Logfile of random's system information tool 1.10 (written by random/random) Run by Administrator at 2014-07-21 07:52:17 Microsoft® Windows Vista™ Home Premium Service Pack 2 System drive C: has 86 GB (58%) free of 148 GB Total RAM: 3000 MB (44% free) HijackThis download failed ======Scheduled tasks folder====== C:\Windows\tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job - C:\Windows\TEMP\{E464643F-B8E7-41F2-9B47-162C8AE7799E}.exe --uninstall=1 C:\Windows\tasks\Digital Sites.job - C:\Users\Kiana\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE /Check C:\Windows\tasks\DSite.job - C:\Users\Kiana\AppData\Roaming\DSite\UPDATE~1\UPDATE~1.EXE /Check C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1236301181-2987331152-3139914611-1000Core.job - C:\Users\Kiana\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1236301181-2987331152-3139914611-1000UA.job - C:\Users\Kiana\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler C:\Windows\tasks\GinyasBrowserCompanion Chrome Watcher.job - C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe /task=1 /closebr=1 /InstallOn=7 /active=24 /update=24 /interval=2880 /pubId=ginyas_276 /affId=g276_c25 /uId={649F834C-A18C-41E0-A87F-B7DB465E3CE1} /version=1.0.0.5 /Override=true /IEhome=0 /IEsearch=0 /FFhome=0 /FFsearch=0 /CHhome=0 /CHsearch=0 /FFaddon=1 /CHaddon=1 /AutoSP=0 /regAppName=GinyasBrowserCompanion C:\Windows\tasks\GinyasBrowserCompanion FireFox Watcher.job - C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe /task=0 /closebr=1 /InstallOn=7 /active=24 /update=24 /interval=2880 /pubId=ginyas_276 /affId=g276_c25 /uId={649F834C-A18C-41E0-A87F-B7DB465E3CE1} /version=1.0.0.5 /Override=true /IEhome=0 /IEsearch=0 /FFhome=0 /FFsearch=0 /CHhome=0 /CHsearch=0 /FFaddon=1 /CHaddon=1 /AutoSP=0 /regAppName=GinyasBrowserCompanion C:\Windows\tasks\GinyasBrowserCompanion Runner.job - C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe /task=4 /closebr=1 /InstallOn=7 /active=24 /update=24 /interval=2880 /pubId=ginyas_276 /affId=g276_c25 /uId={649F834C-A18C-41E0-A87F-B7DB465E3CE1} /version=1.0.0.5 /Override=true /IEhome=0 /IEsearch=0 /FFhome=0 /FFsearch=0 /CHhome=0 /CHsearch=0 /FFaddon=1 /CHaddon=1 /AutoSP=0 /regAppName=GinyasBrowserCompanion C:\Windows\tasks\GinyasBrowserCompanion Stats Report.job - C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe /task=2 /closebr=1 /InstallOn=7 /active=24 /update=24 /interval=2880 /pubId=ginyas_276 /affId=g276_c25 /uId={649F834C-A18C-41E0-A87F-B7DB465E3CE1} /version=1.0.0.5 /Override=true /IEhome=0 /IEsearch=0 /FFhome=0 /FFsearch=0 /CHhome=0 /CHsearch=0 /FFaddon=1 /CHaddon=1 /AutoSP=0 /regAppName=GinyasBrowserCompanion C:\Windows\tasks\GinyasBrowserCompanion Update Checker.job - C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe /task=3 /closebr=1 /InstallOn=7 /active=24 /update=24 /interval=2880 /pubId=ginyas_276 /affId=g276_c25 /uId={649F834C-A18C-41E0-A87F-B7DB465E3CE1} /version=1.0.0.5 /Override=true /IEhome=0 /IEsearch=0 /FFhome=0 /FFsearch=0 /CHhome=0 /CHsearch=0 /FFaddon=1 /CHaddon=1 /AutoSP=0 /regAppName=GinyasBrowserCompanion C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1236301181-2987331152-3139914611-1000Core.job - C:\Users\Kiana\AppData\Local\Google\Update\GoogleUpdate.exe /c C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1236301181-2987331152-3139914611-1000UA.job - C:\Users\Kiana\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler C:\Windows\tasks\Updater.job - C:\ProgramData\WombatUpdater\WombatUpdater.exe C:\Windows\tasks\User_Feed_Synchronization-{754B16FD-96E2-4EE1-95CB-9268D715B4DE}.job - C:\Windows\system32\msfeedssync.exe sync ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00cbb66b-1d3b-46d3-9577-323a336acb50}] Ginyas Browser Companion - C:\Program Files\BrowserCompanion\jsloader.dll [2013-02-18 228032] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}] Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3E532CE8-C6D9-4A10-8ACE-4348C96E8B6A}] FastestTube - C:\Program Files\FastestTube\2.2.5.0\WombatBHO.dll [2014-07-17 185856] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{46735dee-f862-49d1-876d-6382794dc625}] PHPNukeDU Toolbar - C:\Program Files\PHPNukeDU\prxtbPHP2.dll [2011-01-17 175912] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live Aanmelden - Help - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}] AVG Security Toolbar - C:\Program Files\AVG Secure Search\18.1.0.443\AVG Secure Search_toolbar.dll [2014-05-02 3559448] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{963B125B-8B21-49A2-A3A8-E37092276531}] Ginyas Browser Companion Verifier - C:\Program Files\BrowserCompanion\updatebhoWin32.dll [2013-02-18 129088] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}] Free Download Manager - C:\Program Files\Free Download Manager\iefdm2.dll [2013-01-11 365056] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CCB69577-088B-4004-9ED8-FF5BCC83A039}] C:\PROGRA~1\REBATE~1\RebateI.dll [2013-06-03 831624] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D3D233D5-9F6D-436C-B6C7-E63F77503B30}] Inbox Toolbar - C:\Program Files\Inbox Toolbar\Inbox.dll [2014-03-19 1059760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-09-09 