Logfile of random's system information tool 1.10 (written by random/random) Run by Laura at 2016-02-29 20:46:46 Microsoft Windows 8.1 System drive C: has 228 GB (60%) free of 381 GB Total RAM: 8070 MB (59% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 20:46:51, on 29/02/2016 Platform: Unknown Windows (WinNT 6.02.1008) MSIE: Internet Explorer v11.0 (11.00.9600.18123) Boot mode: Normal Running processes: C:\Program Files (x86)\AVG\Av\avgui.exe C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe C:\Program Files (x86)\ASUS\Splendid\ACMON.exe C:\Windows\SysWOW64\ACEngSvr.exe C:\Program Files (x86)\CyberLink\Power2Go\Power2GoExpress.exe C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe C:\Program Files (x86)\AVG\Av\avgui.exe C:\Program Files (x86)\AVG\Framework\Common\avguix.exe C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe C:\WINDOWS\SysWOW64\ctfmon.exe C:\Program Files (x86)\TeamViewer\TeamViewer.exe C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files\trend micro\Laura.exe C:\Program Files (x86)\IObit\StartMenu8\StartMenu8.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.nl/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe, O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" O4 - HKLM\..\Run: [ASUSWebStorage] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSPanel.exe /S O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe" O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe" O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe" O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\Av\avuirunnerx.exe" C:\Program Files (x86)\AVG\Av\avgui.exe O4 - HKLM\..\Run: [AvgUi] "C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe" /lps=fmw O4 - HKLM\..\Run: [ConnectionCenter] "C:\Program Files (x86)\Citrix\ICA Client\concentr.exe" /startup O4 - HKLM\..\Run: [Redirector] "C:\Program Files (x86)\Citrix\ICA Client\redirector.exe" /startup O4 - HKCU\..\Run: [Power2GoExpress] "C:\Program Files (x86)\CyberLink\Power2Go\Power2GoExpress.exe" O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE" O4 - HKCU\..\Run: [BingSvc] C:\Users\Laura\AppData\Local\Microsoft\BingSvc\BingSvc.exe O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR O4 - HKUS\S-1-5-21-323482087-1925797687-2283501741-1001\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'UpdatusUser') O4 - HKUS\S-1-5-21-323482087-1925797687-2283501741-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User '?') O4 - HKUS\S-1-5-21-323482087-1925797687-2283501741-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User '?') O4 - HKUS\S-1-5-21-323482087-1925797687-2283501741-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\Run: [Power2GoExpress] "C:\Program Files (x86)\CyberLink\Power2Go\Power2GoExpress.exe" (User '?') O4 - HKUS\S-1-5-21-323482087-1925797687-2283501741-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe (User '?') O4 - HKUS\S-1-5-21-323482087-1925797687-2283501741-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR (User '?') O4 - HKUS\S-1-5-21-323482087-1925797687-2283501741-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\..\Run: [Power2GoExpress] "C:\Program Files (x86)\CyberLink\Power2Go\Power2GoExpress.exe" (User '?') O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000 O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - Trusted Zone: http://*.webcompanion.com O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O18 - Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter hijack: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing) O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe O23 - Service: AvgAMPS - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Av\avgamps.exe O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Av\avgidsagent.exe O23 - Service: AVG Service (avgsvc) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing) O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing) O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing) O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing) O23 - Service: StrartMenu8 Service (StrartMenuService) - IObit - C:\Program Files (x86)\IObit\StartMenu8\StartMenuServices.exe O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing) O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe -- End of file - 16933 bytes ======Listing Processes====== c:\PROGRA~2\AVG\Av\avgrsa.exe /boot wininit.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe -k DcomLaunch C:\WINDOWS\system32\svchost.exe -k RPCSS C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted C:\WINDOWS\system32\svchost.exe -k netsvcs C:\WINDOWS\system32\svchost.exe -k LocalService C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted C:\WINDOWS\system32\svchost.exe -k NetworkService "C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe" "C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe" C:\WINDOWS\System32\spoolsv.exe C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" "C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe" "C:\Program Files (x86)\Bluetooth Suite\adminservice.exe" "C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe" "C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe" "C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service "C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service C:\WINDOWS\System32\svchost.exe -k utcsvc "C:\Program Files\Intel\iCLS Client\HeciServer.exe" dashost.exe {2bd05d2e-f005-41f7-804a69da08024d32} "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe" "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe" "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe" "C:\Program Files (x86)\IObit\StartMenu8\StartMenuServices.exe" "C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe" "C:\Program Files (x86)\AVG\Av\avgnsa.exe" "C:\Program Files (x86)\AVG\Av\avgemca.exe" "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe" "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe" "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe" "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe" "C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe" C:\WINDOWS\system32\SearchIndexer.exe /Embedding C:\WINDOWS\system32\wbem\wmiprvse.exe C:\Program Files (x86)\AVG\Av\avgcsrva.exe /pipeName=44800c66-0200-0000-f476-8250d8c6920b /binaryPath="C:\Program Files (x86)\AVG\Av\\" /trayonly C:\WINDOWS\system32\wbem\wmiprvse.exe C:\WINDOWS\System32\WinLogon.exe -SpecialSession -hiberboot "C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe" "C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe" KBFiltr.exe C:\WINDOWS\Explorer.EXE "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray "C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" "C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683} taskhostex.exe "C:\Program Files\ASUS\P4G\BatteryLife.exe" "C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe" "C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe" "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s "C:\Windows\System32\hkcmd.exe" "C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe" "C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe" "C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe" "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" "C:\Program Files (x86)\ASUS\Splendid\ACMON.exe" "C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding "C:\Program Files (x86)\CyberLink\Power2Go\Power2GoExpress.exe" "C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE" "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun "C:\WINDOWS\system32\GWX\GWX.exe" "C:\Windows\System32\StikyNot.exe" "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe" "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe" /TRAYONLY "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac /fmw.trayonly "C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe" "C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe" ctfmon.exe "C:\Program Files (x86)\TeamViewer\TeamViewer.exe" "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe" "C:\Program Files (x86)\TeamViewer\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer11_Logfile.log "C:\Program Files (x86)\TeamViewer\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer11_Logfile.log "c:\program files (x86)\teamviewer\TeamViewer_Desktop.exe" --IPCport 5939 "C:\Program Files\Internet Explorer\IEXPLORE.EXE" "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:17700 CREDAT:267521 /prefetch:2 "C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-323482087-1925797687-2283501741-100255_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-323482087-1925797687-2283501741-100255 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1" "C:\WINDOWS\system32\SearchFilterHost.exe" 0 584 588 596 65536 592 "C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe" -Embedding "C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe56_ Global\UsGthrCtrlFltPipeMssGthrPipe56 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "C:\Users\Laura\Desktop\RSITx64.exe" C:\WINDOWS\System32\svchost.exe -k WerSvcGroup "C:\Program Files (x86)\IObit\StartMenu8\StartMenu8.exe" "C:\Program Files (x86)\IObit\StartMenu8\StartMenu_Hook.exe" "C:\Program Files (x86)\IObit\StartMenu8\InstallServices64.exe" /loaddll ======Scheduled tasks folder====== C:\WINDOWS\tasks\0116avzUpdateInfo.job - C:\ProgramData\Avg_Update_0116avz\0116avz_AVG-Secure-Search-Update.exe /SETINFO /CMPID=0116avz /INFORETRY=3 /RUNBY=AV C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 6671064] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}] CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2012-09-29 64640] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08 2134656] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}] Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-09-24 343456] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08 1725056] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}] SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-09-24 343456] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar] {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-09-24 343456] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-06-11 12503184] "IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2013-10-01 391128] "HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2013-10-01 771032] "Persistence"=C:\WINDOWS\system32\igfxpers.exe [2013-10-01 769496] "NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-11-17 1804432] "BtTray"=C:\Program Files (x86)\Bluetooth Suite\BtTray.exe [2012-09-29 765056] "BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-09-29 127616] "ACMON"=C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2012-09-11 107192] "AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Power2GoExpress"=C:\Program Files (x86)\CyberLink\Power2Go\Power2GoExpress.exe [2012-05-14 2646504] "OfficeSyncProcess"=C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [2015-09-02 721504] "BingSvc"=C:\Users\Laura\AppData\Local\Microsoft\BingSvc\BingSvc.exe [2015-11-13 144008] "Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-02-10 50599552] "RESTART_STICKY_NOTES"=C:\Windows\System32\StikyNot.exe [2014-11-21 479744] "CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-01-15 8619224] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2015-09-24 40336] "RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-28 91432] "ASUSWebStorage"=C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSPanel.exe [2012-08-28 3417984] "CLMLServer"=C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2011-03-09 107816] "BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184] "SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096] "AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312] ""= [] "Adobe Acrobat Speed Launcher"=C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [2015-09-24 41360] "Acrobat Assistant 8.0"=C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2015-09-24 840592] "AVG_UI"=C:\Program Files (x86)\AVG\Av\avuirunnerx.exe [2016-02-01 25512] "AvgUi"=C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe [2016-01-12 179624] "ConnectionCenter"=C:\Program Files (x86)\Citrix\ICA Client\concentr.exe [2015-09-13 518456] "Redirector"=C:\Program Files (x86)\Citrix\ICA Client\redirector.exe [2015-09-13 231736] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\Windows\system32\nvinitx.dll, C:\WINDOWS\system32\nvinitx.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] C:\WINDOWS\system32\igfxdev.dll [2013-10-01 623104] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 6671064] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "DisableCAD"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "VIDC.YUY2"=msyuv.dll "vidc.i420"=iyuv_32.dll "msacm.msgsm610"=msgsm32.acm "msacm.msg711"=msg711.acm "VIDC.YVYU"=msyuv.dll "VIDC.YVU9"=tsbyuv.dll "wavemapper"=msacm32.drv "midimapper"=midimap.dll "VIDC.UYVY"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.mrle"=msrle32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msadpcm"=msadp32.acm "vidc.msvc"=msvidc32.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv "MSVideo8"=VfWWDM32.dll "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "wave3"=wdmaud.drv "mixer3"=wdmaud.drv "midi3"=wdmaud.drv "wave4"=wdmaud.drv "midi4"=wdmaud.drv "mixer4"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2016-02-29 20:46:46 ----D---- C:\rsit 2016-02-29 20:46:46 ----D---- C:\Program Files\trend micro 2016-02-23 23:32:19 ----D---- C:\Users\Laura\AppData\Roaming\TeamViewer 2016-02-23 23:32:13 ----D---- C:\Program Files (x86)\TeamViewer 2016-02-22 23:07:35 ----SD---- C:\WINDOWS\SYSWOW64\GWX 2016-02-22 23:07:35 ----SD---- C:\WINDOWS\system32\GWX 2016-02-22 23:07:35 ----D---- C:\WINDOWS\system32\appraiser 2016-02-22 23:03:24 ----A---- C:\WINDOWS\system32\aspnet_counters.dll 2016-02-22 23:03:23 ----A---- C:\WINDOWS\SYSWOW64\aspnet_counters.dll 2016-02-22 23:00:59 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll 2016-02-22 23:00:59 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2016-02-20 22:19:18 ----D---- C:\searchplugins 2016-02-20 22:19:17 ----A---- C:\Prefs.js 2016-02-20 22:13:28 ----D---- C:\AdwCleaner 2016-02-20 22:10:12 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe 2016-02-20 22:10:11 ----A---- C:\WINDOWS\system32\generaltel.dll 2016-02-20 22:10:11 ----A---- C:\WINDOWS\system32\devinv.dll 2016-02-20 22:10:11 ----A---- C:\WINDOWS\system32\appraiser.dll 2016-02-20 22:10:11 ----A---- C:\WINDOWS\system32\acmigration.dll 2016-02-20 22:10:10 ----A---- C:\WINDOWS\system32\invagent.dll 2016-02-20 22:10:10 ----A---- C:\WINDOWS\system32\aepic.dll 2016-02-20 22:10:10 ----A---- C:\WINDOWS\system32\aeinv.dll 2016-02-20 22:10:01 ----A---- C:\WINDOWS\system32\shell32.dll 2016-02-20 22:10:00 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll 2016-02-20 22:10:00 ----A---- C:\WINDOWS\system32\twinui.dll 2016-02-20 22:09:59 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll 2016-02-20 22:09:59 ----A---- C:\WINDOWS\system32\authui.dll 2016-02-20 22:09:58 ----A---- C:\WINDOWS\SYSWOW64\authui.dll 2016-02-20 22:09:30 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2016-02-20 22:09:26 ----A---- C:\WINDOWS\system32\sppobjs.dll 2016-02-20 21:51:09 ----D---- C:\Program Files\CCleaner 2016-02-20 21:19:37 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys 2016-02-20 21:19:25 ----D---- C:\ProgramData\Malwarebytes 2016-02-20 21:19:25 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware 2016-02-20 21:19:25 ----A---- C:\WINDOWS\system32\drivers\mwac.sys 2016-02-20 21:19:25 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys 2016-02-20 