Logfile of random's system information tool 1.10 (written by random/random) Run by T at 2015-03-07 11:37:19 Microsoft Windows 8.1 Pro System drive C: has 135 GB (57%) free of 238 GB Total RAM: 4072 MB (65% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 11:40:36, on 7-3-2015 Platform: Unknown Windows (WinNT 6.02.1008) MSIE: Internet Explorer v11.0 (11.00.9600.17416) Boot mode: Normal Running processes: C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe C:\Program Files\trend micro\T.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun O4 - HKLM\..\Run: [SonicMasterTray] C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKCU\..\Run: [HydraVisionDesktopManager] "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe" O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background O4 - Startup: LibreOffice 4.3 .lnk = C:\Program Files (x86)\LibreOffice 4\program\quickstart.exe O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing) O23 - Service: Avira Planner (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing) O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing) O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing) O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 8247 bytes ======Listing Processes====== wininit.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe -k DcomLaunch C:\WINDOWS\system32\svchost.exe -k RPCSS winlogon.exe C:\WINDOWS\system32\atiesrxx.exe C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted "dwm.exe" C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted C:\WINDOWS\system32\svchost.exe -k netsvcs C:\WINDOWS\system32\svchost.exe -k LocalService atieclxx C:\WINDOWS\system32\svchost.exe -k NetworkService C:\WINDOWS\System32\spoolsv.exe "C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe" C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" "C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe" "C:\Program Files\Elantech\ETDService.exe" dashost.exe {2d1088ff-2c56-46f2-8b9cbb4631931071} C:\WINDOWS\system32\svchost.exe -k imgsvc "C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000608 C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-9b31e463-17ec-47be-bb34-36f234c68ca1 -SystemEventPortName:HostProcess-51856447-f520-4be3-b0c0-8e3a61a14c20 -IoCancelEventPortName:HostProcess-417e6fff-2ff3-485c-b6ab-b14fcdb56934 -NonStateChangingEventPortName:HostProcess-2aabdc8f-46c9-4dc6-9d87-f458377e8998 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:340edc8e-e6de-4480-b9e9-cea0e9f2444b -DeviceGroupId:WpdFsGroup "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c C:\WINDOWS\system32\SearchIndexer.exe /Embedding "C:\Program Files\Elantech\ETDCtrl.exe" taskhostex.exe C:\WINDOWS\Explorer.EXE "C:\Program Files\Elantech\ETDCtrlHelper.exe" "C:\Program Files\Elantech\ETDGesture.exe" C:\Windows\System32\skydrive.exe -Embedding "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe" HydraDM64.exe -h:852510 "Maximaliseren tot volledig bureaublad" "Maximaliseren tot volledig venster" "Bureaublad herstellen" "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow "C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe" "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0 "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min "C:\Windows\System32\SettingSyncHost.exe" -Embedding "C:\WINDOWS\FileManager\PhotosApp.exe" -ServerName:Microsoft.Windows.PhotoManager C:\Windows\System32\RuntimeBroker.exe -Embedding C:\WINDOWS\system32\wbem\wmiprvse.exe "C:\Users\T\Desktop\RSITx64.exe" C:\WINDOWS\system32\wbem\wmiprvse.exe ======Scheduled tasks folder====== C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler =========Mozilla firefox========= ProfilePath - C:\Users\T\AppData\Roaming\Mozilla\Firefox\Profiles\uawlfi8e.default [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 16.0.0.305 Plugin "Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.67.2] "Description"=Java™ Deployment Toolkit "Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.67.