 513648] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-03-25 462760] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c75a2d66-6d1d-4735-8f63-9d85dcc026a6}] Movies Toolbar (Dist. by Somoto Ltd.) - C:\PROGRA~2\MOVIES~1\SAFETY~1\SRTOOL~1\IE\searchresultsDx.dll [] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-03-25 171944] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}] HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FA540A29-CBE5-4352-2D40-B0A6C13C4151}] sAve on - C:\Program Files (x86)\sAve on\tfdVm7DE.dll [2014-05-31 423936] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FC251C4F-A1DF-CE6B-68B2-86183E290641}] Search-NeawTaub - C:\Program Files (x86)\Search-NeawTaub\WkjKjDy.dll [2013-05-31 423936] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {c75a2d66-6d1d-4735-8f63-9d85dcc026a6} - Movies Toolbar (Dist. by Somoto Ltd.) - C:\PROGRA~2\MOVIES~1\SAFETY~1\SRTOOL~1\IE\searchresultsDx64.dll [2014-01-24 131536] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar] {c75a2d66-6d1d-4735-8f63-9d85dcc026a6} - Movies Toolbar (Dist. by Somoto Ltd.) - C:\PROGRA~2\MOVIES~1\SAFETY~1\SRTOOL~1\IE\searchresultsDx.dll [] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2013-06-18 7191768] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-06-05 2994928] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce] "NCPluginUpdater"=C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [2014-05-27 21720] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2007-12-05 2295072] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2013-04-17 642656] "AccelerometerSysTrayApplet"=C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [2013-03-01 77088] "YouCam Service"=C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [2013-05-22 267224] "HPMessageService"=C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [2013-05-03 1045304] "nmctxth"=C:\Program Files (x86)\Common Files\Pure Networks Shared\Platform\nmctxth.exe [2009-04-07 642856] "nmapp"=C:\Program Files (x86)\Pure Networks\Network Magic\nmapp.exe [2009-04-07 467240] "ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2012-09-06 143360] "BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2012-06-06 3076096] "SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336] "GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040] ""= [] "Reader Application Helper"=C:\Program Files (x86)\Sony\ReaderDesktop\appHelper\ReaderAppHelper.exe [2014-03-13 899400] "iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-05-26 152392] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\PROGRA~2\SW-BOO~1\ASSIST~2.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "VIDC.YUY2"=msyuv.dll "vidc.i420"=iyuv_32.dll "msacm.msgsm610"=msgsm32.acm "msacm.msg711"=msg711.acm "VIDC.YVYU"=msyuv.dll "VIDC.YVU9"=tsbyuv.dll "wavemapper"=msacm32.drv "midimapper"=midimap.dll "VIDC.UYVY"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.mrle"=msrle32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msadpcm"=msadp32.acm "vidc.msvc"=msvidc32.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv "MSVideo8"=VfWWDM32.dll ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2014-06-16 22:25:10 ----D---- C:\rsit 2014-06-16 22:25:10 ----D---- C:\Program Files\trend micro 2014-06-16 20:34:47 ----D---- C:\ProgramData\MFAData 2014-06-16 18:58:41 ----D---- C:\Users\hans\AppData\Roaming\LavasoftStatistics 2014-06-15 22:49:38 ----D---- C:\Program Files (x86)\Lavasoft 2014-06-15 22:48:55 ----D---- C:\Users\hans\AppData\Roaming\Lavasoft 2014-06-15 22:48:24 ----D---- C:\Program Files\Common Files\Lavasoft 2014-06-15 22:48:07 ----D---- C:\ProgramData\Lavasoft 2014-06-15 10:55:32 ----D---- C:\Program Files (x86)\GreeatSavE4U 2014-06-15 10:55:15 ----D---- C:\Program Files (x86)\ChheApME 2014-06-15 02:01:41 ----D---- C:\ProgramData\ChheApME 2014-06-15 01:32:33 ----D---- C:\Program Files (x86)\PC TEKNIX 2014-06-15 01:32:03 ----D---- C:\ProgramData\Registry Helper 2014-06-15 01:30:55 ----D---- C:\Users\hans\AppData\Roaming\PC TEKNIX 2014-06-13 13:35:59 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll 2014-06-13 13:35:59 ----A---- C:\WINDOWS\system32\msxml3.dll 2014-06-13 13:35:35 ----A---- C:\WINDOWS\system32\rdpcorets.dll 2014-06-13 13:34:58 ----A---- C:\WINDOWS\system32\drvinst.exe 2014-06-13 13:34:57 ----A---- C:\WINDOWS\SYSWOW64\drvinst.exe 2014-06-13 13:34:57 ----A---- C:\WINDOWS\system32\drvcfg.exe 2014-06-13 13:34:56 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll 2014-06-13 13:34:56 ----A---- C:\WINDOWS\system32\FntCache.dll 2014-06-13 13:34:56 ----A---- C:\WINDOWS\system32\DWrite.dll 2014-06-12 12:01:46 ----A---- C:\WINDOWS\system32\iertutil.dll 2014-06-12 12:01:45 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll 2014-06-12 12:01:45 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll 2014-06-12 12:01:44 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll 2014-06-12 12:01:43 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll 2014-06-12 12:01:43 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll 2014-06-12 12:01:43 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll 2014-06-12 12:01:43 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll 2014-06-12 12:01:40 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll 2014-06-12 12:01:40 ----A---- C:\WINDOWS\system32\urlmon.dll 2014-06-12 12:01:40 ----A---- C:\WINDOWS\system32\dxtmsft.dll 2014-06-12 12:01:39 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll 2014-06-12 12:01:39 ----A---- C:\WINDOWS\system32\msfeeds.dll 2014-06-12 12:01:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll 2014-06-12 12:01:36 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll 2014-06-12 12:01:35 ----A---- C:\WINDOWS\system32\ieframe.dll 2014-06-12 12:01:35 ----A---- C:\WINDOWS\system32\dxtrans.dll 2014-06-12 12:01:34 ----A---- C:\WINDOWS\system32\mshtmled.dll 2014-06-12 12:01:33 ----A---- C:\WINDOWS\system32\jscript9diag.dll 2014-06-12 12:01:33 ----A---- C:\WINDOWS\system32\jscript9.dll 2014-06-12 12:01:32 ----A---- C:\WINDOWS\system32\jsproxy.dll 2014-06-12 12:01:32 ----A---- C:\WINDOWS\system32\ieapfltr.dll 2014-06-12 12:01:31 ----A---- C:\WINDOWS\system32\mshtml.dll 2014-06-12 12:01:30 ----A---- C:\WINDOWS\system32\wininet.dll 2014-06-12 12:01:29 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll 2014-06-12 12:01:29 ----A---- C:\WINDOWS\system32\ie4uinit.exe 2014-06-12 12:01:28 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll 2014-06-12 12:01:05 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll 2014-06-12 12:01:04 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll 2014-06-12 12:01:03 ----A---- C:\WINDOWS\system32\twinui.dll 2014-06-12 12:01:02 ----A---- C:\WINDOWS\system32\shell32.dll 2014-06-12 12:01:01 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-06-12 12:01:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll 2014-06-12 12:00:58 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll 2014-06-12 12:00:57 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-06-12 12:00:56 ----A---- C:\WINDOWS\system32\mstscax.dll 2014-06-12 12:00:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll 2014-06-12 12:00:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll 2014-06-12 12:00:52 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll 2014-06-12 12:00:51 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll 2014-06-12 12:00:51 ----A---- C:\WINDOWS\system32\d3d9.dll 2014-06-12 12:00:50 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll 2014-06-12 12:00:50 ----A---- C:\WINDOWS\system32\gpsvc.dll 2014-06-12 12:00:49 ----A---- C:\WINDOWS\system32\SyncEngine.dll 2014-06-12 12:00:48 ----A---- C:\WINDOWS\system32\SearchFolder.dll 2014-06-12 12:00:48 ----A---- C:\WINDOWS\system32\ntoskrnl.exe 2014-06-12 12:00:48 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll 2014-06-12 12:00:48 ----A---- C:\WINDOWS\system32\mfcore.dll 2014-06-12 12:00:47 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll 2014-06-12 12:00:47 ----A---- C:\WINDOWS\system32\Windows.Media.dll 2014-06-12 12:00:47 ----A---- C:\WINDOWS\system32\win32k.sys 2014-06-12 12:00:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll 2014-06-12 12:00:46 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll 2014-06-12 12:00:46 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll 2014-06-12 12:00:46 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-06-12 12:00:46 ----A---- C:\WINDOWS\system32\lsasrv.dll 2014-06-12 12:00:46 ----A---- C:\WINDOWS\system32\localspl.dll 2014-06-12 12:00:45 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll 2014-06-12 12:00:45 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll 2014-06-12 12:00:45 ----A---- C:\WINDOWS\system32\workfolderssvc.dll 2014-06-12 12:00:45 ----A---- C:\WINDOWS\system32\wmpmde.dll 2014-06-12 12:00:45 ----A---- C:\WINDOWS\system32\winmde.dll 2014-06-12 12:00:45 ----A---- C:\WINDOWS\system32\mfsvr.dll 2014-06-12 12:00:44 ----A---- C:\WINDOWS\system32\services.exe 2014-06-12 12:00:44 ----A---- C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-06-12 12:00:44 ----A---- C:\WINDOWS\system32\drivers\afd.sys 2014-06-12 12:00:43 ----A---- C:\WINDOWS\SYSWOW64\GeofenceMonitorService.dll 2014-06-12 12:00:43 ----A---- C:\WINDOWS\system32\XpsGdiConverter.dll 2014-06-12 12:00:43 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-06-12 12:00:43 ----A---- C:\WINDOWS\system32\srvsvc.dll 2014-06-12 12:00:43 ----A---- C:\WINDOWS\system32\drivers\srv2.sys 2014-06-12 12:00:43 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys 2014-06-12 12:00:43 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll 2014-06-12 12:00:42 ----AC---- C:\WINDOWS\system32\drivers\volsnap.sys 2014-06-12 12:00:42 ----A---- C:\WINDOWS\SYSWOW64\XpsGdiConverter.dll 2014-06-12 12:00:42 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll 2014-06-12 12:00:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll 2014-06-12 12:00:42 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll 2014-06-12 12:00:42 ----A---- C:\WINDOWS\system32\MDEServer.exe 2014-06-12 12:00:42 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys 2014-06-12 12:00:42 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys 2014-06-12 12:00:41 ----AC---- C:\WINDOWS\system32\drivers\hdaudbus.sys 2014-06-12 12:00:41 ----A---- C:\WINDOWS\SYSWOW64\rdpencom.dll 2014-06-12 12:00:41 ----A---- C:\WINDOWS\system32\win32spl.dll 2014-06-12 12:00:41 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-06-12 12:00:41 ----A---- C:\WINDOWS\system32\rdpencom.dll 2014-06-12 12:00:41 ----A---- C:\WINDOWS\system32\defragsvc.dll 2014-06-12 12:00:41 ----A---- C:\WINDOWS\system32\audiosrv.dll 2014-06-12 12:00:40 ----AC---- C:\WINDOWS\system32\drivers\msiscsi.sys 2014-06-12 12:00:40 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll 2014-06-12 12:00:40 