Logfile of random's system information tool 1.10 (written by random/random) Run by Jolanda at 2014-09-16 21:15:29 Microsoft Windows 8.1 System drive C: has 394 GB (85%) free of 464 GB Total RAM: 3514 MB (18% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 21:15:46, on 16-9-2014 Platform: Unknown Windows (WinNT 6.02.1008) MSIE: Internet Explorer v11.0 (11.00.9600.17278) Boot mode: Normal Running processes: C:\Windows\SysWOW64\UMonit64.exe C:\Users\Jolanda\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe C:\Users\Jolanda\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe c:\PROGRA~2\mcafee\SITEAD~1\saui.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Users\Jolanda\AppData\Local\Microsoft\Windows\INetCache\IE\KVQRV09D\AppCleaner_installer.exe C:\Program Files\trend micro\Jolanda.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://toshiba13.msn.com/?pc=TEJB R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll O2 - BHO: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll O2 - BHO: The Amazon 1Button App for IE - {26B19FA4-E8A1-4A1B-A163-1A1E46F830DD} - C:\AmazonAppIE.dll O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O2 - BHO: CouuPScannEr - {CFE6D198-C52F-E106-4092-2FC7CEA76EB1} - C:\ProgramData\CouuPScannEr\Ph.dll O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O3 - Toolbar: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll O4 - HKLM\..\Run: [Intel AppUp(R) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4 O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun O4 - HKLM\..\Run: [KeNotify] "C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe" LPCM O4 - HKLM\..\Run: [TSVU] "c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe" O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe" O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Jolanda\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" O4 - HKCU\..\Run: [NextLive] C:\windows\SysWOW64\rundll32.exe "C:\Users\Jolanda\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l O4 - HKCU\..\Run: [EPLTarget\P0000000000000001] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIIJE.EXE /EPT "EPLTarget\P0000000000000001" /M "XP-402 403 405 406 Series" O4 - HKCU\..\Run: [EPLTarget\P0000000000000002] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILEE.EXE /EPT "EPLTarget\P0000000000000002" /M "XP-412 413 415 Series" O4 - HKCU\..\Run: [EPLTarget\P0000000000000003] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILEE.EXE /EPT "EPLTarget\P0000000000000003" /M "XP-412 413 415 Series" /EF "HKCU" O4 - HKUS\S-1-5-21-2374064356-1376969392-1527349308-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\Run: [Spotify Web Helper] "C:\Users\Jolanda\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" (User '?') O4 - HKUS\S-1-5-21-2374064356-1376969392-1527349308-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\Run: [NextLive] C:\windows\SysWOW64\rundll32.exe "C:\Users\Jolanda\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l (User '?') O4 - HKUS\S-1-5-21-2374064356-1376969392-1527349308-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\Run: [EPLTarget\P0000000000000001] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIIJE.EXE /EPT "EPLTarget\P0000000000000001" /M "XP-402 403 405 406 Series" (User '?') O4 - HKUS\S-1-5-21-2374064356-1376969392-1527349308-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\Run: [EPLTarget\P0000000000000002] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILEE.EXE /EPT "EPLTarget\P0000000000000002" /M "XP-412 413 415 Series" (User '?') O4 - HKUS\S-1-5-21-2374064356-1376969392-1527349308-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\Run: [EPLTarget\P0000000000000003] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILEE.EXE /EPT "EPLTarget\P0000000000000003" /M "XP-412 413 415 Series" /EF "HKCU" (User '?') O4 - S-1-5-21-2374064356-1376969392-1527349308-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 Startup: Dropbox.lnk = Jolanda\AppData\Roaming\Dropbox\bin\Dropbox.exe (User '?') O4 - Startup: Dropbox.lnk = Jolanda\AppData\Roaming\Dropbox\bin\Dropbox.exe O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll O20 - AppInit_DLLs: c:\progra~3\perfor~1\perfor~1.dll O23 - Service: AdaptiveSleepService - Unknown owner - C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing) O23 - Service: DTS APO Service (dts_apo_service) - Unknown owner - C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing) O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\WINDOWS\system32\EscSvc64.exe (file missing) O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing) O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing) O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\WINDOWS\system32\mfevtps.exe (file missing) O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing) O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: Nero Update (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing) O23 - Service: TEMPRO Service (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing) O23 - Service: TOSHIBA eco Utility Service - Toshiba Corporation - C:\Program Files\TOSHIBA\Teco\TecoService.exe O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 15299 bytes ======Listing Processes====== wininit.exe winlogon.