Logfile of random's system information tool 1.10 (written by random/random) Run by Arno at 2014-12-07 14:10:37 Microsoft Windows 8.1 System drive C: has 863 GB (92%) free of 937 GB Total RAM: 8080 MB (40% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 14:10:40, on 7/12/2014 Platform: Unknown Windows (WinNT 6.02.1008) MSIE: Internet Explorer v11.0 (11.00.9600.17416) Boot mode: Normal Running processes: C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe C:\Program Files\AVAST Software\Avast\avastui.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Users\Arno\AppData\Local\GitHub\PortableGit_ed44d00daa128db527396557813e7b68709ed0e2\bin\ssh-agent.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\devenv.exe C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\Microsoft.VisualStudio.Web.Host.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\NetBeans 8.0.1\bin\netbeans.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files\trend micro\Arno.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll O4 - HKLM\..\Run: [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [ViStart] C:\Users\Arno\AppData\Roaming\ViStart\ViStart.exe O4 - HKCU\..\Run: [NukeMetro] "C:\Users\Arno\AppData\Roaming\ViStart\ViStart.exe" /nuke_metro O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun O4 - HKCU\..\Run: [SkypeRecorder] C:\Program Files (x86)\Athtek\Skype Recorder\SkypeRecorder.exe O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Arno\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver O4 - HKUS\S-1-5-21-2314833076-321424013-3845646558-1004\..\Run: [Facebook Update] "C:\Users\safe\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver (User 'safe') O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O20 - AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: @%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000 (c2wts) - Unknown owner - C:\Program Files (x86)\Windows Identity Foundation\v3.5\c2wtshost.exe (file missing) O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: McAfee AP Service (McAPExe) - Unknown owner - C:\Program Files\McAfee\MSC\McAPExe.exe (file missing) O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NIHardwareService - Native Instruments GmbH - C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe O23 - Service: HP SimplePass Service (omniserv) - Softex Inc. - C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 12246 bytes ======Listing Processes====== wininit.exe C:\Windows\system32\lsass.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS "C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe" C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted "C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe" "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-6afe41c2-b627-43ce-b5ce-4507d7b10f20 -SystemEventPortName:HostProcess-378e6633-a870-4aeb-b7aa-2247a36798d1 -IoCancelEventPortName:HostProcess-42bd01c4-b68f-437d-b918-e58ebfb35e1a -NonStateChangingEventPortName:HostProcess-73c7be60-bb62-42bc-b895-ac3d1683e67e -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:c512fd89-569b-460c-a124-24b3f4729da4 -DeviceGroupId:WudfDefaultDevicePool C:\Windows\system32\svchost.exe -k NetworkService "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork "C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE" C:\Windows\system32\svchost.exe -k apphost "C:\Program Files\Bonjour\mDNSResponder.exe" "C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service "C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service dashost.exe {3f687505-0653-47a5-b42e95ef20e06c48} "C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe" "C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe" "C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe" "C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe" C:\Windows\system32\svchost.exe -k imgsvc C:\Windows\system32\svchost.exe -k WbioSvcGroup C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\system32\SearchIndexer.exe /Embedding C:\Windows\system32\wbem\wmiprvse.exe "C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe" C:\Windows\system32\WLANExt.exe 289349225984 \??\C:\Windows\system32\conhost.exe 0x4 "c:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\fdlauncher.exe" -s MSSQL11.SQLEXPRESS C:\Windows\system32\wbem\wmiprvse.exe winlogon.exe "dwm.exe" "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS taskhostex.exe C:\Windows\Explorer.EXE ClassicStartMenu.exe -startup "C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe" "C:\Windows\system32\igfxsrvc.exe" -Embedding "C:\Windows\System32\hkcmd.exe" "C:\Windows\System32\igfxpers.exe" "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s "C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe" /hideui "C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe" "C:\Program Files\Hewlett-Packard\SimplePass\opbhobrokerdsktop.exe" "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" "C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE" "C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe" "C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe" "C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe" "C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" C:\Windows\system32\wbem\unsecapp.exe -Embedding C:\Users\Arno\AppData\Local\GitHub\PortableGit_ed44d00daa128db527396557813e7b68709ed0e2\bin\ssh-agent.exe taskhost.exe "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="16760.0.1921405456\1553647779" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,17,38 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3408 --ignored=" --type=renderer " /prefetch:822062411 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/PP_Ethersuggest_A7_Stable_R8/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_68/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="16760.2.744950084\356437537" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/PP_Ethersuggest_A7_Stable_R8/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_68/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="16760.3.573128826\2040557563" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/PP_Ethersuggest_A7_Stable_R8/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_68/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="16760.5.1646214146\31849408" /prefetch:673131151 "C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\devenv.exe" "C:\Users\Arno\Documents\Programmeren5\Taak2\Taak2.sln" "C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\Microsoft.VisualStudio.Web.Host.exe" /endpointGuid:e2631798-64c3-4766-962d-18abc52bd77a /vsPid:28156 /authorisedUserSid:S-1-5-21-2314833076-321424013-3845646558-1001 /readyEventName:VsCBMProcess:5a5b4ea4-130a-4341-bd9e-1f6de64c8702 /clientId:ef7c976f-d852-4352-8e4c-8f2307ec0d18 /attachDebugger:False \??\C:\Windows\system32\conhost.exe 0x4 "C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe" "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/PP_Ethersuggest_A7_Stable_R8/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_68/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="16760.11.1185834125\1305834134" /prefetch:673131151 "C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE" /n /dde C:\Windows\splwow64.exe 8192 winlogon.exe "dwm.exe" C:\Windows\Explorer.EXE "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS taskhostex.exe C:\Windows\system32\WpcMon.exe "364" "344" "440" "12" ClassicStartMenu.exe -startup "C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe" "C:\Windows\system32\igfxsrvc.exe" -Embedding "C:\Windows\System32\hkcmd.exe" "C:\Windows\System32\igfxpers.exe" "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s "C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe" /hideui "C:\Program Files\Hewlett-Packard\SimplePass\opbhobroker.exe" "C:\Program Files\Hewlett-Packard\SimplePass\opbhobrokerdsktop.exe" "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" "C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE" "C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe" "C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui C:\Windows\system32\wbem\unsecapp.exe -Embedding "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" C:\Windows\System32\RuntimeBroker.exe -Embedding "C:\Windows\system32\rundll32.exe" -localserver 22d8c27b-47a1-48d1-ad08-7da7abd79617 "C:\Windows\system32\wwahost.exe" -ServerName:AppexHealthAndFitness.wwa "C:\Program Files\WindowsApps\Microsoft.WindowsSoundRecorder_6.3.9600.20280_x64__8wekyb3d8bbwe\SoundRec.exe" -ServerName:App.AppXb3htymnrm7jbfzxkhpvy3ynnevmgcsvs.mca "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/PP_Ethersuggest_A7_Stable_R8/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_68/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="16760.31.1397962826\149691763" /prefetch:673131151 "C:\Program Files (x86)\NetBeans 8.0.1\bin\netbeans.exe" "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/PP_Ethersuggest_A7_Stable_R8/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_68/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="16760.39.1601393543\33496661" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/PP_Ethersuggest_A7_Stable_R8/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_68/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="16760.46.25302757\1824202485" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/PP_Ethersuggest_A7_Stable_R8/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_68/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="16760.51.1539978351\1568150669" /prefetch:673131151 C:\Windows\SysWOW64\DllHost.exe /Processid:{45BA127D-10A8-46EA-8AB7-56EA9078943C} "C:\Windows\FileManager\PhotosApp.exe" -ServerName:Microsoft.Windows.PhotoManager "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="20952.0.677651054\2052087446" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,17,38 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3408 --ignored=" --type=renderer " /prefetch:822062411 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group2 pct:10b stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_57/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="20952.2.2086976085\194635342" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group2 