starting GDCleaner at 2015-12-21 12:30:19 Version: 1.0.15350.689 VersionCheck.newerVersionAvailable: 0 Engine V2.00.0 Data extracted from self Info 2015-11-30 10:14:06, B:0 W:152 S:n/a O:20 P:70 SDF:4/43/232 --- entering Detection Stage at 2015-12-21 12:30:30 --- Executing detection Script: SUCCESS #Detections: 0 #Suspicious paths: 72 C:\Windows\System32\igfxHK.exe C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe c:\malware\eicar.com C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe C:\Windows\System32\winlogon.exe C:\Users\Gebruiker\AppData\Local C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe C:\Users\Gebruiker\AppData\Roaming C:\Program Files (x86)\Acer\Care Center\ACCStd.exe C:\Windows\System32\WUDFHost.exe C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\apdproxy.exe C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe services.exe C:\Windows\System32\wbem\WmiPrvSE.exe smss.exe csrss.exe wininit.exe C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe C:\Windows\System32\lsass.exe C:\Windows\System32\dasHost.exe C:\Windows\System32\igfxCUIService.exe C:\Windows\System32\spoolsv.exe C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Users\Gebruiker\AppData\Local\Microsoft\OneDrive\OneDrive.exe C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe C:\Program Files (x86)\Acer\RLLEDCtrl\LEDCtrService.exe C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe C:\PROGRA~2\QUICKS~1\zcengine.exe C:\Program Files (x86)\Acer\Revo Suite\SmartControlService.exe C:\Program Files\WindowsApps\Microsoft.Messaging_2.12.15004.0_x86__8wekyb3d8bbwe\SkypeHost.exe C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe C:\Windows\System32\conhost.exe C:\Windows\System32\alg.exe C:\Users\Gebruiker\AppData\Local\Microsoft\BingSvc\BSvcUpdater.exe C:\Windows\System32\SearchProtocolHost.exe C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe C:\Windows\System32\SearchIndexer.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe C:\Users\Gebruiker\AppData\Local\Microsoft\BingSvc\BSvcProcessor.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe C:\Windows\System32\dwm.exe C:\Windows\System32\RuntimeBroker.exe C:\Windows\System32\igfxTray.exe C:\Program Files (x86)\Acer\RLLEDCtrl\LedCtrlUI.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Windows\System32\sihost.exe C:\Windows\System32\taskhostw.exe C:\Windows\System32\igfxEM.exe C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe C:\Users\Gebruiker\AppData\Local\Microsoft\BingSvc\BingSvc.exe C:\Windows\explorer.exe C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe C:\Windows\System32\ApplicationFrameHost.exe C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe C:\Windows\System32\SettingSyncHost.exe C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe C:\Windows\System32\fontdrvhost.exe C:\Program Files (x86)\Windows Live\Mail\wlmail.exe C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe audiodg.exe svchost.exe C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\INetCache\IE\0BS9JD6Z\GDCleanUp (1).exe C:\Windows\System32\SearchFilterHost.exe --- leaving Detection Stage at 2015-12-21 12:30:31 --- --- entering Scanning Stage at 2015-12-21 12:30:31 --- --- leaving Scanning Stage at 2015-12-21 12:31:08 ---