Logfile of random's system information tool 1.10 (written by random/random) Run by nick at 2014-09-30 10:51:54 Microsoft Windows 7 Home Premium Service Pack 1 System drive C: has 54 GB (34%) free of 157 GB Total RAM: 8143 MB (64% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 10:52:35, on 30/09/2014 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v11.0 (11.00.9600.17280) Boot mode: Normal Running processes: C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PskSvc.exe C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\TPSrvWow.exe C:\PROGRAM FILES (X86)\PANDA SECURITY\PANDA GLOBAL PROTECTION 2014\WebProxy.exe C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe C:\Users\nick\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PsCtrls.exe C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PavFnSvr.exe C:\Program Files (x86)\Common Files\Panda Security\PavShld\pavprsrv.exe C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\pavsrvx86.exe C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\AVENGINE.EXE C:\Windows\SysWOW64\PnkBstrA.exe c:\program files (x86)\panda security\panda global protection 2014\firewall\PSHOST.EXE C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PsImSvc.exe C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe C:\Program Files (x86)\Razer\Mamba\RazerTray.exe C:\Program Files (x86)\Razer\Mamba\RazerMambaSysTray.exe C:\Program Files (x86)\Logitech\G35\G35.exe C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\ApVxdWin.exe C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe C:\Program Files (x86)\IObit\Advanced SystemCare 7\RealTimeProtector.exe C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\SRVLOAD.EXE C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PavBckPT.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files\trend micro\nick.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=C:\Windows\SysWOW64\userinit.exe, O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Ads Removal - {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} - C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" O4 - HKLM\..\Run: [Razer Mamba Driver] C:\Program Files (x86)\Razer\Mamba\RazerTray.exe O4 - HKLM\..\Run: [Razer Mamba Elite Driver] C:\Program Files (x86)\Razer\Mamba\RazerMambaSysTray.exe O4 - HKLM\..\Run: [Logitech G35] C:\Program Files (x86)\Logitech\G35\G35.exe O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe" O4 - HKLM\..\Run: [RIMBBLaunchAgent.exe] C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe O4 - HKLM\..\Run: [Live Update] C:\Program Files (x86)\MSI\Live Update\StartLiveUpdate.exe /REMINDER O4 - HKLM\..\Run: [Super Charger] C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe O4 - HKLM\..\Run: [THX Audio Control Panel] "C:\Program Files (x86)\Creative\THX TruStudio Pro\THXAudioCP\THXAudio.exe" /r O4 - HKLM\..\Run: [UpdReg] C:\Windows\UpdReg.EXE O4 - HKLM\..\Run: [ControlCenterCount] C:\Program Files (x86)\MSI\ControlCenter\ControlCenterCount.exe O4 - HKLM\..\Run: [Fast Boot] C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe O4 - HKLM\..\Run: [APVXDWIN] "C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\APVXDWIN.EXE" /s O4 - HKLM\..\Run: [SCANINICIO] "C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\Inicio.exe" O4 - HKLM\..\Run: [IObit Malware Fighter] "C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe" /autostart O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\nick\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" O4 - HKCU\..\Run: [LSI] C:\Program Files (x86)\LSI\LolSummonerInfo.exe O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKCU\..\Run: [Advanced SystemCare 7] "C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - Global Startup: ISCTSystray.lnk = C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - Trusted Zone: *.clonewarsadventures.com O15 - Trusted Zone: *.freerealms.com O15 - Trusted Zone: *.soe.com O15 - Trusted Zone: *.sony.com O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Advanced SystemCare Service 7 (AdvancedSystemCareService7) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe O23 - Service: BlackBerry Device Manager (Blackberry Device Manager) - Research In Motion Limited - C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Windows\system32\EasyAntiCheat.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: IMF Service (IMFservice) - IObit - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe O23 - Service: Intel(R) Update Manager (iumsvc) - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: MSI_FastBoot - MSI - C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe O23 - Service: MSI_LiveUpdate_Service - Micro-Star International - C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe O23 - Service: MSI_SuperCharger - MSI - C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: Panda Software Controller - Panda Security, S.L. - C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PsCtrls.exe O23 - Service: Panda Function Service (PAVFNSVR) - Unknown owner - C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PavFnSvr.exe O23 - Service: Panda Process Protection Service (PavPrSrv) - Unknown owner - C:\Program Files (x86)\Common Files\Panda Security\PavShld\pavprsrv.exe O23 - Service: Panda On-Access Anti-Malware Service (PAVSRV) - Panda Security, S.L. - C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\pavsrvx86.