Logfile of random's system information tool 1.10 (written by random/random) Run by sander at 2015-01-10 12:56:31 Microsoft Windows 8.1 System drive C: has 800 GB (86%) free of 935 GB Total RAM: 8072 MB (59% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 12:56:42, on 10/01/2015 Platform: Unknown Windows (WinNT 6.02.1008) MSIE: Internet Explorer v11.0 (11.00.9600.17344) Boot mode: Normal Running processes: C:\Program Files (x86)\Norton Security with Backup\Engine\22.1.0.9\NSBU.exe C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe C:\Users\sander\AppData\Local\Akamai\netsession_win.exe C:\Users\sander\AppData\Local\Akamai\netsession_win.exe C:\Program Files (x86)\Elex-tech\YAC\iSafeTray.exe C:\Program Files (x86)\Elex-tech\YAC\iDesk.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_235.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_235.exe C:\Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\Program Files (x86)\iTunes\iTunes.exe C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe C:\Windows\SysWOW64\msdt.exe C:\Windows\SysWOW64\msdt.exe C:\Windows\SysWOW64\sdiagnhost.exe C:\Windows\SysWOW64\sdiagnhost.exe C:\Program Files\trend micro\sander.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com/?pc=ACJB R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe, O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Security with Backup\Engine\22.1.0.9\coIEPlg.dll O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security with Backup\Engine\22.1.0.9\coIEPlg.dll O4 - HKLM\..\Run: [BacKGround Agent] C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe O4 - HKLM\..\Run: [abDocsDllLoader] C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\sander\AppData\Local\Akamai\netsession_win.exe" O4 - HKCU\..\Run: [uTorrent] "C:\Users\sander\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe" O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - (no file) O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: YAC Service (iSafeService) - Elex do Brasil Participações Ltda - C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: Launch Manager Service (LMSvc) - Acer Incorporate - C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe O23 - Service: Norton Security with Backup (NSBU) - Symantec Corporation - C:\Program Files (x86)\Norton Security with Backup\Engine\22.1.0.9\NSBU.exe O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: Quick Access Service (QASvc) - Acer Incorporate - C:\Program Files\Acer\Acer Quick Access\QASvc.exe O23 - Service: Quick Access RadioMgr Service (RMSvc) - Acer Incorporate - C:\Program Files\Acer\Acer Quick Access\RMSvc.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) -- End of file - 10086 bytes ======Listing Processes====== wininit.exe C:\Windows\system32\lsass.exe winlogon.exe c:\windows\system32\svchost.exe -k dcomlaunch c:\windows\system32\svchost.exe -k rpcss "C:\Windows\system32\nvvsvc.exe" "C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe" C:\Windows\system32\nvvsvc.exe -session -first c:\windows\system32\svchost.exe -k localservicenetworkrestricted c:\windows\system32\svchost.exe -k netsvcs c:\windows\system32\svchost.exe -k localservice c:\windows\system32\svchost.exe -k localsystemnetworkrestricted c:\windows\system32\svchost.exe -k networkservice C:\Windows\System32\spoolsv.exe c:\windows\system32\svchost.exe -k localservicenonetwork "C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe" "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe" "C:\Program Files\Bonjour\mDNSResponder.exe" "C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe" "C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe" dashost.exe {b7707013-e805-4635-95d0b0d3a735d7cf} "C:\Program Files\Intel\iCLS Client\HeciServer.exe" "C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe" "C:\Program Files (x86)\Norton Security with Backup\Engine\22.1.0.9\NSBU.exe" /s "NSBU" /m "C:\Program Files (x86)\Norton Security with Backup\Engine\22.1.0.9\diMaster.dll" /prefetch:1 "C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe" "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" c:\windows\system32\svchost.exe -k imgsvc c:\windows\system32\svchost.exe -k localserviceandnoimpersonation c:\windows\system32\svchost.exe -k networkservicenetworkrestricted "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 5ac8a87d-6f3c-429e-a670-fd8b070f4089 1 \??