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe -k DcomLaunch C:\WINDOWS\system32\svchost.exe -k RPCSS C:\WINDOWS\system32\atiesrxx.exe "dwm.exe" C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted C:\WINDOWS\system32\svchost.exe -k netsvcs C:\WINDOWS\system32\svchost.exe -k LocalService atieclxx C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted C:\WINDOWS\system32\svchost.exe -k NetworkService C:\WINDOWS\System32\spoolsv.exe C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork "C:\WINDOWS\system32\rundll32.exe" "c:\progra~3\perfor~1\PerformanceOptimizerSvc.dll",service "C:\WINDOWS\system32\rundll32.exe" "c:\progra~3\perfor~1\PerformanceOptimizerSvc.dll",service "C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe" "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" "C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service "C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe" dashost.exe {7ca69751-5b1d-4f05-84c08179d13966da} C:\WINDOWS\system32\EscSvc64.exe "C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE" "C:\WINDOWS\system32\mfevtps.exe" C:\WINDOWS\system32\svchost.exe -k imgsvc C:\Windows\system32\TODDSrv.exe "C:\Program Files\McAfee\MSC\McAPExe.exe" "C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe" "C:\WINDOWS\SysWOW64\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait "C:\WINDOWS\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\x64\saHook.dll", saHooker_Initialize_and_Wait "C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe" "C:\Program Files\TOSHIBA\Teco\TecoService.exe" C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet taskhostex.exe C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7} C:\WINDOWS\system32\SearchIndexer.exe /Embedding C:\Windows\System32\skydrive.exe -Embedding "C:\Program Files\Elantech\ETDCtrl.exe" "C:\Program Files\Elantech\ETDTouch.exe" "C:\Windows\SysWOW64\UMonit64.exe" "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s "C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe" "C:\Program Files\Elantech\ETDCtrlHelper.exe" "C:\Program Files\TOSHIBA\Teco\TecoResident.exe" "C:\Users\Jolanda\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" "C:\Program Files\McAfee\MAT\McPvTray.exe" "C:\Windows\System32\spool\drivers\x64\3\E_IATIIJE.EXE" /EPT "EPLTarget\P0000000000000001" /M "XP-402 403 405 406 Series" "C:\Windows\System32\spool\drivers\x64\3\E_IATILEE.EXE" /EPT "EPLTarget\P0000000000000002" /M "XP-412 413 415 Series" "C:\Windows\System32\SettingSyncHost.exe" -Embedding "C:\Windows\System32\spool\drivers\x64\3\E_IATILEE.EXE" /EPT "EPLTarget\P0000000000000003" /M "XP-412 413 415 Series" /EF "HKCU" "C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe" "C:\Users\Jolanda\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup "C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe" LPCM "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" "C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe" "C:\Program Files\TOSHIBA\Toshiba Service Station\ToshibaServiceStation.exe" /hide "C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe" "C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe" "C:\Program Files (x86)\Nero\Update\NASvc.exe" "C:\Program Files\Windows Media Player\wmpnetwk.exe" "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow "C:\Program Files (x86)\ATI Technologies\ATI.ACE\core-static\CCC.exe" 0 "C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe" "C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe" "C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe" explorer.exe "C:\Program Files\Internet Explorer\iexplore.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saui.exe" -Embedding "C:\WINDOWS\System32\Macromed\Flash\FlashUtil_ActiveX.exe" -Embedding "C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe" /fullmode /platui "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7996 CREDAT:267690 /prefetch:2 "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe" "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe" "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7996 CREDAT:202135 /prefetch:2 taskhost.exe "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:7996 CREDAT:464286 /prefetch:2 "C:\Users\Jolanda\AppData\Local\Microsoft\Windows\INetCache\IE\KVQRV09D\AppCleaner_installer.exe" "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b5cd879c-7eb9-4ed4-9f61-d81bad5d0cdf -SystemEventPortName:HostProcess-19bf65cf-639e-4dc9-8c80-dcc647679ade -IoCancelEventPortName:HostProcess-3386dfb2-eb52-4388-8812-4bfc3b65c60f -NonStateChangingEventPortName:HostProcess-e4448b15-fc3c-4feb-9ea5-3b173236a26c -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:2396cf7e-2c88-46bd-bf71-1d7840d2d5d7 -DeviceGroupId:WudfDefaultDevicePool "C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe38_ Global\UsGthrCtrlFltPipeMssGthrPipe38 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "C:\WINDOWS\system32\SearchFilterHost.exe" 