Logfile of random's system information tool 1.10 (written by random/random) Run by User at 2015-09-06 22:46:27 Microsoft® Windows Vista™ Home Premium Service Pack 2 System drive C: has 180 GB (74%) free of 244 GB Total RAM: 3070 MB (50% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 22:46:42, on 6-9-2015 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v9.00 (9.00.8112.16685) Boot mode: Normal Running processes: C:\Windows\system32\taskeng.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\AVAST Software\Avast\avastui.exe C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe C:\Program Files\Real\RealPlayer\Update\realsched.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Windows\ehome\ehtray.exe C:\Program Files\Internet Download Manager\IDMan.exe C:\Users\User\AppData\Roaming\uTorrent\uTorrent.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Users\User\AppData\Local\Chromium\Application\chrome.exe C:\Users\User\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Windows\ehome\ehmsas.exe C:\Program Files\Internet Download Manager\IEMonitor.exe C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE C:\Program Files\Common Files\Java\Java Update\jucheck.exe C:\Users\User\AppData\Local\Chromium\Application\chrome.exe C:\Users\User\AppData\Local\Chromium\Application\chrome.exe C:\Program Files\Internet Explorer\IELowutil.exe C:\Windows\system32\taskeng.exe C:\Users\User\Desktop\RSIT.exe C:\Program Files\trend micro\User.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://nl.search.yahoo.com/?fr=hp-ddc-bd&type=bl-bir-sw__alt__ddc_dsssyc_bd_com R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://nl.search.yahoo.com/?fr=hp-ddc-bd&type=bl-bir-sw__alt__ddc_dsssyc_bd_com R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui O4 - HKLM\..\Run: [CanonQuickMenu] C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE /logon O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Real\RealPlayer\Update\realsched.exe" -osboot O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [Qsocial] "C:\Program Files\QSocial\" /auto O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\User\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c O4 - HKCU\..\Run: [uTorrent] "C:\Users\User\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_EA977365BF5B2185FA52414E130E9AF9] "C:\Users\User\AppData\Local\Chromium\Application\chrome.exe" --auto-launch-at-startup --profile-directory="Default" --restore-last-session O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE') O4 - Startup: Dropbox.lnk = C:\Users\User\AppData\Roaming\Dropbox\bin\Dropbox.exe O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105 O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O8 - Extra context menu item: Download alle links met IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm O8 - Extra context menu item: Download met IDM - C:\Program Files\Internet Download Manager\IEExt.htm O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000 O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O17 - HKLM\System\CCS\Services\Tcpip\..\{A88F3133-776D-49CC-8168-588560886266}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL O20 - AppInit_DLLs: C:\PROGRA~2\{CA3922FA-9ABB-F37C-2B3D-83FEFBBF5070}\2.0.1.9\mole.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe O23 - Service: Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) - Alcohol Soft Development Team - C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Freemake Improver - Freemake - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe O23 - Service: Reimage Real Time Protector (ReimageRealTimeProtector) - Reimage® - C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- End of file - 9198 bytes ======Scheduled tasks folder====== C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-327359009-1007589901-1746626685-1000Core.job - C:\Users\User\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-327359009-1007589901-1746626685-1000UA.job - C:\Users\User\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}] IDM integration (IDMIEHlprObj Class) - C:\Program Files\Internet Download Manager\IDMIECC.dll [2014-08-20 417816] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}] RealNetworks Download and Record Plugin for Internet Explorer - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2014-08-12 542376] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}] Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07 