pct:10b stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_57/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="20952.3.1475036807\673018176" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group2 pct:10b stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_57/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="20952.6.420322416\1660524538" /prefetch:673131151 "C:\Program Files\Internet Explorer\iexplore.exe" "? https://www.facebook.com/pages/Dubsmash-Belgium/748308885249719" "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:31452 CREDAT:267521 /prefetch:2 "C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe" -Embedding "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="20952.12.544617142\455501582" --ppapi-flash-args=enable_hw_video_decode=1 --lang=nl --ignored=" --type=renderer " /prefetch:-632637702 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group2 pct:10b stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_57/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="20952.17.2006000431\419488861" /prefetch:673131151 "LogonUI.exe" /flags:0x0 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="16760.85.1001724606\1727047329" --ppapi-flash-args=enable_hw_video_decode=1 --lang=nl --ignored=" --type=renderer " /prefetch:-632637702 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/PP_Ethersuggest_A7_Stable_R8/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_68/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="16760.88.340463353\481432084" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlBootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/PP_Ethersuggest_A7_Stable_R8/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_68/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="16760.90.526989245\1151708414" /prefetch:673131151 "C:\Users\Arno\Downloads\RSITx64.exe" ======Scheduled tasks folder====== C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2314833076-321424013-3845646558-1001Core.job - C:\Users\Arno\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2314833076-321424013-3845646558-1001UA.job - C:\Users\Arno\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2314833076-321424013-3845646558-1004Core.job - C:\Users\safe\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2314833076-321424013-3845646558-1004UA.job - C:\Users\safe\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}] ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}] avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-09-14 612248] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14 2117216] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}] HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}] ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20 483520] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}] ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2014-11-19 460712] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}] avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-09-14 457712] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-11-19 172968] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}] HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}] ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20 440512] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar] {553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"=C:\Windows\system32\igfxtray.exe [2014-02-18 391152] "HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2014-02-18 771568] "Persistence"=C:\Windows\system32\igfxpers.exe [2014-02-18 770544] "RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-01-14 7510896] "SimplePass"=C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe [2014-03-28 3962936] "OPBHOBroker"=C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [2014-03-28 415288] "OPBHOBrokerDesktop"=C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [2014-03-28 415288] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-12-13 2803440] "Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2014-04-20 161984] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "ViStart"=C:\Users\Arno\AppData\Roaming\ViStart\ViStart.exe [] "NukeMetro"=C:\Users\Arno\AppData\Roaming\ViStart\ViStart.exe /nuke_metro [] "Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-10-01 22059616] "DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912] "SkypeRecorder"=C:\Program Files (x86)\Athtek\Skype Recorder\SkypeRecorder.exe [] "Facebook Update"=C:\Users\Arno\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-10-13 138096] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "HPMessageService"=C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [2013-10-08 1045304] "AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-09-14 4085896] "GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040] "SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-10-07 507776] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] C:\Windows\system32\igfxdev.dll [2014-02-18 624640] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "SafeModeBlockNonAdmins"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "VIDC.YUY2"=msyuv.dll "vidc.i420"=iyuv_32.dll "msacm.msgsm610"=msgsm32.acm "msacm.msg711"=msg711.acm "VIDC.YVYU"=msyuv.dll "VIDC.YVU9"=tsbyuv.dll "wavemapper"=msacm32.drv "midimapper"=midimap.dll "VIDC.UYVY"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.mrle"=msrle32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msadpcm"=msadp32.acm "vidc.msvc"=msvidc32.dll "MSVideo8"=VfWWDM32.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 3 months====== 2014-12-07 14:08:03 ----D---- C:\rsit 2014-12-07 14:08:03 ----D---- C:\Program Files\trend micro 2014-12-03 17:59:01 ----D---- C:\Program Files (x86)\Teach2000 2014-12-03 14:07:55 ----D---- C:\Users\Arno\AppData\Roaming\GitHub 2014-11-19 13:56:29 ----D---- C:\Users\Arno\AppData\Roaming\NetBeans 2014-11-19 13:50:21 ----D---- C:\Program Files (x86)\glassfish-4.1 2014-11-19 13:36:21 ----D---- C:\Program Files (x86)\NetBeans 8.0.1 2014-11-19 13:34:52 ----D---- C:\ProgramData\Sun 2014-11-19 13:34:48 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll 2014-11-19 13:34:22 ----D---- C:\ProgramData\Oracle 2014-11-19 13:33:05 ----D---- C:\Program Files (x86)\Java 2014-11-19 13:30:48 ----A---- C:\Windows\SYSWOW64\pku2u.dll 2014-11-19 13:30:48 ----A---- C:\Windows\SYSWOW64\kerberos.dll 2014-11-19 13:30:48 ----A---- C:\Windows\system32\pku2u.dll 2014-11-19 13:30:48 ----A---- C:\Windows\system32\kerberos.dll 2014-11-15 15:48:30 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe 2014-11-13 01:09:21 ----A---- C:\Windows\system32\mshtml.dll 2014-11-13 01:09:19 ----A---- C:\Windows\SYSWOW64\mshtml.dll 2014-11-13 01:06:37 ----A---- C:\Windows\system32\ieframe.dll 2014-11-13 01:06:15 ----A---- C:\Windows\SYSWOW64\ieframe.dll 2014-11-13 01:05:58 ----A---- C:\Windows\system32\jscript9.dll 2014-11-13 01:05:50 ----A---- C:\Windows\SYSWOW64\jscript9.dll 2014-11-13 01:05:46 ----A---- C:\Windows\system32\wininet.dll 2014-11-13 01:05:45 ----A---- C:\Windows\SYSWOW64\wininet.dll 2014-11-13 01:05:44 ----A---- C:\Windows\system32\urlmon.dll 2014-11-13 01:05:43 ----A---- C:\Windows\SYSWOW64\urlmon.dll 2014-11-13 01:05:42 ----A---- C:\Windows\system32\inetcomm.dll 2014-11-13 01:05:42 ----A---- C:\Windows\system32\iertutil.dll 2014-11-13 01:05:41 ----A---- C:\Windows\SYSWOW64\inetcomm.dll 2014-11-13 01:05:41 ----A---- C:\Windows\system32\actxprxy.dll 2014-11-13 01:05:40 ----A---- C:\Windows\SYSWOW64\iertutil.dll 2014-11-13 01:05:39 ----A---- C:\Windows\SYSWOW64\jscript.dll 2014-11-13 01:05:39 ----A---- C:\Windows\system32\jscript9diag.dll 2014-11-13 01:05:39 ----A---- C:\Windows\system32\jscript.dll 2014-11-13 01:05:38 ----A---- C:\Windows\system32\ieui.dll 2014-11-13 01:05:37 ----A---- C:\Windows\SYSWOW64\msfeeds.dll 2014-11-13 01:05:37 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll 2014-11-13 01:05:37 ----A---- C:\Windows\system32\msfeeds.dll 2014-11-13 01:05:36 ----A---- C:\Windows\SYSWOW64\vbscript.dll 2014-11-13 01:05:36 ----A---- C:\Windows\SYSWOW64\ieui.dll 2014-11-13 01:05:36 ----A---- C:\Windows\system32\vbscript.dll 2014-11-13 01:05:35 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll 2014-11-13 01:05:34 ----A---- C:\Windows\SYSWOW64\dxtrans.dll 2014-11-13 01:05:34 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll 2014-11-13 01:05:34 ----A---- C:\Windows\system32\dxtrans.dll 2014-11-13 01:05:34 ----A---- C:\Windows\system32\dxtmsft.dll 2014-11-13 01:05:33 ----A---- C:\Windows\system32\ieapfltr.dll 2014-11-13 01:05:32 ----A---- C:\Windows\system32\ieetwproxystub.dll 2014-11-13 01:05:31 ----A---- C:\Windows\SYSWOW64\webcheck.dll 2014-11-13 01:05:31 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll 2014-11-13 01:05:31 ----A---- C:\Windows\system32\webcheck.dll 2014-11-13 01:05:29 ----A---- C:\Windows\SYSWOW64\hlink.dll 2014-11-13 01:05:29 ----A---- C:\Windows\system32\iedkcs32.dll 2014-11-13 01:05:28 ----A---- C:\Windows\system32\ieUnatt.exe 2014-11-13 01:05:28 ----A---- C:\Windows\system32\iesysprep.dll 2014-11-13 01:05:28 ----A---- C:\Windows\system32\ie4uinit.exe 2014-11-13 01:05:28 ----A---- C:\Windows\system32\hlink.dll 2014-11-13 01:05:27 ----A---- C:\Windows\SYSWOW64\msrating.dll 2014-11-13 01:05:27 ----A---- C:\Windows\SYSWOW64\inseng.dll 2014-11-13 01:05:27 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe 2014-11-13 01:05:27 ----A---- C:\Windows\SYSWOW64\iesysprep.dll 2014-11-13 01:05:27 ----A---- C:\Windows\SYSWOW64\iepeers.dll 2014-11-13 01:05:27 ----A---- C:\Windows\system32\iepeers.dll 2014-11-13 01:05:27 ----A---- C:\Windows\system32\ieetwcollector.exe 2014-11-13 01:05:26 ----A---- C:\Windows\SYSWOW64\actxprxy.dll 2014-11-13 01:05:26 ----A---- C:\Windows\system32\inseng.dll 2014-11-13 01:05:25 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll 2014-11-13 01:05:25 ----A---- C:\Windows\SYSWOW64\jsproxy.dll 2014-11-13 01:05:25 ----A---- C:\Windows\system32\mshtmled.dll 2014-11-13 01:05:25 ----A---- C:\Windows\system32\msfeedsbs.dll 2014-11-13 01:05:25 ----A---- C:\Windows\system32\jsproxy.dll 2014-11-13 01:05:25 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-11-13 01:05:24 ----A---- C:\Windows\SYSWOW64\occache.dll 