Logfile of random's system information tool 1.10 (written by random/random) Run by thuis at 2017-05-28 05:44:31 Microsoft Windows 7 Ultimate Service Pack 1 System drive C: has 146 GB (61%) free of 238 GB Total RAM: 3519 MB (36% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 5:46:01, on 28/05/2017 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v11.0 (11.00.9600.18666) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskhost.exe C:\Windows\System32\igfxtray.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\AVAST Software\Avast\AvastUI.exe C:\Users\thuis\AppData\Local\Microsoft\BingSvc\BingSvc.exe C:\Program Files\Skype\Phone\Skype.exe C:\Users\thuis\AppData\Roaming\uTorrent\uTorrent.exe C:\Users\thuis\AppData\Roaming\uTorrent\updates\3.5.0_43804\utorrentie.exe C:\Users\thuis\AppData\Roaming\uTorrent\updates\3.5.0_43804\utorrentie.exe C:\Program Files\Skype\Browser\SkypeBrowserHost.exe C:\Users\thuis\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\thuis\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\thuis\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\thuis\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\thuis\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\thuis\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\thuis\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\thuis\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\thuis\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\thuis\AppData\Local\Google\Chrome\Application\chrome.exe C:\Program Files\AVAST Software\Avast\AvastUI.exe C:\Users\thuis\AppData\Local\Google\Chrome\Application\chrome.exe C:\Program Files\Skype\Browser\SkypeBrowserHost.exe C:\Users\thuis\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\thuis\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\thuis\Downloads\RSIT.exe C:\Program Files\trend micro\thuis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.bing.com/search?q={searchTerms} R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://search.norton.com/?prt=NSBU&chn=oem&geo=BE&ver=22.9.1.12&locale=nl_BE&guid=6E6F4C90-EC56-430B-AF57-6483947412CB&doi=2017-05-21 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkID=617911&ResetID=131253409072551136&GUID=35CB54B9-EEFA-42AA-9240-FE5D5FC4B3D4 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.bing.com/search?q={searchTerms} R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://unstopaccess.com/wpad.dat?1449e5534b57bcddb5ebfcc27b92c23530142936 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_131\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~4\Office15\URLREDIR.DLL O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_131\bin\jp2ssv.dll O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [InstallerLauncher] "C:\Program Files\Common Files\Bitdefender\SetupInformation\{C12EDCD9-A219-4778-A5FC-0D0F1F219F12}\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\{C12EDCD9-A219-4778-A5FC-0D0F1F219F12}\Installer.exe" O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvLaunch.exe" /gui O4 - HKCU\..\Run: [Google Update] C:\Users\thuis\AppData\Local\Google\Update\1.3.33.5\GoogleUpdateCore.exe O4 - HKCU\..\Run: [BingSvc] C:\Users\thuis\AppData\Local\Microsoft\BingSvc\BingSvc.exe O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKCU\..\Run: [uTorrent] "C:\Users\thuis\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED O4 - HKCU\..