176736] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 4171480] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll [2015-06-02 460384] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 562904] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-06-02 172640] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}] Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2013-10-08 448776] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07 4439128] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-10-14 2299176] "AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-08-25 6111824] "CanonQuickMenu"=C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [2013-05-02 1282120] "IJNetworkScannerSelectorEX"=C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [2013-02-19 453736] "TkBellExe"=C:\Program Files\Real\RealPlayer\Update\realsched.exe [2015-02-23 295512] "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2015-04-07 157480] "Qsocial"=C:\Program Files\QSocial\ /auto [] "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2015-04-30 334896] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-21 125952] "IDMan"=C:\Program Files\Internet Download Manager\IDMan.exe [2014-10-03 3882576] "WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240] "Dropbox Update"=C:\Users\User\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17 134512] "uTorrent"=C:\Users\User\AppData\Roaming\uTorrent\uTorrent.exe [2015-08-28 1696096] "GoogleChromeAutoLaunch_EA977365BF5B2185FA52414E130E9AF9"=C:\Users\User\AppData\Local\Chromium\Application\chrome.exe [2015-08-04 667136] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-05-08 959904] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount] C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BrowserChoice] C:\Windows\System32\browserchoice.exe [2010-02-12 293376] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2009-12-23 284696] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe [2015-04-07 157480] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon] C:\Windows\system32\NvCpl.dll [2009-10-03 13826664] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2008-08-01 202032] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl] C:\Windows\RtHDVCpl.exe [2008-01-14 4874240] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype] C:\Program Files\Skype\Phone\Skype.exe [2014-07-02 21644384] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2007-01-16 634880] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent] C:\Users\User\AppData\Roaming\uTorrent\uTorrent.exe [2015-08-28 1696096] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Wondershare Helper Compact.exe] C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2014-10-31 2072928] C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup Dropbox.lnk - C:\Users\User\AppData\Roaming\Dropbox\bin\Dropbox.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\PROGRA~2\{CA3922FA-9ABB-F37C-2B3D-83FEFBBF5070}\2.0.1.9\mole.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 4171480] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableUIADesktopToggle"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "BindDirectlyToPropertySetStorage"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "vidc.cvid"=iccvid.dll "MSVideo8"=VfWWDM32.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "vidc.dvsd"=pdvcodec.dll ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* .reg - edit - .reg - open - ======List of files/folders created in the last 1 month====== 2015-09-06 22:46:28 ----D---- C:\Program Files\trend micro 2015-09-06 22:46:27 ----D---- C:\rsit 2015-09-06 20:04:12 ----D---- C:\NewFolder 2015-09-06 19:56:36 ----D---- C:\verloren data 2015-09-06 19:23:03 ----D---- C:\Program Files\Common Files\iSkysoft 2015-09-06 19:22:47 ----D---- C:\Program Files\iSkysoft 2015-09-06 15:41:52 ----D---- C:\Users\User\AppData\Roaming\Macromedia 2015-09-06 15:41:10 ----D---- C:\Program Files\Wajam 2015-09-06 15:41:06 ----D---- C:\Program Files\WaIntEnhancer 2015-09-06 15:40:14 ----D---- C:\Program Files\NixSrv 2015-09-06 15:38:54 ----D---- C:\ProgramData\UkomdKai 2015-09-06 15:38:02 ----D---- C:\Program Files\d91a3f20-9236-450f-83ec-dbf373024eae 2015-09-06 15:36:34 ----D---- C:\ProgramData\WWdsManProW 2015-09-06 15:35:45 ----D---- C:\Program Files\MyBrowser 2015-09-06 15:35:16 ----D---- C:\ProgramData\28341ff220e0446c9fff27c4493d622e 