Logfile of random's system information tool 1.10 (written by random/random) Run by Koen at 2016-07-20 17:02:34 Microsoft Windows 7 Professional Service Pack 1 System drive C: has 138 GB (56%) free of 247 GB Total RAM: 2684 MB (41% free) ======Scheduled tasks folder====== C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}] Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2016-05-27 163536] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6C680BAE-655C-4E3D-8FC4-E6A520C3D928}] SteadyVideoBHO Class - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2012-02-14 69760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}] Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2016-05-17 1741096] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "HotkeyMon"=AsusSender.exe C:\Program Files\ASUS\HotkeyService\HotKeyMon.exe [] "HotkeyService"=AsusSender.exe C:\Program Files\ASUS\HotkeyService\HotkeyService.exe [] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-08-12 1873192] "SynAsusAcpi"=C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [2010-08-12 83240] "AvgUi"=C:\Program Files\AVG\Framework\Common\avguirnx.exe [2016-06-21 186640] "AVG_UI"=C:\Program Files\AVG\Av\avuirunnerx.exe [2016-06-29 32528] "StartCCC"=C:\Program Files\AMD\ATI.ACE\Core-Static\x86\CLIStart.exe [2015-08-04 748744] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2016-06-10 6775512] "AppEx Accelerator UI"=C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [2015-04-06 374464] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner.exe [2016-06-10 6775512] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Fitbit Connect] C:\Program Files\Fitbit Connect\Fitbit Connect.exe [2014-11-07 4369952] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "vidc.cvid"=iccvid.dll "MSVideo8"=VfWWDM32.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2016-07-20 17:02:35 ----D---- C:\Program Files\trend micro 2016-07-20 17:02:34 ----D---- C:\rsit 2016-07-19 20:29:20 ----D---- C:\ProgramData\ATI 2016-07-19 20:25:58 ----D---- C:\Program Files\AMD Quick Stream 2016-07-19 20:25:58 ----A---- C:\Windows\system32\drivers\appexDrv.sys 2016-07-19 20:21:32 ----D---- C:\Program Files\Common Files\ATI Technologies 2016-07-19 20:20:20 ----D---- C:\Program Files\AMD 2016-07-12 19:03:03 ----D---- C:\Users\Koen\AppData\Roaming\Azureus 2016-07-08 18:00:36 ----D---- C:\Program Files\Common Files\AV 2016-07-08 15:24:37 ----SHD---- C:\Config.Msi 2016-07-06 21:48:47 ----D---- C:\Users\Koen\AppData\Roaming\Raptr 2016-07-06 21:09:35 ----D---- C:\Users\Koen\AppData\Roaming\library_dir 2016-07-06 21:09:22 ----D---- C:\Program Files\Raptr Inc 2016-07-06 21:07:03 ----D---- C:\ProgramData\Package Cache 2016-06-27 18:54:35 ----ASH---- C:\pagefile.sys 2016-06-27 18:54:31 ----ASH---- C:\hiberfil.sys 2016-06-27 18:40:29 ----D---- C:\$SysReset ======List of files/folders modified in the last 1 month====== 2016-07-20 17:02:35 ----RD---- C:\Program Files 2016-07-20 17:00:33 ----D---- C:\Windows\Temp 2016-07-20 17:00:25 ----D---- C:\ProgramData\MFAData 2016-07-20 17:00:00 ----D---- C:\Windows\Microsoft.NET 2016-07-19 20:48:51 ----D---- C:\Windows\system32\config 2016-07-19 20:29:20 ----HD---- C:\ProgramData 2016-07-19 20:28:56 ----D---- C:\ProgramData\AMD 2016-07-19 20:27:46 ----D---- C:\Windows\system32\catroot 2016-07-19 20:26:28 ----D---- C:\Windows\system32\drivers 2016-07-19 20:26:27 ----D---- C:\Windows\system32\DriverStore 2016-07-19 20:26:27 ----D---- C:\Windows\inf 2016-07-19 20:25:49 ----SHD---- C:\Windows\Installer 2016-07-19 20:25:48 ----SD---- C:\Users\Koen\AppData\Roaming\Microsoft 2016-07-19 20:25:35 ----D---- C:\Windows\System32 2016-07-19 20:21:32 ----D---- C:\Program Files\Common Files 2016-07-19 20:06:22 ----SHD---- C:\System Volume Information 2016-07-19 19:29:46 ----D---- C:\Windows 2016-07-11 21:43:23 ----A---- C:\Windows\system32\PerfStringBackup.INI 2016-07-08 18:44:29 ----D---- C:\Users\Koen\AppData\Roaming\vlc 2016-07-08 17:59:41 ----HD---- C:\$AVG 2016-07-08 17:18:12 ----D---- C:\Windows\system32\catroot2 2016-07-08 17:07:29 ----D---- C:\AMD 2016-07-08 15:51:59 ----D---- C:\Windows\Prefetch 