\RunOnce: [Application Restart #3] C:\Users\thuis\AppData\Local\Google\Chrome\Application\chrome.exe --flag-switches-begin --flag-switches-end --restore-last-session -- http://cdn.bitmedianetwork.com/network/r.html?u=ue1-907ecd0653f441f0ba3de2a7dc971a81&next=http://utorrent.com/prodnews&osv=1DB10106&iev=11&geo=BE&lang=nl&ver=3%2e4%2e9%2e1%2e43388 O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user') O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~4\Office15\ONBttnIE.dll/105 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office15\EXCEL.EXE/3000 O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll O9 - Extra button: Lync - klikken om te bellen - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll O9 - Extra 'Tools' menuitem: Lync - klikken om te bellen - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\aswidsagent.exe O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Bitdefender Device Management Service (DevMgmtService) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender Device Management\DevMgmtService.exe O23 - Service: ed2k idle service (ed2kidle) - Unknown owner - C:\Program Files\amuleC1\ed2k.exe (file missing) O23 - Service: HP DS Service - Hewlett-Packard Company - C:\Program Files\HP\HPBDSService\HPBDSService.exe O23 - Service: HP LaserJet Service - HP - C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe O23 - Service: HP CASL Framework Service (hpqcaslwmiex) - HP - C:\Program Files\HP\Shared\hpqwmiex.exe O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - HP Inc. - C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe O23 - Service: ProductAgentService - Bitdefender - C:\Program Files\Bitdefender Agent\ProductAgentService.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: TeamViewer 12 (TeamViewer) - TeamViewer GmbH - C:\Program Files\TeamViewer\TeamViewer_Service.exe O23 - Service: UDP-to-HTTP Proxy (udpproxy) - Unknown owner - C:\Users\thuis\Downloads\UdpProxy.exe (file missing) -- End of file - 9991 bytes ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe C:\Windows\tasks\DriverToolkit Autorun.job - C:\Program Files\DriverToolkit\DriverToolkit.exe --autorun C:\Windows\tasks\HPCeeScheduleForthuis.job - C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForthuis (null) C:\Windows\tasks\UCBrowserUpdater.job - ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}] Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2017-04-11 163528] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_131\bin\ssv.dll [2017-05-25 473152] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] Office Document Cache Handler - C:\PROGRA~1\MICROS~4\Office15\URLREDIR.DLL [2014-01-23 707800] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-05-25 186944] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-02-11 137752] "Persistence"=C:\Windows\system32\igfxpers.exe [2011-02-11 172568] ""= [] "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2017-03-15 587288] "InstallerLauncher"=C:\Program Files\Common Files\Bitdefender\SetupInformation\{C12EDCD9-A219-4778-A5FC-0D0F1F219F12}\setuplauncher.exe /run:C:\Program Files\Common Files\Bitdefender\SetupInformation\{C12EDCD9-A219-4778-A5FC-0D0F1F219F12}\Installer.exe [] "AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-05-28 213824] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Google Update"=C:\Users\thuis\AppData\Local\Google\Update\1.3.33.5\GoogleUpdateCore.exe [2017-04-29 601168] "BingSvc"=C:\Users\thuis\AppData\Local\Microsoft\BingSvc\BingSvc.exe [2015-11-05 144008] "Skype"=C:\Program Files\Skype\Phone\Skype.exe [2017-05-04 27716568] "uTorrent"=C:\Users\thuis\AppData\Roaming\uTorrent\uTorrent.exe [2017-05-28 2240192] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Application Restart #3"=C:\Users\thuis\AppData\Local\Google\Chrome\Application\chrome.exe [2017-05-09 976216] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adzworks] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BingSvc] C:\Users\thuis\AppData\Local\Microsoft\BingSvc\BingSvc.exe [2015-11-05 144008] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds] C:\Windows\system32\hkcmd.exe [2011-02-11 171032] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2014-08-14 49904] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IpCamClient] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nppApplication] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StatusAlerts] C:\Program Files\HP\StatusAlerts\bin\HPStatusAlerts.exe [2013-04-18 313656] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] C:\Program Files\Common Files\Java\Java Update\jusched.exe [2017-03-15 587288] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=0 "ConsentPromptBehaviorUser"=3 "EnableLUA"=0 "EnableUIADesktopToggle"=0 "PromptOnSecureDesktop"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MRT.exe] "Debugger="C:\Program Files\Pevucult\_ALLOWDEL_1fd4083\Gubed.exe -Yrrehs [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvyu"=msyuv.dll "vidc.iyuv"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "vidc.yvu9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codecp.acm "vidc.cvid"=iccvid.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "msacm.siren"=sirenacm.dll ======File associations====== .inf - open - "%SystemRoot%\system32\NOTEPAD.EXE" %1 .ini - open - "%SystemRoot%\system32\NOTEPAD.EXE" %1 .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - "C:\Windows\System32\WScript.exe" "%1" %* .txt - open - "%SystemRoot%\system32\NOTEPAD.EXE" %1 ======List of files/folders created in the last 1 month====== 2017-05-28 05:44:31 ----D---- C:\rsit 2017-05-28 05:44:31 ----D---- C:\Program Files\trend micro 2017-05-28 03:00:39 ----D---- C:\Users\thuis\AppData\Roaming\AVAST Software 2017-05-28 02:59:57 ----D---- C:\ProgramData\SWCUTemp 2017-05-28 02:58:13 ----A---- C:\Windows\system32\drivers\aswVmm.sys 2017-05-28 02:58:13 ----A---- C:\Windows\system32\drivers\aswstm.sys 2017-05-28 02:58:12 ----A---- C:\Windows\system32\drivers\aswSP.sys 2017-05-28 02:58:12 ----A---- C:\Windows\system32\drivers\aswRvrt.sys 2017-05-28 02:58:12 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys 2017-05-28 02:58:11 ----A---- C:\Windows\system32\drivers\aswSnx.sys 2017-05-28 02:58:11 ----A---- C:\Windows\system32\drivers\aswRdr2.sys 2017-05-28 02:58:11 ----A---- C:\Windows\system32\drivers\aswHwid.sys 2017-05-28 02:58:11 ----A---- C:\Windows\system32\drivers\aswbunivx.sys 2017-05-28 02:58:11 ----A---- C:\Windows\system32\drivers\aswblogx.sys 2017-05-28 02:58:10 ----A---- C:\Windows\system32\drivers\aswbidshx.sys 2017-05-28 02:58:10 ----A---- C:\Windows\system32\drivers\aswbidsdriverx.sys 2017-05-28 02:57:56 ----A---- C:\Windows\system32\aswBoot.exe 2017-05-28 02:56:55 ----D---- C:\Program Files\AVAST Software 2017-05-28 02:55:58 ----D---- C:\Users\thuis\AppData\Roaming\uTorrent 2017-05-25 12:13:10 ----D---- C:\Program Files\Common Files\Java 2017-05-25 04:30:44 ----D---- C:\Users\thuis\AppData\Roaming\QuickScan 2017-05-25 04:29:57 ----D---- C:\ProgramData\Bitdefender 2017-05-24 16:01:02 ----D---- C:\ProgramData\NCH Software 2017-05-24 16:01:02 ----D---- C:\Program Files\NCH Software 2017-05-23 05:38:33 ----D---- C:\Program Files\Norton Security with Backup 2017-05-21 19:35:34 ----D---- C:\Program Files\Norton Security 2017-05-21 18:42:08 ----D---- C:\ProgramData\PCSettings 2017-05-21 07:48:08 ----D---- C:\ProgramData\NortonInstaller 2017-05-21 07:48:08 ----D---- C:\Program Files\NortonInstaller 2017-05-21 07:47:11 ----D---- C:\ProgramData\Norton 2017-05-18 14:09:05 ----D---- C:\Program Files\Common Files\Skype 2017-05-18 13:58:47 ----D---- C:\ProgramData\Package Cache 2017-05-18 