Logfile of random's system information tool 1.10 (written by random/random) Run by Wouter at 2015-09-21 19:03:51 Microsoft Windows 10 Home System drive C: has 576 GB (82%) free of 699 GB Total RAM: 7366 MB (49% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 19:03:59, on 21-9-2015 Platform: Unknown Windows (WinNT 6.02.1008) MSIE: Internet Explorer v11.0 (11.00.10240.16412) Boot mode: Normal Running processes: C:\Users\Wouter\AppData\Local\Temp\WIZZ\ioprotect.exe C:\Users\Wouter\AppData\Local\Temp\WIZZ\ioproduct.exe C:\Users\Wouter\AppData\Local\gmsd_nl_005010093\upgmsd_nl_005010093.exe C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe C:\Program Files\SpaceSoundPro\SpaceSoundPro.exe C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Wouter\AppData\Local\Microsoft\OneDrive\OneDrive.exe C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe C:\Users\Wouter\AppData\Local\SmartWeb\SmartWebApp.exe C:\Program Files (x86)\gmsd_nl_005010093\gmsd_nl_005010093.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\PROGRA~2\SEARCH~1\SearchProtect\bin\cltmng.exe C:\PROGRA~2\SEARCH~1\UI\bin\cltmngui.exe C:\Program Files\trend micro\Wouter.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/HPCON14/8 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://g.uk.msn.com/HPCON14/8 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit= O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey O4 - HKLM\..\Run: [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\Av\avgui.exe" /TRAYONLY O4 - HKLM\..\Run: [gmsd_nl_005010093] "C:\Program Files (x86)\gmsd_nl_005010093\gmsd_nl_005010093.exe" O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" O4 - HKLM\..\RunOnce: [IOPROTECT] C:\Users\Wouter\AppData\Local\Temp\WIZZ\ioproduct_service.bat O4 - HKLM\..\RunOnce: [upgmsd_nl_005010093.exe] C:\Users\Wouter\AppData\Local\gmsd_nl_005010093\upgmsd_nl_005010093.exe -runonce O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Wouter\AppData\Roaming\Spotify\SpotifyWebHelper.exe" O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart O4 - HKCU\..\Run: [Power2GoExpress8] "C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe" O4 - HKCU\..\Run: [Spotify] "C:\Users\Wouter\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_214C8F788BE3D667FB07BDBD0D369B42] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window O4 - HKCU\..\Run: [OneDrive] "C:\Users\Wouter\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background O4 - HKCU\..\Run: [Sony PC Companion] "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background O4 - HKCU\..\Run: [SpybotPostWindows10UpgradeReInstall] "C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe" O4 - HKCU\..\Run: [Spybot-S&D Cleaning] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe" /autoclean O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE') O4 - Startup: SmartWeb.lnk = Wouter\AppData\Local\SmartWeb\SmartWebHelper.exe O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll O20 - AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\VC32Loader.dll O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing) O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing) O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe O23 - Service: AVG Firewall (avgfws) - Unknown owner - C:\Program Files (x86)\AVG\Av\avgfws.exe (file missing) O23 - Service: AVGIDSAgent - Unknown owner - C:\Program Files (x86)\AVG\Av\avgidsagent.exe (file missing) O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: HP SimplePass Cachedrv Service (Cachedrv server) - Unknown owner - C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe O23 - Service: Search Protect Service (CltMngSvc) - Client Connect LTD - C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing) O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing) O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: CD Feature (gyvixodu) - Unknown owner - C:\Program.exe (file missing) O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe O23 - Service: @oem9.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing) O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing) O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: Disk Low-res (lehicewu) - Unknown owner - C:\Program.exe (file missing) O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing) O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing) O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: NixSrv Service (NixSrv) - Unknown owner - C:\Program Files\NixSrv\NixSrv.exe O23 - Service: HP SimplePass Service (omniserv) - Softex Inc. - C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe O23 - Service: PACE License Services (PaceLicenseDServices) - PACE Anti-Piracy, Inc. - C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing) O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing) O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing) O23 - Service: SSFK - TODO: - C:\Program Files (x86)\SFK\SSFK.exe O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: WdsManPro Service (WdsManPro) - DTools LIMITED - C:\ProgramData\3WdsManPro3\WdsManPro.exe O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 16205 bytes ======Listing Processes====== winlogon.