41760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}] BandooIEPlugin Class - C:\Program Files\Bandoo\Plugins\IE\ieplugin.dll [2009-11-25 1864128] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {CCC7A320-B3CA-4199-B1A6-9F516DD69829} {46735dee-f862-49d1-876d-6382794dc625} - PHPNukeDU Toolbar - C:\Program Files\PHPNukeDU\prxtbPHP2.dll [2011-01-17 175912] {30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912] {95B7759C-8C7F-4BF1-B163-73684A933233} - AVG Security Toolbar - C:\Program Files\AVG Secure Search\18.1.0.443\AVG Secure Search_toolbar.dll [2014-05-02 3559448] {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - &Inbox Toolbar - C:\Program Files\Inbox Toolbar\Inbox.dll [2014-03-19 1059760] {377e5d4d-77e5-476a-8716-7e70a9272da0} [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-01-09 150040] "HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-01-09 178712] "Persistence"=C:\Windows\system32\igfxpers.exe [2009-01-09 154136] "RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-03-10 6957600] "Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2009-01-30 192512] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-12-04 1410344] "SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-09-09 149280] "GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072] "WinampAgent"=C:\Program Files\Winamp\winampa.exe [2007-05-15 35328] "QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2009-12-18 282624] "Hiyo"=C:\Program Files\HiYo\bin\HiYo.exe [2010-08-06 255344] "vProt"=C:\Program Files\AVG Secure Search\vprot.exe [2014-05-02 2557976] "Browser companion helper"=C:\Program Files\BrowserCompanion\BCHelper.exe [2011-12-16 187696] "SweetIM"=C:\Program Files\SweetIM\Messenger\SweetIM.exe [2011-12-05 114992] "AVG_UI"=C:\Program Files\AVG\AVG2014\avgui.exe [2014-07-10 5187088] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BabylonToolbar] C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.15.10\BabylonToolbarsrv.exe /md I [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InboxToolbar] C:\Program Files\Inbox Toolbar\Inbox.exe /STARTUP [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCPowerSpeed] C:\Program Files\PCPowerSpeed\PCPowerTray.exe /startup [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup NETGEAR WG111v3 Smart Wizard.lnk - C:\Program Files\NETGEAR\WG111v3\WG111v3.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="c:\progra~1\bandoo\bndhook.dll " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] C:\Windows\system32\igfxdev.dll [2008-12-23 221184] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa] "authentication packages"=msv1_0 relog_ap [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableUIADesktopToggle"=0 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "BindDirectlyToPropertySetStorage"=0 "ForceClassicControlPanel"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "C:\Users\Kiana\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3J10IHJT\PIC675799074533-JPG-www.facebook.com[1].exe"="C:\Windows\jusched.exe:*:Enabled:Java developer Script Browse" "C:\Users\Kiana\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BJI1JNGI\P17535732.JPG-www.facebook[1].exe"="C:\Windows\nvsvc32.exe:*:Enabled:NVIDIA driver monitor" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rjatydimofu.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "vidc.cvid"=iccvid.dll "MSVideo8"=VfWWDM32.dll "msacm.siren"=sirenacm.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2014-07-21 07:52:20 ----D---- C:\Program Files\trend micro 2014-07-21 07:52:17 ----D---- C:\rsit 2014-07-21 03:12:10 ----A---- C:\Windows\system32\nshhttp.dll 2014-07-21 03:12:05 ----A---- C:\Windows\system32\drivers\http.sys 2014-07-21 03:12:04 ----A---- C:\Windows\system32\httpapi.dll 2014-07-21 03:07:17 ----A---- C:\Windows\system32\drivers\WUDFRd.sys 2014-07-21 03:07:17 ----A---- C:\Windows\system32\drivers\WUDFPf.sys 2014-07-21 03:07:14 ----A---- C:\Windows\system32\winusb.dll 2014-07-21 03:07:13 ----A---- C:\Windows\system32\WUDFSvc.dll 2014-07-21 03:07:13 ----A---- C:\Windows\system32\WUDFPlatform.dll 2014-07-21 03:07:05 ----A---- C:\Windows\system32\WUDFCoinstaller.dll 2014-07-21 03:07:04 ----A---- C:\Windows\system32\WUDFx.dll 2014-07-21 03:07:04 ----A---- C:\Windows\system32\WUDFHost.exe 2014-07-21 03:02:57 ----A---- C:\Windows\system32\cryptdlg.dll 2014-07-21 03:02:23 ----A---- C:\Windows\system32\rastls.dll 2014-07-21 03:01:30 ----A---- C:\Windows\system32\mciavi32.dll 2014-07-21 03:01:30 ----A---- C:\Windows\system32\iyuv_32.dll 2014-07-21 03:01:30 ----A---- C:\Windows\system32\avifil32.dll 2014-07-21 03:01:29 ----A---- C:\Windows\system32\msrle32.dll 2014-07-21 03:01:28 ----A---- C:\Windows\system32\msvidc32.dll 2014-07-21 03:01:28 ----A---- C:\Windows\system32\msvfw32.dll 2014-07-21 03:01:26 ----A---- C:\Windows\system32\msyuv.dll 2014-07-21 03:01:23 ----A---- C:\Windows\system32\tsbyuv.dll 2014-07-21 03:01:14 ----D---- C:\Users\Administrator.PC_van_Kiana.000\AppData\Roaming\Winamp 2014-07-21 02:13:52 ----D---- C:\Program Files\Windows Portable Devices 2014-07-21 02:12:03 ----D---- C:\Windows\system32\WindowsPowerShell 2014-07-21 