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Panda Host Service (PSHost) - Unknown owner - c:\program files (x86)\panda security\panda global protection 2014\firewall\PSHOST.EXE O23 - Service: Panda IManager Service (PSIMSVC) - Panda Security S.L. - C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PsImSvc.exe O23 - Service: Panda PSK service (PskSvcRetail) - Panda Security, S.L. - C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PskSvc.exe O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: Panda TPSrv (TPSrv) - Panda Security, S.L. - C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\TPSrvWow.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 17978 bytes ======Listing Processes====== \SystemRoot\System32\smss.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 wininit.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 C:\Windows\system32\services.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch winlogon.exe "C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe" "C:\Windows\system32\nvvsvc.exe" "C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe" C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k GPSvcGroup C:\Windows\system32\svchost.exe -k NetworkService "C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PskSvc.exe" "C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe" "C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\TPSrvWow.exe" C:\Windows\system32\nvvsvc.exe -session -first "C:\PROGRAM FILES (X86)\PANDA SECURITY\PANDA GLOBAL PROTECTION 2014\WebProxy.exe" oso_XGCGLR C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork "C:\Windows\system32\Dwm.exe" C:\Windows\Explorer.EXE C:\Windows\System32\spoolsv.exe taskeng.exe {E74514E1-B966-4E08-A1DB-04870301FDE5} "taskhost.exe" "C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe" "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" taskeng.exe {8B10C36B-49D5-458F-A136-F3CE3D9B1542} "C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe" "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" "C:\Windows\System32\rundll32.exe" C:\Windows\system32\THXCfg64.dll,RunDLLEntry THXCfg64 "C:\Users\nick\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" C:\Windows\system32\svchost.exe -k apphost "C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service "C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation "C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe" "C:\Program Files\Intel\iCLS Client\HeciServer.exe" "C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe" "C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe" "C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe" "C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe" "C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe" C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe "C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe" "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" "C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1 "C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PsCtrls.exe" "C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PavFnSvr.exe" "C:\Program Files (x86)\Common Files\Panda Security\PavShld\pavprsrv.exe" "C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\pavsrvx86.exe" "C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\AVENGINE.EXE" C:\Windows\SysWOW64\PnkBstrA.exe "c:\program files (x86)\panda security\panda global protection 2014\firewall\PSHOST.EXE" "C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PsImSvc.exe" C:\Windows\system32\svchost.exe -k iissvcs "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE" C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\wbem\wmiprvse.exe "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s WLIDSvcM.exe 4188 "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 04528360-acbb-4215-b6c9-ba7364a5849e 1 "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp \??\C:\Windows\system32\conhost.exe "1782215224-555615369-13217679514335587891591726982-206637888315884690641279581541 \??