Logfile of random's system information tool 1.10 (written by random/random) Run by Tanju at 2015-04-27 23:17:40 Microsoft Windows 7 Home Premium Service Pack 1 System drive C: has 509 MB (2%) free of 31 GB Total RAM: 16328 MB (79% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 23:17:41, on 27/04/2015 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v8.00 (8.00.7601.17514) Boot mode: Normal Running processes: C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe E:\Program Files (x86)\Steam\Steam.exe C:\Users\Tanju\AppData\Roaming\Spotify\SpotifyWebHelper.exe C:\Users\Tanju\AppData\Roaming\Spotify\Spotify.exe C:\Users\Tanju\AppData\Roaming\Spotify\SpotifyCrashService.exe C:\Users\Tanju\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe E:\Program Files\AVAST Software\Avast\AvastUI.exe C:\Users\Tanju\AppData\Roaming\Spotify\Spotify.exe C:\Users\Tanju\AppData\Roaming\Spotify\Spotify.exe E:\Program Files (x86)\Steam\bin\steamwebhelper.exe E:\Program Files (x86)\Steam\bin\steamwebhelper.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files\trend micro\Tanju.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe, O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - E:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office15\URLREDIR.DLL O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~2\Office15\GROOVEEX.DLL O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" O4 - HKLM\..\Run: [AvastUI.exe] "E:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui O4 - HKCU\..\Run: [Steam] "E:\Program Files (x86)\Steam\steam.exe" -silent O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Tanju\AppData\Roaming\Spotify\SpotifyWebHelper.exe" O4 - HKCU\..\Run: [DAEMON Tools Lite] "E:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [CCleaner Monitoring] "E:\Program Files\CCleaner\CCleaner64.exe" /MONITOR O4 - HKCU\..\Run: [WarThunderLauncher] E:\Program Files (x86)\WarThunder\launcher.exe O4 - HKCU\..\Run: [Spotify] "C:\Users\Tanju\AppData\Roaming\Spotify\Spotify.exe" -autostart O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - Startup: Dropbox.lnk = C:\Users\Tanju\AppData\Roaming\Dropbox\bin\Dropbox.exe O8 - Extra context menu item: &Verzenden naar OneNote - res://E:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://E:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000 O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll O9 - Extra button: Lync - klikken om te bellen - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll O9 - Extra 'Tools' menuitem: Lync - klikken om te bellen - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - E:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - E:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - E:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Ad-Aware Service 11 (LavasoftAdAwareService11) - Unknown owner - E:\Program Files (x86)\Ad-Aware Antivirus\11.6.306.7947\AdAwareService.exe O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: MBAMService - Malwarebytes Corporation - E:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Service KMSELDI - @ByELDI - E:\Program Files\KMSpico\Service_KMS.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 10117 bytes ======Listing Processes====== \SystemRoot\System32\smss.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 wininit.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 C:\Windows\system32\services.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch winlogon.exe "C:\Windows\system32\nvvsvc.exe" "C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe" C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService "C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe" C:\Windows\system32\nvvsvc.exe -session -first "E:\Program Files\AVAST Software\Avast\AvastSvc.exe" "C:\Windows\system32\Dwm.exe" C:\Windows\Explorer.EXE "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" "E:\Program Files (x86)\Ad-Aware Antivirus\11.6.306.7947\AdAwareTray.exe" "E:\Program Files (x86)\Steam\Steam.exe" -silent "C:\Users\Tanju\AppData\Roaming\Spotify\SpotifyWebHelper.exe" "C:\Users\Tanju\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized "C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun "C:\Users\Tanju\AppData\Roaming\Spotify\SpotifyCrashService.exe" "E:\Program Files\CCleaner\CCleaner64.exe" /MONITOR "C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1 "C:\Users\Tanju\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" "E:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui "taskhost.exe" C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" "C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe" "C:\Users\Tanju\AppData\Roaming\Spotify\Spotify.exe" --type=gpu-process --channel="1976.0.1777972316\839267915" --no-sandbox --disable-d3d11 --enable-crash-reporter --lang=en-US --log-severity=disable --product-version=Spotify/1.0.4.90 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,17,38,46 --gpu-vendor-id=0x10de --gpu-device-id=0x05eb --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.4144 --enable-crash-reporter --lang=en-US --log-severity=disable --product-version=Spotify/1.0.4.90 /prefetch:822062411 "C:\Users\Tanju\AppData\Roaming\Spotify\Spotify.exe" --type=renderer --force-device-scale-factor=1 --no-sandbox --enable-deferred-image-decoding --lang=en-US --enable-crash-reporter --lang=en-US --log-severity=disable --product-version=Spotify/1.0.4.90 --disable-spell-checking --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="1976.1.517645722\889209879" /prefetch:673131151 "E:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cefhost -cachedir "C:\Users\Tanju\AppData\Local\Steam\htmlcache" -steampid 1960 -buildid 1428965940 -steamid "0" --blacklist-accelerated-compositing --process-per-tab --disable-accelerated-video-decode --enable-direct-write "E:\Program Files (x86)\Ad-Aware Antivirus\11.6.306.7947\AdAwareService.exe" "C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe" "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" C:\Windows\system32\svchost.exe -k imgsvc "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 7a2f20ea-8e7f-4159-9a9d-6b11701e1de8 1 "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp \??\C:\Windows\system32\conhost.exe \??\C:\Windows\system32\conhost.exe C:\Windows\system32\wbem\unsecapp.exe -Embedding C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation "E:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe" "C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-4c9cfb88-cac9-46dc-a13b-4128269a2c8d -SystemEventPortName:HostProcess-a5d0d69e-dea3-4265-9f04-2cc2a6371ed5 -IoCancelEventPortName:HostProcess-be26a804-734e-4a36-8cb7-5cbccafcb155 -NonStateChangingEventPortName:HostProcess-aa491697-d872-4dcd-b167-c4fb0ee146a9 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:4cb7408f-1350-4515-b3fe-efdd06ffe5c2 "C:\Program Files\Windows Media Player\wmpnetwk.exe" C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\servicing\TrustedInstaller.exe C:\Windows\system32\msiexec.exe /V C:\Windows\system32\SearchIndexer.exe /Embedding "C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe" C:\Windows\System32\svchost.exe -k secsvcs "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe" "C:\Windows\system32\SearchFilterHost.exe" 0 540 544 552 65536 548 C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\system32\sppsvc.exe "C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE" "E:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-accelerated-video-decode --disable-delegated-renderer --disable-gpu-compositing --disable-threaded-compositing --enable-pinch --enable-software-compositing --no-sandbox --enable-direct-write --lang=en-US --lang=en-US --product-version="Valve Steam Client" --disable-accelerated-compositing --disable-gpu-compositing --channel="3000.0.2100370333\1292113425" /prefetch:673131151 taskeng.exe {1E8A35A9-AAE4-4B82-8017-975CFD44107E} "E:\Program Files\Core Temp\Core Temp.exe" "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1360.0.1366618843\84345481" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,41,50 --gpu-vendor-id=0x10de --gpu-device-id=0x05eb --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.4144 --ignored=" --type=renderer " /prefetch:822062411 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BackgroundRendererProcesses/Disallow/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Manual install/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A4_Stable_R8/*PasswordGeneration/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Default/*SafeBrowsingIncidentReportingService/Default/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_94/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_01/*UMA-Uniformity-Trial-50-Percent/default/*UwSInterstitialStatus/On/*V8CacheOptions/heuristics/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/*Win32kLockdown/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=1360 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="1360.2.737483445\703961017" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="*BackgroundRendererProcesses/Disallow/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Manual install/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A4_Stable_R8/*PasswordGeneration/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Default/*SafeBrowsingIncidentReportingService/Default/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_94/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_01/*UMA-Uniformity-Trial-50-Percent/default/*UwSInterstitialStatus/On/*V8CacheOptions/heuristics/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/*Win32kLockdown/Disabled/" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=1360 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="1360.6.420160510\1724043001" /prefetch:673131151 "E:\Downloads\RSITx64 (1).exe" ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}] Lync Browser Helper - E:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-09-25 218784] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}] avast! Online Security - E:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-04-26 662672] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] Office Document Cache Handler - E:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2014-01-23 881880] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}] Microsoft SkyDrive Pro Browser Helper - E:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2014-09-16 2334416] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}] Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-01-21 153248] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}] avast! Online Security - E:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-26 565304] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] Office Document Cache Handler - C:\PROGRA~2\MICROS~2\Office15\URLREDIR.DLL [2014-01-21 707800] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}] Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~2\Office15\GROOVEEX.DLL [2014-01-21 1728216] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-03-04 8461528] "NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-01-16 2585744] "ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-01-16 1514528] ""= [] "AdAwareTray"=E:\Program Files (x86)\Ad-Aware Antivirus\11.6.306.7947\AdAwareTray.exe [2015-03-10 9566192] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Steam"=E:\Program Files (x86)\Steam\steam.exe [2015-04-14 2889408] "Spotify Web Helper"=C:\Users\Tanju\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2015-04-26 2020920] "DAEMON Tools Lite"=E:\Program Files\DAEMON Tools Lite\DTLite.exe [2015-03-31 5585136] "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584] "CCleaner