Logfile of random's system information tool 1.10 (written by random/random) Run by ferugol at 2014-11-23 16:12:10 Microsoft® Windows Vista™ Home Premium Service Pack 2 System drive C: has 351 GB (76%) free of 464 GB Total RAM: 3066 MB (28% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 16:13:09, on 23-11-2014 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v9.00 (9.00.8112.16584) Boot mode: Normal Running processes: C:\Windows\system32\taskeng.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\Advanced System Protector\AdvancedSystemProtector.exe C:\Windows\system32\taskeng.exe C:\Program Files\Optimizer Pro\OptProSmartScan.exe C:\Program Files\PC Optimizer Pro\StartApps.exe C:\Program Files\Optimizer Pro\OptProReminder.exe C:\Program Files\ver7Safer-Surf\Safer-Surf.exe C:\Program Files\OfferBoulevard\OfferBoulevardW.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Users\ferugol\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.15.4\dsrlte.exe C:\Users\ferugol\AppData\Local\PriceFountain\pricefountainw.exe C:\Program Files\MyPC Backup\MyPC Backup.exe C:\Users\ferugol\AppData\Local\StormWatch\StormWatchApp.exe C:\Windows\System32\wscript.exe C:\Windows\System32\wscript.exe C:\Users\ferugol\AppData\Local\PriceFountain\pricefountain.exe C:\Program Files\PC Optimizer Pro\PCOptimizerPro.exe C:\Users\ferugol\AppData\Local\FilesFrog Update Checker\update_checker.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Program Files\Hotspot Shield\bin\hsscp.exe C:\Windows\system32\conime.exe C:\Program Files\FindRight\bin\FindRight.BrowserAdapter.exe C:\Program Files\FindRight\bin\FindRight.BRT.Helper.exe C:\Program Files\ver7Safer-Surf\I1Safer-SurfQ28.exe C:\Windows\system32\wuauclt.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Speccy\Speccy.exe C:\Windows\system32\SearchFilterHost.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Users\ferugol\Downloads\RSIT.exe C:\Program Files\trend micro\ferugol.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hp&ts=1392474225&from=cor&uid=HitachiXHTS545050B9A300_090425PB4400Q7GH13BAX R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1392474225&from=cor&uid=HitachiXHTS545050B9A300_090425PB4400Q7GH13BAX&q={searchTerms} R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1392474225&from=cor&uid=HitachiXHTS545050B9A300_090425PB4400Q7GH13BAX&q={searchTerms} R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://rts.dsrlte.com?affID=na R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hp&ts=1392474225&from=cor&uid=HitachiXHTS545050B9A300_090425PB4400Q7GH13BAX R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1392474225&from=cor&uid=HitachiXHTS545050B9A300_090425PB4400Q7GH13BAX&q={searchTerms} R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1392474225&from=cor&uid=HitachiXHTS545050B9A300_090425PB4400Q7GH13BAX&q={searchTerms} R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.mysearchdial.com/?f=1&a=vit0102&cd=2XzuyEtN2Y1L1QzutDtD0F0FtCzy0C0Czy0AyEyBzzyB0DzytN0D0Tzu0SzzyCtAtN1L2XzutBtFtCzztFtBtFtDtN1L1Czu2X1L2ZtDtCtDtBtN1L1G1B1V1N2Y1L1Qzu2StByDtD0EyBtBzyzytGtBtByD0FtGyEyCtB0EtGzy0E0D0FtGtCyD0E0BtCyCyEyBtB0E0Azz2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyE0D0D0C0A0FtD0AtGtA0F0DtCtGzz0AzztAtGyDzzzy0BtGyByE0FzyyByCtBzz0CyCtBzz2Q&cr=1299170974&ir= R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=f80587d90000000000000022fa164b72&r=453 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = file://C:\Program Files\FindRight\bin\Pac9064.js R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll O2 - BHO: Safer-Surf - {2081B697-67D3-A075-36BE-179A68F9BF87} - C:\Program Files\ver7Safer-Surf\182.dll O2 - BHO: Music Toolbar (Dist. by Bandoo Media, Inc.) - {251ef57c-0612-478c-978e-c86d3879caa4} - C:\PROGRA~1\MUSICT~1\Datamngr\SRTOOL~1\IE\searchresultsDx.dll (file missing) O2 - BHO: FindRight - {2c774641-5504-46a8-b63f-6715ae3fe376} - C:\Program Files\FindRight\FindRightBHO.dll O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: SaverPro - {4af38987-ab77-4888-bc41-71cefb155068} - C:\ProgramData\SaverPro\kbawf7LUpTRLGy.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG SafeGuard toolbar\18.1.7.598\AVG SafeGuard toolbar_toolbar.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll O2 - BHO: PriceFountain - {b608cc98-54de-4775-96c9-097de398500c} - C:\Users\ferugol\AppData\Local\PriceFountain\PriceFountainIE.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O2 - BHO: DVDVideoSoft.WebPageAdjuster - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll O2 - BHO: mysearchdial Helper Object - {EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD} - C:\Program Files\Mysearchdial\1.8.29.0\bh\mysearchdial.dll O3 - Toolbar: Music Toolbar (Dist. by Bandoo Media, Inc.) - {251ef57c-0612-478c-978e-c86d3879caa4} - C:\PROGRA~1\MUSICT~1\Datamngr\SRTOOL~1\IE\searchresultsDx.dll (file missing) O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O3 - Toolbar: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG SafeGuard toolbar\18.1.7.598\AVG SafeGuard toolbar_toolbar.dll O3 - Toolbar: mysearchdial Toolbar - {3004627E-F8E9-4E8B-909D-316753CBA923} - C:\Program Files\Mysearchdial\1.8.29.0\mysearchdialTlbr.dll O4 - HKLM\..\Run: [OfferBoulevard] C:\Program Files\OfferBoulevard\OfferBoulevardW.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" O4 - HKCU\..\Run: [Yahoo! Search] C:\Users\ferugol\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.15.4\dsrlte.exe O4 - HKCU\..\Run: [Optimizer Pro] C:\Program Files\Optimizer Pro\OptProLauncher.exe O4 - HKCU\..\Run: [pricefountainw.exe] C:\Users\ferugol\AppData\Local\PriceFountain\pricefountainw.exe HKEY_CURRENT_USER Software\PriceFountain O4 - HKCU\..\Run: [SpeedItupFree] "C:\Program Files\SpeedItup Free\speeditupfree.exe" O4 - HKCU\..\RunOnce: [PennyBee] wscript /E:vbscript /B "C:\Users\ferugol\AppData\Roaming\PennyBee\UpdateProc\bkup.dat" O4 - HKCU\..\RunOnce: [PriceFountain] wscript /E:vbscript /B "C:\Users\ferugol\AppData\Roaming\PriceFountain\UpdateProc\bkup.dat" O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE') O4 - Startup: MyPC Backup.lnk = C:\Program Files\MyPC Backup\MyPC Backup.exe O4 - Startup: StormWatchApp.lnk = C:\Users\ferugol\AppData\Local\StormWatch\StormWatchApp.exe O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Program Files\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm O9 - Extra button: In weblog opnemen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &In weblog opnemen met Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL O9 - Extra button: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll O9 - Extra 'Tools' menuitem: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Acer\Acer VCM\Skype4COM.dll O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.7\ViProtocol.