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll 2014-06-12 12:00:40 ----A---- C:\WINDOWS\system32\swprv.dll 2014-06-12 12:00:40 ----A---- C:\WINDOWS\system32\resutils.dll 2014-06-12 12:00:40 ----A---- C:\WINDOWS\system32\ploptin.dll 2014-06-12 12:00:40 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll 2014-06-12 12:00:40 ----A---- C:\WINDOWS\system32\gpapi.dll 2014-06-12 12:00:40 ----A---- C:\WINDOWS\system32\dwmapi.dll 2014-06-12 12:00:40 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys 2014-06-12 12:00:40 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys 2014-06-12 12:00:40 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys 2014-06-12 12:00:39 ----AC---- C:\WINDOWS\system32\drivers\spaceport.sys 2014-06-12 12:00:39 ----A---- C:\WINDOWS\SYSWOW64\rpchttp.dll 2014-06-12 12:00:39 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll 2014-06-12 12:00:39 ----A---- C:\WINDOWS\SYSWOW64\MSVideoDSP.dll 2014-06-12 12:00:39 ----A---- C:\WINDOWS\SYSWOW64\mf.dll 2014-06-12 12:00:39 ----A---- C:\WINDOWS\SYSWOW64\gpapi.dll 2014-06-12 12:00:39 ----A---- C:\WINDOWS\system32\wscsvc.dll 2014-06-12 12:00:39 ----A---- C:\WINDOWS\system32\VSSVC.exe 2014-06-12 12:00:39 ----A---- C:\WINDOWS\system32\rpchttp.dll 2014-06-12 12:00:39 ----A---- C:\WINDOWS\system32\propsys.dll 2014-06-12 12:00:39 ----A---- C:\WINDOWS\system32\MSVideoDSP.dll 2014-06-12 12:00:39 ----A---- C:\WINDOWS\system32\mf.dll 2014-06-12 12:00:39 ----A---- C:\WINDOWS\system32\drivers\storport.sys 2014-06-12 12:00:39 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys 2014-06-12 12:00:38 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll 2014-06-12 12:00:38 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll 2014-06-12 12:00:38 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll 2014-06-12 12:00:38 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll 2014-06-12 12:00:38 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll 2014-06-12 12:00:38 ----A---- C:\WINDOWS\system32\mfps.dll 2014-06-12 12:00:38 ----A---- C:\WINDOWS\system32\mfplat.dll 2014-06-12 12:00:38 ----A---- C:\WINDOWS\system32\energyprov.dll 2014-06-12 12:00:38 ----A---- C:\WINDOWS\system32\clusapi.dll 2014-06-12 12:00:38 ----A---- C:\WINDOWS\system32\AudioSes.dll 2014-06-12 12:00:38 ----A---- C:\WINDOWS\system32\AudioEng.dll 2014-06-12 12:00:37 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll 2014-06-12 12:00:37 ----A---- C:\WINDOWS\system32\WorkFoldersShell.dll 2014-06-12 12:00:37 ----A---- C:\WINDOWS\system32\wintrust.dll 2014-06-12 12:00:37 ----A---- C:\WINDOWS\system32\tlscsp.dll 2014-06-12 12:00:37 ----A---- C:\WINDOWS\system32\srcore.dll 2014-06-12 12:00:37 ----A---- C:\WINDOWS\system32\mfpmp.exe 2014-06-12 12:00:37 ----A---- C:\WINDOWS\system32\audiodg.exe 2014-06-12 12:00:36 ----A---- C:\WINDOWS\SYSWOW64\tlscsp.dll 2014-06-12 12:00:36 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll 2014-06-12 12:00:36 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll 2014-06-12 12:00:36 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll 2014-06-12 12:00:36 ----A---- C:\WINDOWS\system32\wlansvc.dll 2014-06-12 12:00:36 ----A---- C:\WINDOWS\system32\wlansec.dll 2014-06-12 12:00:36 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-06-12 12:00:36 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-06-12 12:00:36 ----A---- C:\WINDOWS\system32\rdvidcrl.dll 2014-06-12 12:00:36 ----A---- C:\WINDOWS\system32\mispace.dll 2014-06-12 12:00:36 ----A---- C:\WINDOWS\system32\BootMenuUX.dll 2014-06-12 12:00:35 ----A---- C:\WINDOWS\SYSWOW64\wlanmsm.dll 2014-06-12 12:00:35 ----A---- C:\WINDOWS\SYSWOW64\wlanhlp.dll 