Logfile of random's system information tool 1.10 (written by random/random) Run by Hilario at 2014-11-10 18:29:45 Microsoft® Windows Vista™ Home Premium Service Pack 2 System drive C: has 156 GB (64%) free of 245 GB Total RAM: 1982 MB (46% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 18:30:09, on 10/11/2014 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v9.00 (9.00.8112.16584) Boot mode: Normal Running processes: C:\Program Files\EagleGet\EGMonitor.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\COMODO\COMODO Internet Security\CisTray.exe C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Windows\ehome\ehtray.exe C:\Windows\system32\taskeng.exe C:\Program Files\CCleaner\CCleaner.exe C:\Program Files\SetPoint\SetPoint.exe C:\Windows\system32\wbem\unsecapp.exe C:\Windows\ehome\ehmsas.exe C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE C:\Program Files\Memeo\AutoBackup\InstantBackup.exe C:\Program Files\COMODO\COMODO Internet Security\cis.exe C:\Program Files\Opera\25.0.1614.68\opera.exe C:\Program Files\Opera\25.0.1614.68\opera_crashreporter.exe C:\Program Files\Opera\25.0.1614.68\opera.exe C:\Program Files\Opera\25.0.1614.68\opera.exe C:\Program Files\Opera\25.0.1614.68\opera.exe C:\Program Files\Opera\25.0.1614.68\opera.exe C:\Program Files\OpenOffice.org 3\program\soffice.exe C:\Program Files\OpenOffice.org 3\program\soffice.bin C:\Program Files\Opera\25.0.1614.68\opera.exe C:\Program Files\Opera\25.0.1614.68\opera.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\Hilario\Downloads\RSIT.exe C:\Program Files\trend micro\Hilario.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: bteagleget.com - {1E871FF8-029C-4732-8AA7-39E3D3872057} - C:\Program Files\EagleGet\eagleSniffer.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll O4 - HKLM\..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cistray.exe O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s O4 - HKLM\..\Run: [Memeo Instant Backup] C:\Program Files\Memeo\AutoBackup\MemeoLauncher2.exe --silent --no_ui O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR O4 - Startup: OpenOffice.org 3.4.1.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe O4 - Global Startup: SetPoint.lnk = ? O8 - Extra context menu item: Download all links with EagleGet - res://C:\Program Files\EagleGet\IEGraberBHO.dll/202 O8 - Extra context menu item: Download with EagleGet - res://C:\Program Files\EagleGet\IEGraberBHO.dll/201 O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - Trusted Zone: *.dell.com O17 - HKLM\System\CCS\Services\Tcpip\..\{FD5D0F06-3095-4DD1-AF2C-3A9FD4CD3145}: NameServer = 156.154.70.25,156.154.71.25 O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSrv.exe O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe O23 - Service: egGetSvc - Unknown owner - C:\Program Files\EagleGet\EGMonitor.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech Inc. - C:\Program Files\Common Files\Logitech\Bluetooth\LBTSERV.EXE O23 - Service: MemeoBackgroundService - Memeo - C:\Program Files\Memeo\AutoBackup\MemeoBackgroundService.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: NitroPDFReaderDriverCreatorReadSpool3 (NitroReaderDriverReadSpool3) - Nitro PDF Software - C:\Program Files\Nitro\Reader 3\NitroPDFReaderDriverService3.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe -- End of file - 5464 bytes ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler =========Mozilla firefox========= ProfilePath - C:\Users\Hilario\AppData\Roaming\Mozilla\Firefox\Profiles\soaxj3tv.default prefs.js - "browser.search.useDBForOrder" - true prefs.js - "browser.startup.homepage" - "about:home" prefs.js - "keyword.URL" - "http://us.search.yahoo.com/search?fr=ytff-comodo&p=" "{20a82645-c095-46ed-80e3-08825760534b}"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ "belgiumeid@eid.belgium.be"=C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 15.0.0.189 Plugin "Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_189.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer] "Description"=Adobe Shockwave Player "Path"=C:\Windows\system32\Adobe\Director\np32dsw_1203133.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin] "Description"=Google Earth in your browser "Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.25.2] "Description"=Java™ Deployment Toolkit "Path"=C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.25.