2015-09-06 15:26:27 ----D---- C:\Program Files\Malwarebytes Anti-Malware 2015-09-06 15:25:58 ----D---- C:\Users\User\AppData\Roaming\Nico Mak Computing 2015-09-06 15:25:52 ----D---- C:\Program Files\WinZip Registry Optimizer 2015-09-06 15:13:14 ----D---- C:\Windows\system32\Macromed 2015-09-06 15:07:41 ----D---- C:\Program Files\SearchProtect 2015-09-06 15:06:47 ----D---- C:\Program Files\PC Speed Up 2015-09-06 15:05:46 ----D---- C:\Program Files\Crossbrowse 2015-09-06 15:04:42 ----D---- C:\Program Files\f68083fb-2dd8-4d3d-b1b5-91fab28784ed 2015-09-06 15:04:30 ----D---- C:\Program Files\globalUpdate 2015-09-06 15:04:08 ----D---- C:\Program Files\38464E43-1441544648-5433-4334-001E68091962 2015-09-06 15:03:20 ----D---- C:\Users\User\AppData\Roaming\Opera Software 2015-09-06 15:02:44 ----D---- C:\Program Files\Opera 2015-09-06 15:02:19 ----D---- C:\ProgramData\OWdsManProO 2015-09-06 15:02:19 ----A---- C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat 2015-09-06 13:25:28 ----A---- C:\Windows\system32\drivers\tmcomm.sys 2015-09-06 12:54:40 ----D---- C:\Program Files\Reimage 2015-09-06 12:54:25 ----D---- C:\rei 2015-09-06 12:53:52 ----A---- C:\Windows\Reimage.ini 2015-09-03 21:44:27 ----D---- C:\ProgramData\{CA3922FA-9ABB-F37C-2B3D-83FEFBBF5070} 2015-08-31 14:15:32 ----D---- C:\Users\User\AppData\Roaming\Unity 2015-08-27 17:09:58 ----A---- C:\Windows\system32\FNTCACHE.DAT 2015-08-19 22:23:03 ----A---- C:\Windows\system32\mshtml.dll 2015-08-19 22:23:03 ----A---- C:\Windows\system32\iertutil.dll 2015-08-12 22:00:14 ----A---- C:\Windows\system32\ntdll.dll 2015-08-12 22:00:14 ----A---- C:\Windows\system32\msmmsp.dll 2015-08-12 22:00:14 ----A---- C:\Windows\system32\drivers\mountmgr.sys 2015-08-12 22:00:14 ----A---- C:\Windows\system32\drivers\ecache.sys 2015-08-12 22:00:14 ----A---- C:\Windows\system32\csrsrv.dll 2015-08-12 22:00:13 ----A---- C:\Windows\system32\ntkrnlpa.exe 2015-08-12 22:00:13 ----A---- C:\Windows\system32\emdmgmt.dll 2015-08-12 22:00:12 ----A---- C:\Windows\system32\ntoskrnl.exe 2015-08-12 21:58:29 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-08-12 21:58:01 ----A---- C:\Windows\system32\drivers\srv.sys 2015-08-12 21:55:26 ----A---- C:\Windows\system32\shell32.dll 2015-08-12 21:44:53 ----D---- C:\132ef00412adbec62f9d7f3a 2015-08-12 21:43:19 ----A---- C:\Windows\system32\basesrv.dll 2015-08-12 21:39:43 ----A---- C:\Windows\system32\msxml6.dll 2015-08-12 21:39:43 ----A---- C:\Windows\system32\msxml3.dll 2015-08-12 21:36:59 ----A---- C:\Windows\system32\d3d10warp.dll 2015-08-12 21:36:59 ----A---- C:\Windows\system32\d3d10level9.dll 2015-08-12 21:36:59 ----A---- C:\Windows\system32\d3d10core.dll 2015-08-12 21:36:59 ----A---- C:\Windows\system32\d3d10_1core.dll 2015-08-12 21:36:59 ----A---- C:\Windows\system32\d3d10_1.dll 2015-08-12 21:36:59 ----A---- C:\Windows\system32\d2d1.dll 2015-08-12 21:36:59 ----A---- C:\Windows\system32\atmlib.dll 2015-08-12 21:36:59 ----A---- C:\Windows\system32\atmfd.dll 2015-08-12 21:36:58 ----A---- C:\Windows\system32\win32k.sys 2015-08-12 21:36:58 ----A---- C:\Windows\system32\FntCache.dll 2015-08-12 21:36:58 ----A---- C:\Windows\system32\DWrite.dll 2015-08-12 21:36:58 ----A---- C:\Windows\system32\d3d10.dll 2015-08-12 21:35:22 ----A---- C:\Windows\system32\WebClnt.dll 2015-08-12 21:34:59 ----A---- C:\Windows\system32\notepad.exe 2015-08-12 21:34:59 ----A---- C:\Windows\notepad.exe 2015-08-12 21:31:25 ----A---- C:\Windows\system32\mstscax.dll 2015-08-11 23:03:21 ----A---- C:\Windows\system32\vbscript.dll 2015-08-11 23:03:21 ----A---- C:\Windows\system32\urlmon.dll 2015-08-11 23:03:21 ----A---- C:\Windows\system32\mshta.exe 2015-08-11 23:03:21 ----A---- C:\Windows\system32\msfeedsbs.dll 2015-08-11 23:03:21 ----A---- C:\Windows\system32\msfeeds.dll 2015-08-11 23:03:21 ----A---- C:\Windows\system32\ieUnatt.exe 2015-08-11 23:03:21 ----A---- C:\Windows\system32\dxtmsft.dll 2015-08-11 23:03:20 ----A---- C:\Windows\system32\url.dll 2015-08-11 23:03:20 ----A---- C:\Windows\system32\jsproxy.dll 2015-08-11 23:03:20 ----A---- C:\Windows\system32\jscript.dll 2015-08-11 23:03:19 ----A---- C:\Windows\system32\msfeedssync.exe 2015-08-11 23:03:17 ----A---- C:\Windows\system32\wininet.dll 2015-08-11 23:03:17 ----A---- C:\Windows\system32\mshtmled.dll 2015-08-11 23:03:17 ----A---- C:\Windows\system32\jscript9.dll 2015-08-11 23:03:17 ----A---- C:\Windows\system32\ieui.dll 2015-08-11 