2014-06-12 12:00:35 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll 2014-06-12 12:00:35 ----A---- C:\WINDOWS\SYSWOW64\srclient.dll 2014-06-12 12:00:35 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll 2014-06-12 12:00:35 ----A---- C:\WINDOWS\system32\wlanmsm.dll 2014-06-12 12:00:35 ----A---- C:\WINDOWS\system32\wlanhlp.dll 2014-06-12 12:00:35 ----A---- C:\WINDOWS\system32\wlanapi.dll 2014-06-12 12:00:35 ----A---- C:\WINDOWS\system32\tsgqec.dll 2014-06-12 12:00:35 ----A---- C:\WINDOWS\system32\srclient.dll 2014-06-12 12:00:35 ----A---- C:\WINDOWS\system32\SkyDrive.exe 2014-06-12 12:00:35 ----A---- C:\WINDOWS\system32\rstrui.exe 2014-06-12 12:00:35 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-06-12 12:00:26 ----A---- C:\WINDOWS\system32\gdi32.dll 2014-06-12 12:00:25 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll 2014-06-12 12:00:25 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys 2014-06-12 12:00:25 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS 2014-06-12 12:00:24 ----A---- C:\WINDOWS\system32\drivers\ks.sys 2014-06-12 12:00:23 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll 2014-06-12 12:00:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-06-12 12:00:23 ----A---- C:\WINDOWS\system32\WSShared.dll 2014-06-12 12:00:23 ----A---- C:\WINDOWS\system32\WSReset.exe 2014-06-12 12:00:23 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-06-12 11:59:55 ----A---- C:\WINDOWS\system32\WpcMon.exe 2014-06-12 11:59:55 ----A---- C:\WINDOWS\system32\Wpc.dll 2014-06-12 11:59:54 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll 2014-06-12 11:59:54 ----A---- C:\WINDOWS\system32\WpcWebSync.dll 2014-06-12 11:59:53 ----A---- C:\WINDOWS\system32\wpccpl.dll 2014-06-12 11:59:53 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys 2014-06-12 11:58:29 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll 2014-06-12 11:56:07 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll 2014-06-12 11:56:07 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll 2014-06-12 11:55:59 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll 2014-06-12 11:55:59 ----A---- C:\WINDOWS\system32\ieUnatt.exe 2014-06-12 11:55:59 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll 2014-06-12 11:55:59 ----A---- C:\WINDOWS\system32\ieetwcollectorres.dll 2014-06-12 11:55:59 ----A---- C:\WINDOWS\system32\ieetwcollector.exe 2014-06-12 11:55:58 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe 2014-06-12 11:55:58 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll 2014-06-12 11:55:58 ----A---- C:\WINDOWS\system32\iesetup.dll 2014-06-12 11:55:58 ----A---- C:\WINDOWS\system32\iernonce.dll 2014-06-12 11:55:55 ----A---- C:\WINDOWS\system32\msrating.dll 2014-06-10 22:20:21 ----A---- C:\WINDOWS\system32\TURegOpt.exe 2014-06-10 22:20:21 ----A---- C:\WINDOWS\system32\authuitu.dll 2014-06-10 22:20:20 ----A---- C:\WINDOWS\SYSWOW64\authuitu.dll 2014-06-10 22:19:55 ----D---- C:\Users\hans\AppData\Roaming\AVG 2014-06-10 22:19:18 ----D---- C:\Program Files (x86)\AVG 2014-06-10 22:18:16 ----D---- C:\ProgramData\AVG 2014-06-10 22:18:00 ----SHD---- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} 2014-06-10 15:00:26 ----A---- C:\WINDOWS\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2014-06-08 01:11:20 ----D---- C:\ProgramData\GreeatSavE4U 2014-06-05 14:54:09 ----D---- C:\Users\hans\AppData\Roaming\Apple Computer 2014-06-05 14:52:45 ----D---- C:\Program Files\iPod 2014-06-05 14:52:42 ----D---- C:\ProgramData\Apple Computer 2014-06-05 14:52:42 ----D---- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-06-05 14:52:42 ----D---- C:\Program Files\iTunes 2014-06-05 14:52:42 ----D---- C:\Program Files (x86)\iTunes 2014-06-05 14:51:20 ----D---- C:\Program Files (x86)\Apple Software Update 2014-06-02 21:06:10 ----N---- C:\WINDOWS\system32\MpSigStub.exe 2014-06-02 20:20:46 ----D---- C:\AVGTemp 2014-06-02 20:09:55 ----HD---- C:\ProgramData\Common Files 2014-05-31 22:27:25 ----D---- C:\Users\hans\AppData\Roaming\uTorrent 2014-05-31 20:43:32 ----D---- C:\ProgramData\Search-NeawTaub 2014-05-31 20:43:31 ----D---- C:\Program Files (x86)\Search-NeawTaub 2014-05-31 20:43:15 ----D---- C:\ProgramData\TopApp soft 2014-05-31 20:43:10 ----D---- C:\Program Files (x86)\SW-Booster 2014-05-31 20:42:54 ----D---- C:\ProgramData\YoutubeAdblocker 2014-05-31 20:42:54 ----D---- C:\Program Files (x86)\YoutubeAdblocker 2014-05-31 20:42:48 ----D---- C:\ProgramData\sAve on 2014-05-31 20:42:48 ----D---- C:\Program Files (x86)\sAve on 2014-05-31 20:42:43 ----D---- C:\ProgramData\769823912cf96ab4 2014-05-31 20:42:04 ----D---- C:\ProgramData\InstallMate 2014-05-29 13:52:56 ----D---- C:\ProgramData\kinoma 2014-05-29 13:49:27 ----D---- C:\Program Files (x86)\Sony 2014-05-29 13:47:49 ----D---- C:\Users\hans\AppData\Roaming\Sony Corporation 2014-05-29 13:47:49 ----D---- C:\ProgramData\Sony Corporation 2014-05-18 20:56:42 ----D---- C:\ProgramData\SafetyNut ======List of files/folders modified in the last 1 month====== 2014-06-16 22:25:16 ----D---- C:\WINDOWS\Prefetch 2014-06-16 22:25:10 ----RD---- C:\Program Files 2014-06-16 22:24:48 ----D---- C:\WINDOWS\Temp 2014-06-16 22:21:46 ----D---- C:\WINDOWS\system32\sru 2014-06-16 20:42:56 ----D---- C:\WINDOWS\Microsoft.NET 2014-06-16 20:35:30 ----SHD---- C:\WINDOWS\Installer 2014-06-16 20:35:26 ----HD---- C:\ProgramData 2014-06-16 20:33:02 ----D---- C:\WINDOWS\Tasks 2014-06-16 20:33:02 ----D---- C:\WINDOWS\system32\Tasks 2014-06-16 19:13:51 ----D---- C:\WINDOWS\SysWOW64 2014-06-16 18:58:15 ----SHD---- C:\System Volume Information 2014-06-15 22:49:38 ----RD---- C:\Program Files (x86) 2014-06-15 22:48:24 ----D---- C:\Program Files\Common Files 2014-06-15 20:29:30 ----RD---- C:\WINDOWS\System32 2014-06-15 20:29:30 ----D---- C:\WINDOWS\Inf 2014-06-15 20:29:30 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2014-06-15 20:17:30 ----D---- C:\WINDOWS\AppReadiness 2014-06-15 19:59:39 ----SHD---- C:\$Recycle.Bin 2014-06-15 19:57:52 ----RD---- C:\Users 2014-06-15 15:12:58 ----D---- C:\WINDOWS\system32\config 2014-06-15 15:12:15 ----D---- C:\WINDOWS\rescache 2014-06-15 10:59:34 ----HD---- C:\Program Files\WindowsApps 2014-06-13 20:02:44 ----D---- C:\WINDOWS\system32\DriverStore 2014-06-13 20:02:37 ----D---- C:\WINDOWS\WinSxS 2014-06-13 19:58:14 ----D---- C:\WINDOWS\system32\catroot2 2014-06-13 19:33:04 ----RD---- C:\WINDOWS\ToastData 2014-06-13 19:33:01 ----RD---- C:\WINDOWS\ImmersiveControlPanel 2014-06-13 19:33:01 ----D---- C:\WINDOWS\system32\drivers\nl-NL 2014-06-13 19:33:01 ----D---- C:\WINDOWS\system32\drivers 2014-06-13 19:33:00 ----D---- C:\WINDOWS\system32\oobe 2014-06-13 19:15:18 ----D---- C:\WINDOWS\CbsTemp 2014-06-13 18:59:46 ----D---- C:\Program Files\Internet Explorer 2014-06-13 18:59:46 ----D---- C:\Program Files (x86)\Internet Explorer 2014-06-13 18:59:43 ----D---- C:\WINDOWS\WinStore 2014-06-13 18:57:33 ----D---- C:\WINDOWS\SYSWOW64\migration 2014-06-13 18:57:33 ----D---- C:\WINDOWS\system32\wbem 2014-06-13 18:57:33 ----D---- C:\WINDOWS\system32\nl-NL 2014-06-13 18:57:33 ----D---- C:\WINDOWS\system32\migration 2014-06-13 13:36:46 ----D---- C:\ProgramData\Microsoft Help 2014-06-13 13:33:47 ----D---- C:\WINDOWS\system32\MRT 2014-06-13 13:31:20 ----A---- C:\WINDOWS\system32\MRT.exe 2014-06-10 22:27:24 ----D---- C:\ProgramData\{4A268D42-77A5-4E91-AE73-470ED3BD9CA8} 2014-06-10 22:18:05 ----D---- C:\Windows 2014-06-10 21:57:00 ----D---- C:\Program Files (x86)\Common Files 2014-06-10 21:56:46 ----D---- C:\Program Files\Windows Defender 2014-06-10 21:56:44 ----D---- C:\ProgramData\Norton 2014-06-10 21:56:35 ----RSD---- C:\WINDOWS\assembly 2014-06-10 21:56:34 ----D---- C:\WINDOWS\SYSWOW64\config 2014-06-10 21:56:34 ----D---- C:\WINDOWS\system32\Sysprep 2014-06-10 21:56:34 ----D---- C:\WINDOWS\system32\drivers\UMDF 2014-06-10 21:56:34 ----D---- C:\WINDOWS\system32\CodeIntegrity 2014-06-10 21:49:35 ----D---- C:\WINDOWS\registration 2014-06-10 21:43:09 ----D---- C:\WINDOWS\system32\catroot 2014-06-10 21:41:00 ----D---- C:\WINDOWS\Logs 2014-06-10 15:00:39 ----D---- C:\ProgramData\Hewlett-Packard 2014-06-05 14:54:06 ----DC---- C:\WINDOWS\system32\DRVSTORE 2014-06-05 14:50:21 ----D---- C:\ProgramData\Apple 2014-06-02 21:44:54 ----SD---- C:\Users\hans\AppData\Roaming\Microsoft 2014-06-02 21:10:36 ----D---- C:\WINDOWS\system32\wdi 2014-06-02 21:04:35 ----HD---- C:\WINDOWS\ELAMBKUP 2014-06-02 21:00:46 ----D---- C:\Program Files (x86)\OpenOffice 4 2014-06-02 21:00:18 ----RSD---- C:\WINDOWS\Fonts 2014-05-31 07:13:24 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe 2014-05-25 10:23:07 ----A---- C:\WINDOWS\win.ini 2014-05-23 20:01:27 ----D---- C:\Program Files (x86)\Microsoft Works 2014-05-18 20:55:03 ----D---- C:\Program Files (x86)\Windows Defender 2014-05-18 20:55:02 ----D---- C:\WINDOWS\SYSWOW64\nl-NL ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 hpdskflt;@oem6.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2013-03-01 30520] R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2013-03-05 91712] R1 F06DEFF2-5B9C-490D-910F-35D3A91196222;F06DEFF2-5B9C-490D-910F-35D3A91196222; \??\C:\Program Files (x86)\Movies Toolbar\SafetyNut\x64\configmgrc1.cfg [2014-05-12 36224] R1 MpKslb61e3058;MpKslb61e3058; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C7DABEE-E085-4730-9797-960D1BD6AA13}\MpKslb61e3058.sys [2014-06-16 45352] R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680] R2 pnarp;Pure Networks Device Discovery Driver; C:\WINDOWS\system32\DRIVERS\pnarp.sys [2009-04-07 31536] R2 purendis;Pure Networks Wireless Driver; C:\WINDOWS\system32\DRIVERS\purendis.sys [2009-04-07 33072] R3 Accelerometer;@oem6.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2013-03-01 43320] R3 AmdAS4;@oem16.inf,%AmdAS4.SVCDESC%;AmdAS4 service; C:\WINDOWS\System32\drivers\AmdAS4.sys [2013-02-08 17504] R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2013-12-13 13207552] R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2013-12-13 626176] R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-18 3680256] R3 AtiHDAudioService;@oem14.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdW86.sys [2013-04-24 98744] R3 clwvd;@oem8.inf,%clwvd.DeviceDesc%;CyberLink WebCam Virtual Driver; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2013-03-05 41408] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-06-20 3454552] R3 RSP2STOR;@oem20.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2013-04-11 288840] R3 RTL8168;@oem4.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-04-10 801864] R3 StillCam;@sti.inf,%StillCam.SvcDesc%;Stuurprogramma voor seriële digitale fotocamera; C:\WINDOWS\system32\DRIVERS\serscan.sys [2013-08-22 11776] R3 SynTP;@oem19.