Logfile of random's system information tool 1.10 (written by random/random) Run by Dosje at 2015-04-09 09:49:15 Microsoft Windows 7 Home Premium Service Pack 1 System drive C: has 266 GB (91%) free of 294 GB Total RAM: 3539 MB (59% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 9:49:48, on 9/04/2015 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v11.0 (11.00.9600.17689) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskhost.exe C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe C:\Program Files\Bitdefender\Bitdefender\bdagent.exe C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe C:\Program Files\Bitdefender\Bitdefender\bdapppassmgr.exe C:\Windows\system32\taskeng.exe C:\Program Files\CCleaner\CCleaner.exe C:\Program Files\NVIDIA Corporation\Display\nvtray.exe C:\Windows\system32\taskhost.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Users\Dosje\Downloads\RSIT.exe C:\Program Files\trend micro\Dosje.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\system32\SearchProtocolHost.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll O4 - HKLM\..\Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe" -s O4 - HKLM\..\Run: [NvBackend] "C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe" O4 - HKLM\..\Run: [ShadowPlay] C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart O4 - HKLM\..\Run: [Bdagent] "C:\Program Files\Bitdefender\Bitdefender\bdagent.exe" O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR O4 - HKCU\..\Run: [Bitdefender Wallet Agent] "C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe" O4 - HKCU\..\Run: [Bitdefender Agent Wallet-toepassing] "C:\Program Files\Bitdefender\Bitdefender\bdapppassmgr.exe" O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [Bitdefender Wallet Agent] "C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe" (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [Bitdefender Wallet Agent] "C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe" (User 'Default user') O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: SafeBox - Bitdefender - C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: Bitdefender Desktop Update Service (UPDATESRV) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe O23 - Service: Bitdefender Virus Shield (VSSERV) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender\vsserv.exe -- End of file - 4837 bytes ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe =========Mozilla firefox========= ProfilePath - C:\Users\Dosje\AppData\Roaming\Mozilla\Firefox\Profiles\ym14vcdt.default prefs.js - "browser.search.useDBForOrder" - true "ffpwdman@bitdefender.com"=C:\Program Files\Bitdefender\Bitdefender\ffpwdman\ [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 17.0.0.134 Plugin "Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_134.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.40.2] "Description"=Java™ Deployment Toolkit "Path"=C:\Program Files\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.40.