\C:\Windows\system32\conhost.exe 0x4 "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp \??\C:\Windows\system32\conhost.exe 0x4 "C:\Program Files (x86)\Norton Security with Backup\Engine\22.1.0.9\NSBU.exe" /c /a /s UserSession2 taskhostex.exe "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" C:\Windows\Explorer.EXE "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" C:\Windows\system32\SearchIndexer.exe /Embedding "C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1 "C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe" C:\Windows\system32\wbem\unsecapp.exe -Embedding C:\Windows\system32\wbem\wmiprvse.exe "C:\Program Files\Acer\Acer Quick Access\QASvc.exe" "C:\Program Files\Acer\Acer Launch Manager\LMTray.exe" "C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE" "C:\Program Files\Acer\Acer Quick Access\RMSvc.exe" "C:\Program Files\Acer\Acer Quick Access\QAEvent.exe" C:\Windows\system32\wbem\unsecapp.exe -Embedding "C:\Program Files\Acer\Acer Quick Access\QAMsg.exe" "C:\Program Files\Acer\Acer Quick Access\QuickAccess.exe" -hide "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe" "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe" "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4 "C:\Windows\System32\igfxtray.exe" "C:\Windows\system32\igfxsrvc.exe" -Embedding "C:\Windows\System32\hkcmd.exe" "C:\Windows\System32\igfxpers.exe" "C:\Program Files\Logitech Gaming Software\LCore.exe" /minimized "C:\Users\sander\AppData\Local\Akamai\netsession_win.exe" "C:/Users/sander/AppData/Local/Akamai/netsession_win.exe" --client "C:\Program Files\Dolby Digital Plus\ddp.exe" -autostart "C:\Program Files\Acer\Acer Power Management\ePowerTray.exe" "C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe" "C:\Windows\system32\igfxext.exe" -Embedding C:\Windows\system32\wbem\unsecapp.exe -Embedding "C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe" "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe" "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe" "C:\Program Files (x86)\Nero\Update\NASvc.exe" "C:\Program Files\Windows Media Player\wmpnetwk.exe" c:\windows\system32\svchost.exe -k localservicepeernet "C:\Program Files (x86)\Elex-tech\YAC\iSafeTray.exe" "C:\Program Files (x86)\Elex-tech\YAC\iDesk.exe" -itraymenu "C:\Windows\system32\wwahost.exe" -ServerName:Microsoft.WindowsLive.Calendar.wwa C:\Windows\System32\RuntimeBroker.exe -Embedding C:\Windows\System32\UserAccountBroker.exe -Embedding "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -osint -url "http://combatarms.nexoneu.com/" "dwm.exe" "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" "C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=10020.12c4c280.675492676 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 10020 "\\.\pipe\gecko-crash-server-pipe.10020" plugin "C:\Windows\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_16_0_0_235.exe" --proxy-stub-channel=Flash9912.65326188.9601 --host-broker-channel=Flash9912.65326188.31803 --host-pid=9912 --host-npapi-version=27 --plugin-path="C:\Windows\SYSTEM32\Macromed\Flash\NPSWF32_16_0_0_235.dll" "C:\Windows\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_16_0_0_235.exe" --channel=8572.00CCF880.1959145893 --proxy-stub-channel=Flash9912.65326188.9601 --plugin-path="C:\Windows\SYSTEM32\Macromed\Flash\NPSWF32_16_0_0_235.dll" --host-npapi-version=27 --type=renderer "C:\Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe" "C:\Program Files (x86)\iTunes\iTunes.exe" -Embedding "C:\Program Files\iPod\bin\iPodService.exe" "C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe" --pipe \\.\pipe\3042017052761058410438744 --parentPipe \??\C:\Windows\system32\conhost.exe 0x4 "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe" \??\C:\Windows\system32\conhost.exe 0x4 "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" -Embedding "C:\Windows\system32\mspaint.exe" c:\windows\system32\svchost.exe -k swprv C:\Windows\system32\wbem\wmiprvse.exe "C:\Windows\system32\msdt.exe" /cab "C:\Users\sander\AppData\Local\Temp\WindowsUpdateDiagnostic.diagcab" C:\Windows\servicing\TrustedInstaller.exe C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17477_none_fa2b7d3b9b36c7b4\TiWorker.exe -Embedding c:\windows\system32\svchost.exe -k wersvcgroup "C:\Windows\SysWOW64\msdt.exe" -cab "C:\Users\sander\AppData\Local\Temp\WindowsUpdateDiagnostic.diagcab" -elevated yes C:\Windows\SysWOW64\sdiagnhost.exe -Embedding \??