00:37:05 ----A---- C:\Windows\system32\wmp.dll 2014-07-21 00:37:02 ----A---- C:\Windows\system32\wmploc.DLL 2014-07-21 00:35:12 ----A---- C:\Windows\system32\netevent.dll 2014-07-21 00:35:10 ----A---- C:\Windows\system32\srvsvc.dll 2014-07-21 00:32:20 ----A---- C:\Windows\system32\usp10.dll 2014-07-21 00:29:23 ----A---- C:\Windows\system32\shell32.dll 2014-07-21 00:28:03 ----A---- C:\Windows\system32\cdd.dll 2014-07-21 00:28:02 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys 2014-07-21 00:26:47 ----A---- C:\Windows\system32\psisdecd.dll 2014-07-21 00:25:06 ----A---- C:\Windows\system32\odbc32.dll 2014-07-21 00:23:49 ----A---- C:\Windows\system32\icaapi.dll 2014-07-21 00:23:49 ----A---- C:\Windows\system32\drivers\tssecsrv.sys 2014-07-21 00:22:26 ----A---- C:\Windows\system32\drivers\bowser.sys 2014-07-21 00:21:07 ----A---- C:\Windows\system32\winmm.dll 2014-07-21 00:21:07 ----A---- C:\Windows\system32\mciseq.dll 2014-07-21 00:19:50 ----A---- C:\Windows\system32\drivers\dfsc.sys 2014-07-21 00:18:25 ----A---- C:\Windows\system32\localspl.dll 2014-07-21 00:12:51 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-07-21 00:11:40 ----A---- C:\Windows\system32\mfc42u.dll 2014-07-21 00:11:40 ----A---- C:\Windows\system32\mfc42.dll 2014-07-21 00:07:30 ----A---- C:\Windows\system32\drivers\tcpip.sys 2014-07-21 00:06:08 ----A---- C:\Windows\system32\iccvid.dll 2014-07-21 00:04:08 ----A---- C:\Windows\system32\synceng.dll 2014-07-21 00:02:33 ----A---- C:\Windows\system32\drivers\srv.sys 2014-07-21 00:01:17 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys 2014-07-21 00:01:16 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys 2014-07-21 00:01:16 ----A---- C:\Windows\system32\drivers\mrxsmb.sys 2014-07-20 23:58:50 ----A---- C:\Windows\system32\dnsrslvr.dll 2014-07-20 23:58:50 ----A---- C:\Windows\system32\dnscacheugc.exe 2014-07-20 23:58:50 ----A---- C:\Windows\system32\dnsapi.dll 2014-07-20 23:54:19 ----A---- C:\Windows\system32\asycfilt.dll 2014-07-20 23:53:04 ----A---- C:\Windows\system32\UIRibbonRes.dll 2014-07-20 23:53:04 ----A---- C:\Windows\system32\UIAnimation.dll 2014-07-20 23:53:03 ----A---- C:\Windows\system32\UIRibbon.dll 2014-07-20 23:50:33 ----A---- C:\Windows\system32\WPDShextAutoplay.exe 2014-07-20 23:50:33 ----A---- C:\Windows\system32\wpdbusenum.dll 2014-07-20 23:50:33 ----A---- C:\Windows\system32\BthMtpContextHandler.dll 2014-07-20 23:50:31 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll 2014-07-20 23:50:29 ----A---- C:\Windows\system32\WPDShServiceObj.dll 2014-07-20 23:50:29 ----A---- C:\Windows\system32\wpdshext.dll 2014-07-20 23:50:29 ----A---- C:\Windows\system32\WpdMtpUS.dll 2014-07-20 23:50:29 ----A---- C:\Windows\system32\WpdMtp.dll 2014-07-20 23:50:29 ----A---- C:\Windows\system32\WpdConns.dll 2014-07-20 23:50:29 ----A---- C:\Windows\system32\wpd_ci.dll 2014-07-20 23:50:29 ----A---- C:\Windows\system32\PortableDeviceTypes.dll 2014-07-20 23:50:29 ----A---- C:\Windows\system32\drivers\WpdUsb.sys 2014-07-20 23:50:28 ----A---- C:\Windows\system32\WPDSp.dll 2014-07-20 23:50:28 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll 2014-07-20 23:50:28 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll 2014-07-20 23:50:28 ----A---- C:\Windows\system32\PortableDeviceApi.dll 2014-07-20 23:47:25 ----A---- C:\Windows\system32\ole32.dll 2014-07-20 23:45:34 ----A---- C:\Windows\system32\EncDec.dll 2014-07-20 23:42:18 ----A---- C:\Windows\system32\spoolsv.exe 2014-07-20 23:41:12 ----A---- C:\Windows\system32\dpnsvr.exe 2014-07-20 23:41:11 ----A---- C:\Windows\system32\dpnet.dll 2014-07-20 23:40:02 ----A---- C:\Windows\system32\drivers\partmgr.sys 2014-07-20 23:37:38 ----A---- C:\Windows\system32\t2embed.dll 2014-07-20 23:36:06 ----A---- C:\Windows\system32\SysFxUI.dll 2014-07-20 23:36:06 ----A---- C:\Windows\system32\drivers\portcls.sys 2014-07-20 23:36:06 ----A---- C:\Windows\system32\drivers\drmk.sys 2014-07-20 23:34:59 ----A---- C:\Windows\system32\rpcrt4.dll 2014-07-20 23:33:25 ----A---- C:\Windows\system32\shsvcs.dll 2014-07-20 23:32:15 ----A---- C:\Windows\system32\win32k.sys 2014-07-20 23:31:07 ----A---- C:\Windows\system32\sdclt.exe 2014-07-20 23:29:56 ----A---- C:\Windows\system32\drivers\volsnap.sys 2014-07-20 23:28:53 ----A---- C:\Windows\system32\netapi32.dll 2014-07-20 23:26:41 ----A---- C:\Windows\system32\drivers\srvnet.sys 2014-07-20 23:26:41 ----A---- C:\Windows\system32\drivers\srv2.sys 2014-07-20 23:25:35 ----A---- C:\Windows\system32\qedit.dll 2014-07-20 23:23:27 ----A---- C:\Windows\system32\MP4SDECD.DLL 2014-07-20 23:17:47 ----A---- C:\Windows\system32\XpsGdiConverter.dll 2014-07-20 23:17:46 ----A---- C:\Windows\system32\FntCache.dll 2014-07-20 23:17:46 ----A---- C:\Windows\system32\DWrite.dll 2014-07-20 23:16:28 ----A---- C:\Windows\system32\packager.dll 2014-07-20 23:15:21 ----A---- C:\Windows\system32\mfc40u.dll 2014-07-20 23:15:21 ----A---- C:\Windows\system32\mfc40.dll 2014-07-20 23:09:26 ----A---- C:\Windows\system32\rtutils.dll 2014-07-20 23:08:25 ----A---- C:\Windows\system32\ncrypt.dll 2014-07-20 23:04:04 ----A---- C:\Windows\system32\Apphlpdm.dll 2014-07-20 23:04:03 ----A---- C:\Windows\system32\gameux.dll 2014-07-20 