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision] "Description"=NVIDIA stereo images plugin for Mozilla browsers "Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming] "Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers "Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.5] "Description"=VLC Multimedia Plugin "Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll C:\Users\Dosje\AppData\Roaming\Mozilla\Firefox\Profiles\ym14vcdt.default\extensions\ artur.dubovoy@gmail.com {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} {E4091D66-127C-11DB-903A-DE80D2EFDFE8} C:\Users\Dosje\AppData\Roaming\Mozilla\Firefox\Profiles\ym14vcdt.default\searchplugins\ google-default.xml ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1DAC0C53-7D23-4AB3-856A-B04D98CD982A}] Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll [2014-02-17 156400] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-08 460712] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-08 172968] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2014-11-19 12111576] "NvBackend"=C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2015-03-08 2606280] "ShadowPlay"=C:\Windows\system32\nvspcap.dll [2015-03-08 1316000] "Bdagent"=C:\Program Files\Bitdefender\Bitdefender\bdagent.exe [2014-03-25 1845064] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2015-03-13 5529880] "Bitdefender Wallet Agent"=C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [2014-03-19 482392] "Bitdefender Agent Wallet-toepassing"=C:\Program Files\Bitdefender\Bitdefender\bdapppassmgr.exe [2014-03-19 614232] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=221 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvyu"=msyuv.dll "vidc.iyuv"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "vidc.yvu9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "vidc.cvid"=iccvid.dll "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave3"=wdmaud.drv "midi3"=wdmaud.drv "mixer3"=wdmaud.drv "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv ======File associations====== .inf - open - "%SystemRoot%\system32\NOTEPAD.EXE" %1 .ini - open - "%SystemRoot%\system32\NOTEPAD.EXE" %1 .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - "C:\Windows\System32\WScript.exe" "%1" %* .txt - open - "%SystemRoot%\system32\NOTEPAD.EXE" %1 ======List of files/folders created in the last 1 month====== 2015-04-09 09:49:15 ----D---- C:\rsit 2015-04-09 09:49:15 ----D---- C:\Program Files\trend micro 2015-04-09 07:43:27 ----D---- C:\Users\Dosje\AppData\Roaming\XnRetro 2015-04-09 07:42:24 ----D---- C:\Program Files\Adobe 2015-04-09 03:44:20 ----A---- C:\Windows\system32\generaltel.dll 2015-04-09 03:44:20 ----A---- C:\Windows\system32\devinv.dll 2015-04-09 03:44:20 ----A---- C:\Windows\system32\appraiser.dll 2015-04-09 03:44:19 ----A---- C:\Windows\system32\invagent.dll 2015-04-09 03:44:19 ----A---- C:\Windows\system32\aepic.dll 2015-04-09 03:44:19 ----A---- C:\Windows\system32\aepdu.dll 2015-04-09 03:44:19 ----A---- C:\Windows\system32\aeinv.dll 2015-04-09 03:44:19 ----A---- C:\Windows\system32\acmigration.dll 2015-04-08 17:00:56 ----D---- C:\Users\Dosje\AppData\Roaming\SumatraPDF 2015-04-08 17:00:52 ----D---- C:\Program Files\SumatraPDF 2015-04-04 10:09:21 ----SD---- C:\Windows\system32\GWX 2015-04-01 12:33:15 ----D---- C:\Users\Dosje\AppData\Roaming\AnvSoft 2015-03-31 20:43:13 ----D---- C:\Users\Dosje\AppData\Roaming\DC++ 2015-03-31 20:43:06 ----D---- C:\Program Files\DC++ 2015-03-23 13:13:40 ----D---- C:\Program Files\Mozilla Firefox 2015-03-22 01:46:09 ----D---- C:\AdwCleaner 2015-03-22 00:58:15 ----D---- C:\Users\Dosje\AppData\Roaming\Adobe 2015-03-21 05:01:01 ----A---- C:\Windows\system32\ampa.sys 2015-03-21 05:01:01 ----A---- C:\Windows\ampa.exe 2015-03-21 01:47:36 ----D---- C:\Program Files\Common Files\Xara Services 2015-03-21 01:46:29 ----D---- C:\Program Files\MSXML 4.0 2015-03-21 00:06:24 ----D---- C:\Users\Dosje\AppData\Roaming\Macromedia 