\C:\Windows\system32\conhost.exe 0x4 C:\Windows\SysWOW64\sdiagnhost.exe -Embedding \??\C:\Windows\system32\conhost.exe 0x4 C:\Windows\system32\wbem\WmiApSrv.exe "C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe94_ Global\UsGthrCtrlFltPipeMssGthrPipe94 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "C:\Windows\system32\SearchFilterHost.exe" 0 580 584 592 65536 588 "C:\Users\sander\Downloads\RSITx64.exe" "C:\Users\sander\Downloads\RSITx64.exe" ======Scheduled tasks folder====== C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler =========Mozilla firefox========= ProfilePath - C:\Users\sander\AppData\Roaming\Mozilla\Firefox\Profiles\n5a3ep2a.default [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 16.0.0.235 Plugin "Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=] "Description"=iTunes Detector Plug-in "Path"= [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=1.0] "Description"= "Path"=C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5] "Description"=Intel IPT WebApi plugin "Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater] "Description"=This plugin updates Intel WebAPI component "Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@ngm.nexoneu.com/NxGame] "Description"=Nexon Game Controller "Path"=C:\ProgramData\NexonEU\NGM\npNxGameEU.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3] "Description"=Google Update "Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9] "Description"=Google Update "Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 16.0.0.235 Plugin "Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}] Norton Identity Protection - C:\Program Files (x86)\Norton Security with Backup\Engine64\22.1.0.9\coIEPlg.dll [2014-12-05 886584] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}] Norton Identity Protection - C:\Program Files (x86)\Norton Security with Backup\Engine\22.1.0.9\coIEPlg.dll [2014-12-05 664888] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Security with Backup\Engine64\22.1.0.9\coIEPlg.dll [2014-12-05 886584] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar] {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Security with Backup\Engine\22.1.0.9\coIEPlg.dll [2014-12-05 664888] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-08-27 13647576] "RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-08-07 1321688] "NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-11-06 2464072] "ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2014-11-06 2800296] "HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2014-10-31 771056] "Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2014-10-14 12697368] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run] "BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2013-09-07 132736] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Akamai NetSession Interface"=C:\Users\sander\AppData\Local\Akamai\netsession_win.exe [2014-10-29 4673432] "uTorrent"=C:\Users\sander\AppData\Roaming\uTorrent\uTorrent.exe [2014-11-26 1385808] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "BacKGround Agent"=C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [2014-11-17 62208] "abDocsDllLoader"=C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe [2014-11-20 90368] "iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-10-15 157480] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run] "BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2013-09-07 132736] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\Windows\system32\nvinitx.