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe O23 - Service: Computer Backup (MyPC Backup) (BackupStack) - Just Develop It - C:\Program Files\MyPC Backup\BackupStack.exe O23 - Service: CLHNService - Unknown owner - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe O23 - Service: Google Desktop Manager 5.8.809.23506 (GoogleDesktopManager-092308-165331) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Hotspot Shield Service (hshld) - AnchorFree Inc. - C:\Program Files\Hotspot Shield\bin\cmw_srv.exe O23 - Service: Hotspot Shield Tray Service (HssTrayService) - Unknown owner - C:\Program Files\Hotspot Shield\bin\HssTrayService.EXE O23 - Service: Hotspot Shield Monitoring Service (HssWd) - Unknown owner - C:\Program Files\Hotspot Shield\bin\hsswd.exe O23 - Service: IePlugin Service (IePluginService) - Cherished Technololgy LIMITED - C:\ProgramData\IePluginService\PluginService.exe O23 - Service: MaintainerSvc3.75.5000057 - Unknown owner - C:\ProgramData\75acca2f-18f9-4ee2-81a2-0d40cd9a3cbd\maintainer.exe O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe O23 - Service: MyWinLocker Service (MWLService) - EgisTec Inc. - C:\Program Files\EgisTec\MyWinLocker 3\x86\\MWLService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: OfferBoulevard service (OfferBoulevard) - Unknown owner - C:\Program Files\OfferBoulevard\OfferBoulevard.exe O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files\Acer\Acer VCM\RS_Service.exe O23 - Service: spdfrmon - Unknown owner - C:\Program Files\SpeedItup Free\spdfrmon.exe O23 - Service: Update FindRight - Unknown owner - C:\Program Files\FindRight\updateFindRight.exe O23 - Service: Util FindRight - Unknown owner - C:\Program Files\FindRight\bin\utilFindRight.exe O23 - Service: vToolbarUpdater18.1.7 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe O23 - Service: WinZiper service (winzipersvc) - Taiwan Shui Mu Chih Ching Technology Limited. - C:\Program Files\WinZipper\winzipersvc.exe -- End of file - 13618 bytes ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe C:\Windows\tasks\Apps Hat-codedownloader.job - C:\Program Files\Apps Hat\Apps Hat-codedownloader.exe /reinstallapp /runfrom=task /agentregpath='Apps Hat' /appid=48559 /srcid='000820' /subid='0' /zdata='appshatmadness' /bic=F3AC115EB6A44A5484924D9A2C5E6E6EIE /verifier=76b5f30b11d578f498849fb038bcb43d /installerversion=1_34_3_17 /installerfullversion=1.34.3.17 /installationtime=1395180259 /statsdomain=http://stats.srvstatsdata.com /errorsdomain=http://errors.srvstatsdata.com /codedownloaddomain=http://app-static.crossrider.com /defbro=ch /allusers /autoupdateulr='http://update.srvstatsdata.com/ie_code_agent_updates/{CAMP_ID}/update.json' /runfrom='task' /externallog='' C:\Windows\tasks\Apps Hat-firefoxinstaller.job - C:\Program Files\Apps Hat\Apps Hat-firefoxinstaller.exe /installxpi /agentregpath='Apps Hat' /extensionfilepath='C:\Program Files\Apps Hat\48559.xpi' /appid=48559 /srcid='000820' /subid='0' /zdata='appshatmadness' /bic=F3AC115EB6A44A5484924D9A2C5E6E6EIE /verifier=76b5f30b11d578f498849fb038bcb43d /installerversion=1_34_3_17 /installerfullversion=1.34.3.17 /installationtime=1395180259 /statsdomain=http://stats.srvstatsdata.com /errorsdomain=http://errors.srvstatsdata.com /waitforbrowser=300 /extensionid=39ed7c16-185d-4f88-b976-666d4928ba01@fe4550c1-7a4f-4a62-ad1c-45e0afdf81a4.com /extensionversion=0.94 /prefsbranch=a39ed7c16185d4f88b976666d4928ba01fe4550c17a4f4a62ad1c45e0afdf81a4com48559 /updateurl=https://w9u6a2p6.ssl.hwcdn.net/plugin/ff/update/48559.rdf /extensionname='Apps Hat' /extensiondesc='Apps Hat is the cool new Android app store that helps you discover hot new apps, both free and discounted. Get personalised recommendations, price drop alerts, and share your favourite apps with your friends.' /publishername='Nero' /defbro=ch /allusers /allprofiles /checkfflist /autoupdateulr='http://update.srvstatsdata.com/ff_agent_updates/{CAMP_ID}/update.json' /runfrom='task' /externallog='' C:\Windows\tasks\Apps Hat-updater.job - C:\Program Files\Apps Hat\Apps Hat-updater.exe /rawdata=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 C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3770756863-732491548-408909542-1000Core.job - C:\Users\ferugol\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3770756863-732491548-408909542-1000UA.job - C:\Users\ferugol\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler C:\Windows\tasks\MySearchDial.job - C:\Users\ferugol\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE /Check C:\Windows\tasks\PC Optimizer Pro Idle.job - C:\Program Files\PC Optimizer Pro\StartApps.exe -s C:\Windows\tasks\PC Optimizer Pro Scan.job - C:\Program Files\PC Optimizer Pro\StartApps.exe -t C:\Windows\tasks\PC Optimizer Pro startups.job - C:\Program Files\PC Optimizer Pro\StartApps.exe -sm C:\Windows\tasks\PC Optimizer Pro Updates.job - C:\Program Files\PC Optimizer Pro\StartApps.exe -psdu C:\Windows\tasks\PennyBee.job - C:\Users\ferugol\AppData\Roaming\PennyBee\UPDATE~1\UPDATE~1.EXE /Check C:\Windows\tasks\Price Fountain.job - C:\Users\ferugol\AppData\Roaming\PRICEF~1\UPDATE~1\UPDATE~1.EXE /Check C:\Windows\tasks\Safer-Surf Update.job - C:\Program Files\ver7Safer-Surf\I1Safer-SurfQ28.exe /update C:\Windows\tasks\System Speedup_DEFAULT.job - C:\Program Files\System Speedup\SystemSpeedup.exe -default C:\Windows\tasks\System Speedup_UPDATES.job - C:\Program Files\System Speedup\SystemSpeedup.exe -updatecheck C:\Windows\tasks\UpdaterEX.job - C:\Users\ferugol\AppData\Roaming\UPDATE~1\UPDATE~1\UPDATE~1.EXE /Check ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}] MSS+ Identifier - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09 96128] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2081B697-67D3-A075-36BE-179A68F9BF87}] Safer-Surf - C:\Program Files\ver7Safer-Surf\182.dll [2014-11-13 235008] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{251ef57c-0612-478c-978e-c86d3879caa4}] Music Toolbar (Dist. by Bandoo Media, Inc.) - C:\PROGRA~1\MUSICT~1\Datamngr\SRTOOL~1\IE\searchresultsDx.dll [] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2c774641-5504-46a8-b63f-6715ae3fe376}] FindRight - C:\Program Files\FindRight\FindRightBHO.dll [2014-10-18 250096] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}] Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-01-24 