Monitoring"=E:\Program Files\CCleaner\CCleaner64.exe [2015-04-23 8204056] "WarThunderLauncher"=E:\Program Files (x86)\WarThunder\launcher.exe [2015-04-01 6003248] "Spotify"=C:\Users\Tanju\AppData\Roaming\Spotify\Spotify.exe [2015-04-26 7168568] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288] "AvastUI.exe"=E:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-04-26 5515496] C:\Users\Tanju\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup Dropbox.lnk - C:\Users\Tanju\AppData\Roaming\Dropbox\bin\Dropbox.exe [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=0 "ConsentPromptBehaviorUser"=3 "EnableLUA"=0 "EnableUIADesktopToggle"=0 "PromptOnSecureDesktop"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "SoftwareSASGeneration"=1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoActiveDesktop"=1 "NoActiveDesktopChanges"=1 "ForceActiveDesktopOn"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvyu"=msyuv.dll "vidc.iyuv"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "vidc.yvu9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2015-04-27 23:17:40 ----D---- C:\rsit 2015-04-27 23:14:20 ----A---- C:\Windows\system32\Vestris.ResourceLib.dll 2015-04-27 23:04:32 ----D---- C:\Windows\SYSWOW64\.launcher_log 2015-04-27 22:31:37 ----D---- C:\Program Files\Common Files\DESIGNER 2015-04-27 22:31:29 ----D---- C:\Program Files\Microsoft.NET 2015-04-27 22:31:29 ----D---- C:\Program Files (x86)\Microsoft SQL Server 2015-04-27 22:31:26 ----D---- C:\ProgramData\regid.1991-06.com.microsoft 2015-04-27 22:31:22 ----D---- C:\Program Files (x86)\Mozilla Firefox 2015-04-27 22:31:20 ----D---- C:\Windows\PCHEALTH 2015-04-27 22:31:20 ----D---- C:\Program Files\Microsoft SQL Server 2015-04-27 22:30:47 ----D---- C:\Program Files\Microsoft Analysis Services 2015-04-27 22:30:47 ----D---- C:\Program Files (x86)\Microsoft Analysis Services 2015-04-27 22:30:45 ----D---- C:\Program Files (x86)\Microsoft Office 2015-04-27 22:30:43 ----D---- C:\ProgramData\Microsoft Help 2015-04-27 22:12:02 ----D---- C:\Program Files\trend micro 2015-04-27 21:36:53 ----A---- C:\Windows\system32\perfi013.dat 2015-04-27 21:36:53 ----A---- C:\Windows\system32\perfh013.dat 2015-04-27 21:36:53 ----A---- C:\Windows\system32\perfd013.dat 2015-04-27 21:36:53 ----A---- C:\Windows\system32\perfc013.dat 2015-04-27 21:36:37 ----D---- C:\Windows\SYSWOW64\nl 2015-04-27 21:36:37 ----D---- C:\Windows\SYSWOW64\0413 2015-04-27 21:36:37 ----D---- C:\Windows\nl-NL 2015-04-27 21:36:34 ----D---- C:\Windows\SYSWOW64\XPSViewer 2015-04-27 21:36:34 ----D---- C:\Windows\SYSWOW64\drivers\nl-NL 2015-04-27 21:36:33 ----D---- C:\Windows\system32\nl 2015-04-27 21:36:33 ----D---- C:\Windows\system32\0413 2015-04-27 21:36:29 ----D---- C:\Windows\system32\drivers\nl-NL 2015-04-27 21:03:37 ----D---- C:\Users\Tanju\AppData\Roaming\Adobe 2015-04-27 21:03:14 ----A---- C:\Windows\system32\wups2.dll 2015-04-27 21:03:14 ----A---- C:\Windows\system32\wucltux.dll 2015-04-27 21:03:14 ----A---- C:\Windows\system32\wuaueng.dll 2015-04-27 21:03:14 ----A---- C:\Windows\system32\wuauclt.exe 2015-04-27 21:03:09 ----D---- C:\Program Files (x86)\Adobe 2015-04-27 21:03:09 ----A---- C:\Windows\SYSWOW64\wups.dll 2015-04-27 21:03:09 ----A---- C:\Windows\SYSWOW64\wudriver.dll 2015-04-27 21:03:09 ----A---- C:\Windows\SYSWOW64\wuapi.dll 2015-04-27 21:03:09 ----A---- C:\Windows\system32\wups.dll 2015-04-27 21:03:09 ----A---- C:\Windows\system32\wudriver.dll 2015-04-27 21:03:09 ----A---- C:\Windows\system32\wuapi.dll 2015-04-27 21:03:08 ----A---- C:\Windows\SYSWOW64\wuwebv.dll 2015-04-27 21:03:08 ----A---- C:\Windows\SYSWOW64\wuapp.exe 2015-04-27 21:03:08 ----A---- C:\Windows\system32\wuwebv.dll 2015-04-27 21:03:08 ----A---- C:\Windows\system32\wuapp.exe 2015-04-27 21:02:57 ----D---- C:\ProgramData\Adobe 2015-04-27 13:06:50 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys 2015-04-27 13:06:41 ----D---- C:\ProgramData\Malwarebytes 2015-04-27 13:06:41 ----A---- C:\Windows\system32\drivers\mwac.sys 2015-04-27 13:06:41 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys 2015-04-27 13:06:41 ----A---- C:\Windows\system32\drivers\mbam.sys 2015-04-27 11:56:36 ----D---- C:\Users\Tanju\AppData\Roaming\LavasoftStatistics 2015-04-27 11:54:58 ----D---- C:\Users\Tanju\AppData\Roaming\Lavasoft 2015-04-27 11:54:57 ----D---- C:\Program Files\Common Files\Lavasoft 2015-04-27 11:54:35 ----D---- C:\ProgramData\Lavasoft 2015-04-27 11:54:03 ----A---- C:\Windows\wininit.ini 2015-04-27 11:47:28 ----D---- C:\ProgramData\Spybot - Search & Destroy 2015-04-27 11:26:49 ----D---- C:\Users\Tanju\AppData\Roaming\DAEMON Tools Lite 2015-04-27 11:26:49 ----A---- C:\Windows\system32\drivers\dtlitescsibus.sys 2015-04-27 11:26:18 ----D---- C:\ProgramData\DAEMON Tools Lite 2015-04-27 03:14:30 ----D---- C:\Windows\Panther 2015-04-26 20:04:32 ----D---- C:\Users\Tanju\AppData\Roaming\TS3Client 2015-04-26 20:03:09 ----D---- C:\Users\Tanju\AppData\Roaming\teamspeak2 2015-04-26 19:25:55 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll 2015-04-26 19:25:55 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll 2015-04-26 19:25:55 ----A---- C:\Windows\system32\XAudio2_7.dll 2015-04-26 19:25:55 ----A---- C:\Windows\system32\XAPOFX1_5.dll 2015-04-26 19:25:54 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll 2015-04-26 19:25:54 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll 2015-04-26 19:25:54 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll 2015-04-26 19:25:54 ----A---- C:\Windows\system32\xactengine3_7.dll 2015-04-26 19:25:54 ----A---- C:\Windows\system32\d3dcsx_43.dll 2015-04-26 19:25:54 ----A---- C:\Windows\system32\D3DCompiler_43.dll 2015-04-26 19:25:52 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll 2015-04-26 19:25:52 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll 2015-04-26 19:25:52 ----A---- C:\Windows\system32\XAudio2_6.dll 2015-04-26 19:25:52 ----A---- C:\Windows\system32\XAPOFX1_4.dll 