2014-11-13 01:05:24 ----A---- C:\Windows\SYSWOW64\mshtmled.dll 2014-11-13 01:05:24 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll 2014-11-13 01:05:23 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll 2014-11-13 01:05:23 ----A---- C:\Windows\SYSWOW64\iexpress.exe 2014-11-13 01:05:23 ----A---- C:\Windows\system32\msrating.dll 2014-11-13 01:05:23 ----A---- C:\Windows\system32\MshtmlDac.dll 2014-11-13 01:05:22 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll 2014-11-13 01:05:22 ----A---- C:\Windows\SYSWOW64\imgutil.dll 2014-11-13 01:05:22 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll 2014-11-13 01:05:22 ----A---- C:\Windows\system32\occache.dll 2014-11-13 01:05:22 ----A---- C:\Windows\system32\imgutil.dll 2014-11-13 01:05:21 ----A---- C:\Windows\SYSWOW64\pngfilt.dll 2014-11-13 01:05:21 ----A---- C:\Windows\SYSWOW64\licmgr10.dll 2014-11-13 01:05:21 ----A---- C:\Windows\SYSWOW64\iernonce.dll 2014-11-13 01:05:21 ----A---- C:\Windows\system32\pngfilt.dll 2014-11-13 01:05:21 ----A---- C:\Windows\system32\licmgr10.dll 2014-11-13 01:05:20 ----A---- C:\Windows\SYSWOW64\wextract.exe 2014-11-13 01:05:20 ----A---- C:\Windows\SYSWOW64\url.dll 2014-11-13 01:05:20 ----A---- C:\Windows\SYSWOW64\iesetup.dll 2014-11-13 01:05:20 ----A---- C:\Windows\system32\url.dll 2014-11-13 01:05:20 ----A---- C:\Windows\system32\iernonce.dll 2014-11-13 01:05:19 ----A---- C:\Windows\system32\wextract.exe 2014-11-13 01:05:19 ----A---- C:\Windows\system32\IEAdvpack.dll 2014-11-13 01:05:18 ----A---- C:\Windows\SYSWOW64\mshta.exe 2014-11-13 01:05:18 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe 2014-11-13 01:05:18 ----A---- C:\Windows\system32\mshta.exe 2014-11-13 01:05:18 ----A---- C:\Windows\system32\msfeedssync.exe 2014-11-13 01:05:18 ----A---- C:\Windows\system32\iexpress.exe 2014-11-13 01:05:18 ----A---- C:\Windows\system32\iesetup.dll 2014-11-13 01:03:28 ----A---- C:\Windows\system32\user32.dll 2014-11-13 01:03:27 ----A---- C:\Windows\SYSWOW64\user32.dll 2014-11-13 01:03:27 ----A---- C:\Windows\system32\drivers\WdNisDrv.sys 2014-11-13 01:03:27 ----A---- C:\Windows\system32\drivers\WdFilter.sys 2014-11-13 01:03:26 ----A---- C:\Windows\system32\drivers\WdBoot.sys 2014-11-13 01:03:25 ----A---- C:\Windows\SYSWOW64\winshfhc.dll 2014-11-13 01:03:25 ----A---- C:\Windows\system32\winshfhc.dll 2014-11-13 01:01:20 ----A---- C:\Windows\SYSWOW64\msi.dll 2014-11-13 01:01:20 ----A---- C:\Windows\system32\msi.dll 2014-11-13 01:01:19 ----A---- C:\Windows\SYSWOW64\authui.dll 2014-11-13 01:01:19 ----A---- C:\Windows\system32\authui.dll 2014-11-13 01:01:18 ----A---- C:\Windows\SYSWOW64\msihnd.dll 2014-11-13 01:01:18 ----A---- C:\Windows\system32\msihnd.dll 2014-11-13 01:01:18 ----A---- C:\Windows\system32\consent.exe 2014-11-13 01:01:18 ----A---- C:\Windows\system32\appinfo.dll 2014-11-13 01:00:53 ----A---- C:\Windows\system32\schannel.dll 2014-11-13 01:00:52 ----A---- C:\Windows\SYSWOW64\schannel.dll 2014-11-13 01:00:52 ----A---- C:\Windows\SYSWOW64\ncryptsslp.dll 2014-11-13 01:00:52 ----A---- C:\Windows\system32\ncryptsslp.dll 2014-11-13 01:00:52 ----A---- C:\Windows\system32\dpapisrv.dll 2014-11-13 01:00:00 ----A---- C:\Windows\system32\rdpcorets.dll 2014-11-13 00:59:59 ----A---- C:\Windows\SYSWOW64\certcli.dll 2014-11-13 00:59:59 ----A---- C:\Windows\system32\lsasrv.dll 2014-11-13 00:59:59 ----A---- C:\Windows\system32\drivers\cng.sys 2014-11-13 00:59:59 ----A---- C:\Windows\system32\certcli.dll 2014-11-13 00:59:58 ----A---- C:\Windows\SYSWOW64\msaudite.dll 2014-11-13 00:59:58 ----A---- C:\Windows\SYSWOW64\adtschema.dll 2014-11-13 00:59:58 ----A---- C:\Windows\system32\rfxvmt.dll 2014-11-13 00:59:58 ----A---- C:\Windows\system32\msaudite.dll 2014-11-13 00:59:58 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys 2014-11-13 00:59:58 ----A---- C:\Windows\system32\drivers\ksecpkg.sys 2014-11-13 00:59:58 ----A---- C:\Windows\system32\adtschema.dll 2014-11-13 00:59:57 ----A---- C:\Windows\system32\rdpudd.dll 2014-11-13 00:59:52 ----A---- C:\Windows\system32\wuaueng.dll 2014-11-13 00:59:51 ----A---- C:\Windows\system32\wuapi.dll 2014-11-13 00:59:50 ----A---- C:\Windows\SYSWOW64\wuwebv.dll 2014-11-13 00:59:50 ----A---- C:\Windows\SYSWOW64\wups.dll 2014-11-13 00:59:50 ----A---- C:\Windows\SYSWOW64\wudriver.dll 2014-11-13 00:59:50 ----A---- C:\Windows\SYSWOW64\wuapp.exe 2014-11-13 00:59:50 ----A---- C:\Windows\SYSWOW64\wuapi.dll 2014-11-13 00:59:50 ----A---- C:\Windows\system32\wuwebv.dll 2014-11-13 00:59:50 ----A---- C:\Windows\system32\WUSettingsProvider.dll 2014-11-13 00:59:50 ----A---- C:\Windows\system32\wups2.dll 2014-11-13 00:59:50 ----A---- C:\Windows\system32\wups.dll 2014-11-13 00:59:50 ----A---- C:\Windows\system32\wudriver.dll 2014-11-13 00:59:50 ----A---- C:\Windows\system32\wucltux.dll 2014-11-13 00:59:50 ----A---- C:\Windows\system32\wuauclt.exe 2014-11-13 00:59:50 ----A---- C:\Windows\system32\wuapp.exe 2014-11-13 00:59:50 ----A---- C:\Windows\system32\wuaext.dll 2014-11-13 00:59:42 ----A---- C:\Windows\SYSWOW64\oleaut32.dll 2014-11-13 00:59:42 ----A---- C:\Windows\system32\oleaut32.dll 2014-11-13 00:54:39 ----A---- C:\Windows\system32\devinv.dll 2014-11-13 00:54:39 ----A---- C:\Windows\system32\aepdu.dll 2014-11-13 00:54:38 ----A---- C:\Windows\system32\generaltel.dll 2014-11-13 00:54:38 ----A---- C:\Windows\system32\aepic.dll 2014-11-13 00:54:38 ----A---- C:\Windows\system32\aeinv.dll 2014-11-13 00:54:35 ----A---- C:\Windows\SYSWOW64\msxml3.dll 2014-11-13 00:54:35 ----A---- C:\Windows\system32\msxml3.dll 2014-11-13 00:54:33 ----A---- C:\Windows\SYSWOW64\packager.dll 2014-11-13 00:54:33 ----A---- C:\Windows\system32\packager.dll 2014-11-13 00:54:32 ----A---- C:\Windows\system32\win32k.sys 2014-11-13 00:53:50 ----A---- C:\Windows\SYSWOW64\AudioSes.dll 2014-11-13 00:53:50 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll 2014-11-13 00:53:50 ----A---- C:\Windows\system32\audiosrv.dll 2014-11-13 00:53:50 ----A---- C:\Windows\system32\AudioSes.dll 2014-11-13 00:53:50 ----A---- C:\Windows\system32\AUDIOKSE.dll 2014-11-13 00:53:49 ----A---- C:\Windows\SYSWOW64\AudioEng.dll 2014-11-13 00:53:49 ----A---- C:\Windows\system32\EncDump.dll 2014-11-13 00:53:49 ----A---- C:\Windows\system32\AudioEng.dll 2014-11-13 00:53:49 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll 2014-11-13 00:53:49 ----A---- C:\Windows\system32\audiodg.exe 2014-11-13 00:53:43 ----A---- C:\Windows\system32\shell32.dll 2014-11-13 00:53:41 ----A---- C:\Windows\system32\ntoskrnl.exe 2014-11-13 00:53:40 ----A---- C:\Windows\SYSWOW64\shell32.dll 2014-11-13 00:53:38 ----A---- C:\Windows\system32\SettingsHandlers.dll 2014-11-13 00:53:37 ----A---- C:\Windows\system32\twinui.dll 2014-11-13 00:53:36 ----A---- C:\Windows\system32\drivers\tcpip.sys 2014-11-13 00:53:35 ----A---- C:\Windows\system32\mfmp4srcsnk.dll 2014-11-13 00:53:35 ----A---- C:\Windows\system32\MFMediaEngine.dll 2014-11-13 00:53:35 ----A---- C:\Windows\system32\localspl.dll 2014-11-13 00:53:34 ----A---- C:\Windows\SYSWOW64\twinui.dll 2014-11-13 00:53:33 ----A---- C:\Windows\SYSWOW64\mfmp4srcsnk.dll 2014-11-13 00:53:33 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll 2014-11-13 00:53:33 ----A---- C:\Windows\system32\win32spl.dll 2014-11-13 00:53:32 ----A---- C:\Windows\system32\WsmSvc.dll 2014-11-13 00:53:32 ----A---- C:\Windows\system32\drivers\netio.sys 2014-11-13 00:53:31 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll 2014-11-13 00:53:31 ----A---- C:\Windows\SYSWOW64\puiobj.dll 2014-11-13 00:53:31 ----A---- C:\Windows\system32\puiobj.dll 2014-11-13 00:53:30 ----AC---- C:\Windows\system32\drivers\USBSTOR.SYS 2014-11-13 00:53:30 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS 2014-11-13 00:53:29 ----A---- C:\Windows\SYSWOW64\untfs.dll 2014-11-13 00:53:29 ----A---- C:\Windows\system32\untfs.dll 2014-11-13 00:53:28 ----A---- C:\Windows\system32\FXSCOMEX.dll 2014-11-13 00:53:26 ----A---- C:\Windows\SYSWOW64\FXSAPI.dll 2014-11-13 00:53:26 ----A---- C:\Windows\system32\FXSAPI.dll 2014-10-28 16:51:08 ----HDC---- C:\ProgramData\{989FB650-BA74-42BE-A594-801FCD4DB75C} 2014-10-28 16:32:04 ----HDC---- C:\ProgramData\{5CBCCD5D-E385-4F19-AC02-34F1694F0755} 2014-10-28 16:31:28 ----HDC---- C:\ProgramData\{4447E817-9143-4376-B59F-B06494651B85} 2014-10-27 22:16:16 ----D---- C:\Program Files (x86)\SearchProtect 2014-10-25 14:50:10 ----D---- C:\Users\Arno\AppData\Roaming\QuickScan 2014-10-25 14:49:19 ----D---- C:\Program Files (x86)\Settings Manager 2014-10-15 15:28:10 ----A---- C:\Windows\system32\MrmCoreR.dll 2014-10-15 15:28:09 ----A---- C:\Windows\SYSWOW64\MrmCoreR.dll 2014-10-15 15:28:06 ----A---- C:\Windows\system32\winbici.dll 2014-10-15 15:24:53 ----A---- C:\Windows\SYSWOW64\rastls.dll 2014-10-15 15:24:53 ----A---- C:\Windows\system32\rastls.dll 2014-10-15 15:24:29 ----A---- C:\Windows\system32\Windows.UI.Search.dll 2014-10-15 15:24:27 ----A---- C:\Windows\SYSWOW64\Windows.UI.Search.dll 2014-10-15 15:24:26 ----A---- C:\Windows\SYSWOW64\mstscax.dll 2014-10-15 15:24:26 ----A---- C:\Windows\system32\SyncEngine.dll 2014-10-15 15:24:26 ----A---- C:\Windows\system32\mstscax.dll 2014-10-15 15:24:24 ----A---- C:\Windows\system32\SearchFolder.dll 2014-10-15 15:24:24 ----A---- C:\Windows\system32\ntdll.dll 2014-10-15 15:24:23 ----A---- C:\Windows\system32\KernelBase.dll 2014-10-15 15:24:22 ----A---- C:\Windows\SYSWOW64\ntdll.dll 2014-10-15 15:24:22 ----A---- C:\Windows\system32\WSShared.dll 2014-10-15 15:24:22 ----A---- C:\Windows\system32\propsys.dll 2014-10-15 15:24:21 ----A---- C:\Windows\SYSWOW64\WSShared.dll 2014-10-15 15:24:21 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll 2014-10-15 15:24:21 ----A---- C:\Windows\SYSWOW64\KernelBase.dll 2014-10-15 15:24:21 ----A---- C:\Windows\system32\Wldap32.dll 2014-10-15 15:24:21 ----A---- C:\Windows\system32\iphlpsvc.dll 2014-10-15 15:24:20 ----A---- C:\Windows\SYSWOW64\Wldap32.dll 2014-10-15 15:24:20 ----A---- C:\Windows\SYSWOW64\propsys.dll 2014-10-15 15:24:20 ----A---- C:\Windows\system32\SystemEventsBrokerServer.dll 2014-10-15 15:24:19 ----A---- C:\Windows\system32\SkyDriveTelemetry.dll 2014-10-15 15:24:19 ----A---- C:\Windows\system32\SkyDrive.exe 2014-10-15 15:24:19 ----A---- C:\Windows\system32\httpprxm.dll 2014-10-15 15:24:19 ----A---- C:\Windows\system32\bisrv.dll 2014-10-15 