\C:\Windows\system32\conhost.exe "-11366151061428535084-477237841118194191-4836231981323253197-244345196-170911157 C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\system32\SearchIndexer.exe /Embedding "C:\Program Files\Windows Media Player\wmpnetwk.exe" C:\Windows\System32\svchost.exe -k LocalServicePeerNet "C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" "C:\Program Files (x86)\Razer\Mamba\RazerTray.exe" "C:\Program Files (x86)\Razer\Mamba\RazerMambaSysTray.exe" "C:\Program Files (x86)\Logitech\G35\G35.exe" "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe" "C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe" "C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe" "C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\ApVxdWin.exe" /s "C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe" "C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe" /systemstart /autostart C:\Windows\servicing\TrustedInstaller.exe "C:\Program Files (x86)\IObit\Advanced SystemCare 7\RealTimeProtector.exe" /RunCurUs "C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\SRVLOAD.EXE" "C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PavBckPT.exe" C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\ "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe" "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe" C:\Windows\system32\sppsvc.exe C:\Windows\System32\svchost.exe -k secsvcs C:\Windows\System32\svchost.exe -k swprv "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7412.0.884836338\1696804703" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,17,44 --gpu-vendor-id=0x10de --gpu-device-id=0x1189 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.4411 --ignored=" --type=renderer " /prefetch:822062411 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group8 pct:10h stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_39/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="7412.2.1764293028\1509282748" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group8 pct:10h stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_39/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="7412.3.223340072\576501991" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\fopdddcinljmpmioaklghcalngfhbaen\1.0.0_0\dll/NPAdbExternal.dll" --lang=nl --channel="7412.6.1015766698\518712971" /prefetch:-390060480 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group8 pct:10h stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_39/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="7412.7.1337221781\2115710382" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group8 pct:10h stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_39/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="7412.10.993282982\383238854" /prefetch:673131151 "C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "C:\Windows\system32\SearchFilterHost.exe" 0 532 536 544 65536 540 "C:\Users\nick\Downloads\RSITx64 (1).exe" ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe C:\Windows\tasks\Basic clean-up.job - C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PlaTasks.exe /LimpiezaProgramada:3610478706107 C:\Windows\tasks\Basis-opruiming.job - C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PlaTasks.exe /LimpiezaProgramada:3610792242359 C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}] ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [2014-06-20 2471744] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-06-04 553384] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 529280] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14 2117216] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-06-04 211880] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-05-07 462760] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 441216] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F}] Ads Removal - C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll [2014-06-11 464720] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}] Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2012-03-09 393600] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}] Advanced SystemCare Browser Protection - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL [2014-02-20 669504] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-05-07 171944] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2012-06-12 6548112] "ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2014-09-17 2799784] "NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-09-17 2460488] "THXCfg64"=C:\Windows\system32\THXCfg64.dll [2011-05-13 26624] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Spotify Web Helper"=C:\Users\nick\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-09-18 1245752] "LSI"=C:\Program Files (x86)\LSI\LolSummonerInfo.exe [2014-03-15 17013760] "Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-07-24 21650016] "Advanced SystemCare 7"=C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2014-04-21 2295584] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176] "USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2013-02-22 292088] "Razer Mamba Driver"=C:\Program Files (x86)\Razer\Mamba\RazerTray.exe [2009-12-15 3278728] "Razer Mamba Elite