Logfile of random's system information tool 1.10 (written by random/random) Run by RONALD at 2015-01-09 16:11:12 Microsoft Windows 7 Home Premium Service Pack 1 System drive C: has 464 GB (97%) free of 477 GB Total RAM: 1954 MB (53% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 16:11:22, on 9-1-2015 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v11.0 (11.00.9600.17496) Boot mode: Normal Running processes: C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesApp32.exe C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe C:\Windows\System32\igfxtray.exe C:\Windows\System32\hkcmd.exe C:\Windows\System32\igfxpers.exe C:\Program Files\Microsoft Security Client\msseces.exe C:\Program Files\EPSON Software\Event Manager\EEventManager.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Adblock Plus for IE\AdblockPlusEngine.exe C:\Windows\system32\Macromed\Flash\FlashUtil32_16_0_0_235_ActiveX.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Users\RONALD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9A5CX0WL\RSIT.exe C:\Program Files\trend micro\RONALD.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startpagina.nl/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey O4 - HKLM\..\Run: [EEventManager] "C:\Program Files\Epson Software\Event Manager\EEventManager.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) - ABBYY - C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Epson Scanner Service (EpsonScanSvc) - Seiko Epson Corporation - C:\Windows\system32\EscSvc.exe O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG Technologies - C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- End of file - 4923 bytes ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}] Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26 319488] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}] Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2014-12-16 615688] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26 319488] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2011-06-28 10127976] "IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-06-01 143640] "HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-06-01 176920] "Persistence"=C:\Windows\system32\igfxpers.exe [2011-06-01 178456] "MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2014-08-22 974432] "EEventManager"=C:\Program Files\Epson Software\Event Manager\EEventManager.exe [2011-10-31 1058400] "Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-09-23 926896] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] C:\Windows\system32\igfxdev.dll [2011-05-23 288768] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvyu"=msyuv.dll "vidc.iyuv"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "vidc.yvu9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "vidc.cvid"=iccvid.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2015-01-09 16:11:13 ----D---- C:\Program Files\trend micro 2015-01-09 16:11:12 ----D---- C:\rsit 2015-01-09 15:55:47 ----D---- C:\Program Files\Adblock Plus for IE 2015-01-09 14:41:38 ----D---- C:\Program Files\Common Files\Adobe 2015-01-09 14:41:38 ----D---- C:\Program Files\Adobe 2015-01-09 14:41:29 ----D---- C:\ProgramData\Adobe 2015-01-09 13:35:10 ----D---- C:\Users\RONALD\AppData\Roaming\Epson 2015-01-09 13:19:44 ----D---- C:\Program Files\Common Files\EPSON 2015-01-09 13:14:11 ----D---- C:\ProgramData\ABBYY 2015-01-09 13:14:11 ----D---- C:\Program Files\Common Files\ABBYY 2015-01-09 13:14:11 ----D---- C:\Program Files\ABBYY FineReader 9.0 Sprint 2015-01-09 13:12:38 ----D---- C:\ProgramData\UDL 