15:24:18 ----A---- C:\Windows\SYSWOW64\SkyDriveShell.dll 2014-10-15 15:24:18 ----A---- C:\Windows\system32\SkyDriveShell.dll 2014-10-15 15:24:18 ----A---- C:\Windows\system32\ProximityService.dll 2014-10-15 15:24:18 ----A---- C:\Windows\system32\pcsvDevice.dll 2014-10-15 15:24:18 ----A---- C:\Windows\system32\adhsvc.dll 2014-10-15 15:24:17 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-10-15 15:24:17 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-10-12 09:20:47 ----D---- C:\Program Files\Microsoft Silverlight 2014-10-12 09:20:47 ----D---- C:\Program Files (x86)\Microsoft Silverlight 2014-10-12 09:18:08 ----A---- C:\Windows\system32\SQSRVRES.DLL 2014-10-09 19:15:22 ----D---- C:\Users\Arno\AppData\Roaming\EMX 2014-10-09 19:14:28 ----A---- C:\Windows\SYSWOW64\em28.dat 2014-10-09 19:14:28 ----A---- C:\Windows\SYSWOW64\em27.dat 2014-10-09 19:14:28 ----A---- C:\Windows\SYSWOW64\em26.dat 2014-10-09 19:14:28 ----A---- C:\Windows\SYSWOW64\em25.dat 2014-10-09 19:14:28 ----A---- C:\Windows\SYSWOW64\em24.dat 2014-10-09 19:14:28 ----A---- C:\Windows\SYSWOW64\em23.dat 2014-10-09 19:14:28 ----A---- C:\Windows\SYSWOW64\em22.dat 2014-10-09 19:01:04 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin 2014-10-09 19:00:40 ----D---- C:\Users\Arno\AppData\Roaming\Athtek 2014-10-09 18:15:38 ----D---- C:\ProgramData\IsolatedStorage 2014-10-08 18:40:23 ----D---- C:\Program Files\astah-community 2014-10-02 17:02:00 ----D---- C:\Program Files (x86)\Microsoft Works 2014-10-02 17:01:30 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 2014-10-02 16:58:16 ----D---- C:\Program Files\Microsoft Office 2014-10-02 16:58:10 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8 2014-10-02 16:57:22 ----D---- C:\ProgramData\Microsoft Help 2014-10-02 16:57:08 ----RHD---- C:\MSOCache 2014-10-02 16:48:26 ----D---- C:\Program Files (x86)\SystemRequirementsLab 2014-10-01 19:52:15 ----A---- C:\Windows\SYSWOW64\perf-ReportServer$SQLEXPRESS-rsctr11.0.2100.60.dll 2014-10-01 19:52:15 ----A---- C:\Windows\system32\perf-ReportServer$SQLEXPRESS-rsctr11.0.2100.60.dll 2014-10-01 19:52:04 ----A---- C:\Windows\SYSWOW64\perf-MSSQL11.SQLEXPRESS-sqlagtctr.dll 2014-10-01 19:52:04 ----A---- C:\Windows\system32\perf-MSSQL11.SQLEXPRESS-sqlagtctr.dll 2014-10-01 19:51:32 ----A---- C:\Windows\SYSWOW64\perf-MSSQL$SQLEXPRESS-sqlctr11.0.2100.60.dll 2014-10-01 19:51:32 ----A---- C:\Windows\system32\perf-MSSQL$SQLEXPRESS-sqlctr11.0.2100.60.dll 2014-10-01 19:51:22 ----A---- C:\Windows\system32\fssres.dll 2014-10-01 19:51:20 ----A---- C:\Windows\system32\hadrres.dll 2014-10-01 19:45:21 ----D---- C:\Program Files\Microsoft Analysis Services 2014-10-01 19:45:20 ----D---- C:\Program Files (x86)\Microsoft Analysis Services 2014-10-01 19:42:46 ----D---- C:\Windows\system32\RsFx 2014-10-01 19:42:32 ----D---- C:\Program Files\Microsoft.NET 2014-10-01 19:33:18 ----D---- C:\Windows\symbols 2014-10-01 19:33:17 ----D---- C:\Program Files\Microsoft Visual Studio 10.0 2014-10-01 19:33:17 ----D---- C:\Program Files\Microsoft Help Viewer 2014-10-01 19:32:58 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 10.0 2014-09-29 21:08:55 ----D---- C:\Users\Arno\AppData\Roaming\NuGet 2014-09-29 18:00:00 ----D---- C:\Program Files (x86)\Workflow Manager Tools 2014-09-29 17:59:55 ----D---- C:\Program Files\SharePoint Client Components 2014-09-29 17:59:49 ----D---- C:\Program Files (x86)\Open XML SDK 2014-09-29 17:59:47 ----D---- C:\Program Files (x86)\Microsoft 2014-09-29 17:59:46 ----D---- C:\Program Files\Microsoft Identity Extensions 2014-09-29 17:59:01 ----D---- C:\Program Files\Windows Identity Foundation 2014-09-29 17:57:56 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition 2014-09-29 17:57:06 ----D---- C:\Program Files\Application Verifier 2014-09-29 17:57:06 ----D---- C:\Program Files (x86)\Application Verifier 2014-09-29 17:57:00 ----D---- C:\ProgramData\Windows App Certification Kit 2014-09-29 17:53:55 ----D---- C:\ProgramData\PreEmptive Solutions 2014-09-29 17:51:24 ----D---- C:\Program Files (x86)\Microsoft ASP.NET 2014-09-29 17:49:55 ----D---- C:\Program Files (x86)\Microsoft Web Tools 2014-09-29 17:49:06 ----D---- C:\Program Files\IIS Express 2014-09-29 17:49:06 ----D---- C:\Program Files (x86)\IIS Express 2014-09-29 17:48:32 ----D---- C:\ProgramData\NuGet 2014-09-29 17:48:32 ----D---- C:\Program Files (x86)\NuGet 2014-09-29 17:48:27 ----D---- C:\Program Files (x86)\Microsoft WCF Data Services 2014-09-29 17:48:18 ----D---- C:\Program Files\IIS 2014-09-29 17:48:17 ----D---- C:\Program Files (x86)\IIS 2014-09-29 17:46:28 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll 2014-09-29 17:46:12 ----D---- C:\Program Files (x86)\Windows Kits 2014-09-29 17:42:07 ----D---- C:\Program Files (x86)\HTML Help Workshop 2014-09-29 17:41:39 ----D---- C:\Program Files (x86)\Microsoft Help Viewer 2014-09-29 17:39:55 ----D---- C:\Windows\SYSWOW64\1033 2014-09-29 17:39:52 ----D---- C:\Program Files\Microsoft SQL Server 2014-09-29 17:39:52 ----D---- C:\Program Files (x86)\Microsoft SQL Server 2014-09-29 17:35:25 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 12.0 2014-09-29 17:35:22 ----D---- C:\Windows\system32\1033 2014-09-29 17:34:44 ----D---- C:\Program Files\Microsoft Visual Studio 12.0 2014-09-29 17:34:44 ----D---- C:\Program Files (x86)\Microsoft SDKs 2014-09-29 16:46:17 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys 2014-09-29 16:46:10 ----D---- C:\Users\Arno\AppData\Roaming\DAEMON Tools Lite 2014-09-29 16:46:07 ----D---- C:\Program Files (x86)\DAEMON Tools Lite 2014-09-29 16:45:19 ----D---- C:\ProgramData\DAEMON Tools Lite 2014-09-29 16:41:02 ----D---- C:\Users\Arno\AppData\Roaming\uTorrent 2014-09-25 19:52:21 ----HDC---- C:\ProgramData\{662EAAEC-9E9A-4C69-A658-884E51E909BB} 2014-09-25 18:51:18 ----HDC---- C:\ProgramData\{033B4844-E9C3-45D2-88D9-34DDF3F91100} 2014-09-25 18:50:51 ----HDC---- C:\ProgramData\{4682E4CB-7209-4099-8AA1-580ABCCCE731} 2014-09-25 18:50:21 ----HDC---- C:\ProgramData\{D2030082-F62A-402A-9456-8009276FD896} 2014-09-25 18:49:54 ----HDC---- C:\ProgramData\{B3478C15-588A-4968-AD66-76AA98803A28} 2014-09-25 18:49:30 ----HDC---- C:\ProgramData\{0CC85DFF-E70A-4AB0-968A-F1F98F4D0C67} 2014-09-25 18:48:28 ----HDC---- C:\ProgramData\{5EE4F9B1-7274-48A2-9C25-C287604C3058} 2014-09-25 18:48:00 ----HDC---- C:\ProgramData\{219191E6-6846-4329-889D-7956C487D9A6} 2014-09-25 18:47:45 ----HDC---- C:\ProgramData\{018F1C44-00D1-417B-B251-92A5634F74AE} 2014-09-25 18:47:24 ----HDC---- C:\ProgramData\{9B09061B-0A4F-42DA-9987-7D3F452DCB09} 2014-09-25 18:47:08 ----HDC---- C:\ProgramData\{9597097D-B8DC-4754-AF2D-CB61CCFC861A} 2014-09-25 18:46:45 ----HDC---- C:\ProgramData\{EB21323D-3F46-4EF0-B849-B096B7705C69} 2014-09-25 18:46:21 ----HDC---- C:\ProgramData\{9F570B21-E27A-40BE-A508-292899A7D042} 2014-09-25 18:45:56 ----HDC---- C:\ProgramData\{AF79C86B-2321-4D47-A168-2A24BA2B6A73} 2014-09-25 18:45:33 ----HDC---- C:\ProgramData\{B7C85E99-2AC6-455D-B4D1-752A56403757} 2014-09-25 18:45:08 ----HDC---- C:\ProgramData\{57B31BE2-3175-4425-9722-D2AC5F68C7BD} 2014-09-25 18:37:26 ----D---- C:\ProgramData\Package Cache 2014-09-25 18:22:30 ----HDC---- C:\ProgramData\{A6DB2A6F-FF9D-453F-99D6-C1AA54BC0C14} 2014-09-25 18:09:04 ----HDC---- C:\ProgramData\{7FC62C74-A9B7-42DD-AD85-966127F1BCC6} 2014-09-25 18:08:25 ----D---- C:\ProgramData\Native Instruments 2014-09-25 18:08:17 ----D---- C:\Program Files\Common Files\Native Instruments 2014-09-25 18:07:00 ----D---- C:\Program Files\Native Instruments 2014-09-24 07:07:33 ----HD---- C:\ProgramData\CanonBJ 2014-09-24 07:07:09 ----A---- C:\Windows\system32\CNMLMBX.DLL 2014-09-24 07:06:19 ----A---- C:\Windows\system32\CNHMCA6.dll 2014-09-24 07:06:19 ----A---- C:\Windows\system32\CNC_BXL.dll 2014-09-24 07:06:19 ----A---- C:\Windows\system32\CNC_BXI.dll 2014-09-24 07:06:19 ----A---- C:\Windows\system32\CNC_BXC.dll 2014-09-22 18:29:10 ----D---- C:\Users\Arno\AppData\Roaming\Screenshot Studio 2014-09-22 18:25:19 ----SHD---- C:\ProgramData\System Restore 2014-09-22 18:24:57 ----D---- C:\Program Files (x86)\Screenshot Studio 2014-09-22 14:14:29 ----D---- C:\Users\Arno\AppData\Roaming\CyberLink 2014-09-20 23:24:25 ----SD---- C:\Windows\system32\CompatTel 2014-09-20 23:24:12 ----RD---- C:\Windows\BrowserChoice 2014-09-20 21:11:26 ----D---- C:\Users\Arno\AppData\Roaming\Skype 2014-09-20 21:11:19 ----RD---- C:\Program Files (x86)\Skype 2014-09-20 21:11:13 ----D---- C:\ProgramData\Skype 2014-09-18 22:29:02 ----A---- C:\Windows\system32\termsrv.dll 2014-09-18 20:22:44 ----D---- C:\Users\Arno\AppData\Roaming\Macromedia 2014-09-16 16:03:50 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll 2014-09-16 16:03:49 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll 2014-09-16 16:03:43 ----A---- C:\Windows\SYSWOW64\mfcore.dll 2014-09-16 16:03:43 ----A---- C:\Windows\system32\mfcore.dll 2014-09-16 16:03:36 ----A---- C:\Windows\system32\d3d10warp.dll 2014-09-16 16:03:29 ----A---- C:\Windows\system32\gpsvc.dll 2014-09-16 16:03:28 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll 2014-09-16 16:03:27 ----A---- C:\Windows\system32\wlansvc.dll 2014-09-16 16:03:26 ----A---- C:\Windows\system32\workfolderssvc.dll 2014-09-16 16:03:24 ----A---- C:\Windows\system32\Windows.Media.dll 2014-09-16 16:03:20 ----A---- C:\Windows\SYSWOW64\Windows.Media.dll 2014-09-16 16:03:20 ----A---- C:\Windows\system32\drivers\srv.sys 2014-09-16 16:03:19 ----A---- C:\Windows\system32\WMVDECOD.DLL 2014-09-16 16:03:19 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys 2014-09-16 16:03:18 ----A---- C:\Windows\system32\SRH.dll 2014-09-16 16:03:17 ----A---- C:\Windows\system32\printui.dll 2014-09-16 16:03:17 ----A---- C:\Windows\system32\drivers\ntfs.sys 2014-09-16 16:03:16 ----A---- C:\Windows\system32\drivers\srv2.sys 2014-09-16 16:03:15 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL 2014-09-16 16:03:14 ----A---- C:\Windows\system32\XpsPrint.dll 2014-09-16 16:03:14 ----A---- C:\Windows\system32\netcfgx.dll 2014-09-16 16:03:12 ----AC---- C:\Windows\system32\drivers\usbport.sys 2014-09-16 16:03:12 ----A---- C:\Windows\SYSWOW64\netcfgx.dll 2014-09-16 16:03:12 ----A---- C:\Windows\system32\WorkfoldersControl.dll 2014-09-16 16:03:12 ----A---- C:\Windows\system32\AppxPackaging.dll 2014-09-16 16:03:11 ----A---- C:\Windows\SYSWOW64\SRH.dll 