13:39:22 ----D---- C:\Users\thuis\AppData\Roaming\Pluto TV 2017-05-18 13:36:03 ----D---- C:\ProgramData\AVAST Software 2017-05-14 01:52:45 ----D---- C:\KMSpico Install 2017-05-10 05:39:27 ----A---- C:\Windows\system32\mshtml.dll 2017-05-10 05:39:26 ----A---- C:\Windows\system32\ieframe.dll 2017-05-10 05:39:24 ----A---- C:\Windows\system32\jscript9.dll 2017-05-10 05:39:22 ----A---- C:\Windows\system32\wininet.dll 2017-05-10 05:39:22 ----A---- C:\Windows\system32\win32k.sys 2017-05-10 05:39:22 ----A---- C:\Windows\system32\vbscript.dll 2017-05-10 05:39:22 ----A---- C:\Windows\system32\urlmon.dll 2017-05-10 05:39:22 ----A---- C:\Windows\system32\ntkrnlpa.exe 2017-05-10 05:39:22 ----A---- C:\Windows\system32\iertutil.dll 2017-05-10 05:39:22 ----A---- C:\Windows\system32\drivers\tcpip.sys 2017-05-10 05:39:21 ----A---- C:\Windows\system32\ntoskrnl.exe 2017-05-10 05:39:20 ----A---- C:\Windows\system32\pla.dll 2017-05-10 05:39:20 ----A---- C:\Windows\system32\pdh.dll 2017-05-10 05:39:20 ----A---- C:\Windows\system32\oleaut32.dll 2017-05-10 05:39:20 ----A---- C:\Windows\system32\ole32.dll 2017-05-10 05:39:20 ----A---- C:\Windows\system32\mshtmled.dll 2017-05-10 05:39:20 ----A---- C:\Windows\system32\ieetwcollector.exe 2017-05-10 05:39:20 ----A---- C:\Windows\system32\iedkcs32.dll 2017-05-10 05:39:20 ----A---- C:\Windows\system32\gdi32.dll 2017-05-10 05:39:20 ----A---- C:\Windows\system32\drivers\srv2.sys 2017-05-10 05:39:20 ----A---- C:\Windows\system32\drivers\srv.sys 2017-05-10 05:39:20 ----A---- C:\Windows\system32\drivers\fastfat.sys 2017-05-10 05:39:20 ----A---- C:\Windows\system32\drivers\exfat.sys 2017-05-10 05:39:20 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys 2017-05-10 05:39:20 ----A---- C:\Windows\system32\drivers\afd.sys 2017-05-10 05:39:20 ----A---- C:\Windows\system32\crypt32.dll 2017-05-10 05:39:20 ----A---- C:\Windows\system32\advapi32.dll 2017-05-10 05:39:19 ----A---- C:\Windows\system32\rpcss.dll 2017-05-10 05:39:19 ----A---- C:\Windows\system32\ntdll.dll 2017-05-10 05:39:19 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe 2017-05-10 05:39:19 ----A---- C:\Windows\system32\mshtmlmedia.dll 2017-05-10 05:39:19 ----A---- C:\Windows\system32\drivers\netio.sys 2017-05-10 05:39:18 ----A---- C:\Windows\system32\drivers\tdx.sys 2017-05-10 05:39:18 ----A---- C:\Windows\system32\drivers\ksecpkg.sys 2017-05-10 05:39:18 ----A---- C:\Windows\system32\drivers\ksecdd.sys 2017-05-10 05:39:18 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS 2017-05-10 05:39:18 ----A---- C:\Windows\system32\drivers\dxgmms1.sys 2017-05-10 05:39:17 ----A---- C:\Windows\system32\oleres.dll 2017-05-10 05:39:16 ----A---- C:\Windows\system32\webcheck.dll 2017-05-10 05:39:15 ----A---- C:\Windows\system32\msfeeds.dll 2017-05-10 05:39:15 ----A---- C:\Windows\system32\dxtrans.dll 2017-05-10 05:39:11 ----A---- C:\Windows\system32\MshtmlDac.dll 2017-05-10 05:39:11 ----A---- C:\Windows\system32\ie4uinit.exe 2017-05-10 05:39:10 ----A---- C:\Windows\system32\plasrv.exe 2017-05-10 05:39:10 ----A---- C:\Windows\system32\jscript.dll 2017-05-10 05:39:10 ----A---- C:\Windows\system32\drivers\mrxsmb.sys 2017-05-10 05:39:10 ----A---- C:\Windows\system32\comcat.dll 2017-05-10 05:39:09 ----A---- C:\Windows\system32\smss.exe 2017-05-10 05:39:09 ----A---- C:\Windows\system32\rpcrt4.dll 2017-05-10 05:39:09 ----A---- C:\Windows\system32\ieui.dll 2017-05-10 05:39:09 ----A---- C:\Windows\system32\ieapfltr.dll 2017-05-10 05:39:08 ----A---- C:\Windows\system32\lsasrv.dll 2017-05-10 05:39:08 ----A---- C:\Windows\system32\kerberos.dll 2017-05-10 05:39:08 ----A---- C:\Windows\system32\drivers\srvnet.sys 2017-05-10 05:39:07 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys 2017-05-10 05:39:06 ----A---- C:\Windows\system32\wintrust.