Driver"=C:\Program Files (x86)\Razer\Mamba\RazerMambaSysTray.exe [2011-11-25 973720] "Logitech G35"=C:\Program Files (x86)\Logitech\G35\G35.exe [2010-10-05 1811800] "Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2014-06-23 585560] "RIMBBLaunchAgent.exe"=C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe [2013-01-17 267792] "Live Update"=C:\Program Files (x86)\MSI\Live Update\StartLiveUpdate.exe [2014-03-28 579056] "Super Charger"=C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe [2014-04-08 1047536] "THX Audio Control Panel"=C:\Program Files (x86)\Creative\THX TruStudio Pro\THXAudioCP\THXAudio.exe [2011-08-29 1517056] "UpdReg"=C:\Windows\UpdReg.EXE [2000-05-11 90112] "ControlCenterCount"=C:\Program Files (x86)\MSI\ControlCenter\ControlCenterCount.exe [2012-03-26 872448] "Fast Boot"=C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe [2012-09-19 764472] "APVXDWIN"=C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\APVXDWIN.EXE [2013-09-30 1062880] "SCANINICIO"=C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\Inicio.exe [2013-09-30 71648] "IObit Malware Fighter"=C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [2014-05-23 1601856] "LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2014-09-04 3802448] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup ISCTSystray.lnk - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avldr] C:\Windows\SYSTEM32\avldr64.dll [2010-03-24 64768] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PskSvcRetail] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoActiveDesktop"=1 "NoActiveDesktopChanges"=1 "ForceActiveDesktopOn"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.i420"=lvcod64.dll "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "aux1"=wdmaud.drv "MSVideo"=vfwwdm32.dll "MSVideo8"=VfWWDM32.dll "wave4"=wdmaud.drv "midi4"=wdmaud.drv "mixer4"=wdmaud.drv "aux2"=wdmaud.drv "wave5"=wdmaud.drv "midi5"=wdmaud.drv "mixer5"=wdmaud.drv "aux3"=wdmaud.drv "wave6"=wdmaud.drv "mixer6"=wdmaud.drv "wave7"=wdmaud.drv "mixer7"=wdmaud.drv "wave8"=wdmaud.drv "mixer8"=wdmaud.drv "wave9"=wdmaud.drv "mixer9"=wdmaud.drv "midi6"=wdmaud.drv "aux4"=wdmaud.drv "midi7"=wdmaud.drv "aux5"=wdmaud.drv "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave3"=wdmaud.drv "midi3"=wdmaud.drv "mixer3"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\PROGRA~2\PANDAS~1\PANDAG~1\PAVSCRIP.EXE "%1" %* .vbs - open - C:\PROGRA~2\PANDAS~1\PANDAG~1\PAVSCRIP.EXE "%1" %* ======List of files/folders created in the last 1 month====== 2014-09-30 10:51:54 ----D---- C:\rsit 2014-09-30 10:51:54 ----D---- C:\Program Files\trend micro 2014-09-29 19:43:55 ----D---- C:\Users\nick\AppData\Roaming\.mono 2014-09-29 19:35:36 ----A---- C:\Windows\SYSWOW64\EasyAntiCheat.exe 2014-09-28 11:06:06 ----D---- C:\Program Files (x86)\AGEIA Technologies 2014-09-28 11:05:03 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe 2014-09-28 11:03:30 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll 2014-09-28 11:03:30 ----A---- C:\Windows\SYSWOW64\nvopencl.dll 2014-09-28 11:03:30 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll 2014-09-28 11:03:30 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll 2014-09-28 11:03:30 ----A---- C:\Windows\SYSWOW64\nvinit.dll 2014-09-28 11:03:30 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll 2014-09-28 11:03:30 ----A---- C:\Windows\SYSWOW64\NvIFR.dll 2014-09-28 11:03:30 ----A---- C:\Windows\SYSWOW64\NvFBC.dll 2014-09-28 11:03:30 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll 2014-09-28 11:03:30 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll 2014-09-28 11:03:30 ----A---- C:\Windows\SYSWOW64\nvcuda.dll 2014-09-28 11:03:30 ----A---- C:\Windows\system32\nvopencl.dll 2014-09-28 11:03:30 ----A---- C:\Windows\system32\nvoglv64.dll 2014-09-28 11:03:30 ----A---- C:\Windows\system32\nvoglshim64.dll 2014-09-28 11:03:30 ----A---- C:\Windows\system32\nvinitx.dll 2014-09-28 11:03:30 ----A---- C:\Windows\system32\NvIFROpenGL.dll 2014-09-28 11:03:30 ----A---- C:\Windows\system32\NvIFR64.dll 2014-09-28 11:03:30 ----A---- C:\Windows\system32\nvhdap64.dll 2014-09-28 11:03:30 ----A---- C:\Windows\system32\NvFBC64.dll 2014-09-28 11:03:30 ----A---- C:\Windows\system32\nvEncodeAPI64.dll 2014-09-28 11:03:30 ----A---- C:\Windows\system32\nvdispgenco6434411.dll 2014-09-28 11:03:30 ----A---- C:\Windows\system32\nvdispco6434411.dll 2014-09-28 11:03:30 ----A---- C:\Windows\system32\nvd3dumx.dll 2014-09-28 11:03:30 ----A---- C:\Windows\system32\nvcuvid.dll 2014-09-28 11:03:30 ----A---- C:\Windows\system32\nvcuda.dll 2014-09-28 11:03:30 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys 2014-09-28 11:03:30 ----A---- C:\Windows\system32\drivers\nvhda64v.sys 2014-09-28 11:03:29 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll 2014-09-28 11:03:29 ----A---- C:\Windows\system32\nvcompiler.dll 2014-09-28 10:54:58 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll 2014-09-28 10:54:58 ----A---- C:\Windows\system32\drivers\nvvad64v.sys 2014-09-27 16:08:22 ----D---- C:\Program Files (x86)\Steam 2014-09-23 21:13:44 ----A---- C:\Windows\SYSWOW64\tzres.dll 2014-09-23 21:13:44 ----A---- C:\Windows\system32\tzres.dll 2014-09-11 03:03:28 ----A---- C:\Windows\system32\ieui.dll 2014-09-11 03:03:27 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll 2014-09-11 03:03:27 ----A---- C:\Windows\SYSWOW64\ieui.dll 2014-09-11 03:03:26 ----A---- C:\Windows\SYSWOW64\vbscript.dll 2014-09-11 03:03:26 ----A---- C:\Windows\SYSWOW64\msrating.dll 2014-09-11 03:03:26 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe 2014-09-11 03:03:26 ----A---- C:\Windows\SYSWOW64\dxtrans.dll 2014-09-11 03:03:26 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll 2014-09-11 03:03:26 ----A---- C:\Windows\system32\vbscript.dll 2014-09-11 03:03:26 ----A---- C:\Windows\system32\msrating.dll 2014-09-11 03:03:26 ----A---- C:\Windows\system32\mshtmled.dll 2014-09-11 03:03:26 ----A---- C:\Windows\system32\MshtmlDac.dll 2014-09-11 03:03:26 ----A---- C:\Windows\system32\jscript9diag.dll 2014-09-11 03:03:26 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-09-11 03:03:26 ----A---- C:\Windows\system32\ieUnatt.exe 2014-09-11 03:03:26 ----A---- C:\Windows\system32\iernonce.dll 2014-09-11 03:03:26 ----A---- C:\Windows\system32\ieetwcollectorres.dll 2014-09-11 03:03:26 ----A---- C:\Windows\system32\dxtrans.dll 2014-09-11 03:03:26 ----A---- C:\Windows\system32\dxtmsft.dll 2014-09-11 03:03:25 ----A---- C:\Windows\SYSWOW64\mshtmled.dll 2014-09-11 03:03:25 ----A---- C:\Windows\SYSWOW64\msfeeds.dll 2014-09-11 03:03:25 ----A---- C:\Windows\SYSWOW64\jsproxy.dll 2014-09-11 03:03:25 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll 2014-09-11 03:03:25 ----A---- C:\Windows\SYSWOW64\iesetup.dll 2014-09-11 03:03:25 ----A---- C:\Windows\SYSWOW64\iernonce.dll 2014-09-11 03:03:25 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll 2014-09-11 03:03:25 ----A---- C:\Windows\system32\msfeeds.dll 2014-09-11 03:03:25 ----A---- C:\Windows\system32\jsproxy.dll 2014-09-11 03:03:25 ----A---- C:\Windows\system32\iesetup.dll 2014-09-11 03:03:25 ----A---- C:\Windows\system32\iedkcs32.dll 2014-09-11 03:03:25 ----A---- C:\Windows\system32\ie4uinit.exe 2014-09-11 03:03:24 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll 2014-09-11 03:03:24 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll 2014-09-11 03:03:24 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll 2014-09-11 03:03:24 ----A---- C:\Windows\system32\mshtmlmedia.dll 2014-09-11 03:03:24 ----A---- C:\Windows\system32\mshtml.dll 2014-09-11 03:03:24 ----A---- C:\Windows\system32\ieetwproxystub.dll 2014-09-11 03:03:24 ----A---- C:\Windows\system32\ieapfltr.dll 2014-09-11 03:03:23 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll 2014-09-11 03:03:23 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe 2014-09-11 03:03:23 ----A---- C:\Windows\system32\ieetwcollector.exe 2014-09-11 03:03:22 ----A---- C:\Windows\SYSWOW64\wininet.dll 2014-09-11 03:03:22 ----A---- C:\Windows\SYSWOW64\urlmon.dll 2014-09-11 03:03:22 ----A---- C:\Windows\SYSWOW64\jscript9.dll 2014-09-11 03:03:22 ----A---- C:\Windows\SYSWOW64\iertutil.dll 2014-09-11 03:03:22 ----A---- C:\Windows\system32\wininet.dll 2014-09-11 03:03:22 ----A---- C:\Windows\system32\jscript9.dll 2014-09-11 03:03:22 ----A---- C:\Windows\system32\iertutil.dll 2014-09-11 03:03:21 ----A---- C:\Windows\SYSWOW64\mshtml.dll 2014-09-11 03:03:21 ----A---- C:\Windows\system32\urlmon.dll 2014-09-11 03:03:20 ----A---- C:\Windows\SYSWOW64\ieframe.dll 2014-09-11 03:03:20 ----A---- C:\Windows\system32\ieframe.dll 2014-09-11 03:00:23 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll 2014-09-11 03:00:23 ----A---- C:\Windows\system32\msmpeg2vdec.dll 2014-09-10 13:22:15 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll 2014-09-10 13:22:15 ----A---- C:\Windows\system32\TSWorkspace.dll 2014-09-10 13:22:09 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll 2014-09-10 13:22:09 ----A---- C:\Windows\system32\d3d10warp.dll 2014-09-10 13:22:06 ----A---- C:\Windows\SYSWOW64\sspicli.dll 2014-09-10 13:22:06 ----A---- C:\Windows\SYSWOW64\secur32.dll 2014-09-10 13:22:06 ----A---- C:\Windows\SYSWOW64\kerberos.dll 2014-09-10 13:22:06 ----A---- C:\Windows\system32\lsasrv.dll 2014-09-10 13:22:06 ----A---- C:\Windows\system32\kerberos.dll 2014-09-10 13:22:05 ----A---- C:\Windows\system32\aepdu.dll 2014-09-10 13:22:05 ----A---- C:\Windows\system32\aeinv.dll 2014-09-05 11:27:18 ----D---- C:\Program Files (x86)\LogMeIn Hamachi 2014-09-01 10:22:58 ----A---- C:\Windows\system32\RtNicProp64.dll 2014-09-01 10:22:58 ----A---- C:\Windows\system32\drivers\Rt64win7.sys ======List of files/folders modified in the last 1 month====== 2014-09-30 10:51:58 ----D---- C:\Windows\Temp 2014-09-30 10:51:55 ----D---- C:\Windows\system32\drivers 2014-09-30 