2015-01-09 13:10:02 ----D---- C:\Program Files\EPSON Software 2015-01-09 13:08:57 ----A---- C:\Windows\system32\E_DCINST.DLL 2015-01-09 13:08:55 ----A---- C:\Windows\system32\E_FLBINE.DLL 2015-01-09 13:08:54 ----A---- C:\Windows\system32\E_FD4BINE.DLL 2015-01-09 13:08:47 ----D---- C:\ProgramData\EPSON 2015-01-09 13:08:40 ----A---- C:\Windows\system32\esw2ud.dll 2015-01-09 13:08:40 ----A---- C:\Windows\system32\escsvc.exe 2015-01-09 13:08:39 ----D---- C:\Program Files\epson 2015-01-09 12:47:46 ----A---- C:\Windows\system32\TURegOpt.exe 2015-01-09 12:47:46 ----A---- C:\Windows\system32\authuitu.dll 2015-01-09 12:47:25 ----D---- C:\Users\RONALD\AppData\Roaming\AVG 2015-01-09 12:46:55 ----D---- C:\Program Files\AVG 2015-01-09 12:41:46 ----HD---- C:\ProgramData\Common Files 2015-01-09 12:41:42 ----D---- C:\ProgramData\AVG 2015-01-09 12:14:16 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe 2015-01-09 12:14:16 ----A---- C:\Windows\system32\elshyph.dll 2015-01-09 12:14:15 ----A---- C:\Windows\system32\wininet.dll 2015-01-09 12:14:15 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe 2015-01-09 12:14:15 ----A---- C:\Windows\system32\msls31.dll 2015-01-09 12:14:15 ----A---- C:\Windows\system32\jsproxy.dll 2015-01-09 12:14:15 ----A---- C:\Windows\system32\jsIntl.dll 2015-01-09 12:14:14 ----A---- C:\Windows\system32\urlmon.dll 2015-01-09 12:14:14 ----A---- C:\Windows\system32\url.dll 2015-01-09 12:14:14 ----A---- C:\Windows\system32\msrating.dll 2015-01-09 12:14:14 ----A---- C:\Windows\system32\mshtmlmedia.dll 2015-01-09 12:14:14 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-01-09 12:14:14 ----A---- C:\Windows\system32\iesetup.dll 2015-01-09 12:14:14 ----A---- C:\Windows\system32\iertutil.dll 2015-01-09 12:14:14 ----A---- C:\Windows\system32\iernonce.dll 2015-01-09 12:14:14 ----A---- C:\Windows\system32\ieapfltr.dll 2015-01-09 12:14:14 ----A---- C:\Windows\system32\ieapfltr.dat 2015-01-09 12:14:14 ----A---- C:\Windows\system32\ie4uinit.exe 2015-01-09 12:14:14 ----A---- C:\Windows\system32\icardie.dll 2015-01-09 12:14:14 ----A---- C:\Windows\system32\dxtrans.dll 2015-01-09 12:14:14 ----A---- C:\Windows\system32\dxtmsft.dll 2015-01-09 12:14:13 ----A---- C:\Windows\system32\wextract.exe 2015-01-09 12:14:13 ----A---- C:\Windows\system32\webcheck.dll 2015-01-09 12:14:13 ----A---- C:\Windows\system32\vbscript.dll 2015-01-09 12:14:13 ----A---- C:\Windows\system32\pngfilt.dll 2015-01-09 12:14:13 ----A---- C:\Windows\system32\occache.dll 2015-01-09 12:14:13 ----A---- C:\Windows\system32\mshtmled.dll 2015-01-09 12:14:13 ----A---- C:\Windows\system32\mshtml.dll 2015-01-09 12:14:13 ----A---- C:\Windows\system32\mshta.exe 2015-01-09 12:14:13 ----A---- C:\Windows\system32\msfeeds.dll 2015-01-09 12:14:13 ----A---- C:\Windows\system32\licmgr10.dll 2015-01-09 12:14:13 ----A---- C:\Windows\system32\inseng.dll 2015-01-09 12:14:13 ----A---- C:\Windows\system32\iexpress.exe 2015-01-09 12:14:13 ----A---- C:\Windows\system32\ieUnatt.exe 2015-01-09 12:14:13 ----A---- C:\Windows\system32\ieetwcollectorres.dll 2015-01-09 12:14:13 ----A---- C:\Windows\system32\iedkcs32.dll 2015-01-09 12:14:12 ----A---- C:\Windows\system32\SetIEInstalledDate.exe 2015-01-09 12:14:12 ----A---- C:\Windows\system32\mshtmler.dll 2015-01-09 12:14:12 ----A---- C:\Windows\system32\MshtmlDac.dll 2015-01-09 12:14:12 ----A---- C:\Windows\system32\msfeedssync.exe 2015-01-09 12:14:12 ----A---- C:\Windows\system32\msfeedsbs.dll 2015-01-09 12:14:12 ----A---- C:\Windows\system32\jscript9diag.dll 2015-01-09 12:14:12 ----A---- C:\Windows\system32\jscript9.dll 2015-01-09 12:14:12 ----A---- C:\Windows\system32\jscript.dll 2015-01-09 12:14:12 ----A---- C:\Windows\system32\imgutil.dll 2015-01-09 12:14:12 ----A---- C:\Windows\system32\ieui.dll 2015-01-09 12:14:12 ----A---- C:\Windows\system32\iesysprep.dll 2015-01-09 12:14:12 ----A---- C:\Windows\system32\iepeers.dll 2015-01-09 12:14:12 ----A---- C:\Windows\system32\ieframe.dll 2015-01-09 12:14:12 ----A---- C:\Windows\system32\ieetwproxystub.dll 2015-01-09 12:14:12 ----A---- C:\Windows\system32\ieetwcollector.exe 2015-01-09 12:14:12 ----A---- C:\Windows\system32\IEAdvpack.dll 2015-01-09 12:13:35 ----A---- C:\Windows\system32\tdh.dll 2015-01-09 12:13:35 ----A---- C:\Windows\system32\smss.exe 2015-01-09 12:13:35 ----A---- C:\Windows\system32\ntoskrnl.exe 2015-01-09 12:13:35 ----A---- C:\Windows\system32\ntkrnlpa.exe 2015-01-09 12:13:35 ----A---- C:\Windows\system32\ntdll.dll 2015-01-09 12:13:35 ----A---- C:\Windows\system32\csrsrv.dll 2015-01-09 12:13:35 ----A---- C:\Windows\system32\advapi32.dll 2015-01-09 12:13:24 ----A---- C:\Windows\system32\mswsock.dll 2015-01-09 12:13:24 ----A---- C:\Windows\system32\drivers\tcpip.sys 2015-01-09 12:13:24 ----A---- C:\Windows\system32\drivers\netio.sys 2015-01-09 12:13:24 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS 2015-01-09 12:13:24 ----A---- C:\Windows\system32\drivers\afd.sys 2015-01-09 12:13:15 ----A---- C:\Windows\system32\taskhost.exe 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2015-01-09 12:12:54 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2015-01-09 12:12:54 ----A---- C:\Windows\system32\winsrv.dll 2015-01-09 12:12:54 ----A---- C:\Windows\system32\KernelBase.dll 2015-01-09 12:12:54 ----A---- C:\Windows\system32\kernel32.dll 2015-01-09 12:12:54 ----A---- C:\Windows\system32\conhost.exe 2015-01-09 12:12:53 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2015-01-09 12:12:53 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2015-01-09 12:12:53 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2015-01-09 12:12:53 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-01-09 12:12:53 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2015-01-09 12:12:53 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2015-01-09 12:12:53 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2015-01-09 12:12:53 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2015-01-09 12:11:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2015-01-09 12:11:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2015-01-09 12:11:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2015-01-09 12:11:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2015-01-09 12:11:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2015-01-09 12:11:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2015-01-09 12:11:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2015-01-09 12:11:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2015-01-09 12:11:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2015-01-09 12:11:49 ----A---- C:\Windows\system32\XpsPrint.dll 2015-01-09 12:11:49 ----A---- C:\Windows\system32\XpsGdiConverter.dll 2015-01-09 12:11:49 ----A---- C:\Windows\system32\WMPhoto.dll 2015-01-09 12:11:49 ----A---- C:\Windows\system32\WindowsCodecsExt.dll 2015-01-09 12:11:49 ----A---- C:\Windows\system32\WindowsCodecs.dll 2015-01-09 12:11:49 ----A---- C:\Windows\system32\msmpeg2vdec.dll 2015-01-09 12:11:49 ----A---- C:\Windows\system32\FntCache.dll 2015-01-09 12:11:49 ----A---- C:\Windows\system32\DWrite.dll 2015-01-09 12:11:49 ----A---- C:\Windows\system32\d3d10level9.dll 2015-01-09 12:11:49 ----A---- C:\Windows\system32\d3d10core.dll 2015-01-09 12:11:49 ----A---- C:\Windows\system32\d3d10_1core.dll 2015-01-09 12:11:49 ----A---- C:\Windows\system32\d3d10_1.dll 2015-01-09 12:11:49 ----A---- C:\Windows\system32\d3d10.dll 2015-01-09 12:11:49 ----A---- C:\Windows\system32\d2d1.dll 2015-01-09 12:11:48 ----A---- C:\Windows\system32\UIAnimation.dll 2015-01-09 12:11:48 ----A---- C:\Windows\system32\dxgi.dll 2015-01-09 12:11:48 ----A---- C:\Windows\system32\d3d10warp.dll 2015-01-09 12:10:48 ----A---- C:\Windows\system32\d3d11.dll 2015-01-09 12:05:48 ----N---- C:\Windows\system32\MpSigStub.exe 2015-01-09 12:04:33 ----SHD---- C:\Windows\Installer 2015-01-09 12:04:33 ----D---- C:\Program Files\Microsoft Security Client 2015-01-09 12:02:56 ----A---- C:\Windows\system32\rdpcore.dll 2015-01-09 12:02:56 ----A---- C:\Windows\system32\drivers\tdtcp.sys 2015-01-09 12:02:56 ----A---- C:\Windows\system32\drivers\rdpwd.sys 2015-01-09 11:59:42 ----D---- C:\Users\RONALD\AppData\Roaming\Macromedia 2015-01-09 11:59:42 ----D---- C:\Users\RONALD\AppData\Roaming\Adobe 2015-01-09 11:59:16 ----A---- C:\Windows\system32\FlashPlayerApp.exe 2015-01-09 11:59:15 ----D---- C:\Windows\system32\Macromed 2015-01-09 11:55:57 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll 2015-01-09 11:55:55 ----A---- C:\Windows\system32\log.txt 2015-01-09 11:55:53 ----D---- C:\Program Files\Common Files\postureAgent 2015-01-09 11:55:36 ----A---- C:\Windows\system32\drivers\HECI.sys 2015-01-09 11:55:35 ----D---- C:\Users\RONALD\AppData\Roaming\InstallShield 2015-01-09 11:54:45 ----D---- C:\Program Files\Common Files\Intel 2015-01-09 11:54:35 ----A---- C:\Windows\system32\TVWSetup.exe 2015-01-09 11:54:35 ----A---- C:\Windows\system32\iglhsip32.dll 2015-01-09 11:54:35 ----A---- C:\Windows\system32\igfxtray.exe 2015-01-09 11:54:35 ----A---- C:\Windows\system32\igfxsrvc.exe 2015-01-09 11:54:35 ----A---- C:\Windows\system32\igfxsrvc.dll 2015-01-09 11:54:35 ----A---- C:\Windows\system32\igfxress.dll 2015-01-09 11:54:35 ----A---- C:\Windows\system32\igfxpers.exe 2015-01-09 11:54:35 ----A---- C:\Windows\system32\igfxext.exe 2015-01-09 11:54:35 ----A---- C:\Windows\system32\igfxexps.dll 2015-01-09 11:54:35 ----A---- C:\Windows\system32\igfxdo.dll 2015-01-09 11:54:35 ----A---- C:\Windows\system32\IGFXDEVLib.dll 2015-01-09 11:54:35 ----A---- C:\Windows\system32\igfxcmrt32.dll 2015-01-09 11:54:35 ----A---- C:\Windows\system32\igdumdx32.dll 2015-01-09 11:54:35 ----A---- C:\Windows\system32\igd10umd32.dll 2015-01-09 11:54:35 ----A---- C:\Windows\system32\IccLibDll.dll 2015-01-09 11:54:35 ----A---- C:\Windows\system32\hkcmd.exe 2015-01-09 11:54:35 ----A---- C:\Windows\system32\hccutils.dll 2015-01-09 11:54:35 ----A---- C:\Windows\system32\GfxUI.exe 2015-01-09 11:54:35 ----A---- C:\Windows\system32\gfxSrvc.dll 2015-01-09 11:54:34 ----A---- C:\Windows\system32\iglhcp32.dll 2015-01-09 11:54:34 ----A---- C:\Windows\system32\igfxTMM.dll 2015-01-09 11:54:34 ----A---- C:\Windows\system32\igfxpph.dll 2015-01-09 11:54:34 ----A---- C:\Windows\system32\igfxdev.dll 2015-01-09 11:54:34 ----A---- C:\Windows\system32\igfxCoIn_v2405.dll 2015-01-09 11:54:34 ----A---- C:\Windows\system32\igdumd32.dll 2015-01-09 11:54:34 ----A---- C:\Windows\system32\ig4icd32.dll 2015-01-09 11:54:34 ----A---- C:\Windows\system32\drivers\igdkmd32.sys 2015-01-09 11:54:34 ----A---- C:\Windows\system32\d3dx10_40.dll 2015-01-09 11:52:56 ----A---- C:\Windows\system32\wups2.dll 2015-01-09 11:52:56 ----A---- C:\Windows\system32\wucltux.dll 2015-01-09 11:52:56 ----A---- C:\Windows\system32\wuaueng.dll 2015-01-09 11:52:56 ----A---- C:\Windows\system32\wuauclt.exe 