176736] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4af38987-ab77-4888-bc41-71cefb155068}] SaverPro - C:\ProgramData\SaverPro\kbawf7LUpTRLGy.dll [2014-11-12 769536] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-11-13 462760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live Aanmelden - Help - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}] AVG SafeGuard toolbar - C:\Program Files\AVG SafeGuard toolbar\18.1.7.598\AVG SafeGuard toolbar_toolbar.dll [2014-07-11 3594264] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2014-04-03 194504] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}] Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll [2013-11-09 1001936] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b608cc98-54de-4775-96c9-097de398500c}] PriceFountain - C:\Users\ferugol\AppData\Local\PriceFountain\PriceFountainIE.dll [2014-10-26 88064] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-11-13 171944] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}] DVDVideoSoft IE Extension - C:\Program Files\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll [2014-01-22 294456] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}] mysearchdial Helper Object - C:\Program Files\Mysearchdial\1.8.29.0\bh\mysearchdial.dll [2014-05-12 279960] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {251ef57c-0612-478c-978e-c86d3879caa4} - Music Toolbar (Dist. by Bandoo Media, Inc.) - C:\PROGRA~1\MUSICT~1\Datamngr\SRTOOL~1\IE\searchresultsDx.dll [] {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-01-24 4438104] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2014-04-03 194504] {95B7759C-8C7F-4BF1-B163-73684A933233} - AVG SafeGuard toolbar - C:\Program Files\AVG SafeGuard toolbar\18.1.7.598\AVG SafeGuard toolbar_toolbar.dll [2014-07-11 3594264] {3004627E-F8E9-4E8B-909D-316753CBA923} - mysearchdial Toolbar - C:\Program Files\Mysearchdial\1.8.29.0\mysearchdialTlbr.dll [2014-05-12 288664] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "OfferBoulevard"=C:\Program Files\OfferBoulevard\OfferBoulevardW.exe [2014-09-09 378888] "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2014-09-26 271744] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2013-02-17 68856] "Yahoo! Search"=C:\Users\ferugol\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.15.4\dsrlte.exe [2014-11-10 533352] "Optimizer Pro"=C:\Program Files\Optimizer Pro\OptProLauncher.exe [2014-10-28 148048] "pricefountainw.exe"=C:\Users\ferugol\AppData\Local\PriceFountain\pricefountainw.exe [2014-11-10 1257472] "SpeedItupFree"=C:\Program Files\SpeedItup Free\speeditupfree.exe [2014-11-16 7948320] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce] "PennyBee"=wscript /E:vbscript /B C:\Users\ferugol\AppData\Roaming\PennyBee\UpdateProc\bkup.dat [] "PriceFountain"=wscript /E:vbscript /B C:\Users\ferugol\AppData\Roaming\PriceFountain\UpdateProc\bkup.dat [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acer ePower Management] C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTrayLauncher.exe [2009-04-15 440864] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AmIcoSinglun] C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [2008-10-24 237568] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AppsHat] C:\Users\ferugol\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe [2012-10-26 202752] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcadeDeluxeAgent] C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [2009-01-21 156968] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AVG_UI] C:\Program Files\AVG\AVG2013\avgui.exe /TRAYONLY [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonQuickMenu] C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [2013-05-02 1282120] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer] C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe [2009-01-21 202024] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EgisTecLiveUpdate] C:\Program Files\EgisTec Egis Software Update\EgisUpdate.exe [2008-10-27 199464] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe] C:\Windows\ehome\ehTray.exe [2008-01-21 125952] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update] C:\Users\ferugol\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-03-03 138096] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FLV Player] C:\Users\ferugol\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe [2012-10-26 202752] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search] C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2013-02-17 30192] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IJNetworkScannerSelectorEX] C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [2013-02-19 453736] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KingTranslate] C:\Program Files\KingTranslate\KingTranslate.exe [2013-02-04 164352] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LManager] C:\Program Files\Launch Manager\LManager.exe [2009-02-24 870920] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mwlDaemon] C:\Program Files\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [2008-10-27 346672] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon] C:\Windows\system32\NvCpl.dll [2009-02-10 13605408] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter] C:\Windows\system32\NvMcTray.dll [2009-02-10 92704] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PlayMovie] C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe [2008-12-26 173288] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PLFSetI] C:\Windows\PLFSetI.exe [2013-02-17 200704] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ProductReg] C:\Program Files\Acer\WR_PopUp\ProductReg.exe [2008-11-17 135168] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel] C:\Program Files\Realtek\Audio\HDA\Skytel.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpeedUpMyComputer] C:\Program Files\SmartTweak\SpeedUpMyComputer\SpeedUpMyComputer.exe [2013-07-22 2054776] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] C:\Program Files\Common Files\Java\Java Update\jusched.exe [2014-09-26 271744] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2013-02-17 68856] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-12-05 1410344] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VitaKeyPdtWzd] c:\Program Files\Acer Bio Protection\PdtWzd.