2016-07-08 15:42:34 ----D---- C:\Windows\system32\Tasks 2016-07-06 21:11:26 ----D---- C:\Windows\winsxs 2016-07-06 20:49:34 ----D---- C:\Program Files\ATI Technologies 2016-06-28 13:03:33 ----D---- C:\Program Files\Google 2016-06-27 19:53:13 ----SHD---- C:\Recovery 2016-06-27 19:46:08 ----D---- C:\Windows\system32\drivers\etc 2016-06-27 19:46:07 ----RSD---- C:\Windows\Media 2016-06-27 19:46:05 ----D---- C:\Windows\system32\zh-TW 2016-06-27 19:46:05 ----D---- C:\Windows\system32\zh-HK 2016-06-27 19:46:05 ----D---- C:\Windows\system32\zh-CN 2016-06-27 19:46:05 ----D---- C:\Windows\system32\tr-TR 2016-06-27 19:46:05 ----D---- C:\Windows\system32\sv-SE 2016-06-27 19:46:02 ----D---- C:\Windows\system32\ru-RU 2016-06-27 19:46:02 ----D---- C:\Windows\system32\pt-PT 2016-06-27 19:46:02 ----D---- C:\Windows\system32\pt-BR 2016-06-27 19:46:02 ----D---- C:\Windows\system32\pl-PL 2016-06-27 19:46:02 ----D---- C:\Windows\system32\nn-NO 2016-06-27 19:46:02 ----D---- C:\Windows\system32\nl-NL 2016-06-27 19:46:01 ----D---- C:\Windows\system32\NDF 2016-06-27 19:46:01 ----D---- C:\Windows\system32\nb-NO 2016-06-27 19:46:01 ----D---- C:\Windows\system32\migration 2016-06-27 19:46:01 ----D---- C:\Windows\system32\ko-KR 2016-06-27 19:46:01 ----D---- C:\Windows\system32\ja-JP 2016-06-27 19:46:01 ----D---- C:\Windows\system32\it-IT 2016-06-27 19:46:01 ----D---- C:\Windows\system32\hu-HU 2016-06-27 19:46:01 ----D---- C:\Windows\system32\fr-FR 2016-06-27 19:46:01 ----D---- C:\Windows\system32\fi-FI 2016-06-27 19:46:01 ----D---- C:\Windows\system32\es-ES 2016-06-27 19:46:01 ----D---- C:\Windows\system32\en-US 2016-06-27 19:46:01 ----D---- C:\Windows\system32\el-GR 2016-06-27 19:46:01 ----D---- C:\Windows\system32\drivers\nl-NL 2016-06-27 19:46:01 ----D---- C:\Windows\system32\de-DE 2016-06-27 19:46:01 ----D---- C:\Windows\system32\da-DK 2016-06-27 19:46:01 ----D---- C:\Windows\system32\cs-CZ 2016-06-27 19:46:01 ----D---- C:\Windows\system32\appmgmt 2016-06-27 19:46:00 ----D---- C:\Windows\ShellNew 2016-06-27 19:45:50 ----RSD---- C:\Windows\Fonts 2016-06-27 19:45:49 ----SD---- C:\ProgramData\Microsoft 2016-06-27 19:45:49 ----RSD---- C:\Windows\assembly 2016-06-27 19:45:49 ----D---- C:\Windows\DigitalLocker 2016-06-27 19:45:49 ----D---- C:\ProgramData\regid.1991-06.com.microsoft 2016-06-27 19:45:47 ----D---- C:\Program Files\Microsoft.NET 2016-06-27 19:45:47 ----D---- C:\Program Files\Common Files\System 2016-06-27 19:45:47 ----D---- C:\Program Files\Common Files\microsoft shared 2016-06-27 19:45:46 ----D---- C:\Windows\Tasks 2016-06-27 19:45:46 ----D---- C:\Windows\system32\Recovery 2016-06-27 18:55:39 ----HD---- C:\$WINDOWS.~BT 2016-06-27 18:55:37 ----HD---- C:\$GetCurrent 2016-06-27 18:55:17 ----A---- C:\Windows\progress.ini 2016-06-27 13:58:24 ----A---- C:\DelFix.txt 2016-06-22 14:59:57 ----D---- C:\Program Files\AVG 2016-06-22 14:59:55 ----D---- C:\Users\Koen\AppData\Roaming\AVG 2016-06-22 14:57:06 ----D---- C:\ProgramData\AVG ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys [2010-11-04 64128] R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys [2010-11-04 32384] R0 AVGIDSHX;AVGIDSHX; C:\Windows\system32\DRIVERS\avgidshx.sys [2016-06-01 201472] R0 Avglogx;AVG Logging Driver; C:\Windows\system32\DRIVERS\avglogx.sys [2016-02-16 287008] R0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx86.sys [2016-06-02 191744] R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx86.sys [2016-06-01 47360] R0 avgunivx;AVG Universal Driver; C:\Windows\system32\DRIVERS\avgunivx.sys [2016-06-01 65280] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440] R1 Avgdiskx;AVG Disk Driver; C:\Windows\system32\DRIVERS\avgdiskx.sys [2016-05-13 134912] R1 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\avgidsdriverx.sys [2016-06-09 255744] R1 AVGIDSShim;AVGIDSShim; C:\Windows\system32\DRIVERS\avgidsshimx.sys [2015-11-20 31664] R1 Avgldx86;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx86.sys [2016-06-01 212736] R1 Avgtdix;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdix.sys [2016-06-01 217344] R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096] R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128] R2 