Logfile of random's system information tool 1.10 (written by random/random) Run by Pol at 2016-01-27 16:54:06 Microsoft Windows 7 Home Premium Service Pack 1 System drive C: has 68 GB (24%) free of 288 GB Total RAM: 1976 MB (35% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 16:54:48, on 27/01/2016 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v11.0 (11.00.9600.18163) Boot mode: Normal Running processes: C:\windows\system32\taskhost.exe C:\windows\system32\Dwm.exe C:\windows\Explorer.EXE C:\windows\system32\taskeng.exe C:\Program Files\iolo\System Mechanic\iologovernor.exe C:\Windows\System32\igfxpers.exe C:\Program Files\Common Files\Isabel\isa_kbc_certupdate.exe C:\windows\system32\igfxsrvc.exe C:\Program Files\Norton Security\Engine\22.5.5.15\NS.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Users\Pol\AppData\Local\Microsoft\OneDrive\OneDrive.exe C:\Program Files\Trusteer\Rapport\bin\RapportService.exe C:\windows\system32\GWX\GWX.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Users\Pol\AppData\Local\Programs\Google\MusicManager\MusicManager.exe C:\Program Files\iolo\System Mechanic\LiveBoost.exe C:\Program Files\4Team Corporation\Sync2\Sync2.exe C:\Users\Pol\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\PROGRA~1\MICROS~2\Office12\WINWORD.EXE C:\windows\system32\taskeng.exe C:\Users\Pol\Desktop\RSIT.exe C:\windows\system32\SearchProtocolHost.exe C:\windows\system32\SearchFilterHost.exe C:\Program Files\trend micro\Pol.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.standaard.be/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: (no name) - {4c60e5ab-5c68-4c59-abaa-885010b24b32} - C:\Program Files\FromDocToPDF_65\bar\1.bin\65SrcAs.dll O2 - BHO: PDF Architect 3 Helper - {06E08260-0695-4EC1-A74B-1310D8899D93} - C:\Program Files\PDF Architect 3\creator-ie-helper.dll O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Security\Engine\22.5.5.15\coIEPlg.dll O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - (no file) O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll O2 - BHO: Toolbar BHO - {a235e1e3-6296-4710-af39-104a7faa6c7c} - C:\PROGRA~1\FROMDO~1\bar\1.bin\65bar.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll O2 - BHO: Search Assistant BHO - {f236ca79-3123-4afb-9f74-e98117ad5625} - C:\Program Files\FromDocToPDF_65\bar\1.bin\65SrcAs.dll O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Security\Engine\22.5.5.15\coIEPlg.dll O3 - Toolbar: PDF Architect 3 Toolbar - {2DFF3579-5AA7-45B9-9328-1D38EA230861} - C:\Program Files\PDF Architect 3\creator-ie-plugin.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O3 - Toolbar: FromDocToPDF - {c66a678d-5e6c-4af9-8f57-c6192f42cf74} - C:\Program Files\FromDocToPDF_65\bar\1.bin\65bar.dll O4 - HKLM\..\Run: [Persistence] C:\windows\system32\igfxpers.exe O4 - HKLM\..\Run: [IsaKbcCertUpdate] C:\Program Files\Common Files\Isabel\isa_kbc_certupdate.exe O4 - HKLM\..\Run: [Logitech Download Assistant] C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch O4 - HKLM\..\Run: [iolo Startup] "C:\Program Files\iolo\Common\Lib\ioloLManager.exe" /lbstartup O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [FromDocToPDF EPM Support] "C:\PROGRA~1\FROMDO~1\bar\1.bin\65medint.exe" t8EPMSup.dll,S O4 - HKCU\..\Run: [OneDrive] "C:\Users\Pol\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\Pol\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_579742569BC839997C43F7836E24B15F] "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window O4 - HKCU\..\Run: [Google Update] "C:\Users\Pol\AppData\Local\Google\Update\GoogleUpdate.exe" /c O4 - HKCU\..\Run: [MusicManager] "C:\Users\Pol\AppData\Local\Programs\Google\MusicManager\MusicManager.exe" O4 - HKCU\..\Run: [Sync2] "C:\Program Files\4Team Corporation\Sync2\Sync2.exe" /background O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - Startup: Dropbox.lnk = Pol\AppData\Roaming\Dropbox\bin\Dropbox.exe O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200 O9 - Extra button: @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - (no file) O9 - Extra 'Tools' menuitem: @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - (no file) O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O12 - Plugin for .mu3: C:\Program Files\Internet Explorer\Plugins\NPMyrMus.dll O12 - Plugin for .mus: C:\Program Files\Internet Explorer\Plugins\NPMyrMus.dll O12 - Plugin for .mxl: C:\Program Files\Internet Explorer\Plugins\NPMyrMus.dll O12 - Plugin for .mya: C:\Program Files\Internet Explorer\Plugins\NPMyrMus.dll O12 - Plugin for .myr: C:\Program Files\Internet Explorer\Plugins\NPMyrMus.dll O12 - Plugin for .myt: C:\Program Files\Internet Explorer\Plugins\NPMyrMus.dll O12 - Plugin for .xmz: C:\Program Files\Internet Explorer\Plugins\NPMyrMus.dll O15 - Trusted Zone: http://cbc-pdf.cbc.be (HKLM) O15 - Trusted Zone: http://static.cbc.be (HKLM) O15 - Trusted Zone: http://www.cbccorporate.be (HKLM) O15 - Trusted Zone: http://www.csob.cz (HKLM) O15 - Trusted Zone: http://www.csob.sk (HKLM) O15 - Trusted Zone: http://col.isabel.be (HKLM) O15 - Trusted Zone: http://www.isabel.be (HKLM) O15 - Trusted Zone: http://www.beta.isabel.be (HKLM) O15 - Trusted Zone: http://col.isabel.eu (HKLM) O15 - Trusted Zone: http://www.isabel.eu (HKLM) O15 - Trusted Zone: http://www.beta.isabel.eu (HKLM) O15 - Trusted Zone: http://kbc-pdf.kbc.be (HKLM) O15 - Trusted Zone: http://static.kbc.be (HKLM) O15 - Trusted Zone: http://www.kbcam.be (HKLM) O15 - Trusted Zone: http://www.kbcam.com (HKLM) O15 - Trusted Zone: http://www.kbcbankingforbusiness.com (HKLM) O15 - Trusted Zone: http://www.kbccorporates.com (HKLM) O15 - Trusted Zone: http://www.kbcfi.com (HKLM) O15 - Trusted Zone: http://www.kbcmerchantbanking.com (HKLM) O15 - Trusted Zone: http://www.kh.hu (HKLM) O15 - Trusted Zone: http://*.mcafee.com (HKLM) O15 - Trusted Zone: http://betavscan.mcafeeasap.com (HKLM) O15 - Trusted Zone: http://vs.mcafeeasap.com (HKLM) O15 - Trusted Zone: http://www.mcafeeasap.com (HKLM) O15 - ESC Trusted Zone: http://*.mcafee.com (HKLM) O15 - ESC Trusted Zone: http://betavscan.mcafeeasap.com (HKLM) O15 - ESC Trusted Zone: http://vs.mcafeeasap.com (HKLM) O15 - ESC Trusted Zone: http://www.mcafeeasap.com (HKLM) O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: AdminService for OpenEdge 10.2B (AdminService10.2B) - Unknown owner - C:\Program Files\OpenEdge\bin\AdmSrvc.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe O23 - Service: FromDocToPDFService (FromDocToPDF_65Service) - Mindspark - C:\PROGRA~1\FROMDO~1\bar\1.bin\65barsvc.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Intel(R) Rapid Storage Technologie (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: iolo System Service (ioloSystemService) - iolo technologies, LLC - C:\Program Files\iolo\Common\Lib\ioloServiceManager.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Norton Security (NS) - Symantec Corporation - C:\Program Files\Norton Security\Engine\22.5.5.15\NS.exe O23 - Service: PDF Architect 3 - pdfforge GmbH - C:\Program Files\PDF Architect 3\ws.exe O23 - Service: PDF Architect 3 CrashHandler - pdfforge GmbH - C:\Program Files\PDF Architect 3\crash-handler-ws.exe O23 - Service: PDF Architect 3 Creator - pdfforge GmbH - C:\Program Files\PDF Architect 3\creator-ws.exe O23 - Service: Rapport Management Service (RapportMgmtService) - IBM Corp. - C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe O23 - Service: ScsiAccess - Unknown owner - C:\Program Files\Photodex\ProShow Gold\ScsiAccess.exe -- End of file - 11108 bytes ======Scheduled tasks folder====== C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe C:\windows\tasks\DropboxUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001Core.job - C:\Users\Pol\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c C:\windows\tasks\DropboxUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001UA.job - C:\Users\Pol\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler C:\windows\tasks\GoogleUpdateTaskMachineCore1d046058817a5fc.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c C:\windows\tasks\GoogleUpdateTaskMachineUA1d046058a9b25f8.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001Core.job - C:\Users\Pol\AppData\Local\Google\Update\GoogleUpdate.exe /c C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001UA.job - C:\Users\Pol\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler C:\windows\tasks\HPCeeScheduleForPol.job - C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForPol (null) ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06E08260-0695-4EC1-A74B-1310D8899D93}] PDF Architect 3 Helper - C:\Program Files\PDF Architect 3\creator-ie-helper.dll [2015-04-24 38104] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}] Norton Identity Protection - C:\Program Files\Norton Security\Engine\22.5.5.15\coIEPlg.dll [2015-11-05 794424] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-07-29 