2015-04-26 19:25:51 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll 2015-04-26 19:25:51 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll 2015-04-26 19:25:51 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll 2015-04-26 19:25:51 ----A---- C:\Windows\system32\XAudio2_5.dll 2015-04-26 19:25:51 ----A---- C:\Windows\system32\xactengine3_6.dll 2015-04-26 19:25:51 ----A---- C:\Windows\system32\X3DAudio1_7.dll 2015-04-26 19:25:50 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll 2015-04-26 19:25:50 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll 2015-04-26 19:25:50 ----A---- C:\Windows\system32\xactengine3_5.dll 2015-04-26 19:25:50 ----A---- C:\Windows\system32\D3DCompiler_42.dll 2015-04-26 19:25:49 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll 2015-04-26 19:25:49 ----A---- C:\Windows\system32\d3dcsx_42.dll 2015-04-26 19:25:48 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll 2015-04-26 19:25:48 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll 2015-04-26 19:25:48 ----A---- C:\Windows\system32\d3dx11_42.dll 2015-04-26 19:25:48 ----A---- C:\Windows\system32\d3dx10_42.dll 2015-04-26 19:25:47 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll 2015-04-26 19:25:47 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll 2015-04-26 19:25:47 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll 2015-04-26 19:25:47 ----A---- C:\Windows\system32\D3DX9_42.dll 2015-04-26 19:25:47 ----A---- C:\Windows\system32\d3dx10_41.dll 2015-04-26 19:25:47 ----A---- C:\Windows\system32\D3DCompiler_41.dll 2015-04-26 19:25:46 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll 2015-04-26 19:25:46 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll 2015-04-26 19:25:46 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll 2015-04-26 19:25:46 ----A---- C:\Windows\system32\XAudio2_4.dll 2015-04-26 19:25:46 ----A---- C:\Windows\system32\XAPOFX1_3.dll 2015-04-26 19:25:46 ----A---- C:\Windows\system32\D3DX9_41.dll 2015-04-26 19:25:45 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll 2015-04-26 19:25:45 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll 2015-04-26 19:25:45 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll 2015-04-26 19:25:45 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll 2015-04-26 19:25:45 ----A---- C:\Windows\system32\xactengine3_4.dll 2015-04-26 19:25:45 ----A---- C:\Windows\system32\X3DAudio1_6.dll 2015-04-26 19:25:45 ----A---- C:\Windows\system32\d3dx10_40.dll 2015-04-26 19:25:45 ----A---- C:\Windows\system32\D3DCompiler_40.dll 2015-04-26 19:25:44 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll 2015-04-26 19:25:44 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll 2015-04-26 19:25:44 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll 2015-04-26 19:25:44 ----A---- C:\Windows\system32\XAudio2_3.dll 2015-04-26 19:25:44 ----A---- C:\Windows\system32\XAPOFX1_2.dll 2015-04-26 19:25:44 ----A---- C:\Windows\system32\D3DX9_40.dll 2015-04-26 19:25:43 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll 2015-04-26 19:25:43 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll 2015-04-26 19:25:43 ----A---- C:\Windows\system32\xactengine3_3.dll 2015-04-26 19:25:43 ----A---- C:\Windows\system32\X3DAudio1_5.dll 2015-04-26 19:25:42 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll 2015-04-26 19:25:42 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll 2015-04-26 19:25:42 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll 2015-04-26 19:25:42 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll 2015-04-26 19:25:42 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll 2015-04-26 19:25:42 ----A---- C:\Windows\system32\XAudio2_2.dll 2015-04-26 19:25:42 ----A---- C:\Windows\system32\XAPOFX1_1.dll 2015-04-26 19:25:42 ----A---- C:\Windows\system32\xactengine3_2.dll 2015-04-26 19:25:42 ----A---- C:\Windows\system32\d3dx10_39.dll 2015-04-26 19:25:42 ----A---- C:\Windows\system32\D3DCompiler_39.dll 2015-04-26 19:25:41 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll 2015-04-26 19:25:41 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll 2015-04-26 19:25:41 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll 2015-04-26 19:25:41 ----A---- C:\Windows\system32\XAudio2_1.dll 2015-04-26 19:25:41 ----A---- C:\Windows\system32\XAPOFX1_0.dll 2015-04-26 19:25:41 ----A---- C:\Windows\system32\D3DX9_39.dll 2015-04-26 19:25:40 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll 2015-04-26 19:25:40 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll 2015-04-26 19:25:40 ----A---- C:\Windows\system32\xactengine3_1.dll 2015-04-26 19:25:40 ----A---- C:\Windows\system32\X3DAudio1_4.dll 2015-04-26 19:25:39 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll 2015-04-26 19:25:39 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll 2015-04-26 19:25:39 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll 2015-04-26 19:25:39 ----A---- C:\Windows\system32\D3DX9_38.dll 2015-04-26 19:25:39 ----A---- C:\Windows\system32\d3dx10_38.dll 2015-04-26 19:25:39 ----A---- C:\Windows\system32\D3DCompiler_38.dll 2015-04-26 19:25:38 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll 2015-04-26 19:25:38 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll 2015-04-26 19:25:38 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll 2015-04-26 19:25:38 ----A---- C:\Windows\system32\XAudio2_0.dll 2015-04-26 19:25:38 ----A---- C:\Windows\system32\xactengine3_0.dll 2015-04-26 19:25:38 ----A---- C:\Windows\system32\X3DAudio1_3.dll 2015-04-26 19:25:37 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll 2015-04-26 19:25:37 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll 2015-04-26 19:25:37 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll 2015-04-26 19:25:37 ----A---- C:\Windows\system32\D3DX9_37.dll 2015-04-26 19:25:37 ----A---- C:\Windows\system32\d3dx10_37.dll 