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5] "Description"=Windows Presentation Foundation plug-in for Mozilla browsers "Path"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nitropdf.com/NitroPDF] "Description"=NitroPDF Web Browser Plugin "Path"=C:\Program Files\Nitro\Reader 3\npnitromozilla.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.0] "Description"=VLC Multimedia Plugin "Path"=I:\VLC\npvlc.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.3] "Description"=VLC Multimedia Plugin "Path"=I:\VLC\npvlc.dll C:\Users\Hilario\AppData\Roaming\Mozilla\Firefox\Profiles\soaxj3tv.default\searchplugins\ avira-safesearch.xml ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1E871FF8-029C-4732-8AA7-39E3D3872057}] EGet Class - C:\Program Files\EagleGet\eagleSniffer.dll [2014-10-03 446976] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll [2014-11-06 460712] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-11-06 172968] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2014-03-25 1225944] "RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2013-12-20 12017368] "Memeo Instant Backup"=C:\Program Files\Memeo\AutoBackup\MemeoLauncher2.exe [2011-05-04 136416] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-18 202240] "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-18 125952] "CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2014-10-29 4826904] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EagleGet] C:\Program Files\EagleGet\Eagleget.exe [2014-10-03 1777664] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Kernel and Hardware Abstraction Layer] C:\Windows\KHALMNPR.EXE [2007-01-11 101136] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Hardware Abstraction Layer] C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE [2007-01-11 101136] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Memeo Instant Backup] C:\Program Files\Memeo\AutoBackup\MemeoLauncher2.exe [2011-05-04 136416] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype] C:\Program Files\Skype\Phone\Skype.exe [2014-10-01 22066272] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] C:\Program Files\Common Files\Java\Java Update\jusched.exe [2014-10-07 507776] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup SetPoint.lnk - C:\Program Files\SetPoint\SetPoint.exe C:\Users\Hilario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup OpenOffice.org 3.4.1.lnk - C:\Program Files\OpenOffice.org 3\program\quickstart.exe [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableUIADesktopToggle"=0 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDrives"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "BindDirectlyToPropertySetStorage"=0 "NoDrives"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.i420"=lvcodec2.dll "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "vidc.cvid"=iccvid.dll "MSVideo8"=VfWWDM32.dll "MSVideo"=vfwwdm32.dll "vidc.ffds"=ff_vfw.dll "vidc.xvid"=xvidvfw.dll "vidc.x264"=x264vfw.dll "vidc.lags"=lagarith.dll "msacm.lameacm"=LameACM.acm "msacm.divxa32"=DivXa32.acm "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "aux2"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 ======List of files/folders created in the last 1 month====== 2014-11-10 16:03:27 ----D---- C:\Program Files\OpenOffice.org 3 2014-11-07 19:10:54 ----D---- C:\Program Files\Opera 2014-11-07 16:51:44 ----D---- C:\Program Files\Mozilla Firefox 2014-11-06 19:39:37 ----D---- C:\Users\Hilario\AppData\Roaming\enchant 2014-10-29 18:49:39 ----A---- C:\Windows\system32\WindowsAccessBridge.dll 2014-10-29 18:49:39 ----A---- C:\Windows\system32\javaw.exe 2014-10-29 18:49:38 ----A---- C:\Windows\system32\java.exe 2014-10-27 18:59:47 ----D---- C:\Program Files\Microsoft Office 2014-10-27 18:58:22 ----D---- C:\Program Files\MSECache 2014-10-27 17:10:21 ----D---- C:\Users\Hilario\AppData\Roaming\DVDVideoSoft 2014-10-24 09:46:13 ----D---- C:\Users\Hilario\AppData\Roaming\ZHP 2014-10-23 17:56:59 ----D---- C:\zoek_backup 2014-10-19 16:26:48 ----D---- C:\Program Files\Common Files\Java 2014-10-16 10:49:33 ----A---- C:\Windows\system32\mscories.dll 2014-10-16 10:49:33 ----A---- C:\Windows\system32\mscorier.dll 2014-10-16 10:49:33 ----A---- C:\Windows\system32\dfshim.dll 2014-10-16 10:45:31 ----A---- C:\Windows\system32\win32k.sys 2014-10-16 10:37:16 ----A---- C:\Windows\system32\drivers\fastfat.sys 2014-10-16 10:34:37 ----A---- C:\Windows\system32\packager.dll 2014-10-16 10:19:30 ----A---- C:\Windows\system32\vbscript.dll 2014-10-16 10:19:30 ----A---- C:\Windows\system32\msfeedssync.exe 2014-10-16 10:19:30 ----A---- C:\Windows\system32\dxtmsft.dll 2014-10-16 10:19:29 ----A---- C:\Windows\system32\urlmon.dll 