460384] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a235e1e3-6296-4710-af39-104a7faa6c7c}] Toolbar BHO - C:\PROGRA~1\FROMDO~1\bar\1.bin\65bar.dll [2015-12-01 1021776] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-19 194504] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-29 172640] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f236ca79-3123-4afb-9f74-e98117ad5625}] Search Assistant BHO - C:\Program Files\FromDocToPDF_65\bar\1.bin\65SrcAs.dll [2015-12-01 145744] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files\Norton Security\Engine\22.5.5.15\coIEPlg.dll [2015-11-05 794424] {2DFF3579-5AA7-45B9-9328-1D38EA230861} - PDF Architect 3 Toolbar - C:\Program Files\PDF Architect 3\creator-ie-plugin.dll [2015-04-24 496344] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-19 194504] {c66a678d-5e6c-4af9-8f57-c6192f42cf74} - FromDocToPDF - C:\Program Files\FromDocToPDF_65\bar\1.bin\65bar.dll [2015-12-01 1021776] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "Persistence"=C:\windows\system32\igfxpers.exe [2010-03-12 166936] "IsaKbcCertUpdate"=C:\Program Files\Common Files\Isabel\isa_kbc_certupdate.exe [2012-10-15 1085528] "Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1425208] "iolo Startup"=C:\Program Files\iolo\Common\Lib\ioloLManager.exe [2015-07-24 4536120] "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2015-10-16 157456] "FromDocToPDF EPM Support"=C:\PROGRA~1\FROMDO~1\bar\1.bin\65medint.exe [2015-12-01 11600] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "OneDrive"=C:\Users\Pol\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-14 551112] "Dropbox Update"=C:\Users\Pol\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-18 134512] "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016] "GoogleChromeAutoLaunch_579742569BC839997C43F7836E24B15F"=C:\Program Files\Google\Chrome\Application\chrome.exe [2016-01-12 748360] "Google Update"=C:\Users\Pol\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29 144200] "MusicManager"=C:\Users\Pol\AppData\Local\Programs\Google\MusicManager\MusicManager.exe [2015-11-17 7643136] "Sync2"=C:\Program Files\4Team Corporation\Sync2\Sync2.exe [2015-10-28 7751528] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-10-27 207424] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\beid] C:\Program Files\Belgium Identity Card\beid35gui.exe /startup [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPAdvisorDock] C:\Program Files\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe [2010-02-10 1515576] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2010-01-22 2363392] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MusicManager] C:\Users\Pol\AppData\Local\Programs\Google\MusicManager\MusicManager.exe [2015-11-17 7643136] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MyTomTomSA.exe] C:\Program Files\MyTomTom 3\MyTomTomSA.exe [2013-05-23 455608] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaSuite.exe] C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe [2013-10-02 1090912] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] C:\Program Files\QuickTime\QTTask.exe [2015-08-06 421888] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl11] C:\Program Files\CyberLink\PowerDVD11\PDVD11Serv.exe [2011-09-14 230696] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype] C:\Program Files\Skype\\Phone\Skype.exe [2014-12-11 30877280] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify] C:\Users\Pol\AppData\Roaming\Spotify\Spotify.exe [2013-07-05 4640768] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 1791272] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe [2011-11-12 495708] C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup Dropbox.lnk - C:\Users\Pol\AppData\Roaming\Dropbox\bin\Dropbox.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] C:\windows\system32\igfxdev.dll [2010-01-25 225792] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll, schannel.