2015-04-26 19:25:37 ----A---- C:\Windows\system32\D3DCompiler_37.dll 2015-04-26 19:25:36 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll 2015-04-26 19:25:36 ----A---- C:\Windows\system32\xactengine2_10.dll 2015-04-26 19:25:35 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll 2015-04-26 19:25:35 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll 2015-04-26 19:25:35 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll 2015-04-26 19:25:35 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll 2015-04-26 19:25:35 ----A---- C:\Windows\system32\xactengine2_9.dll 2015-04-26 19:25:35 ----A---- C:\Windows\system32\d3dx9_36.dll 2015-04-26 19:25:35 ----A---- C:\Windows\system32\d3dx10_36.dll 2015-04-26 19:25:35 ----A---- C:\Windows\system32\D3DCompiler_36.dll 2015-04-26 19:25:34 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll 2015-04-26 19:25:34 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll 2015-04-26 19:25:34 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll 2015-04-26 19:25:34 ----A---- C:\Windows\system32\d3dx9_35.dll 2015-04-26 19:25:34 ----A---- C:\Windows\system32\d3dx10_35.dll 2015-04-26 19:25:34 ----A---- C:\Windows\system32\D3DCompiler_35.dll 2015-04-26 19:25:33 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll 2015-04-26 19:25:33 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll 2015-04-26 19:25:33 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll 2015-04-26 19:25:33 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll 2015-04-26 19:25:33 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll 2015-04-26 19:25:33 ----A---- C:\Windows\system32\xactengine2_8.dll 2015-04-26 19:25:33 ----A---- C:\Windows\system32\X3DAudio1_2.dll 2015-04-26 19:25:33 ----A---- C:\Windows\system32\d3dx9_34.dll 2015-04-26 19:25:33 ----A---- C:\Windows\system32\d3dx10_34.dll 2015-04-26 19:25:33 ----A---- C:\Windows\system32\D3DCompiler_34.dll 2015-04-26 19:25:32 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll 2015-04-26 19:25:32 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll 2015-04-26 19:25:32 ----A---- C:\Windows\system32\xinput1_3.dll 2015-04-26 19:25:32 ----A---- C:\Windows\system32\xactengine2_7.dll 2015-04-26 19:25:31 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll 2015-04-26 19:25:31 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll 2015-04-26 19:25:31 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll 2015-04-26 19:25:31 ----A---- C:\Windows\system32\d3dx9_33.dll 2015-04-26 19:25:31 ----A---- C:\Windows\system32\d3dx10_33.dll 2015-04-26 19:25:31 ----A---- C:\Windows\system32\D3DCompiler_33.dll 2015-04-26 19:25:30 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll 2015-04-26 19:25:30 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll 2015-04-26 19:25:30 ----A---- C:\Windows\SYSWOW64\d3dx10.dll 2015-04-26 19:25:30 ----A---- C:\Windows\system32\xactengine2_6.dll 2015-04-26 19:25:30 ----A---- C:\Windows\system32\xactengine2_5.dll 2015-04-26 19:25:30 ----A---- C:\Windows\system32\d3dx10.dll 2015-04-26 19:25:29 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll 2015-04-26 19:25:29 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll 2015-04-26 19:25:29 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll 2015-04-26 19:25:29 ----A---- C:\Windows\system32\xactengine2_4.dll 2015-04-26 19:25:29 ----A---- C:\Windows\system32\x3daudio1_1.dll 2015-04-26 19:25:29 ----A---- C:\Windows\system32\d3dx9_32.dll 2015-04-26 19:25:28 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll 2015-04-26 19:25:28 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll 2015-04-26 19:25:28 ----A---- C:\Windows\system32\xactengine2_3.dll 2015-04-26 19:25:28 ----A---- C:\Windows\system32\d3dx9_31.dll 2015-04-26 19:25:27 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll 2015-04-26 19:25:27 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll 2015-04-26 19:25:27 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll 2015-04-26 19:25:27 ----A---- C:\Windows\system32\xinput1_2.dll 2015-04-26 19:25:27 ----A---- C:\Windows\system32\xinput1_1.dll 2015-04-26 19:25:27 ----A---- C:\Windows\system32\xactengine2_2.dll 2015-04-26 19:25:26 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll 2015-04-26 19:25:26 ----A---- C:\Windows\system32\xactengine2_1.dll 2015-04-26 19:25:25 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll 2015-04-26 19:25:25 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll 2015-04-26 19:25:25 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll 2015-04-26 19:25:25 ----A---- C:\Windows\system32\xactengine2_0.dll 2015-04-26 19:25:25 ----A---- C:\Windows\system32\x3daudio1_0.dll 2015-04-26 19:25:25 ----A---- C:\Windows\system32\d3dx9_30.dll 2015-04-26 19:25:24 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll 2015-04-26 19:25:24 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll 2015-04-26 19:25:24 ----A---- C:\Windows\system32\d3dx9_29.dll 2015-04-26 19:25:24 ----A---- C:\Windows\system32\d3dx9_28.dll 2015-04-26 19:25:23 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll 2015-04-26 19:25:23 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll 2015-04-26 19:25:23 ----A---- C:\Windows\system32\d3dx9_27.dll 2015-04-26 19:25:23 ----A---- C:\Windows\system32\d3dx9_26.dll 2015-04-26 19:25:22 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll 2015-04-26 19:25:22 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll 2015-04-26 19:25:22 ----A---- C:\Windows\system32\d3dx9_25.dll 2015-04-26 19:25:22 ----A---- C:\Windows\system32\d3dx9_24.dll 2015-04-26 19:16:40 ----D---- C:\Users\Tanju\AppData\Roaming\vlc 2015-04-26 19:03:31 ----D---- C:\Users\Tanju\AppData\Roaming\Spotify 2015-04-26 18:55:57 ----D---- C:\Program Files\Microsoft Silverlight 2015-04-26 18:55:57 ----D---- C:\Program Files (x86)\Microsoft Silverlight 2015-04-26 18:51:56 ----D---- C:\Users\Tanju\AppData\Roaming\WinRAR 