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe -k DcomLaunch C:\WINDOWS\system32\svchost.exe -k RPCSS C:\WINDOWS\system32\svchost.exe -k netsvcs C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted C:\WINDOWS\system32\svchost.exe -k LocalService C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation "dwm.exe" dashost.exe {52387ef6-c552-4499-a2a0dfe174a63880} "C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe" "C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe" C:\WINDOWS\System32\svchost.exe -k NetworkService C:\WINDOWS\system32\atiesrxx.exe atieclxx C:\WINDOWS\system32\Hpservice.exe "C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe" "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS C:\WINDOWS\System32\spoolsv.exe C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork "C:\Program Files\Bonjour\mDNSResponder.exe" "C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService C:\WINDOWS\System32\svchost.exe -k utcsvc "C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service C:\WINDOWS\system32\svchost.exe -k apphost "C:\Windows\system32\mfevtps.exe" "c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe" "C:\Program Files (x86)\33444335-1442434422-3637-5438-A0D3C1697ED7\hnsbA52E.tmp" "C:\Program Files (x86)\33444335-1442434422-3637-5438-A0D3C1697ED7\jnsc8ED5.tmp" "C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe" "C:\Program Files\McAfee\MSC\McAPExe.exe" "C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe" "C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe" -u https://activation.paceap.com/InitiateActivation C:\WINDOWS\system32\svchost.exe -k imgsvc "C:\Program Files\NixSrv\NixSrv.exe" /s iid=4327153 did=Missing sid= ref= id=bbd39b89a9a746e28c2e241bb4f1ad4b7c9745b125809a9e90f635db5d403e4c C:\WINDOWS\system32\svchost.exe -k appmodel "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" "C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe" C:\ProgramData\3WdsManPro3\WdsManPro.exe -service "C:\Program Files (x86)\SFK\SSFK.exe" -s "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe" C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\WINDOWS\System32\alg.exe C:\WINDOWS\system32\wbem\wmiprvse.exe sihost.exe "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" taskeng.exe {8F36E354-ABCF-4D78-AB90-CD4E40D7DCBD} "C:\Program Files (x86)\Cinem Plus 2.4cV16.09\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-6.exe" /rawdata=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 "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683} C:\WINDOWS\Explorer.EXE "C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE" "C:\Program Files (x86)\SFK\SFKEX64.exe" taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E} C:\Users\Wouter\AppData\Local\Temp\WIZZ\ioprotect.exe C:\Windows\System32\RuntimeBroker.exe -Embedding "C:\Users\Wouter\AppData\Local\Temp\WIZZ\ioproduct.exe" "C:\Program Files\NixSrv\packages\282eb20b-2411-4453-b912-21c755982959\NixHost.exe" iid=4327153 did=Missing sid= id=bbd39b89a9a746e28c2e241bb4f1ad4b7c9745b125809a9e90f635db5d403e4c "C:\Users\Wouter\AppData\Local\gmsd_nl_005010093\upgmsd_nl_005010093.exe" -runhelper "C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe" C:\WINDOWS\system32\SearchIndexer.exe /Embedding "C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca "C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe" "C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe" /byrunkey "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s "C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe" /hideui "C:\Program Files\SpaceSoundPro\SpaceSoundPro.exe" "C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe" "C:\Program Files\Hewlett-Packard\SimplePass\opbhobroker.exe" "C:\Program Files\Hewlett-Packard\SimplePass\opbhobrokerdsktop.exe" "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window "C:\Users\Wouter\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background "C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe" "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe" "C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe" /platui /runkey SmartWebApp.exe "C:\Program Files (x86)\gmsd_nl_005010093\gmsd_nl_005010093.exe" C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7216.0.1588654750\958614643" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,20,45 --gpu-vendor-id=0x1002 --gpu-device-id=0x990f --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=15.200.1055.0 --ignored=" --type=renderer " /prefetch:822062411 "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/AutofillEnabled/Default/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/IntelligentSessionRestore/Control2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/RememberCertificateErrorDecisions/OneWeek/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="7216.1.1481611949\1177067462" --font-cache-shared-handle=2008 /prefetch:673131151 "C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" "C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" -Embedding "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="7216.4.789043334\1997572078" --ppapi-flash-args=enable_hw_video_decode=1 --lang=nl --ignored=" --type=renderer " /prefetch:-632637702 C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup C:\WINDOWS\system32\wbem\wmiprvse.exe C:\WINDOWS\system32\SettingSyncHost.exe -Embedding "C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe" "C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe" "fontdrvhost.exe" C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding taskhostw.exe "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe" /scanforlastresults C:\Windows\System32\SystemSettingsBroker.exe -Embedding C:\WINDOWS\system32\DllHost.exe /Processid:{478B41E6-3257-4519-BDA8-E971F9843849} "C:\WINDOWS\System32\NetworkUXBroker.exe" -ServerName:Windows.Networking.UX "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/AutofillEnabled/Default/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/*IntelligentSessionRestore/Control2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/*PasswordGeneration/Disabled/*PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/RememberCertificateErrorDecisions/OneWeek/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SlimmingPaint/EnableSlimmingPaint/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="7216.68.1140350578\953828725" --font-cache-shared-handle=4436 /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi-broker --channel="7216.70.157962429\2140962742" --lang=nl /prefetch:845217598 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/AutofillEnabled/Default/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/*IntelligentSessionRestore/Control2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/*PasswordGeneration/Disabled/*PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/RememberCertificateErrorDecisions/OneWeek/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SlimmingPaint/EnableSlimmingPaint/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="7216.82.946942126\1868334989" --font-cache-shared-handle=2044 /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/AutofillEnabled/Default/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/*IntelligentSessionRestore/Control2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/*PasswordGeneration/Disabled/*PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/RememberCertificateErrorDecisions/OneWeek/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SlimmingPaint/EnableSlimmingPaint/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="7216.86.1164267090\1375038601" --font-cache-shared-handle=7480 /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/AutofillEnabled/Default/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/*IntelligentSessionRestore/Control2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/*PasswordGeneration/Disabled/*PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/RememberCertificateErrorDecisions/OneWeek/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SlimmingPaint/EnableSlimmingPaint/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_40/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="7216.89.869801397\318988805" --font-cache-shared-handle=3236 /prefetch:673131151 "C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe" C:\PROGRA~2\SEARCH~1\SearchProtect\bin\cltmng.exe C:\PROGRA~2\SEARCH~1\UI\bin\cltmngui.exe C:\WINDOWS\system32\AUDIODG.EXE 0x1320 "C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe16_ Global\UsGthrCtrlFltPipeMssGthrPipe16 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "C:\WINDOWS\system32\SearchFilterHost.exe" 0 632 636 644 8192 640 "C:\Users\Wouter\Downloads\RSITx64.exe" c:\PROGRA~1\mcafee\VIRUSS~1\mcvsmap.exe -Embedding c:\PROGRA~1\mcafee\VIRUSS~1\mcvsshld.exe -Embedding "C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-983083467-3780027488-2977671989-100217_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-983083467-3780027488-2977671989-100217 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1" ======Scheduled tasks folder====== C:\WINDOWS\tasks\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-1-6.job - C:\Program Files (x86)\Cinem Plus 2.4cV16.09\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-1-6.exe /rawdata=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 C:\WINDOWS\tasks\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-1-7.job - C:\Program Files (x86)\Cinem Plus 2.4cV16.09\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-1-7.exe /rawdata=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 C:\WINDOWS\tasks\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-10_user.job - C:\Program Files (x86)\Cinem Plus 2.4cV16.09\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-10.exe /rawdata=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 C:\WINDOWS\tasks\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-13.job - C:\Program Files (x86)\Cinem Plus 2.4cV16.09\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-13.exe /rawdata=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 C:\WINDOWS\tasks\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-14.job - C:\Program Files (x86)\Cinem Plus 2.4cV16.09\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-14.exe /rawdata=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 C:\WINDOWS\tasks\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-3.job - C:\Program Files (x86)\Cinem Plus 2.4cV16.09\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-3.exe /rawdata=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 C:\WINDOWS\tasks\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-5.job - C:\Program Files (x86)\Cinem Plus 2.4cV16.09\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-5.exe /rawdata=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 C:\WINDOWS\tasks\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-5_user.job - C:\Program Files (x86)\Cinem Plus 2.4cV16.09\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-5.exe /rawdata=hoP+3Yho+ERFfAS6eNc1d0WUXlIiBcZOoODxMDZ/8UxzIlX79/nPxuPABjxFznUb41XBFq9mcwhQMmcH46nwXrB3j7KMpy0Ur+4S0JSp5VNpzLY4FjONm+YtQtdGLFXbIIRwy+TJojUsQDtJXBJ528H+fd4Whl5iSJ0HKMzfNXZMN/7kKUf1utAbUAPwodMrL74gDe5LM5B2k7vG8+UAZKdHxZMhshhffPaMdtYprORhjoYzCN+cOTkbTI4Q/jJXwe2Iwoce5lQlzabnohigDPzRgDf96u8hXF5O3zcTZ3pEq95IVwxx10+bMZMZ682jS2fJ9MRPcxHg7oZ7NEjdjFCYqmojgqJmUk3MLG/TeKekW8YqMEG4WzEBqQZb+slDbJqBqkFNlYkp2BW85twWqlNsXFh9kJdt5Stj5tw1F4eH8zvFd/9k0VcCODwTaDb+1s6RFGbRRa6WzeyVFnB0NyArVxNzw/Df/Xq3w2DIBGAvhRG41BwvxnfRL4u01EERYZr+CV1+zeYpcO00NBuOk4N9x9/LvQqGEwUG1lBfiPkIfdR6+bnPYuo9M4DZIooIBul+6anufa6NEwg0IgJo8LpfftkmkEhGy3bvXNa1bGtBB6F7O81YBTP1bnNhTz4wRL8bCk3Ws7E1vWb0Kgrtt7eJcitBxHBLDWB3zQURnuy9t4BJC6FcuFpuhUyZziakfSqmOBjc1rlYg4qQtIC1MgMKJZFkd4aSKimCFM477lCjUuK4Va97KLrZ2i5uI1z9DLoGxm/Xt07aziauFuwCGEB5QDqot2KBQ/Xf2odb8l3Moj705YCfkGUdRA77NHvu+GbejjAjYIP8DOBmsIDwBbYOVMBWHwWWza4LMTS/g2Bz0iCBjjj/dGkAJYyXrelg90FEXL1oI+xYF6J4Vf/GzY1amfeVNVgRyBOY2g9v3IsYr0tevc/WPkFPhrQOqJfBXb7x0DWTFCHR5A7rDTj+h/o252KIR+VsJyucsEW5Zl1scaIL53NY9t/m0bzIt6Z6 C:\WINDOWS\tasks\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-6.job - C:\Program Files (x86)\Cinem Plus 2.4cV16.09\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-6.exe /rawdata=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 C:\WINDOWS\tasks\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-7.job - C:\Program Files (x86)\Cinem Plus 2.4cV16.09\5e227d67-8e29-45fb-9988-4dcc2d22a7dd-7.exe /rawdata=IoLo0cy9a2OmYNXnCOqUqBZz2J6aMYJ96Wqr91nrmffwi5DMPBFKyyocvZB5PzANdnCczq4zXILS039n/Or/7Ouwwsm62jAHPpNQW/Hn6b2Bx+VrmiK8+5qddAHDshzWLpKR1jUs5CifqU6Bp7WGKZP1OCRX2kEX4zFwt03IzlRzrjIYSExc5Xp/AoMFQ75jBfOpYgeHlGokSx5NtmTQGr74KoIcEFNGRIfHn7XJiCTQCcLzOaABuuyWPLGtMCUwsmPPnDlL8Tdvhopv2Q8Aa8P2FUv6KbND27o4umHy1KdGgfaIO4LT5esNgEFY+U6jvmUqj38wWR1B3yT+c46fMqTkNojSC5FhzXdfMFLuAl53tFLJtzA+O7ZsF3yuFRjeFHV/A0Bm5DrABR6bfZwWIul667Mc2fe/sGfHBpxfIVb/kghGYf22p3VKKpBJCiD+im/Cr7H/FRqXYy1s7wjY/2wlxXvomGM6mW8ylHhjYfSaE+UbuGhFxnROHh4eiNCsT/rd4RBtsvXtGZl5zbdZWkWKL+JXNlSGsOQYKAMeZ1XWuYw+Br8/TR0IVz6ZsESpCwsbHHQKV1iJj+2LFsf+aIV+pvAZe1y3TQLoi1YocGnCmikm+y1QmKMOAsMpfiHvB88Z3YDBjyhiSxeiVAGOsBvdO9nhh5e/p9OHBSXMRud/Z73hsO2C09Ue8K082td/tVt/bdxFx2UWEyjHOMtZ672TtXGQGryA9pew+sqoVr7zpjXZXlGAB/NmwmxO59sPPDk7HfD097aBRQlJpcjyiytOaT1eVGjhrv4YDjFQmfcsDVGC/0//3KrJZB9+6myWtwCXFJfqAFl1BQ/4rsdFpoba1+VFif/dY4i5X01DiM8qLScyylFCW1GlrhJoukbu/4/AmGO+H5WLc/IVNOylzPpEibLfVZTr+PxVwVJGN6Vl/pxSBfoK3USuRaKvNwBrnKQHnoV1MOrH34NYNxCCeAaGaJYsYHpoI/fWqSuZbMCtuwycR7/4RYBBSnWJ2c+NH+hKfQYjk0lTR+xxrGeNhVycQx0qYhpIKlvkhKnf21SxGc0OnCkdX0KZU5c/IN6rpekiBE3UhaHVHe/E8gLcJOWrv8GnsswbVFxS8HStkzbYI9Qcz8stB7plk37SEzWecjjgUiBTkeRQbnH1A/x+JUl8gGCzhTW7yVUyBzlKu2+NNUFkUdim6Z7GwqubJ3Tut9tPtmg6bkFn7Mb5XskFjjxzpYbrkIntXUkhkEWyX8XCpVDMqmpPf89C72PfzHfmkqrXmHia0/YePEuuamKMejk7KJ60z88QwTTP6Gnlmwvxxik+6KgyRJNsSHBz2tZg5R2hINKGCmpEKzG5gMvg64JH0zMhgMJAuALCe5y7r2qp8qJcnRiRfHkJvwXr2u1nI1sEeJyZxnWrCtDlrdx0icxP+WV50cq9+5egfb7JpZb0XZT656lwvNnbHB6A2S33T6KDA2QPyBgMlj/QTwCARQkGJaa/ZXWWMnauHhavWxq+ptBUfiMTRZuxcNs7liiebSdZD2xN9rKDwodaXi1tdyf8qiYtVTKYWiJu3zMFBg6MnfvX8dnmPKNf1FbsVD53dAcgrTUzsHRRmKMkk3Qd7HQbzZeXAwjuPfDLCjFwCjccrnvxIQdIe8gjTmD4T8Vxq1f4udhq8wd7lhSuNxBVAlYvNR+B4Hcgv6J1WwYQ288KDoMIDquRGHvekh8bADP3pU34rZD++b3m46FRgr9Dqz9PYBsXRw8wdJimIbSvoANzWw5q8tQXKFgtoTkx//DQnK1xgKzXJGazISRpsy2kJwOGl/+dp3M6dVyT4TdA7wrDrksnpKTFmQIObyj80SiLDPZtEOdhBz2fL8Uq8nKNCxmIdYrV1s7ICxQud5jJt8UjseOj+gatNieCqxQOsNsq0DH+QRzCbTKmbZ92DXkTHODjY8aHZ/DJ2M/c2JcrDFOUXC9AkMScx+POdFRbffZYwXH8cm1zx1IM0zMEAVCDsclAh742SPRvTvkS2O0O6sLYwkEc9X10RFk9U8HcTjogBb4kWdwu0JcVEXX3bygb16g0N/VgLgFkeceTPfl6BrYXCqncFNN8DUgvQmopu3MDU4ryIdZaLReXqQ8lhFkiTG4i079a/rW0geDxCg69ZNQk306J2NIknQ2orX52rbT0FzjTv6mulym1DKIkg2nhVkEta1WXUXf1SlVV3PfWepogBmWKl7XGXRkpGyUna8nlr5YqQZr0/FKGo2lK401yiD/I4BxvsssNmlKEPPCJoQduXDsg1B7G44fCYPDpwnPFImQRWVE/ueufu0+XVzRIu8sF7hjbIktzpydI6B49PMTPRc0axrxzM2Uw6uadBjeQDGW75O0uE0WAcoC8o0ZQKA3prJ/25HAOcl5ai6nY2q9SyNGd4yGkhaO2qRZVqdAOR1JAz0xvnn0L/R5SueoANcKl3ZZ7Ciy29Q6JI1ZQt8OdmXzc++7Fgd5/cehEUv2nQgDiTepOWrdMXPwFvIQvKM105BjLfzz1TKKrDt3MbigqrQWz4meIfcE9l8xl7Ywl C:\WINDOWS\tasks\AH4vopPqMByENSVyLOVO85x.job - C:\Users\Wouter\AppData\Roaming\AH4vopPqMByENSVyLOVO85x.exe --c=oc8snncFE713FSt4EeWqHW9PA0BIq9Xj8fkf3B9ggEPmO1K/xd6JAbuOhXuXBC9FjPJ1HoWEVTTQCjtG5vi4MGPnRf4fZ9aaoqEgBPM1E+zK7PrawyoZ2ovaDf8lKzHttJrOpc2puhjvMho/H3Kkz2DJz/eT8g3NnbfphERs24Rj6dvdLFTzbEE11U8WeHI+woX3sS41YdBWpeJ5M2LBdRWENGa5rhax9nP79I75U0uXrSSlSTHb9Ji1qThuicR/gr7JwQtzQtFS8BppZa3kSw4U8+AuQtjZSGTKRBB3O5h0+gTnYzUdOt505fkwktDJ4d0F33s0o6SRehHSLJc4EQ== C:\WINDOWS\tasks\APSnotifierPP3.job - C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe --notifier 6 C:\WINDOWS\tasks\FYKwBuTfy.job - C:\Users\Wouter\AppData\Roaming\FYKwBuTfy.exe --c=ST6I5VEZ/VMc7WnRO0CNNAXRg6JKwFkHUYL3hedxXnfvNZbaWb/K942HFC1UYKzT2++40anZsdAres6wzWTEsY1sZBvnzt2F+RXYfhw7RQRp/OS4wqxC4pGkN3x3cd5qCUQSP7D3KVfXYF69/nMWUincV2ywBq1M5hDwAV2lO9IWSJg009Dv83ehJthowr3z1Ai30xXMN8Hd7qN4pyXTVOXJLnTkQJ5Ongwbb2g+5W8SvS4bbfIZhISYVXTd+bQgZGG1nHcH8FkrpzEnSN4UxNGIF8zdCJ4vLM+uQhPucAHc6dL/DgHjcEBuQn2U8nuFXO4z8DCx0Z42a1bmqdgfJA== C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe /c C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe /ua /installsource scheduler C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler C:\WINDOWS\tasks\HPCeeScheduleForWouter.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForWouter (null) C:\WINDOWS\tasks\VYBAJQPSNMYVXCIN.job - C:\ProgramData\Service1291\Service1291.exe ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}] Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-07-14 219304] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}] Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-07-14 2335960] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}] HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}] HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-06-24 8492800] "SimplePass"=C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe [2013-10-14 2758200] "OPBHOBroker"=C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [2013-10-14 155704] "OPBHOBrokerDesktop"=C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [2013-10-14 155704] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-17 3944136] "SpaceSoundPro"=C:\Program Files\SpaceSoundPro\SpaceSoundPro.exe [2015-08-03 4203520] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Spotify Web Helper"=C:\Users\Wouter\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2015-05-14 2018360] "GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2015-07-29 22344224] "Power2GoExpress8"=C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe [2014-07-24 1718536] "Spotify"=C:\Users\Wouter\AppData\Roaming\Spotify\Spotify.exe [2015-05-14 7112248] "GoogleChromeAutoLaunch_214C8F788BE3D667FB07BDBD0D369B42"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2015-09-12 815944] "OneDrive"=C:\Users\Wouter\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-09-15 405584] "Sony PC Companion"=C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [2015-07-24 457088] "SpybotPostWindows10UpgradeReInstall"=C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [2015-07-28 1011200] "Spybot-S&D Cleaning"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [2015-06-16 