2014-10-16 10:19:29 ----A---- C:\Windows\system32\mshta.exe 2014-10-16 10:19:29 ----A---- C:\Windows\system32\msfeedsbs.dll 2014-10-16 10:19:29 ----A---- C:\Windows\system32\msfeeds.dll 2014-10-16 10:19:29 ----A---- C:\Windows\system32\jsproxy.dll 2014-10-16 10:19:28 ----A---- C:\Windows\system32\ieUnatt.exe 2014-10-16 10:19:27 ----A---- C:\Windows\system32\wininet.dll 2014-10-16 10:19:27 ----A---- C:\Windows\system32\url.dll 2014-10-16 10:19:27 ----A---- C:\Windows\system32\iertutil.dll 2014-10-16 10:19:26 ----A---- C:\Windows\system32\ieframe.dll 2014-10-16 10:19:25 ----A---- C:\Windows\system32\mshtmled.dll 2014-10-16 10:19:25 ----A---- C:\Windows\system32\jscript.dll 2014-10-16 10:19:25 ----A---- C:\Windows\system32\ieui.dll 2014-10-16 10:19:25 ----A---- C:\Windows\system32\dxtrans.dll 2014-10-16 10:19:23 ----A---- C:\Windows\system32\mshtml.dll 2014-10-16 10:19:22 ----A---- C:\Windows\system32\jscript9.dll 2014-10-15 18:05:36 ----A---- C:\Windows\system32\drivers\eagleGet.sys 2014-10-15 18:05:19 ----D---- C:\Users\Hilario\AppData\Roaming\EagleGet 2014-10-15 18:05:18 ----D---- C:\ProgramData\EagleGet 2014-10-15 18:05:18 ----D---- C:\Program Files\EagleGet 2014-10-15 18:05:18 ----D---- C:\Program Files\Common Files\EagleGet 2014-10-15 17:59:05 ----D---- C:\Users\Hilario\AppData\Roaming\QFX Software 2014-10-15 17:59:05 ----D---- C:\ProgramData\QFX Software ======List of files/folders modified in the last 1 month====== 2014-11-10 18:30:00 ----D---- C:\Windows\Prefetch 2014-11-10 18:29:51 ----D---- C:\Program Files\Trend Micro 2014-11-10 18:29:41 ----D---- C:\Windows\temp 2014-11-10 16:08:41 ----RD---- C:\Program Files 2014-11-10 16:07:20 ----SHD---- C:\System Volume Information 2014-11-10 16:05:55 ----SHD---- C:\Windows\Installer 2014-11-10 16:05:51 ----D---- C:\Config.Msi 2014-11-10 16:05:50 ----RSD---- C:\Windows\assembly 2014-11-10 16:04:04 ----RSD---- C:\Windows\Fonts 2014-11-10 15:59:08 ----D---- C:\Program Files\Malwarebytes Anti-Malware 2014-11-10 15:58:47 ----D---- C:\Windows\system32\drivers 2014-11-10 15:15:33 ----D---- C:\Windows\System32 2014-11-10 15:15:33 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-11-10 15:15:32 ----D---- C:\Windows\inf 2014-11-09 18:59:07 ----D---- C:\Users\Hilario\AppData\Roaming\Skype 2014-11-08 19:24:32 ----D---- C:\Users\Hilario\AppData\Roaming\PhotoScape 2014-11-08 10:20:00 ----D---- C:\Program Files\Mozilla Maintenance Service 2014-11-07 19:11:05 ----D---- C:\Windows\system32\Tasks 2014-11-07 18:38:40 ----D---- C:\Users\Hilario\AppData\Roaming\Opera 2014-11-07 17:33:47 ----D---- C:\Users\Hilario\AppData\Roaming\vlc 2014-11-07 16:04:02 ----D---- C:\Program Files\CCleaner 2014-11-06 19:16:39 ----D---- C:\Program Files\Java 2014-11-06 19:03:51 ----A---- C:\Windows\system32\FlashPlayerApp.exe 2014-11-04 18:49:57 ----D---- C:\Users\Hilario\AppData\Roaming\Nitro PDF 2014-11-04 14:58:19 ----D---- C:\Program Files\Recuva 2014-10-29 19:23:18 ----D---- C:\Windows 2014-10-29 18:08:14 ----D---- C:\Windows\system32\catroot2 2014-10-29 17:08:51 ----D---- C:\Users\Hilario\AppData\Roaming\Opera Software 2014-10-29 11:03:17 ----D---- C:\Program Files\KeePass Password Safe 2014-10-28 18:56:12 ----D---- C:\Windows\winsxs 2014-10-27 19:00:13 ----D---- C:\Program Files\Common Files\microsoft shared 2014-10-24 15:49:47 ----D---- C:\ProgramData 2014-10-23 18:34:07 ----SHD---- C:\$RECYCLE.BIN 2014-10-23 17:57:08 ----A---- C:\runcheck.txt 2014-10-19 16:28:03 ----D---- C:\ProgramData\Oracle 2014-10-19 16:26:48 ----D---- C:\Program Files\Common Files 2014-10-19 16:25:38 ----A---- C:\Windows\system32\javaws.exe 2014-10-19 15:35:15 ----D---- C:\Windows\Tasks 2014-10-16 16:42:35 ----D---- C:\Windows\Microsoft.NET 2014-10-16 15:45:06 ----D---- C:\Windows\Debug 2014-10-16 15:32:15 ----D---- C:\Windows\system32\migration 2014-10-16 15:32:15 ----D---- C:\Program Files\Internet Explorer 2014-10-16 10:50:11 ----D---- C:\Windows\system32\catroot 2014-10-16 10:45:05 ----D---- C:\Windows\system32\MRT 2014-10-16 10:37:32 ----A---- C:\Windows\system32\mrt.exe 2014-10-15 16:18:42 ----D---- C:\ProgramData\Skype ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 nvstor32;nvstor32; C:\Windows\system32\DRIVERS\nvstor32.sys [2013-12-20 215656] R1 cmderd;COMODO Internet Security Eradication Driver; C:\Windows\System32\DRIVERS\cmderd.sys [2014-04-16 20072] R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\system32\DRIVERS\cmdguard.sys [2014-04-16 607680] R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2014-04-16 43216] R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2014-04-16 