23:04:02 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll 2014-07-20 23:02:59 ----A---- C:\Windows\system32\drivers\ntfs.sys 2014-07-20 23:01:19 ----A---- C:\Windows\system32\msvcrt.dll 2014-07-20 23:00:20 ----A---- C:\Windows\system32\drivers\afd.sys 2014-07-20 22:59:20 ----A---- C:\Windows\system32\drivers\usbuhci.sys 2014-07-20 22:59:20 ----A---- C:\Windows\system32\drivers\usbport.sys 2014-07-20 22:59:20 ----A---- C:\Windows\system32\drivers\usbehci.sys 2014-07-20 22:59:20 ----A---- C:\Windows\system32\drivers\usbd.sys 2014-07-20 22:59:20 ----A---- C:\Windows\system32\drivers\usbccgp.sys 2014-07-20 22:59:19 ----A---- C:\Windows\system32\drivers\usbhub.sys 2014-07-20 22:54:53 ----A---- C:\Windows\system32\wininet.dll 2014-07-20 22:54:53 ----A---- C:\Windows\system32\msls31.dll 2014-07-20 22:54:53 ----A---- C:\Windows\system32\jsproxy.dll 2014-07-20 22:54:52 ----A---- C:\Windows\system32\msrating.dll 2014-07-20 22:54:52 ----A---- C:\Windows\system32\iertutil.dll 2014-07-20 22:54:51 ----A---- C:\Windows\system32\urlmon.dll 2014-07-20 22:54:51 ----A---- C:\Windows\system32\SetIEInstalledDate.exe 2014-07-20 22:54:51 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe 2014-07-20 22:54:51 ----A---- C:\Windows\system32\mshtmler.dll 2014-07-20 22:54:50 ----A---- C:\Windows\system32\ieui.dll 2014-07-20 22:54:50 ----A---- C:\Windows\system32\iesysprep.dll 2014-07-20 22:54:50 ----A---- C:\Windows\system32\ieframe.dll 2014-07-20 22:54:49 ----A---- C:\Windows\system32\ieapfltr.dll 2014-07-20 22:54:49 ----A---- C:\Windows\system32\ieapfltr.dat 2014-07-20 22:54:49 ----A---- C:\Windows\system32\dxtrans.dll 2014-07-20 22:54:49 ----A---- C:\Windows\system32\dxtmsft.dll 2014-07-20 22:54:48 ----A---- C:\Windows\system32\url.dll 2014-07-20 22:54:48 ----A---- C:\Windows\system32\iesetup.dll 2014-07-20 22:54:48 ----A---- C:\Windows\system32\iernonce.dll 2014-07-20 22:54:48 ----A---- C:\Windows\system32\iedkcs32.dll 2014-07-20 22:54:48 ----A---- C:\Windows\system32\ie4uinit.exe 2014-07-20 22:54:48 ----A---- C:\Windows\system32\icardie.dll 2014-07-20 22:54:47 ----A---- C:\Windows\system32\wextract.exe 2014-07-20 22:54:47 ----A---- C:\Windows\system32\webcheck.dll 2014-07-20 22:54:47 ----A---- C:\Windows\system32\mshtmled.dll 2014-07-20 22:54:47 ----A---- C:\Windows\system32\licmgr10.dll 2014-07-20 22:54:47 ----A---- C:\Windows\system32\inseng.dll 2014-07-20 22:54:46 ----A---- C:\Windows\system32\vbscript.dll 2014-07-20 22:54:46 ----A---- C:\Windows\system32\mshtml.dll 2014-07-20 22:54:46 ----A---- C:\Windows\system32\msfeeds.dll 2014-07-20 22:54:46 ----A---- C:\Windows\system32\iexpress.exe 2014-07-20 22:54:46 ----A---- C:\Windows\system32\ieUnatt.exe 2014-07-20 22:54:45 ----A---- C:\Windows\system32\pngfilt.dll 2014-07-20 22:54:45 ----A---- C:\Windows\system32\occache.dll 2014-07-20 22:54:45 ----A---- C:\Windows\system32\mshta.exe 2014-07-20 22:54:45 ----A---- C:\Windows\system32\jscript9.dll 2014-07-20 22:54:45 ----A---- C:\Windows\system32\jscript.dll 2014-07-20 22:54:45 ----A---- C:\Windows\system32\imgutil.dll 2014-07-20 22:54:45 ----A---- C:\Windows\system32\iepeers.dll 2014-07-20 22:54:45 ----A---- C:\Windows\system32\ieakui.dll 2014-07-20 22:54:45 ----A---- C:\Windows\system32\ieaksie.dll 2014-07-20 22:54:45 ----A---- C:\Windows\system32\advpack.dll 2014-07-20 22:54:45 ----A---- C:\Windows\system32\admparse.dll 2014-07-20 22:54:44 ----A---- C:\Windows\system32\msfeedssync.exe 2014-07-20 22:54:44 ----A---- C:\Windows\system32\msfeedsbs.dll 2014-07-20 22:54:44 ----A---- C:\Windows\system32\ieakeng.dll 2014-07-20 22:54:44 ----A---- C:\Windows\system32\IEAdvpack.dll 2014-07-20 22:53:18 ----A---- C:\Windows\system32\mfreadwrite.dll 2014-07-20 22:53:18 ----A---- C:\Windows\system32\mfmp4src.dll 2014-07-20 22:53:18 ----A---- C:\Windows\system32\MFHEAACdec.dll 2014-07-20 22:53:18 ----A---- C:\Windows\system32\MFH264Dec.dll 2014-07-20 22:53:17 ----A---- C:\Windows\system32\shdocvw.dll 2014-07-20 22:53:17 ----A---- C:\Windows\system32\mfps.dll 2014-07-20 22:53:17 ----A---- C:\Windows\system32\mfplat.dll 2014-07-20 22:53:17 ----A---- C:\Windows\system32\mf.dll 2014-07-20 22:53:16 ----A---- C:\Windows\system32\stobject.dll 2014-07-20 22:53:13 ----A---- C:\Windows\system32\XpsRasterService.dll 2014-07-20 22:53:13 ----A---- C:\Windows\system32\d2d1.dll 2014-07-20 22:53:12 ----A---- C:\Windows\system32\d3d10warp.dll 2014-07-20 22:53:12 ----A---- C:\Windows\system32\d3d10level9.dll 2014-07-20 22:53:12 ----A---- C:\Windows\system32\d3d10_1core.dll 2014-07-20 22:53:12 ----A---- C:\Windows\system32\d3d10_1.dll 2014-07-20 22:53:11 ----A---- C:\Windows\system32\dxgi.dll 2014-07-20 22:53:11 ----A---- C:\Windows\system32\d3d10core.dll 2014-07-20 22:53:11 ----A---- C:\Windows\system32\d3d10.dll 2014-07-20 22:53:10 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe 2014-07-20 22:53:10 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll 2014-07-20 22:53:09 ----A---- C:\Windows\system32\xpsservices.dll 2014-07-20 22:53:09 ----A---- C:\Windows\system32\OpcServices.dll 2014-07-20 22:53:08 ----A---- C:\Windows\system32\XpsPrint.dll 2014-07-20 22:50:53 ----A---- C:\Windows\system32\WMPhoto.dll 2014-07-20 