21:19:25 ----A---- C:\WINDOWS\system32\drivers\mbam.sys 2016-02-19 22:50:07 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe 2016-02-19 22:50:07 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe 2016-02-19 22:40:56 ----A---- C:\WINDOWS\SYSWOW64\LavasoftTcpServiceOff.ini 2016-02-19 22:40:53 ----A---- C:\WINDOWS\SYSWOW64\LavasoftTcpService.dll 2016-02-19 22:40:30 ----D---- C:\ProgramData\MegaBackup Corp 2016-02-19 22:40:11 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll 2016-02-19 22:40:11 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll 2016-02-19 22:36:57 ----A---- C:\WINDOWS\system32\tzsync.exe 2016-02-17 22:59:18 ----SHD---- C:\ProgramData\Sjablonen 2016-02-17 22:59:18 ----SHD---- C:\ProgramData\Menu Start 2016-02-17 22:59:18 ----SHD---- C:\ProgramData\Documenten 2016-02-17 22:59:18 ----SHD---- C:\ProgramData\Bureaublad 2016-02-17 22:57:55 ----A---- C:\WINDOWS\system32\emptyregdb.dat 2016-02-17 22:36:38 ----SD---- C:\Users\Laura\AppData\Roaming\Microsoft 2016-02-17 22:31:08 ----A---- C:\WINDOWS\system32\nvvsvc.exe 2016-02-17 22:31:08 ----A---- C:\WINDOWS\system32\nvsvcr.dll 2016-02-17 22:31:08 ----A---- C:\WINDOWS\system32\nvsvc64.dll 2016-02-17 22:31:08 ----A---- C:\WINDOWS\system32\nvshext.dll 2016-02-17 22:31:08 ----A---- C:\WINDOWS\system32\nvmctray.dll 2016-02-17 22:31:08 ----A---- C:\WINDOWS\system32\nvcpl.dll 2016-02-17 22:31:08 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll 2016-02-17 22:31:08 ----A---- C:\WINDOWS\system32\nv3dappshext.dll 2016-02-17 22:30:42 ----D---- C:\ProgramData\NVIDIA Corporation 2016-02-17 22:30:36 ----D---- C:\Program Files\NVIDIA Corporation 2016-02-17 22:30:36 ----D---- C:\Program Files (x86)\NVIDIA Corporation 2016-02-17 22:30:32 ----D---- C:\Program Files (x86)\Intel 2016-02-17 22:30:30 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL 2016-02-17 22:30:30 ----A---- C:\WINDOWS\system32\OpenCL.DLL 2016-02-17 22:29:57 ----D---- C:\ProgramData\SonicFocus 2016-02-17 22:29:55 ----D---- C:\WINDOWS\SYSWOW64\RTCOM 2016-02-17 22:29:55 ----D---- C:\Program Files\Realtek 2016-02-17 22:29:27 ----D---- C:\WINDOWS\Prefetch 2016-02-17 22:27:06 ----SHD---- C:\Recovery 2016-02-17 22:26:54 ----DC---- C:\WINDOWS\Panther 2016-02-17 22:25:44 ----D---- C:\Windows.old 2016-02-17 22:25:13 ----A---- C:\WINDOWS\system32\fhcpl.dll 2016-02-17 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll 2016-02-17 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll 2016-02-17 22:25:01 ----A---- C:\WINDOWS\system32\rdvidcrl.dll 2016-02-17 22:25:01 ----A---- C:\WINDOWS\system32\mstscax.dll 2016-02-17 22:24:50 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll 2016-02-17 22:24:50 ----A---- C:\WINDOWS\system32\d2d1.dll 2016-02-17 22:24:44 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\WinSCard.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\rasser.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\rasmxs.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\rasdiag.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\rascfg.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\QSVRMGMT.DLL 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\QSHVHOST.DLL 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\eventcls.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\WSDMon.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\WSDApi.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\WinSCard.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\VSSVC.exe 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\vsstrace.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\vssapi.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\vpnike.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\SyncEngine.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\spoolsv.exe 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\SkyDrive.exe 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\rasser.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\rasmxs.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\rasdiag.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\rascfg.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\rasapi32.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\QSVRMGMT.DLL 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\QSHVHOST.DLL 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\mfplat.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\eventcls.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\drivers\dam.sys 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\dnsrslvr.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\dnsapi.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\DevicePairing.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll 2016-02-17 22:24:25 ----A---- C:\WINDOWS\splwow64.exe 2016-02-17 22:24:24 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys 2016-02-17 22:24:24 ----A---- C:\WINDOWS\system32\drivers\pdc.sys 2016-02-17 22:24:24 ----A---- C:\WINDOWS\system32\drivers\netio.sys 2016-02-17 22:24:24 ----A---- C:\WINDOWS\system32\drivers\intelpep.sys 2016-02-17 22:23:29 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll 2016-02-17 22:23:29 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll 2016-02-17 22:23:29 ----A---- C:\WINDOWS\system32\dbghelp.dll 2016-02-17 22:23:29 ----A---- C:\WINDOWS\system32\dbgeng.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\WMVXENCD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\WMVSENCD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\WMVSDECD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\WMVENCOD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\WMVDECOD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOE.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\WMADMOE.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\VIDRESZR.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\RESAMPLEDMO.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2adec.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\MPG4DECD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\MP4SDECD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\MP43DECD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\MP3DMOD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\MFWMAAEC.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\mfvdsp.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\evr.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\devenum.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\SYSWOW64\COLORCNV.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\WMVXENCD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\WMVSENCD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\WMVSDECD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\WMVENCOD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\WMADMOE.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\WMADMOD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\VIDRESZR.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\SysFxUI.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\RESAMPLEDMO.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\quartz.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\qdvd.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\msmpeg2adec.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\MPG4DECD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\MP4SDECD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\MP43DECD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\MP3DMOD.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\MFWMAAEC.DLL 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\mfvdsp.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\mfsvr.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\mfps.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\mfnetsrc.