0 584 588 596 65536 592 C:\WINDOWS\system32\wbem\wmiprvse.exe "C:\Users\Jolanda\AppData\Local\Microsoft\Windows\INetCache\IE\TD7QHV0K\RSITx64.exe" ======Scheduled tasks folder====== C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe C:\WINDOWS\tasks\EPSON XP-412 413 415 Series Invitation {1B80A71D-BEC6-4AFD-95D8-3D77A9484CD1}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLEE.EXE /EXE:"{1B80A71D-BEC6-4AFD-95D8-3D77A9484CD1}" /F:"Invitation" C:\WINDOWS\tasks\EPSON XP-412 413 415 Series Invitation {615CE7A8-ABB1-41E9-9E54-96C9CE78B776}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLEE.EXE /EXE:"{615CE7A8-ABB1-41E9-9E54-96C9CE78B776}" /F:"Invitation" C:\WINDOWS\tasks\EPSON XP-412 413 415 Series Update {1B80A71D-BEC6-4AFD-95D8-3D77A9484CD1}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLEE.EXE /EXE:"{1B80A71D-BEC6-4AFD-95D8-3D77A9484CD1}" /F:"Update" C:\WINDOWS\tasks\EPSON XP-412 413 415 Series Update {615CE7A8-ABB1-41E9-9E54-96C9CE78B776}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLEE.EXE /EXE:"{615CE7A8-ABB1-41E9-9E54-96C9CE78B776}" /F:"Update" C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler C:\WINDOWS\tasks\RegClean Pro_DEFAULT.job - C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe -default C:\WINDOWS\tasks\RegClean Pro_UPDATES.job - C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe -updatecheck ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}] Lync Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2014-08-22 218776] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}] Easy Photo Print - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2012-01-25 438368] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}] McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2014-06-30 294400] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}] Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2014-08-22 2335960] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}] MSS+ Identifier - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09 96128] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201CF130-E29C-4E5C-A73F-CD197DEFA6AE}] E-Web Print - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2013-02-28 238656] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{26B19FA4-E8A1-4A1B-A163-1A1E46F830DD}] The Amazon 1Button App for IE - C:\AmazonAppIE.dll [2013-06-07 472064] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}] Lync Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2014-06-19 153248] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-08-22 462760] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}] McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2014-06-30 241352] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CFE6D198-C52F-E106-4092-2FC7CEA76EB1}] CouuPScannEr - C:\ProgramData\CouuPScannEr\Ph.dll [2014-09-09 625152] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}] Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2014-08-22 1730256] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-08-22 171944] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2014-06-30 294400] {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2012-01-25 438368] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar] {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2014-06-30 241352] {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - E-Web Print - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2013-02-28 238656] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2013-08-07 2890056] "UMonit64"=C:\windows\SysWOW64\UMonit64.exe [2013-07-10 53248] "TCrdMain"=C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2013-04-23 2565472] "TSleepSrv"=C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe [2013-03-05 1549392] "TODDMain"=C:\Program Files (x86)\TOSHIBA\System Setting\TODDMain.exe [2012-08-05 213136] "TecoResident"=C:\Program Files\TOSHIBA\Teco\TecoResident.exe [2013-04-10 172896] "TosWaitSrv"=C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [2012-07-11 356776] "AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Spotify Web Helper"=C:\Users\Jolanda\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2013-12-24 1168896] "NextLive"=C:\windows\SysWOW64\rundll32.exe [2013-08-22 49664] "EPLTarget\P0000000000000001"=C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIIJE.EXE [2012-02-29 283232] "EPLTarget\P0000000000000002"=C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILEE.EXE [2013-01-24 297024] "EPLTarget\P0000000000000003"=C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILEE.EXE [2013-01-24 297024] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "Intel AppUp(R) center"=C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2013-04-15 156000] "StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2013-07-05 642816] "KeNotify"=C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [2012-07-21 34160] "TSVU"=c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe [2013-03-08 467360] "mcpltui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2014-04-25 537992] "Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904] "SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-07-25 256896] "EEventManager"=C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [2014-05-02 1065024] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe C:\Users\Jolanda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup Dropbox.lnk - C:\Users\Jolanda\AppData\Roaming\Dropbox\bin\Dropbox.