10:51:54 ----RD---- C:\Program Files 2014-09-30 10:50:00 ----D---- C:\Windows\System32 2014-09-30 10:50:00 ----D---- C:\Windows\inf 2014-09-30 10:50:00 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-09-30 10:48:45 ----SHD---- C:\System Volume Information 2014-09-30 10:48:32 ----D---- C:\Users\nick\AppData\Roaming\Skype 2014-09-30 10:46:55 ----D---- C:\Windows\SoftwareDistribution 2014-09-30 10:45:34 ----D---- C:\Windows\system32\drivers\etc 2014-09-30 10:44:28 ----D---- C:\Windows\system32\config 2014-09-30 10:44:27 ----D---- C:\Windows\system32\catroot2 2014-09-30 10:44:03 ----D---- C:\Windows\debug 2014-09-30 10:44:03 ----D---- C:\Windows 2014-09-30 10:44:03 ----D---- C:\ProgramData\NVIDIA 2014-09-29 19:39:32 ----D---- C:\Users\nick\AppData\Roaming\Spotify 2014-09-29 19:35:36 ----D---- C:\Windows\SysWOW64 2014-09-29 12:01:37 ----D---- C:\ProgramData\ProductData 2014-09-28 11:06:08 ----SHD---- C:\Windows\Installer 2014-09-28 11:06:08 ----SHD---- C:\Config.Msi 2014-09-28 11:06:06 ----RD---- C:\Program Files (x86) 2014-09-28 11:05:10 ----D---- C:\Program Files (x86)\NVIDIA Corporation 2014-09-28 11:05:01 ----D---- C:\Windows\system32\DriverStore 2014-09-28 11:05:01 ----D---- C:\Windows\system32\catroot 2014-09-28 10:55:35 ----D---- C:\Program Files\NVIDIA Corporation 2014-09-28 10:55:11 ----D---- C:\Windows\Logs 2014-09-28 09:14:47 ----D---- C:\Users\nick\AppData\Roaming\BitTorrent 2014-09-25 09:08:09 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe 2014-09-24 19:52:12 ----D---- C:\Windows\rescache 2014-09-24 03:00:27 ----D---- C:\Windows\winsxs 2014-09-24 03:00:26 ----D---- C:\Windows\SYSWOW64\nl-NL 2014-09-24 03:00:26 ----D---- C:\Windows\system32\nl-NL 2014-09-23 08:13:41 ----D---- C:\ProgramData\Package Cache 2014-09-22 01:50:32 ----D---- C:\Users\nick\AppData\Roaming\vlc 2014-09-19 11:51:41 ----A---- C:\IFRToolLog.txt 2014-09-17 06:51:20 ----A---- C:\Windows\system32\nvhdagenco6420103.dll 2014-09-17 04:13:36 ----A---- C:\Windows\SYSWOW64\nvspcap.dll 2014-09-17 04:13:36 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll 2014-09-17 04:12:40 ----A---- C:\Windows\system32\nvspcap64.dll 2014-09-17 04:12:39 ----A---- C:\Windows\system32\nvspbridge64.dll 2014-09-15 09:06:02 ----N---- C:\Windows\system32\MpSigStub.exe 2014-09-14 01:48:03 ----A---- C:\Windows\SYSWOW64\OpenCL.dll 2014-09-14 01:48:03 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll 2014-09-14 01:48:03 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll 2014-09-14 01:48:03 ----A---- C:\Windows\SYSWOW64\nvapi.dll 2014-09-14 01:48:03 ----A---- C:\Windows\system32\OpenCL.dll 2014-09-14 01:48:03 ----A---- C:\Windows\system32\nvwgf2umx.dll 2014-09-14 01:48:03 ----A---- C:\Windows\system32\nvumdshimx.dll 2014-09-14 01:48:03 ----A---- C:\Windows\system32\nvapi64.dll 2014-09-13 23:53:36 ----A---- C:\Windows\system32\nvsvc64.dll 2014-09-13 23:53:36 ----A---- C:\Windows\system32\nvcpl.dll 2014-09-13 23:53:34 ----A---- C:\Windows\system32\nvvsvc.exe 2014-09-13 23:53:34 ----A---- C:\Windows\system32\nvsvcr.dll 2014-09-13 23:53:34 ----A---- C:\Windows\system32\nvshext.dll 2014-09-13 23:53:34 ----A---- C:\Windows\system32\nvmctray.dll 2014-09-11 15:41:19 ----D---- C:\Windows\Microsoft.NET 2014-09-11 15:40:58 ----RSD---- C:\Windows\assembly 2014-09-11 06:45:56 ----D---- C:\Windows\SYSWOW64\en-US 2014-09-11 06:45:56 ----D---- C:\Windows\system32\en-US 2014-09-11 06:45:56 ----D---- C:\Program Files\Internet Explorer 2014-09-11 06:45:56 ----D---- C:\Program Files (x86)\Internet Explorer 2014-09-11 03:02:58 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI 2014-09-11 03:02:37 ----D---- C:\Windows\system32\MRT 2014-09-11 03:00:39 ----A---- C:\Windows\system32\MRT.exe 2014-09-11 03:00:23 ----SD---- C:\Windows\system32\CompatTel 2014-09-04 21:14:38 ----A---- C:\Windows\system32\nvaudcap64v.dll 2014-09-01 10:22:58 ----A---- C:\Windows\system32\RTNUninst64.dll ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 iaStor;Intel RAID Controller; C:\Windows\system32\drivers\iaStor.sys [2011-11-30 568600] R0 iusb3hcs;Intel(R) USB 3.0 hostcontrollerswitch-stuurprogramma; C:\Windows\system32\drivers\iusb3hcs.sys [2013-02-22 20464] R0 pavboot;Panda boot driver; C:\Windows\system32\Drivers\pavboot64.sys [2010-06-22 30792] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888] R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2013-12-24 21184] R1 ShldFlt;Panda File Shield Driver; C:\Windows\System32\DRIVERS\ShldFlt.sys [2009-10-27 48136] R1 VBoxDrv;VirtualBox Service; C:\Windows\system32\DRIVERS\VBoxDrv.sys [2014-02-25 252704] R1 VBoxUSBMon;VirtualBox USB Monitor Driver; C:\Windows\system32\DRIVERS\VBoxUSBMon.sys [2014-02-25 126752] R2 AmFSM;AmFSM; C:\Windows\system32\DRIVERS\amm6460.sys [2012-03-26 71432] R2 APPFLT;App Filter Plugin; \??\C:\Windows\system32\Drivers\APPFLT64.SYS [2011-01-31 129096] R2 ComFiltr;Panda Anti-Dialer; \??