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\winsrv.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\wdigest.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\TSpkg.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\sspicli.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\srcore.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\schannel.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\rpchttp.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\occache.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\ncrypt.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\msv1_0.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\msrating.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\KernelBase.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\jsproxy.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\jscript9diag.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\inseng.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\ieUnatt.exe 2017-05-10 05:39:06 ----A---- C:\Windows\system32\ieetwproxystub.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\dxtmsft.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys 2017-05-10 05:39:06 ----A---- C:\Windows\system32\csrsrv.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\cryptsvc.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\cryptnet.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\cdosys.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\bcrypt.dll 2017-05-10 05:39:06 ----A---- C:\Windows\system32\apisetschema.dll 2017-05-10 05:39:05 ----A---- C:\Windows\system32\sspisrv.dll 2017-05-10 05:39:05 ----A---- C:\Windows\system32\srclient.dll 2017-05-10 05:39:05 ----A---- C:\Windows\system32\setbcdlocale.dll 2017-05-10 05:39:05 ----A---- C:\Windows\system32\secur32.dll 2017-05-10 05:39:05 ----A---- C:\Windows\system32\rstrui.exe 2017-05-10 05:39:05 ----A---- C:\Windows\system32\lsass.exe 2017-05-10 05:39:05 ----A---- C:\Windows\system32\iesetup.dll 2017-05-10 05:39:05 ----A---- C:\Windows\system32\iernonce.dll 2017-05-10 05:39:05 ----A---- C:\Windows\system32\drivers\appid.sys 2017-05-10 05:39:05 ----A---- C:\Windows\system32\cryptbase.dll 2017-05-10 05:39:05 ----A---- C:\Windows\system32\credssp.dll 2017-05-10 05:39:05 ----A---- C:\Windows\system32\conhost.exe 2017-05-10 05:39:05 ----A---- C:\Windows\system32\cdd.dll 2017-05-10 05:39:05 ----A---- C:\Windows\system32\appidsvc.dll 2017-05-10 05:39:05 ----A---- C:\Windows\system32\appidpolicyconverter.exe 2017-05-10 05:39:05 ----A---- C:\Windows\system32\appidapi.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2017-05-10 05:39:04 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2017-05-10 05:39:04 ----A---- C:\Windows\system32\tzres.dll 2017-05-10 05:39:04 ----A---- C:\Windows\system32\kernel32.dll 2017-05-10 05:39:04 ----A---- C:\Windows\system32\auditpol.exe 2017-05-10 05:39:04 ----A---- C:\Windows\system32\appidcertstorecheck.exe 2017-05-10 05:39:03 ----A---- C:\Windows\system32\msaudite.dll 2017-05-10 05:39:03 ----A---- C:\Windows\system32\adtschema.dll 2017-05-10 05:38:58 ----A---- C:\Windows\system32\msobjs.dll 2017-05-10 05:38:55 ----A---- C:\Windows\system32\ieetwcollectorres.dll 2017-05-08 16:00:58 ----A---- C:\Windows\system32\FNTCACHE.DAT 2017-05-05 23:29:52 ----A---- C:\Program Files\putty.exe 2017-05-01 20:23:21 ----D---- C:\Users\thuis\AppData\Roaming\BSplayer Pro 2017-05-01 20:23:21 ----D---- C:\Users\thuis\AppData\Roaming\BSplayer 2017-05-01 20:23:16 ----D---- C:\Program Files\Webteh 2017-04-29 02:00:01 ----D---- C:\Program Files\Npcap 2017-04-29 01:57:27 ----D---- C:\Program