23:03:17 ----A---- C:\Windows\system32\dxtrans.dll 2015-08-11 23:03:16 ----A---- C:\Windows\system32\ieframe.dll 2015-08-08 10:50:32 ----A---- C:\Windows\system32\drivers\aswStmXP.sys 2015-08-08 10:50:31 ----A---- C:\Windows\system32\drivers\ngvss.sys 2015-08-08 10:50:30 ----A---- C:\Windows\system32\aswBoot.exe 2015-08-08 10:50:28 ----A---- C:\Windows\avastSS.scr ======List of files/folders modified in the last 1 month====== 2015-09-06 22:46:31 ----D---- C:\Windows\Temp 2015-09-06 22:46:28 ----RD---- C:\Program Files 2015-09-06 22:43:45 ----D---- C:\Users\User\AppData\Roaming\uTorrent 2015-09-06 21:44:08 ----D---- C:\Windows\System32 2015-09-06 21:44:08 ----D---- C:\Windows\inf 2015-09-06 21:44:08 ----A---- C:\Windows\system32\PerfStringBackup.INI 2015-09-06 21:43:28 ----D---- C:\Users\User\AppData\Roaming\Dropbox 2015-09-06 21:41:45 ----D---- C:\Windows\system32\Tasks 2015-09-06 21:38:49 ----D---- C:\Users\User\AppData\Roaming\DMCache 2015-09-06 20:42:35 ----SHD---- C:\System Volume Information 2015-09-06 19:23:03 ----D---- C:\Program Files\Common Files 2015-09-06 18:58:13 ----D---- C:\Users\User\AppData\Roaming\IDM 2015-09-06 18:45:56 ----D---- C:\Program Files\Recuva 2015-09-06 17:18:35 ----D---- C:\Windows\system32\WDI 2015-09-06 16:58:25 ----D---- C:\Windows\system32\Msdtc 2015-09-06 16:58:24 ----D---- C:\Windows\system32\wbem 2015-09-06 16:58:24 ----D---- C:\Windows 2015-09-06 16:57:41 ----D---- C:\Windows\system32\config 2015-09-06 16:57:29 ----D---- C:\Windows\Tasks 2015-09-06 16:57:29 ----D---- C:\Windows\system32\spool 2015-09-06 16:57:29 ----D---- C:\Windows\system32\catroot2 2015-09-06 16:57:29 ----D---- C:\Users\User\AppData\Roaming\Skype 2015-09-06 16:57:29 ----D---- C:\Users\User\AppData\Roaming\QSocial 2015-09-06 16:57:29 ----D---- C:\Users\User\AppData\Roaming\qBittorrent 2015-09-06 16:57:29 ----D---- C:\Program Files\Windows Media Player 2015-09-06 16:57:29 ----D---- C:\Program Files\Internet Explorer 2015-09-06 16:57:28 ----D---- C:\Users\User\AppData\Roaming\GetMp3 2015-09-06 16:57:09 ----HD---- C:\ProgramData 2015-09-06 16:57:01 ----D---- C:\Windows\registration 2015-09-06 15:47:11 ----D---- C:\Windows\system32\drivers 2015-09-06 15:47:11 ----D---- C:\Program Files\7-Zip 2015-09-06 15:37:47 ----SHD---- C:\Windows\Installer 2015-09-06 15:07:55 ----D---- C:\Windows\AppPatch 2015-09-06 15:04:30 ----D---- C:\Windows\system32\drivers\etc 2015-09-06 14:22:53 ----D---- C:\Windows\Logs 2015-09-06 11:28:56 ----D---- C:\Program Files\Google 2015-09-04 21:13:06 ----D---- C:\AdwCleaner 2015-09-03 21:44:12 ----HD---- C:\Windows\system32\GroupPolicy 2015-09-01 01:11:06 ----D---- C:\ProgramData\CanonIJPLM 2015-08-26 22:31:34 ----D---- C:\Windows\SoftwareDistribution 2015-08-26 22:29:59 ----D---- C:\Windows\Debug 2015-08-19 22:23:16 ----D---- C:\Windows\winsxs 2015-08-19 22:23:10 ----D---- C:\Windows\system32\catroot 2015-08-16 10:47:14 ----D---- C:\Windows\Microsoft.NET 2015-08-16 10:46:12 ----RSD---- C:\Windows\assembly 2015-08-13 22:47:46 ----D---- C:\Program Files\Microsoft Silverlight 2015-08-12 23:20:58 ----D---- C:\Windows\system32\XPSViewer 2015-08-12 23:20:57 ----D---- C:\Windows\system32\migration 2015-08-12 21:57:53 ----D---- C:\ProgramData\Microsoft Help 2015-08-12 21:54:27 ----D---- C:\Windows\system32\MRT 2015-08-12 21:44:58 ----A---- C:\Windows\system32\mrt.exe 2015-08-12 21:33:09 ----A---- C:\Windows\win.ini 2015-08-10 11:41:42 ----D---- C:\Windows\system32\vbox ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-08-08 49776] R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-08-08 208664] R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-12-17 433176] R0 ngvss;ngvss; C:\Windows\system32\drivers\ngvss.sys [2015-08-08 95112] R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2014-07-28 320120] R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2015-08-08 55200] R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-08-08 788784] R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-08-08 433264] R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-08-08 24016] R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-08-08 76000] R2 IDMWFP;IDMWFP; C:\Windows\system32\DRIVERS\idmwfp.sys [2014-10-01 115240] R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-08-08 45568] R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-07-30 43008] R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-07-30 