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\mfnetcore.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\mfcore.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\evr.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\devenum.dll 2016-02-17 22:23:14 ----A---- C:\WINDOWS\system32\COLORCNV.DLL 2016-02-17 22:23:01 ----A---- C:\WINDOWS\SYSWOW64\PhotoMetadataHandler.dll 2016-02-17 22:23:01 ----A---- C:\WINDOWS\system32\PhotoMetadataHandler.dll 2016-02-17 22:22:56 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe 2016-02-17 22:22:56 ----A---- C:\WINDOWS\system32\notepad.exe 2016-02-17 22:22:56 ----A---- C:\WINDOWS\notepad.exe 2016-02-17 22:22:51 ----A---- C:\WINDOWS\system32\drivers\udfs.sys 2016-02-17 22:22:41 ----A---- C:\WINDOWS\SYSWOW64\authz.dll 2016-02-17 22:22:41 ----A---- C:\WINDOWS\system32\authz.dll 2016-02-17 22:22:36 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll 2016-02-17 22:22:36 ----A---- C:\WINDOWS\system32\MrmCoreR.dll 2016-02-17 22:22:28 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll 2016-02-17 22:22:28 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2016-02-17 22:22:28 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2016-02-17 22:22:28 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll 2016-02-17 22:22:28 ----A---- C:\WINDOWS\system32\MDMAgent.exe 2016-02-17 22:22:18 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe 2016-02-17 22:22:18 ----A---- C:\WINDOWS\SYSWOW64\msi.dll 2016-02-17 22:22:18 ----A---- C:\WINDOWS\system32\msiexec.exe 2016-02-17 22:22:18 ----A---- C:\WINDOWS\system32\msi.dll 2016-02-17 22:22:12 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll 2016-02-17 22:22:12 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll 2016-02-17 22:22:06 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll 2016-02-17 22:22:06 ----A---- C:\WINDOWS\system32\oleaut32.dll 2016-02-17 22:21:51 ----A---- C:\WINDOWS\system32\fveapi.dll 2016-02-17 22:21:51 ----A---- C:\WINDOWS\system32\bdesvc.dll 2016-02-17 22:21:42 ----A---- C:\WINDOWS\system32\drivers\sermouse.sys 2016-02-17 22:21:42 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys 2016-02-17 22:21:42 ----A---- C:\WINDOWS\system32\drivers\mouclass.sys 2016-02-17 22:21:42 ----A---- C:\WINDOWS\system32\drivers\kbdhid.sys 2016-02-17 22:21:42 ----A---- C:\WINDOWS\system32\drivers\kbdclass.sys 2016-02-17 22:21:42 ----A---- C:\WINDOWS\system32\drivers\i8042prt.sys 2016-02-17 22:21:32 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll 2016-02-17 22:21:32 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll 2016-02-17 22:21:12 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll 2016-02-17 22:21:12 ----A---- C:\WINDOWS\system32\gdi32.dll 2016-02-17 22:21:04 ----A---- C:\WINDOWS\SYSWOW64\mtxoci.dll 2016-02-17 22:21:04 ----A---- C:\WINDOWS\SYSWOW64\msorcl32.dll 2016-02-17 22:21:04 ----A---- C:\WINDOWS\SYSWOW64\EncDec.dll 2016-02-17 22:21:04 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll 2016-02-17 22:21:04 ----A---- C:\WINDOWS\SYSWOW64\cfgbkend.dll 2016-02-17 22:21:04 ----A---- C:\WINDOWS\system32\mtxoci.dll 2016-02-17 22:21:04 ----A---- C:\WINDOWS\system32\EncDec.dll 2016-02-17 22:21:04 ----A---- C:\WINDOWS\system32\CPFilters.dll 2016-02-17 22:21:04 ----A---- C:\WINDOWS\system32\cfgbkend.dll 2016-02-17 22:20:41 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll 2016-02-17 22:20:18 ----A---- C:\WINDOWS\system32\drivers\bthhfenum.sys 2016-02-17 22:20:12 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll 2016-02-17 22:20:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2016-02-17 22:20:12 ----A---- C:\WINDOWS\system32\WSShared.dll 2016-02-17 22:20:12 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2016-02-17 22:19:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll 2016-02-17 22:19:56 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll 2016-02-17 22:19:48 ----A---- C:\WINDOWS\system32\nlasvc.dll 2016-02-17 22:19:48 ----A---- C:\WINDOWS\system32\ncsi.dll 2016-02-17 22:19:43 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe 2016-02-17 22:19:33 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll 2016-02-17 22:19:33 ----A---- C:\WINDOWS\system32\crypt32.dll 2016-02-17 22:19:27 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll 2016-02-17 22:19:27 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll 2016-02-17 22:19:27 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll 2016-02-17 22:19:27 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll 2016-02-17 22:19:27 ----A---- C:\WINDOWS\system32\eapphost.dll 2016-02-17 22:19:27 ----A---- C:\WINDOWS\system32\eappgnui.dll 2016-02-17 22:19:27 ----A---- C:\WINDOWS\system32\eappcfg.dll 2016-02-17 22:19:27 ----A---- C:\WINDOWS\system32\eapp3hst.dll 2016-02-17 22:19:21 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll 2016-02-17 22:19:21 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL 2016-02-17 22:19:21 ----A---- C:\WINDOWS\system32\nshwfp.dll 2016-02-17 22:19:21 ----A---- C:\WINDOWS\system32\IKEEXT.DLL 2016-02-17 22:19:21 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL 2016-02-17 22:19:21 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys 2016-02-17 22:19:21 ----A---- C:\WINDOWS\system32\BFE.DLL 2016-02-17 22:19:12 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll 2016-02-17 22:19:12 ----A---- C:\WINDOWS\system32\UtcResources.dll 2016-02-17 22:19:12 ----A---- C:\WINDOWS\system32\tdh.dll 2016-02-17 22:19:12 ----A---- C:\WINDOWS\system32\diagtrack.dll 2016-02-17 22:18:49 ----A---- C:\WINDOWS\system32\rdpudd.dll 2016-02-17 22:18:49 ----A---- C:\WINDOWS\system32\rdpcorets.dll 2016-02-17 22:18:33 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll 2016-02-17 22:18:33 ----A---- C:\WINDOWS\system32\comctl32.dll 2016-02-17 22:18:28 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll 2016-02-17 22:18:28 ----A---- C:\WINDOWS\system32\WMPhoto.dll 2016-02-17 22:18:23 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll 2016-02-17 22:18:23 ----A---- C:\WINDOWS\system32\ole32.dll 2016-02-17 22:18:16 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll 2016-02-17 22:18:16 ----A---- C:\WINDOWS\system32\drivers\clfs.sys 2016-02-17 22:18:16 ----A---- C:\WINDOWS\system32\clfsw32.dll 2016-02-17 22:18:10 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe 2016-02-17 22:18:10 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll 2016-02-17 22:18:10 ----A---- C:\WINDOWS\system32\tracerpt.exe 2016-02-17 22:18:10 ----A---- C:\WINDOWS\system32\sechost.dll 2016-02-17 22:17:55 ----A---- C:\WINDOWS\system32\drivers\usb8023.sys 2016-02-17 22:17:41 ----A---- C:\WINDOWS\system32\csrsrv.dll 2016-02-17 22:17:41 ----A---- C:\WINDOWS\system32\basesrv.dll 2016-02-17 22:17:34 ----A---- C:\WINDOWS\SYSWOW64\WinSync.dll 2016-02-17 22:17:34 ----A---- C:\WINDOWS\system32\WinSync.dll 2016-02-17 22:17:28 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys 2016-02-17 22:17:28 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys 2016-02-17 22:17:24 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll 2016-02-17 22:17:24 ----A---- C:\WINDOWS\system32\msctf.dll 2016-02-17 22:17:18 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys 2016-02-17 22:17:18 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS 2016-02-17 22:17:11 ----A---- C:\WINDOWS\system32\drivers\bthpan.sys 2016-02-17 22:17:05 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys 2016-02-17 22:16:56 ----A---- C:\WINDOWS\SYSWOW64\msvcp120_clr0400.dll 2016-02-17 22:16:56 ----A---- C:\WINDOWS\system32\msvcp120_clr0400.dll 2016-02-17 22:16:36 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe 2016-02-17 22:16:24 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll 2016-02-17 22:16:24 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll 2016-02-17 22:16:24 ----A---- C:\WINDOWS\system32\comsvcs.dll 