\C:\Windows\system32\DRIVERS\COMFiltr.sys [2014-06-01 15928] R2 DSAFLT;DSA Filter Plugin; \??\C:\Windows\system32\Drivers\DSAFLT64.SYS [2009-09-25 82952] R2 FNETMON;NetMon Filter Plugin; \??\C:\Windows\system32\Drivers\fnetm64.SYS [2009-09-25 31752] R2 IDSFLT;Ids Filter Plugin; \??\C:\Windows\system32\Drivers\IDSFLT64.SYS [2010-09-09 78920] R2 NETFLTDI;Panda Net Driver [TDI Layer]; \??\C:\Windows\system32\Drivers\NETTDI64.SYS [2009-09-25 170504] R2 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2009-10-20 47632] R2 PfFilter;PfFilter; \??\C:\Program Files (x86)\IObit\Protected Folder\pffilter.sys [2013-04-03 39504] R2 RtNdPt60;Realtek NDIS Protocol Driver; C:\Windows\system32\DRIVERS\RtNdPt60.sys [2009-07-20 27136] R3 EuMusDesignVirtualAudioCableWdm;Virtual Audio Cable (WDM); C:\Windows\system32\DRIVERS\vrtaucbl.sys [2013-11-09 66728] R3 FileMonitor;FileMonitor; \??\C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [2013-03-23 23048] R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856] R3 ikbevent;Intel Upper keyboard Class Filter Driver; C:\Windows\system32\DRIVERS\ikbevent.sys [2013-08-01 21408] R3 imsevent;Intel Upper Mouse Class Filter Driver; C:\Windows\system32\DRIVERS\imsevent.sys [2013-08-01 21920] R3 INETMON;INETMON; \??\C:\Windows\System32\Drivers\INETMON.sys [2013-08-01 29088] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-06-20 3962840] R3 ISCT;Intel(R) Smart Connect Technology Device Driver; C:\Windows\system32\DRIVERS\ISCTD64.sys [2013-08-01 46568] R3 iusb3hub;Intel(R) USB 3.0 hub-stuurprogramma; C:\Windows\system32\DRIVERS\iusb3hub.sys [2013-02-22 358896] R3 iusb3xhc;Intel(R) USB 3.0 uitbreidbare hostcontroller-stuurprogramma; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2013-02-22 792560] R3 LADF_DHP2;G35 DHP2 Filter Driver; C:\Windows\system32\DRIVERS\ladfDHP2amd64.sys [2010-09-29 62168] R3 LADF_SBVM;G35 SBVM Filter Driver; C:\Windows\system32\DRIVERS\ladfSBVMamd64.sys [2010-09-29 377176] R3 LVUSBS64;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBS64.sys [2008-07-26 50072] R3 MBfilt;MBfilt; C:\Windows\system32\drivers\MBfilt64.sys [2009-11-18 32344] R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-06-20 100312] R3 NETIMFLT01060044;PANDA NDIS IM Filter Miniport v1.6.0.44; C:\Windows\system32\DRIVERS\n64i1644.sys [2010-09-01 216648] R3 NTIOLib_1_0_3;NTIOLib_1_0_3; \??\C:\Program Files (x86)\MSI\Super Charger\NTIOLib_X64.sys [2012-10-25 13368] R3 NTIOLib_1_0_4;NTIOLib_1_0_4; \??\C:\Program Files (x86)\MSI\Live Update\NTIOLib_X64.sys [2010-10-22 14136] R3 NTIOLib_FastBoot;NTIOLib_FastBoot; \??\C:\Program Files (x86)\MSI\Fast Boot\NTIOLib_X64.sys [2012-10-26 13368] R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2014-09-17 197408] R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-09-17 19272] R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-09-04 38048] R3 PavTPK.sys;PavTPK.sys; \??\C:\Windows\syswow64\PavTPK.sys [] R3 RegFilter;RegFilter; \??\C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [2013-11-19 34848] R3 RimVSerPort;RIM Virtual Serial Port v2; C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys [2012-12-10 44544] R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2009-07-14 11264] R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2014-09-01 941272] R3 rzendpt;rzendpt; C:\Windows\system32\DRIVERS\rzendpt.sys [2014-05-19 39080] R3 rzudd;Razer Mouse Driver; C:\Windows\system32\DRIVERS\rzudd.sys [2014-05-19 155816] R3 UrlFilter;UrlFilter; \??\C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [2013-11-19 23016] R3 VBoxNetFlt;VirtualBox Bridged Networking Service; C:\Windows\system32\DRIVERS\VBoxNetFlt.sys [2014-02-25 154912] S3 athr;Extensible Wireless Network Adapter Service; C:\Windows\system32\DRIVERS\athrx.sys [2011-08-31 2736640] S3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y60x64.sys [2009-06-10 281088] S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-03-09 48488] S3 lvpepf64;Volume Adapter; C:\Windows\system32\DRIVERS\lv302a64.sys [2008-07-26 15768] S3 LVRS64;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs64.sys [2008-07-26 790424] S3 MSICDSetup;MSICDSetup; \??\D:\CDriver64.sys [] S3 NTIOLib_1_0_6;NTIOLib_1_0_6; \??\C:\Program Files (x86)\Setup Files\Ms7759v1B0\NTIOLib_X64.sys [2011-01-06 11888] S3 NTIOLib_1_0_C;NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [] S3 NTIOLib_MSISMB_CC;NTIOLib_MSISMB_CC; \??