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-06-05 533232] R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [2014-03-26 14112] R3 usbfilter;AMD USB Filter Driver; C:\WINDOWS\system32\DRIVERS\usbfilter.sys [2012-08-29 58536] R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB-videoapparaat (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224] R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864] S0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2012-12-01 80552] S0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2012-12-01 26280] S3 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-04-30 677360] S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2013-06-05 29424] S3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2013-06-05 33008] S3 USBAAPL64;@oem1.inf,%USBAAPL64.SvcDesc%;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl64.sys [2013-03-18 54784] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdaptiveSleepService;AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [2013-04-16 103424] R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2013-12-13 239616] R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-04-16 361984] R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768] R2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184] R2 CyberLink PowerDVD 12 Media Server Monitor Service;CyberLink PowerDVD 12 Media Server Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [2013-06-26 77576] R2 CyberLink PowerDVD 12 Media Server Service;CyberLink PowerDVD 12 Media Server Service; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [2013-06-26 294664] R2 d0e87c27;SW-Sustainer; C:\WINDOWS\syswow64\rundll32.exe [2013-08-22 49664] R2 GoToMyPC;GoToMyPC; C:\Program Files (x86)\Citrix\GoToMyPC\g2svc.exe [2014-01-30 1335640] R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2013-06-07 92160] R2 hpsrv;@oem6.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2013-03-01 43320] R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [2013-05-03 1039160] R2 IePluginService;IePlugin Service; C:\ProgramData\IePluginService\PluginService.exe [2014-04-11 705136] R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2007-12-05 79136] R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120] R2 nmservice;Pure Networks Platform Service; C:\Program Files (x86)\Common Files\Pure Networks Shared\Platform\nmsrvc.exe [2009-04-07 642856] R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2013-06-19 246488] R2 SafetyNutManager;SafetyNut Manager; C:\Program Files (x86)\Movies Toolbar\SafetyNut\SafetyNutManager.exe [2014-05-12 3544072] R2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [2014-04-15 2185528] R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2012-06-05 266240] R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2013-06-07 1129760] S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-20 116648] S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784] S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-20 116648] S3 iPod Service;iPod-service; C:\Program Files\iPod\bin\iPodService.exe [2014-05-26 641352] S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856] S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-09-17 800040] S3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-06-27 279848] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696] S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 Sony SCSI Helper Service;Sony SCSI Helper Service; C:\Program Files (x86)\Common Files\Sony Shared\Fsk\SonySCSIHelperService.exe [2013-11-26 73728] S3 w3logsvc;@%windir%\system32\inetsrv\iisres.dll,-30014; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768] S3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768] -----------------EOF-----------------