22:50:53 ----A---- C:\Windows\system32\dxdiagn.dll 2014-07-20 22:50:53 ----A---- C:\Windows\system32\dxdiag.exe 2014-07-20 22:50:52 ----A---- C:\Windows\system32\d3d11.dll 2014-07-20 22:50:51 ----A---- C:\Windows\system32\WindowsCodecsExt.dll 2014-07-20 22:50:51 ----A---- C:\Windows\system32\WindowsCodecs.dll 2014-07-20 22:50:51 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll 2014-07-20 22:47:11 ----A---- C:\Windows\system32\wmpmde.dll 2014-07-20 22:45:41 ----A---- C:\Windows\system32\msxml6.dll 2014-07-20 22:45:41 ----A---- C:\Windows\system32\msxml3.dll 2014-07-20 22:42:55 ----A---- C:\Windows\system32\sbeio.dll 2014-07-20 22:42:55 ----A---- C:\Windows\system32\sbe.dll 2014-07-20 22:40:35 ----A---- C:\Windows\system32\drivers\tunnel.sys 2014-07-20 22:40:35 ----A---- C:\Windows\system32\drivers\tcpipreg.sys 2014-07-20 22:40:34 ----A---- C:\Windows\system32\iphlpsvc.dll 2014-07-20 22:39:54 ----A---- C:\Windows\system32\drivers\usbvideo.sys 2014-07-20 22:38:26 ----A---- C:\Windows\system32\PresentationHostProxy.dll 2014-07-20 22:38:26 ----A---- C:\Windows\system32\PresentationHost.exe 2014-07-20 22:38:26 ----A---- C:\Windows\system32\netfxperf.dll 2014-07-20 22:38:26 ----A---- C:\Windows\system32\mscoree.dll 2014-07-20 22:38:26 ----A---- C:\Windows\system32\dfshim.dll 2014-07-20 22:34:47 ----A---- C:\Windows\system32\taskeng.exe 2014-07-20 22:34:46 ----A---- C:\Windows\system32\wmicmiplugin.dll 2014-07-20 22:34:46 ----A---- C:\Windows\system32\taskschd.dll 2014-07-20 22:34:46 ----A---- C:\Windows\system32\taskcomp.dll 2014-07-20 22:34:46 ----A---- C:\Windows\system32\schedsvc.dll 2014-07-20 22:34:13 ----A---- C:\Windows\system32\shlwapi.dll 2014-07-20 22:33:35 ----A---- C:\Windows\system32\browserchoice.exe 2014-07-20 22:33:03 ----A---- C:\Windows\system32\quartz.dll 2014-07-20 22:32:32 ----A---- C:\Windows\system32\inetcomm.dll 2014-07-20 22:31:24 ----A---- C:\Windows\system32\printcom.dll 2014-07-20 22:31:23 ----A---- C:\Windows\system32\win32spl.dll 2014-07-20 22:30:20 ----A---- C:\Windows\system32\consent.exe 2014-07-20 22:28:52 ----A---- C:\Windows\system32\cabview.dll 2014-07-20 22:28:22 ----A---- C:\Windows\system32\WMVDECOD.DLL 2014-07-20 22:27:48 ----A---- C:\Windows\system32\wshcon.dll 2014-07-20 22:27:48 ----A---- C:\Windows\system32\scrrun.dll 2014-07-20 22:27:48 ----A---- C:\Windows\system32\cscript.exe 2014-07-20 22:27:47 ----A---- C:\Windows\system32\wscript.exe 2014-07-20 22:27:17 ----A---- C:\Windows\system32\gdi32.dll 2014-07-20 22:26:32 ----A---- C:\Windows\system32\certenc.dll 2014-07-20 22:26:31 ----A---- C:\Windows\system32\certutil.exe 2014-07-20 22:25:46 ----A---- C:\Windows\system32\crypt32.dll 2014-07-20 22:25:13 ----A---- C:\Windows\system32\kernel32.dll 2014-07-20 22:23:07 ----A---- C:\Windows\system32\Wdfres.dll 2014-07-20 22:23:07 ----A---- C:\Windows\system32\drivers\WdfLdr.sys 2014-07-20 22:23:06 ----A---- C:\Windows\system32\drivers\Wdf01000.sys 2014-07-20 22:22:00 ----A---- C:\Windows\system32\IKEEXT.DLL 2014-07-20 22:22:00 ----A---- C:\Windows\system32\FWPUCLNT.DLL 2014-07-20 22:21:30 ----A---- C:\Windows\system32\wmi.dll 2014-07-20 22:21:30 ----A---- C:\Windows\system32\imagehlp.dll 2014-07-20 22:21:30 ----A---- C:\Windows\system32\drivers\fs_rec.sys 2014-07-20 22:21:02 ----A---- C:\Windows\system32\qdvd.dll 2014-07-20 22:19:44 ----A---- C:\Windows\system32\msdrm.dll 2014-07-20 22:19:43 ----A---- C:\Windows\system32\RMActivate.exe 2014-07-20 22:19:31 ----A---- C:\Windows\system32\RMActivate_isv.exe 2014-07-20 22:19:29 ----A---- C:\Windows\system32\RMActivate_ssp.exe 2014-07-20 22:19:26 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe 2014-07-20 22:19:23 ----A---- C:\Windows\system32\secproc.dll 2014-07-20 22:19:22 ----A---- C:\Windows\system32\secproc_ssp_isv.dll 2014-07-20 22:19:22 ----A---- C:\Windows\system32\secproc_ssp.dll 2014-07-20 22:19:22 ----A---- C:\Windows\system32\secproc_isv.dll 2014-07-20 22:17:49 ----A---- C:\Windows\system32\themeui.dll 2014-07-20 22:17:15 ----A---- C:\Windows\system32\winhttp.dll 2014-07-20 22:16:05 ----A---- C:\Windows\system32\fontsub.dll 2014-07-20 22:16:05 ----A---- C:\Windows\system32\atmlib.dll 2014-07-20 22:16:05 ----A---- C:\Windows\system32\atmfd.dll 2014-07-20 22:14:28 ----A---- C:\Windows\system32\smss.exe 2014-07-20 22:14:28 ----A---- C:\Windows\system32\csrsrv.dll 2014-07-20 22:14:26 ----A---- C:\Windows\system32\ntoskrnl.exe 2014-07-20 22:14:25 ----A---- C:\Windows\system32\ntkrnlpa.exe 2014-07-20 22:14:25 ----A---- C:\Windows\system32\ntdll.dll 2014-07-20 22:14:04 ----A---- C:\Windows\system32\rdpencom.dll 2014-07-20 22:13:04 ----A---- C:\Windows\system32\oleaccrc.dll 2014-07-20 22:13:03 ----A---- C:\Windows\system32\oleaut32.dll 2014-07-20 22:13:02 ----A---- C:\Windows\system32\oleacc.dll 2014-07-20 22:12:56 ----A---- C:\Windows\system32\UIAutomationCore.dll 2014-07-20 22:10:17 ----A---- C:\Windows\system32\mstscax.dll 2014-07-20 22:10:05 ----A---- C:\Windows\system32\xmllite.dll 2014-07-20 22:09:26 ----A---- C:\Windows\system32\comctl32.dll 2014-07-20 22:09:11 ----A---- C:\Windows\system32\drivers\rdpwd.sys 2014-07-20 22:08:50 ----A---- C:\Windows\system32\msasn1.dll 2014-07-20 22:08:29 ----A---- C:\Windows\system32\winsrv.dll 2014-07-20 22:07:53 ----A---- C:\Windows\system32\mstsc.exe 2014-07-20 22:07:40 ----A---- C:\Windows\system32\drivers\hidparse.sys 2014-07-20 22:06:13 ----A---- C:\Windows\system32\WSDApi.dll 2014-07-20 22:03:41 ----A---- C:\Windows\system32\secur32.dll 2014-07-20 22:03:41 ----A---- C:\Windows\system32\msv1_0.dll 2014-07-20 22:03:41 ----A---- C:\Windows\system32\lsass.exe 2014-07-20 22:03:40 ----A---- C:\Windows\system32\schannel.dll 2014-07-20 22:03:40 ----A---- C:\Windows\system32\lsasrv.dll 2014-07-20 22:03:40 ----A---- C:\Windows\system32\drivers\ksecdd.sys 2014-07-20 22:03:31 ----A---- C:\Windows\system32\msshsq.dll 2014-07-20 22:02:44 ----A---- C:\Windows\system32\drivers\usb8023.sys 2014-07-20 22:01:56 ----A---- C:\Windows\system32\wer.dll 2014-07-20 22:01:45 ----A---- C:\Windows\system32\WMSPDMOD.DLL 2014-07-20 22:00:18 ----A---- C:\Windows\system32\winrsmgr.dll 2014-07-20 21:59:59 ----A---- C:\Windows\system32\wsmprovhost.exe 2014-07-20 21:59:59 ----A---- C:\Windows\system32\winrshost.exe 2014-07-20 21:59:59 ----A---- C:\Windows\system32\winrs.exe 2014-07-20 21:59:58 ----A---- C:\Windows\system32\wsmplpxy.dll 2014-07-20 21:59:58 ----A---- C:\Windows\system32\winrssrv.dll 2014-07-20 21:59:53 ----A---- C:\Windows\system32\WsmRes.dll 2014-07-20 21:59:53 ----A---- C:\Windows\system32\wevtfwd.dll 2014-07-20 21:59:53 ----A---- C:\Windows\system32\wecutil.exe 2014-07-20 21:59:53 ----A---- C:\Windows\system32\wecsvc.dll 2014-07-20 21:59:53 ----A---- C:\Windows\system32\wecapi.dll 2014-07-20 21:59:53 ----A---- C:\Windows\system32\pwrshplugin.dll 2014-07-20 21:59:42 ----A---- C:\Windows\system32\winrm.vbs 2014-07-20 21:59:39 ----A---- C:\Windows\system32\WsmWmiPl.dll 2014-07-20 21:59:39 ----A---- C:\Windows\system32\WsmAuto.dll 2014-07-20 21:59:39 ----A---- C:\Windows\system32\winrscmd.dll 2014-07-20 21:59:38 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll 2014-07-20 21:59:37 ----A---- C:\Windows\system32\WsmSvc.dll 2014-07-20 21:59:37 ----A---- C:\Windows\system32\WSManHTTPConfig.exe 2014-07-20 21:58:25 ----A---- C:\Windows\system32\unregmp2.exe 2014-07-20 21:57:28 ----A---- C:\Windows\system32\tzres.dll 2014-07-20 21:56:18 ----A---- C:\Windows\system32\wintrust.dll 2014-07-20 21:56:18 ----A---- C:\Windows\system32\cryptnet.dll 2014-07-20 21:56:17 ----A---- C:\Windows\system32\cryptsvc.dll 2014-07-20 16:12:01 ----D---- C:\Users\Administrator.PC_van_Kiana.000\AppData\Roaming\Apple Computer 2014-07-20 15:21:40 ----D---- C:\Users\Administrator.PC_van_Kiana.000\AppData\Roaming\AVG2014 2014-07-19 15:09:41 ----D---- C:\Users\Administrator.PC_van_Kiana.000\AppData\Roaming\TuneUp Software 2014-07-19 15:08:23 ----D---- C:\ProgramData\AVG2014 2014-07-19 15:01:53 ----HD---- C:\$AVG 2014-07-19 14:52:47 ----D---- C:\ProgramData\MFAData 2014-07-19 11:47:26 ----ASH---- C:\hiberfil.sys 2014-07-19 10:50:55 ----D---- C:\Windows\system32\catroot2 2014-07-19 10:50:55 ----D---- C:\Windows\SoftwareDistribution 2014-07-19 10:18:03 ----A---- C:\Windows\tweaking.com-regbackup-PC_VAN_KIANA-Microsoft®-Windows-Vista™-Home-Premium-(32-bit).dat 2014-07-19 10:16:40 ----D---- C:\RegBackup 2014-07-19 10:03:49 ----D---- C:\Users\Administrator.PC_van_Kiana.000\AppData\Roaming\Bandoo 2014-07-19 10:00:45 ----D---- C:\Users\Administrator.PC_van_Kiana.000\AppData\Roaming\Macromedia 2014-07-19 10:00:05 ----D---- C:\Users\Administrator.PC_van_Kiana.000\AppData\Roaming\Adobe 2014-07-19 09:27:55 ----D---- C:\Users\Administrator.PC_van_Kiana.000\AppData\Roaming\Malwarebytes 2014-07-19 09:27:48 ----D---- C:\ProgramData\Malwarebytes 2014-07-19 09:27:44 ----D---- C:\Program Files\Malwarebytes' Anti-Malware 2014-07-19 09:27:44 ----A---- C:\Windows\system32\drivers\mbam.sys 2014-07-19 09:25:27 ----D---- C:\Program Files\Tweaking.com 2014-07-19 09:16:38 ----D---- C:\Program Files\CCleaner 2014-07-19 09:13:58 ----D---- C:\Users\Administrator.PC_van_Kiana.000\AppData\Roaming\HiYo 2014-07-19 08:18:45 ----D---- C:\Users\Administrator.PC_van_Kiana.000\AppData\Roaming\Identities 2014-07-19 08:12:12 ----A---- C:\Windows\system32\wups2.dll 2014-07-19 08:12:12 ----A---- C:\Windows\system32\wucltux.dll 2014-07-19 08:12:12 ----A---- C:\Windows\system32\wuauclt.exe 2014-07-19 08:12:11 ----A---- C:\Windows\system32\wuaueng.dll 2014-07-19 08:11:52 ----A---- C:\Windows\system32\wups.dll 2014-07-19 08:11:52 ----A---- C:\Windows\system32\wudriver.dll 2014-07-19 08:11:52 ----A---- C:\Windows\system32\wuapi.dll 2014-07-19 08:11:36 ----A---- C:\Windows\system32\wuwebv.dll 2014-07-19 08:11:35 ----A---- C:\Windows\system32\wuapp.exe 2014-07-19 08:05:16 ----D---- C:\Program Files\GUMD24B.tmp 2014-07-19 08:05:16 ----A---- C:\Program Files\GUTD24C.tmp 2014-07-19 08:04:20 ----D---- C:\ProgramData\Datamngr 2014-07-19 08:03:31 ----SD---- C:\Users\Administrator.PC_van_Kiana.000\AppData\Roaming\Microsoft 2014-07-19 08:03:31 ----D---- C:\Users\Administrator.PC_van_Kiana.000\AppData\Roaming\Media Center Programs 2014-06-30 12:43:12 ----A---- C:\Windows\system32\drivers\avgdiskx.sys ======List of files/folders modified in the last 1 month====== 2014-07-21 07:52:23 ----D---- C:\Windows\Temp 2014-07-21 07:52:20 ----RD---- C:\Program Files 2014-07-21 07:49:00 ----D---- C:\Windows\rescache 2014-07-21 07:35:30 ----D---- C:\Windows\Microsoft.NET 2014-07-21 07:34:23 ----RSD---- C:\Windows\assembly 2014-07-21 07:12:00 ----D---- C:\Program Files\Microsoft Silverlight 2014-07-21 03:21:35 ----D---- C:\Windows 2014-07-21 03:21:18 ----D---- C:\Windows\system32\drivers 2014-07-21 03:21:18 ----D---- C:\Windows\System32 2014-07-21 03:21:17 ----D---- C:\Windows\system32\wbem 2014-07-21 03:21:17 ----D---- C:\Windows\system32\nl-NL 2014-07-21 03:21:17 ----D---- C:\Windows\system32\drivers\nl-NL 2014-07-21 03:21:11 ----D---- C:\Windows\inf 2014-07-21 03:20:55 ----SHD---- C:\Windows\Installer 2014-07-21 03:18:47 ----D---- C:\Windows\winsxs 2014-07-21 03:17:03 ----D---- C:\ProgramData\Microsoft Help 2014-07-21 03:12:55 ----D---- C:\Windows\system32\catroot 2014-07-21 03:05:19 ----A---- C:\Windows\win.ini 2014-07-21 03:05:16 ----D---- C:\Program Files\Common Files\System 2014-07-21 03:01:29 ----SHD---- C:\System Volume Information 2014-07-21 02:47:47 ----A---- C:\Windows\NeroDigital.ini 2014-07-21 02:40:30 ----RD---- C:\Users 2014-07-21 02:26:37 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-07-21 02:24:24 ----D---- C:\Windows\system32\Tasks 2014-07-21 02:23:45 ----D---- C:\Program Files\Windows Media Player 2014-07-21 02:19:23 ----D---- C:\Windows\Panther 2014-07-21 02:14:07 ----D---- C:\Program Files\Windows Mail 2014-07-21 02:14:00 ----D---- C:\Program Files\Windows Journal 2014-07-21 02:13:49 ----D---- C:\Windows\system32\tr-TR 2014-07-21 02:13:49 ----D---- C:\Windows\system32\pt-PT 2014-07-21 02:13:49 ----D---- C:\Windows\system32\lv-LV 2014-07-21 02:13:49 ----D---- C:\Windows\system32\ja-JP 2014-07-21 02:13:49 ----D---- C:\Windows\system32\it-IT 2014-07-21 02:13:49 ----D---- C:\Windows\system32\fr-FR 2014-07-21 02:13:49 ----D---- C:\Windows\system32\el-GR 2014-07-21 02:13:49 ----D---- C:\Windows\system32\de-DE 2014-07-21 02:13:48 ----D---- C:\Windows\system32\zh-TW 2014-07-21 02:13:48 ----D---- C:\Windows\system32\uk-UA 2014-07-21 02:13:48 ----D---- C:\Windows\system32\sr-Latn-CS 2014-07-21 02:13:48 ----D---- C:\Windows\system32\sl-SI 2014-07-21 02:13:48 ----D---- C:\Windows\system32\sk-SK 2014-07-21 02:13:48 ----D---- C:\Windows\system32\ro-RO 2014-07-21 02:13:48 ----D---- C:\Windows\system32\pt-BR 2014-07-21 02:13:48 ----D---- C:\Windows\system32\pl-PL 2014-07-21 02:13:48 ----D---- C:\Windows\system32\nb-NO 2014-07-21 02:13:48 ----D---- C:\Windows\system32\lt-LT 2014-07-21 02:13:48 ----D---- C:\Windows\system32\ko-KR 2014-07-21 02:13:48 ----D---- C:\Windows\system32\hr-HR 2014-07-21 02:13:48 ----D---- C:\Windows\system32\fi-FI 2014-07-21 02:13:48 ----D---- C:\Windows\system32\en-US 2014-07-21 02:13:48 ----D---- C:\Windows\system32\da-DK 2014-07-21 02:13:48 ----D---- C:\Windows\system32\cs-CZ 2014-07-21 02:13:48 ----D---- C:\Windows\system32\bg-BG 2014-07-21 02:13:48 ----D---- C:\Windows\system32\ar-SA 2014-07-21 02:13:47 ----D---- C:\Windows\system32\zh-HK 2014-07-21 02:13:47 ----D---- C:\Windows\system32\zh-CN 2014-07-21 02:13:47 ----D---- C:\Windows\system32\th-TH 2014-07-21 02:13:47 ----D---- C:\Windows\system32\sv-SE 2014-07-21 02:13:47 ----D---- C:\Windows\system32\ru-RU 2014-07-21 02:13:47 ----D---- C:\Windows\system32\hu-HU 2014-07-21 02:13:47 ----D---- C:\Windows\system32\he-IL 2014-07-21 02:13:47 ----D---- C:\Windows\system32\et-EE 2014-07-21 02:13:47 ----D---- C:\Windows\system32\es-ES 2014-07-21 02:13:38 ----D---- C:\Program Files\Movie Maker 2014-07-21 02:13:37 ----D---- C:\Program Files\Internet Explorer 2014-07-21 02:13:28 ----D---- C:\Windows\ehome 2014-07-21 02:13:24 ----D---- C:\Windows\AppPatch 2014-07-21 02:13:21 ----RSD---- C:\Windows\Fonts 2014-07-21 02:13:16 ----RD---- C:\Windows\Offline Web Pages 2014-07-21 02:13:16 ----D---- C:\Windows\system32\migration 2014-07-21 02:13:16 ----D---- C:\Windows\PolicyDefinitions 2014-07-21 02:13:08 ----SD---- C:\Windows\Downloaded Program Files 2014-07-21 02:12:42 ----D---- C:\Windows\system32\XPSViewer 2014-07-21 02:06:44 ----D---- C:\Windows\system32\drivers\UMDF 2014-07-21 02:05:10 ----D---- C:\Windows\system32\RTCOM 2014-07-21 02:02:20 ----D---- C:\Windows\Prefetch 2014-07-20 22:55:36 ----D---- C:\Windows\Logs 2014-07-20 20:01:13 ----D---- C:\ProgramData\Wincert 2014-07-20 15:25:54 ----D---- C:\Program Files\Recuva 2014-07-19 15:08:23 ----HD---- C:\ProgramData 2014-07-19 15:01:50 ----D---- C:\ProgramData\avg8 2014-07-19 14:59:26 ----D---- C:\Program Files\AVG 2014-07-19 14:01:37 ----D---- C:\Program Files\PHPNukeDU 2014-07-19 14:01:09 ----D---- C:\Program Files\Inbox Toolbar 2014-07-19 12:02:31 ----D---- C:\Program Files\Google 2014-07-19 12:02:29 ----D---- C:\Program Files\FastestTube 2014-07-19 12:02:29 ----D---- C:\Program Files\Common Files\Skype 2014-07-19 12:02:27 ----D---- C:\Program Files\Common Files 2014-07-19 12:02:25 ----D---- C:\Downloads 2014-07-19 12:02:17 ----D---- C:\Windows\Tasks 2014-07-19 12:02:17 ----D---- C:\Windows\system32\spool 2014-07-19 12:02:17 ----D---- C:\Windows\system32\drivers\etc 2014-07-19 12:02:16 ----D---- C:\Windows\system32\cache 2014-07-19 12:02:15 ----RD---- C:\Program Files\Skype 2014-07-19 12:02:15 ----D---- C:\Windows\registration 2014-07-19 12:02:15 ----D---- C:\ProgramData\WombatUpdater 2014-07-19 12:02:15 ----D---- C:\ProgramData\Tarma Installer 2014-07-19 09:45:50 ----D---- C:\Program Files\Yontoo Layers Runtime 2014-07-19 09:17:56 ----D---- C:\Windows\Minidump 2014-07-19 08:58:44 ----SHD---- C:\$Recycle.Bin 2014-07-19 07:47:37 ----D---- C:\Windows\system32\config 2014-07-19 07:46:55 ----D---- C:\Windows\system32\Msdtc 2014-07-19 07:46:52 ----D---- C:\ProgramData\FreeDownloadManager.ORG 2014-07-19 07:46:51 ----D---- C:\ProgramData\AVG Secure Search 2014-07-19 07:46:51 ----D---- C:\Program Files\RebateInformer 2014-07-19 07:46:50 ----D---- C:\Program Files\Free Download Manager 2014-07-19 07:46:49 ----D---- C:\Program Files\Common Files\AVG Secure Search 2014-07-19 07:46:48 ----D---- C:\Program Files\AVG Secure Search 2014-07-19 07:21:49 ----D---- C:\ProgramData\Skype 2014-07-19 06:31:52 ----D---- C:\ProgramData\Google 2014-07-19 06:25:54 ----D---- C:\Windows\Debug ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 AVGIDSHX;AVGIDSHX; C:\Windows\system32\DRIVERS\avgidshx.sys [2014-06-17 147736] R0 Avglogx;AVG Logging Driver; C:\Windows\system32\DRIVERS\avglogx.sys [2014-06-17 241944] R0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx86.sys [2014-06-17 98584] R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx86.sys [2014-06-17 27416] R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2009-09-09 114048] R0 timounter;Acronis True Image Backup Archive Explorer; C:\Windows\system32\DRIVERS\timntr.sys [2009-09-09 392320] R1 Avgdiskx;AVG Disk Driver; C:\Windows\system32\DRIVERS\avgdiskx.sys [2014-06-30 121624] R1 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\avgidsdriverx.sys [2014-06-17 199960] R1 AVGIDSShim;AVGIDSShim; C:\Windows\system32\DRIVERS\avgidsshimx.sys [2014-06-17 21272] R1 Avgldx86;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx86.sys [2014-06-17 188696] R1 Avgtdix;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdix.sys [2014-06-17 197400] R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx86.sys [2014-05-02 42272] R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-04-09 107256] R1 RtlProt;Realtke RtlProt WLAN Utility Protocol Driver; C:\Windows\system32\DRIVERS\rtlprot.sys [2007-04-23 25896] R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-04-09 113960] R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2009-04-09 93312] R2 tifsfilter;Acronis True Image FS Filter; C:\Windows\system32\DRIVERS\tifsfilt.sys [2009-09-09 32768] R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2006-11-02 983552] R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-04-09 958464] R3 HdAudAddService;Microsoft 1.1 UAA Functiestuurprogramma voor High Definition Audio-service; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544] R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-12-23 2476032] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-03-10 2338720] R3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60x.sys [2008-09-03 223232] R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-12-04 204976] R3 usbvideo;USB-videoapparaat (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272] R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560] R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136] S3 ApfiltrService;Alps Pointing-device Filter Driver; C:\Windows\system32\DRIVERS\Apfiltr.sys [2009-01-30 191536] S3 drmkaud;Microsoft Kernel DRM-audiodecoder; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632] S3 MSKSSRV;Microsoft Streaming Service-proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192] S3 MSPCLOCK;Microsoft Streaming Clock-proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888] S3 MSPQM;Microsoft Streaming Kwaliteitsbeheer Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504] S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink-conversieprogramma; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016] S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448] S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2009-04-11 6656] S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AcrSch2Svc;Acronis Scheduler2 Service; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [2007-02-16 411168] R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [2014-07-10 3244048] R2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [2014-07-10 289328] R2 Bandoo Coordinator;Bandoo Coordinator; C:\PROGRA~1\Bandoo\Bandoo.exe [2009-11-25 1516992] R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2009-04-09 731840] R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504] R2 vToolbarUpdater18.1.0;vToolbarUpdater18.1.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\ToolbarUpdater.exe [2014-05-02 1801240] S2 BrowserProtect;BrowserProtect; C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe [2013-03-22 2787280] S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192] S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-14 194032] S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632] S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] -----------------EOF-----------------