2016-02-17 22:16:24 ----A---- C:\WINDOWS\system32\catsrvut.dll 2016-02-17 22:16:16 ----A---- C:\WINDOWS\system32\winlogon.exe 2016-02-17 22:16:16 ----A---- C:\WINDOWS\system32\wininit.exe 2016-02-17 22:16:02 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys 2016-02-17 22:16:02 ----A---- C:\WINDOWS\system32\drivers\hidbth.sys 2016-02-17 22:16:02 ----A---- C:\WINDOWS\system32\drivers\bthport.sys 2016-02-17 22:15:25 ----A---- C:\WINDOWS\SYSWOW64\wpdshext.dll 2016-02-17 22:15:25 ----A---- C:\WINDOWS\system32\wpdshext.dll 2016-02-17 22:15:20 ----A---- C:\WINDOWS\SYSWOW64\mfc42u.dll 2016-02-17 22:15:20 ----A---- C:\WINDOWS\SYSWOW64\mfc42.dll 2016-02-17 22:15:20 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll 2016-02-17 22:15:20 ----A---- C:\WINDOWS\system32\mfc42u.dll 2016-02-17 22:15:20 ----A---- C:\WINDOWS\system32\mfc42.dll 2016-02-17 22:15:20 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll 2016-02-17 22:15:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll 2016-02-17 22:15:13 ----A---- C:\WINDOWS\SYSWOW64\glcndFilter.dll 2016-02-17 22:15:13 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-02-17 22:15:13 ----A---- C:\WINDOWS\system32\glcndFilter.dll 2016-02-17 22:15:00 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll 2016-02-17 22:15:00 ----A---- C:\WINDOWS\system32\qedit.dll 2016-02-17 22:14:42 ----A---- C:\WINDOWS\system32\drivers\tpm.sys 2016-02-17 22:14:38 ----A---- C:\WINDOWS\system32\NcdAutoSetup.dll 2016-02-17 22:14:33 ----A---- C:\WINDOWS\system32\ubpm.dll 2016-02-17 22:14:25 ----A---- C:\WINDOWS\system32\lsm.dll 2016-02-17 22:14:19 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS 2016-02-17 22:14:08 ----A---- C:\WINDOWS\system32\wevtsvc.dll 2016-02-17 22:14:04 ----A---- C:\WINDOWS\SYSWOW64\rgb9rast.dll 2016-02-17 22:13:48 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll 2016-02-17 22:13:48 ----A---- C:\WINDOWS\system32\advapi32.dll 2016-02-17 22:13:40 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll 2016-02-17 22:13:40 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll 2016-02-17 22:13:40 ----A---- C:\WINDOWS\system32\msv1_0.dll 2016-02-17 22:13:40 ----A---- C:\WINDOWS\system32\lsasrv.dll 2016-02-17 22:13:40 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys 2016-02-17 22:13:40 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys 2016-02-17 22:13:40 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys 2016-02-17 22:13:40 ----A---- C:\WINDOWS\system32\drivers\cng.sys 2016-02-17 22:13:40 ----A---- C:\WINDOWS\system32\dpapisrv.dll 2016-02-17 22:13:40 ----A---- C:\WINDOWS\system32\certcli.dll 2016-02-17 22:13:27 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll 2016-02-17 22:13:27 ----A---- C:\WINDOWS\system32\rpcrt4.dll 2016-02-17 22:13:16 ----A---- C:\WINDOWS\system32\apphelp.dll 2016-02-17 22:13:09 ----A---- C:\WINDOWS\SYSWOW64\StorageContextHandler.dll 2016-02-17 22:13:09 ----A---- C:\WINDOWS\system32\StorageContextHandler.dll 2016-02-17 22:13:03 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll 2016-02-17 22:13:03 ----A---- C:\WINDOWS\system32\kerberos.dll 2016-02-17 22:12:59 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll 2016-02-17 22:12:59 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll 2016-02-17 22:12:50 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll 2016-02-17 22:12:50 ----A---- C:\WINDOWS\system32\win32spl.dll 2016-02-17 22:12:50 ----A---- C:\WINDOWS\system32\puiobj.dll 2016-02-17 22:12:50 ----A---- C:\WINDOWS\system32\localspl.dll 2016-02-17 22:12:50 ----A---- C:\WINDOWS\system32\compstui.dll 2016-02-17 22:12:43 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll 2016-02-17 22:12:43 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll 2016-02-17 22:12:43 ----A---- C:\WINDOWS\system32\atmlib.dll 2016-02-17 22:12:43 ----A---- C:\WINDOWS\system32\atmfd.dll 2016-02-17 22:12:32 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll 2016-02-17 22:12:32 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll 2016-02-17 22:12:32 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll 2016-02-17 22:12:32 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll 2016-02-17 22:12:32 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll 2016-02-17 22:12:32 ----A---- C:\WINDOWS\SYSWOW64\combase.dll 2016-02-17 22:12:32 ----A---- C:\WINDOWS\system32\WinTypes.dll 2016-02-17 22:12:32 ----A---- C:\WINDOWS\system32\winresume.exe 2016-02-17 22:12:32 ----A---- C:\WINDOWS\system32\winload.exe 2016-02-17 22:12:32 ----A---- C:\WINDOWS\system32\ntvdm64.dll 2016-02-17 22:12:32 ----A---- C:\WINDOWS\system32\ntoskrnl.exe 2016-02-17 22:12:32 ----A---- C:\WINDOWS\system32\ntdll.dll 2016-02-17 22:12:32 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll 2016-02-17 22:12:32 ----A---- C:\WINDOWS\system32\KernelBase.dll 2016-02-17 22:12:32 ----A---- C:\WINDOWS\system32\combase.dll 2016-02-17 22:12:19 ----A---- C:\WINDOWS\system32\drivers\usbuhci.sys 2016-02-17 22:12:19 ----A---- C:\WINDOWS\system32\drivers\usbport.sys 2016-02-17 22:12:19 ----A---- C:\WINDOWS\system32\drivers\usbohci.sys 2016-02-17 22:12:19 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS 2016-02-17 22:12:19 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys 2016-02-17 22:12:19 ----A---- C:\WINDOWS\system32\drivers\usbehci.sys 2016-02-17 22:12:19 ----A---- C:\WINDOWS\system32\drivers\usbd.sys 2016-02-17 22:12:11 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll 2016-02-17 22:12:11 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll 2016-02-17 22:12:03 ----A---- C:\WINDOWS\system32\services.exe 2016-02-17 22:11:55 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll 2016-02-17 22:11:55 ----A---- C:\WINDOWS\SYSWOW64\wups.dll 2016-02-17 22:11:55 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll 2016-02-17 22:11:55 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe 2016-02-17 22:11:55 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll 2016-02-17 22:11:55 ----A---- C:\WINDOWS\system32\wuwebv.dll 2016-02-17 22:11:55 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll 2016-02-17 22:11:55 ----A---- C:\WINDOWS\system32\wups2.dll 2016-02-17 22:11:55 ----A---- C:\WINDOWS\system32\wups.dll 2016-02-17 22:11:55 ----A---- C:\WINDOWS\system32\wudriver.dll 2016-02-17 22:11:55 ----A---- C:\WINDOWS\system32\wucltux.dll 2016-02-17 22:11:55 ----A---- C:\WINDOWS\system32\wuaueng.dll 2016-02-17 22:11:55 ----A---- C:\WINDOWS\system32\wuauclt.exe 2016-02-17 22:11:55 ----A---- C:\WINDOWS\system32\wuapp.exe 2016-02-17 22:11:55 ----A---- C:\WINDOWS\system32\wuapi.dll 2016-02-17 22:11:55 ----A---- C:\WINDOWS\system32\WinSetupUI.dll 2016-02-17 22:11:47 ----A---- C:\WINDOWS\SYSWOW64\netcfgx.dll 2016-02-17 22:11:47 ----A---- C:\WINDOWS\system32\netcfgx.dll 2016-02-17 22:11:47 ----A---- C:\WINDOWS\system32\drivers\ndis.sys 2016-02-17 22:11:33 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll 2016-02-17 22:11:33 ----A---- C:\WINDOWS\system32\SRH.dll 2016-02-17 22:11:20 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll 2016-02-17 22:11:20 ----A---- C:\WINDOWS\system32\winshfhc.dll 2016-02-17 22:11:20 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys 2016-02-17 22:11:20 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys 2016-02-17 22:11:20 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys 2016-02-17 22:11:13 ----A---- C:\WINDOWS\SYSWOW64\taskeng.exe 2016-02-17 22:11:13 ----A---- C:\WINDOWS\SYSWOW64\schtasks.exe 2016-02-17 22:11:13 ----A---- C:\WINDOWS\system32\taskeng.exe 2016-02-17 22:11:13 ----A---- C:\WINDOWS\system32\schtasks.exe 2016-02-17 22:11:13 ----A---- C:\WINDOWS\system32\schedsvc.dll 2016-02-17 22:11:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll 2016-02-17 22:11:08 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2016-02-17 22:11:03 ----A---- C:\WINDOWS\SYSWOW64\calc.exe 2016-02-17 