2015-04-26 18:51:41 ----D---- C:\Program Files\WinRAR 2015-04-26 18:41:35 ----D---- C:\Users\Tanju\AppData\Roaming\Dropbox 2015-04-26 18:41:06 ----D---- C:\Users\Tanju\AppData\Roaming\AVAST Software 2015-04-26 18:38:49 ----D---- C:\Windows\SYSWOW64\vbox 2015-04-26 18:38:49 ----D---- C:\Windows\system32\vbox 2015-04-26 18:38:31 ----A---- C:\Windows\system32\drivers\aswVmm.sys 2015-04-26 18:38:31 ----A---- C:\Windows\system32\drivers\aswStm.sys 2015-04-26 18:38:31 ----A---- C:\Windows\system32\drivers\aswSP.sys 2015-04-26 18:38:31 ----A---- C:\Windows\system32\drivers\aswSnx.sys 2015-04-26 18:38:31 ----A---- C:\Windows\system32\drivers\aswRvrt.sys 2015-04-26 18:38:31 ----A---- C:\Windows\system32\drivers\aswRdr2.sys 2015-04-26 18:38:31 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys 2015-04-26 18:38:31 ----A---- C:\Windows\system32\drivers\aswHwid.sys 2015-04-26 18:38:30 ----A---- C:\Windows\system32\aswBoot.exe 2015-04-26 18:38:30 ----A---- C:\Windows\avastSS.scr 2015-04-26 18:24:06 ----D---- C:\ProgramData\AVAST Software 2015-04-26 18:20:20 ----D---- C:\Users\Tanju\AppData\Roaming\uTorrent 2015-04-26 17:53:42 ----D---- C:\Program Files\CPUID 2015-04-26 17:50:17 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll 2015-04-26 17:50:17 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll 2015-04-26 17:50:17 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll 2015-04-26 17:50:17 ----A---- C:\Windows\system32\D3DX9_43.dll 2015-04-26 17:50:17 ----A---- C:\Windows\system32\d3dx11_43.dll 2015-04-26 17:50:17 ----A---- C:\Windows\system32\d3dx10_43.dll 2015-04-26 17:50:08 ----A---- C:\Windows\SYSWOW64\nvspcap.dll 2015-04-26 17:50:08 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll 2015-04-26 17:50:08 ----A---- C:\Windows\system32\nvspcap64.dll 2015-04-26 17:50:08 ----A---- C:\Windows\system32\nvspbridge64.dll 2015-04-26 17:50:05 ----D---- C:\Program Files (x86)\AGEIA Technologies 2015-04-26 17:49:48 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe 2015-04-26 17:49:46 ----D---- C:\ProgramData\NVIDIA 2015-04-26 17:49:46 ----D---- C:\Program Files (x86)\NVIDIA Corporation 2015-04-26 17:49:40 ----A---- C:\Windows\system32\nvvsvc.exe 2015-04-26 17:49:40 ----A---- C:\Windows\system32\nvsvcr.dll 2015-04-26 17:49:40 ----A---- C:\Windows\system32\nvsvc64.dll 2015-04-26 17:49:40 ----A---- C:\Windows\system32\nvshext.dll 2015-04-26 17:49:40 ----A---- C:\Windows\system32\nvmctray.dll 2015-04-26 17:49:40 ----A---- C:\Windows\system32\nvcpl.dll 2015-04-26 17:49:34 ----A---- C:\Windows\SYSWOW64\OpenCL.dll 2015-04-26 17:49:34 ----A---- C:\Windows\system32\OpenCL.dll 2015-04-26 17:49:23 ----D---- C:\ProgramData\NVIDIA Corporation 2015-04-26 17:48:49 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI 2015-04-26 17:47:24 ----D---- C:\Program Files (x86)\Microsoft.NET 2015-04-26 17:46:52 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll 2015-04-26 17:46:52 ----A---- C:\Windows\SYSWOW64\nvopencl.dll 2015-04-26 17:46:52 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll 2015-04-26 17:46:52 ----A---- C:\Windows\SYSWOW64\NvIFR.dll 2015-04-26 17:46:52 ----A---- C:\Windows\SYSWOW64\NvFBC.dll 2015-04-26 17:46:52 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll 2015-04-26 17:46:52 ----A---- C:\Windows\SYSWOW64\nvcuda.dll 2015-04-26 17:46:52 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll 2015-04-26 17:46:52 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll 2015-04-26 17:46:52 ----A---- C:\Windows\SYSWOW64\nvapi.dll 2015-04-26 17:46:52 ----A---- C:\Windows\system32\nvopencl.dll 2015-04-26 17:46:52 ----A---- C:\Windows\system32\nvoglv64.dll 2015-04-26 17:46:52 ----A---- C:\Windows\system32\NvIFR64.dll 2015-04-26 17:46:52 ----A---- C:\Windows\system32\NvFBC64.dll 2015-04-26 17:46:52 ----A---- C:\Windows\system32\nvdispgenco6434144.dll 2015-04-26 17:46:52 ----A---- C:\Windows\system32\nvdispco6434144.dll 2015-04-26 17:46:52 ----A---- C:\Windows\system32\nvd3dumx.dll 2015-04-26 17:46:52 ----A---- C:\Windows\system32\nvcuvid.dll 2015-04-26 17:46:52 ----A---- C:\Windows\system32\nvcuda.dll 2015-04-26 17:46:52 ----A---- C:\Windows\system32\nvcompiler.dll 2015-04-26 17:46:52 ----A---- C:\Windows\system32\nvaudcap64v.dll 2015-04-26 17:46:52 ----A---- C:\Windows\system32\nvapi64.dll 2015-04-26 17:46:52 ----A---- C:\Windows\system32\drivers\nvvad64v.sys 2015-04-26 17:46:52 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys 2015-04-26 17:45:58 ----D---- C:\Program Files\NVIDIA Corporation 2015-04-26 17:41:44 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe 2015-04-26 17:41:43 ----D---- C:\Windows\SYSWOW64\Macromed 2015-04-26 17:41:39 ----D---- C:\Windows\system32\Macromed 2015-04-26 17:39:58 ----D---- C:\Program Files (x86)\Google 2015-04-26 17:34:33 ----D---- C:\Program Files (x86)\Renesas Electronics 2015-04-26 17:34:20 ----SHD---- C:\Windows\Installer 2015-04-26 17:34:19 ----D---- C:\ProgramData\Downloaded Installations 2015-04-26 17:33:25 ----A---- C:\Windows\system32\RTNUninst64.dll 2015-04-26 17:33:25 ----A---- C:\Windows\system32\RtNicProp64.dll 2015-04-26 17:33:25 ----A---- C:\Windows\system32\drivers\Rt64win7.sys 2015-04-26 17:30:26 ----D---- C:\Windows\SYSWOW64\RTCOM 2015-04-26 17:30:26 ----D---- C:\Program Files\Realtek 2015-04-26 17:30:16 ----A---- C:\Windows\SYSWOW64\MBTHX32.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\SRSWOW64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\SRSTSX64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\SRSTSH64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\SRSHP64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\RtPgEx64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\RtlCPAPI64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\RtkCoLDR64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\RtkCfg64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\RtkApi64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\RTEEP64A.