4594552] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "mcpltui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2014-04-25 537992] "HPMessageService"=C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [2014-10-09 509192] "AccelerometerSysTrayApplet"=C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [2015-07-08 127528] "ospd_us_013010089"= [] "gmsd_nl_005010089"= [] "AVG_UI"=C:\Program Files (x86)\AVG\Av\avgui.exe /TRAYONLY [] "gmsd_nl_005010093"=C:\Program Files (x86)\gmsd_nl_005010093\gmsd_nl_005010093.exe [2015-09-20 3977872] "SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2015-06-16 4127488] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce] "IOPROTECT"=C:\Users\Wouter\AppData\Local\Temp\WIZZ\ioproduct_service.bat [2015-09-18 124] "upgmsd_nl_005010093.exe"=C:\Users\Wouter\AppData\Local\gmsd_nl_005010093\upgmsd_nl_005010093.exe [2015-09-20 3301008] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Adobe Gamma Loader.lnk - C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe C:\Users\Wouter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup SmartWeb.lnk - C:\Users\Wouter\AppData\Local\SmartWeb\SmartWebHelper.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\PROGRA~2\SearchProtect\SearchProtect\bin\VC64Loader.dll" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\acwfp] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "DSCAutomationHostEnabled"=2 "DisableTaskMgr"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoRun"=0 "NoFolderOptions"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access" "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service" "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater" "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "midimapper"=midimap.dll "msacm.imaadpcm"=imaadp32.acm "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "msacm.msadpcm"=msadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "vidc.i420"=iyuv_32.dll "vidc.iyuv"=iyuv_32.dll "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvu9"=tsbyuv.dll "vidc.yvyu"=msyuv.dll "wavemapper"=msacm32.drv "MSVideo8"=VfWWDM32.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2015-09-21 19:03:52 ----D---- C:\Program Files\trend micro 2015-09-21 19:03:51 ----D---- C:\rsit 2015-09-21 18:57:30 ----D---- C:\Program Files (x86)\SearchProtect 2015-09-21 17:28:57 ----A---- C:\WINDOWS\wininit.ini 2015-09-21 16:36:43 ----HD---- C:\OneDriveTemp 2015-09-21 16:21:52 ----D---- C:\Program Files\Common Files\AV 2015-09-21 16:14:17 ----A---- C:\WINDOWS\system32\sdnclean64.exe 2015-09-21 16:14:13 ----D---- C:\ProgramData\Spybot - Search & Destroy 2015-09-21 16:13:59 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2 2015-09-21 15:54:18 ----D---- C:\Program Files (x86)\gmsd_nl_005010093 2015-09-21 15:53:47 ----D---- C:\Program Files (x86)\SFK 2015-09-21 15:53:37 ----D---- C:\ProgramData\3WdsManPro3 2015-09-21 15:00:09 ----D---- C:\Users\Wouter\AppData\Roaming\TuneUp Software 2015-09-21 14:55:17 ----D---- C:\ProgramData\MFAData 2015-09-21 14:53:45 ----HD---- C:\ProgramData\Common Files 2015-09-21 14:53:45 ----D---- C:\ProgramData\Avg 2015-09-21 14:53:45 ----D---- C:\Program Files (x86)\AVG 2015-09-18 07:29:47 ----D---- C:\Program Files\SpaceSoundPro 2015-09-18 07:29:11 ----D---- C:\Program Files (x86)\SpaceSondPro_v89.2382 2015-09-18 07:29:11 ----D---- C:\Program Files (x86)\SpaceSondPro 2015-09-16 23:42:14 ----D---- C:\Users\Wouter\AppData\Roaming\Super Optimizer 2015-09-16 23:39:16 ----D---- C:\Program Files (x86)\predm 2015-09-16 23:38:42 ----D---- C:\Program Files (x86)\AnyProtectEx 2015-09-16 23:06:58 ----SHD---- C:\Users\Wouter\AppData\Roaming\AnyProtectEx 2015-09-16 22:28:51 ----A---- C:\task.vbs 2015-09-16 22:27:38 ----D---- C:\Program Files (x86)\globalUpdate 2015-09-16 22:27:37 ----D---- C:\ProgramData\eWdsManProe 2015-09-16 22:27:25 ----D---- C:\Users\Wouter\AppData\Roaming\mystartsearch 2015-09-16 22:27:15 ----A---- C:\WINDOWS\system32\acengine64.dll 2015-09-16 22:26:39 ----D---- C:\Program Files (x86)\FastSearch 2015-09-16 22:24:34 ----D---- C:\ProgramData\Service1291 2015-09-16 22:24:31 ----D---- C:\ProgramData\28341ff220e0446c9fff27c4493d622e 2015-09-16 22:14:45 ----D---- C:\Program Files (x86)\942e2bb2-afda-4c31-a8fd-a1cf18795505 2015-09-16 22:14:23 ----D---- C:\Users\Wouter\AppData\Roaming\Opera Software 2015-09-16 22:13:42 ----D---- C:\Program Files (x86)\33444335-1442434422-3637-5438-A0D3C1697ED7 2015-09-16 22:13:36 ----D---- C:\Program Files (x86)\Cinem Plus 2.4cV16.09 2015-09-16 22:13:35 ----D---- C:\ProgramData\lWdsManProl 2015-09-16 22:13:35 ----A---- C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat 2015-09-16 22:13:20 ----D---- C:\Program Files\NixSrv 2015-09-16 22:13:15 ----D---- C:\Users\Wouter\AppData\Roaming\oursurfing 2015-09-16 22:12:59 ----D---- C:\Program Files (x86)\Opera 2015-09-11 15:59:08 ----N---- C:\WINDOWS\system32\drivers\avgidsdrivera.sys 2015-09-11 12:40:04 ----A---- C:\WINDOWS\system32\drivers\ssudserd.sys 2015-09-11 12:39:50 ----A---- C:\WINDOWS\system32\drivers\ssudmdm.sys 2015-09-11 12:37:29 ----A---- C:\WINDOWS\system32\drivers\ssudbus.sys 2015-09-11 01:35:21 ----D---- C:\ProgramData\Sony 2015-09-09 21:14:12 ----A---- C:\WINDOWS\system32\mshtml.dll 2015-09-09 21:14:09 ----A---- C:\WINDOWS\system32\edgehtml.dll 2015-09-09 21:14:07 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll 2015-09-09 21:14:04 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll 2015-09-09 21:14:02 ----A---- C:\WINDOWS\system32\ieframe.dll 2015-09-09 21:14:00 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll 2015-09-09 21:13:58 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll 2015-09-09 21:13:57 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll 2015-09-09 21:13:57 ----A---- C:\WINDOWS\system32\authui.dll 2015-09-09 21:13:56 ----A---- C:\WINDOWS\SYSWOW64\authui.dll 2015-09-09 21:13:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll 2015-09-09 21:13:54 ----A---- C:\WINDOWS\system32\win32kfull.sys 2015-09-09 21:13:52 ----A---- C:\WINDOWS\system32\jscript.dll 2015-09-09 21:13:51 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll 2015-09-09 21:13:51 ----A---- C:\WINDOWS\system32\SettingSync.dll 2015-09-09 21:13:51 ----A---- C:\WINDOWS\system32\iertutil.dll 2015-09-09 21:13:50 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll 2015-09-09 21:13:50 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll 2015-09-09 21:13:50 ----A---- C:\WINDOWS\system32\schedsvc.dll 2015-09-09 21:13:49 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe 2015-09-09 21:13:49 ----A---- C:\WINDOWS\system32\winlogon.exe 2015-09-09 21:13:49 ----A---- C:\WINDOWS\system32\vbscript.dll 2015-09-09 21:13:49 ----A---- C:\WINDOWS\system32\fontdrvhost.exe 2015-09-09 21:13:48 ----A---- C:\WINDOWS\system32\win32kbase.sys 2015-09-09 21:13:47 ----A---- C:\WINDOWS\SYSWOW64\shacct.dll 2015-09-09 21:13:47 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll 2015-09-09 21:13:47 ----A---- C:\WINDOWS\system32\Windows.UI.PicturePassword.dll 2015-09-09 21:13:47 ----A---- C:\WINDOWS\system32\atmfd.dll 2015-09-09 21:13:46 ----A---- C:\WINDOWS\system32\shacct.dll 2015-09-09 21:13:45 ----A---- C:\WINDOWS\system32\acmigration.dll 2015-09-09 21:13:43 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll 2015-09-09 21:13:43 ----A---- C:\WINDOWS\system32\atmlib.dll 2015-09-07 20:21:04 ----D---- C:\Program Files (x86)\Avanquest update 2015-09-07 20:21:02 ----D---- C:\ProgramData\Avanquest 2015-09-07 20:11:16 ----D---- C:\ProgramData\BVRP Software 2015-09-07 20:08:55 ----D---- C:\ProgramData\Sony Ericsson 2015-08-31 23:45:14 ----N---- C:\WINDOWS\system32\drivers\avgwfpa.sys 2015-08-30 23:25:58 ----A---- C:\WINDOWS\system32\shell32.dll 2015-08-30 23:25:52 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll 2015-08-30 23:25:51 ----A---- C:\WINDOWS\system32\LicenseManager.dll 2015-08-30 23:25:51 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll 2015-08-30 23:25:50 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll 2015-08-30 23:25:50 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll 2015-08-30 23:25:49 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll 2015-08-30 23:25:49 ----A---- C:\WINDOWS\system32\ntoskrnl.exe 2015-08-30 23:25:49 ----A---- C:\WINDOWS\system32\dwmcore.dll 2015-08-30 23:25:48 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll 2015-08-30 23:25:48 ----A---- C:\WINDOWS\system32\wuaueng.dll 2015-08-30 23:25:48 ----A---- C:\WINDOWS\system32\modernexecserver.dll 2015-08-30 23:25:47 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll 2015-08-30 23:25:47 ----A---- C:\WINDOWS\system32\NetSetupShim.dll 2015-08-30 23:25:47 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll 2015-08-30 23:25:46 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll 2015-08-30 23:25:46 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS 2015-08-30 23:25:46 ----A---- C:\WINDOWS\system32\drivers\bthport.sys 2015-08-30 23:25:46 ----A---- C:\WINDOWS\system32\ci.dll 2015-08-30 23:25:45 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll 2015-08-30 23:25:45 ----A---- C:\WINDOWS\system32\reseteng.dll 2015-08-30 23:25:45 ----A---- C:\WINDOWS\system32\InstallAgent.exe 2015-08-30 23:25:45 ----A---- C:\WINDOWS\system32\BthRadioMedia.dll 2015-08-30 23:25:44 ----A---- C:\WINDOWS\system32\wlansvc.dll 2015-08-30 23:25:44 ----A---- C:\WINDOWS\system32\wfdprov.dll 2015-08-30 23:25:44 ----A---- C:\WINDOWS\system32\wcnwiz.dll 2015-08-30 23:25:44 ----A---- C:\WINDOWS\system32\WcnNetsh.dll 2015-08-30 23:25:44 ----A---- C:\WINDOWS\system32\aitstatic.exe 2015-08-30 23:25:43 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll 2015-08-30 23:25:43 ----A---- C:\WINDOWS\SYSWOW64\WcnApi.dll 2015-08-30 23:25:43 ----A---- C:\WINDOWS\system32\WcnApi.dll 2015-08-30 23:25:43 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll 2015-08-30 23:25:42 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll 2015-08-30 23:25:42 ----A---- C:\WINDOWS\system32\fdWCN.dll 2015-08-30 23:25:42 ----A---- C:\WINDOWS\system32\dafWCN.dll 2015-08-30 23:25:42 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll 2015-08-30 23:25:41 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll 2015-08-30 23:25:41 ----A---- C:\WINDOWS\SYSWOW64\fdWCN.dll 2015-08-30 23:25:41 ----A---- C:\WINDOWS\system32\vaultsvc.dll 2015-08-30 23:25:41 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll 2015-08-30 23:25:41 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2015-08-27 22:50:37 ----D---- C:\Users\Wouter\AppData\Roaming\BitLord 2015-08-27 22:50:09 ----D---- C:\Program Files (x86)\BitLord ======List of files/folders modified in the last 1 month====== 2015-09-21 19:03:52 ----RD---- C:\Program Files 2015-09-21 19:03:13 ----RD---- C:\Program Files (x86) 2015-09-21 19:00:44 ----D---- C:\WINDOWS\Temp 2015-09-21 18:57:54 ----D---- C:\WINDOWS\Prefetch 2015-09-21 18:57:41 ----D---- C:\WINDOWS\AppPatch 2015-09-21 18:38:02 ----D---- C:\WINDOWS\system32\sru 2015-09-21 17:45:12 ----SHD---- C:\WINDOWS\Installer 2015-09-21 17:45:11 ----SHD---- C:\Config.Msi 2015-09-21 17:28:57 ----D---- C:\Windows 2015-09-21 17:26:07 ----D---- C:\WINDOWS\System32 2015-09-21 16:41:57 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2015-09-21 16:41:56 ----D---- C:\WINDOWS\INF 2015-09-21 16:40:42 ----D---- C:\WINDOWS\system32\WDI 2015-09-21 16:21:52 ----D---- C:\Program Files\Common Files 2015-09-21 16:14:50 ----D---- C:\WINDOWS\system32\Tasks 2015-09-21 16:14:36 ----SD---- C:\ProgramData\Microsoft 2015-09-21 16:14:13 ----HD---- C:\ProgramData 2015-09-21 15:55:31 ----D---- C:\WINDOWS\SysWOW64 2015-09-21 15:36:57 ----SHD---- C:\System Volume Information 2015-09-21 15:26:12 ----D---- C:\WINDOWS\AppReadiness 2015-09-21 15:20:01 ----D---- C:\WINDOWS\system32\drivers 2015-09-21 15:19:01 ----D---- C:\WINDOWS\system32\CatRoot 2015-09-21 15:15:23 ----D---- C:\WINDOWS\Microsoft.NET 2015-09-21 15:14:17 ----HD---- C:\WINDOWS\ELAMBKUP 2015-09-21 14:59:48 ----D---- C:\WINDOWS\system32\DriverStore 2015-09-20 11:58:25 ----D---- C:\WINDOWS\system32\config 2015-09-20 00:49:43 ----HD---- C:\Program Files\WindowsApps 2015-09-18 22:43:38 ----D---- C:\WINDOWS\Tasks 2015-09-16 22:27:59 ----D---- C:\Program Files (x86)\Common Files 2015-09-16 22:14:21 ----D---- C:\WINDOWS\system32\drivers\etc 2015-09-13 09:35:22 ----RSD---- C:\WINDOWS\assembly 2015-09-13 08:26:42 ----AD---- C:\ProgramData\PACE 2015-09-11 12:39:56 ----D---- C:\WINDOWS\ModemLogs 2015-09-11 01:49:36 ----D---- C:\Users\Wouter\AppData\Roaming\vlc 2015-09-11 01:35:21 ----HD---- C:\Program Files (x86)\InstallShield Installation Information 2015-09-11 01:35:21 ----D---- C:\Program Files (x86)\Sony 2015-09-11 01:29:29 ----D---- C:\WINDOWS\WinSxS 2015-09-11 01:25:57 ----D---- C:\WINDOWS\system32\appraiser 2015-09-11 01:25:37 ----D---- C:\Program Files\Windows Journal 2015-09-09 21:30:57 ----D---- C:\WINDOWS\CbsTemp 2015-09-09 21:29:27 ----D---- C:\WINDOWS\system32\MRT 2015-09-09 21:07:24 ----D---- C:\WINDOWS\system32\catroot2 2015-09-07 20:04:53 ----D---- C:\WINDOWS\system32\drivers\UMDF 2015-09-01 22:46:51 ----D---- C:\WINDOWS\rescache 2015-09-01 18:17:35 ----D---- C:\WINDOWS\system32\oobe 2015-08-27 22:46:19 ----D---- C:\WINDOWS\system32\NDF 2015-08-26 18:37:02 ----A---- C:\WINDOWS\system32\MRT.exe 2015-08-25 03:25:32 ----D---- C:\WINDOWS\Logs 2015-08-24 18:02:49 ----D---- C:\WINDOWS\SYSWOW64\nl-NL 2015-08-24 18:01:55 ----D---- C:\WINDOWS\system32\WinBioPlugIns 2015-08-24 18:01:53 ----D---- C:\WINDOWS\system32\nl-NL 2015-08-24 18:01:52 ----D---- C:\WINDOWS\system32\drivers\nl-NL 2015-08-24 18:01:00 ----D---- C:\WINDOWS\Provisioning 2015-08-24 18:00:55 ----RD---- C:\WINDOWS\DevicesFlow 2015-08-24 18:00:49 ----D---- C:\Program Files (x86)\Internet Explorer 2015-08-24 18:00:46 ----D---- C:\Program Files\Internet Explorer 2015-08-23 05:07:38 ----D---- C:\ProgramData\regid.1991-06.com.microsoft 2015-08-23 05:05:38 ----D---- C:\Program Files\Microsoft Office 15 ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 amdkmpfd;@oem13.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2013-05-22 36096] R0 hpdskflt;@oem9.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2013-07-23 30520] R0 mfehidk;McAfee Inc. mfehidk; C:\WINDOWS\system32\drivers\mfehidk.sys [2014-04-03 784760] R0 mfewfpk;McAfee Inc. mfewfpk; C:\WINDOWS\system32\drivers\mfewfpk.sys [2014-04-03 346760] R0 Tpkd;Tpkd; C:\WINDOWS\system32\drivers\Tpkd.sys [2013-04-11 106704] R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2013-11-12 91912] R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968] R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192] R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-11-20 57512] R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128] R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952] R3 Accelerometer;@oem9.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2013-07-23 43320] R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-08-01 21637664] R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-08-01 682016] R3 AtiHDAudioService;@oem37.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2015-05-28 102912] R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator-service; C:\WINDOWS\System32\drivers\BthEnum.sys [2015-07-10 105984] R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy-stuurprogramma; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2015-07-10 237568] R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-07-10 128512] R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;USB-stuurprogramma voor Bluetooth-radio; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2015-07-10 84992] R3 cfwids;McAfee Inc. cfwids; C:\WINDOWS\system32\drivers\cfwids.sys [2014-04-03 70592] R3 clwvd;@oem2.inf,%clwvd.DeviceDesc%;CyberLink WebCam Virtual Driver; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2014-01-28 41704] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-06-24 4504320] R3 mfeapfk;McAfee Inc. mfeapfk; C:\WINDOWS\system32\drivers\mfeapfk.sys [2014-04-03 177544] R3 mfeavfk;McAfee Inc. mfeavfk; C:\WINDOWS\system32\drivers\mfeavfk.sys [2014-04-03 311856] R3 mfefirek;McAfee Inc. mfefirek; C:\WINDOWS\system32\drivers\mfefirek.sys [2014-04-03 522360] R3 mfencbdc;McAfee Inc. mfencbdc; C:\WINDOWS\system32\DRIVERS\mfencbdc.sys [2014-03-18 441264] R3 netr28x;@oem38.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2015-06-12 2554528] R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth-apparaat (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-07-10 167936] R3 RSP2STOR;@oem39.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-06-05 310528] R3 rtbth;@oem40.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2015-06-03 1219200] R3 RTL8168;@oem0.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\System32\drivers\Rt630x64.sys [2013-08-16 830680] R3 SynTP;@oem25.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-07-17 614088] S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800] S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168] S0 mfeelamk;McAfee Inc. mfeelamk; C:\WINDOWS\system32\drivers\mfeelamk.sys [2014-04-03 69352] S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208] S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720] S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288] S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Stuurprogramma voor Bluetooth-poort; C:\WINDOWS\System32\Drivers\BTHport.sys [2015-08-20 929280] S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-07-10 32256] S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736] S3 dg_ssudbus;@oem83.