Logfile of random's system information tool 1.10 (written by random/random) Run by DAVID at 2015-11-10 10:55:11 Microsoft Windows 10 Home System drive C: has 90 GB (40%) free of 224 GB Total RAM: 3002 MB (63% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 10:55:22, on 10-11-2015 Platform: Unknown Windows (WinNT 6.02.1008) MSIE: Internet Explorer v11.0 (11.00.10240.16412) Boot mode: Normal Running processes: C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe C:\Windows\PLFSetI.exe C:\Program Files (x86)\Norton Utilities 14\RMTray.exe C:\Program Files (x86)\Launch Manager\LManager.exe C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\Reader_sl.exe C:\Program Files\trend micro\DAVID.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit= O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_65\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_65\bin\jp2ssv.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe" O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [NortonUtilities] C:\Program Files (x86)\Norton Utilities 14\RMTray.exe /S O4 - HKCU\..\Run: [Facebook Update] "C:\Users\DAVID\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver O4 - HKCU\..\Run: [OneDrive] "C:\Users\DAVID\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE') O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab O16 - DPF: {4A85DBE0-BFB2-4119-8401-186A7C6EB653} - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/nl/mjss/MJSS.cab109791.cab O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/nl/uno1/GAME_UNO1.cab O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} - http://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.com/bin/srldetect_intel_4.5.24.0.cab O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} - http://3dlifeplayer.dl.3dvia.com/player/install/3DVIA_player_installer.exe O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} - O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing) O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing) O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing) O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing) O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing) O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing) O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing) O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing) O23 - Service: Updater Service - Acer - C:\Program Files\Acer\Acer Updater\UpdaterService.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 12659 bytes ======Listing Processes====== C:\WINDOWS\system32\lsass.exe winlogon.exe C:\WINDOWS\system32\svchost.exe -k DcomLaunch C:\WINDOWS\system32\svchost.exe -k RPCSS "dwm.exe" C:\WINDOWS\system32\svchost.exe -k netsvcs C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\WINDOWS\system32\svchost.exe -k LocalService C:\WINDOWS\System32\svchost.exe -k NetworkService C:\WINDOWS\System32\spoolsv.exe C:\WINDOWS\system32\WLANExt.exe 443638486288 \??\C:\WINDOWS\system32\conhost.exe 0x4 C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" "C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service "C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service C:\WINDOWS\system32\svchost.exe -k apphost C:\WINDOWS\System32\svchost.exe -k utcsvc "C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe" dashost.exe {dd5bc272-e79d-4724-a01d0dff6a1f798f} "C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe" "C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe" C:\WINDOWS\system32\svchost.exe -k iissvcs C:\WINDOWS\system32\mqsvc.exe "C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe" C:\WINDOWS\system32\svchost.exe -k appmodel C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe "C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator "C:\Program Files\Acer\Acer Updater\UpdaterService.exe" C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted sihost.exe taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E} C:\WINDOWS\Explorer.EXE C:\Windows\System32\RuntimeBroker.exe -Embedding "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca C:\WINDOWS\system32\wbem\wmiprvse.exe "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s "C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe" "C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe" "C:\Windows\PLFSetI.exe" C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding "C:\Program Files (x86)\Norton Utilities 14\RMTray.exe" /S C:\WINDOWS\system32\wbem\wmiprvse.exe "C:\Program Files\Synaptics\SynTP\SynTPHelper.exe" "C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe" "C:\Program Files (x86)\Launch Manager\LManager.exe" "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe" C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding "fontdrvhost.exe" "C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetServiceDss -RestrictPrivileges -AccessKey 