38400] R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-08-08 220752] R3 aswStmXP;Avast StreamFilter Driver; C:\Windows\system32\drivers\aswStmXP.sys [2015-08-08 161472] R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840] R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768] R3 HpqRemHid;HP Remote Control HID Device; C:\Windows\system32\DRIVERS\HpqRemHid.sys [2007-07-11 7168] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-01-15 2047576] R3 NETw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw5v32.sys [2008-11-17 3668480] R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-10-03 9905096] R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2008-01-25 106496] R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088] R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2007-01-16 983936] R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2011-10-14 299312] R3 usbvideo;USB-videoapparaat (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272] R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560] S3 aswTdi;aswTdi; C:\Windows\system32\drivers\aswTdi.sys [2015-08-08 57888] S3 cpuz134;cpuz134; \??\C:\Users\User\AppData\Local\Temp\cpuz134\cpuz134_x32.sys [] S3 drmkaud;Microsoft Kernel DRM-audiodecoder; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632] S3 HdAudAddService;Microsoft 1.1 UAA Functiestuurprogramma voor High Definition Audio-service; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544] S3 MSKSSRV;Microsoft Streaming Service-proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192] S3 MSPCLOCK;Microsoft Streaming Clock-proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888] S3 MSPQM;Microsoft Streaming Kwaliteitsbeheer Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504] S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink-conversieprogramma; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016] S3 Netaapl;Apple Mobile Device Ethernet Service; C:\Windows\system32\DRIVERS\netaapl.sys [2014-06-10 18944] S3 NETw3v32;Stuurprogramma voor Intel(R) PRO/Wireless 3945ABG-adapter voor de 32 bitsversie van Windows Vista; C:\Windows\system32\DRIVERS\NETw3v32.sys [2008-01-21 2225664] S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2014-07-28 45056] S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448] S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136] S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2009-04-11 6656] S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432] R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2015-01-20 60744] R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-08-08 146600] R2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504] R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504] R2 Freemake Improver;Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [2014-12-03 108032] R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2009-12-23 13336] R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2013-05-14 140936] R2 RealNetworks Downloader Resolver Service;RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [2014-08-12 39056] R2 ReimageRealTimeProtector;Reimage Real Time Protector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [2015-08-19 6324208] R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688] R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-08-08 3218624] R3 iPod Service;iPod-service; C:\Program Files\iPod\bin\iPodService.exe [2015-04-07 540968] R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000] R3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2014-04-12 772296] S2 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608] S2 gupdate;Google Update-service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-06 144200] S3 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-06 144200] S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2015-02-13 136120] S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352] S4 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-04-03 193840] S4 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-05-01 165192] S4 NetMsmqActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944] S4 NetPipeActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944] S4 NetTcpActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944] S4 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-10-03 219752] -----------------EOF-----------------