Files\Nmap ======List of files/folders modified in the last 1 month====== 2017-05-28 05:44:43 ----D---- C:\Windows\Prefetch 2017-05-28 05:44:31 ----D---- C:\Program Files 2017-05-28 05:44:21 ----D---- C:\Windows\Temp 2017-05-28 05:39:40 ----D---- C:\Users\thuis\AppData\Roaming\Skype 2017-05-28 05:23:06 ----D---- C:\Program Files\Bitdefender Agent 2017-05-28 04:33:16 ----D---- C:\Windows\system32\config 2017-05-28 04:21:23 ----D---- C:\Windows 2017-05-28 03:11:06 ----D---- C:\Windows\System32 2017-05-28 03:11:06 ----D---- C:\Windows\inf 2017-05-28 03:11:06 ----A---- C:\Windows\system32\PerfStringBackup.INI 2017-05-28 03:01:18 ----D---- C:\Windows\system32\drivers 2017-05-28 02:59:57 ----AHD---- C:\ProgramData 2017-05-28 02:58:24 ----D---- C:\Windows\system32\Tasks 2017-05-28 01:56:57 ----D---- C:\ProgramData\SupremoRemoteDesktop 2017-05-27 17:36:37 ----D---- C:\Users\thuis\AppData\Roaming\Bitdefender 2017-05-27 17:29:26 ----D---- C:\Program Files\Common Files 2017-05-27 17:29:26 ----D---- C:\Program Files\Bitdefender 2017-05-27 06:07:23 ----SHD---- C:\System Volume Information 2017-05-27 01:41:58 ----A---- C:\bdlog.txt 2017-05-26 23:53:26 ----D---- C:\Windows\system32\drivers\etc 2017-05-26 23:39:07 ----D---- C:\Users\thuis\AppData\Roaming\vlc 2017-05-26 02:30:04 ----D---- C:\Windows\Offline Web Pages 2017-05-26 02:30:00 ----D---- C:\Windows\Downloaded Program Files 2017-05-25 12:13:34 ----SHD---- C:\Windows\Installer 2017-05-25 12:13:33 ----D---- C:\Program Files\Java 2017-05-25 12:12:15 ----A---- C:\Windows\system32\WindowsAccessBridge.dll 2017-05-25 04:35:12 ----D---- C:\ProgramData\BDLogging 2017-05-25 01:25:12 ----D---- C:\Windows\Tasks 2017-05-24 23:48:57 ----D---- C:\Program Files\TeamViewer 2017-05-24 23:48:29 ----RSD---- C:\Windows\Fonts 2017-05-24 03:03:06 ----AC---- C:\Windows\system32\MRT.exe 2017-05-21 19:34:08 ----D---- C:\Program Files\Common Files\AV 2017-05-20 03:46:04 ----D---- C:\Windows\system32\LogFiles 2017-05-20 01:49:27 ----D---- C:\ProgramData\AnyDesk 2017-05-19 17:57:52 ----D---- C:\ProgramData\Spotnet 2017-05-18 14:09:28 ----D---- C:\ProgramData\Skype 2017-05-18 14:09:05 ----RD---- C:\Program Files\Skype 2017-05-18 08:48:31 ----D---- C:\Program Files\Youtube Movie Maker 2017-05-17 22:08:27 ----D---- C:\Windows\system32\Macromed 2017-05-15 14:10:49 ----RSD---- C:\Windows\assembly 2017-05-12 23:26:28 ----D---- C:\Users\thuis\AppData\Roaming\TeamViewer 2017-05-12 09:10:24 ----D---- C:\Windows\rescache 2017-05-11 03:02:22 ----D---- C:\Windows\winsxs 2017-05-11 00:36:11 ----D---- C:\Windows\system32\catroot2 2017-05-11 00:04:36 ----D---- C:\Windows\Microsoft.NET 2017-05-10 21:07:56 ----D---- C:\Windows\system32\pt-BR 2017-05-10 21:07:56 ----D---- C:\Windows\system32\bg-BG 2017-05-10 21:07:56 ----D---- C:\Windows\PolicyDefinitions 2017-05-10 21:07:55 ----D---- C:\Windows\system32\zh-HK 2017-05-10 21:07:55 ----D---- C:\Windows\system32\pt-PT 2017-05-10 21:07:55 ----D---- C:\Windows\system32\pl-PL 2017-05-10 21:07:55 ----D---- C:\Windows\system32\nl-NL 2017-05-10 21:07:55 ----D---- C:\Windows\system32\it-IT 2017-05-10 21:07:55 ----D---- C:\Windows\system32\hu-HU 2017-05-10 21:07:55 ----D---- C:\Windows\system32\he-IL 2017-05-10 21:07:55 ----D---- C:\Windows\system32\el-GR 2017-05-10 21:07:54 ----D---- C:\Windows\system32\zh-TW 2017-05-10 21:07:54 ----D---- C:\Windows\system32\tr-TR 2017-05-10 21:07:54 ----D---- C:\Windows\system32\th-TH 2017-05-10 21:07:54 ----D---- C:\Windows\system32\migration 2017-05-10 21:07:54 ----D---- C:\Windows\system32\lv-LV 2017-05-10 21:07:54 ----D---- C:\Windows\system32\lt-LT 2017-05-10 21:07:54 ----D---- C:\Windows\system32\fr-FR 2017-05-10 21:07:54 ----D---- C:\Windows\system32\fi-FI 