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331] "Description"=WLPG Install MIME type "Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3] "Description"=Google Update "Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9] "Description"=Google Update "Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5] "Description"=VLC Multimedia Plugin "Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader] "Description"=Handles PDFs in-place in Firefox "Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 16.0.0.305 Plugin "Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-12-11 462760] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-12-11 171944] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-02-08 13192848] "RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-02-08 1215632] "Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 3933496] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "HydraVisionDesktopManager"=C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [2012-08-28 393216] "msnmsgr"=C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [2014-03-31 4272840] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-07-04 766688] "SonicMasterTray"=C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe [2010-07-09 984400] "GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040] "SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-07-25 256896] "Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152] "avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2014-11-27 702768] C:\Users\T\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup LibreOffice 4.3 .lnk - C:\Program Files (x86)\LibreOffice 4\program\quickstart.exe [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "VIDC.YUY2"=msyuv.dll "vidc.i420"=iyuv_32.dll "msacm.msgsm610"=msgsm32.acm "msacm.msg711"=msg711.acm "VIDC.YVYU"=msyuv.dll "VIDC.YVU9"=tsbyuv.dll "wavemapper"=msacm32.drv "midimapper"=midimap.dll "VIDC.UYVY"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.mrle"=msrle32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msadpcm"=msadp32.acm "vidc.msvc"=msvidc32.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv "MSVideo8"=VfWWDM32.dll ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* .scr - open - C:\WINDOWS\system32\notepad.exe "%1" .scr - install - .scr - config - ======List of files/folders created in the last 3 months====== 2015-03-07 11:37:19 ----D---- C:\rsit 2015-03-07 11:37:19 ----D---- C:\Program Files\trend micro 2015-03-06 17:50:59 ----A---- C:\WINDOWS\system32\drivers\avnetflt.sys 2015-03-06 17:48:40 ----D---- C:\Users\T\AppData\Roaming\Avira 2015-03-06 17:47:31 ----A---- C:\WINDOWS\system32\drivers\avkmgr.sys 2015-03-06 17:47:31 ----A---- C:\WINDOWS\system32\drivers\avipbb.sys 2015-03-06 17:47:31 ----A---- C:\WINDOWS\system32\drivers\avgntflt.sys 2015-03-06 17:47:29 ----D---- C:\ProgramData\Avira 2015-03-06 17:47:29 ----D---- C:\Program Files (x86)\Avira 2015-03-05 23:20:49 ----D---- C:\Program Files (x86)\Mozilla Firefox 2015-03-04 19:41:41 ----D---- C:\Program Files (x86)\e-Sword 2015-03-04 19:35:13 ----D---- C:\ProgramData\InstallMate 2015-03-04 18:36:31 ----D---- C:\Program Files (x86)\ISA2 2015-03-03 09:17:31 ----A---- C:\WINDOWS\system32\jscript9.dll 2015-03-03 09:17:30 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll 2015-03-02 10:47:30 ----A---- C:\WINDOWS\UC.PIF 2015-03-02 10:47:30 ----A---- C:\WINDOWS\RAR.PIF 2015-03-02 10:47:30 ----A---- C:\WINDOWS\PKZIP.PIF 2015-03-02 10:47:30 ----A---- C:\WINDOWS\PKUNZIP.PIF 2015-03-02 10:47:30 ----A---- C:\WINDOWS\NOCLOSE.PIF 2015-03-02 10:47:30 ----A---- C:\WINDOWS\LHA.PIF 2015-03-02 10:47:30 ----A---- C:\WINDOWS\ARJ.PIF 2015-03-02 10:47:29 ----D---- C:\Users\T\AppData\Roaming\GHISLER 2015-03-02 10:47:29 ----D---- C:\totalcmd 2015-02-27 19:41:44 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll 2015-02-27 19:41:44 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll 2015-02-27 19:41:44 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll 2015-02-27 19:41:44 ----A---- C:\WINDOWS\system32\msaudite.dll 2015-02-27 19:41:44 ----A---- C:\WINDOWS\system32\lsasrv.dll 2015-02-27 19:41:44 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys 2015-02-27 19:41:44 ----A---- C:\WINDOWS\system32\drivers\cng.sys 2015-02-27 19:41:44 ----A---- C:\WINDOWS\system32\certcli.dll 2015-02-27 19:41:44 ----A---- C:\WINDOWS\system32\adtschema.dll 2015-02-27 19:41:11 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll 2015-02-27 19:41:11 ----A---- C:\WINDOWS\system32\oleaut32.dll 2015-02-27 19:41:09 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll 2015-02-27 19:41:09 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll 2015-02-27 19:41:09 ----A---- C:\WINDOWS\system32\schannel.dll 2015-02-27 19:41:09 ----A---- C:\WINDOWS\system32\scesrv.dll 2015-02-27 19:41:09 ----A---- C:\WINDOWS\system32\ntoskrnl.exe 2015-02-27 19:41:08 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll 2015-02-27 19:41:08 ----A---- C:\WINDOWS\SYSWOW64\user.exe 2015-02-27 19:41:08 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe 2015-02-27 19:41:08 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll 2015-02-27 19:41:08 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll 2015-02-27 19:41:08 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe 2015-02-27 19:41:08 ----A---- C:\WINDOWS\system32\wow64cpu.dll 2015-02-27 19:41:08 ----A---- C:\WINDOWS\system32\wow64.dll 2015-02-27 19:41:08 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll 2015-02-27 19:41:08 ----A---- C:\WINDOWS\system32\ntvdm64.dll 2015-02-27 19:41:08 ----A---- C:\WINDOWS\system32\ntdll.dll 2015-02-27 19:41:07 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll 2015-02-27 19:41:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll 2015-02-27 19:41:07 ----A---- C:\WINDOWS\SYSWOW64\GlobCollationHost.dll 2015-02-27 19:41:07 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll 2015-02-27 19:41:07 ----A---- C:\WINDOWS\system32\GlobCollationHost.dll 2015-02-27 19:41:06 ----A---- C:\WINDOWS\system32\mshtml.dll 2015-02-27 19:41:05 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll 2015-02-27 19:41:03 ----A---- C:\WINDOWS\system32\ieframe.dll 2015-02-27 19:41:02 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll 2015-02-27 19:41:01 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll 2015-02-27 19:41:01 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll 2015-02-27 19:41:01 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll 2015-02-27 19:41:01 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll 2015-02-27 19:41:01 ----A---- C:\WINDOWS\system32\wininet.dll 2015-02-27 19:41:01 ----A---- C:\WINDOWS\system32\vbscript.dll 2015-02-27 19:41:01 ----A---- C:\WINDOWS\system32\jscript.dll 2015-02-27 19:41:01 ----A---- C:\WINDOWS\system32\iertutil.dll 2015-02-27 19:41:00 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll 2015-02-27 19:41:00 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll 2015-02-27 19:41:00 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll 2015-02-27 19:41:00 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll 2015-02-27 19:41:00 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll 2015-02-27 19:41:00 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll 2015-02-27 19:41:00 ----A---- C:\WINDOWS\system32\webcheck.dll 2015-02-27 19:41:00 ----A---- C:\WINDOWS\system32\urlmon.dll 2015-02-27 19:41:00 ----A---- C:\WINDOWS\system32\mshtmled.dll 2015-02-27 19:41:00 ----A---- C:\WINDOWS\system32\MshtmlDac.dll 2015-02-27 19:41:00 ----A---- C:\WINDOWS\system32\msfeeds.dll 2015-02-27 19:41:00 ----A---- C:\WINDOWS\system32\iedkcs32.dll 2015-02-27 19:41:00 ----A---- C:\WINDOWS\system32\ie4uinit.exe 2015-02-27 19:41:00 ----A---- C:\WINDOWS\system32\dxtmsft.dll 2015-02-27 19:41:00 ----A---- C:\WINDOWS\system32\actxprxy.dll 2015-02-27 19:40:59 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll 2015-02-27 19:40:59 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll 2015-02-27 19:40:59 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll 2015-02-27 19:40:59 ----A---- C:\WINDOWS\system32\inetcomm.dll 2015-02-27 19:40:59 ----A---- C:\WINDOWS\system32\ieapfltr.dll 2015-02-27 19:40:41 ----A---- C:\WINDOWS\system32\win32k.sys 2015-02-27 19:40:21 ----A---- C:\WINDOWS\system32\sppobjs.dll 2015-01-15 07:38:22 ----D---- C:\Users\T\AppData\Roaming\Windows Live Writer 2015-01-14 00:04:24 ----A---- C:\WINDOWS\SYSWOW64\wer.dll 2015-01-14 00:04:24 ----A---- C:\WINDOWS\SYSWOW64\nlaapi.dll 2015-01-14 00:04:24 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe 2015-01-14 00:04:24 ----A---- C:\WINDOWS\system32\profsvc.dll 2015-01-14 00:04:24 ----A---- C:\WINDOWS\system32\nlasvc.dll 2015-01-14 00:04:24 ----A---- C:\WINDOWS\system32\nlaapi.dll 2015-01-14 00:04:24 ----A---- C:\WINDOWS\system32\ncsi.dll 2015-01-14 00:04:24 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys 2015-01-14 00:04:24 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys 2015-01-14 00:04:23 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe 2015-01-14 00:04:23 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe 2015-01-14 00:04:23 ----A---- C:\WINDOWS\SYSWOW64\WerFault.exe 2015-01-14 00:04:23 ----A---- C:\WINDOWS\SYSWOW64\werdiagcontroller.dll 2015-01-14 00:04:23 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll 2015-01-14 00:04:23 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll 2015-01-14 00:04:23 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll 2015-01-14 00:04:23 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll 2015-01-14 00:04:23 ----A---- C:\WINDOWS\system32\wermgr.exe 2015-01-14 00:04:23 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe 2015-01-14 00:04:23 ----A---- C:\WINDOWS\system32\WerFault.exe 2015-01-14 00:04:23 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll 2015-01-14 00:04:23 ----A---- C:\WINDOWS\system32\wer.dll 2015-01-14 00:04:23 ----A---- C:\WINDOWS\system32\Faultrep.dll 2015-01-14 00:04:23 ----A---- C:\WINDOWS\system32\EncDump.dll 2015-01-14 00:04:23 ----A---- C:\WINDOWS\system32\ci.dll 2015-01-14 00:04:23 ----A---- C:\WINDOWS\system32\audiosrv.dll 2015-01-14 00:04:23 ----A---- C:\WINDOWS\system32\AudioSes.dll 2015-01-14 00:04:23 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll 2015-01-14 00:04:23 ----A---- C:\WINDOWS\system32\AudioEng.dll 2015-01-14 00:04:23 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll 2015-01-14 00:04:23 ----A---- C:\WINDOWS\system32\audiodg.exe 2015-01-06 14:00:27 ----D---- C:\Program Files (x86)\Adobe 2015-01-06 14:00:16 ----D---- C:\ProgramData\Adobe 2014-12-23 14:59:52 ----D---- C:\Program Files\Common Files\Autodesk Shared 2014-12-23 14:59:52 ----D---- C:\Program Files\Autodesk 2014-12-23 14:59:28 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll 2014-12-23 14:59:28 ----A---- C:\WINDOWS\system32\xactengine3_7.dll 2014-12-23 14:59:27 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll 2014-12-23 14:59:27 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll 2014-12-23 14:59:27 ----A---- C:\WINDOWS\system32\d3dx10_43.dll 2014-12-23 14:59:27 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll 2014-12-23 14:59:26 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll 2014-12-23 14:59:26 ----A---- C:\WINDOWS\system32\D3DX9_43.dll 2014-12-23 14:59:25 ----A---- C:\WINDOWS\SYSWOW64\xinput1_1.dll 2014-12-23 14:59:25 ----A---- C:\WINDOWS\system32\xinput1_1.dll 2014-12-23 14:59:24 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_1.dll 2014-12-23 14:59:24 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_0.dll 2014-12-23 14:59:24 ----A---- C:\WINDOWS\system32\xactengine2_1.dll 2014-12-23 14:59:24 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll 2014-12-23 14:59:21 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll 2014-12-23 14:59:21 ----A---- C:\WINDOWS\system32\d3dx9_30.dll 2014-12-23 14:54:08 ----D---- C:\Users\T\AppData\Roaming\Autodesk 2014-12-23 14:54:08 ----D---- C:\ProgramData\Autodesk 