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ioloSystemService] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ioloSystemService] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 "NoDrives"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDrives"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "vidc.cvid"=iccvid.dll "MSVideo8"=VfWWDM32.dll "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "wave3"=wdmaud.drv "midi3"=wdmaud.drv "mixer3"=wdmaud.drv "wave4"=wdmaud.drv "midi4"=wdmaud.drv "mixer4"=wdmaud.drv "wave5"=wdmaud.drv "midi5"=wdmaud.drv "mixer5"=wdmaud.drv "wave6"=wdmaud.drv "midi6"=wdmaud.drv "mixer6"=wdmaud.drv "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "wave7"=wdmaud.drv "midi7"=wdmaud.drv "mixer7"=wdmaud.drv "wave8"=wdmaud.drv "midi8"=wdmaud.drv "mixer8"=wdmaud.drv "wave9"=wdmaud.drv "midi9"=wdmaud.drv "mixer9"=wdmaud.drv "msacm.siren"=sirenacm.dll ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 ======List of files/folders created in the last 1 month====== 2016-01-27 13:57:46 ----D---- C:\Program Files\HD Tune 2016-01-27 11:07:34 ----HDC---- C:\OneDriveTemp 2016-01-13 11:07:08 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll 2016-01-13 11:07:08 ----A---- C:\windows\system32\ieetwproxystub.dll 2016-01-13 11:07:08 ----A---- C:\windows\system32\ieetwcollector.exe 2016-01-13 11:07:07 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe 2016-01-13 11:07:07 ----A---- C:\windows\system32\iernonce.dll 2016-01-13 11:07:07 ----A---- C:\windows\system32\ie4uinit.exe 2016-01-13 11:07:06 ----A---- C:\windows\system32\urlmon.dll 2016-01-13 11:07:06 ----A---- C:\windows\system32\occache.dll 2016-01-13 11:07:06 ----A---- C:\windows\system32\jsproxy.dll 2016-01-13 11:07:06 ----A---- C:\windows\system32\jscript9diag.dll 2016-01-13 11:07:06 ----A---- C:\windows\system32\ieUnatt.exe 2016-01-13 11:07:06 ----A---- C:\windows\system32\iedkcs32.dll 2016-01-13 11:07:06 ----A---- C:\windows\system32\dxtmsft.dll 2016-01-13 11:07:05 ----A---- C:\windows\system32\msfeeds.dll 2016-01-13 11:07:05 ----A---- C:\windows\system32\ieapfltr.dll 2016-01-13 11:07:03 ----A---- C:\windows\system32\webcheck.dll 2016-01-13 11:07:03 ----A---- C:\windows\system32\msrating.dll 2016-01-13 11:07:03 ----A---- C:\windows\system32\iesetup.dll 2016-01-13 11:07:02 ----A---- C:\windows\system32\wininet.dll 2016-01-13 11:07:02 ----A---- C:\windows\system32\ieetwcollectorres.dll 2016-01-13 11:07:01 ----A---- C:\windows\system32\dxtrans.dll 2016-01-13 11:07:00 ----A---- C:\windows\system32\ieui.dll 2016-01-13 11:06:59 ----A---- C:\windows\system32\ieframe.dll 2016-01-13 11:06:57 ----A---- C:\windows\system32\mshtmlmedia.dll 2016-01-13 11:06:57 ----A---- C:\windows\system32\mshtmled.dll 2016-01-13 11:06:56 ----A---- C:\windows\system32\MshtmlDac.dll 2016-01-13 11:06:55 ----A---- C:\windows\system32\iertutil.dll 2016-01-13 11:06:52 ----A---- C:\windows\system32\mshtml.dll 2016-01-13 11:06:49 ----A---- C:\windows\system32\jscript9.dll 2016-01-13 11:06:46 ----A---- C:\windows\system32\vbscript.dll 2016-01-13 11:06:46 ----A---- C:\windows\system32\jscript.dll 2016-01-13 11:04:30 ----A---- C:\windows\system32\advapi32.dll 2016-01-13 11:04:17 ----A---- C:\windows\system32\appraiser.dll 2016-01-13 11:04:16 ----A---- C:\windows\system32\invagent.dll 2016-01-13 11:04:16 ----A---- C:\windows\system32\generaltel.dll 2016-01-13 11:04:14 ----A---- C:\windows\system32\devinv.dll 2016-01-13 11:04:14 ----A---- C:\windows\system32\acmigration.dll 2016-01-13 11:04:13 ----A---- C:\windows\system32\CompatTelRunner.exe 2016-01-13 11:03:35 ----A---- C:\windows\system32\kerberos.dll 2016-01-13 11:03:34 ----A---- C:\windows\system32\schannel.dll 2016-01-13 11:03:33 ----A---- C:\windows\system32\ntoskrnl.exe 2016-01-13 11:03:32 ----A---- C:\windows\system32\ntkrnlpa.exe 2016-01-13 11:03:32 ----A---- C:\windows\system32\ncrypt.dll 2016-01-13 11:03:32 ----A---- C:\windows\system32\lsasrv.dll 2016-01-13 11:03:30 ----A---- C:\windows\system32\rpcrt4.dll 2016-01-13 11:03:30 ----A---- C:\windows\system32\drivers\ksecpkg.sys 2016-01-13 11:03:29 ----A---- C:\windows\system32\wdigest.dll 2016-01-13 11:03:28 ----A---- C:\windows\system32\ntdll.dll 2016-01-13 11:03:28 ----A---- C:\windows\system32\msv1_0.dll 2016-01-13 11:03:27 ----A---- C:\windows\system32\drivers\ksecdd.sys 2016-01-13 11:03:24 ----A---- C:\windows\system32\sspicli.dll 2016-01-13 11:03:23 ----A---- C:\windows\system32\secur32.dll 2016-01-13 11:03:23 ----A---- C:\windows\system32\cryptbase.dll 2016-01-13 11:03:23 ----A---- C:\windows\system32\credssp.dll 2016-01-13 11:03:22 ----A---- C:\windows\system32\TSpkg.dll 2016-01-13 11:03:22 ----A---- C:\windows\system32\lsass.exe 2016-01-13 11:03:22 ----A---- C:\windows\system32\drivers\mrxsmb10.sys 2016-01-13 11:03:22 ----A---- C:\windows\system32\drivers\mrxsmb.sys 2016-01-13 11:03:21 ----A---- C:\windows\system32\smss.exe 2016-01-13 11:03:20 ----A---- C:\windows\system32\srcore.dll 2016-01-13 11:03:20 ----A---- C:\windows\system32\drivers\mrxsmb20.sys 