3EF0E9D3-BEF1-9063-3DF5-562C5B4D5C80 -Reinvoke "C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca "C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\Reader_sl.exe" "C:\Users\DAVID\Downloads\RSITx64.exe" ======Scheduled tasks folder====== C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe C:\WINDOWS\tasks\Adobe Reader and Acrobat Manager MAGIX PCCT.job - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job - C:\WINDOWS\explorer.exe /NOUACCHECK C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-191070189-3428041399-996192118-1001Core.job - C:\Users\DAVID\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-191070189-3428041399-996192118-1001UA.job - C:\Users\DAVID\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler C:\WINDOWS\tasks\Java(TM) Platform SE Auto Updater 2 0 MAGIX PCCT.job - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-10-01 256456] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12 2134656] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_65\bin\ssv.dll [2015-11-10 460384] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-10-01 194504] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12 1725056] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_65\bin\jp2ssv.dll [2015-11-10 172640] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-10-01 256456] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-10-01 194504] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-06-18 1808168] "RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-06-24 13885696] "IAAnotif"=C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-06-05 186904] "Acer ePower Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2009-08-06 828960] "mwlDaemon"=C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [2009-08-06 349480] "PLFSetI"=C:\Windows\PLFSetI.exe [2008-07-30 200704] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "NortonUtilities"=C:\Program Files (x86)\Norton Utilities 14\RMTray.exe [2009-09-14 279912] "Facebook Update"=C:\Users\DAVID\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-02-22 138096] "OneDrive"=C:\Users\DAVID\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-07-30 402632] "CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-10-19 8551848] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\XboxStat] C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [2009-10-01 825184] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2009-07-27 1157128] "ArcadeDeluxeAgent"=C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [2010-08-12 419112] "GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040] "SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-10-06 597040] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System] "LogonHoursAction"=2 "DontDisplayLogonHoursWarnings"=1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "DSCAutomationHostEnabled"=2 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 "NoDriveAutorun"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "midimapper"=midimap.dll "msacm.imaadpcm"=imaadp32.acm "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "msacm.msadpcm"=msadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "vidc.i420"=iyuv_32.dll "vidc.iyuv"=iyuv_32.dll "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvu9"=tsbyuv.dll "vidc.yvyu"=msyuv.dll "wavemapper"=msacm32.drv "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "MSVideo8"=VfWWDM32.dll ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2015-11-10 10:55:11 ----D---- C:\Program Files\trend micro 2015-11-10 10:55:10 ----D---- C:\rsit 2015-11-10 10:32:53 ----D---- C:\Program Files\CCleaner 2015-11-10 10:07:06 ----D---- C:\ProgramData\Essentware 2015-11-10 09:41:13 ----D---- C:\WINDOWS\pss 2015-11-08 00:41:48 ----SHD---- C:\Config.Msi 2015-11-07 23:27:26 ----D---- C:\ProgramData\Hitman Pro 2015-11-02 17:52:19 ----A---- C:\WINDOWS\system32\edgehtml.dll 2015-11-02 17:52:16 ----A---- C:\WINDOWS\system32\mshtml.dll 2015-11-02 17:52:13 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-11-02 17:52:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll 2015-11-02 17:51:56 ----A---- C:\WINDOWS\system32\shell32.dll 2015-11-02 17:51:53 ----A---- C:\WINDOWS\system32\ieframe.dll 2015-11-02 17:51:50 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll 2015-11-02 17:51:49 ----A---- C:\WINDOWS\system32\BingMaps.dll 2015-11-02 17:51:47 ----A---- C:\WINDOWS\system32\windows.storage.dll 2015-11-02 17:51:45 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll 2015-11-02 17:51:43 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll 2015-11-02 17:51:40 ----A---- C:\WINDOWS\system32\ntoskrnl.exe 2015-11-02 17:51:39 ----A---- C:\WINDOWS\system32\mos.dll 2015-11-02 17:51:38 ----A---- C:\WINDOWS\SYSWOW64\mos.dll 2015-11-02 17:51:35 ----A---- C:\WINDOWS\system32\Chakra.dll 2015-11-02 17:51:34 ----A---- C:\WINDOWS\system32\jscript9.dll 2015-11-02 