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\RTEEL64A.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\RTEEG64A.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\RTEED64A.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\RtDataProc64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\RTCOM64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\RP3DHT64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\RP3DAA64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\RltkAPO64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\RCoInstII64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\MBWrp64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\MBTHX64.dll 2015-04-26 17:30:16 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys 2015-04-26 17:30:16 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT 2015-04-26 17:30:16 ----A---- C:\Windows\system32\drivers\MBfilt64.sys 2015-04-26 17:30:15 ----D---- C:\Program Files (x86)\Realtek 2015-04-26 17:30:15 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll 2015-04-26 17:30:15 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll 2015-04-26 17:30:15 ----A---- C:\Windows\system32\FMAPO64.dll 2015-04-26 17:30:15 ----A---- C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2015-04-26 17:30:15 ----A---- C:\Windows\system32\AERTAR64.dll 2015-04-26 17:30:15 ----A---- C:\Windows\system32\AERTAC64.dll 2015-04-26 17:30:06 ----HD---- C:\Program Files (x86)\Temp 2015-04-26 17:30:06 ----A---- C:\Windows\RtlExUpd.dll 2015-04-26 17:29:19 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll 2015-04-26 17:29:17 ----A---- C:\Windows\SYSWOW64\log.txt 2015-04-26 17:28:10 ----HD---- C:\Program Files (x86)\InstallShield Installation Information 2015-04-26 17:28:09 ----D---- C:\Users\Tanju\AppData\Roaming\InstallShield 2015-04-26 17:26:16 ----D---- C:\Program Files (x86)\Intel 2015-04-26 17:26:16 ----A---- C:\Windows\SYSWOW64\CSVer.dll 2015-04-26 17:26:10 ----D---- C:\Intel 2015-04-26 17:22:38 ----D---- C:\Windows\SoftwareDistribution 2015-04-26 17:20:51 ----D---- C:\Users\Tanju\AppData\Roaming\Identities 2015-04-26 17:20:48 ----SD---- C:\Users\Tanju\AppData\Roaming\Microsoft 2015-04-26 17:20:48 ----D---- C:\Users\Tanju\AppData\Roaming\Media Center Programs 2015-04-26 17:20:45 ----SHD---- C:\Recovery 2015-04-26 17:15:47 ----D---- C:\Windows\Prefetch 2015-04-26 17:15:36 ----SHD---- C:\System Volume Information 2015-04-26 17:15:36 ----ASH---- C:\hiberfil.sys ======List of files/folders modified in the last 1 month====== 2015-04-27 23:17:41 ----D---- C:\Windows\Temp 2015-04-27 23:14:20 ----D---- C:\Windows\System32 2015-04-27 23:12:50 ----D---- C:\Windows\system32\Tasks 2015-04-27 23:12:19 ----D---- C:\Windows\Microsoft.NET 2015-04-27 23:11:02 ----D---- C:\Windows\inf 2015-04-27 23:11:02 ----A---- C:\Windows\system32\PerfStringBackup.INI 2015-04-27 23:09:50 ----RSD---- C:\Windows\assembly 2015-04-27 23:07:21 ----D---- C:\Windows 2015-04-27 23:05:19 ----D---- C:\Windows\system32\config 2015-04-27 23:04:32 ----D---- C:\Windows\SysWOW64 2015-04-27 23:00:08 ----RD---- C:\Program Files (x86) 2015-04-27 22:33:06 ----RSD---- C:\Windows\Fonts 2015-04-27 22:32:05 ----D---- C:\Windows\system32\DriverStore 2015-04-27 22:31:39 ----D---- C:\Windows\ShellNew 2015-04-27 22:31:38 ----D---- C:\Program Files\Common Files\Microsoft Shared 2015-04-27 22:31:37 ----D---- C:\Program Files\Common Files 2015-04-27 22:31:29 ----RD---- C:\Program Files 2015-04-27 22:31:26 ----HD---- C:\ProgramData 2015-04-27 22:31:20 ----SD---- C:\ProgramData\Microsoft 2015-04-27 22:30:59 ----D---- C:\Program Files\Common Files\System 2015-04-27 22:30:59 ----A---- C:\Windows\win.ini 2015-04-27 21:39:39 ----D---- C:\Windows\winsxs 2015-04-27 21:38:21 ----D---- C:\Windows\SYSWOW64\nl-NL 2015-04-27 21:38:21 ----D---- C:\Windows\SYSWOW64\en-US 2015-04-27 21:38:21 ----D---- C:\Windows\system32\nl-NL 2015-04-27 21:38:21 ----D---- C:\Windows\system32\en-US 2015-04-27 21:38:06 ----D---- C:\Windows\system32\catroot 2015-04-27 21:38:04 ----D---- C:\Windows\system32\catroot2 2015-04-27 21:36:39 ----D---- C:\Program Files\Windows Sidebar 2015-04-27 21:36:39 ----D---- C:\Program Files\Windows Mail 2015-04-27 21:36:38 ----D---- C:\Windows\servicing 2015-04-27 21:36:38 ----D---- C:\Windows\ehome 2015-04-27 21:36:38 ----D---- C:\Program Files\Windows Photo Viewer 2015-04-27 21:36:38 ----D---- C:\Program Files\Windows Media Player 2015-04-27 21:36:38 ----D---- C:\Program Files\Windows Journal 2015-04-27 21:36:38 ----D---- C:\Program Files\Windows Defender 2015-04-27 21:36:38 ----D---- C:\Program Files\Internet Explorer 2015-04-27 21:36:38 ----D---- C:\Program Files\DVD Maker 2015-04-27 21:36:38 ----D---- C:\Program Files (x86)\Windows Sidebar 2015-04-27 21:36:38 ----D---- C:\Program Files (x86)\Windows Photo Viewer 2015-04-27 21:36:38 ----D---- C:\Program Files (x86)\Windows Media Player 2015-04-27 21:36:38 ----D---- C:\Program Files (x86)\Windows Mail 2015-04-27 21:36:38 ----D---- C:\Program Files (x86)\Windows Defender 2015-04-27 21:36:38 ----D---- C:\Program Files (x86)\Internet Explorer 2015-04-27 21:36:37 ----D---- C:\Windows\SYSWOW64\winrm 2015-04-27 21:36:37 ----D---- C:\Windows\SYSWOW64\sysprep 2015-04-27 21:36:37 ----D---- C:\Windows\SYSWOW64\slmgr 2015-04-27 21:36:37 ----D---- C:\Windows\SYSWOW64\oobe 2015-04-27 21:36:37 ----D---- C:\Windows\SYSWOW64\migwiz 2015-04-27 21:36:34 ----D---- C:\Windows\SYSWOW64\WCN 2015-04-27 21:36:34 ----D---- C:\Windows\SYSWOW64\Setup 2015-04-27 21:36:34 ----D---- C:\Windows\SYSWOW64\migration 2015-04-27 21:36:34 ----D---- C:\Windows\SYSWOW64\DriverStore 2015-04-27 21:36:34 ----D---- C:\Windows\SYSWOW64\drivers\UMDF 2015-04-27 21:36:34 ----D---- C:\Windows\SYSWOW64\drivers 2015-04-27 21:36:33 ----D---- C:\Windows\SYSWOW64\wbem 2015-04-27 21:36:33 ----D---- C:\Windows\SYSWOW64\Printing_Admin_Scripts 