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] C:\Windows\system32\igfxdev.dll [2014-10-31 624640] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "PromptOnSecureDesktop"=0 "ConsentPromptBehaviorAdmin"=0 "EnableLinkedConnections"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=221 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "VIDC.YUY2"=msyuv.dll "vidc.i420"=iyuv_32.dll "msacm.msgsm610"=msgsm32.acm "msacm.msg711"=msg711.acm "VIDC.YVYU"=msyuv.dll "VIDC.YVU9"=tsbyuv.dll "wavemapper"=msacm32.drv "midimapper"=midimap.dll "VIDC.UYVY"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.mrle"=msrle32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msadpcm"=msadp32.acm "vidc.msvc"=msvidc32.dll "MSVideo8"=VfWWDM32.dll "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave4"=wdmaud.drv "mixer4"=wdmaud.drv "midi4"=wdmaud.drv "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2015-01-10 12:56:31 ----D---- C:\rsit 2015-01-04 19:07:08 ----A---- C:\Windows\system32\drivers\iSafeNetFilter.sys 2015-01-04 19:07:08 ----A---- C:\Windows\system32\drivers\iSafeKrnlBoot.sys 2015-01-04 19:07:07 ----D---- C:\Windows\system32\log 2015-01-04 19:06:47 ----D---- C:\Users\sander\AppData\Roaming\Elex-tech 2015-01-04 19:06:47 ----D---- C:\Program Files (x86)\Elex-tech 2015-01-04 19:06:02 ----D---- C:\Users\sander\AppData\Roaming\eCyber 2014-12-31 18:56:54 ----D---- C:\Users\sander\AppData\Roaming\WinRAR 2014-12-31 18:56:38 ----D---- C:\Program Files\WinRAR 2014-12-24 12:58:07 ----SHD---- C:\Config.Msi 2014-12-24 12:55:39 ----D---- C:\Users\sander\AppData\Roaming\WildTangent 2014-12-24 11:13:09 ----D---- C:\Users\sander\AppData\Roaming\Apple Computer 2014-12-24 11:13:03 ----A---- C:\Windows\system32\drivers\GEARAspiWDM.sys 2014-12-24 11:13:02 ----DC---- C:\Windows\system32\DRVSTORE 2014-12-24 11:12:17 ----D---- C:\Program Files\iPod 2014-12-24 11:12:16 ----D---- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 2014-12-24 11:12:16 ----D---- C:\ProgramData\Apple Computer 2014-12-24 11:12:16 ----D---- C:\Program Files\iTunes 2014-12-24 11:12:16 ----D---- C:\Program Files (x86)\iTunes 2014-12-24 11:11:25 ----D---- C:\Program Files (x86)\Apple Software Update 2014-12-24 11:11:17 ----D---- C:\Program Files\Common Files\Apple 2014-12-20 19:04:21 ----A---- C:\Windows\SYSWOW64\certcli.dll 2014-12-20 19:04:21 ----A---- C:\Windows\SYSWOW64\adtschema.dll 2014-12-20 19:04:21 ----A---- C:\Windows\system32\rdpcorets.dll 2014-12-20 19:04:21 ----A---- C:\Windows\system32\lsasrv.dll 2014-12-20 19:04:21 ----A---- C:\Windows\system32\drivers\ksecpkg.sys 2014-12-20 19:04:21 ----A---- C:\Windows\system32\drivers\cng.sys 2014-12-20 19:04:21 ----A---- C:\Windows\system32\certcli.dll 2014-12-20 19:04:21 ----A---- C:\Windows\system32\adtschema.dll 2014-12-20 19:04:20 ----A---- C:\Windows\SYSWOW64\msaudite.dll 2014-12-20 19:04:20 ----A---- C:\Windows\system32\rfxvmt.dll 2014-12-20 19:04:20 ----A---- C:\Windows\system32\rdpudd.dll 2014-12-20 19:04:20 ----A---- C:\Windows\system32\msaudite.dll 2014-12-20 19:04:20 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys 2014-12-20 19:03:38 ----A---- C:\Windows\SYSWOW64\oleaut32.dll 2014-12-20 19:03:38 ----A---- C:\Windows\SYSWOW64\msxml3.dll 2014-12-20 19:03:38 ----A---- C:\Windows\system32\oleaut32.dll 2014-12-20 19:03:37 ----AC---- C:\Windows\system32\drivers\sdbus.sys 2014-12-20 19:03:37 ----AC---- C:\Windows\system32\drivers\intelpep.sys 2014-12-20 19:03:37 ----AC---- C:\Windows\system32\drivers\dumpsd.sys 2014-12-20 19:03:37 ----A---- C:\Windows\system32\msxml3.dll 2014-12-20 19:03:37 ----A---- C:\Windows\system32\drivers\pdc.sys 2014-12-20 19:03:36 ----A---- C:\Windows\SYSWOW64\packager.dll 2014-12-20 19:03:36 ----A---- C:\Windows\system32\packager.dll 2014-12-20 19:03:35 ----A---- C:\Windows\system32\win32k.sys 2014-12-20 19:03:34 ----A---- C:\Windows\SYSWOW64\MrmCoreR.dll 2014-12-20 19:03:34 ----A---- C:\Windows\system32\MrmCoreR.dll 2014-12-20 19:03:34 ----A---- C:\Windows\system32\audiosrv.dll 2014-12-20 19:03:33 ----A---- C:\Windows\SYSWOW64\AudioSes.dll 2014-12-20 19:03:33 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll 2014-12-20 19:03:33 ----A---- C:\Windows\SYSWOW64\AudioEng.dll 2014-12-20 19:03:33 ----A---- C:\Windows\system32\EncDump.dll 2014-12-20 19:03:33 ----A---- C:\Windows\system32\AudioSes.dll 2014-12-20 19:03:33 ----A---- C:\Windows\system32\AUDIOKSE.dll 2014-12-20 19:03:33 ----A---- C:\Windows\system32\AudioEng.dll 2014-12-20 19:03:33 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll 2014-12-20 19:03:33 ----A---- C:\Windows\system32\audiodg.exe 2014-12-20 19:03:32 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll 2014-12-20 19:03:32 ----A---- C:\Windows\system32\WindowsCodecs.dll 2014-12-20 19:03:30 ----A---- C:\Windows\SYSWOW64\poqexec.exe 2014-12-20 19:03:30 ----A---- C:\Windows\system32\poqexec.exe 2014-12-20 19:01:48 ----A---- C:\Windows\SYSWOW64\pku2u.dll 2014-12-20 19:01:48 ----A---- C:\Windows\SYSWOW64\kerberos.dll 2014-12-20 19:01:48 ----A---- C:\Windows\system32\pku2u.dll 2014-12-20 19:01:48 ----A---- C:\Windows\system32\kerberos.dll 2014-12-20 18:46:30 ----D---- C:\ProgramData\IObit 2014-12-20 18:46:30 ----D---- C:\Program Files (x86)\IObit 2014-12-20 18:36:17 ----D---- C:\Program Files (x86)\Intel Driver Update Utility ======List of files/folders modified in the last 1 month====== 2015-01-10 12:56:41 ----D---- C:\Program Files\trend micro 2015-01-10 12:56:17 ----D---- C:\Users\sander\AppData\Roaming\uTorrent 2015-01-10 12:52:38 ----D---- C:\Windows\system32\catroot 2015-01-10 12:50:42 ----D---- C:\Windows\Temp 2015-01-10 12:47:18 ----D---- C:\Windows\system32\MRT 2015-01-10 12:47:02 ----D---- C:\Windows\WinSxS 2015-01-10 12:46:35 ----D---- C:\Program Files\Internet Explorer 2015-01-10 12:45:17 ----SHD---- C:\System Volume Information 2015-01-10 12:43:19 ----D---- C:\Windows\system32\catroot2 2015-01-10 12:42:26 ----D---- C:\Windows\system32\DriverStore 2015-01-10 12:36:53 ----D---- C:\Windows\system32\config 2015-01-10 12:09:19 ----D---- C:\Windows\CbsTemp 2015-01-10 12:02:01 ----D---- C:\Windows\system32\sru 2015-01-10 11:51:37 ----D---- C:\Windows\Microsoft.NET 2015-01-10 11:12:52 ----RD---- C:\Windows\System32 2015-01-10 11:12:52 ----A---- C:\Windows\system32\PerfStringBackup.INI 2015-01-10 11:12:48 ----D---- C:\Windows\Inf 2015-01-10 00:13:24 ----D---- C:\Windows\system32\drivers 2015-01-08 19:25:46 ----D---- C:\Windows\AppReadiness 2015-01-08 19:25:45 ----HD---- C:\Program Files\WindowsApps 2015-01-04 20:38:11 ----D---- C:\Windows\Prefetch 2015-01-04 19:57:44 ----D---- C:\Windows\Minidump 2015-01-04 19:06:47 ----D---- C:\Program Files (x86) 2015-01-02 20:33:20 ----D---- C:\Windows\rescache 2015-01-02 19:33:03 ----D---- C:\Windows 2014-12-31 18:56:38 ----RD---- C:\Program Files 2014-12-30 23:08:47 ----D---- C:\Program Files\Google 2014-12-30 23:08:47 ----D---- C:\Program Files (x86)\Google 2014-12-30 23:08:44 ----HD---- C:\ProgramData 2014-12-26 22:58:48 ----D---- C:\Windows\system32\NDF 2014-12-26 12:52:08 ----RSD---- C:\Windows\assembly 2014-12-24 23:22:32 ----D---- C:\Windows\SoftwareDistribution 2014-12-24 13:00:20 ----D---- C:\Users\sander\AppData\Roaming\ObviousIdea 2014-12-24 12:59:57 ----SHD---- C:\Windows\Installer 2014-12-24 12:58:20 ----D---- C:\Program Files (x86)\BlueStacks 2014-12-24 12:58:14 ----D---- C:\ProgramData\BlueStacks 2014-12-24 12:56:13 ----D---- C:\Program Files (x86)\WildTangent Games 2014-12-24 12:55:43 ----D---- C:\ProgramData\WildTangent 2014-12-24 11:13:04 ----D---- C:\Windows\SysWOW64 2014-12-24 11:11:27 ----D---- C:\Windows\system32\Tasks 2014-12-24 11:11:21 ----D---- C:\ProgramData\Apple 2014-12-24 11:11:17 ----D---- C:\Program Files\Common Files 2014-12-24 11:10:58 ----D---- C:\Program Files (x86)\Common Files 2014-12-20 23:14:26 ----D---- C:\Windows\ELAMBKUP 2014-12-20 19:12:56 ----D---- C:\Windows\system32\drivers\NSBUx64 2014-12-20 19:09:23 ----D---- C:\Windows\SYSWOW64\nl-NL 2014-12-20 19:09:23 ----D---- C:\Windows\SYSWOW64\en-US 2014-12-20 19:09:23 ----D---- C:\Windows\system32\nl-NL 2014-12-20 19:09:23 ----D---- C:\Windows\system32\en-US 2014-12-20 18:36:08 ----D---- C:\ProgramData\Package Cache 2014-12-17 13:19:12 ----D---- C:\Program Files (x86)\Acer 2014-12-13 00:09:20 ----D---- C:\Windows\MediaViewer 2014-12-12 13:45:09 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware 2014-12-12 13:37:40 ----D---- C:\ProgramData\BlueStacksSetup 2014-12-12 13:37:07 ----D---- C:\Windows\debug 2014-12-12 10:20:29 ----D---- C:\Nexon ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2013-08-07 644968] R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2014-11-04 32576] R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NSBUx64\1601000.009\SYMDS64.SYS [2014-09-09 490712] R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NSBUx64\1601000.009\SYMEFA64.SYS [2014-09-09 1151704] R1 BHDrvx64;BHDrvx64; \??