2014-12-23 14:52:42 ----D---- C:\Autodesk 2014-12-20 18:30:46 ----A---- C:\WINDOWS\SYSWOW64\salesper.dat 2014-12-20 18:30:46 ----A---- C:\WINDOWS\SYSWOW64\jfcusmot.dat 2014-12-20 18:30:44 ----A---- C:\WINDOWS\SYSWOW64\FanSel.dat 2014-12-20 18:30:43 ----A---- C:\WINDOWS\SYSWOW64\JobUnits.dat 2014-12-20 18:30:43 ----A---- C:\WINDOWS\SYSWOW64\FSelDets.dat 2014-12-20 18:30:41 ----A---- C:\WINDOWS\SYSWOW64\JobFan.dat 2014-12-20 18:17:15 ----D---- C:\FanSelector 2014-12-19 20:26:19 ----A---- C:\WINDOWS\system32\poqexec.exe 2014-12-19 20:26:18 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe 2014-12-16 16:15:44 ----D---- C:\Users\T\AppData\Roaming\TROX 2014-12-16 16:15:11 ----D---- C:\Program Files (x86)\TROX GmbH 2014-12-11 16:50:33 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll 2014-12-11 16:50:33 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll 2014-12-11 16:50:22 ----A---- C:\WINDOWS\system32\crypt32.dll 2014-12-11 16:50:21 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll 2014-12-11 16:38:36 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll 2014-12-11 16:38:36 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll 2014-12-11 16:38:36 ----A---- C:\WINDOWS\system32\iepeers.dll 2014-12-11 16:38:36 ----A---- C:\WINDOWS\system32\dxtrans.dll 2014-12-11 16:38:29 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll 2014-12-11 16:38:29 ----A---- C:\WINDOWS\system32\MrmCoreR.dll 2014-12-11 16:33:37 ----D---- C:\ProgramData\Sun 2014-12-11 16:33:16 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe 2014-12-11 16:33:15 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll 2014-12-11 16:33:15 ----A---- C:\WINDOWS\SYSWOW64\javaw.exe 2014-12-11 16:33:15 ----A---- C:\WINDOWS\SYSWOW64\java.exe 2014-12-11 16:33:07 ----D---- C:\Program Files (x86)\Java 2014-12-09 22:40:25 ----A---- C:\Users\T\AppData\Roaming\AutoGK.ini ======List of files/folders modified in the last 3 months====== 2015-03-07 11:37:27 ----D---- C:\WINDOWS\Temp 2015-03-07 11:37:19 ----RD---- C:\Program Files 2015-03-07 11:37:06 ----RD---- C:\WINDOWS\System32 2015-03-07 11:37:06 ----D---- C:\WINDOWS\Inf 2015-03-07 11:37:06 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2015-03-07 11:36:48 ----D---- C:\WINDOWS\Prefetch 2015-03-07 11:00:00 ----D---- C:\WINDOWS\system32\sru 2015-03-07 10:25:37 ----D---- C:\WINDOWS\system32\config 2015-03-07 10:20:46 ----SHD---- C:\System Volume Information 2015-03-07 10:17:10 ----D---- C:\WINDOWS\WinSxS 2015-03-07 10:17:06 ----D---- C:\WINDOWS\CbsTemp 2015-03-07 10:08:02 ----D---- C:\WINDOWS\SysWOW64 2015-03-07 10:07:34 ----D---- C:\WINDOWS\system32\catroot2 2015-03-07 09:17:28 ----SD---- C:\ProgramData\Microsoft 2015-03-07 08:33:58 ----D---- C:\WINDOWS\system32\Tasks 2015-03-07 00:04:16 ----D---- C:\Windows 2015-03-06 17:50:59 ----D---- C:\WINDOWS\system32\drivers 2015-03-06 17:47:29 ----RD---- C:\Program Files (x86) 2015-03-06 17:47:29 ----HD---- C:\ProgramData 2015-03-06 14:27:50 ----D---- C:\WINDOWS\debug 2015-03-06 12:36:06 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service 2015-03-06 09:38:12 ----D---- C:\WINDOWS\Microsoft.NET 2015-03-05 07:52:22 ----HD---- C:\Program Files\WindowsApps 2015-03-05 07:52:22 ----D---- C:\WINDOWS\AppReadiness 2015-03-04 19:41:47 ----SHD---- C:\WINDOWS\Installer 2015-03-04 19:41:43 ----RSD---- C:\WINDOWS\Fonts 2015-03-04 19:41:41 ----D---- C:\Program Files (x86)\Common Files 2015-03-03 14:17:35 ----N---- C:\WINDOWS\system32\MpSigStub.exe 2015-03-03 12:13:13 ----D---- C:\WINDOWS\rescache 2015-03-02 18:51:23 ----D---- C:\WINDOWS\SYSWOW64\nl-NL 2015-03-02 18:51:23 ----D---- C:\WINDOWS\system32\nl-NL 2015-03-02 18:51:23 ----D---- C:\WINDOWS\apppatch 2015-03-01 20:08:17 ----D---- C:\WINDOWS\system32\drivers\UMDF 2015-02-28 16:13:00 ----D---- C:\ProgramData\Microsoft Help 2015-02-28 16:12:26 ----D---- C:\WINDOWS\system32\MRT 2015-02-28 16:08:44 ----A---- C:\WINDOWS\system32\MRT.exe 2015-02-27 19:38:40 ----D---- C:\WINDOWS\Tasks 2015-02-03 20:31:19 