22:11:03 ----A---- C:\WINDOWS\system32\calc.exe 2016-02-17 22:10:49 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll 2016-02-17 22:10:49 ----A---- C:\WINDOWS\SYSWOW64\davclnt.dll 2016-02-17 22:10:49 ----A---- C:\WINDOWS\system32\WebClnt.dll 2016-02-17 22:10:49 ----A---- C:\WINDOWS\system32\davclnt.dll 2016-02-17 22:10:40 ----A---- C:\WINDOWS\system32\wuaext.dll 2016-02-17 22:10:40 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll 2016-02-17 22:10:40 ----A---- C:\WINDOWS\system32\storewuauth.dll 2016-02-17 22:10:31 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll 2016-02-17 22:10:31 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll 2016-02-17 22:10:31 ----A---- C:\WINDOWS\system32\msxml6.dll 2016-02-17 22:10:31 ----A---- C:\WINDOWS\system32\msxml3.dll 2016-02-17 22:10:24 ----A---- C:\WINDOWS\system32\AuthHost.exe 2016-02-17 22:10:21 ----A---- C:\WINDOWS\system32\win32k.sys 2016-02-17 22:10:17 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll 2016-02-17 22:10:17 ----A---- C:\WINDOWS\system32\pku2u.dll 2016-02-17 22:10:11 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll 2016-02-17 22:10:11 ----A---- C:\WINDOWS\SYSWOW64\user.exe 2016-02-17 22:10:11 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe 2016-02-17 22:10:11 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe 2016-02-17 22:10:11 ----A---- C:\WINDOWS\system32\wow64cpu.dll 2016-02-17 22:10:11 ----A---- C:\WINDOWS\system32\wow64.dll 2016-02-17 22:10:11 ----A---- C:\WINDOWS\system32\sysmain.dll 2016-02-17 22:10:11 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys 2016-02-17 22:09:44 ----A---- C:\WINDOWS\SYSWOW64\InkEd.dll 2016-02-17 22:09:44 ----A---- C:\WINDOWS\system32\InkEd.dll 2016-02-17 22:09:37 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll 2016-02-17 22:09:37 ----A---- C:\WINDOWS\system32\SHCore.dll 2016-02-17 22:09:30 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys 2016-02-17 22:08:42 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys 2016-02-17 22:08:32 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll 2016-02-17 22:08:32 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll 2016-02-17 22:08:32 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll 2016-02-17 22:08:32 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll 2016-02-17 22:08:32 ----A---- C:\WINDOWS\system32\urlmon.dll 2016-02-17 22:08:32 ----A---- C:\WINDOWS\system32\mshtml.dll 2016-02-17 22:08:32 ----A---- C:\WINDOWS\system32\iertutil.dll 2016-02-17 22:08:32 ----A---- C:\WINDOWS\system32\ieframe.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\wininet.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\webcheck.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\vbscript.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\msrating.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\mshtmled.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\MshtmlDac.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\msfeeds.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\jscript9diag.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\jscript9.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\jscript.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\inseng.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\inetcomm.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\ieui.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\iepeers.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\iedkcs32.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\ieapfltr.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\ie4uinit.exe 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\hlink.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\dxtrans.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\dxtmsft.dll 2016-02-17 22:08:04 ----A---- C:\WINDOWS\system32\actxprxy.dll 2016-02-17 22:07:36 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll 2016-02-17 22:07:36 ----A---- C:\WINDOWS\system32\dwmcore.dll 2016-02-17 22:07:33 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys 2016-02-17 22:07:27 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll 2016-02-17 22:07:27 ----A---- C:\WINDOWS\system32\scesrv.dll 2016-02-17 22:07:25 ----A---- C:\WINDOWS\SYSWOW64\atlthunk.dll 2016-02-17 22:07:23 ----A---- C:\WINDOWS\system32\profsvc.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\ucrtbase.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\ucrtbase.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll 2016-02-17 22:07:15 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll 2016-02-17 22:07:02 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll 2016-02-17 22:07:02 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe 2016-02-17 22:07:02 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe 2016-02-17 22:07:02 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll 2016-02-17 22:07:02 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll 2016-02-17 22:07:02 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll 2016-02-17 22:07:02 ----A---- C:\WINDOWS\system32\tquery.dll 2016-02-17 22:07:02 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe 2016-02-17 22:07:02 ----A---- C:\WINDOWS\system32\SearchIndexer.exe 2016-02-17 22:07:02 ----A---- C:\WINDOWS\system32\mssvp.dll 2016-02-17 22:07:02 ----A---- C:\WINDOWS\system32\mssrch.dll 2016-02-17 22:07:02 ----A---- C:\WINDOWS\system32\mssphtb.dll 2016-02-17 22:07:02 ----A---- C:\WINDOWS\system32\mssph.dll 2016-02-17 22:06:01 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe 2016-02-17 22:06:01 ----A---- C:\WINDOWS\explorer.exe 2016-02-17 22:05:59 ----A---- C:\WINDOWS\system32\consent.exe 2016-02-17 22:05:57 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll 2016-02-17 22:05:57 ----A---- C:\WINDOWS\system32\untfs.dll 2016-02-17 22:05:50 ----A---- C:\WINDOWS\SYSWOW64\user32.dll 2016-02-17 22:05:50 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll 2016-02-17 22:05:50 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll 2016-02-17 22:05:50 ----A---- C:\WINDOWS\system32\user32.dll 2016-02-17 22:05:50 ----A---- C:\WINDOWS\system32\GdiPlus.dll 2016-02-17 22:05:50 ----A---- C:\WINDOWS\system32\FntCache.dll 2016-02-17 22:05:50 ----A---- C:\WINDOWS\system32\DWrite.dll 2016-02-17 22:05:38 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll 2016-02-17 22:05:38 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll 2016-02-17 22:05:38 ----A---- C:\WINDOWS\SYSWOW64\ncrypt.dll 2016-02-17 22:05:38 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll 2016-02-17 22:05:38 ----A---- C:\WINDOWS\system32\schannel.dll 2016-02-17 22:05:38 ----A---- C:\WINDOWS\system32\ncryptsslp.dll 2016-02-17 22:05:38 ----A---- C:\WINDOWS\system32\ncrypt.dll 2016-02-17 22:05:38 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys 2016-02-17 22:05:38 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll 2016-02-17 22:05:31 ----A---- C:\WINDOWS\system32\drivers\tdx.sys 2016-02-17 22:05:31 ----A---- C:\WINDOWS\system32\drivers\afd.sys 2016-02-17 22:05:28 ----A---- C:\WINDOWS\SYSWOW64\GeofenceMonitorService.dll 2016-02-17 22:05:28 ----A---- C:\WINDOWS\system32\GeofenceMonitorService.dll 2016-02-17 22:05:24 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe 2016-02-17 22:05:24 ----A---- C:\WINDOWS\system32\poqexec.exe 2016-02-17 22:05:18 ----A---- C:\WINDOWS\SYSWOW64\rastapi.dll 2016-02-17 22:05:18 ----A---- C:\WINDOWS\system32\rastapi.dll 2016-02-17 22:05:14 ----A---- C:\WINDOWS\SYSWOW64\PCPKsp.dll 2016-02-17 22:05:14 ----A---- C:\WINDOWS\system32\PCPKsp.dll 2016-02-17 22:05:11 ----A---- C:\WINDOWS\system32\drivers\http.sys 2016-02-17 22:04:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll 2016-02-17 22:04:56 ----A---- C:\WINDOWS\SYSWOW64\shacct.dll 2016-02-17 22:04:56 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll 2016-02-17 22:04:56 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll 2016-02-17 22:04:56 ----A---- C:\WINDOWS\system32\shacct.dll 2016-02-17 22:04:56 ----A---- C:\WINDOWS\system32\SettingSync.dll 2016-02-17 22:04:53 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll 2016-02-17 22:04:53 ----A---- C:\WINDOWS\system32\msftedit.dll 2016-02-17 22:04:50 ----A---- C:\WINDOWS\SYSWOW64\photowiz.dll 2016-02-17 22:04:50 ----A---- C:\WINDOWS\system32\photowiz.dll 2016-02-17 22:04:38 ----A---- C:\WINDOWS\SYSWOW64\appidapi.dll 2016-02-17 22:04:38 ----A---- C:\WINDOWS\system32\appidsvc.dll 2016-02-17 22:04:38 ----A---- C:\WINDOWS\system32\appidapi.dll 2016-02-17 22:04:34 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe 2016-02-17 22:04:34 ----A---- C:\WINDOWS\SYSWOW64\wer.dll 2016-02-17 22:04:34 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll 2016-02-17 22:04:34 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe 2016-02-17 22:04:34 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll 2016-02-17 22:04:34 ----A---- C:\WINDOWS\system32\wer.dll 2016-02-17 22:04:34 ----A---- C:\WINDOWS\system32\Faultrep.dll 2016-02-17 22:04:34 ----A---- C:\WINDOWS\system32\EncDump.dll 2016-02-17 22:04:34 ----A---- C:\WINDOWS\system32\ci.dll 2016-02-17 22:04:34 ----A---- C:\WINDOWS\system32\audiosrv.dll 2016-02-17 22:04:34 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll 2016-02-17 22:01:33 ----D---- C:\Program Files (x86)\Reference Assemblies 2016-02-17 22:01:33 ----D---- C:\Program Files (x86)\MSBuild 2016-02-17 22:01:32 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer 2016-02-17 22:01:31 ----D---- C:\Program Files\Reference Assemblies 2016-02-17 22:01:31 ----D---- C:\Program Files\MSBuild 2016-02-17 22:01:01 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll 2016-02-17 22:00:59 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll 2016-02-17 22:00:36 ----A---- C:\WINDOWS\SYSWOW64\sdbinst.exe 2016-02-17 22:00:36 ----A---- C:\WINDOWS\system32\sdbinst.exe 2016-02-14 11:06:07 ----D---- C:\WINDOWS\system32\AutoUpdateLicense 2016-01-31 21:25:51 ----D---- C:\WINDOWS\Migration ======List of files/folders modified in the last 1 month====== 2016-02-29 20:46:46 ----RD---- C:\Program Files 2016-02-29 20:43:36 ----D---- C:\WINDOWS\Temp 2016-02-29 20:37:14 ----D---- C:\ProgramData\MFAData 2016-02-29 20:36:15 ----RD---- C:\WINDOWS\System32 2016-02-29 20:36:15 ----D---- C:\WINDOWS\Inf 2016-02-29 20:36:15 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2016-02-29 20:34:57 ----D---- C:\Users\Laura\AppData\Roaming\Skype 2016-02-29 20:33:31 ----D---- C:\WINDOWS\system32\sru 2016-02-28 09:20:23 ----D---- C:\WINDOWS\Microsoft.NET 2016-02-27 22:04:11 ----D---- C:\WINDOWS\system32\config 2016-02-27 21:58:35 ----D---- C:\WINDOWS\WinSxS 2016-02-27 21:57:56 ----D---- C:\WINDOWS\SYSWOW64\config 2016-02-27 21:57:23 ----D---- C:\WINDOWS\CbsTemp 2016-02-27 21:56:00 ----SHD---- C:\System Volume Information 2016-02-27 21:54:50 ----SHD---- C:\WINDOWS\Installer 2016-02-27 21:54:50 ----D---- C:\ProgramData\Skype 2016-02-25 21:42:00 ----HD---- C:\Program Files\WindowsApps 2016-02-25 21:21:48 ----D---- C:\WINDOWS\system32\wdi 2016-02-24 00:11:41 ----D---- C:\WINDOWS\Tasks 2016-02-23 23:40:02 ----D---- C:\ProgramData\Adobe 2016-02-23 23:39:48 ----D---- C:\WINDOWS\SysWOW64 2016-02-23 23:32:37 ----D---- C:\WINDOWS\system32\Tasks 2016-02-23 23:32:22 ----RSD---- C:\WINDOWS\Fonts 2016-02-23 23:32:13 ----RD---- C:\Program Files (x86) 2016-02-23 23:30:43 ----D---- C:\WINDOWS\AppCompat 2016-02-23 23:27:10 ----RSD---- C:\WINDOWS\assembly 2016-02-22 23:15:52 ----A---- C:\WINDOWS\SYSWOW64\log.txt 2016-02-22 23:14:22 ----D---- C:\WINDOWS\Logs 2016-02-22 23:12:05 ----D---- C:\Windows 2016-02-22 23:07:35 ----SD---- C:\WINDOWS\system32\CompatTel 2016-02-22 23:07:35 ----D---- C:\WINDOWS\system32\wbem 2016-02-22 23:07:35 ----D---- C:\WINDOWS\system32\sr-Latn-RS 2016-02-22 23:07:35 ----D---- C:\WINDOWS\system32\sr-Latn-CS 2016-02-22 23:07:34 ----RD---- C:\WINDOWS\ToastData 2016-02-22 23:07:34 ----D---- C:\WINDOWS\SYSWOW64\nl-NL 2016-02-22 23:07:34 ----D---- C:\WINDOWS\system32\nl-NL 2016-02-22 23:07:34 ----D---- C:\WINDOWS\system32\en-US 2016-02-22 23:07:34 ----D---- C:\WINDOWS\apppatch 2016-02-22 23:04:10 ----D---- C:\WINDOWS\system32\catroot2 2016-02-22 22:52:59 ----D---- C:\WINDOWS\system32\restore 2016-02-21 11:06:33 ----D---- C:\WINDOWS\AppReadiness 2016-02-21 10:58:02 ----D---- C:\WINDOWS\system32\catroot 2016-02-20 22:19:26 ----HD---- C:\ProgramData 2016-02-20 21:53:19 ----D---- C:\WINDOWS\debug 2016-02-20 21:39:33 ----D---- C:\WINDOWS\system32\drivers 2016-02-20 21:32:58 ----D---- C:\WINDOWS\Cursors 2016-02-19 22:08:35 ----D---- C:\WINDOWS\system32\DriverStore 2016-02-19 21:56:38 ----D---- C:\WINDOWS\system32\drivers\UMDF 2016-02-17 23:12:22 ----SHD---- C:\$Recycle.Bin 2016-02-17 23:12:15 ----HD---- C:\ProgramData\Common Files 2016-02-17 23:10:48 ----D---- C:\WINDOWS\SoftwareDistribution 2016-02-17 23:00:10 ----D---- C:\WINDOWS\rescache 2016-02-17 22:59:18 ----D---- C:\Program Files\Windows NT 2016-02-17 22:58:27 ----D---- C:\WINDOWS\Registration 2016-02-17 22:58:05 ----D---- C:\WINDOWS\system32\LogFiles 2016-02-17 22:54:05 ----RSD---- C:\WINDOWS\Media 2016-02-17 22:51:26 ----HD---- C:\WINDOWS\ELAMBKUP 2016-02-17 22:46:15 ----D---- C:\WINDOWS\SYSWOW64\NV 2016-02-17 22:46:15 ----D---- C:\WINDOWS\system32\NV 2016-02-17 22:43:25 ----D---- C:\WINDOWS\SYSWOW64\drivers 2016-02-17 22:43:25 ----D---- C:\WINDOWS\system32\Sysprep 2016-02-17 22:43:25 ----D---- C:\WINDOWS\ShellNew 2016-02-17 22:43:24 ----D---- C:\ProgramData\regid.1986-12.com.adobe 2016-02-17 22:41:30 ----D---- C:\WINDOWS\SYSWOW64\WCN 2016-02-17 22:41:30 ----D---- C:\WINDOWS\SYSWOW64\sysprep 2016-02-17 22:41:30 ----D---- C:\WINDOWS\SYSWOW64\SMI 2016-02-17 22:41:30 ----D---- C:\WINDOWS\SYSWOW64\sda 2016-02-17 22:41:29 ----D---- C:\WINDOWS\SYSWOW64\migwiz 2016-02-17 22:41:29 ----D---- C:\WINDOWS\SYSWOW64\LogFiles 2016-02-17 22:41:28 ----D---- C:\WINDOWS\SYSWOW64\IME 2016-02-17 22:41:28 ----D---- C:\WINDOWS\SYSWOW64\catroot 2016-02-17 22:41:26 ----D---- C:\WINDOWS\system32\WinBioPlugIns 2016-02-17 22:41:26 ----D---- C:\WINDOWS\system32\WCN 2016-02-17 22:41:26 ----D---- C:\WINDOWS\system32\spool 2016-02-17 22:41:23 ----D---- C:\WINDOWS\system32\oobe 2016-02-17 22:41:23 ----D---- C:\WINDOWS\system32\NDF 2016-02-17 22:41:23 ----D---- C:\WINDOWS\system32\MUI 2016-02-17 22:41:23 ----D---- C:\WINDOWS\system32\IME 2016-02-17 22:40:14 ----D---- C:\WINDOWS\PolicyDefinitions 2016-02-17 22:40:07 ----D---- C:\WINDOWS\IME 2016-02-17 22:40:06 ----D---- C:\WINDOWS\Help 2016-02-17 22:40:05 ----D---- C:\WINDOWS\DigitalLocker 2016-02-17 22:40:04 ----RD---- C:\Users 2016-02-17 22:40:03 ----SD---- C:\ProgramData\Microsoft 2016-02-17 22:40:03 ----D---- C:\ProgramData\PRICache 2016-02-17 22:39:59 ----SHD---- C:\Program Files (x86)\Windows Sidebar 2016-02-17 22:39:59 ----D---- C:\Program Files (x86)\Windows Media Player 2016-02-17 22:39:57 ----D---- C:\Program Files (x86)\Microsoft.NET 2016-02-17 22:39:57 ----D---- C:\Program Files (x86)\Common Files 2016-02-17 22:39:55 ----SHD---- C:\Program Files\Windows Sidebar 2016-02-17 22:39:55 ----D---- C:\Program Files\Windows Media Player 2016-02-17 22:39:54 ----D---- C:\Program Files\Common Files\System 2016-02-17 22:39:54 ----D---- C:\Program Files\Common Files\microsoft shared 2016-02-17 22:39:53 ----D---- C:\Program Files\Common Files 2016-02-17 22:38:00 ----D---- C:\WINDOWS\system32\Recovery 2016-02-17 22:25:23 ----RD---- C:\WINDOWS\ImmersiveControlPanel 2016-02-17 22:24:37 ----D---- C:\WINDOWS\SYSWOW64\setup 2016-02-17 22:24:37 ----D---- C:\WINDOWS\system32\setup 2016-02-17 22:21:54 ----D---- C:\WINDOWS\system32\Boot 2016-02-17 22:20:15 ----D---- C:\WINDOWS\WinStore 2016-02-17 22:12:50 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll 2016-02-17 22:11:22 ----D---- C:\Program Files\Windows Defender 2016-02-17 22:11:22 ----D---- C:\Program Files (x86)\Windows Defender 2016-02-17 22:10:13 ----D---- C:\WINDOWS\system32\drivers\nl-NL 2016-02-17 22:09:46 ----D---- C:\Program Files\Windows Journal 2016-02-17 22:08:19 ----D---- C:\Program Files\Internet Explorer 2016-02-17 22:08:19 ----D---- C:\Program Files (x86)\Internet Explorer 2016-02-17 22:07:32 ----D---- C:\WINDOWS\system32\CodeIntegrity 2016-02-17 22:04:37 ----D---- C:\WINDOWS\system32\AdvancedInstallers 2016-02-17 22:01:32 ----D---- C:\WINDOWS\SYSWOW64\MUI 2016-02-16 22:07:10 ----HD---- C:\$Windows.