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-09-11 108800] S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232] S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992] S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016] S3 HipShieldK;McAfee Inc. HipShieldK; C:\WINDOWS\system32\drivers\HipShieldK.sys [2013-09-23 197704] S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800] S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624] S3 mfencrk;McAfee Inc. mfencrk; C:\WINDOWS\system32\DRIVERS\mfencrk.sys [2014-03-18 96592] S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376] S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128] S3 RDID1144;TB-3; C:\WINDOWS\system32\Drivers\rdwm1144.sys [2013-09-05 234240] S3 RDID1145;TR-8; C:\WINDOWS\system32\Drivers\rdwm1145.sys [2013-11-11 234752] S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-08-20 934752] S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2013-07-26 30448] S3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2013-07-26 34544] S3 ssudmdm;@oem84.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-09-11 206080] S3 ssudserd;@oem85.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudserd.sys [2015-09-11 206080] S3 TASCAM_US122144;TASCAM USB 2.0 Audio Device driver; C:\WINDOWS\System32\Drivers\tascusb2.sys [2012-02-14 409664] S3 TASCAM_US144_MK2_MIDI;TASCAM US-144 mk2 WDM MIDI Device; C:\WINDOWS\system32\drivers\tscusb2m.sys [2012-02-14 31296] S3 TASCAM_US144_MK2_WDM;TASCAM US-144 mk2 WDM; C:\WINDOWS\system32\drivers\tscusb2a.sys [2012-02-14 50240] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-08-01 263200] R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-09-25 344064] R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] R2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184] R2 Cachedrv server; HP SimplePass Cachedrv Service; C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe [2013-10-14 109568] R2 ClickToRunSvc;Microsoft Office ClickToRun Service; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2015-07-14 2765496] R2 CltMngSvc;Search Protect Service; C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe [2015-09-06 3240184] R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] R2 gyvixodu;CD Feature; C:\Program Files (x86)\33444335-1442434422-3637-5438-A0D3C1697ED7\hnsbA52E.tmp [2015-09-16 203776] R2 HomeNetSvc;McAfee Home Network; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928] R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2015-05-19 99128] R2 hpsrv;@oem9.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2013-07-23 43320] R2 HPWMISVC;HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [2014-10-09 569608] R2 lehicewu;Disk Low-res; C:\Program Files (x86)\33444335-1442434422-3637-5438-A0D3C1697ED7\jnsc8ED5.tmp [2015-09-16 181760] R2 McAPExe;McAfee AP Service; C:\Program Files\McAfee\MSC\McAPExe.exe [2014-04-25 178528] R2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928] R2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [2013-07-30 328928] R2 mcpltsvc;McAfee Platform Services; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [2013-07-30 328928] R2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [2013-07-30 328928] R2 mfecore;McAfee Anti-Malware Core; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [2014-03-18 1041192] R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2014-04-03 219752] R2 mfevtp;McAfee Validation Trust Protection Service; C:\Windows\system32\mfevtps.exe [2014-04-03 189912] R2 MSK80Service;McAfee Anti-Spam Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928] R2 NixSrv;NixSrv Service; C:\Program Files\NixSrv\NixSrv.exe [2015-09-03 379904] R2 omniserv; HP SimplePass Service; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [2013-10-14 87552] R2 OneSyncSvc_Session1;Host synchroniseren_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] R2 PaceLicenseDServices;PACE License Services; C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe [2014-01-16 17191840] R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-06-24 303360] R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2015-06-16 1750712] R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2015-06-16 2102496] R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2015-07-24 224712] R2 SSFK;SSFK; C:\Program Files (x86)\SFK\SSFK.exe [2015-09-17 451584] R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-07-17 246472] R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2013-09-10 1129760] R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] R3 PimIndexMaintenanceSvc_Session1;Contact Data_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S2 avgfws;AVG Firewall; C:\Program Files (x86)\AVG\Av\avgfws.exe [] S2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagent.exe [] S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-09-16 68608] S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200] S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-07-10 50352] S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136] S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696] S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-09-16 68608] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200] S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 McAWFwk;McAfee Activation Service; C:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [2013-07-24 334608] S3 McODS;McAfee Scanner; C:\Program Files\mcafee\VirusScan\mcods.exe [2013-08-02 602944] S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344] S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2013-02-01 150600] S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-08-20 1031680] S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2015-06-10 155520] S4 McOobeSv2;McAfee OOBE Service2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [2013-07-30 328928] -----------------EOF-----------------