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=" C:\PROGRA~3\PERFOR~1\PERFOR~2.DLL" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "EnableLinkedConnections"=1 "DisableTaskMgr"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoRun"=0 "NoFolderOptions"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "VIDC.YUY2"=msyuv.dll "vidc.i420"=iyuv_32.dll "msacm.msgsm610"=msgsm32.acm "msacm.msg711"=msg711.acm "VIDC.YVYU"=msyuv.dll "VIDC.YVU9"=tsbyuv.dll "wavemapper"=msacm32.drv "midimapper"=midimap.dll "VIDC.UYVY"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.mrle"=msrle32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msadpcm"=msadp32.acm "vidc.msvc"=msvidc32.dll "MSVideo8"=VfWWDM32.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv "vidc.ffds"=ff_vfw.dll ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2014-09-16 21:15:30 ----D---- C:\Program Files\trend micro 2014-09-16 21:15:28 ----D---- C:\rsit 2014-09-16 20:48:34 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys 2014-09-16 20:47:44 ----A---- C:\WINDOWS\system32\drivers\mwac.sys 2014-09-16 20:47:44 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys 2014-09-16 20:47:44 ----A---- C:\WINDOWS\system32\drivers\mbam.sys 2014-09-16 20:47:43 ----D---- C:\ProgramData\Malwarebytes 2014-09-16 20:47:43 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware 2014-09-15 18:48:21 ----D---- C:\ProgramData\LizardSales 2014-09-15 17:30:45 ----A---- C:\WINDOWS\system32\drivers\msgpioclx.sys 2014-09-11 10:28:12 ----A---- C:\WINDOWS\system32\aepdu.dll 2014-09-11 10:28:12 ----A---- C:\WINDOWS\system32\aeinv.dll 2014-09-11 10:28:11 ----A---- C:\WINDOWS\system32\aepic.dll 2014-09-10 12:52:38 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll 2014-09-10 12:52:38 ----A---- C:\WINDOWS\system32\MshtmlDac.dll 2014-09-10 12:52:36 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll 2014-09-10 12:52:36 ----A---- C:\WINDOWS\system32\mshtmled.dll 2014-09-10 12:52:35 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll 2014-09-10 12:52:34 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll 2014-09-10 12:52:34 ----A---- C:\WINDOWS\system32\vbscript.dll 2014-09-10 12:52:34 ----A---- C:\WINDOWS\system32\jscript9diag.dll 2014-09-10 12:52:31 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll 2014-09-10 12:52:31 ----A---- C:\WINDOWS\system32\dxtrans.dll 2014-09-10 12:52:31 ----A---- C:\WINDOWS\system32\dxtmsft.dll 2014-09-10 12:52:30 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll 2014-09-10 12:52:29 ----A---- C:\WINDOWS\system32\msfeeds.dll 2014-09-10 12:52:29 ----A---- C:\WINDOWS\system32\iedkcs32.dll 2014-09-10 12:52:29 ----A---- C:\WINDOWS\system32\ie4uinit.exe 2014-09-10 12:52:28 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll 2014-09-10 12:52:28 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll 2014-09-10 12:52:27 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll 2014-09-10 12:52:27 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll 2014-09-10 12:52:27 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll 2014-09-10 12:52:27 ----A---- C:\WINDOWS\system32\ieapfltr.dll 2014-09-10 12:52:25 ----A---- C:\WINDOWS\system32\mshtml.dll 2014-09-10 12:52:20 ----A---- C:\WINDOWS\system32\wininet.dll 2014-09-10 12:52:19 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll 2014-09-10 12:52:19 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll 2014-09-10 12:52:18 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll 2014-09-10 12:52:18 ----A---- C:\WINDOWS\system32\urlmon.dll 2014-09-10 12:52:18 ----A---- C:\WINDOWS\system32\iertutil.dll 2014-09-10 12:52:16 ----A---- C:\WINDOWS\system32\ieframe.dll 2014-09-10 12:52:14 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll 2014-09-10 12:52:12 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll 2014-09-10 12:52:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll 2014-09-10 12:52:11 ----A---- C:\WINDOWS\system32\jscript9.dll 2014-09-10 12:06:01 ----A---- C:\WINDOWS\system32\schedsvc.dll 2014-09-10 12:05:16 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll 2014-09-10 12:05:15 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll 2014-09-09 18:10:40 ----D---- C:\ProgramData\285ea54c4dca1fcf 2014-09-09 18:10:26 ----D---- C:\ProgramData\CouuPScannEr 2014-09-08 17:32:12 ----D---- C:\ProgramData\Performance Optimizer 2014-08-28 14:10:59 ----D---- C:\TimeWriterV5 2014-08-28 08:44:43 ----A---- C:\WINDOWS\system32\win32k.sys 2014-08-28 08:44:42 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll 2014-08-28 08:44:42 ----A---- C:\WINDOWS\system32\gdi32.dll 2014-08-25 18:52:29 ----D---- C:\ProgramData\UDL 2014-08-25 18:52:25 ----D---- C:\ProgramData\Sony