2015-01-09 11:52:51 ----A---- C:\Windows\system32\wups.dll 2015-01-09 11:52:51 ----A---- C:\Windows\system32\wudriver.dll 2015-01-09 11:52:51 ----A---- C:\Windows\system32\wuapi.dll 2015-01-09 11:52:43 ----A---- C:\Windows\system32\wuwebv.dll 2015-01-09 11:52:43 ----A---- C:\Windows\system32\wuapp.exe 2015-01-09 11:51:45 ----A---- C:\Windows\system32\RtNicProp32.dll 2015-01-09 11:51:45 ----A---- C:\Windows\system32\drivers\Rt86win7.sys 2015-01-09 11:51:44 ----A---- C:\Windows\system32\RTNUninst32.dll 2015-01-09 11:50:47 ----D---- C:\Windows\system32\RTCOM 2015-01-09 11:50:33 ----A---- C:\Windows\system32\WavesLib.dll 2015-01-09 11:50:33 ----A---- C:\Windows\system32\WavesGUILib.dll 2015-01-09 11:50:33 ----A---- C:\Windows\system32\SRSWOW.dll 2015-01-09 11:50:32 ----A---- C:\Windows\system32\SRSTSXT.dll 2015-01-09 11:50:32 ----A---- C:\Windows\system32\SRSTSHD.dll 2015-01-09 11:50:32 ----A---- C:\Windows\system32\SRSHP360.dll 2015-01-09 11:50:32 ----A---- C:\Windows\system32\SFNHK.dll 2015-01-09 11:50:32 ----A---- C:\Windows\system32\SFCOM.dll 2015-01-09 11:50:32 ----A---- C:\Windows\system32\SFAPO.dll 2015-01-09 11:50:31 ----A---- C:\Windows\system32\RtkPgExt.dll 2015-01-09 11:50:30 ----A---- C:\Windows\system32\RtkCoInst.dll 2015-01-09 11:50:30 ----A---- C:\Windows\system32\RtkApoApi.dll 2015-01-09 11:50:29 ----A---- C:\Windows\system32\RtkAPO.dll 2015-01-09 11:50:26 ----A---- C:\Windows\system32\RTEEP32A.dll 2015-01-09 11:50:26 ----A---- C:\Windows\system32\RTEEL32A.dll 2015-01-09 11:50:26 ----A---- C:\Windows\system32\RTEEG32A.dll 2015-01-09 11:50:26 ----A---- C:\Windows\system32\RTEED32A.dll 2015-01-09 11:50:26 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys 2015-01-09 11:50:25 ----A---- C:\Windows\system32\RP3DHT32.dll 2015-01-09 11:50:25 ----A---- C:\Windows\system32\RP3DAA32.dll 2015-01-09 11:50:25 ----A---- C:\Windows\system32\RCoRes.dat 2015-01-09 11:50:25 ----A---- C:\Windows\system32\R4EEP32A.dll 2015-01-09 11:50:24 ----A---- C:\Windows\system32\R4EEL32A.dll 2015-01-09 11:50:24 ----A---- C:\Windows\system32\R4EEG32A.dll 2015-01-09 11:50:24 ----A---- C:\Windows\system32\R4EED32A.dll 2015-01-09 11:50:24 ----A---- C:\Windows\system32\R4EEA32A.dll 2015-01-09 11:50:24 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll 2015-01-09 11:50:23 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll 2015-01-09 11:50:23 ----A---- C:\Windows\system32\MaxxAudioEQ.dll 2015-01-09 11:50:23 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll 2015-01-09 11:50:23 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll 2015-01-09 11:50:23 ----A---- C:\Windows\system32\MaxxAudioAPO.dll 2015-01-09 11:50:22 ----A---- C:\Windows\system32\KAAPORT.dll 2015-01-09 11:50:18 ----A---- C:\Windows\system32\FMAPO.dll 2015-01-09 11:50:18 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll 2015-01-09 11:50:17 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll 2015-01-09 11:50:17 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll 2015-01-09 11:50:17 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll 2015-01-09 11:50:17 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll 2015-01-09 11:50:17 ----A---- C:\Windows\system32\DTSLimiterDLL.dll 2015-01-09 11:50:17 ----A---- C:\Windows\system32\DTSLFXAPO.dll 2015-01-09 11:50:17 ----A---- C:\Windows\system32\DTSGFXAPONS.dll 2015-01-09 11:50:17 ----A---- C:\Windows\system32\DTSGFXAPO.dll 2015-01-09 11:50:17 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll 2015-01-09 11:50:16 ----A---- C:\Windows\system32\DTSBoostDLL.dll 2015-01-09 11:50:16 