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe 2015-01-21 19:51:52 ----D---- C:\Users\T\AppData\Roaming\Adobe 2015-01-19 08:06:37 ----D---- C:\WINDOWS\system32\DriverStore 2015-01-19 08:06:37 ----D---- C:\Program Files (x86)\Razer 2015-01-19 08:06:34 ----D---- C:\ProgramData\Razer 2015-01-17 19:37:07 ----D---- C:\WINDOWS\system32\CodeIntegrity 2015-01-12 10:19:58 ----D---- C:\WINDOWS\LiveKernelReports 2014-12-30 00:03:19 ----SD---- C:\Users\T\AppData\Roaming\Microsoft 2014-12-23 15:00:35 ----RSD---- C:\WINDOWS\assembly 2014-12-23 14:59:52 ----D---- C:\Program Files\Common Files 2014-12-23 14:59:17 ----D---- C:\ProgramData\Package Cache 2014-12-16 16:49:33 ----D---- C:\WINDOWS\system32\FxsTmp 2014-12-12 21:02:34 ----D---- C:\WINDOWS\PolicyDefinitions 2014-12-12 21:02:34 ----D---- C:\Program Files\Internet Explorer 2014-12-12 21:02:34 ----D---- C:\Program Files (x86)\Internet Explorer 2014-12-11 17:17:06 ----D---- C:\WINDOWS\system32\sr-Latn-RS 2014-12-11 17:17:06 ----D---- C:\WINDOWS\system32\sr-Latn-CS 2014-12-11 16:33:36 ----D---- C:\ProgramData\Oracle ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 Wof;Windows Overlay File System Filter Driver; C:\WINDOWS\system32\drivers\Wof.sys [2014-09-24 157016] R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2014-11-27 131608] R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2014-11-27 28600] R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680] R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2014-11-27 119272] R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-07-21 13209088] R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-07-21 626688] R3 AtiHDAudioService;@oem7.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdW86.sys [2013-02-08 98472] R3 ETD;@oem8.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2014-11-04 322448] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-02-08 4106256] R3 kbfiltr;@oem5.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2013-02-11 14992] R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS-minipoortstuurprogramma voor Qualcomm Atheros AR81xx PCI-E Ethernet-controller; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224] R3 MEIx64;@oem3.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2010-10-19 56344] R3 netr28x;@netr28x.inf,%Generic.Service.DispName%;Ralink 802.11n stuurprogramma voor Extensible draadloze netwerken; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2013-07-25 2607792] R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB-videoapparaat (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224] R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912] S3 rzdaendpt;@oem14.inf,%rzdaendpt.SvcDesc%;Razer DeathAdder end point; C:\WINDOWS\System32\drivers\rzdaendpt.sys [2014-09-05 33448] S3 rzudd;@oem30.inf,%Razer.SvcDesc%;Razer Keyboard Driver; C:\WINDOWS\System32\drivers\rzudd.sys [2014-09-05 160424] S3 rzvkeyboard;@oem23.inf,%rzvkeyboard%;Razer Virtual Keyboard Driver; C:\WINDOWS\System32\drivers\rzvkeyboard.sys [2014-09-05 31912] S3 WinUsb;@wpdmtp.inf,%WinUsb.SvcDesc%;WinUsb; C:\WINDOWS\system32\DRIVERS\WinUsb.sys [2013-08-22 78848] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-03 81088] R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-07-21 239616] R2 AntiVirSchedulerService;Avira Planner; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2014-11-27 431920] R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2014-11-27 431920] R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2014-11-04 91472] S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-13 107912] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-27 267440] S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2003-02-20 32768] S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-13 107912] S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-03-05 148080] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696] S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] -----------------EOF-----------------