2016-01-13 11:03:19 ----A---- C:\windows\system32\srclient.dll 2016-01-13 11:03:19 ----A---- C:\windows\system32\csrsrv.dll 2016-01-13 11:03:18 ----A---- C:\windows\system32\rstrui.exe 2016-01-13 11:03:18 ----A---- C:\windows\system32\apisetschema.dll 2016-01-13 11:03:15 ----A---- C:\windows\system32\sspisrv.dll 2016-01-13 11:03:15 ----A---- C:\windows\system32\auditpol.exe 2016-01-13 11:03:14 ----A---- C:\windows\system32\adtschema.dll 2016-01-13 11:03:13 ----A---- C:\windows\system32\msobjs.dll 2016-01-13 11:03:13 ----A---- C:\windows\system32\msaudite.dll 2016-01-13 11:01:39 ----A---- C:\windows\system32\aepic.dll 2016-01-13 11:01:39 ----A---- C:\windows\system32\aeinv.dll 2016-01-13 11:01:37 ----A---- C:\windows\system32\gdi32.dll 2016-01-13 11:01:34 ----A---- C:\windows\system32\qedit.dll 2016-01-13 11:01:31 ----A---- C:\windows\system32\win32k.sys 2016-01-13 11:01:28 ----A---- C:\windows\system32\mapistub.dll 2016-01-13 11:01:28 ----A---- C:\windows\system32\mapi32.dll 2016-01-13 11:01:27 ----A---- C:\windows\system32\fixmapi.exe 2016-01-13 11:01:21 ----A---- C:\windows\system32\WMVDECOD.DLL 2016-01-13 11:01:21 ----A---- C:\windows\system32\msmpeg2adec.dll 2016-01-13 11:01:20 ----A---- C:\windows\system32\WMSPDMOD.DLL 2016-01-13 11:01:20 ----A---- C:\windows\system32\WMADMOD.DLL 2016-01-13 11:01:20 ----A---- C:\windows\system32\MSMPEG2ENC.DLL 2016-01-13 11:01:20 ----A---- C:\windows\system32\mf.dll 2016-01-13 11:01:19 ----A---- C:\windows\system32\WMVSDECD.DLL 2016-01-13 11:01:19 ----A---- C:\windows\system32\WMVENCOD.DLL 2016-01-13 11:01:19 ----A---- C:\windows\system32\wmpmde.dll 2016-01-13 11:01:19 ----A---- C:\windows\system32\WMADMOE.DLL 2016-01-13 11:01:19 ----A---- C:\windows\system32\evr.dll 2016-01-13 11:01:19 ----A---- C:\windows\system32\COLORCNV.DLL 2016-01-13 11:01:18 ----A---- C:\windows\system32\WMVXENCD.DLL 2016-01-13 11:01:18 ----A---- C:\windows\system32\quartz.dll 2016-01-13 11:01:18 ----A---- C:\windows\system32\qdvd.dll 2016-01-13 11:01:18 ----A---- C:\windows\system32\mfplat.dll 2016-01-13 11:01:18 ----A---- C:\windows\system32\mcmde.dll 2016-01-13 11:01:18 ----A---- C:\windows\system32\devenum.dll 2016-01-13 11:01:17 ----A---- C:\windows\system32\WMVSENCD.DLL 2016-01-13 11:01:17 ----A---- C:\windows\system32\WMALFXGFXDSP.dll 2016-01-13 11:01:17 ----A---- C:\windows\system32\msmpeg2vdec.dll 2016-01-13 11:01:17 ----A---- C:\windows\system32\MPG4DECD.DLL 2016-01-13 11:01:17 ----A---- C:\windows\system32\MP43DECD.DLL 2016-01-13 11:01:17 ----A---- C:\windows\system32\MFWMAAEC.DLL 2016-01-13 11:01:16 ----A---- C:\windows\system32\WMSPDMOE.DLL 2016-01-13 11:01:16 ----A---- C:\windows\system32\VIDRESZR.DLL 2016-01-13 11:01:16 ----A---- C:\windows\system32\SysFxUI.dll 2016-01-13 11:01:16 ----A---- C:\windows\system32\qasf.dll 2016-01-13 11:01:15 ----A---- C:\windows\system32\rrinstaller.exe 2016-01-13 11:01:15 ----A---- C:\windows\system32\RESAMPLEDMO.DLL 2016-01-13 11:01:15 ----A---- C:\windows\system32\MP4SDECD.DLL 2016-01-13 11:01:15 ----A---- C:\windows\system32\MP3DMOD.DLL 2016-01-13 11:01:15 ----A---- C:\windows\system32\mfvdsp.dll 2016-01-13 11:01:14 ----A---- C:\windows\system32\mfps.dll 2016-01-13 11:01:14 ----A---- C:\windows\system32\mfpmp.exe 2016-01-13 11:01:14 ----A---- C:\windows\system32\drivers\portcls.sys 2016-01-13 11:01:13 ----A---- C:\windows\system32\mferror.dll 2016-01-13 11:01:13 ----A---- C:\windows\system32\ksuser.dll 2016-01-13 11:01:13 ----A---- C:\windows\system32\drivers\drmkaud.sys 2016-01-13 11:01:13 ----A---- C:\windows\system32\drivers\drmk.sys 2016-01-03 19:10:32 ----A---- C:\windows\system32\drivers\RapportKELL.sys 2016-01-03 19:10:32 ----A---- C:\windows\system32\drivers\RapportHades.sys 2015-12-29 18:51:15 ----D---- C:\Users\Pol\AppData\Roaming\Downloaded Installations 2015-12-29 18:45:48 ----D---- C:\Program Files\FromDocToPDF_65 2015-12-29 11:37:50 ----D---- C:\Users\Pol\AppData\Roaming\Ashampoo 2015-12-29 11:33:51 ----D---- C:\ProgramData\Ashampoo 2015-12-29 11:33:40 ----D---- C:\Program Files\Ashampoo ======List of files/folders modified in the last 1 month====== 2016-01-27 16:54:32 ----D---- C:\Program Files\Trend Micro 2016-01-27 16:51:59 ----DC---- C:\windows\Temp 2016-01-27 13:57:46 ----RD---- C:\Program Files 2016-01-27 11:09:29 ----SHD---- C:\System Volume Information 2016-01-27 11:08:51 ----D---- C:\Users\Pol\AppData\Roaming\Dropbox 2016-01-27 11:07:26 ----D---- C:\windows\system32\config 2016-01-27 11:04:54 ----D---- C:\windows\System32 2016-01-27 11:04:54 ----A---- C:\windows\system32\PerfStringBackup.INI 2016-01-27 11:04:53 ----D---- C:\windows\inf 2016-01-25 18:04:22 ----D---- C:\Program Files\Internet Explorer 2016-01-25 18:01:56 ----D---- C:\Windows 2016-01-25 14:39:43 ----SHD---- C:\windows\Installer 2016-01-25 14:39:42 ----DC---- C:\Config.Msi 2016-01-21 11:00:53 ----D---- C:\Program Files\Opera 2016-01-21 11:00:52 ----D---- C:\windows\system32\Tasks 2016-01-20 09:52:54 ----D---- C:\ProgramData\Sonos,_Inc 2016-01-19 23:10:04 ----D---- C:\windows\system32\catroot 2016-01-19 10:03:31 ----D---- C:\Program Files\Belgium Identity Card 2016-01-19 10:03:29 ----D---- C:\windows\system32\DriverStore 2016-01-19 10:01:02 ----D---- C:\Program Files\BeID Minidriver 2016-01-18 09:47:24 ----D---- C:\windows\winsxs 2016-01-18 09:44:50 ----D---- C:\windows\system32\nl-NL 2016-01-18 09:44:49 ----D---- C:\windows\system32\en-US 2016-01-18 09:44:41 ----SD---- C:\windows\system32\CompatTel 2016-01-18 09:44:40 ----D---- C:\windows\system32\appraiser 2016-01-18 09:44:39 ----D---- C:\windows\AppPatch 2016-01-18 09:44:30 ----D---- C:\windows\system32\drivers 2016-01-18 00:56:10 ----D---- C:\ProgramData\Microsoft Help 2016-01-18 00:53:46 ----D---- C:\Program Files\Microsoft Silverlight 2016-01-18 00:47:55 ----D---- C:\windows\system32\MRT 2016-01-18 00:32:18 ----A---- C:\windows\system32\MRT.exe 2016-01-14 14:51:21 ----D---- C:\Program Files\Sonos 2016-01-13 11:00:01 ----D---- C:\windows\system32\catroot2 2016-01-11 12:09:32 ----D---- C:\windows\Prefetch 2016-01-03 16:57:34 ----D---- C:\windows\Logs 2015-12-30 16:57:42 ----A---- C:\windows\system32\FlashPlayerApp.exe 2015-12-29 11:33:51 ----D---- C:\ProgramData 2015-12-28 17:49:34 ----D---- C:\Program Files\Windows Sidebar ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2010-01-08 331288] R0 iaStorA;iaStorA; C:\windows\system32\DRIVERS\iaStorA.sys [2013-03-05 527344] R0 iaStorF;iaStorF; C:\windows\system32\DRIVERS\iaStorF.sys [2013-03-05 26096] R0 PxHelp20;PxHelp20; C:\windows\System32\Drivers\PxHelp20.sys [2009-07-09 45200] R0 RapportHades;RapportHades; C:\windows\System32\Drivers\RapportHades.sys [2016-01-03 71384] R0 RapportKELL;RapportKELL; C:\windows\System32\Drivers\RapportKELL.sys [2016-01-03 224344] R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 173440] R0 SymEFASI;Symantec Extended File Attributes (SI); C:\windows\system32\drivers\NS\1605050.00F\SYMEFASI.SYS [2015-11-12 1287408] R1 BHDrvx86;BHDrvx86; \??\C:\Program Files\Norton Security\NortonData\22.5.2.15\Definitions\BASHDefs\20160119.001\BHDrvx86.sys [2015-10-08 1193032] R1 ccSet_NS;NS Settings Manager; C:\windows\system32\drivers\NS\1605050.00F\ccSetx86.sys [2015-07-11 137456] R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2015-11-18 389968] R1 ElRawDisk;ElRawDisk; \??\C:\windows\system32\drivers\ElRawDsk.sys [2012-10-18 26248] R1 IDSVix86;IDSVix86; \??\C:\Program Files\Norton Security\NortonData\22.5.2.15\Definitions\IPSDefs\20160126.001\IDSvix86.sys [2015-12-04 580344] R1 RapportCerberus_1507079;RapportCerberus_1507079; \??\C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus32_1507079.sys [2015-12-04 558456] R1 RapportEI;RapportEI; \??\C:\Program Files\Trusteer\Rapport\bin\RapportEI.sys [2016-01-03 295000] R1 RapportPG;RapportPG; \??\C:\Program Files\Trusteer\Rapport\bin\RapportPG.sys [2016-01-03 352408] R1 RawDisk3;RawDisk3; \??\C:\windows\system32\drivers\rawdsk3.sys [2014-10-23 28256] R1 SRTSPX;Symantec Real Time Storage Protection (PEL); C:\windows\system32\drivers\NS\1605050.00F\SRTSPX.SYS [2015-07-11 44792] R1 SymIRON;Symantec Iron Driver; C:\windows\system32\drivers\NS\1605050.00F\Ironx86.SYS [2015-07-11 234744] R1 SymNetS;Symantec Network Security WFP Driver; C:\windows\System32\Drivers\NS\1605050.00F\SYMNETS.SYS [2015-11-12 431328] R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128] R2 ntk_PowerDVD;ntk_PowerDVD; \??