Corporation 2014-08-25 18:24:51 ----A---- C:\WINDOWS\system32\enspres.dll 2014-08-25 18:24:51 ----A---- C:\WINDOWS\system32\ensppui.dll 2014-08-25 18:24:51 ----A---- C:\WINDOWS\system32\ensppmon.dll 2014-08-25 18:24:51 ----A---- C:\WINDOWS\system32\enpres.dll 2014-08-25 18:24:51 ----A---- C:\WINDOWS\system32\enppui.dll 2014-08-25 18:24:51 ----A---- C:\WINDOWS\system32\enppmon.dll 2014-08-25 18:24:49 ----D---- C:\Program Files\EpsonNet 2014-08-25 18:23:19 ----A---- C:\WINDOWS\system32\esxw2ud.dll 2014-08-25 18:23:19 ----A---- C:\WINDOWS\system32\escsvc64.exe 2014-08-25 18:22:20 ----A---- C:\WINDOWS\system32\E_GCINST.DLL 2014-08-25 18:22:18 ----A---- C:\WINDOWS\system32\E_ILMBLEE.DLL 2014-08-25 18:22:18 ----A---- C:\WINDOWS\system32\E_ID4BLEE.DLL 2014-08-22 09:30:02 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe 2014-08-22 09:29:57 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll 2014-08-22 09:29:57 ----A---- C:\WINDOWS\SYSWOW64\javaw.exe 2014-08-22 09:29:57 ----A---- C:\WINDOWS\SYSWOW64\java.exe 2014-08-22 09:29:45 ----D---- C:\Program Files (x86)\Java 2014-08-18 19:23:46 ----D---- C:\ProgramData\374311380 2014-08-18 19:22:07 ----D---- C:\Users\Jolanda\AppData\Roaming\FileZilla 2014-08-18 19:19:59 ----D---- C:\Users\Jolanda\AppData\Roaming\WSE_Astromenda 2014-08-18 17:11:43 ----D---- C:\Users\Jolanda\AppData\Roaming\TeamViewer 2014-08-18 16:21:23 ----A---- C:\WINDOWS\system32\MrmCoreR.dll 2014-08-18 13:25:21 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe 2014-08-17 20:28:00 ----D---- C:\Users\Jolanda\AppData\Roaming\Samsung 2014-08-17 20:22:10 ----A---- C:\WINDOWS\system32\drivers\ssudmdm.sys 2014-08-17 20:22:10 ----A---- C:\WINDOWS\system32\drivers\ssudbus.sys 2014-08-17 20:22:02 ----A---- C:\WINDOWS\system32\rpcrt4.dll 2014-08-17 20:22:01 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll 2014-08-17 20:21:57 ----A---- C:\WINDOWS\system32\dxgi.dll 2014-08-17 20:21:56 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll 2014-08-17 20:21:55 ----A---- C:\WINDOWS\system32\dwmcore.dll 2014-08-17 20:21:54 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys 2014-08-17 20:21:08 ----A---- C:\WINDOWS\SYSWOW64\Redemption.dll 2014-08-17 20:20:46 ----A---- C:\WINDOWS\SYSWOW64\dgderapi.dll 2014-08-17 20:19:06 ----D---- C:\ProgramData\Samsung 2014-08-17 20:19:06 ----D---- C:\Program Files (x86)\Samsung 2014-08-17 20:16:18 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll 2014-08-17 20:16:17 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll 2014-08-17 20:16:17 ----A---- C:\WINDOWS\system32\d3d9.dll 2014-08-17 20:16:15 ----A---- C:\WINDOWS\system32\mfcore.dll 2014-08-17 20:16:14 ----A---- C:\WINDOWS\system32\vpnike.dll 2014-08-17 20:16:14 ----A---- C:\WINDOWS\system32\localspl.dll 2014-08-17 20:16:13 ----A---- C:\WINDOWS\system32\ntdll.dll 2014-08-17 20:16:13 ----A---- C:\WINDOWS\system32\fveapi.dll 2014-08-17 20:16:13 ----A---- C:\WINDOWS\system32\dhcpcore.dll 2014-08-17 20:16:12 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll 2014-08-17 20:16:12 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll 2014-08-17 20:16:12 ----A---- C:\WINDOWS\system32\actxprxy.dll 2014-08-17 20:16:11 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll 2014-08-17 20:16:11 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll 2014-08-17 20:16:11 ----A---- C:\WINDOWS\system32\framedynos.dll 2014-08-17 20:16:11 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys 2014-08-17 20:16:09 ----A---- C:\WINDOWS\SYSWOW64\framedynos.dll 2014-08-17 20:16:09 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll 2014-08-17 20:16:09 ----A---- C:\WINDOWS\system32\dhcpcore6.dll 2014-08-17 20:16:09 ----A---- C:\WINDOWS\system32\bdesvc.dll 2014-08-17 20:16:08 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys 2014-08-17 20:16:08 ----A---- C:\WINDOWS\system32\BFE.DLL 2014-08-17 20:16:07 ----A---- C:\WINDOWS\system32\winbici.dll 2014-08-17 20:16:07 ----A---- C:\WINDOWS\system32\ncobjapi.dll 2014-08-17 20:16:07 ----A---- C:\WINDOWS\system32\framedyn.dll 2014-08-17 20:16:06 ----A---- C:\WINDOWS\SYSWOW64\ncobjapi.dll 2014-08-17 20:16:05 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll 2014-08-17 20:16:05 ----A---- C:\WINDOWS\system32\Robocopy.exe 2014-08-17 20:16:05 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys 2014-08-17 20:16:04 ----A---- C:\WINDOWS\SYSWOW64\Robocopy.exe 2014-08-17 20:16:04 ----A---- C:\WINDOWS\system32\WebClnt.dll 2014-08-17 20:16:04 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll 2014-08-17 20:16:03 ----A---- C:\WINDOWS\SYSWOW64\framedyn.dll 2014-08-17 20:16:03 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll 2014-08-17 20:16:03 ----A---- C:\WINDOWS\system32\IKEEXT.DLL 2014-08-17 20:16:03 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll 2014-08-17 20:16:03 ----A---- C:\WINDOWS\system32\BulkOperationHost.exe 2014-08-17 20:16:02 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll 2014-08-17 20:16:02 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll 2014-08-17 20:16:02 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys 2014-08-17 20:16:01 ----A---- C:\WINDOWS\system32\reseteng.dll 2014-08-17 20:16:00 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll 2014-08-17 20:16:00 ----A---- C:\WINDOWS\system32\srms.dat 2014-08-17 20:13:41 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys 2014-08-17 20:13:29 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe 2014-08-17 20:13:29 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe 2014-08-17 20:10:19 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-08-17 20:10:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll 2014-08-17 20:10:13 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys 2014-08-17 20:10:11 ----AC---- C:\WINDOWS\system32\drivers\usbport.sys 2014-08-17 20:10:11 ----AC---- C:\WINDOWS\system32\drivers\USBHUB3.SYS 2014-08-17 20:10:11 ----AC---- C:\WINDOWS\system32\drivers\usbhub.sys 2014-08-17 20:10:11 ----A---- C:\WINDOWS\SYSWOW64\rsaenh.dll 2014-08-17 20:10:11 ----A---- C:\WINDOWS\system32\WUDFSvc.dll 2014-08-17 20:10:11 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll 2014-08-17 20:10:11 ----A---- C:\WINDOWS\system32\WUDFHost.exe 2014-08-17 20:10:11 ----A---- C:\WINDOWS\system32\rsaenh.dll 2014-08-17 20:10:11 ----A---- C:\WINDOWS\system32\drivers\WUDFRd.sys 2014-08-17 20:10:11 ----A---- C:\WINDOWS\system32\drivers\WUDFPf.sys 2014-08-17 20:10:10 ----AC---- C:\WINDOWS\system32\drivers\usbuhci.sys 2014-08-17 20:10:10 ----AC---- C:\WINDOWS\system32\drivers\usbehci.sys 2014-08-17 20:10:10 ----A---- C:\WINDOWS\system32\DaOtpCredentialProvider.dll 2014-08-17 20:10:09 ----AC---- C:\WINDOWS\system32\drivers\usbd.sys 2014-08-17 20:10:09 ----A---- C:\WINDOWS\SYSWOW64\DaOtpCredentialProvider.dll 2014-08-17 20:10:09 ----A---- C:\WINDOWS\system32\hal.dll 2014-08-17 20:09:55 ----A---- C:\WINDOWS\system32\Wpc.dll 2014-08-17 20:09:54 ----A---- C:\WINDOWS\system32\WpcWebSync.dll 2014-08-17 20:09:54 ----A---- C:\WINDOWS\system32\WpcMon.exe 2014-08-17 20:09:53 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll 2014-08-17 20:09:52 ----A---- C:\WINDOWS\system32\MDMAgent.exe 2014-08-17 20:09:49 ----A---- C:\WINDOWS\system32\SyncEngine.dll 2014-08-17 20:09:48 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-08-17 20:09:48 ----A---- C:\WINDOWS\system32\SkyDrive.exe 2014-08-17 20:08:56 ----A---- C:\WINDOWS\SYSWOW64\authui.dll 2014-08-17 20:08:56 ----A---- C:\WINDOWS\system32\msi.dll 2014-08-17 20:08:56 ----A---- C:\WINDOWS\system32\authui.dll 2014-08-17 20:08:55 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll 2014-08-17 20:08:55 ----A---- C:\WINDOWS\SYSWOW64\msi.dll 2014-08-17 20:08:55 ----A---- C:\WINDOWS\system32\msihnd.dll 2014-08-17 20:08:55 ----A---- C:\WINDOWS\system32\consent.exe ======List of files/folders modified in the last 1 month====== 2014-09-16 21:15:34 ----D---- C:\WINDOWS\Temp 2014-09-16 21:15:30 ----RD---- C:\Program Files 2014-09-16 21:00:06 ----D---- C:\WINDOWS\system32\sru 2014-09-16 20:49:03 ----D---- C:\WINDOWS\Prefetch 2014-09-16 20:48:34 ----D---- C:\WINDOWS\system32\drivers 2014-09-16 20:47:43 ----RD---- C:\Program Files (x86) 2014-09-16 20:47:43 ----HD---- C:\ProgramData 2014-09-16 20:30:28 ----D---- C:\WINDOWS\system32\config 2014-09-16 20:27:42 ----D---- C:\WINDOWS\WinSxS 2014-09-15 20:37:40 ----D---- C:\WINDOWS\rescache 2014-09-15 20:36:29 ----D---- C:\WINDOWS\Microsoft.NET 2014-09-15 20:29:58 ----RD---- C:\WINDOWS\assembly 2014-09-15 20:06:39 ----D---- C:\WINDOWS\Inf 2014-09-15 20:04:20 ----D---- C:\WINDOWS\CbsTemp 2014-09-15 19:56:03 ----D---- C:\WINDOWS\debug 2014-09-15 19:41:50 ----D---- C:\WINDOWS\SoftwareDistribution 2014-09-15 19:41:50 ----D---- C:\Windows 2014-09-15 18:48:17 ----SHD---- C:\System Volume Information 2014-09-15 18:30:09 ----D---- C:\Users\Jolanda\AppData\Roaming\Dropbox 2014-09-15 18:29:36 ----D---- C:\Users\Jolanda\AppData\Roaming\newnext.me 2014-09-15 18:27:43 ----D---- C:\Program Files (x86)\McAfee 2014-09-15 17:25:33 ----D---- C:\WINDOWS\system32\catroot2 2014-09-13 15:40:20 ----D---- C:\WINDOWS\system32\catroot 2014-09-13 15:36:58 ----D---- C:\WINDOWS\SysWOW64 2014-09-12 13:55:15 ----RD---- C:\WINDOWS\System32 2014-09-12 13:55:14 ----SD---- C:\WINDOWS\system32\CompatTel 2014-09-12 13:55:12 ----D---- C:\WINDOWS\SYSWOW64\nl-NL 2014-09-12 13:55:12 ----D---- C:\WINDOWS\system32\nl-NL 2014-09-12 13:55:12 ----D---- C:\Program Files\Internet Explorer 2014-09-12 13:55:12 ----D---- C:\Program Files (x86)\Internet Explorer 2014-09-12 13:38:49 ----HD---- C:\Program Files\WindowsApps 2014-09-12 13:38:49 ----D---- C:\WINDOWS\AppReadiness 2014-09-12 13:36:18 ----D---- C:\WINDOWS\system32\DriverStore 2014-09-10 12:53:26 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll 2014-09-10 12:53:25 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll 2014-09-10 12:53:10 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll 2014-09-10 12:53:10 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll 2014-09-10 12:53:10 ----A---- C:\WINDOWS\system32\ieetwcollectorres.dll 2014-09-10 12:53:10 ----A---- C:\WINDOWS\system32\ieetwcollector.exe 2014-09-10 12:53:09 ----A---- C:\WINDOWS\system32\ieUnatt.exe 2014-09-10 12:53:08 