\C:\Program Files (x86)\MSI\ControlCenter\Sleep\NTIOLib_X64.sys [2012-11-09 13368] S3 NvStUSB;NVIDIA Stereoscopic 3D USB driver; C:\Windows\system32\drivers\nvstusb.sys [2013-03-15 448288] S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352] S3 PID_PEPI;Logitech QuickCam IM(PID_PEPI); C:\Windows\system32\DRIVERS\LV302V64.SYS [2008-07-26 2624408] S3 Prot6Flt;Prot6Flt; C:\Windows\system32\DRIVERS\Prot6Flt.sys [] S3 PSKMAD;PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [2013-04-29 47632] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2013-04-11 19456] S3 RimUsb;BlackBerry Smartphone; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [2013-01-03 78336] S3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.2); C:\Windows\system32\DRIVERS\RtTeam60.sys [2010-04-10 50720] S3 tapoas;TAP-Win32 Adapter OAS; C:\Windows\system32\DRIVERS\tapoas.sys [2012-07-15 30720] S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2013-04-11 29696] S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-04-11 57856] S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2013-04-11 30208] S3 VBAudioHFVAIOMME;VB-Audio Hi-Fi Cable (WDM); C:\Windows\system32\DRIVERS\vbaudio_hfvaio64_win7.sys [2013-11-09 33512] S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\Windows\system32\DRIVERS\VBoxNetAdp.sys [2014-02-25 140576] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-04 64704] R2 AdvancedSystemCareService7;Advanced SystemCare Service 7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [2014-01-14 881952] R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 27136] R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176] R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520] R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2014-09-17 1148744] R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2014-09-04 2525008] R2 IMFservice;IMF Service; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [2014-05-15 342336] R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520] R2 ISCTAgent;Intel(R) Smart Connect Technology Agent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [2013-08-01 198120] R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-09-17 169432] R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [2014-08-08 377616] R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-09-17 390616] R2 MSI_FastBoot;MSI_FastBoot; C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe [2012-10-26 103992] R2 MSI_LiveUpdate_Service;MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2014-03-27 83952] R2 MSI_SuperCharger;MSI_SuperCharger; C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe [2014-03-17 162800] R2 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] R2 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-09-17 1795912] R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-09-17 19439944] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-09-13 934216] R2 Panda Software Controller;Panda Software Controller; C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PsCtrls.exe [2012-11-19 177440] R2 PAVFNSVR;Panda Function Service; C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PavFnSvr.exe [2012-09-21 202016] R2 PavPrSrv;Panda Process Protection Service; C:\Program Files (x86)\Common Files\Panda Security\PavShld\pavprsrv.exe [2008-02-04 62768] R2 PAVSRV;Panda On-Access Anti-Malware Service; C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\pavsrvx86.exe [2011-04-13 313664] R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-06-20 76152] R2 PSHost;Panda Host Service; c:\program files (x86)\panda security\panda global protection 2014\firewall\PSHOST.EXE [2009-11-26 226560] R2 PSIMSVC;Panda IManager Service; C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PsImSvc.exe [2008-06-19 108288] R2 PskSvcRetail;Panda PSK service; C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\PskSvc.exe [2010-08-16 28992] R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-09-13 411968] R2 TPSrv;Panda TPSrv; C:\Program Files (x86)\Panda Security\Panda Global Protection 2014\TPSrvWow.exe [2014-02-25 173816] R3 Blackberry Device Manager;BlackBerry Device Manager; C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe [2013-01-18 577536] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088] S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-14 116648] S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2014-05-04 2152736] S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-25 267440] S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808] S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2014-07-16 49152] S3 EasyAntiCheat;EasyAntiCheat; C:\Windows\syswow64\EasyAntiCheat.exe [2014-09-29 175136] S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-03-09 1492840] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-14 116648] S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2011-08-30 160256] S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-08-19 111616] S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376] S3 iumsvc;Intel(R) Update Manager; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28 174368] S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files (x86)\WinPcap\rpcapd.exe [2009-10-20 117264] S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-09-23 833728] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] -----------------EOF-----------------