17:51:30 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll 2015-11-02 17:51:29 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll 2015-11-02 17:51:27 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll 2015-11-02 17:51:27 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll 2015-11-02 17:51:24 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll 2015-11-02 17:51:21 ----A---- C:\WINDOWS\system32\mfcore.dll 2015-11-02 17:51:20 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll 2015-11-02 17:51:18 ----A---- C:\WINDOWS\system32\msxml6.dll 2015-11-02 17:51:17 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll 2015-11-02 17:51:16 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll 2015-11-02 17:51:16 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll 2015-11-02 17:51:13 ----A---- C:\WINDOWS\system32\wininet.dll 2015-11-02 17:51:12 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll 2015-11-02 17:51:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll 2015-11-02 17:51:08 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll 2015-11-02 17:51:07 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys 2015-11-02 17:51:06 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll 2015-11-02 17:51:05 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll 2015-11-02 17:51:05 ----A---- C:\WINDOWS\system32\win32kfull.sys 2015-11-02 17:51:04 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys 2015-11-02 17:51:03 ----A---- C:\WINDOWS\system32\wlansvc.dll 2015-11-02 17:51:03 ----A---- C:\WINDOWS\system32\winmde.dll 2015-11-02 17:51:02 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll 2015-11-02 17:51:02 ----A---- C:\WINDOWS\system32\UserDataService.dll 2015-11-02 17:51:01 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll 2015-11-02 17:51:01 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll 2015-11-02 17:50:59 ----A---- C:\WINDOWS\system32\wlidsvc.dll 2015-11-02 17:50:58 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll 2015-11-02 17:50:57 ----A---- C:\WINDOWS\system32\LicenseManager.dll 2015-11-02 17:50:57 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll 2015-11-02 17:50:56 ----A---- C:\WINDOWS\system32\Unistore.dll 2015-11-02 17:50:56 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll 2015-11-02 17:50:55 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll 2015-11-02 17:50:55 ----A---- C:\WINDOWS\system32\CoreMessaging.dll 2015-11-02 17:50:54 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll 2015-11-02 17:50:54 ----A---- C:\WINDOWS\system32\wwansvc.dll 2015-11-02 17:50:53 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll 2015-11-02 17:50:52 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll 2015-11-02 17:50:52 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll 2015-11-02 17:50:51 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll 2015-11-02 17:50:51 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2015-11-02 17:50:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll 2015-11-02 17:50:50 ----A---- C:\WINDOWS\SYSWOW64\usoapi.dll 2015-11-02 17:50:50 ----A---- C:\WINDOWS\system32\TokenBroker.dll 2015-11-02 17:50:49 ----A---- C:\WINDOWS\system32\wuaueng.dll 2015-11-02 17:50:49 ----A---- C:\WINDOWS\system32\msxml3.dll 2015-11-02 17:50:49 ----A---- C:\WINDOWS\system32\mfsvr.dll 2015-11-02 17:50:48 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll 2015-11-02 17:50:47 ----A---- C:\WINDOWS\system32\modernexecserver.dll 2015-11-02 17:50:46 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll 2015-11-02 17:50:46 ----A---- C:\WINDOWS\system32\RDXService.dll 2015-11-02 17:50:45 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll 2015-11-02 17:50:45 ----A---- C:\WINDOWS\system32\MBMediaManager.dll 2015-11-02 17:50:45 ----A---- C:\WINDOWS\system32\iertutil.dll 2015-11-02 17:50:44 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll 2015-11-02 17:50:44 ----A---- C:\WINDOWS\system32\mcupdate_GenuineIntel.dll 2015-11-02 17:50:43 ----A---- C:\WINDOWS\system32\wpx.dll 2015-11-02 17:50:43 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll 2015-11-02 17:50:43 ----A---- C:\WINDOWS\system32\ContactApis.dll 2015-11-02 17:50:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll 2015-11-02 17:50:41 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll 2015-11-02 17:50:41 ----A---- C:\WINDOWS\system32\jscript.dll 2015-11-02 17:50:40 ----A---- C:\WINDOWS\system32\kerberos.dll 2015-11-02 17:50:40 ----A---- C:\WINDOWS\system32\hevcdecoder.dll 2015-11-02 17:50:39 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll 2015-11-02 17:50:39 ----A---- C:\WINDOWS\system32\mfds.dll 2015-11-02 17:50:38 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll 2015-11-02 17:50:37 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll 2015-11-02 17:50:37 ----A---- C:\WINDOWS\system32\winload.exe 2015-11-02 17:50:37 ----A---- C:\WINDOWS\system32\MapControlCore.dll 2015-11-02 17:50:35 ----A---- C:\WINDOWS\system32\wmpmde.dll 2015-11-02 17:50:35 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2015-11-02 17:50:34 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll 2015-11-02 17:50:34 ----A---- C:\WINDOWS\system32\bisrv.dll 2015-11-02 17:50:33 ----A---- C:\WINDOWS\system32\SharedStartModel.dll 2015-11-02 17:50:33 ----A---- C:\WINDOWS\system32\drivers\Wdf01000.sys 2015-11-02 17:50:32 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll 2015-11-02 17:50:32 ----A---- C:\WINDOWS\system32\MbaeApi.dll 2015-11-02 17:50:31 ----A---- C:\WINDOWS\system32\WWanAPI.dll 2015-11-02 17:50:31 ----A---- C:\WINDOWS\system32\directmanipulation.dll 2015-11-02 17:50:30 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll 2015-11-02 17:50:30 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll 2015-11-02 17:50:30 ----A---- C:\WINDOWS\system32\ngcsvc.dll 2015-11-02 17:50:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll 2015-11-02 17:50:28 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll 2015-11-02 17:50:28 ----A---- C:\WINDOWS\system32\NotificationController.dll 2015-11-02 17:50:26 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll 2015-11-02 17:50:26 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2015-11-02 17:50:26 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll 2015-11-02 17:50:25 ----A---- C:\WINDOWS\SYSWOW64\directmanipulation.dll 2015-11-02 17:50:25 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll 2015-11-02 17:50:24 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll 2015-11-02 17:50:24 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2015-11-02 17:50:24 ----A---- C:\WINDOWS\system32\wcmsvc.dll 2015-11-02 17:50:23 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll 2015-11-02 17:50:23 ----A---- C:\WINDOWS\system32\win32kbase.sys 2015-11-02 17:50:22 ----A---- C:\WINDOWS\system32\ChatApis.dll 2015-11-02 17:50:21 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll 2015-11-02 17:50:21 ----A---- C:\WINDOWS\system32\tileobjserver.dll 2015-11-02 17:50:20 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll 2015-11-02 17:50:19 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll 2015-11-02 17:50:19 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll 2015-11-02 17:50:18 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll 2015-11-02 17:50:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll 2015-11-02 17:50:16 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll 2015-11-02 17:50:16 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys 2015-11-02 17:50:16 ----A---- C:\WINDOWS\system32\AudioEng.dll 2015-11-02 17:50:15 ----A---- C:\WINDOWS\system32\Windows.Media.dll 2015-11-02 17:50:15 ----A---- C:\WINDOWS\system32\LockAppBroker.dll 2015-11-02 17:50:14 ----A---- C:\WINDOWS\system32\vbscript.dll 2015-11-02 17:50:14 ----A---- C:\WINDOWS\system32\usermgr.dll 2015-11-02 17:50:13 ----A---- C:\WINDOWS\system32\winresume.exe 2015-11-02 17:50:12 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe 2015-11-02 17:50:12 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll 2015-11-02 17:50:12 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll 2015-11-02 17:50:11 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll 2015-11-02 17:50:11 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2015-11-02 17:50:11 ----A---- C:\WINDOWS\system32\audiosrv.dll 2015-11-02 17:50:10 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe 2015-11-02 17:50:10 ----A---- C:\WINDOWS\system32\SensorsApi.dll 2015-11-02 17:50:10 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll 2015-11-02 17:50:09 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll 2015-11-02 17:50:09 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll 2015-11-02 17:50:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll 2015-11-02 17:50:06 ----A---- C:\WINDOWS\system32\ncsi.dll 2015-11-02 17:50:06 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys 2015-11-02 17:50:05 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll 2015-11-02 17:50:05 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll 2015-11-02 17:50:04 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2015-11-02 17:50:04 ----A---- C:\WINDOWS\system32\KnobsCsp.dll 2015-11-02 17:50:04 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS 2015-11-02 17:50:04 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys 2015-11-02 17:50:03 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2015-11-02 17:50:03 ----A---- C:\WINDOWS\system32\KnobsCore.dll 2015-11-02 17:50:03 ----A---- C:\WINDOWS\system32\dmenrollengine.dll 2015-11-02 17:50:02 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll 2015-11-02 17:50:02 ----A---- C:\WINDOWS\system32\workfolderssvc.dll 2015-11-02 17:50:01 ----A---- C:\WINDOWS\system32\esent.dll 