APXACC;AppEx Networks Accelerator LWF; C:\Windows\system32\DRIVERS\appexDrv.sys [2015-04-03 187072] R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2015-08-04 19503104] R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2015-08-04 532480] R3 asmthub3;ASMedia USB3 Hub Service; C:\Windows\system32\DRIVERS\asmthub3.sys [2011-02-24 100328] R3 asmtxhci;ASMEDIA XHCI Service; C:\Windows\system32\DRIVERS\asmtxhci.sys [2011-02-24 308200] R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2015-07-15 78848] R3 BCM43XX;Stuurprogramma voor Broadcom 802.11-netwerkadapter; C:\Windows\system32\DRIVERS\bcmwl6.sys [2010-05-08 2710592] R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-21 13880] R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C60x86.sys [2010-09-27 67184] R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-08-12 1309488] R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336] S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704] S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720] S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312] S3 amdiox86;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox86.sys [] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888] S3 BthEnum;Bluetooth-stuurprogramma voor aanvraagblok; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816] S3 BthPan;Bluetooth-apparaat (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696] S3 BTHPORT;Stuurprogramma voor Bluetooth-poort; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728] S3 BTHUSB;USB-stuurprogramma voor Bluetooth-radio; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416] S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464] S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368] S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632] S3 RFCOMM;Bluetooth-apparaat (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536] S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632] S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304] S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032] S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224] S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264] S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328] S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736] S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360] S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920] S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam.sys [2015-04-30 20256] S3 winusb;WinUsb-stuurprogramma; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2015-08-04 214528] R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [2015-08-04 276992] R2 AsusService;Asus Launcher Service; C:\Windows\system32\AsusService.exe [2010-12-07 224680] R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\Av\avgidsagent.exe [2016-06-29 4092672] R2 avgsvc;AVG Service; C:\Program Files\AVG\Framework\Common\avgsvcx.exe [2016-06-21 890128] R2 avgwd;AVG WatchDog; C:\Program Files\AVG\Av\avgwdsvcx.exe [2016-06-29 594904] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144] R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992] R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992] R2 Fitbit Connect;Fitbit Connect Service; C:\Program Files\Fitbit Connect\FitbitConnectService.exe [2014-11-07 5738528] S2 gupdate;Google Update-service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-11 144200] S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992] S3 AvgAMPS;AvgAMPS; C:\Program Files\AVG\Av\avgamps.exe [2016-06-29 637944] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-11 144200] S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-02-08 102912] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 150600] S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 4846168] S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-04-25 1343400] S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-11-05 45744] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848] -----------------EOF-----------------