\C:\Program Files (x86)\Norton Security with Backup\NortonData\22.0.0.110\Definitions\BASHDefs\20141209.001\BHDrvx64.sys [2014-11-07 1587416] R1 ccSet_NSBU;NSBU Settings Manager; C:\Windows\system32\drivers\NSBUx64\1601000.009\ccSetx64.sys [2014-09-09 165080] R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2014-12-20 487216] R1 IDSVia64;IDSVia64; \??\C:\Program Files (x86)\Norton Security with Backup\NortonData\22.0.0.110\Definitions\IPSDefs\20150102.001\IDSvia64.sys [2014-12-05 637656] R1 iSafeKrnl;YAC Mini-Filter Driver; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnl.sys [2014-12-29 249000] R1 iSafeKrnlKit;YAC Kit Driver; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlKit.sys [2014-12-29 99496] R1 iSafeKrnlR3;YAC Ring3 Driver; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlR3.sys [2014-12-29 93352] R1 iSafeNetFilter;YAC NDIS Driver; C:\Windows\system32\DRIVERS\iSafeNetFilter.sys [2014-12-12 52392] R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NSBUx64\1601000.009\SRTSPX64.SYS [2014-09-09 42200] R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NSBUx64\1601000.009\Ironx64.SYS [2014-09-09 271576] R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\System32\Drivers\NSBUx64\1601000.009\SYMNETS.SYS [2014-09-09 565464] R3 AthBTPort;@oem21.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys [2013-09-07 89800] R3 athr;@oem17.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athwbx.sys [2013-08-16 3859968] R3 BTATH_A2DP;@oem20.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys [2013-09-07 338120] R3 btath_avdt;@oem20.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\Windows\system32\drivers\btath_avdt.sys [2013-09-07 116424] R3 BTATH_BUS;@oem18.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\Windows\System32\drivers\btath_bus.sys [2013-09-07 34384] R3 BTATH_HCRP;@oem23.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\Windows\System32\drivers\btath_hcrp.sys [2013-09-07 179432] R3 BTATH_LWFLT;@oem25.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys [2013-09-07 77464] R3 BTATH_RCP;@oem27.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\Windows\System32\drivers\btath_rcp.sys [2013-09-07 137928] R3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2013-09-07 594120] R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator-service; C:\Windows\System32\drivers\BthEnum.sys [2013-08-22 53248] R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\Windows\System32\drivers\BthLEEnum.sys [2013-12-04 226304] R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2013-08-22 118272] R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;USB-stuurprogramma voor Bluetooth-radio; C:\Windows\System32\Drivers\BTHUSB.sys [2014-01-31 81920] R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2014-12-20 142640] R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-10-03 33240] R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-10-31 4208640] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-08-27 3613528] R3 iwdbus;@oem9.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2013-10-29 27032] R3 k57nd60a;@oem22.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2014-07-24 458960] R3 LGBusEnum;@oem40.inf,%LGBusEnum.SVCDESC%;Logitech GamePanel Virtual Bus Enumerator Driver; C:\Windows\system32\drivers\LGBusEnum.sys [2009-11-24 22408] R3 LGSHidFilt;@oem38.inf,%LGSHidFilt.SvcDesc%;Logitech Gaming KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LGSHidFilt.Sys [2013-05-30 64280] R3 LGVirHid;@oem41.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\Windows\system32\drivers\LGVirHid.sys [2009-11-24 16008] R3 LMDriver;@oem5.inf,%LMDriver.SVCDESC%;Launch Manager Wireless Driver; C:\Windows\System32\drivers\LMDriver.sys [2013-07-17 21360] R3 MEIx64;@oem12.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2013-09-04 99288] R3 NAVENG;NAVENG; \??\C:\Program Files (x86)\Norton Security with Backup\NortonData\22.0.0.110\Definitions\VirusDefs\20150103.001\ENG64.SYS [2014-12-08 129752] R3 NAVEX15;NAVEX15; \??\C:\Program Files (x86)\Norton Security with Backup\NortonData\22.0.0.110\Definitions\VirusDefs\20150103.001\EX64.SYS [2014-12-08 2137304] R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2014-11-04 13207184] R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-11-06 19784] R3 nvvad_WaveExtensible;@oem36.