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll 2015-01-09 11:50:15 ----HD---- C:\Program Files\InstallShield Installation Information 2015-01-09 11:50:15 ----D---- C:\Program Files\Realtek 2015-01-09 11:50:15 ----A---- C:\Windows\system32\AERTARen.dll 2015-01-09 11:50:15 ----A---- C:\Windows\system32\AERTACap.dll 2015-01-09 11:50:07 ----HD---- C:\Program Files\Temp 2015-01-09 11:50:06 ----R---- C:\Windows\RtlExUpd.dll 2015-01-09 11:50:04 ----D---- C:\Program Files\Common Files\InstallShield 2015-01-09 11:49:19 ----RA---- C:\Windows\system32\CSVer.dll 2015-01-09 11:49:19 ----D---- C:\Program Files\Intel 2015-01-09 11:48:29 ----A---- C:\Windows\Language_trs.ini 2015-01-09 11:48:24 ----A---- C:\Windows\Ascd_tmp.ini 2015-01-09 10:56:46 ----D---- C:\Users\RONALD\AppData\Roaming\Identities 2015-01-09 10:56:34 ----SD---- C:\Users\RONALD\AppData\Roaming\Microsoft 2015-01-09 10:56:34 ----D---- C:\Users\RONALD\AppData\Roaming\Media Center Programs 2015-01-09 10:56:28 ----SHD---- C:\Recovery 2015-01-09 10:56:28 ----SHD---- C:\ProgramData\Sjablonen 2015-01-09 10:56:28 ----SHD---- C:\ProgramData\Menu Start 2015-01-09 10:56:28 ----SHD---- C:\ProgramData\Favorieten 2015-01-09 10:56:28 ----SHD---- C:\ProgramData\Documenten 2015-01-09 10:56:28 ----SHD---- C:\ProgramData\Bureaublad 2015-01-09 10:56:24 ----D---- C:\Windows\SoftwareDistribution 2015-01-09 10:52:19 ----D---- C:\Windows\Prefetch 2015-01-09 10:51:42 ----SHD---- C:\System Volume Information 2015-01-09 10:51:42 ----ASH---- C:\pagefile.sys 2015-01-09 10:51:42 ----ASH---- C:\hiberfil.sys 2015-01-09 10:51:13 ----D---- C:\Windows\Panther ======List of files/folders modified in the last 1 month====== 2015-01-09 16:11:13 ----RD---- C:\Program Files 2015-01-09 16:11:07 ----D---- C:\Windows\Temp 2015-01-09 14:52:02 ----D---- C:\Windows\system32\config 2015-01-09 14:41:55 ----D---- C:\Windows\winsxs 2015-01-09 14:41:42 ----D---- C:\Windows\System32 2015-01-09 14:41:38 ----D---- C:\Program Files\Common Files 2015-01-09 14:41:29 ----HD---- C:\ProgramData 2015-01-09 14:33:14 ----D---- C:\Windows\inf 2015-01-09 14:33:14 ----A---- C:\Windows\system32\PerfStringBackup.INI 2015-01-09 13:55:39 ----D---- C:\Windows 2015-01-09 13:55:34 ----D---- C:\Windows\debug 2015-01-09 13:45:55 ----D---- C:\Windows\Logs 2015-01-09 13:17:58 ----D---- C:\Windows\system32\drivers 2015-01-09 13:13:01 ----D---- C:\Windows\system32\catroot2 2015-01-09 13:11:15 ----D---- C:\Program Files\Common Files\microsoft shared 2015-01-09 13:09:49 ----D---- C:\Windows\system32\catroot 2015-01-09 13:09:46 ----D---- C:\Windows\system32\DriverStore 2015-01-09 13:08:39 ----D---- C:\Windows\twain_32 2015-01-09 13:07:05 ----D---- C:\Windows\system32\FxsTmp 2015-01-09 13:00:09 ----SD---- C:\ProgramData\Microsoft 2015-01-09 13:00:08 ----D---- C:\Windows\system32\drivers\UMDF 2015-01-09 12:16:43 ----D---- C:\Windows\system32\nl-NL 2015-01-09 12:16:43 ----D---- C:\Program Files\Internet Explorer 2015-01-09 12:16:42 ----D---- C:\Windows\system32\wbem 2015-01-09 12:16:42 ----D---- C:\Windows\system32\migration 2015-01-09 12:16:42 ----D---- C:\Windows\system32\en-US 2015-01-09 12:16:42 ----D---- C:\Windows\PolicyDefinitions 2015-01-09 12:16:41 ----RSD---- C:\Windows\Fonts 2015-01-09 12:16:40 ----D---- C:\Windows\system32\zh-TW 2015-01-09 12:16:40 ----D---- C:\Windows\system32\zh-HK 2015-01-09 12:16:40 ----D---- C:\Windows\system32\zh-CN 2015-01-09 12:16:40 ----D---- C:\Windows\system32\tr-TR 2015-01-09 12:16:40 ----D---- C:\Windows\system32\sv-SE 2015-01-09 12:16:40 ----D---- C:\Windows\system32\ru-RU 2015-01-09 12:16:40 ----D---- C:\Windows\system32\pt-PT 