2015-03-21 00:06:20 ----D---- C:\Users\Dosje\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 2015-03-20 14:41:51 ----AD---- C:\ProgramData\TEMP 2015-03-20 14:41:40 ----A---- C:\Windows\system32\dbghelp-xfw.dll 2015-03-19 04:23:38 ----A---- C:\Windows\IsUn0413.exe 2015-03-19 01:28:05 ----D---- C:\Program Files\Fotor 2015-03-18 23:16:50 ----D---- C:\Users\Dosje\AppData\Roaming\Savedero 2015-03-18 23:14:09 ----D---- C:\Program Files\IDimager Products 2015-03-18 15:23:23 ----A---- C:\Windows\system32\nvStreaming.exe 2015-03-18 15:22:12 ----A---- C:\Windows\system32\nvwgf2um.dll 2015-03-18 15:22:12 ----A---- C:\Windows\system32\nvumdshim.dll 2015-03-18 15:22:12 ----A---- C:\Windows\system32\nvopencl.dll 2015-03-18 15:22:12 ----A---- C:\Windows\system32\nvoglv32.dll 2015-03-18 15:22:12 ----A---- C:\Windows\system32\nvoglshim32.dll 2015-03-18 15:22:12 ----A---- C:\Windows\system32\nvinit.dll 2015-03-18 15:22:12 ----A---- C:\Windows\system32\NvIFROpenGL.dll 2015-03-18 15:22:12 ----A---- C:\Windows\system32\NvIFR.dll 2015-03-18 15:22:12 ----A---- C:\Windows\system32\NvFBC.dll 2015-03-18 15:22:12 ----A---- C:\Windows\system32\nvEncodeAPI.dll 2015-03-18 15:22:12 ----A---- C:\Windows\system32\nvdispgenco3234788.dll 2015-03-18 15:22:12 ----A---- C:\Windows\system32\nvdispco3234788.dll 2015-03-18 15:22:12 ----A---- C:\Windows\system32\nvcuvid.dll 2015-03-18 15:22:12 ----A---- C:\Windows\system32\nvcuda.dll 2015-03-18 15:22:12 ----A---- C:\Windows\system32\nvcompiler.dll 2015-03-18 15:22:12 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys 2015-03-18 04:34:08 ----D---- C:\Program Files\Transmission 2015-03-18 02:40:29 ----D---- C:\Users\Dosje\AppData\Roaming\NVIDIA 2015-03-15 15:25:24 ----D---- C:\Program Files\Microsoft ASP.NET 2015-03-15 12:10:18 ----D---- C:\Program Files\Microsoft Silverlight 2015-03-11 19:21:34 ----A---- C:\Windows\system32\WindowsCodecs.dll 2015-03-11 19:21:33 ----A---- C:\Windows\system32\rdpudd.dll 2015-03-11 19:21:33 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll 2015-03-11 19:21:33 ----A---- C:\Windows\system32\rdpcorets.dll 2015-03-11 19:21:33 ----A---- C:\Windows\system32\msctf.dll 2015-03-11 19:21:32 ----A---- C:\Windows\system32\shell32.dll 2015-03-11 19:21:31 ----A---- C:\Windows\system32\win32k.sys 2015-03-11 19:21:30 ----A---- C:\Windows\system32\urlmon.dll 2015-03-11 19:21:30 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe 2015-03-11 19:21:30 ----A---- C:\Windows\system32\jsproxy.dll 2015-03-11 19:21:30 ----A---- C:\Windows\system32\jscript9diag.dll 2015-03-11 19:21:30 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-03-11 19:21:30 ----A---- C:\Windows\system32\ieUnatt.exe 2015-03-11 19:21:30 ----A---- C:\Windows\system32\iernonce.dll 2015-03-11 19:21:30 ----A---- C:\Windows\system32\ieetwproxystub.dll 2015-03-11 19:21:30 ----A---- C:\Windows\system32\ieetwcollector.exe 2015-03-11 19:21:30 ----A---- C:\Windows\system32\iedkcs32.dll 2015-03-11 19:21:30 ----A---- C:\Windows\system32\ie4uinit.exe 2015-03-11 19:21:29 ----A---- C:\Windows\system32\msrating.dll 2015-03-11 19:21:29 ----A---- C:\Windows\system32\msfeeds.dll 2015-03-11 19:21:29 ----A---- C:\Windows\system32\iesetup.dll 2015-03-11 19:21:29 ----A---- C:\Windows\system32\ieapfltr.dll 2015-03-11 19:21:29 ----A---- C:\Windows\system32\dxtmsft.dll 2015-03-11 19:21:28 ----A---- C:\Windows\system32\wininet.dll 2015-03-11 19:21:28 ----A---- C:\Windows\system32\ieui.dll 2015-03-11 19:21:28 ----A---- C:\Windows\system32\ieetwcollectorres.dll 2015-03-11 19:21:28 ----A---- C:\Windows\system32\dxtrans.dll 2015-03-11 19:21:27 ----A---- C:\Windows\system32\mshtmlmedia.dll 2015-03-11 19:21:27 ----A---- C:\Windows\system32\mshtmled.dll 2015-03-11 19:21:27 ----A---- C:\Windows\system32\MshtmlDac.dll 2015-03-11 19:21:27 ----A---- C:\Windows\system32\ieframe.dll 2015-03-11 19:21:26 ----A---- C:\Windows\system32\mshtml.dll 2015-03-11 19:21:26 ----A---- C:\Windows\system32\iertutil.dll 2015-03-11 19:21:25 ----A---- C:\Windows\system32\vbscript.dll 2015-03-11 19:21:25 ----A---- C:\Windows\system32\jscript9.dll 2015-03-11 19:21:18 ----A---- C:\Windows\system32\ubpm.dll 2015-03-11 19:21:17 ----A---- C:\Windows\system32\wdigest.dll 2015-03-11 19:21:17 ----A---- C:\Windows\system32\TSpkg.dll 2015-03-11 19:21:17 ----A---- C:\Windows\system32\schannel.dll 2015-03-11 19:21:17 ----A---- C:\Windows\system32\ncrypt.dll 2015-03-11 19:21:17 ----A---- C:\Windows\system32\msv1_0.dll 2015-03-11 19:21:17 ----A---- C:\Windows\system32\lsasrv.dll 2015-03-11 19:21:17 ----A---- C:\Windows\system32\kerberos.dll 2015-03-11 19:21:17 ----A---- C:\Windows\system32\drivers\ksecpkg.sys 2015-03-11 19:21:17 ----A---- C:\Windows\system32\drivers\ksecdd.sys 2015-03-11 19:21:17 ----A---- C:\Windows\system32\auditpol.exe 2015-03-11 19:21:16 ----A---- C:\Windows\system32\sspisrv.dll 2015-03-11 19:21:16 ----A---- C:\Windows\system32\sspicli.dll 2015-03-11 19:21:16 ----A---- C:\Windows\system32\secur32.dll 2015-03-11 19:21:16 ----A---- C:\Windows\system32\msobjs.dll 2015-03-11 19:21:16 ----A---- C:\Windows\system32\msaudite.dll 2015-03-11 19:21:16 ----A---- C:\Windows\system32\lsass.exe 2015-03-11 19:21:16 ----A---- C:\Windows\system32\credssp.dll 2015-03-11 19:21:16 ----A---- C:\Windows\system32\adtschema.dll 2015-03-11 19:21:15 ----A---- C:\Windows\system32\lpk.dll 2015-03-11 19:21:15 ----A---- C:\Windows\system32\fontsub.dll 2015-03-11 19:21:15 ----A---- C:\Windows\system32\dciman32.dll 2015-03-11 19:21:15 ----A---- C:\Windows\system32\atmlib.dll 2015-03-11 19:21:15 ----A---- C:\Windows\system32\atmfd.dll 2015-03-11 19:21:14 ----A---- C:\Windows\system32\WMPhoto.dll 2015-03-11 19:21:13 ----A---- C:\Windows\system32\wmdrmsdk.dll 2015-03-11 19:21:13 ----A---- C:\Windows\system32\drmv2clt.dll 2015-03-11 19:21:13 ----A---- C:\Windows\system32\blackbox.dll 2015-03-11 19:21:12 ----A---- C:\Windows\system32\wmp.dll 2015-03-11 19:21:12 ----A---- C:\Windows\system32\mf.dll 2015-03-11 19:21:11 ----A---- C:\Windows\system32\winresume.exe 2015-03-11 19:21:11 ----A---- C:\Windows\system32\quartz.dll 2015-03-11 19:21:11 ----A---- C:\Windows\system32\pcasvc.dll 2015-03-11 19:21:11 ----A---- C:\Windows\system32\ntoskrnl.exe 2015-03-11 19:21:11 ----A---- C:\Windows\system32\ntkrnlpa.exe 2015-03-11 19:21:11 ----A---- C:\Windows\system32\mfplat.dll 2015-03-11 19:21:11 ----A---- C:\Windows\system32\evr.dll 2015-03-11 19:21:11 ----A---- C:\Windows\system32\drmmgrtn.dll 2015-03-11 19:21:11 ----A---- C:\Windows\system32\drivers\PEAuth.sys 2015-03-11 19:21:11 ----A---- C:\Windows\system32\drivers\mountmgr.sys 2015-03-11 19:21:11 ----A---- C:\Windows\system32\drivers\cng.sys 2015-03-11 19:21:11 ----A---- C:\Windows\system32\cryptui.dll 2015-03-11 19:21:11 ----A---- C:\Windows\system32\cryptsp.dll 2015-03-11 19:21:11 ----A---- C:\Windows\system32\crypt32.dll 2015-03-11 19:21:11 ----A---- C:\Windows\system32\ci.dll 2015-03-11 19:21:10 ----A---- C:\Windows\system32\wintrust.dll 