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-10-03 38216] R3 RadioShim;@oem5.inf,%RadioShim.SVCDESC%;Shim for HID-KMDF Interface layer; C:\Windows\System32\drivers\RadioShim.sys [2013-07-17 14680] R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2014-01-27 167424] R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-10-01 34544] R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\System32\Drivers\NSBUx64\1601000.009\SRTSP64.SYS [2014-12-02 914648] R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2014-11-05 102616] R3 SynTP;@oem15.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-10-01 524528] R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-08-22 212224] S0 SymELAM;Symantec ELAM Driver; C:\Windows\system32\drivers\NSBUx64\1601000.009\SymELAM.sys [2014-09-09 23568] S3 BCM43XX;@netbc64.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl63a.sys [2013-07-01 8536752] S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Stuurprogramma voor Bluetooth-poort; C:\Windows\System32\Drivers\BTHport.sys [2014-07-24 1200640] S3 ccSet_NARA;NARA Settings Manager; C:\Windows\system32\drivers\NARAx64\0405000.009\ccSetx64.sys [2013-07-30 150104] S3 dg_ssudbus;@oem24.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800] S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [] S3 intaud_WaveExtensible;@oem8.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2013-10-29 39320] S3 IntcDAud;@oem6.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2013-10-01 449528] S3 iSafeKrnlBoot;YAC Boot Driver; C:\Windows\system32\DRIVERS\iSafeKrnlBoot.sys [2014-12-29 45224] S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2014-12-20 129752] S3 mfencrk;McAfee Inc. mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [2014-07-24 96592] S3 RSPCIESTOR;@oem11.inf,%Rts5208%;Realtek PCIE CardReader Driver; C:\Windows\system32\DRIVERS\RtsPStor.sys [2013-08-30 356056] S3 ssudmdm;@oem30.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080] S3 USBAAPL64;@oem42.inf,%USBAAPL64.SvcDesc%;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2014-08-15 54784] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-10-07 60744] R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [2013-09-07 312448] R2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184] R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2014-11-17 2709760] R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2014-11-06 1148744] R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-05-12 733696] R2 iSafeService;YAC Service; C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe [2014-12-29 120128] R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-09-04 169432] R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-09-04 390616] R2 LMSvc;Launch Manager Service; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [2014-03-17 459496] R2 NSBU;Norton Security with Backup; C:\Program Files (x86)\Norton Security with Backup\Engine\22.1.0.9\NSBU.exe [2014-12-10 282528] R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-11-06 1795912] R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-11-06 19819848] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-11-03 935232] R3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2013-07-06 663592] R3 iPod Service;iPod-service; C:\Program Files\iPod\bin\iPodService.exe [2014-10-15 643880] R3 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2012-07-14 769432] R3 QASvc;Quick Access Service; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [2013-08-03 457768] R3 RMSvc;Quick Access RadioMgr Service; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [2013-08-03 448040] S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-10-31 279024] S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-22 43696] S3 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-22 116648] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-22 116648] S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752] S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-05-12 822232] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-26 114800] S3 NOBU;Norton Online Backup; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2013-08-02 4278112] -----------------EOF-----------------