2015-01-09 12:16:40 ----D---- C:\Windows\system32\pt-BR 2015-01-09 12:16:40 ----D---- C:\Windows\system32\pl-PL 2015-01-09 12:16:40 ----D---- C:\Windows\system32\nb-NO 2015-01-09 12:16:40 ----D---- C:\Windows\system32\ko-KR 2015-01-09 12:16:40 ----D---- C:\Windows\system32\ja-JP 2015-01-09 12:16:40 ----D---- C:\Windows\system32\it-IT 2015-01-09 12:16:40 ----D---- C:\Windows\system32\hu-HU 2015-01-09 12:16:40 ----D---- C:\Windows\system32\fr-FR 2015-01-09 12:16:40 ----D---- C:\Windows\system32\fi-FI 2015-01-09 12:16:40 ----D---- C:\Windows\system32\es-ES 2015-01-09 12:16:40 ----D---- C:\Windows\system32\el-GR 2015-01-09 12:16:40 ----D---- C:\Windows\system32\de-DE 2015-01-09 12:16:40 ----D---- C:\Windows\system32\da-DK 2015-01-09 12:16:40 ----D---- C:\Windows\system32\cs-CZ 2015-01-09 11:59:42 ----D---- C:\Windows\Downloaded Program Files 2015-01-09 11:59:41 ----D---- C:\Windows\Tasks 2015-01-09 11:59:41 ----D---- C:\Windows\system32\Tasks 2015-01-09 11:53:30 ----D---- C:\Windows\system32\CodeIntegrity 2015-01-09 11:51:32 ----D---- C:\Windows\system32\restore 2015-01-09 11:48:00 ----D---- C:\Windows\system32\NDF 2015-01-09 11:46:09 ----D---- C:\Windows\Microsoft.NET 2015-01-09 11:46:06 ----RSD---- C:\Windows\assembly 2015-01-09 10:56:45 ----SHD---- C:\$Recycle.Bin 2015-01-09 10:56:33 ----RD---- C:\Users 2015-01-09 10:56:33 ----D---- C:\Windows\rescache 2015-01-09 10:56:28 ----D---- C:\Program Files\Windows NT 2015-01-09 10:53:50 ----D---- C:\Windows\system32\sysprep ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-07-17 231800] R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440] R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-07-17 95920] R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704] R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2011-05-23 10540032] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2011-06-28 3525352] R3 MEI;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECI.sys [2010-10-19 41088] R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856] R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver32.sys [2014-11-24 12320] S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720] S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888] S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304] S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224] S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264] S3 usbscan;Stuurprogramma voor USB-scanner; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840] S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328] S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 ABBYY.Licensing.FineReader.Sprint.9.0;ABBYY FineReader 9.0 Sprint Licensing Service; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [2009-05-14 759048] R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-09-23 65192] R2 EPSON_PM_RPCV4_04;EPSON V3 Service4(04); C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [2012-02-21 142432] R2 EpsonScanSvc;Epson Scanner Service; C:\Windows\system32\EscSvc.exe [2011-12-12 122000] R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-20 325656] R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-08-22 22192] R2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service; C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe [2014-11-24 2165560] R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-20 2656280] R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2014-08-22 288120] S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-01-09 102912] -----------------EOF-----------------