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe 2014-09-10 12:53:07 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll 2014-09-10 12:53:07 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll 2014-09-10 12:53:06 ----A---- C:\WINDOWS\system32\iesetup.dll 2014-09-10 12:53:06 ----A---- C:\WINDOWS\system32\iernonce.dll 2014-09-10 12:52:59 ----A---- C:\WINDOWS\system32\msrating.dll 2014-09-10 12:52:57 ----A---- C:\WINDOWS\system32\jsproxy.dll 2014-09-03 20:41:53 ----D---- C:\Program Files\Google 2014-09-03 20:41:53 ----D---- C:\Program Files (x86)\Google 2014-09-03 20:39:49 ----D---- C:\ProgramData\Adobe 2014-09-03 20:39:06 ----D---- C:\Program Files (x86)\Adobe 2014-09-03 20:38:17 ----SHD---- C:\WINDOWS\Installer 2014-09-03 20:37:57 ----D---- C:\Program Files\Common Files\Adobe 2014-09-01 09:37:09 ----D---- C:\Program Files (x86)\Mozilla Firefox 2014-08-27 16:50:10 ----D---- C:\Program Files\Common Files\McAfee 2014-08-26 22:00:55 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2014-08-26 19:33:28 ----D---- C:\WINDOWS\system32\Tasks 2014-08-26 15:11:56 ----D---- C:\Users\Jolanda\AppData\Roaming\Mozilla 2014-08-25 18:52:30 ----D---- C:\ProgramData\EPSON 2014-08-25 18:52:16 ----HD---- C:\Program Files (x86)\InstallShield Installation Information 2014-08-25 18:52:16 ----D---- C:\Program Files (x86)\EPSON Software 2014-08-25 18:49:42 ----D---- C:\Program Files (x86)\epson 2014-08-25 18:46:25 ----D---- C:\WINDOWS\Tasks 2014-08-25 18:23:02 ----D---- C:\WINDOWS\twain_32 2014-08-25 18:18:04 ----D---- C:\WINDOWS\system32\FxsTmp 2014-08-24 20:24:14 ----D---- C:\ProgramData\regid.1991-06.com.microsoft 2014-08-24 20:20:27 ----D---- C:\Program Files\Microsoft Office 15 2014-08-22 09:30:09 ----D---- C:\Program Files (x86)\Common Files 2014-08-21 15:46:36 ----D---- C:\WINDOWS\system32\MRT 2014-08-21 15:44:06 ----N---- C:\WINDOWS\system32\MRT.exe 2014-08-18 19:27:28 ----D---- C:\Users\Jolanda\AppData\Roaming\Azureus 2014-08-18 19:27:18 ----D---- C:\WINDOWS\Minidump 2014-08-18 13:17:55 ----RD---- C:\WINDOWS\ToastData 2014-08-18 13:17:55 ----D---- C:\WINDOWS\system32\migration 2014-08-18 13:17:54 ----D---- C:\WINDOWS\SYSWOW64\wbem 2014-08-18 13:17:54 ----D---- C:\WINDOWS\SYSWOW64\migration 2014-08-18 13:17:54 ----D---- C:\WINDOWS\MediaViewer 2014-08-18 13:17:53 ----D---- C:\WINDOWS\system32\en-US 2014-08-18 13:17:51 ----D---- C:\WINDOWS\system32\wbem 2014-08-18 13:17:48 ----D---- C:\WINDOWS\FileManager 2014-08-18 13:17:48 ----D---- C:\WINDOWS\Camera 2014-08-18 13:17:45 ----D---- C:\WINDOWS\PolicyDefinitions 2014-08-17 20:05:47 ----A---- C:\WINDOWS\system32\mfps.dll ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2012-11-30 80552] R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2012-11-30 26280] R0 LPCFilter;@oem5.inf,%LPCFilter.SvcDesc%;LPC Lower Filter Driver; C:\WINDOWS\System32\drivers\LPCFilter.sys [2012-07-19 35672] R0 mfehidk;McAfee Inc. mfehidk; C:\WINDOWS\system32\drivers\mfehidk.sys [2014-06-20 786296] R0 mfewfpk;McAfee Inc. mfewfpk; C:\WINDOWS\system32\drivers\mfewfpk.sys [2014-06-20 348552] R0 TVALZ;@oem9.inf,%TVALZ.SvcDesc%;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\WINDOWS\System32\drivers\TVALZ_O.SYS [2012-07-26 32832] R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680] R2 McPvDrv;McPvDrv Driver; C:\WINDOWS\system32\drivers\McPvDrv.sys [2013-09-09 74560] R2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver; C:\WINDOWS\system32\DRIVERS\TVALZFL.sys [2012-07-22 16768] R3 AmdAS4;@oem13.inf,%AmdAS4.SVCDESC%;AmdAS4 service; C:\WINDOWS\System32\drivers\AmdAS4.sys [2013-02-07 17504] R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2013-12-13 13207552] R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2013-12-13 626176] R3 athr;@oem45.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athwbx.sys [2013-10-24 3858944] R3 AtiHDAudioService;@oem20.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdW86.sys [2013-05-10 130048] R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240] R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator-service; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248] R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2013-12-04 226304] R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth-apparaat (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2013-08-22 118272] R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;USB-stuurprogramma voor Bluetooth-radio; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 81920] R3 CeKbFilter;CeKbFilter; C:\WINDOWS\system32\DRIVERS\CeKbFilter.sys [2013-08-28 20312] R3 cfwids;McAfee Inc. cfwids; C:\WINDOWS\system32\drivers\cfwids.sys [2014-06-20 72128] R3 ETD;@oem21.inf,%PS2.DeviceDesc%;ELAN PS/2_SMBus Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2013-08-07 377160] R3 ETDSMBus;ETDSMBus; C:\WINDOWS\system32\DRIVERS\ETDSMBus.sys [2013-08-07 23368] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-07-11 3487320] R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2014-05-12 25816] R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2014-09-16 122584] R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2014-05-12 