92656] R3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-10 22528] R3 BthPan;Bluetooth-apparaat (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-18 92160] R3 BTHUSB;USB-stuurprogramma voor Bluetooth-radio; C:\Windows\System32\Drivers\BTHUSB.sys [2009-06-17 30208] R3 eagleGet;eagleGet; C:\Windows\System32\Drivers\eagleGet.sys [2014-09-22 64240] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2013-12-20 2888536] R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2007-01-11 32272] R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2007-01-11 32528] R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2013-12-22 10919200] R3 NVNET;NVIDIA nForce 10/100 Mbps Ethernet ; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2010-08-12 292712] R3 RFCOMM;Bluetooth-apparaat (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-10 148992] R3 USBCCID;USB-smartcardlezer; C:\Windows\system32\DRIVERS\usbccid.sys [2009-04-10 30208] R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560] R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136] S1 Uim_IM;UIM Drive Backup Image Plugin; C:\Windows\System32\Drivers\Uim_IM.sys [2013-02-18 452816] S1 Uim_Vim;UIM Virtual Image Plugin; C:\Windows\System32\Drivers\Uim_Vim.sys [2013-02-18 283600] S1 UimBus;Universal Image Mounter Controller; C:\Windows\system32\DRIVERS\UimBus.sys [2013-02-18 81232] S3 BTHPORT;Stuurprogramma voor Bluetooth-poort; C:\Windows\System32\Drivers\BTHport.sys [2011-04-21 508416] S3 Camdrv30;Philips ToUcam XS; C:\Windows\System32\Drivers\camdrv30.sys [2001-08-17 171264] S3 catchme;catchme; \??\C:\Users\Hilario\AppData\Local\Temp\catchme.sys [] S3 drmkaud;Microsoft Kernel DRM-audiodecoder; C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632] S3 HdAudAddService;Microsoft 1.1 UAA Functiestuurprogramma voor High Definition Audio-service; C:\Windows\system32\drivers\HdAudio.sys [2009-04-10 236544] S3 LVRS;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs.sys [2009-10-07 266008] S3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBSta.sys [2008-02-06 41752] S3 LVUVC;Logitech QuickCam E3500(UVC); C:\Windows\system32\DRIVERS\lvuvc.sys [2009-10-07 6756632] S3 MSKSSRV;Microsoft Streaming Service-proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192] S3 MSPCLOCK;Microsoft Streaming Clock-proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888] S3 MSPQM;Microsoft Streaming Kwaliteitsbeheer Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504] S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink-conversieprogramma; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016] S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2010-08-12 292712] S3 usbaudio;Stuurprogramma voor USB-audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-07-12 73344] S3 usbscan;Stuurprogramma voor USB-scanner; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 35328] S3 usbvideo;USB-videoapparaat (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272] S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSrv.exe [2013-12-20 87968] R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-18 21504] R2 CmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2014-04-16 5306504] R2 egGetSvc;egGetSvc; C:\Program Files\EagleGet\EGMonitor.exe [2014-10-03 230400] R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-18 21504] R2 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\Logitech\Bluetooth\LBTSERV.EXE [2007-02-20 110592] R2 MemeoBackgroundService;MemeoBackgroundService; C:\Program Files\Memeo\AutoBackup\MemeoBackgroundService.exe [2011-05-04 25824] R2 NitroReaderDriverReadSpool3;NitroPDFReaderDriverCreatorReadSpool3; C:\Program Files\Nitro\Reader 3\NitroPDFReaderDriverService3.exe [2013-05-28 196624] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-31 634656] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144] S2 gupdate;Google Update-service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-08-24 116648] S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-04-03 315008] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-06 267440] S3 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688] S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2014-03-25 1663192] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-08-24 116648] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-07 114288] S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-09-11 770168] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] -----------------EOF-----------------