2017-05-10 21:07:54 ----D---- C:\Windows\system32\es-ES 2017-05-10 21:07:54 ----D---- C:\Windows\system32\de-DE 2017-05-10 21:07:53 ----D---- C:\Windows\system32\ru-RU 2017-05-10 21:07:53 ----D---- C:\Windows\system32\ro-RO 2017-05-10 21:07:53 ----D---- C:\Windows\system32\nb-NO 2017-05-10 21:07:53 ----D---- C:\Windows\system32\en-US 2017-05-10 21:07:53 ----D---- C:\Windows\system32\da-DK 2017-05-10 21:07:53 ----D---- C:\Windows\system32\cs-CZ 2017-05-10 21:07:53 ----D---- C:\Windows\system32\ar-SA 2017-05-10 21:07:46 ----D---- C:\Program Files\Internet Explorer 2017-05-10 16:30:41 ----D---- C:\ProgramData\Microsoft Help 2017-05-10 03:04:26 ----A---- C:\Windows\win.ini 2017-05-07 15:56:16 ----A---- C:\Windows\WORDPAD.INI 2017-05-06 13:21:39 ----D---- C:\Users\thuis\AppData\Roaming\Notepad++ 2017-05-02 02:12:01 ----D---- C:\Program Files\WinSCP 2017-04-29 02:00:42 ----D---- C:\Windows\system32\DriverStore ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidshx.sys [2017-05-28 148696] R0 aswblog;aswblog; C:\Windows\system32\drivers\aswblogx.sys [2017-05-28 268016] R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbunivx.sys [2017-05-28 41664] R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2017-05-28 62152] R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2017-05-28 279800] R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440] R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdriverx.sys [2017-05-28 258288] R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2017-05-28 90336] R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2017-05-28 764576] R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2017-05-28 482608] R1 ZAM;ZAM Helper Driver; \??\C:\Windows\System32\drivers\zam32.sys [2016-12-18 181496] R1 ZAM_Guard;ZAM Guard Driver; \??\C:\Windows\System32\drivers\zamguard32.sys [2016-12-18 181496] R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2017-05-28 107928] R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2017-05-28 115152] R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2015-11-05 117760] R3 e1kexpress;Stuurprogramma K voor Intel(R) PRO/1000 PCI Express-netwerkverbinding; C:\Windows\system32\DRIVERS\e1k6032.sys [2009-07-14 164864] R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2011-02-11 9036800] R3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632] R3 StillCam;Stuurprogramma voor seriële digitale fotocamera; C:\Windows\system32\DRIVERS\serscan.sys [2009-07-14 9216] R3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2016-02-05 123328] S1 VBoxNetAdp;VirtualBox NDIS 6.0 Miniport Service; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [2016-11-21 113904] S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704] S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720] S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312] S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2017-05-28 34136] S3 aswTap;avast! SecureLine TAP Adapter v3; C:\Windows\system32\DRIVERS\aswTap.sys [2016-10-11 38984] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888] S3 EMVSCARD;EMVSCARD; C:\Windows\System32\Drivers\EMVSCARD.sys [2006-12-19 20736] S3 EsgScanner;EsgScanner; C:\Windows\system32\DRIVERS\EsgScanner.sys [2016-09-16 19984] S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2014-03-31 49856] S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2016-10-04 96464] S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2016-10-04 74864] S3 hmatap;HMA TAP-Windows Adapter V9; C:\Windows\system32\DRIVERS\hmatap.sys [] S3 msloop;Stuurprogramma voor Microsoft Loopback-adapter; C:\Windows\system32\DRIVERS\loop.sys [2009-07-14 5632] S3 NAVENG;NAVENG; \??