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vProt] C:\Program Files\AVG SafeGuard toolbar\vprot.exe [2014-07-11 2567192] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WindowsWelcomeCenter] oobefldr.dll,ShowWelcomeCenter [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Acer VCM.lnk] C:\PROGRA~1\Acer\ACERVC~1\AcerVCM.exe [2009-01-10 565248] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk] C:\PROGRA~1\MCAFEE~1\38B0D1~1.150\SSSCHE~1.EXE [2014-04-09 279456] C:\Users\ferugol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup MyPC Backup.lnk - C:\Program Files\MyPC Backup\MyPC Backup.exe StormWatchApp.lnk - C:\Users\ferugol\AppData\Local\StormWatch\StormWatchApp.exe [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa] "notification packages"= [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableUIADesktopToggle"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "BindDirectlyToPropertySetStorage"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rjatydimofu.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "vidc.cvid"=iccvid.dll "MSVideo8"=VfWWDM32.dll "msacm.siren"=sirenacm.dll "msacm.vorbis"=vorbis.acm "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux"=wdmaud.drv "wave2"=wdmaud.drv "mixer2"=wdmaud.drv "midi2"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2014-11-23 16:12:10 ----D---- C:\rsit 2014-11-23 16:12:10 ----D---- C:\Program Files\trend micro 2014-11-16 20:54:09 ----A---- C:\Windows\system32\CNC_BXL.dll 2014-11-16 20:54:09 ----A---- C:\Windows\system32\CNC_BXI.dll 2014-11-16 20:54:09 ----A---- C:\Windows\system32\CNC_BXC.dll 2014-11-16 10:53:04 ----D---- C:\Program Files\Display 2014-11-16 10:52:30 ----D---- C:\ProgramData\PC Optimizer Pro 2014-11-16 10:22:27 ----D---- C:\Program Files (x86) 2014-11-14 10:40:35 ----D---- C:\Program Files\Display Offer 2014-11-14 10:39:40 ----D---- C:\Program Files\PC Optimizer Pro 2014-11-13 21:01:38 ----D---- C:\Program Files\Common Files\Java 2014-11-13 21:01:35 ----A---- C:\Windows\system32\javaws.exe 2014-11-13 21:01:13 ----A---- C:\Windows\system32\WindowsAccessBridge.dll 2014-11-13 21:01:13 ----A---- C:\Windows\system32\javaw.exe 2014-11-13 21:01:11 ----A---- C:\Windows\system32\java.exe 2014-11-13 20:58:58 ----D---- C:\Users\ferugol\AppData\Roaming\PennyBee 2014-11-13 20:58:42 ----D---- C:\Program Files\OfferBoulevard 2014-11-13 20:58:29 ----D---- C:\Program Files\MyPC Backup 2014-11-13 20:58:14 ----A---- C:\ProgramData\spds90.txt 2014-11-13 20:58:02 ----D---- C:\Windows\SpeedItup Free 2014-11-13 20:58:01 ----D---- C:\Program Files\SpeedItup Free 2014-11-13 20:58:01 ----A---- C:\Windows\SpeedItup Free Setup Log.txt 2014-11-13 20:57:52 ----A---- C:\Windows\system32\drivers\webinstrNew.sys 2014-11-13 20:57:51 ----D---- C:\Program Files\ver7Safer-Surf 2014-11-13 20:57:30 ----D---- C:\Users\ferugol\AppData\Roaming\VOPackage 2014-11-13 01:17:06 ----D---- C:\Program Files\Speccy 2014-11-12 17:38:24 ----D---- C:\ProgramData\SuperManCoupon 2014-11-12 17:02:48 ----D---- C:\ProgramData\SaverPro 2014-11-12 17:02:33 ----D---- C:\ProgramData\2996122918d0da53 2014-11-12 16:38:21 ----D---- C:\Users\ferugol\AppData\Roaming\WSE_Lasaoren 2014-11-12 16:38:20 ----D---- C:\Program Files\WSE_Lasaoren 2014-11-12 15:48:47 ----D---- C:\ProgramData\boost_interprocess 2014-11-12 15:48:45 ----D---- C:\Users\ferugol\AppData\Roaming\PriceFountain 2014-11-12 15:48:06 ----D---- C:\ProgramData\AVAST Software 2014-11-12 15:45:02 ----D---- C:\Users\ferugol\AppData\Roaming\WSE_Vosteran 2014-11-12 15:45:01 ----D---- C:\Program Files\WSE_Vosteran 2014-11-09 14:50:23 ----D---- C:\Users\ferugol\AppData\Roaming\eTeks 2014-11-08 20:28:58 ----A---- C:\Windows\system32\FntCache.dll 2014-11-08 20:28:58 ----A---- C:\Windows\system32\DWrite.dll 2014-11-08 20:28:58 ----A---- C:\Windows\system32\d3d10warp.dll 2014-11-08 20:28:58 ----A---- C:\Windows\system32\d3d10level9.dll 2014-11-08 20:28:58 ----A---- C:\Windows\system32\d3d10core.dll 2014-11-08 20:28:58 ----A---- C:\Windows\system32\d3d10_1core.dll 2014-11-08 20:28:58 ----A---- C:\Windows\system32\d3d10_1.dll 2014-11-08 20:28:58 ----A---- C:\Windows\system32\d3d10.dll 2014-11-08 20:28:58 ----A---- C:\Windows\system32\d2d1.dll 2014-11-08 20:27:22 ----A---- C:\Windows\system32\XpsPrint.dll 2014-11-08 19:54:51 ----A---- C:\Windows\system32\infocardapi.dll 2014-11-08 19:54:51 ----A---- C:\Windows\system32\icardres.dll 2014-11-08 19:54:51 ----A---- C:\Windows\system32\icardagt.exe 2014-11-08 19:54:48 ----A---- C:\Windows\system32\TsWpfWrp.exe 2014-11-08 19:53:36 ----A---- C:\Windows\system32\mscories.dll 2014-11-08 19:53:36 ----A---- C:\Windows\system32\mscorier.dll 2014-11-08 19:53:36 ----A---- C:\Windows\system32\dfshim.dll 2014-11-08 19:40:56 ----A---- C:\Windows\system32\tzres.dll 2014-11-08 19:39:40 ----A---- C:\Windows\system32\gdi32.dll 2014-11-08 19:38:11 ----A---- C:\Windows\system32\win32k.sys 2014-11-08 19:30:01 ----A---- C:\Windows\system32\drivers\fastfat.sys 2014-11-08 19:29:50 ----A---- C:\Windows\system32\packager.dll 2014-11-08 19:18:15 ----D---- C:\Program Files\Windows Portable Devices 2014-11-08 03:08:05 ----A---- C:\Windows\system32\webservices.dll 2014-11-08 03:07:09 ----A---- C:\Windows\system32\UIRibbonRes.dll 2014-11-08 03:07:09 ----A---- C:\Windows\system32\UIRibbon.dll 2014-11-08 03:07:09 ----A---- C:\Windows\system32\UIAnimation.dll 2014-11-08 03:05:50 ----A---- C:\Windows\system32\WPDShextAutoplay.exe 2014-11-08 03:05:50 ----A---- C:\Windows\system32\wpdbusenum.dll 2014-11-08 03:05:50 ----A---- C:\Windows\system32\BthMtpContextHandler.dll 2014-11-08 03:05:48 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll 2014-11-08 03:05:47 ----A---- C:\Windows\system32\wpdshext.dll 2014-11-08 03:05:47 ----A---- C:\Windows\system32\WpdMtpUS.dll 2014-11-08 03:05:47 ----A---- C:\Windows\system32\WpdConns.dll 2014-11-08 03:05:47 ----A---- C:\Windows\system32\drivers\WpdUsb.sys 2014-11-08 03:05:46 ----A---- C:\Windows\system32\WPDSp.dll 2014-11-08 03:05:46 ----A---- C:\Windows\system32\WPDShServiceObj.dll 2014-11-08 03:05:46 ----A---- C:\Windows\system32\WpdMtp.dll 2014-11-08 03:05:46 ----A---- C:\Windows\system32\wpd_ci.dll 2014-11-08 03:05:46 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll 2014-11-08 03:05:46 ----A---- C:\Windows\system32\PortableDeviceTypes.dll 2014-11-08 03:05:46 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll 2014-11-08 03:05:46 ----A---- C:\Windows\system32\PortableDeviceApi.dll 2014-11-07 19:16:36 ----D---- C:\Windows\Migration 2014-11-07 19:12:48 ----A---- C:\Windows\system32\wininet.dll 2014-11-07 19:12:48 ----A---- C:\Windows\system32\urlmon.dll 2014-11-07 19:12:48 ----A---- C:\Windows\system32\SetIEInstalledDate.exe 2014-11-07 19:12:48 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe 2014-11-07 19:12:48 ----A---- C:\Windows\system32\msrating.dll 2014-11-07 19:12:48 ----A---- C:\Windows\system32\msls31.dll 2014-11-07 19:12:48 ----A---- C:\Windows\system32\mshtmler.dll 2014-11-07 19:12:48 ----A---- C:\Windows\system32\jsproxy.dll 2014-11-07 19:12:48 ----A---- C:\Windows\system32\ieui.dll 2014-11-07 19:12:48 ----A---- C:\Windows\system32\iesysprep.dll 2014-11-07 19:12:48 ----A---- C:\Windows\system32\iertutil.dll 2014-11-07 19:12:48 ----A---- C:\Windows\system32\ieframe.