2015-11-02 17:50:01 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll 2015-11-02 17:50:00 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll 2015-11-02 17:50:00 ----A---- C:\WINDOWS\system32\mf.dll 2015-11-02 17:50:00 ----A---- C:\WINDOWS\system32\EmailApis.dll 2015-11-02 17:49:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll 2015-11-02 17:49:58 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll 2015-11-02 17:49:58 ----A---- C:\WINDOWS\system32\provengine.dll 2015-11-02 17:49:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll 2015-11-02 17:49:57 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll 2015-11-02 17:49:56 ----A---- C:\WINDOWS\system32\JpMapControl.dll 2015-11-02 17:49:55 ----A---- C:\WINDOWS\system32\psmsrv.dll 2015-11-02 17:49:55 ----A---- C:\WINDOWS\system32\ngccredprov.dll 2015-11-02 17:49:55 ----A---- C:\WINDOWS\system32\CellularAPI.dll 2015-11-02 17:49:54 ----A---- C:\WINDOWS\system32\wcmcsp.dll 2015-11-02 17:49:54 ----A---- C:\WINDOWS\system32\urlmon.dll 2015-11-02 17:49:53 ----A---- C:\WINDOWS\system32\wuuhext.dll 2015-11-02 17:49:51 ----A---- C:\WINDOWS\system32\winlogon.exe 2015-11-02 17:49:51 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys 2015-11-02 17:49:50 ----A---- C:\WINDOWS\SYSWOW64\mf.dll 2015-11-02 17:49:50 ----A---- C:\WINDOWS\system32\wwanconn.dll 2015-11-02 17:49:49 ----A---- C:\WINDOWS\system32\WUDFx02000.dll 2015-11-02 17:49:49 ----A---- C:\WINDOWS\system32\Windows.UI.dll 2015-11-02 17:49:47 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll 2015-11-02 17:49:46 ----A---- C:\WINDOWS\system32\pnidui.dll 2015-11-02 17:49:45 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll 2015-11-02 17:49:44 ----A---- C:\WINDOWS\system32\tetheringservice.dll 2015-11-02 17:49:42 ----A---- C:\WINDOWS\SYSWOW64\esent.dll 2015-11-02 17:49:39 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll 2015-11-02 17:49:39 ----A---- C:\WINDOWS\system32\SubscriptionMgr.dll 2015-11-02 17:49:39 ----A---- C:\WINDOWS\system32\MapsStore.dll 2015-11-02 17:49:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll 2015-11-02 17:49:38 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll 2015-11-02 17:49:38 ----A---- C:\WINDOWS\system32\cloudAP.dll 2015-11-02 17:49:37 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll 2015-11-02 17:49:37 ----A---- C:\WINDOWS\system32\StoreAgent.dll 2015-11-02 17:49:37 ----A---- C:\WINDOWS\system32\AppointmentApis.dll 2015-11-02 17:49:36 ----A---- C:\WINDOWS\system32\ncryptprov.dll 2015-11-02 17:49:36 ----A---- C:\WINDOWS\system32\mfps.dll 2015-11-02 17:49:35 ----A---- C:\WINDOWS\system32\omadmclient.exe 2015-11-02 17:49:34 ----A---- C:\WINDOWS\system32\drivers\pdc.sys 2015-11-02 17:49:33 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe 2015-11-02 17:49:33 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll 2015-11-02 17:49:32 ----A---- C:\WINDOWS\SYSWOW64\ncryptprov.dll 2015-11-02 17:49:32 ----A---- C:\WINDOWS\system32\KeywordDetectorMsftSidAdapter.dll 2015-11-02 17:49:32 ----A---- C:\WINDOWS\system32\fveapi.dll 2015-11-02 17:49:32 ----A---- C:\WINDOWS\system32\acmigration.dll 2015-11-02 17:49:31 ----A---- C:\WINDOWS\system32\drivers\buttonconverter.sys 2015-11-02 17:49:30 ----A---- C:\WINDOWS\system32\wwanmm.dll 2015-11-02 17:49:30 ----A---- C:\WINDOWS\system32\dlnashext.dll 2015-11-02 17:49:29 ----A---- C:\WINDOWS\SYSWOW64\remoteaudioendpoint.dll 2015-11-02 17:49:28 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll 2015-11-02 17:49:28 ----A---- C:\WINDOWS\system32\LocationWiFiAdapter.dll 2015-11-02 17:49:28 ----A---- C:\WINDOWS\system32\drivers\portcls.sys 2015-11-02 17:49:27 ----A---- C:\WINDOWS\system32\ngckeyenum.dll 2015-11-02 17:49:26 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll 2015-11-02 17:49:26 ----A---- C:\WINDOWS\system32\MapConfiguration.dll 2015-11-02 17:49:26 ----A---- C:\WINDOWS\system32\dssvc.dll 2015-11-02 17:49:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Speech.Pal.dll 2015-11-02 17:49:24 ----A---- C:\WINDOWS\system32\Windows.Speech.Pal.dll 2015-11-02 17:49:24 ----A---- C:\WINDOWS\system32\omadmapi.dll 2015-11-02 17:49:24 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe 2015-11-02 17:49:23 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll 2015-11-02 17:49:23 ----A---- C:\WINDOWS\system32\drivers\ndis.sys 2015-11-02 17:49:22 ----A---- C:\WINDOWS\system32\drivers\netio.sys 2015-11-02 17:49:21 ----A---- C:\WINDOWS\system32\syncutil.dll 2015-11-02 17:49:21 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe 2015-11-02 17:49:20 ----A---- C:\WINDOWS\system32\LocationWebproxy.dll 2015-11-02 17:49:16 ----A---- C:\WINDOWS\system32\wwancfg.dll 2015-11-02 17:49:16 ----A---- C:\WINDOWS\system32\LocationGeofences.dll 2015-11-02 17:49:14 ----A---- C:\WINDOWS\system32\enterprisecsps.dll 2015-11-02 17:49:14 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS 2015-11-02 