\C:\Program Files\Norton Security with Backup\NortonData\22.9.1.12\Definitions\SDSDefs\20170522.018\NAVENG.SYS [] S3 NAVEX15;NAVEX15; \??\C:\Program Files\Norton Security with Backup\NortonData\22.9.1.12\Definitions\SDSDefs\20170522.018\NAVEX15.SYS [] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848] S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304] S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [] S3 tap0901;TAP-Windows Adapter V9; C:\Windows\system32\DRIVERS\tap0901.sys [2016-04-21 23040] S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 49152] S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [] S3 usb_rndisx;USB RNDIS-adapter; C:\Windows\system32\drivers\usb8023x.sys [2013-02-12 15872] S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2015-11-05 45056] S3 usbscan;Stuurprogramma voor USB-scanner; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 36352] S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys [] S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328] S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736] S3 visctap0901;Viscosity Virtual Adapter V9.1; C:\Windows\system32\DRIVERS\visctap0901.sys [2015-08-26 33160] S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968] S4 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2017-04-25 83056] R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-05-28 263304] R2 DevMgmtService;Bitdefender Device Management Service; C:\Program Files\Bitdefender\Bitdefender Device Management\DevMgmtService.exe [2017-04-20 84848] R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992] R2 HP DS Service;HP DS Service; C:\Program Files\HP\HPBDSService\HPBDSService.exe [2011-10-17 13824] R2 HP LaserJet Service;HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [2012-12-04 174592] R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2017-04-07 33640] R2 ProductAgentService;ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [2017-04-11 1254736] R2 TeamViewer;TeamViewer 12; C:\Program Files\TeamViewer\TeamViewer_Service.exe [2016-12-15 10351856] R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [2017-05-28 5732136] R3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-03-26 105096] S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2017-04-05 317400] S2 udpproxy;UDP-to-HTTP Proxy; C:\Users\thuis\Downloads\UdpProxy.exe /service [] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-20 270016] S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992] S3 ed2kidle;ed2k idle service; C:\Program Files\amuleC1\ed2k.exe -downloadwhenidle [] S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2014-03-31 1512640] S3 hpqcaslwmiex;HP CASL Framework Service; C:\Program Files\HP\Shared\hpqwmiex.exe [2016-06-03 1031704] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 150600] S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 4846168] S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S4 Amazon 1Button App Service;Amazon 1Button App Service; C:\Program Files\Amazon\Amazon1ButtonApp\Amazon1ButtonService.Exe [2016-12-12 428728] S4 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2017-03-26 45688] S4 avgsvc;AVG Service; C:\Program Files\AVG\Framework\Common\avgsvcx.exe [2016-12-06 935184] S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992] S4 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2017-04-16 104960] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2017-03-26 135800] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2017-03-26 135800] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2017-03-26 135800] S4 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904] -----------------EOF-----------------