2015-03-11 19:21:10 ----A---- C:\Windows\system32\winload.exe 2015-03-11 19:21:10 ----A---- C:\Windows\system32\srcore.dll 2015-03-11 19:21:10 ----A---- C:\Windows\system32\smss.exe 2015-03-11 19:21:10 ----A---- C:\Windows\system32\rstrui.exe 2015-03-11 19:21:10 ----A---- C:\Windows\system32\rrinstaller.exe 2015-03-11 19:21:10 ----A---- C:\Windows\system32\qdvd.dll 2015-03-11 19:21:10 ----A---- C:\Windows\system32\pcadm.dll 2015-03-11 19:21:10 ----A---- C:\Windows\system32\msscp.dll 2015-03-11 19:21:10 ----A---- C:\Windows\system32\msnetobj.dll 2015-03-11 19:21:10 ----A---- C:\Windows\system32\drivers\appid.sys 2015-03-11 19:21:10 ----A---- C:\Windows\system32\cryptsvc.dll 2015-03-11 19:21:10 ----A---- C:\Windows\system32\cryptnet.dll 2015-03-11 19:21:10 ----A---- C:\Windows\system32\audiosrv.dll 2015-03-11 19:21:10 ----A---- C:\Windows\system32\AUDIOKSE.dll 2015-03-11 19:21:10 ----A---- C:\Windows\system32\AudioEng.dll 2015-03-11 19:21:10 ----A---- C:\Windows\system32\audiodg.exe 2015-03-11 19:21:10 ----A---- C:\Windows\system32\appidsvc.dll 2015-03-11 19:21:10 ----A---- C:\Windows\system32\appidpolicyconverter.exe 2015-03-11 19:21:09 ----A---- C:\Windows\system32\wmploc.DLL 2015-03-11 19:21:09 ----A---- C:\Windows\system32\srclient.dll 2015-03-11 19:21:09 ----A---- C:\Windows\system32\spwmp.dll 2015-03-11 19:21:09 ----A---- C:\Windows\system32\setbcdlocale.dll 2015-03-11 19:21:09 ----A---- C:\Windows\system32\pcawrk.exe 2015-03-11 19:21:09 ----A---- C:\Windows\system32\pcalua.exe 2015-03-11 19:21:09 ----A---- C:\Windows\system32\pcaevts.dll 2015-03-11 19:21:09 ----A---- C:\Windows\system32\msmmsp.dll 2015-03-11 19:21:09 ----A---- C:\Windows\system32\mfps.dll 2015-03-11 19:21:09 ----A---- C:\Windows\system32\mfpmp.exe 2015-03-11 19:21:09 ----A---- C:\Windows\system32\EncDump.dll 2015-03-11 19:21:09 ----A---- C:\Windows\system32\dxmasf.dll 2015-03-11 19:21:09 ----A---- C:\Windows\system32\csrsrv.dll 2015-03-11 19:21:09 ----A---- C:\Windows\system32\AudioSes.dll 2015-03-11 19:21:09 ----A---- C:\Windows\system32\appidcertstorecheck.exe 2015-03-11 19:21:09 ----A---- C:\Windows\system32\appidapi.dll 2015-03-11 19:21:09 ----A---- C:\Windows\system32\apisetschema.dll 2015-03-11 19:21:08 ----A---- C:\Windows\system32\mferror.dll ======List of files/folders modified in the last 1 month====== 2015-04-09 09:49:44 ----D---- C:\Windows\Temp 2015-04-09 09:49:15 ----RD---- C:\Program Files 2015-04-09 09:44:32 ----D---- C:\Windows\system32\catroot2 2015-04-09 09:44:30 ----D---- C:\ProgramData\NVIDIA 2015-04-09 09:43:02 ----D---- C:\Windows\system32\Tasks 2015-04-09 09:41:33 ----D---- C:\Windows\system32\drivers\etc 2015-04-09 09:26:09 ----SHD---- C:\System Volume Information 2015-04-09 09:14:45 ----D---- C:\Windows\System32 2015-04-09 09:14:38 ----D---- C:\Windows\system32\config 2015-04-09 09:14:34 ----D---- C:\Windows 2015-04-09 09:01:17 ----D---- C:\Windows\Prefetch 2015-04-09 04:40:43 ----A---- C:\bdlog.txt 2015-04-09 03:46:50 ----D---- C:\Windows\winsxs 2015-04-09 03:45:26 ----SD---- C:\Windows\system32\CompatTel 2015-04-09 03:45:26 ----D---- C:\Windows\system32\appraiser 2015-04-09 03:45:26 ----D---- C:\Windows\AppPatch 2015-04-09 03:38:34 ----D---- C:\Windows\SoftwareDistribution 2015-04-09 03:37:53 ----HD---- C:\ProgramData 2015-04-09 00:31:58 ----D---- C:\Windows\inf 2015-04-08 21:39:37 ----D---- C:\Users\Dosje\AppData\Roaming\transmission 2015-04-08 14:24:24 ----D---- C:\Program Files\Mozilla Maintenance Service 