~BT 2016-02-14 21:26:59 ----D---- C:\WINDOWS\AUInstallAgent 2016-02-14 11:20:24 ----D---- C:\ProgramData\Microsoft Help 2016-02-14 11:19:34 ----A---- C:\WINDOWS\win.ini 2016-02-14 11:11:39 ----D---- C:\WINDOWS\system32\MRT 2016-02-14 11:08:47 ----A---- C:\WINDOWS\system32\MRT.exe 2016-02-02 03:37:41 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 AVGIDSHA;AVGIDSHA; C:\WINDOWS\system32\DRIVERS\avgidsha.sys [2016-01-08 272304] R0 Avgloga;AVG Logging Driver; C:\WINDOWS\system32\DRIVERS\avgloga.sys [2015-08-14 398256] R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\WINDOWS\system32\DRIVERS\avgmfx64.sys [2016-01-22 260528] R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\WINDOWS\system32\DRIVERS\avgrkx64.sys [2015-12-04 42416] R0 Avguniva;AVG Universal Driver; C:\WINDOWS\system32\DRIVERS\avguniva.sys [2016-01-08 23472] R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-09-02 647736] R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2015-11-17 40264] R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536] R1 Avgdiska;AVG Disk Driver; C:\WINDOWS\system32\DRIVERS\avgdiska.sys [2015-11-06 184240] R1 AVGIDSDriver;AVGIDSDriver; C:\WINDOWS\system32\DRIVERS\avgidsdrivera.sys [2016-01-05 315312] R1 Avgldx64;AVG AVI Loader Driver; C:\WINDOWS\system32\DRIVERS\avgldx64.sys [2015-10-21 284080] R1 Avgwfpa;AVG Firewall Driver; C:\WINDOWS\system32\DRIVERS\avgwfpa.sys [2015-12-16 315840] R1 ctxusbm;Citrix USB Monitor Driver; C:\WINDOWS\system32\DRIVERS\ctxusbm.sys [2015-07-01 144464] R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680] R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416] R3 AiCharger;ASUS Charger Driver; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [2012-09-18 17152] R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-18 3680256] R3 ATP;@oem14.inf,%PS2.DeviceDesc%;ASUS PS/2 Port Input Device; C:\WINDOWS\System32\drivers\AsusTP.sys [2012-10-31 61824] R3 BTATH_HCRP;@oem11.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2012-09-29 178840] R3 BTATH_RCP;@oem15.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys [2012-09-29 135832] R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2012-09-29 575128] R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator-service; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248] R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy-stuurprogramma; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304] R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth-apparaat (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2016-02-17 118272] R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;USB-stuurprogramma voor Bluetooth-radio; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920] R3 HIDSwitch;@oem18.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2012-05-31 21152] R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2013-10-01 4177920] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-06-12 4060560] R3 IntcDAud;@oem25.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-08-27 342528] R3 iwdbus;@oem36.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2013-08-22 26008] R3 kbfiltr;@oem16.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-02 14992] R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2015-10-05 25816] R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2016-02-29 192216] R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2015-10-05 64216] R3 MEIx64;@oem4.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784] R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-11-17 11075912] R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth-apparaat (RFCOMM Protocol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2016-02-17 167424] R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT-stuurprogramma; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360] R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB-videoapparaat (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2014-11-21 212736] R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864] S0 Avgboota;AVG Early Launch Anti-Malware Driver; C:\WINDOWS\system32\DRIVERS\avgboota.sys [2016-01-07 21632] S3 AthBTPort;@oem9.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2012-09-29 88728] S3 BTATH_A2DP;@oem8.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys [2012-09-29 344216] S3 btath_avdt;@oem8.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys [2012-09-29 114840] S3 BTATH_LWFLT;@oem19.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2012-09-29 76952] S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Stuurprogramma voor Bluetooth-poort; C:\WINDOWS\System32\Drivers\BTHport.sys [2016-02-17 1201664] S3 intaud_WaveExtensible;@oem35.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-08-22 39320] S3 RSUSBVSTOR;@oem10.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [2012-06-13 315536] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128] R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2012-09-11 106880] R2 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [2012-04-13 277120] R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2012-09-29 220288] R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896] R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagent.exe [2016-02-01 3881184] R2 avgsvc;AVG Service; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [2016-01-12 1048488] R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [2016-02-01 561104] R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2016-01-08 1433216] R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2016-01-08 1773696] R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792] R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104] R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-07-17 128896] R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-17 165760] R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 276864] R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784] R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416] R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-09-17 1258856] R2 StrartMenuService;StrartMenu8 Service; C:\Program Files (x86)\IObit\StartMenu8\StartMenuServices.exe [2012-12-03 64896] R2 TeamViewer;TeamViewer 11; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2016-02-16 6940944] R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 364416] S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200] S2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-08-07 937592] S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296] S3 AvgAMPS;AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [2016-02-01 604144] S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792] S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2013-10-01 279000] S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696] S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200] S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400] S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352] S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184] S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096] -----------------EOF-----------------