2014-09-16 16:03:11 ----A---- C:\Windows\SYSWOW64\printui.dll 2014-09-16 16:03:11 ----A---- C:\Windows\system32\wlanmsm.dll 2014-09-16 16:03:11 ----A---- C:\Windows\system32\drivers\nwifi.sys 2014-09-16 16:03:09 ----AC---- C:\Windows\system32\drivers\usbhub.sys 2014-09-16 16:03:09 ----A---- C:\Windows\SYSWOW64\AppxPackaging.dll 2014-09-16 16:03:09 ----A---- C:\Windows\system32\srvsvc.dll 2014-09-16 16:03:09 ----A---- C:\Windows\system32\spoolsv.exe 2014-09-16 16:03:08 ----AC---- C:\Windows\system32\drivers\USBHUB3.SYS 2014-09-16 16:03:08 ----AC---- C:\Windows\system32\drivers\usbccgp.sys 2014-09-16 16:03:08 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll 2014-09-16 16:03:08 ----A---- C:\Windows\system32\SHCore.dll 2014-09-16 16:03:07 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Bluetooth.dll 2014-09-16 16:03:06 ----A---- C:\Windows\SYSWOW64\mftranscode.dll 2014-09-16 16:03:06 ----A---- C:\Windows\SYSWOW64\mfplat.dll 2014-09-16 16:03:06 ----A---- C:\Windows\system32\storagewmi.dll 2014-09-16 16:03:06 ----A---- C:\Windows\system32\rsaenh.dll 2014-09-16 16:03:05 ----A---- C:\Windows\SYSWOW64\SHCore.dll 2014-09-16 16:03:05 ----A---- C:\Windows\system32\mftranscode.dll 2014-09-16 16:03:05 ----A---- C:\Windows\system32\mfplat.dll 2014-09-16 16:03:05 ----A---- C:\Windows\system32\comdlg32.dll 2014-09-16 16:03:04 ----AC---- C:\Windows\system32\drivers\spaceport.sys 2014-09-16 16:03:04 ----A---- C:\Windows\system32\usbmon.dll 2014-09-16 16:03:02 ----A---- C:\Windows\system32\winload.exe 2014-09-16 16:03:02 ----A---- C:\Windows\system32\defragsvc.dll 2014-09-16 16:03:01 ----A---- C:\Windows\system32\wisp.dll 2014-09-16 16:03:00 ----A---- C:\Windows\SYSWOW64\rsaenh.dll 2014-09-16 16:02:58 ----AC---- C:\Windows\system32\drivers\volsnap.sys 2014-09-16 16:02:58 ----A---- C:\Windows\SYSWOW64\comdlg32.dll 2014-09-16 16:02:58 ----A---- C:\Windows\system32\winresume.exe 2014-09-16 16:02:58 ----A---- C:\Windows\system32\aclui.dll 2014-09-16 16:02:57 ----A---- C:\Windows\system32\wsecedit.dll 2014-09-16 16:02:55 ----AC---- C:\Windows\system32\drivers\hdaudbus.sys 2014-09-16 16:02:55 ----A---- C:\Windows\system32\SystemSettingsAdminFlows.exe 2014-09-16 16:02:55 ----A---- C:\Windows\system32\mfreadwrite.dll 2014-09-16 16:02:55 ----A---- C:\Windows\system32\drivers\srvnet.sys 2014-09-16 16:02:55 ----A---- C:\Windows\system32\drivers\ks.sys 2014-09-16 16:02:54 ----AC---- C:\Windows\system32\drivers\usbehci.sys 2014-09-16 16:02:54 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll 2014-09-16 16:02:54 ----A---- C:\Windows\system32\wpdbusenum.dll 2014-09-16 16:02:54 ----A---- C:\Windows\system32\winmmbase.dll 2014-09-16 16:02:54 ----A---- C:\Windows\system32\WiFiDisplay.dll 2014-09-16 16:02:54 ----A---- C:\Windows\system32\dwmapi.dll 2014-09-16 16:02:52 ----A---- C:\Windows\SYSWOW64\dwmapi.dll 2014-09-16 16:02:52 ----A---- C:\Windows\SYSWOW64\Display.dll 2014-09-16 16:02:52 ----A---- C:\Windows\system32\SettingSync.dll 2014-09-16 16:02:52 ----A---- C:\Windows\system32\rdvidcrl.dll 2014-09-16 16:02:52 ----A---- C:\Windows\system32\conhost.exe 2014-09-16 16:02:51 ----A---- C:\Windows\SYSWOW64\wlanapi.dll 2014-09-16 16:02:51 ----A---- C:\Windows\SYSWOW64\storagewmi.dll 2014-09-16 16:02:51 ----A---- C:\Windows\system32\VAN.dll 2014-09-16 16:02:51 ----A---- C:\Windows\system32\Display.dll 2014-09-16 16:02:51 ----A---- C:\Windows\system32\AppxSip.dll 2014-09-16 16:02:50 ----AC---- C:\Windows\system32\drivers\usbuhci.sys 2014-09-16 16:02:50 ----A---- C:\Windows\SYSWOW64\winmmbase.dll 2014-09-16 16:02:50 ----A---- C:\Windows\system32\WorkFoldersGPExt.dll 2014-09-16 16:02:50 ----A---- C:\Windows\system32\SndVol.exe 2014-09-16 16:02:50 ----A---- C:\Windows\system32\clusapi.dll 2014-09-16 16:02:49 ----A---- C:\Windows\SYSWOW64\wisp.dll 2014-09-16 16:02:49 ----A---- C:\Windows\SYSWOW64\aclui.dll 2014-09-16 16:02:49 ----A---- C:\Windows\system32\osk.exe 2014-09-16 16:02:47 ----A---- C:\Windows\system32\DafPrintProvider.dll 2014-09-16 16:02:47 ----A---- C:\Windows\system32\bcryptprimitives.dll 2014-09-16 16:02:46 ----A---- C:\Windows\system32\mfps.dll 2014-09-16 16:02:46 ----A---- C:\Windows\system32\drivers\ndis.sys 2014-09-16 16:02:45 ----A---- C:\Windows\SYSWOW64\bcryptprimitives.dll 2014-09-16 16:02:45 ----A---- C:\Windows\system32\winmm.dll 2014-09-16 16:02:45 ----A---- C:\Windows\system32\drivers\NdisImPlatform.sys 2014-09-16 16:02:44 ----AC---- C:\Windows\system32\drivers\usbd.sys 2014-09-16 16:02:44 ----A---- C:\Windows\SYSWOW64\AppxSip.dll 2014-09-16 16:02:44 ----A---- C:\Windows\system32\Windows.Networking.dll 2014-09-16 16:02:44 ----A---- C:\Windows\system32\twinapi.dll 2014-09-16 16:02:43 ----A---- C:\Windows\system32\WorkFoldersShell.dll 2014-09-16 16:02:43 ----A---- C:\Windows\system32\drivers\bridge.sys 2014-09-16 16:02:42 ----A---- C:\Windows\SYSWOW64\wsecedit.dll 2014-09-16 16:02:42 ----A---- C:\Windows\system32\prnntfy.dll 2014-09-16 16:02:42 ----A---- C:\Windows\system32\GdiPlus.dll 2014-09-16 16:02:40 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll 2014-09-16 16:02:40 ----A---- C:\Windows\SYSWOW64\prnntfy.dll 2014-09-16 16:02:40 ----A---- C:\Windows\system32\gpedit.dll 2014-09-16 16:02:39 ----A---- C:\Windows\SYSWOW64\winmm.dll 2014-09-16 16:02:39 ----A---- C:\Windows\system32\puiapi.dll 2014-09-16 16:02:38 ----A---- C:\Windows\SYSWOW64\puiapi.dll 2014-09-16 16:02:38 ----A---- C:\Windows\system32\iasnap.dll 2014-09-16 16:02:37 ----A---- C:\Windows\system32\profsvc.dll 2014-09-16 16:02:36 ----A---- C:\Windows\SYSWOW64\WebClnt.dll 2014-09-16 16:02:36 ----A---- C:\Windows\SYSWOW64\VAN.dll 2014-09-16 16:02:36 ----A---- C:\Windows\SYSWOW64\SndVol.exe 2014-09-16 16:02:36 ----A---- C:\Windows\system32\WebClnt.dll 2014-09-16 16:02:34 ----AC---- C:\Windows\system32\drivers\pci.sys 2014-09-16 16:02:33 ----A---- C:\Windows\system32\mispace.dll 2014-09-16 16:02:32 ----A---- C:\Windows\SYSWOW64\clusapi.dll 2014-09-16 16:02:32 ----A---- C:\Windows\system32\stobject.dll 2014-09-16 16:02:31 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll 2014-09-16 16:02:31 ----A---- C:\Windows\system32\wcmcsp.dll 2014-09-16 16:02:31 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys 2014-09-16 16:02:31 ----A---- C:\Windows\system32\dab.dll 2014-09-16 16:02:31 ----A---- C:\Windows\system32\AppxSysprep.dll 2014-09-16 16:02:30 ----A---- C:\Windows\SYSWOW64\iasnap.dll 2014-09-16 16:02:30 ----A---- C:\Windows\system32\wwanconn.dll 2014-09-16 16:02:29 ----A---- C:\Windows\SYSWOW64\gpedit.dll 2014-09-16 16:02:29 ----A---- C:\Windows\system32\ActionCenter.dll 2014-09-16 16:02:28 ----A---- C:\Windows\system32\wlanapi.dll 2014-09-16 16:02:26 ----A---- C:\Windows\SYSWOW64\osk.exe 2014-09-16 16:02:26 ----A---- C:\Windows\SYSWOW64\mispace.dll 2014-09-16 16:02:26 ----A---- C:\Windows\system32\wshbth.dll 2014-09-16 16:02:25 ----A---- C:\Windows\SYSWOW64\Windows.Networking.dll 2014-09-16 16:02:25 ----A---- C:\Windows\SYSWOW64\SettingSync.dll 2014-09-16 16:02:24 ----A---- C:\Windows\SYSWOW64\DafPrintProvider.dll 2014-09-16 16:02:24 ----A---- C:\Windows\system32\PrintDialogs.dll 2014-09-16 16:02:24 ----A---- C:\Windows\system32\browser.dll 2014-09-16 16:02:23 ----A---- C:\Windows\system32\Windows.Devices.Bluetooth.dll 2014-09-16 16:02:22 ----A---- C:\Windows\SYSWOW64\wshbth.dll 2014-09-16 16:02:22 ----A---- C:\Windows\system32\wlansvcpal.dll 2014-09-16 16:02:21 ----A---- C:\Windows\SYSWOW64\stobject.dll 2014-09-16 16:02:18 ----A---- C:\Windows\SYSWOW64\KBDRUM.DLL 2014-09-16 16:02:18 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll 2014-09-16 16:02:18 ----A---- C:\Windows\system32\Defrag.exe 2014-09-16 16:02:17 ----A---- C:\Windows\system32\KBDRUM.DLL 2014-09-16 16:02:16 ----A---- C:\Windows\SYSWOW64\GdiPlus.dll 2014-09-16 16:02:15 ----A---- C:\Windows\system32\KBDRU.DLL 2014-09-16 16:02:14 ----A---- C:\Windows\system32\KBDYAK.DLL 2014-09-16 16:02:14 ----A---- C:\Windows\system32\KBDRU1.DLL 2014-09-16 16:02:14 ----A---- C:\Windows\system32\KBDBASH.DLL 2014-09-16 16:02:12 ----A---- C:\Windows\system32\BluetoothApis.dll 2014-09-16 16:02:11 ----A---- C:\Windows\SYSWOW64\KBDYAK.DLL 2014-09-16 16:02:11 ----A---- C:\Windows\SYSWOW64\KBDRU1.DLL 2014-09-16 16:02:11 ----A---- C:\Windows\SYSWOW64\KBDRU.DLL 2014-09-16 16:02:11 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL 2014-09-16 16:02:07 ----A---- C:\Windows\SYSWOW64\PrintDialogs.dll 2014-09-16 16:02:07 ----A---- C:\Windows\system32\wwanmm.dll 2014-09-16 16:02:07 ----A---- C:\Windows\system32\SndVolSSO.dll 2014-09-16 16:02:07 ----A---- C:\Windows\system32\KBDTAT.DLL 2014-09-16 16:02:06 ----A---- C:\Windows\SYSWOW64\KBDTAT.DLL 2014-09-16 16:02:06 ----A---- C:\Windows\system32\compstui.dll 2014-09-16 16:02:02 ----A---- C:\Windows\SYSWOW64\BluetoothApis.dll 2014-09-16 16:02:02 ----A---- C:\Windows\system32\wlansec.dll 2014-09-16 16:02:00 ----A---- C:\Windows\system32\SystemSettingsAdminFlowUI.dll 2014-09-16 16:01:58 ----A---- C:\Windows\SYSWOW64\KBDTT102.DLL 2014-09-16 16:01:58 ----A---- C:\Windows\system32\KBDTT102.DLL 2014-09-15 23:46:59 ----D---- C:\Windows\system32\MRT 2014-09-15 23:46:56 ----A---- C:\Windows\system32\MRT.exe 2014-09-15 18:40:39 ----A---- C:\Windows\system32\ieetwcollectorres.dll 2014-09-14 13:53:47 ----D---- C:\Users\Arno\AppData\Roaming\YoudaGames 2014-09-14 13:53:03 ----D---- C:\Program Files (x86)\Governor of Poker 2 2014-09-14 13:44:10 ----D---- C:\Users\Arno\AppData\Roaming\DropboxMaster 2014-09-14 13:42:52 ----D---- C:\Users\Arno\AppData\Roaming\Dropbox 2014-09-14 13:42:17 ----D---- C:\Users\Arno\AppData\Roaming\AVAST Software 2014-09-14 13:39:24 ----A---- C:\Windows\system32\drivers\aswVmm.sys 2014-09-14 13:39:24 ----A---- C:\Windows\system32\drivers\aswStm.sys 2014-09-14 13:39:24 ----A---- C:\Windows\system32\drivers\aswsp.sys 2014-09-14 13:39:24 ----A---- C:\Windows\system32\drivers\aswsnx.sys 2014-09-14 13:39:24 ----A---- C:\Windows\system32\drivers\aswRvrt.sys 2014-09-14 13:39:24 ----A---- C:\Windows\system32\drivers\aswRdr2.sys 2014-09-14 13:39:24 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys 2014-09-14 13:39:24 ----A---- C:\Windows\system32\drivers\aswHwid.sys 2014-09-14 13:39:22 ----A---- C:\Windows\system32\aswBoot.exe 2014-09-14 13:39:12 ----A---- C:\Windows\avastSS.scr 2014-09-14 