2015-04-05 12:28:53 ----RSD---- C:\Windows\Fonts 2015-04-04 10:09:27 ----D---- C:\Windows\Logs 2015-03-27 13:18:04 ----D---- C:\Program Files\CCleaner 2015-03-26 05:13:00 ----D---- C:\Windows\system32\wbem 2015-03-22 01:25:54 ----SHD---- C:\Windows\Installer 2015-03-22 01:25:30 ----D---- C:\Program Files\Common Files 2015-03-22 01:05:51 ----D---- C:\Windows\system32\DriverStore 2015-03-21 18:42:54 ----D---- C:\Windows\Help 2015-03-21 13:14:44 ----D---- C:\ProgramData\Mozilla 2015-03-21 01:47:47 ----A---- C:\Windows\system32\DLLDEV32i.dll 2015-03-20 21:58:30 ----SD---- C:\ProgramData\Microsoft 2015-03-19 13:01:48 ----D---- C:\Windows\system32\NDF 2015-03-18 15:22:44 ----D---- C:\Windows\system32\drivers 2015-03-18 15:22:43 ----D---- C:\Program Files\NVIDIA Corporation 2015-03-17 17:04:19 ----A---- C:\Windows\system32\FlashPlayerApp.exe 2015-03-17 13:23:34 ----SD---- C:\Users\Dosje\AppData\Roaming\Microsoft 2015-03-15 17:48:04 ----D---- C:\Windows\Microsoft.NET 2015-03-15 15:25:24 ----RSD---- C:\Windows\assembly 2015-03-13 21:43:34 ----A---- C:\Windows\system32\OpenCL.dll 2015-03-13 21:43:34 ----A---- C:\Windows\system32\nvd3dum.dll 2015-03-13 21:43:34 ----A---- C:\Windows\system32\nvapi.dll 2015-03-13 17:57:35 ----A---- C:\Windows\system32\nvsvc.dll 2015-03-13 17:57:35 ----A---- C:\Windows\system32\nvcpl.dll 2015-03-13 17:57:33 ----A---- C:\Windows\system32\nvvsvc.exe 2015-03-13 17:57:33 ----A---- C:\Windows\system32\nvsvcr.dll 2015-03-13 17:57:33 ----A---- C:\Windows\system32\nvshext.dll 2015-03-13 17:57:32 ----A---- C:\Windows\system32\nvmctray.dll 2015-03-13 14:37:02 ----D---- C:\Windows\rescache 2015-03-13 12:54:29 ----D---- C:\Windows\system32\en-US 2015-03-13 12:54:29 ----D---- C:\Program Files\Internet Explorer 2015-03-13 12:54:27 ----D---- C:\Windows\system32\nl-NL 2015-03-13 12:54:24 ----D---- C:\Program Files\Windows Media Player 2015-03-13 12:54:22 ----D---- C:\Windows\system32\Dism 2015-03-13 12:54:19 ----D---- C:\Windows\system32\CodeIntegrity 2015-03-13 12:54:19 ----D---- C:\Windows\system32\Boot ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 avc3;avc3; C:\Windows\system32\DRIVERS\avc3.sys [2013-12-02 778032] R0 gzflt;gzflt; C:\Windows\system32\DRIVERS\gzflt.sys [2013-08-23 165744] R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2014-10-09 1934488] R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2014-10-09 26776] R0 iusb3hcs;Intel(R) USB 3.0 hostcontrollerswitch-stuurprogramma; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2015-01-27 19216] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440] R0 trufos;trufos; C:\Windows\system32\DRIVERS\trufos.sys [2013-08-07 360376] R1 BdfNdisf;BitDefender Firewall NDIS 6 Filter Driver; \??\c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [2013-02-22 78144] R1 bdfwfpf;bdfwfpf; \??\C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [2011-11-14 90704] R1 bdselfpr;bdselfpr; \??\C:\Program Files\Bitdefender\Bitdefender\bdselfpr.sys [2013-07-26 135600] R1 BDVEDISK;BDVEDISK; C:\Windows\system32\DRIVERS\bdvedisk.sys [2012-04-17 72704] R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128] R3 athr;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2014-08-11 3270144] R3 avchv;avchv Function Driver; C:\Windows\system32\DRIVERS\avchv.sys [2012-11-02 242504] R3 avckf;avckf; C:\Windows\system32\DRIVERS\avckf.sys [2013-12-02 516936] R3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2014-03-25 506664] R3 BthEnum;Bluetooth-stuurprogramma