\C:\Program Files\CyberLink\PowerDVD11\Kernel\DMP\ntk_PowerDVD.sys [2011-09-14 71664] R2 PDFsFilter;PDFsFilter; C:\windows\system32\DRIVERS\PDFsFilter.sys [2015-07-24 69016] R3 Afc;PPdus ASPI Shell; C:\windows\system32\drivers\Afc.sys [2006-11-10 18688] R3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\AGRSM.sys [2010-01-26 1163328] R3 BthEnum;Bluetooth-stuurprogramma voor aanvraagblok; C:\windows\system32\DRIVERS\BthEnum.sys [2009-07-14 34816] R3 BthPan;Bluetooth-apparaat (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696] R3 BTHUSB;USB-stuurprogramma voor Bluetooth-radio; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416] R3 btwaudio;Bluetooth-audioapparaat; C:\windows\system32\drivers\btwaudio.sys [2010-01-07 86056] R3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2010-01-07 108072] R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-01-07 29472] R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-01-07 18472] R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2015-11-18 125264] R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840] R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2009-07-16 15872] R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd32.sys [2010-01-25 6282240] R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI; C:\windows\system32\drivers\IntcHdmi.sys [2009-07-09 122880] R3 NAVENG;NAVENG; \??\C:\Program Files\Norton Security\NortonData\22.5.2.15\Definitions\VirusDefs\20160126.036\NAVENG.SYS [2015-10-28 104440] R3 NAVEX15;NAVEX15; \??\C:\Program Files\Norton Security\NortonData\22.5.2.15\Definitions\VirusDefs\20160126.036\NAVEX15.SYS [2015-10-28 1647216] R3 RFCOMM;Bluetooth-apparaat (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536] R3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856] R3 rtl8192se;Realtek Wireless LAN 802.11n PCI-E NIC NT Driver; C:\windows\system32\DRIVERS\rtl8192se.sys [2011-09-08 1117800] R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\windows\system32\DRIVERS\snp2uvc.sys [2010-06-22 1763968] R3 SRTSP;Symantec Real Time Storage Protection; C:\windows\System32\Drivers\NS\1605050.00F\SRTSP.SYS [2015-11-12 712944] R3 STHDA;@%SystemRoot%\system32\stlang.dll,-10305; C:\windows\system32\DRIVERS\stwrt.sys [2011-11-12 431616] R3 StillCam;Stuurprogramma voor seriële digitale fotocamera; C:\windows\system32\DRIVERS\serscan.sys [2009-07-14 9216] R3 SymEvent;SymEvent; \??\C:\windows\system32\Drivers\SYMEVENT.SYS [2015-09-16 103152] R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-06-04 1303728] R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336] S2 Parvdm;Parvdm; C:\windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704] S3 ACSSCR;ACR38 Smart Card Reader; C:\windows\system32\DRIVERS\a38usb.sys [2015-08-19 72376] S3 aic78xx;aic78xx; C:\windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720] S3 amdagp;AMD AGP Bus Filter Driver; C:\windows\system32\drivers\amdagp.sys [2009-07-14 53312] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888] S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\windows\system32\DRIVERS\bridge.sys [2009-07-14 78336] S3 BTHPORT;Stuurprogramma voor Bluetooth-poort; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 393728] S3 catchme;catchme; \??\C:\Users\Pol\AppData\Local\Temp\catchme.sys [] S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\windows\system32\DRIVERS\ssudbus.sys [2014-06-16 89856] S3 fssfltr;FssFltr; C:\windows\system32\DRIVERS\fssfltr.sys [2014-03-31 49856] S3 FsUsbExDisk;FsUsbExDisk; \??\C:\windows\system32\FsUsbExDisk.SYS [2010-06-14 36608] S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\windows\system32\drivers\MBAMSwissArmy.sys [2015-07-06 98520] S3 nmwcd;Nokia USB Phone Parent Driver; C:\windows\system32\drivers\ccdcmb.sys [2013-01-23 18560] S3 nmwcdc;Nokia USB Communication Driver; C:\windows\system32\drivers\ccdcmbo.sys [2013-01-23 23168] S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\windows\system32\DRIVERS\pccsmcfd.sys [2012-10-17 19072] S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12368] S3 sisagp;SIS AGP Bus Filter; C:\windows\system32\drivers\sisagp.sys [2009-07-14 52304] S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\windows\system32\DRIVERS\ssudmdm.sys [2014-06-16 184192] S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 30720] S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224] S3 upperdev;upperdev; C:\windows\system32\DRIVERS\usbser_lowerflt.sys [2013-01-23 8192] S3 usb_rndisx;USB RNDIS-adapter; C:\windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872] S3 usbscan;Stuurprogramma voor USB-scanner; C:\windows\system32\DRIVERS\usbscan.sys [2013-07-03 36352] S3 usbser;USB Modem Driver; C:\windows\system32\DRIVERS\usbser.sys [2013-08-29 28160] S3 UsbserFilt;UsbserFilt; C:\windows\system32\DRIVERS\usbser_lowerfltj.sys [2013-01-23 8192] S3 viaagp;VIA AGP Bus Filter; C:\windows\system32\drivers\viaagp.sys [2009-07-14 53328] S3 ViaC7;VIA C7 Processor Driver; C:\windows\system32\DRIVERS\viac7.sys [2009-07-14 52736] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdminService10.2B;AdminService for OpenEdge 10.2B; C:\Program Files\OpenEdge\bin\AdmSrvc.exe [2009-12-14 28672] R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128] R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2015-10-07 60720] R2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2015-08-12 390416] R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-12-29 595232] R2 CISVC;@%systemroot%\system32\CISVC.EXE,-1; C:\windows\system32\CISVC.EXE [2009-07-14 20480] R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2009-07-14 20992] R2 FromDocToPDF_65Service;FromDocToPDFService; C:\PROGRA~1\FROMDO~1\bar\1.bin\65barsvc.exe [2015-12-01 89424] R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technologie; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-03-05 15344] R2 ioloSystemService;iolo System Service; C:\Program Files\iolo\Common\Lib\ioloServiceManager.exe [2015-07-24 4682040] R2 NS;Norton Security; C:\Program Files\Norton Security\Engine\22.5.5.15\NS.exe [2015-11-20 282016] R2 PDF Architect 3 Creator;PDF Architect 3 Creator; C:\Program Files\PDF Architect 3\creator-ws.exe [2015-04-24 740568] R2 RapportMgmtService;Rapport Management Service; C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe [2016-01-03 2259224] R2 ScsiAccess;ScsiAccess; C:\Program Files\Photodex\ProShow Gold\ScsiAccess.exe [2014-02-05 186760] R3 iPod Service;iPod-service; C:\Program Files\iPod\bin\iPodService.exe [2015-10-16 541456] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608] S2 gupdate;Google Updateservice (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-30 144200] S3 aspnet_state;ASP.NET-statusservice; C:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-11 45744] S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2014-03-31 1512640] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-30 144200] S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-04-04 194032] S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2015-12-12 102912] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 PDF Architect 3 CrashHandler;PDF Architect 3 CrashHandler; C:\Program Files\PDF Architect 3\crash-handler-ws.exe [2015-04-24 901336] S3 PDF Architect 3;PDF Architect 3; C:\Program Files\PDF Architect 3\ws.exe [2015-04-24 2244312] S4 ACDaemon;ArcSoft Connect Daemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152] S4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-30 269504] S4 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\aestsrv.exe [2011-11-12 81920] S4 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agrsmsvc.exe [2009-12-03 26112] S4 CLHNServiceForPowerDVD;CLHNServiceForPowerDVD; C:\Program Files\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe [2011-09-14 83240] S4 CyberLink PowerDVD 11.0 Monitor Service;CyberLink PowerDVD 11.0 Monitor Service; C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe [2011-10-12 75048] S4 CyberLink PowerDVD 11.0 Service;CyberLink PowerDVD 11.0 Service; C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe [2011-10-12 292136] S4 hpHotkeyMonitor;HP Hotkey Monitor; C:\Program Files\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [2010-01-28 265272] S4 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2010-01-22 73728] S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944] S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944] S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944] S4 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [2013-04-08 1320496] S4 PDF Architect Service;PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [2013-04-08 799280] S4 PSI_SVC_2;Protexis Licensing V2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632] S4 RoxMediaDB10;RoxMediaDB10; c:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [2009-11-23 1120752] S4 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-09-22 249136] S4 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616] S4 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-12-11 315496] S4 STacSV;@%SystemRoot%\system32\stlang.dll,-10101; C:\Program Files\IDT\WDM\STacSV.exe [2011-11-12 254034] S4 stllssvr;stllssvr; c:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2009-10-16 74392] S4 Symantec RemoteAssist;Symantec RemoteAssist; C:\Program Files\Common Files\Symantec Shared\Support Controls\ssrc.exe [2008-02-01 394704] -----------------EOF-----------------