64216] R3 mfeapfk;McAfee Inc. mfeapfk; C:\WINDOWS\system32\drivers\mfeapfk.sys [2014-06-20 181704] R3 mfeavfk;McAfee Inc. mfeavfk; C:\WINDOWS\system32\drivers\mfeavfk.sys [2014-06-20 313544] R3 mfefirek;McAfee Inc. mfefirek; C:\WINDOWS\system32\drivers\mfefirek.sys [2014-06-20 523792] R3 mfencbdc;McAfee Inc. mfencbdc; C:\WINDOWS\system32\DRIVERS\mfencbdc.sys [2014-07-24 444720] R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-01-27 167424] R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT-stuurprogramma; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360] R3 Thotkey;@oem6.inf,%Thotkey%;Toshiba Hotkey Driver; C:\WINDOWS\System32\drivers\Thotkey.sys [2013-05-15 31120] R3 tosrfec;@oem14.inf,%busenum.SVCDESC%;Bluetooth ACPI; C:\WINDOWS\System32\drivers\tosrfec.sys [2013-11-01 27032] R3 usbfilter;AMD USB Filter Driver; C:\WINDOWS\system32\DRIVERS\usbfilter.sys [2012-08-28 58536] R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB-videoapparaat (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224] R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912] S0 mfeelamk;McAfee Inc. mfeelamk; C:\WINDOWS\system32\drivers\mfeelamk.sys [2014-06-20 70600] S2 APXACC;AppEx Networks Accelerator LWF; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [2013-04-18 219360] S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Stuurprogramma voor Bluetooth-poort; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-04-11 1200128] S3 dg_ssudbus;@oem15.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2013-12-26 108856] S3 GeneStor;@oem4.inf,%GENESTOR.SvcDesc%;Genesys Logic Storage Driver; C:\WINDOWS\System32\drivers\GeneStor.sys [2013-07-10 99560] S3 HipShieldK;McAfee Inc. HipShieldK; C:\WINDOWS\system32\drivers\HipShieldK.sys [2013-09-23 197704] S3 mfencrk;McAfee Inc. mfencrk; C:\WINDOWS\system32\DRIVERS\mfencrk.sys [2014-07-24 96592] S3 ssudmdm;@oem16.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2013-12-26 206136] S3 TDCMDPST;TOSHIBA Writing Engine Filter Driver; C:\WINDOWS\system32\DRIVERS\tdcmdpst.sys [2012-07-25 31184] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 892cc6a3;Performance Optimizer; C:\WINDOWS\syswow64\rundll32.exe [2013-08-22 49664] R2 AdaptiveSleepService;AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [2013-07-05 103424] R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432] R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2013-12-13 239616] R2 ClickToRunSvc;Microsoft Office ClickToRun Service; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2014-08-01 2369720] R2 dts_apo_service;DTS APO Service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [2013-07-12 16720] R2 EPSON_PM_RPCV4_04;EPSON V3 Service4(04); C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE [2012-02-21 151648] R2 EpsonScanSvc;Epson Scanner Service; C:\WINDOWS\system32\EscSvc64.exe [2012-05-17 144560] R2 HomeNetSvc;McAfee Home Network; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928] R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-05-12 1809720] R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2014-05-12 860472] R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928] R2 McAPExe;McAfee AP Service; C:\Program Files\McAfee\MSC\McAPExe.exe [2014-04-25 178528] R2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928] R2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928] R2 mcpltsvc;McAfee Platform Services; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928] R2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928] R2 mfecore;McAfee Anti-Malware Core; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [2014-07-24 1041192] R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2014-06-20 219752] R2 mfevtp;McAfee Validation Trust Protection Service; C:\WINDOWS\system32\mfevtps.exe [2014-06-20 189912] R2 MSK80Service;McAfee Anti-Spam Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928] R2 NAUpdate;Nero Update; C:\Program Files (x86)\Nero\Update\NASvc.exe [2012-07-14 769432] R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\Windows\system32\TODDSrv.exe [2009-07-28 140632] R2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service; C:\Program Files\TOSHIBA\Teco\TecoService.exe [2013-06-27 327520] R3 TemproMonitoringService;TEMPRO Service; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [2013-07-18 116088] R3 TMachInfo;TMachInfo; C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2013-03-19 53864] R3 TPCHSrv;TPCH Service; C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe [2013-05-29 447840] S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-22 116648] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-09 267440] S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696] S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-22 116648] S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [2014-04-09 289256] S3 McODS;McAfee Scanner; C:\Program Files\McAfee\VirusScan\mcods.exe [2014-06-12 603424] S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2013-12-04 150600] -----------------EOF-----------------