voor aanvraagblok; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 34816] R3 BthPan;Bluetooth-apparaat (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696] R3 BTHUSB;USB-stuurprogramma voor Bluetooth-radio; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416] R3 dptf_pch;dptf_pch; C:\Windows\system32\DRIVERS\dptf_pch.sys [2014-09-18 35064] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2014-12-03 3365208] R3 iusb3hub;Intel(R) USB 3.0 hub-stuurprogramma; C:\Windows\system32\DRIVERS\iusb3hub.sys [2015-01-27 388368] R3 iusb3xhc;Intel(R) USB 3.0 uitbreidbare hostcontroller-stuurprogramma; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2015-01-27 808720] R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2015-02-23 161424] R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-03-08 18760] R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad32v.sys [2014-11-22 32912] R3 RFCOMM;Bluetooth-apparaat (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536] R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2014-08-27 719576] R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-07-30 27888] R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336] S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704] S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720] S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312] S3 ampa;ampa; \??\C:\Windows\system32\ampa.sys [2013-12-18 14448] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888] S3 bdfwfpf_pc;bdfwfpf_pc; \??\C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [2013-07-02 108008] S3 BDSandBox;BDSandBox; \??\C:\Windows\system32\drivers\bdsandbox.sys [2013-11-04 66832] S3 BTHPORT;Stuurprogramma voor Bluetooth-poort; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728] S3 DptfDevPch;DptfDevPch; C:\Windows\system32\DRIVERS\DptfDevPch.sys [2013-10-14 103256] S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848] S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUVStor.sys [2014-02-27 247000] S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304] S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152] S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264] S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328] S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-03-08 919240] R2 NvNetworkService;NVIDIA Network Service; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-03-08 1878856] R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-03-08 20639432] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-03-13 670352] R2 SafeBox;SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [2013-07-08 81704] R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-03-13 411848] R2 UPDATESRV;Bitdefender Desktop Update Service; C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe [2014-03-15 54424] R2 VSSERV;Bitdefender Virus Shield; C:\Program Files\Bitdefender\Bitdefender\vsserv.exe [2014-03-24 1248712] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-03-17 268464] S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-02-20 102912] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-04-08 148080] S4 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744] S4 BdDesktopParental;Bitdefender Desktop Parental Control; C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe [2014-03-15 69880] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944] -----------------EOF-----------------