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\wextract.exe 2014-11-07 19:12:47 ----A---- C:\Windows\system32\webcheck.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\vbscript.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\url.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\pngfilt.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\occache.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\mshtmled.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\mshtml.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\mshta.exe 2014-11-07 19:12:47 ----A---- C:\Windows\system32\msfeeds.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\licmgr10.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\inseng.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\iexpress.exe 2014-11-07 19:12:47 ----A---- C:\Windows\system32\ieUnatt.exe 2014-11-07 19:12:47 ----A---- C:\Windows\system32\iesetup.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\iernonce.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\iedkcs32.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\ieapfltr.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\ieapfltr.dat 2014-11-07 19:12:47 ----A---- C:\Windows\system32\ieakui.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\ieaksie.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\ie4uinit.exe 2014-11-07 19:12:47 ----A---- C:\Windows\system32\icardie.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\dxtrans.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\dxtmsft.dll 2014-11-07 19:12:47 ----A---- C:\Windows\system32\admparse.dll 2014-11-07 19:12:46 ----A---- C:\Windows\system32\msfeedssync.exe 2014-11-07 19:12:46 ----A---- C:\Windows\system32\msfeedsbs.dll 2014-11-07 19:12:46 ----A---- C:\Windows\system32\jscript9.dll 2014-11-07 19:12:46 ----A---- C:\Windows\system32\jscript.dll 2014-11-07 19:12:46 ----A---- C:\Windows\system32\imgutil.dll 2014-11-07 19:12:46 ----A---- C:\Windows\system32\iepeers.dll 2014-11-07 19:12:46 ----A---- C:\Windows\system32\ieakeng.dll 2014-11-07 19:12:46 ----A---- C:\Windows\system32\IEAdvpack.dll 2014-11-07 19:12:46 ----A---- C:\Windows\system32\advpack.dll 2014-11-07 19:11:40 ----A---- C:\Windows\system32\MFH264Dec.dll 2014-11-07 19:11:39 ----A---- C:\Windows\system32\mfreadwrite.dll 2014-11-07 19:11:39 ----A---- C:\Windows\system32\mfps.dll 2014-11-07 19:11:39 ----A---- C:\Windows\system32\mfplat.dll 2014-11-07 19:11:39 ----A---- C:\Windows\system32\mfmp4src.dll 2014-11-07 19:11:39 ----A---- C:\Windows\system32\MFHEAACdec.dll 2014-11-07 19:11:39 ----A---- C:\Windows\system32\mf.dll 2014-11-07 19:11:37 ----A---- C:\Windows\system32\stobject.dll 2014-11-07 19:11:37 ----A---- C:\Windows\system32\shdocvw.dll 2014-11-07 19:11:36 ----A---- C:\Windows\system32\xpsservices.dll 2014-11-07 19:11:36 ----A---- C:\Windows\system32\XpsRasterService.dll 2014-11-07 19:11:36 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe 2014-11-07 19:11:36 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll 2014-11-07 19:11:36 ----A---- C:\Windows\system32\OpcServices.dll 2014-11-07 19:11:36 ----A---- C:\Windows\system32\dxgi.dll 2014-11-07 19:11:12 ----A---- C:\Windows\system32\WMPhoto.dll 2014-11-07 19:11:12 ----A---- C:\Windows\system32\WindowsCodecsExt.dll 2014-11-07 19:11:12 ----A---- C:\Windows\system32\WindowsCodecs.dll 2014-11-07 19:11:12 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll 2014-11-07 19:11:12 ----A---- C:\Windows\system32\dxdiagn.dll 2014-11-07 19:11:12 ----A---- C:\Windows\system32\dxdiag.exe 2014-11-07 19:11:12 ----A---- C:\Windows\system32\d3d11.dll 2014-11-07 19:08:49 ----A---- C:\Windows\system32\Wdfres.dll 2014-11-07 19:08:40 ----A---- C:\Windows\system32\drivers\WUDFRd.sys 2014-11-07 19:08:40 ----A---- C:\Windows\system32\drivers\WUDFPf.sys 2014-11-07 19:08:39 ----A---- C:\Windows\system32\winusb.dll 2014-11-07 19:08:38 ----A---- C:\Windows\system32\WUDFSvc.dll 2014-11-07 19:08:38 ----A---- C:\Windows\system32\WUDFPlatform.dll 2014-11-07 19:08:37 ----A---- C:\Windows\system32\WUDFx.dll 2014-11-07 19:08:37 ----A---- C:\Windows\system32\WUDFHost.exe 2014-11-07 19:08:37 ----A---- C:\Windows\system32\WUDFCoinstaller.dll 2014-11-07 19:08:37 ----A---- C:\Windows\system32\drivers\WdfLdr.sys 2014-11-07 14:08:08 ----A---- C:\Windows\system32\icaapi.dll 2014-11-07 14:08:08 ----A---- C:\Windows\system32\drivers\tssecsrv.sys 2014-11-07 14:08:06 ----A---- C:\Windows\system32\drivers\tcpip.sys 2014-11-07 14:07:56 ----A---- C:\Windows\system32\synceng.dll 2014-11-07 14:07:54 ----A---- C:\Windows\system32\EncDec.dll 2014-11-07 14:07:52 ----A---- C:\Windows\system32\dpnsvr.exe 2014-11-07 14:07:52 ----A---- C:\Windows\system32\dpnet.dll 2014-11-07 14:07:51 ----A---- C:\Windows\system32\drivers\partmgr.sys 2014-11-07 14:07:48 ----A---- C:\Windows\system32\WMALFXGFXDSP.dll 2014-11-07 14:07:47 ----A---- C:\Windows\system32\SysFxUI.dll 2014-11-07 14:07:47 ----A---- C:\Windows\system32\drivers\portcls.sys 2014-11-07 14:07:47 ----A---- C:\Windows\system32\drivers\drmk.sys 2014-11-07 14:07:45 ----A---- C:\Windows\system32\netapi32.dll 2014-11-07 14:07:43 ----A---- C:\Windows\system32\drivers\usbuhci.sys 2014-11-07 14:07:43 ----A---- C:\Windows\system32\drivers\usbport.sys 2014-11-07 14:07:43 ----A---- C:\Windows\system32\drivers\usbhub.sys 2014-11-07 14:07:43 ----A---- C:\Windows\system32\drivers\usbehci.sys 2014-11-07 14:07:43 ----A---- C:\Windows\system32\drivers\usbd.sys 2014-11-07 14:07:43 ----A---- C:\Windows\system32\drivers\usbccgp.sys 2014-11-07 14:07:36 ----A---- C:\Windows\system32\winsrv.dll 2014-11-07 14:07:32 ----A---- C:\Windows\system32\cryptdlg.dll 2014-11-07 14:06:20 ----A---- C:\Windows\system32\XpsGdiConverter.dll 2014-11-07 14:06:10 ----A---- C:\Windows\system32\xmllite.dll 2014-11-07 14:06:08 ----A---- C:\Windows\system32\usp10.dll 2014-11-07 14:06:04 ----A---- C:\Windows\system32\shell32.dll 2014-11-07 14:06:01 ----A---- C:\Windows\system32\psisdecd.dll 2014-11-07 14:05:59 ----A---- C:\Windows\system32\winmm.dll 2014-11-07 14:05:59 ----A---- C:\Windows\system32\mciseq.dll 