17:49:13 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys 2015-11-02 17:49:09 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2015-11-02 17:49:08 ----A---- C:\WINDOWS\system32\wpnapps.dll 2015-11-02 17:49:07 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll 2015-11-02 17:49:06 ----A---- C:\WINDOWS\system32\netcenter.dll 2015-11-02 17:49:06 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll 2015-11-02 17:49:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll 2015-11-02 17:49:05 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll 2015-11-02 17:49:05 ----A---- C:\WINDOWS\system32\accountaccessor.dll 2015-11-02 17:49:03 ----A---- C:\WINDOWS\system32\LocationPeIP.dll 2015-11-02 17:49:03 ----A---- C:\WINDOWS\system32\LocationCrowdsource.dll 2015-11-02 17:49:02 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll 2015-11-02 17:49:02 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll 2015-11-02 17:49:02 ----A---- C:\WINDOWS\system32\enrollmentapi.dll 2015-11-02 17:49:00 ----A---- C:\WINDOWS\system32\Chakradiag.dll 2015-11-02 17:48:59 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll 2015-11-02 17:48:59 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll 2015-11-02 17:48:58 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll 2015-11-02 17:48:58 ----A---- C:\WINDOWS\system32\MPSSVC.dll 2015-11-02 17:48:57 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll 2015-11-02 17:48:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Usb.dll 2015-11-02 17:48:55 ----A---- C:\WINDOWS\system32\provops.dll 2015-11-02 17:48:55 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2015-11-02 17:48:54 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll 2015-11-02 17:48:54 ----A---- C:\WINDOWS\SYSWOW64\dlnashext.dll 2015-11-02 17:48:54 ----A---- C:\WINDOWS\system32\browserbroker.dll 2015-11-02 17:48:53 ----A---- C:\WINDOWS\SYSWOW64\netcenter.dll 2015-11-02 17:48:53 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll 2015-11-02 17:48:52 ----A---- C:\WINDOWS\system32\nlasvc.dll 2015-11-02 17:48:50 ----A---- C:\WINDOWS\system32\LocationFramework.dll 2015-11-02 17:48:45 ----A---- C:\WINDOWS\system32\mdmregistration.dll 2015-11-02 17:48:42 ----A---- C:\WINDOWS\system32\LocationPeWiFi.dll 2015-11-02 17:48:42 ----A---- C:\WINDOWS\system32\dmcsps.dll 2015-11-02 17:48:41 ----A---- C:\WINDOWS\system32\mdmmigrator.dll 2015-11-02 17:48:41 ----A---- C:\WINDOWS\system32\dmcertinst.exe 2015-11-02 17:48:40 ----A---- C:\WINDOWS\system32\LocationPeCell.dll 2015-11-02 17:48:39 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-11-02 17:48:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-11-02 17:48:37 ----A---- C:\WINDOWS\system32\provisioningcsp.dll 2015-11-02 17:48:36 ----A---- C:\WINDOWS\system32\syncmlhook.dll 2015-11-02 17:48:36 ----A---- C:\WINDOWS\system32\configmanager2.dll ======List of files/folders modified in the last 1 month====== 2015-11-10 10:55:11 ----RD---- C:\Program Files 2015-11-10 10:55:06 ----D---- C:\WINDOWS\Prefetch 2015-11-10 10:51:13 ----D---- C:\WINDOWS\Temp 2015-11-10 10:44:28 ----D---- C:\WINDOWS\INF 2015-11-10 10:44:17 ----D---- C:\WINDOWS\system32\sru 2015-11-10 10:43:41 ----D---- C:\Windows 2015-11-10 10:42:51 ----D---- C:\WINDOWS\System32 2015-11-10 10:35:31 ----D---- C:\WINDOWS\debug 2015-11-10 10:33:07 ----D---- C:\WINDOWS\system32\Tasks 2015-11-10 10:28:16 ----SHD---- C:\WINDOWS\Installer 2015-11-10 10:28:12 ----D---- C:\WINDOWS\system32\drivers 2015-11-10 10:24:54 ----SHD---- C:\System Volume Information 2015-11-10 10:10:22 ----D---- C:\WINDOWS\system32\config 2015-11-10 10:07:06 ----HD---- C:\ProgramData 2015-11-10 10:01:48 ----D---- C:\WINDOWS\AppReadiness 2015-11-10 09:49:06 ----D---- C:\WINDOWS\Tasks 2015-11-10 09:40:58 ----HD---- C:\Program Files\WindowsApps 2015-11-10 09:30:25 ----D---- C:\WINDOWS\SysWOW64 2015-11-10 09:29:37 ----D---- C:\Program Files (x86)\Adobe 2015-11-10 09:26:44 ----D---- C:\ProgramData\Oracle 2015-11-10 09:24:44 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll 2015-11-10 09:24:13 ----D---- C:\Program Files (x86)\Java 2015-11-10 08:16:23 ----D---- C:\WINDOWS\system32\wbem 2015-11-10 08:15:55 ----D---- C:\Program Files\Windows Defender 2015-11-10 08:13:09 ----RSD---- C:\WINDOWS\Media 2015-11-10 08:13:09 ----D---- C:\WINDOWS\system32\WinBioPlugIns 2015-11-10 08:13:09 ----D---- C:\WINDOWS\system32\oobe 2015-11-10 08:13:09 ----D---- C:\WINDOWS\system32\catroot2 2015-11-10 08:13:09 ----D---- C:\WINDOWS\IME 2015-11-10 08:13:04 ----SD---- C:\WINDOWS\SYSWOW64\F12 2015-11-10 08:13:04 ----SD---- C:\WINDOWS\system32\Nui 2015-11-10 08:13:04 ----SD---- C:\WINDOWS\system32\F12 2015-11-10 08:13:04 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata 2015-11-10 08:13:04 ----D---- C:\WINDOWS\SYSWOW64\wbem 2015-11-10 08:13:04 ----D---- C:\WINDOWS\SYSWOW64\nl-NL 2015-11-10 08:13:04 ----D---- C:\WINDOWS\SYSWOW64\migration 