13:38:00 ----D---- C:\Program Files\AVAST Software 2014-09-14 13:37:00 ----D---- C:\ProgramData\AVAST Software 2014-09-14 10:57:33 ----A---- C:\Windows\system32\uDWM.dll 2014-09-14 10:57:32 ----A---- C:\Windows\explorer.exe 2014-09-14 10:57:31 ----A---- C:\Windows\SYSWOW64\UXInit.dll 2014-09-14 10:57:31 ----A---- C:\Windows\SYSWOW64\explorer.exe 2014-09-14 10:57:31 ----A---- C:\Windows\system32\UXInit.dll 2014-09-14 10:57:19 ----A---- C:\Windows\system32\WSDMon.dll 2014-09-14 10:57:19 ----A---- C:\Windows\system32\tcpmon.dll 2014-09-14 10:57:18 ----A---- C:\Windows\system32\drivers\msgpioclx.sys 2014-09-13 13:25:33 ----A---- C:\Windows\SYSWOW64\wusa.exe 2014-09-13 13:25:33 ----A---- C:\Windows\system32\wusa.exe 2014-09-13 13:25:15 ----A---- C:\Windows\system32\lockscreencn.dll 2014-09-13 13:25:12 ----A---- C:\Windows\SYSWOW64\mrt100.dll 2014-09-13 13:25:11 ----A---- C:\Windows\SYSWOW64\mrt_map.dll 2014-09-13 13:25:11 ----A---- C:\Windows\system32\mrt100.dll 2014-09-13 13:25:11 ----A---- C:\Windows\system32\mrt_map.dll 2014-09-13 13:23:00 ----A---- C:\Windows\SYSWOW64\wlidprov.dll 2014-09-13 13:22:59 ----A---- C:\Windows\SYSWOW64\msftedit.dll 2014-09-13 13:22:59 ----A---- C:\Windows\system32\wlidprov.dll 2014-09-13 13:22:58 ----A---- C:\Windows\SYSWOW64\ReInfo.dll 2014-09-13 13:22:58 ----A---- C:\Windows\SYSWOW64\AppxAllUserStore.dll 2014-09-13 13:22:53 ----A---- C:\Windows\SYSWOW64\spp.dll 2014-09-13 13:22:53 ----A---- C:\Windows\SYSWOW64\ReAgent.dll 2014-09-13 13:22:53 ----A---- C:\Windows\system32\ReInfo.dll 2014-09-13 13:22:53 ----A---- C:\Windows\system32\dafWfdProvider.dll 2014-09-13 13:22:52 ----A---- C:\Windows\SYSWOW64\Windows.Shell.Search.UriHandler.dll 2014-09-13 13:22:51 ----A---- C:\Windows\SYSWOW64\AppXDeploymentClient.dll 2014-09-13 13:22:51 ----A---- C:\Windows\system32\AppXDeploymentExtensions.dll 2014-09-13 13:22:51 ----A---- C:\Windows\system32\AppxAllUserStore.dll 2014-09-13 13:22:50 ----A---- C:\Windows\SYSWOW64\kernel32.dll 2014-09-13 13:22:48 ----A---- C:\Windows\SYSWOW64\dcomp.dll 2014-09-13 13:22:46 ----A---- C:\Windows\system32\spp.dll 2014-09-13 13:22:46 ----A---- C:\Windows\system32\ReAgent.dll 2014-09-13 13:22:44 ----A---- C:\Windows\system32\Windows.Shell.Search.UriHandler.dll 2014-09-13 13:22:43 ----A---- C:\Windows\system32\AppXDeploymentClient.dll 2014-09-13 13:22:42 ----A---- C:\Windows\SYSWOW64\ole32.dll 2014-09-13 13:22:42 ----A---- C:\Windows\system32\AppXDeploymentServer.dll 2014-09-13 13:22:40 ----A---- C:\Windows\system32\kernel32.dll 2014-09-13 13:22:40 ----A---- C:\Windows\system32\drivers\dfsc.sys 2014-09-13 13:22:37 ----A---- C:\Windows\system32\msftedit.dll 2014-09-13 13:22:37 ----A---- C:\Windows\system32\dcomp.dll 2014-09-13 13:22:32 ----A---- C:\Windows\system32\ole32.dll 2014-09-13 13:22:22 ----A---- C:\Windows\system32\msxml6.dll 2014-09-13 13:22:20 ----A---- C:\Windows\SYSWOW64\msxml6.dll 2014-09-13 13:22:18 ----A---- C:\Windows\system32\dnsapi.dll 2014-09-13 13:22:17 ----A---- C:\Windows\SYSWOW64\dnsapi.dll 2014-09-13 13:22:16 ----A---- C:\Windows\system32\Windows.Devices.Sensors.dll 2014-09-13 13:22:15 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Sensors.dll 2014-09-13 13:22:15 ----A---- C:\Windows\system32\rasapi32.dll 2014-09-13 13:22:15 ----A---- C:\Windows\system32\netlogon.dll 2014-09-13 13:22:14 ----A---- C:\Windows\SYSWOW64\rasapi32.dll 2014-09-13 13:22:14 ----A---- C:\Windows\system32\SessEnv.dll 2014-09-13 13:22:14 ----A---- C:\Windows\system32\drivers\clfs.sys 2014-09-13 13:22:14 ----A---- C:\Windows\system32\dnsrslvr.dll 2014-09-13 13:22:13 ----A---- C:\Windows\SYSWOW64\SessEnv.dll 2014-09-13 13:22:13 ----A---- C:\Windows\SYSWOW64\SensorsApi.dll 2014-09-13 13:22:13 ----A---- C:\Windows\SYSWOW64\netlogon.dll 2014-09-13 13:22:13 ----A---- C:\Windows\system32\SensorsApi.dll 2014-09-13 13:22:12 ----A---- C:\Windows\system32\userenv.dll 2014-09-13 13:22:12 ----A---- C:\Windows\system32\umpnpmgr.dll 2014-09-13 13:22:12 ----A---- C:\Windows\system32\sxproxy.dll 2014-09-13 13:22:12 ----A---- C:\Windows\system32\pdh.dll 2014-09-13 13:22:11 ----A---- C:\Windows\SYSWOW64\userenv.dll 2014-09-13 13:22:11 ----A---- C:\Windows\SYSWOW64\sxproxy.dll 2014-09-13 13:22:11 ----A---- C:\Windows\SYSWOW64\davclnt.dll 2014-09-13 13:22:11 ----A---- C:\Windows\system32\wlangpui.dll 2014-09-13 13:22:11 ----A---- C:\Windows\system32\FWPUCLNT.DLL 2014-09-13 13:22:11 ----A---- C:\Windows\system32\davclnt.dll 2014-09-13 13:22:10 ----AC---- C:\Windows\system32\drivers\hidusb.sys 2014-09-13 13:22:10 ----A---- C:\Windows\SYSWOW64\pdh.dll 2014-09-13 13:22:10 ----A---- C:\Windows\system32\Windows.Graphics.Printing.dll 2014-09-13 13:22:10 ----A---- C:\Windows\system32\w32tm.exe 2014-09-13 13:22:10 ----A---- C:\Windows\system32\drivers\wfplwfs.sys 2014-09-13 13:22:09 ----A---- C:\Windows\SYSWOW64\wlangpui.dll 2014-09-13 13:22:09 ----A---- C:\Windows\SYSWOW64\w32tm.exe 2014-09-13 13:22:09 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL 2014-09-13 13:22:09 ----A---- C:\Windows\system32\drivers\tcpipreg.sys 2014-09-13 13:22:09 ----A---- C:\Windows\system32\CredentialMigrationHandler.dll 2014-09-13 13:22:08 ----AC---- C:\Windows\system32\drivers\hidclass.sys 2014-09-13 13:22:08 ----A---- C:\Windows\SYSWOW64\Windows.Graphics.Printing.dll 2014-09-13 13:22:08 ----A---- C:\Windows\SYSWOW64\CredentialMigrationHandler.dll 2014-09-13 13:22:08 ----A---- C:\Windows\system32\Windows.Devices.Scanners.dll 2014-09-13 13:22:08 ----A---- C:\Windows\system32\RMapi.dll 2014-09-13 13:22:08 ----A---- C:\Windows\system32\LocationApi.dll 2014-09-13 13:22:08 ----A---- C:\Windows\system32\drivers\mrxdav.sys 2014-09-13 13:22:07 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Scanners.dll 2014-09-13 13:22:07 ----A---- C:\Windows\SYSWOW64\nshwfp.dll 2014-09-13 13:22:07 ----A---- C:\Windows\SYSWOW64\LocationApi.dll 2014-09-13 13:22:07 ----A---- C:\Windows\system32\SetNetworkLocation.dll 2014-09-13 13:22:07 ----A---- C:\Windows\system32\nshwfp.dll 2014-09-13 13:22:07 ----A---- C:\Windows\system32\DevPropMgr.dll 2014-09-13 13:22:05 ----A---- C:\Windows\SYSWOW64\l2gpstore.dll 2014-09-13 13:22:05 ----A---- C:\Windows\system32\WsmWmiPl.dll 2014-09-13 13:22:05 ----A---- C:\Windows\system32\l2gpstore.dll 2014-09-13 13:22:05 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys 2014-09-13 13:20:09 ----A---- C:\Windows\system32\drivers\afd.sys 2014-09-13 12:41:25 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe 2014-09-13 12:41:25 ----A---- C:\Windows\system32\TsWpfWrp.exe 2014-09-13 12:39:41 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll 2014-09-13 12:39:41 ----A---- C:\Windows\system32\rpcrt4.dll 2014-09-13 12:34:13 ----A---- C:\Windows\SYSWOW64\dxgi.dll 2014-09-13 12:34:13 ----A---- C:\Windows\system32\dxgi.dll 2014-09-13 12:34:13 ----A---- C:\Windows\system32\drivers\dxgmms1.sys 2014-09-13 12:34:13 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys 2014-09-13 12:34:13 ----A---- C:\Windows\system32\d3d11.dll 2014-09-13 12:34:12 ----A---- C:\Windows\SYSWOW64\dwmcore.dll 2014-09-13 12:34:12 ----A---- C:\Windows\SYSWOW64\d3d11.dll 2014-09-13 12:34:12 ----A---- C:\Windows\system32\dwmcore.dll 2014-09-13 12:34:12 ----A---- C:\Windows\system32\cdd.dll 2014-09-13 12:33:31 ----A---- C:\Windows\system32\schedsvc.dll 2014-09-13 12:33:27 ----A---- C:\Windows\SYSWOW64\gdi32.dll 2014-09-13 12:33:27 ----A---- C:\Windows\system32\gdi32.dll 2014-09-13 12:32:54 ----A---- C:\Windows\system32\WpcWebSync.dll 2014-09-13 12:32:54 ----A---- C:\Windows\system32\WpcMon.exe 2014-09-13 12:32:54 ----A---- C:\Windows\system32\Wpc.dll 2014-09-13 12:32:53 ----A---- C:\Windows\SYSWOW64\Wpc.dll 2014-09-13 12:32:46 ----A---- C:\Windows\system32\ubpm.dll 2014-09-13 12:32:45 ----A---- C:\Windows\system32\storewuauth.dll 2014-09-13 12:29:50 ----A---- C:\Windows\system32\BulkOperationHost.exe 2014-09-13 12:29:47 ----A---- C:\Windows\SYSWOW64\d3d9.dll 2014-09-13 12:29:47 ----A---- C:\Windows\system32\IKEEXT.DLL 2014-09-13 12:29:47 ----A---- C:\Windows\system32\drivers\mrxsmb.sys 2014-09-13 12:29:47 ----A---- C:\Windows\system32\d3d9.dll 2014-09-13 12:29:46 ----A---- C:\Windows\system32\vpnike.dll 2014-09-13 12:29:46 ----A---- C:\Windows\system32\fveapi.dll 2014-09-13 12:29:46 ----A---- C:\Windows\system32\BFE.DLL 2014-09-13 12:29:45 ----A---- C:\Windows\system32\dhcpcore.dll 2014-09-13 12:29:44 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll 2014-09-13 12:29:43 ----A---- C:\Windows\SYSWOW64\framedynos.dll 2014-09-13 12:29:43 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll 2014-09-13 12:29:43 ----A---- C:\Windows\system32\framedynos.dll 2014-09-13 12:29:43 ----A---- C:\Windows\system32\drivers\agilevpn.sys 2014-09-13 12:29:43 ----A---- C:\Windows\system32\dhcpcore6.dll 2014-09-13 12:29:43 ----A---- C:\Windows\system32\bdesvc.dll 2014-09-13 12:29:42 ----A---- C:\Windows\SYSWOW64\Robocopy.exe 2014-09-13 12:29:42 ----A---- C:\Windows\SYSWOW64\ncobjapi.dll 2014-09-13 12:29:42 ----A---- C:\Windows\SYSWOW64\framedyn.dll 2014-09-13 12:29:42 ----A---- C:\Windows\system32\Robocopy.exe 2014-09-13 12:29:42 ----A---- C:\Windows\system32\ncobjapi.dll 2014-09-13 12:29:42 ----A---- C:\Windows\system32\framedyn.dll 2014-09-13 12:29:42 ----A---- C:\Windows\system32\drivers\vwifimp.sys 2014-09-13 12:29:42 ----A---- C:\Windows\system32\dhcpcsvc6.dll 2014-09-13 12:29:42 ----A---- C:\Windows\system32\dhcpcsvc.dll 2014-09-13 12:29:41 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll 2014-09-13 12:29:41 ----A---- C:\Windows\SYSWOW64\dhcpcsvc.dll 2014-09-13 12:29:41 ----A---- C:\Windows\SYSWOW64\d3d8thk.dll 2014-09-13 12:29:41 ----A---- C:\Windows\system32\srms.dat 2014-09-13 12:29:41 ----A---- C:\Windows\system32\reseteng.dll 2014-09-13 12:29:41 ----A---- C:\Windows\system32\drivers\vwififlt.sys 2014-09-13 12:29:28 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll 2014-09-13 12:29:24 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll 2014-09-13 12:29:13 ----A---- C:\Windows\system32\mfmpeg2srcsnk.dll 2014-09-13 12:29:12 ----A---- C:\Windows\SYSWOW64\mfmpeg2srcsnk.dll 2014-09-13 12:29:12 ----A---- C:\Windows\system32\wmpmde.dll 2014-09-13 12:29:12 ----A---- C:\Windows\system32\winmde.dll 2014-09-13 12:29:12 ----A---- C:\Windows\system32\services.exe 2014-09-13 12:29:11 ----A---- C:\Windows\system32\XpsGdiConverter.dll 2014-09-13 12:29:11 ----A---- C:\Windows\system32\GeofenceMonitorService.dll 2014-09-13 12:29:10 ----A---- C:\Windows\system32\Windows.Media.Streaming.dll 2014-09-13 12:29:09 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll 2014-09-13 12:29:09 ----A---- C:\Windows\SYSWOW64\winmde.dll 2014-09-13 12:29:09 ----A---- C:\Windows\SYSWOW64\Windows.Media.Streaming.dll 2014-09-13 12:29:09 ----A---- C:\Windows\SYSWOW64\GeofenceMonitorService.dll 2014-09-13 12:29:09 ----A---- C:\Windows\system32\mfsvr.dll 2014-09-13 12:29:09 ----A---- C:\Windows\system32\MDEServer.exe 2014-09-13 12:29:09 ----A---- C:\Windows\system32\drivers\Classpnp.sys 2014-09-13 12:29:08 ----A---- C:\Windows\SYSWOW64\rdpencom.dll 2014-09-13 12:29:08 ----A---- C:\Windows\SYSWOW64\mfsvr.dll 2014-09-13 12:29:08 ----A---- C:\Windows\system32\rdpencom.dll 2014-09-13 12:29:07 ----AC---- C:\Windows\system32\drivers\msiscsi.sys 2014-09-13 12:29:07 ----A---- C:\Windows\SYSWOW64\MFCaptureEngine.dll 2014-09-13 12:29:07 ----A---- C:\Windows\system32\VSSVC.exe 2014-09-13 12:29:07 ----A---- C:\Windows\system32\swprv.dll 2014-09-13 12:29:07 ----A---- C:\Windows\system32\resutils.dll 2014-09-13 12:29:07 ----A---- C:\Windows\system32\ploptin.dll 2014-09-13 12:29:07 ----A---- C:\Windows\system32\MSVideoDSP.dll 2014-09-13 12:29:07 ----A---- C:\Windows\system32\MFCaptureEngine.dll 2014-09-13 12:29:07 ----A---- C:\Windows\system32\gpapi.dll 2014-09-13 12:29:07 ----A---- C:\Windows\system32\drivers\storport.sys 2014-09-13 12:29:07 ----A---- C:\Windows\system32\drivers\fvevol.sys 2014-09-13 12:29:06 ----A---- C:\Windows\SYSWOW64\wintrust.dll 2014-09-13 12:29:06 ----A---- C:\Windows\SYSWOW64\rpchttp.dll 2014-09-13 12:29:06 ----A---- C:\Windows\SYSWOW64\MSVideoDSP.dll 2014-09-13 12:29:06 ----A---- C:\Windows\SYSWOW64\mf.dll 2014-09-13 12:29:06 ----A---- C:\Windows\SYSWOW64\gpapi.dll 2014-09-13 12:29:06 ----A---- C:\Windows\system32\wscsvc.dll 2014-09-13 12:29:06 ----A---- C:\Windows\system32\wintrust.dll 2014-09-13 12:29:06 ----A---- C:\Windows\system32\tsgqec.dll 2014-09-13 12:29:06 ----A---- C:\Windows\system32\rpchttp.dll 2014-09-13 12:29:06 ----A---- C:\Windows\system32\mfpmp.exe 2014-09-13 12:29:06 ----A---- C:\Windows\system32\mf.dll 2014-09-13 12:29:06 ----A---- C:\Windows\system32\energyprov.dll 2014-09-13 12:29:06 ----A---- C:\Windows\system32\drivers\fltMgr.sys 2014-09-13 12:29:05 ----A---- C:\Windows\SYSWOW64\tlscsp.dll 2014-09-13 12:29:05 ----A---- C:\Windows\SYSWOW64\resutils.dll 2014-09-13 12:29:05 ----A---- C:\Windows\system32\tlscsp.dll 2014-09-13 12:29:05 ----A---- C:\Windows\system32\srcore.dll 2014-09-13 12:29:05 ----A---- C:\Windows\system32\BootMenuUX.dll 2014-09-13 12:29:04 ----A---- C:\Windows\SYSWOW64\wlanhlp.dll 2014-09-13 12:29:04 ----A---- C:\Windows\SYSWOW64\tsgqec.dll 2014-09-13 12:29:04 ----A---- C:\Windows\SYSWOW64\srclient.dll 2014-09-13 12:29:04 ----A---- C:\Windows\system32\wlanhlp.dll 2014-09-13 12:29:04 ----A---- C:\Windows\system32\srclient.dll 2014-09-13 12:29:04 ----A---- C:\Windows\system32\rstrui.exe 2014-09-13 12:28:58 ----A---- C:\Windows\system32\drvinst.exe 2014-09-13 12:28:58 ----A---- C:\Windows\system32\drvcfg.exe 2014-09-13 12:28:57 ----A---- C:\Windows\SYSWOW64\drvinst.exe 2014-09-13 12:28:55 ----A---- C:\Windows\SYSWOW64\DWrite.dll 2014-09-13 12:28:55 ----A---- C:\Windows\system32\FntCache.dll 2014-09-13 12:28:55 ----A---- C:\Windows\system32\DWrite.dll 2014-09-13 12:28:48 ----A---- C:\Windows\SYSWOW64\DaOtpCredentialProvider.dll 2014-09-13 12:28:48 ----A---- C:\Windows\system32\WUDFSvc.dll 2014-09-13 12:28:48 ----A---- C:\Windows\system32\WUDFPlatform.dll 2014-09-13 12:28:48 ----A---- C:\Windows\system32\WUDFHost.exe 2014-09-13 12:28:48 ----A---- C:\Windows\system32\hal.dll 2014-09-13 12:28:48 ----A---- C:\Windows\system32\drivers\WUDFRd.sys 2014-09-13 12:28:48 ----A---- C:\Windows\system32\drivers\WUDFPf.sys 2014-09-13 12:28:48 ----A---- C:\Windows\system32\DaOtpCredentialProvider.dll 2014-09-13 12:28:38 ----A---- C:\Windows\SYSWOW64\qedit.dll 2014-09-13 12:28:38 ----A---- C:\Windows\system32\qedit.dll 2014-09-13 12:28:36 ----A---- C:\Windows\system32\wpccpl.dll 2014-09-13 12:28:36 ----A---- C:\Windows\system32\drivers\wpcfltr.sys 2014-09-13 12:28:35 ----A---- C:\Windows\system32\MDMAgent.exe 2014-09-13 12:28:17 ----A---- C:\Windows\SYSWOW64\msvcr120_clr0400.dll 2014-09-13 12:28:17 ----A---- C:\Windows\system32\msvcr120_clr0400.dll 2014-09-13 12:28:05 ----A---- C:\Windows\SYSWOW64\twinui.appcore.dll 2014-09-13 12:28:03 ----A---- C:\Windows\system32\twinui.appcore.dll 2014-09-13 12:28:02 ----A---- C:\Windows\SYSWOW64\twinapi.appcore.dll 2014-09-13 12:28:02 ----A---- C:\Windows\system32\WSReset.exe 2014-09-13 12:28:02 ----A---- C:\Windows\system32\twinapi.appcore.dll 2014-09-11 19:42:19 ----D---- C:\Users\Arno\AppData\Roaming\ClassicShell 2014-09-11 19:33:20 ----D---- C:\ProgramData\ClassicShell 2014-09-11 19:33:01 ----D---- C:\Program Files\Classic Shell 2014-09-11 19:26:08 ----D---- C:\Users\Arno\AppData\Roaming\ViStart 2014-09-11 19:17:28 ----D---- C:\Program Files (x86)\Google 2014-09-11 15:40:28 ----D---- C:\Users\Arno\AppData\Roaming\Hewlett-Packard 2014-09-11 15:40:19 ----D---- C:\Users\Arno\AppData\Roaming\hpqlog 2014-09-11 15:33:35 ----D---- C:\Users\Arno\AppData\Roaming\Synaptics 2014-09-11 15:32:16 ----D---- C:\Users\Arno\AppData\Roaming\Adobe 2014-09-11 15:31:37 ----SD---- C:\Users\Arno\AppData\Roaming\Microsoft 2014-09-11 15:31:05 ----D---- C:\Windows\SoftwareDistribution 2014-09-11 15:28:45 ----SHD---- C:\ProgramData\Sjablonen 2014-09-11 15:28:45 ----SHD---- C:\ProgramData\Menu Start 2014-09-11 15:28:45 ----SHD---- C:\ProgramData\Documenten 2014-09-11 15:28:45 ----SHD---- C:\ProgramData\Bureaublad ======List of files/folders modified in the last 3 months====== 2014-12-07 14:08:13 ----D---- C:\Windows\Prefetch 2014-12-07 14:08:03 ----RD---- C:\Program Files 2014-12-07 14:00:00 ----D---- C:\Windows\system32\sru 2014-12-07 01:06:45 ----D---- C:\Windows\AppReadiness 2014-12-06 23:34:10 ----D---- C:\Windows\Temp 2014-12-06 23:02:46 ----D---- C:\Windows\Microsoft.NET 2014-12-03 23:06:40 ----SHD---- C:\System Volume Information 2014-12-03 22:53:38 ----RSD---- C:\Windows\assembly 2014-12-03 17:59:01 ----RD---- C:\Program Files (x86) 2014-12-03 17:38:51 ----HD---- C:\Program Files\WindowsApps 2014-11-28 21:35:21 ----D---- C:\Windows\system32\config 2014-11-28 21:20:59 ----D---- C:\Windows\system32\DriverStore 2014-11-28 21:20:59 ----D---- C:\Windows\Inf 2014-11-26 20:32:09 ----D---- C:\Windows\CbsTemp 2014-11-26 20:32:08 ----D---- C:\Windows\WinSxS 2014-11-26 20:32:08 ----D---- C:\Windows\SysWOW64 2014-11-25 15:35:23 ----D---- C:\Windows\system32\drivers 2014-11-24 15:03:05 ----D---- C:\Windows\system32\NDF 2014-11-22 16:25:14 ----D---- C:\Windows\system32\catroot2 2014-11-20 13:36:21 ----RD---- C:\Windows\System32 2014-11-20 13:36:21 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-11-19 13:34:52 ----SHD---- C:\Windows\Installer 2014-11-19 13:34:52 ----HD---- C:\ProgramData 2014-11-19 13:34:51 ----D---- C:\Program Files (x86)\Common Files 2014-11-16 18:26:22 ----D---- C:\Windows\rescache 2014-11-15 16:33:38 ----D---- C:\Windows\system32\catroot 2014-11-15 01:35:56 ----D---- C:\Program Files\Windows Defender 2014-11-15 01:35:55 ----D---- C:\Windows\system32\wbem 2014-11-15 01:35:55 ----D---- C:\Program Files (x86)\Windows Defender 2014-11-15 01:35:54 ----D---- C:\Windows\system32\nl-NL 2014-11-15 01:35:53 ----D---- C:\Windows\SYSWOW64\nl-NL 2014-11-15 01:35:52 ----D---- C:\Windows\SYSWOW64\migration 2014-11-15 01:35:52 ----D---- C:\Windows\system32\migration 2014-11-15 01:35:52 ----D---- C:\Program Files (x86)\Internet Explorer 2014-11-15 01:35:51 ----D---- C:\Program Files\Internet Explorer 2014-11-13 11:48:51 ----RD---- C:\Windows\ToastData 2014-11-13 11:48:50 ----RD---- C:\Windows\ImmersiveControlPanel 2014-11-13 11:48:49 ----D---- C:\Windows\apppatch 2014-11-13 07:29:08 ----D---- C:\Windows\Tasks 2014-11-09 20:27:12 ----D---- C:\Windows\system32\Tasks 2014-11-03 17:38:49 ----D---- C:\Windows\system32\drivers\UMDF 2014-10-28 07:21:35 ----SHD---- C:\$Recycle.Bin 2014-10-28 07:20:45 ----RD---- C:\Users 2014-10-16 21:10:01 ----D---- C:\Windows\WinStore 2014-10-16 21:10:00 ----D---- C:\Windows\MediaViewer 2014-10-16 21:10:00 ----D---- C:\Windows\FileManager 2014-10-16 21:10:00 ----D---- C:\Windows\Camera 2014-10-12 16:13:34 ----A---- C:\Windows\win.ini 2014-10-12 14:56:50 ----RSD---- C:\Windows\Fonts 2014-10-12 09:36:40 ----D---- C:\Program Files\Common Files\microsoft shared 2014-10-03 14:15:10 ----D---- C:\Windows\LiveKernelReports 2014-10-02 17:01:50 ----D---- C:\Program Files (x86)\MSBuild 2014-10-02 17:01:41 ----D---- C:\Program Files (x86)\Microsoft Office 2014-10-02 17:01:26 ----D---- C:\Windows\ShellNew 2014-10-02 17:00:44 ----SD---- C:\ProgramData\Microsoft 2014-10-01 19:42:32 ----D---- C:\Program Files (x86)\Microsoft.NET 2014-10-01 19:33:18 ----D---- C:\Windows 2014-09-29 17:59:55 ----D---- C:\ProgramData\regid.1991-06.com.microsoft 2014-09-29 17:58:07 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2014-09-29 17:53:35 ----D---- C:\Program Files\MSBuild 2014-09-25 18:08:17 ----D---- C:\Program Files\Common Files 2014-09-24 13:54:49 ----D---- C:\Windows\system32\wdi 2014-09-22 14:15:08 ----D---- C:\ProgramData\CyberLink 2014-09-20 23:24:22 ----D---- C:\Windows\SYSWOW64\wbem 2014-09-20 23:24:22 ----D---- C:\Windows\SYSWOW64\setup 2014-09-20 23:24:22 ----D---- C:\Program Files\Windows Journal 2014-09-20 23:24:21 ----D---- C:\Windows\system32\drivers\nl-NL 2014-09-20 23:24:21 ----D---- C:\Windows\system32\Boot 2014-09-20 23:24:17 ----D---- C:\Windows\system32\setup 2014-09-20 23:24:17 ----D---- C:\Windows\system32\oobe 2014-09-20 23:24:15 ----D---- C:\Windows\SYSWOW64\InputMethod 2014-09-20 23:24:06 ----D---- C:\Windows\system32\en-US 2014-09-20 23:24:04 ----D---- C:\Windows\SYSWOW64\inetsrv 2014-09-20 23:24:03 ----D---- C:\Windows\system32\inetsrv 2014-09-20 13:40:53 ----D---- C:\Windows\Logs 2014-09-17 18:56:26 ----D---- C:\Program Files\Windows Photo Viewer 2014-09-17 18:56:26 ----D---- C:\Program Files\Windows Media Player 2014-09-17 18:56:26 ----D---- C:\Program Files\Windows Mail 2014-09-17 18:56:26 ----D---- C:\Program Files (x86)\Windows Photo Viewer 2014-09-17 18:56:26 ----D---- C:\Program Files (x86)\Windows Media Player 2014-09-17 18:56:26 ----D---- C:\Program Files (x86)\Windows Mail 2014-09-17 18:56:25 ----D---- C:\Windows\servicing 2014-09-17 18:56:19 ----D---- C:\Windows\SYSWOW64\winrm 2014-09-17 18:56:19 ----D---- C:\Windows\SYSWOW64\oobe 2014-09-17 18:56:19 ----D---- C:\Windows\SYSWOW64\fr-FR 2014-09-17 18:56:16 ----D---- C:\Windows\SYSWOW64\XPSViewer 2014-09-17 18:56:16 ----D---- C:\Windows\SYSWOW64\WCN 2014-09-17 18:56:16 ----D---- C:\Windows\SYSWOW64\slmgr 2014-09-17 18:56:16 ----D---- C:\Windows\SYSWOW64\Printing_Admin_Scripts 2014-09-17 18:56:16 ----D---- C:\Windows\SYSWOW64\MUI 2014-09-17 18:56:16 ----D---- C:\Windows\SYSWOW64\drivers 2014-09-17 18:56:16 ----D---- C:\Windows\SYSWOW64\Dism 2014-09-17 18:56:16 ----D---- C:\Windows\SYSWOW64\Com 2014-09-17 18:56:16 ----D---- C:\Windows\system32\winrm 2014-09-17 18:56:16 ----D---- C:\Windows\system32\migwiz 2014-09-17 18:56:16 ----D---- C:\Windows\system32\fr-FR 2014-09-17 18:56:16 ----D---- C:\Windows\PolicyDefinitions 2014-09-17 18:56:16 ----D---- C:\Windows\IME 2014-09-17 18:56:09 ----D---- C:\Windows\system32\WCN 2014-09-17 18:56:09 ----D---- C:\Windows\system32\Sysprep 2014-09-17 18:56:09 ----D---- C:\Windows\system32\slmgr 2014-09-17 18:56:09 ----D---- C:\Windows\system32\MUI 2014-09-17 18:56:09 ----D---- C:\Windows\system32\Dism 2014-09-17 18:56:08 ----D---- C:\Windows\system32\Printing_Admin_Scripts 2014-09-17 18:56:07 ----SD---- C:\Windows\system32\dsc 2014-09-17 18:56:07 ----D---- C:\Windows\system32\SystemResetPlatform 2014-09-17 18:56:07 ----D---- C:\Windows\system32\Com 2014-09-17 18:38:05 ----D---- C:\Windows\SYSWOW64\en-GB 2014-09-17 18:38:05 ----D---- C:\Windows\SYSWOW64\en 2014-09-17 18:38:05 ----D---- C:\Windows\en-GB 2014-09-17 18:38:05 ----D---- C:\Program Files\Common Files\System 2014-09-17 18:38:02 ----D---- C:\Windows\SYSWOW64\en-US 2014-09-17 18:38:02 ----D---- C:\Windows\SYSWOW64\drivers\en-US 2014-09-17 18:38:01 ----D---- C:\Windows\system32\en-GB 2014-09-17 18:38:01 ----D---- C:\Windows\system32\en 2014-09-17 18:38:01 ----D---- C:\Windows\en-US 2014-09-17 18:37:56 ----D---- C:\Windows\system32\drivers\en-US 2014-09-17 18:37:53 ----D---- C:\Windows\Help 2014-09-16 22:57:57 ----D---- C:\Windows\SYSWOW64\de-DE 2014-09-16 22:57:55 ----D---- C:\Windows\system32\de-DE 2014-09-16 15:16:17 ----D---- C:\ProgramData\McAfee 2014-09-16 15:16:16 ----D---- C:\Program Files (x86)\McAfee 2014-09-16 15:13:16 ----D---- C:\Windows\system32\SecureBootUpdates 2014-09-13 10:25:47 ----HD---- C:\Windows\ELAMBKUP 2014-09-13 10:19:56 ----D---- C:\Windows\system32\LogFiles 2014-09-11 22:39:36 ----D---- C:\ProgramData\Hewlett-Packard 2014-09-11 19:32:10 ----D---- C:\Windows\system32\restore 2014-09-11 15:32:13 ----RD---- C:\Program Files (x86)\Online Services 2014-09-11 15:31:49 ----HD---- C:\SYSTEM.SAV 2014-09-11 15:29:59 ----D---- C:\Windows\debug 2014-09-11 15:27:56 ----D---- C:\Windows\Panther ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-09-14 65776] R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-09-14 224896] R0 MBI;@oem12.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\Windows\System32\drivers\MBI.sys [2014-01-23 29464] R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-09-14 93568] R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-11-25 1041168] R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-09-14 427360] R1 CLVirtualDrive;CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [2013-03-05 91712] R1 dtsoftbus01;@oem76.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\Windows\System32\drivers\dtsoftbus01.sys [2014-09-29 283064] R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\Windows\system32\DRIVERS\vwififlt.sys [2014-04-30 71680] R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-09-14 29208] R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-09-14 79184] R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-09-14 92008] R3 clwvd;@oem21.inf,%clwvd.DeviceDesc%;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys [2014-01-28 41704] R3 GPIO;@oem14.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\Windows\System32\drivers\iaiogpioe.sys [2013-11-11 31232] R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-02-18 4222976] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-01-15 3837144] R3 IntcDAud;@oem7.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-02-18 450520] R3 iwdbus;@oem10.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2013-12-27 27032] R3 RSP2STOR;@oem16.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [2014-01-04 291544] R3 RTL8168;@oem15.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\Windows\system32\DRIVERS\Rt630x64.sys [2014-01-28 839896] R3 RTWlanE;@oem6.inf,%RTWlanE.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n PCI-E Network Adapter; C:\Windows\system32\DRIVERS\rtwlane.sys [2014-03-22 3379416] R3 SensorsSimulatorDriver;@oem77.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [2014-05-31 227840] R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-12-13 31472] R3 SynTP;@oem18.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-12-13 542448] R3 TXEIx64;@oem11.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\Windows\System32\drivers\TXEIx64.sys [2014-01-15 88592] R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB-videoapparaat (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-08-22 212224] R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\Windows\system32\DRIVERS\vwifimp.sys [2014-04-30 38912] S0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2013-11-06 632168] S3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athw8x.sys [2013-06-18 3680256] S3 dg_ssudbus;@oem29.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800] S3 intaud_WaveExtensible;@oem9.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2013-12-27 38296] S3 kx1avs;@oem44.inf,%kx1avs.SvcDesc%;Traktor Kontrol X1 Midi; C:\Windows\System32\Drivers\kx1avs.sys [2011-07-07 357968] S3 kx1usb_svc;@oem45.inf,%kx1usb.SvcDesc%;Traktor Kontrol X1; C:\Windows\System32\Drivers\kx1usb.sys [2011-07-07 70224] S3 netr28ux;@netr28ux.inf,%Generic.Service.DispName%;Stuurprogramma voor RT2870 USB Extensible draadloze LAN-kaart; C:\Windows\system32\DRIVERS\netr28ux.sys [2013-06-18 2408208] S3 SmbDrv;SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [2013-12-13 29936] S3 ssudmdm;@oem34.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080] S3 ssudserd;@oem42.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudserd.sys [2014-01-22 206080] S3 ta6avs;@oem46.inf,%ta6avs.SvcDesc%;Traktor Audio 6 WDM Audio; C:\Windows\System32\Drivers\ta6avs.sys [2012-12-18 359784] S3 ta6usb_svc;@oem47.inf,%ta6usb.SvcDesc%;Traktor Audio 6; C:\Windows\System32\Drivers\ta6usb.sys [2012-12-18 78696] S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Stuurprogramma voor USB-scanner; C:\Windows\system32\DRIVERS\usbscan.sys [2013-08-22 44544] S4 RsFx0200;RsFx0200 Driver; C:\Windows\system32\DRIVERS\RsFx0200.sys [2012-02-11 334936] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [2009-11-18 98208] R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2013-08-22 37768] R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-09-14 50344] R2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184] R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176] R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520] R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2014-01-13 92160] R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [2013-10-08 1039160] R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [2013-07-01 733696] R2 NIHardwareService;NIHardwareService; C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [2014-10-14 12332336] R2 omniserv; HP SimplePass Service; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [2014-03-28 88064] R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2014-01-08 290520] R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2012-10-19 130024] R3 MSSQLFDLauncher$SQLEXPRESS;SQL Full-text Filter Daemon Launcher (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\fdlauncher.exe [2012-02-11 49752] R3 VsEtwService120;Visual Studio ETW Event Collection Service; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [2013-10-04 87728] S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-11 116648] S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008] S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784] S3 c2wts;@%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [2014-09-29 5632] S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-02-18 279024] S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696] S3 fussvc;Windows App Certification Kit Fast User Switching Utility Service; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [2013-08-22 142336] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-11 116648] S3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2013-05-13 1129760] S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752] S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [2013-07-01 822232] S3 McAPExe;McAfee AP Service; C:\Program Files\McAfee\MSC\McAPExe.exe [] S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856] S3 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2012-06-12 190904] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696] S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 ReportServer$SQLEXPRESS;SQL Server Reporting Services (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSRS11.SQLEXPRESS\Reporting Services\ReportServer\bin\ReportingServicesService.exe [2012-06-12 2348472] S3 SQLBrowser;SQL Server Browser; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2012-02-11 269912] S3 Te.Service;Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [2013-08-22 119808] S3 w3logsvc;@%windir%\system32\inetsrv\iisres.dll,-30014; C:\Windows\system32\svchost.exe [2013-08-22 37768] S3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2013-08-22 37768] S4 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe /McCoreSvc [] S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2012-06-12 608696] -----------------EOF-----------------