2014-11-07 14:05:56 ----A---- C:\Windows\system32\localspl.dll 2014-11-07 14:05:28 ----A---- C:\Windows\system32\msi.dll 2014-11-07 14:05:27 ----A---- C:\Windows\system32\msihnd.dll 2014-11-07 14:05:27 ----A---- C:\Windows\system32\consent.exe 2014-11-07 14:05:27 ----A---- C:\Windows\system32\authui.dll 2014-11-07 14:05:27 ----A---- C:\Windows\system32\appinfo.dll 2014-11-07 14:04:28 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-11-07 14:04:06 ----A---- C:\Windows\system32\rpcrt4.dll 2014-11-07 14:03:58 ----A---- C:\Windows\system32\drivers\volsnap.sys 2014-11-07 14:03:57 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys 2014-11-07 14:03:57 ----A---- C:\Windows\system32\cdd.dll 2014-11-07 14:03:56 ----A---- C:\Windows\system32\qedit.dll 2014-11-07 14:02:58 ----A---- C:\Windows\system32\ncrypt.dll 2014-11-07 14:02:56 ----A---- C:\Windows\system32\drivers\ntfs.sys 2014-11-07 14:02:54 ----A---- C:\Windows\system32\msvcrt.dll 2014-11-07 14:02:51 ----A---- C:\Windows\system32\drivers\afd.sys 2014-11-07 14:02:44 ----A---- C:\Windows\system32\msxml6.dll 2014-11-07 14:02:43 ----A---- C:\Windows\system32\msxml3.dll 2014-11-07 14:02:16 ----A---- C:\Windows\system32\drivers\usbvideo.sys 2014-11-07 14:02:06 ----A---- C:\Windows\system32\shlwapi.dll 2014-11-07 14:02:04 ----A---- C:\Windows\system32\quartz.dll 2014-11-07 14:01:58 ----A---- C:\Windows\system32\win32spl.dll 2014-11-07 14:01:58 ----A---- C:\Windows\system32\printcom.dll 2014-11-07 14:01:51 ----A---- C:\Windows\system32\WMVDECOD.DLL 2014-11-07 14:01:50 ----A---- C:\Windows\system32\wshcon.dll 2014-11-07 14:01:50 ----A---- C:\Windows\system32\wscript.exe 2014-11-07 14:01:50 ----A---- C:\Windows\system32\scrrun.dll 2014-11-07 14:01:50 ----A---- C:\Windows\system32\cscript.exe 2014-11-07 14:01:47 ----A---- C:\Windows\system32\certutil.exe 2014-11-07 14:01:46 ----A---- C:\Windows\system32\certenc.dll 2014-11-07 14:01:24 ----A---- C:\Windows\system32\crypt32.dll 2014-11-07 14:01:10 ----A---- C:\Windows\system32\kernel32.dll 2014-11-07 14:01:01 ----A---- C:\Windows\system32\drivers\Wdf01000.sys 2014-11-07 14:01:00 ----A---- C:\Windows\system32\IKEEXT.DLL 2014-11-07 14:00:59 ----A---- C:\Windows\system32\FWPUCLNT.DLL 2014-11-07 14:00:54 ----A---- C:\Windows\system32\qdvd.dll 2014-11-07 14:00:52 ----A---- C:\Windows\system32\imagehlp.dll 2014-11-07 14:00:51 ----A---- C:\Windows\system32\wmi.dll 2014-11-07 14:00:51 ----A---- C:\Windows\system32\drivers\fs_rec.sys 2014-11-07 14:00:48 ----A---- C:\Windows\system32\themeui.dll 2014-11-07 14:00:46 ----A---- C:\Windows\system32\winhttp.dll 2014-11-07 14:00:44 ----A---- C:\Windows\system32\atmlib.dll 2014-11-07 14:00:44 ----A---- C:\Windows\system32\atmfd.dll 2014-11-07 14:00:38 ----A---- C:\Windows\system32\ntoskrnl.exe 2014-11-07 14:00:38 ----A---- C:\Windows\system32\ntkrnlpa.exe 2014-11-07 14:00:38 ----A---- C:\Windows\system32\ntdll.dll 2014-11-07 14:00:37 ----A---- C:\Windows\system32\smss.exe 2014-11-07 14:00:37 ----A---- C:\Windows\system32\csrsrv.dll 2014-11-07 14:00:33 ----A---- C:\Windows\system32\UIAutomationCore.dll 2014-11-07 14:00:33 ----A---- C:\Windows\system32\oleaccrc.dll 2014-11-07 14:00:32 ----A---- C:\Windows\system32\oleaut32.dll 2014-11-07 14:00:32 ----A---- C:\Windows\system32\oleacc.dll 2014-11-07 13:59:46 ----A---- C:\Windows\system32\mstscax.dll 2014-11-07 13:59:45 ----A---- C:\Windows\system32\comctl32.dll 2014-11-07 13:59:44 ----A---- C:\Windows\system32\drivers\rdpwd.sys 2014-11-07 13:59:41 ----A---- C:\Windows\system32\drivers\usbscan.sys 2014-11-07 13:59:41 ----A---- C:\Windows\system32\drivers\hidparse.sys 2014-11-07 13:59:25 ----A---- C:\Windows\system32\secur32.dll 2014-11-07 13:59:25 ----A---- C:\Windows\system32\schannel.dll 2014-11-07 13:59:25 ----A---- C:\Windows\system32\lsass.exe 2014-11-07 13:59:25 ----A---- C:\Windows\system32\lsasrv.dll 2014-11-07 13:59:25 ----A---- C:\Windows\system32\drivers\ksecdd.sys 2014-11-07 13:48:57 ----A---- C:\Windows\system32\rdpencom.dll 2014-11-07 13:21:10 ----A---- C:\Windows\system32\msshsq.dll 2014-11-07 03:00:21 ----D---- C:\ProgramData\75acca2f-18f9-4ee2-81a2-0d40cd9a3cbd 2014-11-06 22:05:16 ----A---- C:\Windows\system32\drivers\usb8023.sys 2014-11-06 22:05:13 ----A---- C:\Windows\system32\wer.dll 2014-11-06 22:04:53 ----A---- C:\Windows\system32\wintrust.dll 2014-11-06 22:04:53 ----A---- C:\Windows\system32\cryptsvc.dll 2014-11-06 22:04:53 ----A---- C:\Windows\system32\cryptnet.dll 2014-11-06 21:35:44 ----A---- C:\Windows\system32\wups2.dll 2014-11-06 21:35:43 ----A---- C:\Windows\system32\wucltux.dll 2014-11-06 21:35:43 ----A---- C:\Windows\system32\wuaueng.dll 2014-11-06 21:35:43 ----A---- C:\Windows\system32\wuauclt.exe 2014-11-06 21:35:22 ----A---- C:\Windows\system32\wups.dll 2014-11-06 21:35:22 ----A---- C:\Windows\system32\wudriver.dll 2014-11-06 21:35:22 ----A---- C:\Windows\system32\wuapi.dll 2014-11-06 21:35:08 ----A---- C:\Windows\system32\wuwebv.dll 2014-11-06 21:35:08 ----A---- C:\Windows\system32\wuapp.exe 2014-11-01 21:53:10 ----D---- C:\Windows\TempE183D887-A374-376D-085B-C1F46F57E01A-Signatures 2014-11-01 21:06:38 ----D---- C:\Users\ferugol\AppData\Roaming\Intel 2014-11-01 21:06:36 ----D---- C:\ProgramData\Roaming 2014-11-01 21:05:15 ----D---- C:\Program Files\Cisco 2014-11-01 21:05:13 ----D---- C:\ProgramData\Intel 2014-11-01 20:57:46 ----D---- C:\Program Files\Microsoft Security Client 2014-10-26 21:40:31 ----D---- C:\Users\ferugol\AppData\Roaming\Steinberg 2014-10-26 21:39:27 ----D---- C:\ProgramData\Syncrosoft 2014-10-26 21:38:13 ----D---- C:\Program Files\Syncrosoft 2014-10-25 15:43:07 ----D---- C:\Windows\system32\eu-ES 2014-10-25 15:43:07 ----D---- C:\Windows\system32\ca-ES 2014-10-25 15:42:59 ----D---- C:\Windows\system32\vi-VN ======List of files/folders modified in the last 1 month====== 2014-11-23 16:12:10 ----RD---- C:\Program Files 2014-11-23 16:12:03 ----D---- C:\Windows\Temp 2014-11-23 16:05:16 ----D---- C:\Windows\System32 2014-11-23 16:05:16 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-11-23 16:05:15 ----D---- C:\Windows\inf 2014-11-23 16:03:13 ----D---- C:\Users\ferugol\AppData\Roaming\System Speedup 2014-11-23 16:02:54 ----D---- C:\Windows\system32\Tasks 2014-11-23 16:00:59 ----D---- C:\Program Files\WinZipper 2014-11-23 16:00:34 ----A---- C:\Windows\win.ini 2014-11-23 16:00:07 ----D---- C:\Program Files\FindRight 2014-11-23 15:58:45 ----D---- C:\Windows 2014-11-17 23:27:38 ----SD---- C:\Users\ferugol\AppData\Roaming\Microsoft 2014-11-16 21:16:44 ----SHD---- C:\System Volume Information 2014-11-16 20:55:31 ----D---- C:\Windows\system32\catroot 2014-11-16 10:53:29 ----SHD---- C:\Windows\Installer 2014-11-16 10:52:37 ----D---- C:\Windows\Tasks 2014-11-16 10:52:30 ----HD---- C:\ProgramData 2014-11-16 10:23:52 ----D---- C:\Windows\Prefetch 2014-11-13 21:01:38 ----D---- C:\Program Files\Common Files 2014-11-13 21:00:49 ----D---- C:\Program Files\Java 2014-11-13 20:57:54 ----D---- C:\Windows\system32\drivers 2014-11-12 16:31:18 ----D---- C:\Program Files\Microsoft Silverlight 2014-11-12 16:28:20 ----HD---- C:\Program Files\Temp 2014-11-12 16:28:11 ----HD---- C:\Program Files\InstallShield Installation Information 2014-11-12 16:28:06 ----D---- C:\Windows\system32\catroot2 2014-11-12 16:27:52 ----A---- C:\Windows\DIFxAPI.dll 2014-11-12 16:23:07 ----D---- C:\Windows\winsxs 2014-11-12 16:22:56 ----D---- C:\Program Files\Acer Bio Protection 2014-11-12 16:20:16 ----SD---- C:\Windows\system32\Microsoft 2014-11-12 16:16:38 ----D---- C:\Program Files\SupTab 2014-11-12 15:44:54 ----D---- C:\Program Files\Optimizer Pro 2014-11-12 15:31:38 ----A---- C:\Windows\system32\FlashPlayerApp.exe 2014-11-11 18:39:02 ----D---- C:\Program Files\PokerStars.EU 2014-11-09 15:38:40 ----D---- C:\Windows\Microsoft.NET 2014-11-09 15:35:25 ----RSD---- C:\Windows\assembly 2014-11-08 21:04:41 ----D---- C:\Windows\rescache 2014-11-08 20:54:03 ----D---- C:\Users\ferugol\AppData\Roaming\vlc 2014-11-08 20:13:01 ----D---- C:\Windows\system32\nl-NL 2014-11-08 20:13:00 ----D---- C:\Program Files\Windows Journal 2014-11-08 20:12:54 ----D---- C:\Windows\system32\XPSViewer 2014-11-08 20:12:54 ----D---- C:\Windows\ehome 2014-11-08 20:12:53 ----D---- C:\Program Files\Windows Mail 2014-11-08 20:12:51 ----D---- C:\Program Files\Common Files\System 2014-11-08 19:18:15 ----D---- C:\Windows\system32\wbem 2014-11-08 19:18:13 ----D---- C:\Windows\system32\zh-TW 2014-11-08 19:18:13 ----D---- C:\Windows\system32\zh-HK 2014-11-08 19:18:13 ----D---- C:\Windows\system32\uk-UA 2014-11-08 19:18:13 ----D---- C:\Windows\system32\tr-TR 2014-11-08 19:18:13 ----D---- C:\Windows\system32\th-TH 2014-11-08 19:18:13 ----D---- C:\Windows\system32\sv-SE 2014-11-08 19:18:13 ----D---- C:\Windows\system32\sr-Latn-CS 2014-11-08 19:18:13 ----D---- C:\Windows\system32\sl-SI 2014-11-08 19:18:13 ----D---- C:\Windows\system32\sk-SK 2014-11-08 19:18:13 ----D---- C:\Windows\system32\pt-PT 2014-11-08 19:18:13 ----D---- C:\Windows\system32\pt-BR 2014-11-08 19:18:13 ----D---- C:\Windows\system32\pl-PL 2014-11-08 19:18:13 ----D---- C:\Windows\system32\lv-LV 2014-11-08 19:18:13 ----D---- C:\Windows\system32\lt-LT 2014-11-08 19:18:13 ----D---- C:\Windows\system32\ko-KR 2014-11-08 19:18:13 ----D---- C:\Windows\system32\it-IT 2014-11-08 19:18:13 ----D---- C:\Windows\system32\hu-HU 2014-11-08 19:18:13 ----D---- C:\Windows\system32\hr-HR 2014-11-08 19:18:13 ----D---- C:\Windows\system32\he-IL 2014-11-08 19:18:13 ----D---- C:\Windows\system32\fr-FR 2014-11-08 19:18:13 ----D---- C:\Windows\system32\fi-FI 2014-11-08 19:18:13 ----D---- C:\Windows\system32\es-ES 2014-11-08 19:18:13 ----D---- C:\Windows\system32\el-GR 2014-11-08 19:18:13 ----D---- C:\Windows\system32\bg-BG 2014-11-08 19:18:12 ----D---- C:\Windows\system32\zh-CN 2014-11-08 19:18:12 ----D---- C:\Windows\system32\ru-RU 2014-11-08 19:18:12 ----D---- C:\Windows\system32\ro-RO 2014-11-08 19:18:12 ----D---- C:\Windows\system32\nb-NO 2014-11-08 19:18:12 ----D---- C:\Windows\system32\ja-JP 2014-11-08 19:18:12 ----D---- C:\Windows\system32\et-EE 2014-11-08 19:18:12 ----D---- C:\Windows\system32\en-US 2014-11-08 19:18:12 ----D---- C:\Windows\system32\de-DE 2014-11-08 19:18:12 ----D---- C:\Windows\system32\da-DK 2014-11-08 19:18:12 ----D---- C:\Windows\system32\cs-CZ 2014-11-08 19:18:12 ----D---- C:\Windows\system32\ar-SA 2014-11-08 19:18:11 ----RSD---- C:\Windows\Fonts 2014-11-08 19:18:10 ----RD---- C:\Windows\Offline Web Pages 2014-11-08 19:18:10 ----D---- C:\Windows\system32\migration 2014-11-08 19:18:10 ----D---- C:\Windows\PolicyDefinitions 2014-11-08 19:18:10 ----D---- C:\Program Files\Internet Explorer 2014-11-08 19:18:09 ----SD---- C:\Windows\Downloaded Program Files 2014-11-08 19:18:08 ----D---- C:\Windows\system32\drivers\nl-NL 2014-11-08 19:02:58 ----D---- C:\Windows\system32\drivers\UMDF 2014-11-01 22:37:14 ----D---- C:\Windows\system32\config 2014-11-01 22:33:34 ----D---- C:\Windows\ShellNew 2014-11-01 22:33:05 ----D---- C:\Windows\system32\spool 2014-11-01 22:33:05 ----D---- C:\Windows\system32\CodeIntegrity 2014-11-01 22:32:35 ----D---- C:\Program Files\Common Files\AVG Secure Search 2014-11-01 22:30:44 ----D---- C:\Windows\registration 2014-11-01 21:43:11 ----D---- C:\Windows\system32\Msdtc 2014-11-01 21:05:13 ----D---- C:\Program Files\Intel 2014-11-01 20:57:52 ----SD---- C:\ProgramData\Microsoft 2014-10-26 02:47:21 ----D---- C:\Windows\Logs 2014-10-25 15:51:38 ----SHD---- C:\Boot 2014-10-25 15:44:56 ----D---- C:\Program Files\Windows Calendar 2014-10-25 15:44:56 ----D---- C:\Program Files\Movie Maker 2014-10-25 15:44:55 ----D---- C:\Program Files\Windows Sidebar 2014-10-25 15:44:49 ----D---- C:\Program Files\Windows Media Player 2014-10-25 15:44:49 ----D---- C:\Program Files\Windows Collaboration 2014-10-25 15:44:48 ----D---- C:\Program Files\Windows Photo Gallery 2014-10-25 15:44:39 ----D---- C:\Windows\servicing 2014-10-25 15:44:39 ----D---- C:\Program Files\Windows Defender 2014-10-25 15:44:14 ----D---- C:\Windows\IME 2014-10-25 15:44:13 ----D---- C:\Windows\system32\oobe 2014-10-25 15:44:12 ----D---- C:\Windows\system32\AdvancedInstallers 2014-10-25 15:44:11 ----D---- C:\Windows\system32\SLUI 2014-10-25 15:44:11 ----D---- C:\Windows\system32\setup 2014-10-25 15:44:10 ----D---- C:\Windows\system32\manifeststore 2014-10-25 15:44:04 ----D---- C:\Windows\system32\migwiz 2014-10-25 15:43:18 ----D---- C:\Windows\AppPatch 2014-10-25 15:42:59 ----D---- C:\Windows\system32\Boot ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 UBHelper;UBHelper; C:\Windows\system32\drivers\UBHelper.sys [2008-01-31 13824] R1 {42e50651-9669-456e-9081-d5a836274274}t;{42e50651-9669-456e-9081-d5a836274274}t; C:\Windows\system32\drivers\{42e50651-9669-456e-9081-d5a836274274}t.sys [2014-09-03 55096] R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx86.sys [2014-07-11 42784] R1 F06DEFF2-5B9C-490D-910F-35D3A9119622;F06DEFF2-5B9C-490D-910F-35D3A9119622; \??