2015-11-10 08:13:04 ----D---- C:\WINDOWS\system32\WinMetadata 2015-11-10 08:13:04 ----D---- C:\WINDOWS\system32\SystemResetPlatform 2015-11-10 08:13:04 ----D---- C:\WINDOWS\system32\nl-NL 2015-11-10 08:13:04 ----D---- C:\WINDOWS\system32\migration 2015-11-10 08:13:04 ----D---- C:\WINDOWS\system32\MailContactsCalendarSync 2015-11-10 08:13:03 ----D---- C:\WINDOWS\system32\CodeIntegrity 2015-11-10 08:13:03 ----D---- C:\WINDOWS\system32\Boot 2015-11-10 08:13:03 ----D---- C:\WINDOWS\system32\appraiser 2015-11-10 08:12:57 ----RD---- C:\WINDOWS\PurchaseDialog 2015-11-10 08:12:57 ----D---- C:\WINDOWS\Provisioning 2015-11-10 08:12:56 ----D---- C:\WINDOWS\L2Schemas 2015-11-10 08:12:53 ----D---- C:\WINDOWS\AppPatch 2015-11-10 08:12:43 ----D---- C:\WINDOWS\WinSxS 2015-11-10 08:11:58 ----D---- C:\WINDOWS\SYSWOW64\Speech_OneCore 2015-11-10 08:11:58 ----D---- C:\WINDOWS\SystemResources 2015-11-10 08:11:57 ----DC---- C:\WINDOWS\system32\DRVSTORE 2015-11-10 08:11:57 ----D---- C:\WINDOWS\system32\Sysprep 2015-11-10 08:11:57 ----D---- C:\WINDOWS\system32\Speech_OneCore 2015-11-10 08:11:57 ----D---- C:\WINDOWS\system32\drivers\NBRTWizardx64 2015-11-10 08:11:57 ----D---- C:\WINDOWS\servicing 2015-11-10 08:11:51 ----D---- C:\WINDOWS\rescache 2015-11-10 08:11:41 ----D---- C:\WINDOWS\Globalization 2015-11-10 08:10:47 ----D---- C:\ProgramData\Norton 2015-11-10 08:10:17 ----D---- C:\Program Files (x86)\Norton Utilities 14 2015-11-10 08:10:17 ----D---- C:\Program Files (x86)\Norton Bootable Recovery Tool Wizard 2015-11-10 08:10:15 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware 2015-11-10 07:59:26 ----D---- C:\WINDOWS\registration 2015-11-10 07:55:05 ----D---- C:\WINDOWS\system32\DriverStore 2015-11-10 07:54:54 ----D---- C:\WINDOWS\system32\CatRoot 2015-11-10 07:54:02 ----D---- C:\WINDOWS\Microsoft.NET 2015-11-10 07:51:43 ----RD---- C:\WINDOWS\assembly 2015-11-10 07:47:22 ----D---- C:\ProgramData\Origin 2015-11-10 07:47:00 ----D---- C:\ProgramData\Adobe 2015-11-10 07:45:53 ----RD---- C:\Program Files (x86) 2015-11-10 07:45:53 ----D---- C:\Program Files (x86)\NortonInstaller 2015-11-08 00:42:24 ----D---- C:\ProgramData\AVG 2015-11-08 00:42:24 ----D---- C:\Program Files (x86)\AVG 2015-11-08 00:29:19 ----D---- C:\ProgramData\MFAData 2015-11-07 15:27:56 ----AD---- C:\ProgramData\Temp 2015-11-07 15:21:21 ----D---- C:\WINDOWS\Logs 2015-11-05 12:36:37 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2015-11-03 18:51:59 ----D---- C:\WINDOWS\CbsTemp 2015-11-02 17:17:33 ----D---- C:\ProgramData\Microsoft Help 2015-11-02 17:15:43 ----D---- C:\WINDOWS\system32\MRT 2015-11-02 17:08:08 ----A---- C:\WINDOWS\system32\MRT.exe 2015-10-28 14:39:29 ----D---- C:\Program Files (x86)\Origin 2015-10-24 11:21:17 ----SD---- C:\WINDOWS\system32\Microsoft 2015-10-21 20:10:04 ----D---- C:\ProgramData\Package Cache 2015-10-18 03:49:39 ----RD---- C:\Program Files (x86)\Skype 2015-10-16 04:10:46 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 iaStor;@oem14.inf,%*PNP0600.DeviceDesc%;Intel AHCI Controller; C:\WINDOWS\System32\drivers\iaStor.sys [2009-06-05 408600] R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968] R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192] R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2014-12-16 26528] R1 mwlPSDFilter;mwlPSDFilter; C:\WINDOWS\system32\DRIVERS\mwlPSDFilter.sys [2009-06-02 22576] R1 mwlPSDNServ;mwlPSDNServ; C:\WINDOWS\system32\DRIVERS\mwlPSDNServ.sys [2009-06-02 20016] R1 mwlPSDVDisk;mwlPSDVDisk; C:\WINDOWS\system32\DRIVERS\mwlPSDVDisk.sys [2009-06-02 60464] R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128] R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952] R3 BCM43XX;@oem19.inf,%BCM43XX_Service_DispName%;Stuurprogramma voor Broadcom 802.11-netwerkadapter; C:\WINDOWS\system32\DRIVERS\bcmwl664.sys [2014-12-16 10434256] R3 DKbFltr;@oem10.inf,%DKbFltr.SvcDesc%;Dritek Keyboard Filter Driver (64-bit); C:\WINDOWS\SysWOW64\Drivers\DKbFltr.sys [2009-03-26 25608] R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-07-26 33240] R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2012-03-23 10627744] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-06-24 4504320] R3 L1C;@oem4.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1C62x64.sys [2013-08-22 129224] R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2015-06-18 25816] R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-07-30 175104] R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2009-05-05 18432] R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2014-12-16 33008] R3 SynTP;@oem0.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2009-06-18 272432] R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2009-05-05 16896] S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800] S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168] S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208] S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720] S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288] S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-09-17 36352] S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736] S3 DrvAgent64;DrvAgent64; \??