2015-04-27 21:36:33 ----D---- C:\Windows\SYSWOW64\MUI 2015-04-27 21:36:33 ----D---- C:\Windows\SYSWOW64\Dism 2015-04-27 21:36:33 ----D---- C:\Windows\SYSWOW64\com 2015-04-27 21:36:33 ----D---- C:\Windows\system32\winrm 2015-04-27 21:36:33 ----D---- C:\Windows\system32\sysprep 2015-04-27 21:36:33 ----D---- C:\Windows\system32\slmgr 2015-04-27 21:36:33 ----D---- C:\Windows\system32\oobe 2015-04-27 21:36:33 ----D---- C:\Windows\system32\migwiz 2015-04-27 21:36:33 ----D---- C:\Windows\system32\Boot 2015-04-27 21:36:33 ----D---- C:\Windows\PolicyDefinitions 2015-04-27 21:36:33 ----D---- C:\Windows\IME 2015-04-27 21:36:33 ----D---- C:\Windows\DigitalLocker 2015-04-27 21:36:29 ----D---- C:\Windows\system32\WinBioPlugIns 2015-04-27 21:36:29 ----D---- C:\Windows\system32\WCN 2015-04-27 21:36:29 ----D---- C:\Windows\system32\Setup 2015-04-27 21:36:29 ----D---- C:\Windows\system32\MUI 2015-04-27 21:36:29 ----D---- C:\Windows\system32\migration 2015-04-27 21:36:29 ----D---- C:\Windows\system32\drivers\UMDF 2015-04-27 21:36:29 ----D---- C:\Windows\system32\drivers 2015-04-27 21:36:29 ----D---- C:\Windows\system32\Dism 2015-04-27 21:36:27 ----D---- C:\Windows\system32\Printing_Admin_Scripts 2015-04-27 21:36:24 ----D---- C:\Windows\system32\wbem 2015-04-27 21:36:24 ----D---- C:\Windows\system32\com 2015-04-27 21:36:24 ----D---- C:\Windows\AppPatch 2015-04-27 21:33:39 ----D---- C:\Windows\Logs 2015-04-27 21:30:53 ----D---- C:\Windows\debug 2015-04-27 21:03:09 ----D---- C:\Program Files (x86)\Common Files 2015-04-27 20:53:54 ----D---- C:\Windows\Downloaded Program Files 2015-04-27 20:50:21 ----D---- C:\Windows\system32\wdi 2015-04-27 12:06:07 ----D---- C:\Windows\Tasks 2015-04-26 17:49:40 ----D---- C:\Windows\Help 2015-04-26 17:41:53 ----D---- C:\Windows\system32\CodeIntegrity 2015-04-26 17:30:08 ----D---- C:\Windows\system32\restore 2015-04-26 17:27:48 ----D---- C:\Windows\system32\NDF 2015-04-26 17:20:50 ----SHD---- C:\$Recycle.Bin 2015-04-26 17:20:48 ----RD---- C:\Users 2015-04-26 17:20:36 ----D---- C:\Windows\rescache ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-04-26 65736] R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-04-26 272248] R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888] R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2015-04-26 93528] R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-04-26 1047320] R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-04-26 442264] R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904] R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-04-26 29168] R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-04-26 89944] R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2015-04-26 137288] R2 VBoxAswDrv;VBoxAsw Support Driver; \??\E:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-04-26 273824] R3 ALSysIO;ALSysIO; \??\C:\Users\Tanju\AppData\Local\Temp\ALSysIO64.sys [] R3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtlitescsibus.sys [2015-04-27 30352] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2015-03-10 4430808] R3 ISCT;Intel(R) Smart Connect Technology Device Driver; C:\Windows\system32\DRIVERS\ISCTD64.sys [2013-01-19 46568] R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-04-14 25816] R3 MBfilt;MBfilt; C:\Windows\system32\drivers\MBfilt64.sys [2009-11-18 32344] R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2011-09-22 56600] R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2011-02-10 82432] R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2011-02-10 181760] R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-01-16 19600] R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-11-22 38032] R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2014-08-27 942808] R3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8192su.sys [2010-11-25 694888] S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-04-14 63704] S3 Trufos;Trufos; C:\Windows\system32\DRIVERS\Trufos.sys [2015-01-22 452040] S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392] S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232] S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-03-07 81088] R2 avast! Antivirus;Avast Antivirus; E:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-04-26 343336] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-01-16 1148560] R2 LavasoftAdAwareService11;Ad-Aware Service 11; E:\Program Files (x86)\Ad-Aware Antivirus\11.6.306.7947\AdAwareService.exe [2015-03-10 720760] R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-04-17 326424] R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-01-16 1706128] R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-01-16 21833360] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-02-04 932040] R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-02-04 409800] R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-04-17 2594584] R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; E:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-03-31 1277680] R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2014-01-23 5132888] S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-27 107848] S2 MBAMService;MBAMService; E:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-04-14 1080120] S2 Service KMSELDI;Service KMSELDI; E:\Program Files\KMSpico\Service_KMS.exe [2014-10-26 965776] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-26 268464] S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376] S3 AvastVBoxSvc;AvastVBox COM Service; E:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-04-26 4034896] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-27 107848] S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 178760] S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-04-14 836288] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] -----------------EOF-----------------