\C:\Program Files\Movies Toolbar\SafetyNut\configmgrc1.cfg [2014-04-10 31104] R1 HssDRV6;Hotspot Shield Routing Driver 6; C:\Windows\system32\DRIVERS\hssdrv6.sys [2013-10-16 39624] R2 FPSensor;EgisTech-Corp Fingerprint Reader Driver (FPSensor.sys); C:\Windows\System32\Drivers\FPSensor.sys [2008-12-24 26928] R2 irda;IrDA Protocol; C:\Windows\system32\DRIVERS\irda.sys [2008-01-21 95744] R2 mwlPSDFilter;mwlPSDFilter; C:\Windows\system32\DRIVERS\mwlPSDFilter.sys [2008-10-09 19504] R2 mwlPSDNServ;mwlPSDNServ; C:\Windows\system32\DRIVERS\mwlPSDNServ.sys [2008-10-09 16432] R2 mwlPSDVDisk;mwlPSDVDisk; C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys [2008-10-09 59952] R2 webinstrNew;webinstrNew; \??\C:\Windows\system32\Drivers\webinstrNew.sys [2014-11-13 51336] R3 cpuz136;cpuz136; \??\C:\Users\ferugol\AppData\Local\Temp\cpuz136\cpuz136_x32.sys [] R3 DKbFltr;Dritek Keyboard Filter Driver; C:\Windows\system32\DRIVERS\DKbFltr.sys [2006-11-03 21264] R3 hidshim;Service for HID-KMDF Shim layer; C:\Windows\system32\DRIVERS\hidshim.sys [2008-10-08 5632] R3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60x.sys [2008-09-04 223232] R3 NETw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw5v32.sys [2008-09-25 3666432] R3 NTIDrvr;Upper Class Filter Driver; C:\Windows\system32\Drivers\NTIDrvr.sys [2009-02-04 14848] R3 nuvotonhidgeneric;Nuvoton EC Generic HID; C:\Windows\system32\DRIVERS\nuvotonhidgeneric.sys [2008-10-08 22528] R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-02-10 7545120] R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-12-05 204976] R3 taphss6;Anchorfree HSS VPN Adapter; C:\Windows\system32\DRIVERS\taphss6.sys [2013-10-16 37064] R3 usbvideo;USB-videoapparaat (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272] R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560] S2 int15;int15; \??\c:\Windows\system32\drivers\int15.sys [] S3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2008-03-01 1202560] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2008-01-21 179712] S3 drmkaud;Microsoft Kernel DRM-audiodecoder; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632] S3 HdAudAddService;Microsoft 1.1 UAA Functiestuurprogramma voor High Definition Audio-service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520] S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [] S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192] S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888] S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504] S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016] S3 NSCIRDA;NSC Infrared Device Driver; C:\Windows\system32\DRIVERS\nscirda.sys [2008-01-21 30720] S3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2009-01-22 52768] S3 Ph3xIB32;Philips 713x Inbox PCI TV Card; C:\Windows\system32\DRIVERS\Ph3xIB32.sys [2006-11-02 1083520] S3 RTSTOR;Realtek USB 2.0 Card Reader; C:\Windows\system32\drivers\RTSTOR.SYS [2008-12-02 62976] S3 TASCAM_US122144;TASCAM USB 2.0 Audio Device driver; C:\Windows\System32\Drivers\tascusb2.sys [2009-11-26 399424] S3 TASCAM_US144_MIDI;TASCAM US-144 WDM MIDI Device; C:\Windows\system32\drivers\tscusb2m.sys [2009-11-26 26688] S3 TASCAM_US144_WDM;TASCAM US-144 WDM; C:\Windows\system32\drivers\tscusb2a.sys [2009-11-26 39488] S3 usbscan;Stuurprogramma voor USB-scanner; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 35328] S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448] S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136] S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656] S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616] S4 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-21 88576] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-09-03 65640] R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Windows\system32\agrsmsvc.exe [2008-03-18 13312] R2 BackupStack;Computer Backup (MyPC Backup); C:\Program Files\MyPC Backup\BackupStack.exe [2014-10-30 36936] R2 ca82e1a5;Optimizer Pro Crash Monitor; c:\Program Files\Optimizer Pro\OptProCrash.dll [2014-11-12 3113040] R2 CLHNService;CLHNService; C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [2008-12-18 75048] R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe [2009-04-15 703008] R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504] R2 hshld;Hotspot Shield Service; C:\Program Files\Hotspot Shield\bin\cmw_srv.exe [2013-10-18 906536] R2 HssWd;Hotspot Shield Monitoring Service; C:\Program Files\Hotspot Shield\bin\hsswd.exe [2013-10-18 555304] R2 IePluginService;IePlugin Service; C:\ProgramData\IePluginService\PluginService.exe [2014-04-11 705136] R2 Irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\Windows\system32\svchost.exe [2008-01-21 21504] R2 MaintainerSvc3.75.5000057;MaintainerSvc3.75.5000057; C:\ProgramData\75acca2f-18f9-4ee2-81a2-0d40cd9a3cbd\maintainer.exe [2014-11-23 123632] R2 MWLService;MyWinLocker Service; C:\Program Files\EgisTec\MyWinLocker 3\x86\\MWLService.exe [2008-10-27 306736] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-02-10 203296] R2 OfferBoulevard;OfferBoulevard service; C:\Program Files\OfferBoulevard\OfferBoulevard.exe [2014-09-09 23040] R2 RS_Service;Raw Socket Service; C:\Program Files\Acer\Acer VCM\RS_Service.exe [2008-11-27 237568] R2 spdfrmon;spdfrmon; C:\Program Files\SpeedItup Free\spdfrmon.exe [2013-11-01 921680] R2 Update FindRight;Update FindRight; C:\Program Files\FindRight\updateFindRight.exe [2014-11-23 423152] R2 Util FindRight;Util FindRight; C:\Program Files\FindRight\bin\utilFindRight.exe [2014-11-23 423152] R2 vToolbarUpdater18.1.7;vToolbarUpdater18.1.7; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe [2014-07-11 1808408] R2 winzipersvc;WinZiper service; C:\Program Files\WinZipper\winzipersvc.exe [2014-02-27 425104] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144] S2 gupdate;Google Updateservice (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-11-06 107912] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-12 267440] S3 GoogleDesktopManager-092308-165331;Google Desktop Manager 5.8.809.23506; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2013-02-17 30192] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-11-06 107912] S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-02-18 194032] S3 HssTrayService;Hotspot Shield Tray Service; C:\Program Files\Hotspot Shield\bin\HssTrayService.EXE [2013-10-16 78512] S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [2014-04-09 235696] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-09-11 770168] S4 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688] S4 DatamngrCoordinator;Datamngr Coordinator; C:\Program Files\Music Toolbar\Datamngr\DatamngrCoordinator.exe [] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] -----------------EOF-----------------