\C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS [2014-09-27 21712] S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232] S3 fssfltr;fssfltr; C:\WINDOWS\system32\DRIVERS\fssfltr.sys [2012-09-12 57856] S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992] S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016] S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800] S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624] S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2015-06-18 64216] S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376] S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128] S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-07-30 934752] S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2009-08-10 222208] S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-07-10 61952] S3 UcmUcsi;@ucmucsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-07-30 46080] S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-07-10 44032] S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-07-10 245088] S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-07-10 94048] S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-07-10 127840] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128] R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2015-10-12 1433216] R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2015-10-12 1773696] R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2009-08-06 844320] R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-06-05 354840] R2 MWLService;MyWinLocker Service; C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [2009-08-06 311592] R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-07-10 135848] R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-07-10 135848] R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2009-06-18 144640] R2 OneSyncSvc_Session1;Host synchroniseren_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] R2 Updater Service;Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2009-07-04 240160] R3 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-07-30 26112] R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S2 gupdate;Google Updateservice (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-05 144200] S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-06-18 1133880] S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-07-10 135848] S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S2 OneSyncSvc_Session4;Host synchroniseren_Session4; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S2 OneSyncSvc_Session68;Host synchroniseren_Session68; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-10-17 269000] S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136] S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696] S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2013-02-05 1512448] S3 fussvc;Windows App Certification Kit Fast User Switching Utility Service; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [2012-07-25 139776] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-05 144200] S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-22 194032] S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632] S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856] S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344] S3 NTIBackupSvc;NTI Backup Now 5 Backup Service; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2009-06-18 50432] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696] S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-10-28 2099208] S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 PimIndexMaintenanceSvc_Session1;Contact Data_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 PimIndexMaintenanceSvc_Session4;Contact Data_Session4; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 PimIndexMaintenanceSvc_Session68;Contact Data_Session68; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-07-30 1031680] S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856] S3 Te.Service;Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [2012-07-25 126976] S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 UnistoreSvc_Session1;User Data Storage_Session1; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 UnistoreSvc_Session4;User Data Storage_Session4; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S3 UnistoreSvc_Session68;User Data Storage_Session68; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856] S4 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-07-10 50352] -----------------EOF-----------------